Updated Microsoft Intune documentation in intune/device-security/security-baselines/ref-defender-settings.md.
Configuration Manager adds an untrusted-domain management point deployment example
The new Configuration Manager article provides a step-by-step proof-of-concept for installing a management point in an untrusted Active Directory domain. In Intune, macOS Platform SSO guidance now specifies the exact Company Portal bundle ID and changes the documented Account Name token. The Multi Admin Approval page adds explicit second-administrator requirements for access-policy changes, while Configuration Manager guidance changes the stated ODBC prerequisite threshold from 18.4.4.1 to 18.4.1.1. The remaining supplied edits are largely link, wording, metadata, or formatting maintenance, making this a guidance-heavy period rather than a feature-release day.
- New Configuration Manager example covers untrusted-domain management point installation
Configuration Manager · General
A new step-by-step example shows how to install a Configuration Manager management point on a server in an Active Directory domain with no trust to the site-server domain. The article explicitly limits the scenario to a site system connected to a primary site; secondary sites still require a two-way domain trust. It is presented as a proof-of-concept reference, not as evidence of a newly launched deployment mode.
- macOS ADE guidance specifies only the Company Portal bundle ID
Intune · Device enrollment
The Automated Device Enrollment procedure now says the Company Portal line-of-business app's App bundle ID list must contain only `com.microsoft.CompanyPortalMac`; administrators should remove unrelated bundle IDs. This is a configuration-procedure clarification, not a documented change to ADE or Platform SSO availability.
- The documented Platform SSO Account Name token changes
Intune · Apple
For **Token To User Mapping** > **Account Name**, the documented value changes from `preferred_username` to `com.apple.PlatformSSO.AccountShortName`. The accompanying explanation still identifies the Microsoft Entra `preferred_username` attribute as the source for the macOS account name, so administrators implementing this mapping should compare their profiles with the revised procedure.
The Multi Admin Approval guidance states that changes to access policies require a second administrator's approval. It also says the automatically protected resource type isn't available as a selectable profile type when creating an access policy. This is security and workflow guidance rather than a new selectable policy type.
- Configuration Manager guidance lowers the stated ODBC prerequisite threshold
Configuration Manager · General
The Configuration Manager prerequisite text now says an upgrade is stalled when the ODBC redistributable version is lower than `18.4.1.1`, replacing the previous documented threshold of `18.4.4.1`. The evidence establishes a documentation requirement change, so administrators should verify the installed version against the revised text before an upgrade.
This period briefing was generated by AI from the tracked Microsoft Learn and Message Center changes.
37 updates
Microsoft Intune
23 updatesUpdated Microsoft Intune documentation in intune/device-configuration/endpoint-security/antivirus.md.
Updated Microsoft Intune documentation in intune/device-security/compliance/create-custom-json.md.
Configure Wsl
UpdatedUpdated Microsoft Intune documentation in intune/device-security/compliance/configure-wsl.md.
Updated Microsoft Intune documentation in intune/device-security/compliance/create-custom-script.md.
Updated Microsoft Intune documentation in intune/device-security/compliance/configure-noncompliance-actions.md.
Updated Microsoft Intune documentation in intune/device-security/compliance/configure-noncompliance-actions.md.
Create Custom Script
UpdatedUpdated Microsoft Intune documentation in intune/device-security/compliance/create-custom-script.md.
Updated Microsoft Intune documentation in intune/device-security/compliance/quickstart-noncompliance-notification.md.
Ref Defender Settings
UpdatedUpdated Microsoft Intune documentation in intune/device-security/security-baselines/ref-defender-settings.md.
Setup Jamf Manually
UpdatedUpdated Microsoft Intune documentation in intune/device-security/conditional-access-integration/setup-jamf-manually.md.
Updated Microsoft Intune documentation in intune/device-configuration/settings-catalog/configure-platform-sso-during-enrollment.md.
Configure Platform Sso During Enrollment
Doc updateRefines Company Portal app bundle ID guidance for configuring Platform SSO during enrollment.
Updates the publication date metadata for setup-automated-macos.
Updated Microsoft Intune documentation in intune/device-configuration/endpoint-security/ref-endpoint-protection-settings-windows.md.
Multi Admin Approval
UpdatedUpdated Microsoft Intune documentation in intune/fundamentals/role-based-access-control/multi-admin-approval.md.
Updated Microsoft Intune documentation in intune/device-configuration/settings-catalog/configure-universal-print.md.
Aosp Supported Devices
Doc updateAdds a Cupra device to the Android Open Source Project supported-devices list.
Aosp Supported Devices
UpdatedUpdated Microsoft Intune documentation in intune/fundamentals/aosp-supported-devices.md.
Common Tasks
UpdatedUpdated Microsoft Intune documentation in intune/device-configuration/settings-catalog/common-tasks.md.
Configure Platform Sso Macos
UpdatedUpdated Microsoft Intune documentation in intune/device-configuration/settings-catalog/configure-platform-sso-macos.md.
Configure Universal Print
UpdatedUpdated Microsoft Intune documentation in intune/device-configuration/settings-catalog/configure-universal-print.md.
Configure Universal Print
Doc updateChanges Universal Print troubleshooting tracing reference from Print-Collect to TSS.
Microsoft Configuration Manager
14 updatesUpdated Microsoft Intune documentation in intune/configmgr/develop/core/understand/about-configuration-manager-schedules.md.
Support For Windows Adk
UpdatedUpdated Microsoft Intune documentation in intune/configmgr/core/plan-design/configs/support-for-windows-adk.md.
Support For Windows 10
UpdatedUpdated Microsoft Intune documentation in intune/configmgr/core/plan-design/configs/support-for-windows-10.md.
Support For Windows 11
UpdatedUpdated Microsoft Intune documentation in intune/configmgr/core/plan-design/configs/support-for-windows-11.md.
Support For Windows 10
UpdatedUpdated Microsoft Intune documentation in intune/configmgr/core/plan-design/configs/support-for-windows-10.md.
Updates the SQL Server Always On guidance for the Basic availability groups requirement.
Support For Windows 10
UpdatedUpdated Microsoft Intune documentation in intune/configmgr/core/plan-design/configs/support-for-windows-10.md.
Support For Windows Adk
UpdatedUpdated Microsoft Intune documentation in intune/configmgr/core/plan-design/configs/support-for-windows-adk.md.
Added Microsoft Intune documentation in intune/configmgr/core/servers/deploy/configure/example-management-point-deployment.md.
Updated Microsoft Intune documentation in intune/configmgr/develop/core/understand/how-to-read-lazy-properties-by-using-managed-code.md.
Updated Microsoft Intune documentation in intune/configmgr/develop/core/understand/how-to-read-a-configuration-manager-object-by-using-managed-code.md.
Updated Microsoft Intune documentation in intune/configmgr/tenant-attach/atp-onboard.md.
Updated Microsoft Intune documentation in intune/configmgr/tenant-attach/atp-onboard.md.
Whats New In Version 2509
Doc updateUpdates the Configuration Manager ODBC redistributable version requirement.