Andy Simmons

My feedback

  1. 274 votes
    Sign in
    (thinking…)
    Sign in with: Microsoft
    Signed in as (Sign out)

    We’ll send you updates on this idea

    We have released a public preview of custom roles with support for a handful of permissions related to managing application registrations. We’re now working on support for enterprise application management permissions, and will continue to release more permissions iteratively over time.

    https://docs.microsoft.com/en-us/azure/active-directory/users-groups-roles/roles-custom-overview

    We very much appreciate all of your feedback here. We’re not done yet, so please keep letting us know what you think and where we can improve.

    Regards,
    Vince Smith
    Azure Active Directory team

    Andy Simmons commented  · 

    Glad to see this planned. Hopefully this includes delegation of device removal.

    We use conditional access and non-persistent pooled virtual desktops. This results in thousands of users workplace joining a "new" device 1-2 times daily.

    Those users quickly hit the limit on number of registered devices. It's really unsettling that we need GA permissions to automate the device cleanup.

    Andy Simmons supported this idea  · 
  2. 63 votes
    Sign in
    (thinking…)
    Sign in with: Microsoft
    Signed in as (Sign out)

    We’ll send you updates on this idea

    18 comments  ·  Azure Active Directory » Domain Join  ·  Flag idea as inappropriate…  ·  Admin →
    Andy Simmons commented  · 

    +1

    We use conditional access and non-persistent pooled virtual desktops. This results in thousands of users workplace joining a "new" device 1-2 times daily.

    Those users quickly hit the limit on number of registered devices. It's really unsettling that we need GA permissions to automate the device cleanup.

    Andy Simmons supported this idea  · 

Feedback and Knowledge Base