Welcome to the April 2025 edition of our monthly Intune update series. This month’s Service Release introduces several enhancements across app protection, device configuration, and privilege management. Additionally, notable updates to Windows patching have been released, offering more flexibility and control for IT administrators.
Intune app protection policies now include standalone settings to block screen capture, Genmojis, and Writing tools on iOS/iPadOS devices. These settings are supported by apps updated to version 19.7.12 or later for Xcode 15 and 20.4.0 or later for Xcode 16 of the Intune App SDK and App Wrapping Tool.
Endpoint Privilege Management (EPM) now supports command-line file arguments in elevation rules. This allows for more granular control over which files can be run with elevated privileges, enhancing security by ensuring only specified arguments are permitted.
Intune has updated its integration with Apple's Volume Purchase Program (VPP) to use API version 2.0. This new API offers improved performance and scalability over the deprecated version 1.0, ensuring more efficient app and book management for iOS/iPadOS and macOS devices.
Intune app protection policies for Android and iOS now support additional storage services, including iManage and Egnyte. Administrators can allow users to save copies of organizational data to these services by configuring the appropriate settings in the app protection policies.
The device configuration template for Windows Delivery Optimization has been updated to align with the Settings Catalog format. This change provides a more consistent and comprehensive approach to configuring Delivery Optimization settings across Windows 10 and Windows 11 devices.
Although not part of the April service release, it’s worth highlighting that Windows Hotpatch has now been made generally available during the month for broader use across eligible Windows devices.
Windows Hotpatch allows systems to install important security updates without requiring a reboot, significantly reducing downtime and disruption for end users. This is particularly valuable for organizations aiming to maintain high system availability while staying secure.
For environments using Microsoft Intune, this unlocks opportunities to:
Maintain critical security compliance without impacting user productivity.
Reduce the complexity and planning typically associated with patch cycles.
Strengthen endpoint resilience with minimal operational overhead.
The new app protection policies and EPM settings provide more granular control over device security, helping organizations protect sensitive data and manage local administrator accounts effectively.
The updated Windows Delivery Optimization template and Windows Hotpatch enhancements facilitate more efficient and secure update deployments, reducing downtime and administrative overhead.
Devicie is designed and works to complement and enhance the new features introduced in Intune:
🚀Advanced Policy Management: We offer an in-depth range of configuration templates and runbooks that simplify the creation and management of complex policies, ensuring consistent security configurations across all devices.
📊Comprehensive Reporting Dashboards: We provide dashboards that consolidate data from Intune and devices, offering a unified view of device health, update status and more.
🔒Enhanced Update Management: Our templates include advanced policies for managing Windows Delivery Optimization settings and patching configurations, enabling more efficient and secure update deployments.
Check out Microsoft’s official Intune updates for the latest enhancements and improvements, or for further information to this specific service release, click here.
Want to know how these updates impact your specific setup? Or just have general device management questions? We’d love to chat.
Otherwise, keep an eye out for next month’s breakdown—where we’ll cut through the noise and bring you the next round of must-know updates.
March Update | https://devicie.com/articles/microsoft-intune-march-2025-update-features-benefits
February Update | https://info.devicie.com/microsoft-intune-february-2025-update-features-benefits
January Update | https://info.devicie.com/microsoft-intune-january-2025-update-features-benefits