-
Notifications
You must be signed in to change notification settings - Fork 220
New issue
Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.
By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.
Already on GitHub? Sign in to your account
Groups and filter #206
Comments
Hello! "... if I open the filter manually, I can assign via the GUI." - Do you mean the tools UI or the Intune portal? Sounds like the app doesn't gave permission to do this but I would expect it to say so in the logs. Can you attach a log? Cheers! |
Hello, This depends on how you did the export. If you did a bulk export, then you have to include Tenant Admin. That will export the Filters. If you export "single" objects, you have to export Filters manually. Also, it's also important during import. If you import via Bulk, the script will import Filters first. Make sure Tenant Admin is checked. If you import "single" policies, you have to import Filters first to allow it to resolve dependencies. Cheers! |
Hello! Check the "Add object name to path" when you export and then export to C:\Temp\Demo. The dependency functionality requires that the folder name of the exported policies is correct and matching internal names. eg the folder for the filters must be called AssignmentFilters for the script to find them. If you create "custom" names, it will not support Bulk import and dependencies will not work. Cheers and Happy Easter! |
Hello again, And then run a bulk import with the following settings All policys are created. I have checked the permissions in the Graph Command Line Tools and they look correct. No errors with assignments in the logs. I understand that there's no guarantee that this will work, my question is mostly whether it's an error or if it's me doing something wrong, but I can't see what I would be doing wrong. Thanks a lot for the help. EDIT: I actually received ONE error during applications and assignment. Failed to invoke MS Graph with URL https://graph.microsoft.com/beta/deviceAppManagement/mobileApps/730857f1-4ec5-495a-b31e-6b9443dc86a7/assign (Request ID: 38fb4858-2272-45f9-90ce-caa81cd5f7cb). Status code: NotFound. Response message: . Response message: One or more Assignment Filter Id(s) not found from: 5622c810-de4f-4f14-9017-06874a9ed4e7, . - Operation ID (for customer support): 00000000-0000-0000-0000-000000000000 - Activity ID: 0de103b2-a63a-4656-ad53-5ed33bf696a4 - Url: https://fef.amsub0502.manage.microsoft.com/AppLifecycle_2403/StatelessAppMetadataFEService/deviceAppManagement/mobileApps('730857f1-4ec5-495a-b31e-6b9443dc86a7')/microsoft.management.services.api.assign?api-version=5024-01-23 - CustomApiErrorPhrase: Unspecified Exception: Remote server returned an error: (404) Not Found. However, I only get this on that application, no errors on policies using the same filter. |
Sorry, I perhaps should have been clearer, I just want to verify how it worked, hence I removed everything to import it again. I appreciate your help, and the solution you provided seems to solve it. Again, a big thank you for your help and time. |
Hello! What kind of Endpoibt Security policies didn't work? Note that most new Endpoint Security policies are actually Settings Catalog. Cheers! |
Sorry for the later answer. Thanks |
Hello,
I'm having some issues with assignments.
I'm exporting and including groups and assignments.
The group directory is included in the policy folder.
When I import the policy again, the groups are not created.
I've checked that "create group" is checked.
I can import filters under the filter tab, but when I import policies, it tries to assign policies as I understand the GUI correctly, but it says "No Access" - if I open the filter manually, I can assign via the GUI.
Has anyone experienced something similar?
I don't see anything strange in the logs.
The text was updated successfully, but these errors were encountered: