Use powershell to create Azure AD dynamic security group for Azure AD joined (AADJ) devices only

Recently, we had a requirement from customer, that they wanted to deploy applications /apply device configurations etc. from Intune to Azure AD Joined devices ONLY but not other devices like BYOD intune enrolled devices. (MAM/MDM) With intune, you can target apps ,device configurations, profiles ,deployments to both user groups OR device groups but not to…
How to handle a full OneDrive for Business storage issue

We recently hit into an issue that, user has configure to store PST files  (outlook files) into the user’s Onedrive (office 365) . Though we did not think of blocking the pst ,nsf files in onedrive sync configuration until it report to us. Storing of PST into onedrive do create multiple versions and that eat…
How to control Office proplus channel and which office apps are available to download from office portal

  When you assign office 365 proplus license to users in your Microsoft 365 tenant ,users will have option to download the proplus setup manually by visiting https://office.com or https://portal.office.com/ and click on install office. Even though you manage these proplus updates using SCCM and channel using GPO ,there will be users in organisation ,who…
How to get office 365 proplus activation status and excluded apps etc using SCCM Configmgr

  Introduction: We are in midst of completing office 365 project .As part of this project ,one of the primary activity is migration of Microsoft office to office 365 proplus. For office 365 proplus deployment ,we are using Powershell App deployment toolkit that provide GUI ,customize what to remove and other benefits compared with standard…