Installation

Grant Access to Azure AD

If you do not have a Global Administrator role to Azure AD and someone else will consent the applications on your behalf, or you are MSP, please follow these instructions instead.

1. Go to our portal https://preview.portal.centero.fi and then navigate to Services > AM for Intune > Service Status page.

2. The steps 3 and 4 contain consent links for necessary Azure AD Enterprise Applications in manage column. If you have a Global Admin role for your Azure AD tenant proceed to step 3.

If you do not have Global Admin role, then send out instructions from step 4 to your Azure AD tenant Global Admin.

For users who have Global Admin role

3. Click on the icon in manage column in Recast Azure AD Connector application configured row and a new tab will open.

4. Log in with a global administrator account and click Accept to grant the requested permissions.

5. Click on the icon in manage column in AM for Intune application configured row and a new tab will open.

6. Log in with a global administrator account and click Accept to grant the requested permissions.

7. Continue with the installation by following the steps in Service status page. 

The next step is to Link Tenant With AM for Intune.

Grant Access to Azure AD on Behalf of Someone Else

For Global Admin who is consenting the enterprise applications on behalf of someone else

  1. Open these links with your or your customer's Azure AD global administrator account and grant permissions for:
    • Recast Azure AD Connector
    • AM for Intune
  2. Go to Enterprise applications page in Azure Portal and select Recast Azure AD Connector.
  3. Select Users and Groups.
  4. Click Add user and find the user account of the person who is installing AM for Intune.
    • If you are an MSP, you need to add the account you are using in our portal as a guest user into customer's Azure AD. Assign the enterprise application to your guest user account.
  5. Click Assign and continue with AM for Intune installation.
  6. Repeat the steps 3–5 to AM for Intune enterprise application.
  7. Continue with the installation by following the steps in Service status page. 

The next step is to Link Tenant With AM for Intune.

NOTE: You might see the message Unable to check status before linking tenant (step 5) in service status page even if have assigned the enterprise applications, but the message disappear after you've added the tenant.


Link Tenant with AM for Intune

To link the Intune Tenant with AM for Intune:

1. Navigate to Administration > Azure tenants in our portal to add your or your customer's Azure for AM for Intune.

2. Click Link tenant.

3. Fill in the tenant name. If the tenant name is used in default format, it automatically adds the suffix onmicrosoft.com to it. The tenant name can be found in https://portal.azure.com/#blade/Microsoft_Intune_DeviceSettings/ExtensionLandingBlade/tenantStatus

4. Click Link.

Uninstall Application Manager for Intune

To uninstall Application Manager for Intune:

1. Go to https://preview.portal.centero.fi.

2. Go to Administration > Services and terminate AM for Intune.

3. Go to Services > AM for Intune > Administration > Deployment processes and delete all the processes.

4. Go to Administration > Azure tenants and remove the tenant(s).

5. Go to Enterprise applications > Microsoft Azure, search and remove the following applications:

  • AM for Intune
  • AM for Intune Application Groups
  • Recast Azure AD Connector

Additional Permissions For Application Group Feature

The Application Group feature requires additional permissions to Azure AD and Intune tenants. Additional information on the permissions can be found from Permissions article. 

To accept the permissions for Recast Application Manager Intune Application Groups: 

1. Open this link and log in with a Global Administrator account.

2. Accept the requested permissions.