This browser is no longer supported.
Upgrade to Microsoft Edge to take advantage of the latest features, security updates, and technical support.
You're the endpoint administrator at Contoso. Sales wants a new expense-reporting Win32 app installed automatically on every sales laptop, but the marketing team should be able to install it only if they choose to. What assignment configuration meets both requirements?
Create one Required assignment targeting both the Sales and Marketing groups.
Create a Required assignment for the Sales group and an Available for enrolled devices assignment for the Marketing group.
Create a Required assignment for Sales and an Uninstall assignment for Marketing.
You're packaging a custom Win32 line-of-business app for Intune deployment. Which file format must you produce before you can upload the app to the Intune admin center?
.appx
.intunewin
.msi
You deployed a Win32 finance application as Required to 200 devices. The Intune deployment report shows 180 devices as Installed and 20 as Failed. You open the Microsoft Intune admin center to investigate one of the failed devices. Where do you go first to get device-specific diagnostic detail without having to remote into the machine?
Open Microsoft Defender for Endpoint and review the device timeline.
Open the Troubleshoot + support pane, search for the user, select the device, and review the Applications section.
Open Microsoft Entra ID and review the device sign-in logs.
An app reports Installed on the device, but Intune still shows the install as Failed in the admin center. What's the most likely cause?
The user uninstalled the app shortly after installation completed.
The detection rule doesn't match what the installer actually placed on the device.
The device is offline and hasn't checked in with Intune.
You want to deploy a kiosk application only to corporate-owned Windows 11 devices, regardless of who uses them, and you don't want to maintain a separate Microsoft Entra group for each model and OS combination. Which targeting approach is most efficient?
Create a static security group, manually add every kiosk device, and assign the app to that group.
Target all Windows devices with a Required assignment and accept that some non-kiosk devices receive the app.
Assign the app to a broad device group and use an assignment filter for device ownership = Corporate and OS version = Windows 11.
You must answer all questions before checking your work.
Was this page helpful?
Need help with this topic?
Want to try using Ask Learn to clarify or guide you through this topic?