Home » Technology » Now MS Intune is broken: security settings are lost

Now MS Intune is broken: security settings are lost

A technical problem in Microsoft Intune is currently causing trouble. When updating security baselines, custom settings are not taken over, but replaced by default values. This is problematic.

Safety baselines storage faulty

Companies that usually adapt their security configurations individually are affected – for example to fulfill regulatory requirements. There is currently a bug.

Intune broken

Security baselines are central tools within Intune. They bundle recommended settings for securing Windows devices and are regularly updated by Microsoft to cover new threats and system versions. Usually, these Baselines can be adapted to the needs of individual organizations. Exactly these adjustments are currently lost when switching to a new version.

Users report bug when switching

According to Microsoft, the error occurs, for example, when version 23h2 switched to 24h2. In a message from the Microsoft-TechCommunity says:

Adjustments made that deviate from the recommended values ​​of the security baseline are not retained during the update process. Microsoft-TechCommunity

In the worst case, companies lose central security settings – without warning. In many organizations, security baselines are the basis for uniform device configurations. If these are changed to respond to specific requirements, administrators expect the adjustments to remain with updates.

Risk for security gaps

The current disorder increases the risk of incorrect configurations and thus at the same time from unpaid security gaps. Microsoft Intune has been part of the Microsoft-365 suite for years and is used in companies worldwide. The now known problem contradicts the original goal of the security baselines to reduce the administrative effort and at the same time ensure a high level of security.

Microsoft recommends manual workaround

A permanent solution has been announced, but a specific time frame for a fix has so far been missing. Microsoft advises affected IT teams to document all individual settings before an update and then use them again manually. According to Microsoft, it wants to regularly inform about progress. IT departments are advised to keep an eye on official channels such as the Microsoft-TechCommunity and Microsoft Learn.