← Previous day

Next day →
Day in brief

Configuration Manager adds an untrusted-domain management point deployment example

The new Configuration Manager article provides a step-by-step proof-of-concept for installing a management point in an untrusted Active Directory domain. In Intune, macOS Platform SSO guidance now specifies the exact Company Portal bundle ID and changes the documented Account Name token. The Multi Admin Approval page adds explicit second-administrator requirements for access-policy changes, while Configuration Manager guidance changes the stated ODBC prerequisite threshold from 18.4.4.1 to 18.4.1.1. The remaining supplied edits are largely link, wording, metadata, or formatting maintenance, making this a guidance-heavy period rather than a feature-release day.

  • A new step-by-step example shows how to install a Configuration Manager management point on a server in an Active Directory domain with no trust to the site-server domain. The article explicitly limits the scenario to a site system connected to a primary site; secondary sites still require a two-way domain trust. It is presented as a proof-of-concept reference, not as evidence of a newly launched deployment mode.

  • The Automated Device Enrollment procedure now says the Company Portal line-of-business app's App bundle ID list must contain only `com.microsoft.CompanyPortalMac`; administrators should remove unrelated bundle IDs. This is a configuration-procedure clarification, not a documented change to ADE or Platform SSO availability.

  • For **Token To User Mapping** > **Account Name**, the documented value changes from `preferred_username` to `com.apple.PlatformSSO.AccountShortName`. The accompanying explanation still identifies the Microsoft Entra `preferred_username` attribute as the source for the macOS account name, so administrators implementing this mapping should compare their profiles with the revised procedure.

  • The Multi Admin Approval guidance states that changes to access policies require a second administrator's approval. It also says the automatically protected resource type isn't available as a selectable profile type when creating an access policy. This is security and workflow guidance rather than a new selectable policy type.

  • The Configuration Manager prerequisite text now says an upgrade is stalled when the ODBC redistributable version is lower than `18.4.1.1`, replacing the previous documented threshold of `18.4.4.1`. The evidence establishes a documentation requirement change, so administrators should verify the installed version against the revised text before an upgrade.

This period briefing was generated by AI from the tracked Microsoft Learn and Message Center changes.

37 updates

10

Configure Wsl

Updated

Updated Microsoft Intune documentation in intune/device-security/compliance/configure-wsl.md.

Create Custom Script

Updated

Updated Microsoft Intune documentation in intune/device-security/compliance/create-custom-script.md.

Ref Defender Settings

Updated

Updated Microsoft Intune documentation in intune/device-security/security-baselines/ref-defender-settings.md.

4

Setup Jamf Manually

Updated

Updated Microsoft Intune documentation in intune/device-security/conditional-access-integration/setup-jamf-manually.md.

3

Multi Admin Approval

Updated

Updated Microsoft Intune documentation in intune/fundamentals/role-based-access-control/multi-admin-approval.md.

2

Aosp Supported Devices

Doc update

Adds a Cupra device to the Android Open Source Project supported-devices list.

Aosp Supported Devices

Updated

Updated Microsoft Intune documentation in intune/fundamentals/aosp-supported-devices.md.

2

Common Tasks

Updated

Updated Microsoft Intune documentation in intune/device-configuration/settings-catalog/common-tasks.md.

Configure Platform Sso Macos

Updated

Updated Microsoft Intune documentation in intune/device-configuration/settings-catalog/configure-platform-sso-macos.md.

2

Configure Universal Print

Updated

Updated Microsoft Intune documentation in intune/device-configuration/settings-catalog/configure-universal-print.md.

8

Support For Windows Adk

Updated

Updated Microsoft Intune documentation in intune/configmgr/core/plan-design/configs/support-for-windows-adk.md.

Support For Windows 10

Updated

Updated Microsoft Intune documentation in intune/configmgr/core/plan-design/configs/support-for-windows-10.md.

Support For Windows 11

Updated

Updated Microsoft Intune documentation in intune/configmgr/core/plan-design/configs/support-for-windows-11.md.

Support For Windows 10

Updated

Updated Microsoft Intune documentation in intune/configmgr/core/plan-design/configs/support-for-windows-10.md.

Support For Windows 10

Updated

Updated Microsoft Intune documentation in intune/configmgr/core/plan-design/configs/support-for-windows-10.md.

Support For Windows Adk

Updated

Updated Microsoft Intune documentation in intune/configmgr/core/plan-design/configs/support-for-windows-adk.md.

6
Daily Intune.Admin.News

Get daily email updates

Get a concise summary of the latest Microsoft Intune updates delivered straight to your inbox.

Loading the secure signup form…