How to Create Configuration Profiles
Sign in to the Microsoft Intune Admin Centre:
Configuration Profile:
- Devices
- Manage Devices drop-down
- Configuration
- Create
- New Policy
On the Create Profile window, ensure the below are selected:
- Platform: Windows 10 and later
- Profile type: Settings catalog
- Create
Basics
You will now be required to enter the profile details:
- Name: Enter a descriptive name for the policy (e.g., Mobile Guardian Microsoft Edge Browser Settings).
- Description: Enter a description for the policy (optional but recommended).
- Click Next
Configuration settings
Here you would need to add the settings for the profile.
- Select Add Settings
In the Settings picker window, search and select the following settings:
- Category:
- Search for Microsoft Edge
- Settings:
- Search for and select: Browser sign-in settings (Device)
- Search for and select: Configure whether a user always has a default profile automatically signed in with their work or school account
- Search for and select: Control where developer tools can be used (User)
- Search for Control which extensions are installed silently
- MicrosoftEdge\Extensions
- Once all are selected, click the X button in the top right corner
Once the settings are added, ensure they are all set to Enabled
- Browser sign-in settings (Device)
- Set to Force users to sign in to the browser
- Control where developer tools can be used (User)
- Set to Allow using the developer tools
- Control where developer tools can be used (Device)
- Set to Allow using the developer tools
- You will need App ID and URL found in your Azure Settings on the Mobile Guardian Dashboard.
- In the Extension/App ID field, enter your personalised App ID and URL
- Ensure they are added and separated by a semicolon.
Select Next to move to the Scope Tags tab and select Next again, as you will not be required to make any changes.
Assignments
Under the Included groups section
- Select Add groups
- Select the group you want to apply the settings to (e.g., Students)
- Select Next
- Review and Create:
- Review your settings and click Create.
- Refresh the page to see your newly created configuration profile.
Device Setup
When signing onto the device with a student account. The configuration profile installs the Mobile Guardian extension on the Edge Browser. The extension calls the API to fetch updated or new details from Intune.
To add the user to the device, you or the user would need to add the account by navigating to:
- Settings > Accounts
- Access work or school
- Add a work or school account
- Connect
- Add the student's email and follow the prompts
- Once installed, the device will be added to your Mobile Guardian Dashboard.
- The device information will be added to your Microsoft Intune admin center as well.
- Navigate to:
- Devices
- All devices
- To ensure the profile has been added to the Edge Browser and is in use.
- You may view the extension on the Extensions tab and will be able to pin the extension to the Edge Browser.
Please let us know if you found this helpful!
Thanks for reading! 🙂