5 New Features in Intune 2410 Service Release

It is October 2024, and Microsoft Intune 2410 updates are being rolled out to all the customers globally. The guide covers all about the new features in Service Release 2410 and how your organization can take advantage of them.

Intune administrators are aware of the fact that Microsoft releases the service updates every month. These updates are intended to improve existing features while adding new features based on feedback from customers around the world.

At the time of writing this, Microsoft has confirmed that all the tenants should be updated to version 2410. See how you can check the current service release of your Intune tenant.

New Features in Intune 2410 Service Release

Let’s go through the new features and improvements that were added to the Intune 2410 service release, released in the month of October 2024. For more details, refer to Microsoft documentation on Intune 2410 New Features.

Updates to app configuration policies for Android Enterprise devices

For organizations managing the Android enterprise devices with Intune, there are new updates to app configuration policies that now support overriding Access background location and Bluetooth (connect) permissions.

Updates to app configuration policies for Android Enterprise devices
Updates to app configuration policies for Android Enterprise devices

The minimum OS version for Android devices is Android 10.

Starting with Intune 2410, Android 10 and later is the minimum Android OS version that is supported for user-based management methods, which includes:

  • Android Enterprise personally-owned work profile
  • Android Enterprise corporate owned work profile
  • Android Enterprise fully managed
  • Android Open Source Project (AOSP) user-based
  • Android device administrator
  • App protection policies (APP)
  • App configuration policies (ACP) for managed apps
  • For enrolled devices on unsupported OS versions (Android 9 and lower)

Note: Although Intune does not stop devices running unsupported Android OS versions from enrolling or managing, use is not advised and functionality is not guaranteed.

Additional Windows device inventory details collection

Beginning with the Intune 2410 release, additional files and registry keys are collected to help troubleshoot the Device Hardware Inventory feature. This feature is exclusively for devices running Windows 11 and Windows 10.

New UI for Intune Company Portal app for Windows

The Windows version of the Intune Company Portal software has a new user interface. Consumers can now enjoy a better desktop app experience without sacrificing previously used features. Particular UI enhancements are targeted at the Downloads & Updates, Devices, and Home pages. The updated layout is easier to use and makes clear where consumers need to act.

Microsoft provided the following screenshot to demonstrate the new UI for the company portal app on a Windows device.

New Company Portal UI - Intune 2410 New Feature
New Company Portal UI for Windows – Intune 2410 New Feature

New strong mapping requirements for SCEP certificates authenticating with KDC

For certificate-based authentication, the Key Distribution Center (KDC) requires that user or device objects be tightly mapped to Active Directory.

Accordingly, the subject alternative name (SAN) of a Simple Certificate Enrollment Protocol (SCEP) certificate needs to have a security identifier (SID) extension that corresponds to the SID of the user or device in Active Directory.

The mapping requirement guarantees that certificate-based authentication against the KDC keeps functioning and guards against certificate spoofing.

To understand more about this feature, see Update certificate connector: Strong mapping requirements for KB5014754.

That’s all we wanted to cover in this guide. Thank you 🙏 for reading. If you enjoyed it, please like and share this article, tagging CloudGuides.