Microsoft Intune Compliance Event Monitor Reference Guide

Microsoft Intune Compliance Event Monitor

Watches over devices in Microsoft Intune and alerts about their compliance.

Overview

The Microsoft Intune Compliance Event Monitor keeps an eye on all Intune-connected network devices and sends alerts about various compliance metrics.

Use Cases

  • Keeping track of security, compliance, and encryption for all connected devices
  • Receiving alerts before device certificates expire

Monitoring Options

This event monitor provides the following options:

Alert with [Info/Warning/Error/Critical] if Azure cannot be contacted

This alert will be triggered if the event monitor cannot contact Microsoft Azure.

Alert with [Info/Warning/Error/Critical] if the device is not found in Microsoft Intune

Use this option to receive an alert if one or more network devices connected to this event monitor cannot be found in Microsoft Intune.

Alert with [Info/Warning/Error/Critical] if the device is not in a compliant state

This option will send an alert if the event monitor detects one or more devices that are not in a compliant state.

Alert with [Info/Warning/Error/Critical] if the device is not in a registered state

This option lets you know if any of the devices are unregistered in Intune.

Alert with [Info/Warning/Error/Critical] if the device is not encrypted

Use this option to receive an alert if the event monitor detects one or more unencrypted devices.

Alert if a specified amount of time has passed since the last device check-in

Use this option to specify the amount of time that has to pass since the last device check-in to trigger this alert.

Alert if the device's certificate will expire in less than a specified number of days

This option lets you receive a notification a specified number of days ahead of certificate expiry for connected devices.

Authentication and Security

The account used to authenticate must have the following permissions at both the application and delegated level:

  • DeviceManagementManagedDevices.ReadWrite.All
  • DeviceManagementManagedDevices.Read.All
  • User.Read
  • Organization.Read.All

Protocols

Data Points

This event monitor generates the following data points:

Data Point Description
Compliant The percentage of connected devices that are currently compliant.

Sample Output

Tutorial

To view the tutorial for this event monitor, click here.

Back to Library

Comments

There are no user-contributed comments for this page. Be the first to submit a comment!

Add a comment