Skip to main content

Implementation of the “All Shared Devices” filter in Intune to support scoped application and policy assignments for Self-Driven (Shared) devices.

· 2 min read
Nicholas Swanzy
Nicholas Swanzy
Site Reliability Engineer III

Change Request 218076 Implementation of the “All Shared Devices” filter in Intune to support scoped application and policy assignments for Self-Driven (Shared) devices..

Description: Details of Maintenance: This change introduces and standardizes the use of a device filter in Intune named “All Shared Devices.” The filter is used to identify devices that are enrolled without user affinity (Self-Driven), typically used as Shared Devices in labs, kiosks, and classrooms. The filter uses the following syntax to exclude User-Driven devices enrolled using pre-provisioning: (device.enrollmentProfileName -ne "_TAMU User Driven with Pre Provision") This filter will be applied as Include or Exclude in assignments depending on the target audience. It will now serve as the standard method for distinguishing between Shared and User-Managed devices in policy and application assignments. Benefit of Change:

Enables consistent targeting logic across device management scenarios

Supports clean separation between Shared and User-Managed devices

Reduces risk of misapplication of user-focused policies to Shared Devices

Aligns with Experience Scope Group (ESG) and Policy Scope Group (PSG) design standards

Supports structured onboarding under the Unified Device Management (UDM) project

Impact to Customers:

No user disruption

Improved accuracy and consistency of application and policy targeting

Easier troubleshooting and policy validation for distributed IT admins

Impact to Other Services/Websites:

No impact to external services or platforms

Change is limited to device targeting logic in Intune