top of page
Writer's pictureGareth Oxendine

What are Intune Compliance Policies?

Updated: Dec 1, 2024

Compliance policies allow you to create a set of rules that determine whether an enrolled device is compliant or not. If a device is not compliant, you can choose a resulting action that will happen.


A device's compliance status can be seen from the device list in Intune (you may need to add the column first) See below:

Viewing a Device's Compliance Status in Microsoft Endpoint Manager (Intune)
Viewing a Device's Compliance Status

Compliance Settings

Before you start creating compliance policies for devices in your organization, note that there are "default" compliance settings that apply to all devices. These compliance settings are NOT to be confused with compliance policies.


The compliance settings are configurable. To access them, see the steps below:

  1. Open Endpoint Manager (Intune)

  2. Select Devices > Compliance

  3. Select the Compliance Settings tab

Configuring the Tenant's Compliance Settings in Microsoft Endpoint Manager (Intune)
Configuring the Tenant's Compliance Settings

There are two configurable items within compliance settings; don't forget that these settings apply to your entire tenant (all of the devices):

  • Mark devices with no compliance policy assigned as: this option allows you to mark devices that have not received any compliance policy as either "compliant" or "noncompliant." (if you plan on creating configuration policies for all operating systems, then you may want to configure this setting to mark devices without a compliance setting as noncompliant so you can track which devices haven't received a policy)

  • Compliance status validity period (days): specify the number of days a device can go without "checking in" (verifying its received policies) with Intune before it is marked as noncompliant (note that devices that are offline for long periods will start to show as noncompliant if this value is set to a low number)


Compliance Policies

Compliance policies are created per operating system and can be scoped (assigned) to all users/devices or specified groups.


To create a new compliance policy, see the steps below:

  1. Open Endpoint Manager (Intune)

  2. Select Devices > an OS (ex. Windows) > Compliance Policies

  3. Select + Create Policy

  4. Once you've verified the correct platform, name the new policy and select Create

  5. Now you can configure the compliance policy settings, the actions for noncompliance, and then the assignment for the policy (who/what will be assigned the policy)


Configure the Compliance Settings while creating a compliance policy in Microsoft Endpoint Manager (Intune)
Configure the Compliance Settings
Configure the Actions for Noncompliance while creating a compliance policy in Microsoft Endpoint Manager (Intune)
Configure the Actions for Noncompliance
Configure the Assignments for the Compliance Policy in Microsoft Endpoint Manager (Intune)
Configure the Assignments for the Compliance Policy


161 views0 comments

Related Posts

See All

Recent Posts

Like this Article?

​If this information was helpful, we want to know!

​Leave a like by clicking the heart at the bottom of the page. 

Follow us on LinkedIn!

We'd like to invite you to follow us on LinkedIn! Click the icon to follow.

Never Miss a Post. Subscribe Now!

Want to be notified whenever a new article is posted? Enter your email address and subscribe!

Thanks for submitting!

Donate to the Blog?

We hope the blog was helpful to you! If so, we'll take a donation as a form of thanks! :) 

© 2024 by DMTT. Powered and secured by Wix

$

Thank you for your donation!

bottom of page