close

deployment

New TeamViewer remote assistance connector in Microsoft Intune: setup, requirements, and limitations

New remote assistance session option (image TeamViewer)

Microsoft released a new TeamViewer remote assistance connector for Intune in April 2026, replacing the older integration available since 2016. The new connector requires TeamViewer Tensor or a compatible enterprise license with a Microsoft add-on, and it requires the remote device to be actively managed by TeamViewer, not just enrolled in Intune. This article explains what changed, what you need to configure the integration, and what the new connector cannot do.

New TeamViewer remote assistance connector in Microsoft Intune: setup, requirements, and limitations Read Post »

New Windows Autopatch Secure Boot status report in Intune admin center

Secure Boot status report in Intune admin center (image Microsoft)

Windows Autopatch in the Intune admin center now includes an updated Secure Boot status report that provides device-level visibility into certificate readiness ahead of the 2026 expiry deadline. The report shows which devices have Secure Boot enabled, whether their certificates are up to date, and whether automatic or manual deployment applies. New columns for trust configuration, confidence level, and alerts help you make targeted decisions instead of broad deployments.

New Windows Autopatch Secure Boot status report in Intune admin center Read Post »

Windows 11 SecureBoot folder: PowerShell scripts explained

Secure Boot certificate status dashboard (image Microsoft)

The May 2026 cumulative update KB5089549 added a new C:\Windows\SecureBoot\ExampleRolloutScripts folder containing seven PowerShell scripts. These scripts are part of Microsoft’s sample toolkit for managing Secure Boot certificate migration across enterprise environments. This article explains what each script does, how to run it, and its limitations.

Windows 11 SecureBoot folder: PowerShell scripts explained Read Post »

Automate Platform SSO setup during macOS enrollment with Microsoft Intune

Enabling Secure Enclave biometric authentication for passwordless sign-in

Microsoft has made Platform Single Sign-On (PSSO) during Automated Device Enrollment (ADE) generally available for macOS. The new EnableRegistrationDuringSetup setting in Microsoft Intune completes device registration and SSO configuration automatically during Setup Assistant — the initial macOS setup wizard — before the user ever reaches the desktop. This article explains what PSSO is, why the new setting matters, what you need to configure it, and what limitations to expect.

Automate Platform SSO setup during macOS enrollment with Microsoft Intune Read Post »

DSC v3.2.0: new Windows resources, version pinning, and Bicep integration

Installing DSC v3 via WinGet package manager (image Microsoft)

Microsoft Desired State Configuration (DSC) v3.2.0 reached general availability on April 29, 2026. DSC is a tool that lets you describe how a Windows or Linux system should be configured — services running, firewall rules in place, features installed — and then automatically apply or verify that configuration. Version 3.2.0 adds built-in resources for services, firewall rules, and SSH settings; extends the –what-if preview mode to individual resources; introduces version pinning; and includes experimental Bicep integration via gRPC. This article covers what changed, the limitations, and how to install the update.

DSC v3.2.0: new Windows resources, version pinning, and Bicep integration Read Post »

Cloud-Initiated Driver Recovery: automatic Windows Update rollback

Gradual rollout timeline: 30-day monitoring and throttling (image Microsoft)

Microsoft is introducing Cloud-Initiated Driver Recovery, a mechanism that automatically rolls back a faulty driver on your devices via Windows Update, without requiring any action from you or your hardware vendor. The feature is aimed at closing a gap where a bad driver could linger on devices for weeks before a fixed version became available. It works through the existing Windows Update pipeline and requires no new software on the client side. The feature is currently in a manual testing phase and is targeted for full automation in September 2026.

Cloud-Initiated Driver Recovery: automatic Windows Update rollback Read Post »

When Windows Update hangs: automatic recovery for update failures patches update experience

Automatic recovery for update failures patches your update experience

In a blog post titled ‘Your Windows Update experience just got updated,’ Microsoft has discussed its new mechanism to handle update installation failures on Windows 11: Windows now attempts to repair a failing update in real time during installation rather than rolling back immediately. This feature, called ‘automatic recovery for update failures,’ reduces the number of devices left in a failed-update state that requires manual troubleshooting. Administrators should note that this feature is distinct from—and should not be confused with—boot-level recovery, which is a separate safety net for devices that fail to start up after Patch Tuesday.

When Windows Update hangs: automatic recovery for update failures patches update experience Read Post »

Microsoft Intune April-May 2026: app inventory, Linux SSO, and Apple ADE

Single sign-on (SSO) on Linux (image Microsoft)

Microsoft Intune’s April and May 2026 updates deliver three areas of practical change for administrators: richer and more frequent app inventory for Windows devices, a redesigned single sign-on (SSO) experience for Linux endpoints that replaces an aging authentication component, and automated enrollment support for Apple tvOS and visionOS devices in shared-use scenarios. Hotpatch updates — which apply security fixes without a restart — also become enabled by default for eligible Windows devices in May 2026.

Microsoft Intune April-May 2026: app inventory, Linux SSO, and Apple ADE Read Post »

New TeamViewer connector in Microsoft Intune: remote control for Windows, macOS, iOS, Android

TeamViewer notification in Company Portal (image Microsoft)

TeamViewer is a remote assistance solution that lets you remotely connect to and control Intune-managed Windows, macOS, Android, and iOS/iPadOS devices directly from the Intune admin center to support your users. Microsoft Intune’s April 2026 update (service release 2604) introduces a redesigned TeamViewer connector for remote assistance. The new connector replaces the existing one with a simplified setup process and adds SSO (single sign-on) support, device group synchronization, and granular role-based permissions. If you still use the old connector, you have 12 months to migrate before it stops working. This article explains what changed, what you need, and how to configure the new connector.

New TeamViewer connector in Microsoft Intune: remote control for Windows, macOS, iOS, Android Read Post »

WindowsUpdatePreventer
Scroll to Top