Intune device configuration for Azure Virtual Desktop multi-session VMs is now generally available
We're happy to announce that deploying Microsoft Intune device configuration from Microsoft Endpoint Manager admin center to Azure Virtual Desktop multi-session virtual machines (VMs) is now generally available. Intune already supports managing single session Azure AD-joined and Hybrid Azure AD-joined Azure Virtual Desktop VMs. You can now add multi-session VMs to the same management experience and deploy device-wide configurations to them. Intune is also the best solution for managing policy configuration on Azure AD-joined Azure Virtual Desktop multi-session VMs.
The following capabilities are now generally available on Azure Virtual Desktop with Intune:
- Automatically enroll VMs in Intune when provisioning Azure AD-joined host pools so that they're provisioned, compliant, and ready to use when end-users access them.
- Manage both single and multi-session VMs using the settings catalog in Microsoft Endpoint Manager admin center.
- Increase your multi-session VMs’ security posture by applying configurations available under the Endpoint security blade, including Defender Tamper Protection and granular Antivirus policies.
- Leverage Microsoft 365 security features like Conditional Access on the session hosts.
- Assign applications configured to install in system context to multi-session VMs.
- Manage device configuration for multi-session VMs created in the Azure Public and Azure Government (US GCC High and DoD environments) clouds.
Getting started
This new functionality is available in the Intune 2204 release.
Learn more about the recommended ways to manage your Azure Virtual Desktop session hosts on our management page.
To get started, follow the instructions to use Azure Virtual Desktop multi-session with Intune which will guide you in creating new device configurations.
Stay tuned for news about the upcoming support for user scope policies.
Published on:
Learn moreRelated posts
Power Pages | Azure AD B2C | Confirm Email message on Profile
If you are unfamiliar with configuring Azure AD B2C as a Power Pages Identity Provider, refer to this post: Power Pages : Set up Azure AD B2C ...
Building a RAG-Based Smart Memory Application with Azure SQL Database
Project Mission The way people work and manage information is changing rapidly in our digital age. More and more people are struggling to keep...
Reducing PAT usage across Azure DevOps
In the new year, we’ll be making moves towards strengthening Microsoft and our customers’ security posture in regards to the usage and c...