Our Story

Who we are and how we solve complex IT challenges.

Our Certifications

Microsoft certifications and partnerships validating our technical expertise.

Leadership

Meet the Experienced Leadership Team Driving WME’s Success

Advisory Updates

Expert guidance on Microsoft, security, and compliance developments.

Case Studies

Real-world outcomes from complex Microsoft-focused IT engagements.

Financial Industry

Secure technology solutions for regulated banks and financial institutions.

Healthcare

Secure Microsoft solutions for compliant, connected, and modern healthcare organizations.

Manufacturing

Cloud and security solutions supporting modern manufacturing operations.

Non-Profit

Cost-efficient Microsoft solutions for mission-driven organizations.

Public Sector

Microsoft-based IT services for secure public sector modernization.

High Tech

Scalable cloud, security, and staffing for fast-growing technology companies.

SMBs

Scalable cloud, security, and staffing for fast-growing technology companies.

Cloud Migration Services

Transition your workloads to the cloud securely for greater scalability and performance.

Data Migration Services

Securely transfer your business data with minimal downtime and maximum integrity.

Application Migration Services

Move your applications seamlessly to modern platforms with minimal business disruption.

Identity & Security Migration Services

Strengthen identity management and security while transitioning to modern Microsoft solutions.

IT Staffing

Connect with skilled IT professionals to strengthen your team and accelerate project delivery.

Accounting & Finance

Connect with experienced accounting and finance professionals to support your business goals.

Licensing Support

Discover the benefits of both CSP and On-premises licensing options and find the best fit for your unique business needs. From cost savings to flexibility, we’ve got you covered.

Power Platform

Unlock the full potential of the Microsoft Power Platform Suite to streamline operations, automate repetitive tasks, and gain real-time insights that drive business growth.

Sharepoint Solutions

Supercharge your business productivity and enhance visibility through our proven SharePoint expertise.

Security Solutions

Protect your business with proactive cybersecurity, compliance, and risk management solutions.

Endpoint Management

Secure, manage, and monitor every device with modern endpoint management solutions.

Application Management with MEM – Company Portal and .MSI Deployment

October 22, 2021

Now that we enrolled our Windows 10 devices into Intune in a previous blog post, we can start managing them – which means we can deploy apps, policies, scripts, software updates and do many other actions.

Let me start from application management first. Here is the list of actions we can do with Intune:

  • Create and edit app categories
  • Install, update, and remove apps
  • Push and publish apps

There are various types of apps that you can deploy from Intune:

  • Line-of-business (LOB) apps – .msi, .appx, .appxbundle, .msix, and .msixbundle
  • Win32 apps – must be converted into the .intunewin format
  • Microsoft Store apps
  • Links on web apps
  • Azure AD Enterprise Applications
  • Microsoft Edge
  • Microsoft 365 apps

In my very first example I want to show you how to publish apps. Users can manage their devices (wipe, retire, rename and some other options) and install published apps from Windows 10 Company Portal. We need to push Company Portal on our managed devices first, then we can publish applications.

To do that we need to integrate Microsoft Store for Business with our tenant. Open MEM console, go to Tenant administration, then Connectors and tokens. Click Enable on the Microsoft Store for Business page and sign in:

On the Microsoft Store for Business page search for Company Portal:

Click Get the app, then accept the agreement:

Go back to MEM portal and click Sync:

To check if Intune can synchronize apps from MSfB go to Microsoft Store for Business page, select Manage, then Settings and select Distribute:

If status is not Active, then click Activate. Come back on Tenant administration page, refresh and check if synchronization was finished successfully:

Lets deploy Company Portal on our users. Go to AppsWindows and you will find a Company Portal synchronized from MSfB:

Click on app. Overview shows you this app was synchronized from WSfB and ready for deployment:

Select Properties and then edit Assignments:

On the group mode Required click Add group and select the user group we created before:

Click Select, then Review + Save and Save again. Now we see that application is assigned:

Then lets add a first line-of-business application. As an example I always prefer to install 7-zip because of file size and time.

Go to AppsWindows and choose Add. Click on Line-of-business app and click Select:

On the next page you need to select the file for installation:

Choose the installation file from the directory and click Open. As you see I have the latest stable version of 7-zip x64 for Windows 10:

Click OK.

You will need to provide some basic information about the application I want to deploy like Name, Publisher, etc.:

Select User for App install context and No for Ignore app version. You will need to select Yes for applications that support self-updating like Google Chrome. I choose User because I want to publish this app, not push. If you choose Device then you can push the application or uninstall only, there is no publishing option for device. You can also highlight this app in the Company Portal if needed. In my example I leave Show this as a featured app in the Company Portal by default.

For Command-line arguments you need to provide parameters for silent installation. Because it’s simple .msi file you can provide /qn.

You can choose a category for your application:

It’s better to have a logo for applications in Company Portal to make it more native and useful for users so I choose Select image:

You need to browse the directory and select logo:

Click OK, then click Next.

On the Assignment page in group mode Available for enrolled devices click on Add group, choose user collection for deployment, and click Next:

Then click Next. Check the summary page and click Create:

Wait for a confirmation that the application is uploaded:

We targeted Company Portal as the required application and published 7-zip. You can wait a couple of hours (Windows 10 policy refresh cycle is 8 hours) or you can force policy synchronization from the MEM console. To do that go to DevicesWindows:

Click on device name and select Sync:

Then confirm you want to initiate policy synchronization:

After couple of minutes, we see the result:

Now we can run Company Portal:

Click on 7-zip and Install it:

After 1 minute we see the result:

If you open Downloads & updates you will see the status of installed apps and in column Required by your organization you see the difference between required Company Portal and published 7-zip:

After some time you can track application deployment status. For example, lets check Company Portal deployment progress. On the application page we see dashboards with the overall status:

As you remember we deployed Company Portal on Azure AD user group. So we see that one user successfully installed an application:

And we see computer names with the installed application:

In the next blog I will explain how to package Win32 applications for Intune!

As always, if you have any issues our experts are here in real-time to help. You can send us an email.

Share:

Facebook
Twitter
LinkedIn

Get Microsoft Updates Before They Cost You Downtime

Retirement dates, licensing changes, and security updates from a Microsoft-exclusive team, sent when they matter, not on a filler schedule.

More Posts

Copilot Cowork: Credit-Based Billing

Until now, Copilot Cowork has been included with M365 Copilot Premium licenses. Now that Cowork has moved out of public preview, Cowork is introducing a ...
Read Full Article
SharePoint OTP Retirement Is Coming in July 2026

SharePoint OTP Retirement Is Coming in July 2026 — What IT Admins Need to Do Before Access Breaks

Starting July 2026, external users who access OneDrive and SharePoint files through legacy SPO OTP links will start receiving access denied — silently, with no ...
Read Full Article
Power Virtual Agents Is Gone. Here's What Replaced It and Why It Matters.

Power Virtual Agents Is Gone. Here’s What Replaced It and Why It Matters.

If someone on your team still calls it “Power Virtual Agents,” they’re working from an outdated map. Microsoft retired the product on November 15, 2023 ...
Read Full Article

Get Microsoft Updates Before They Cost You Downtime

Retirement dates, licensing changes, and security updates from a Microsoft-exclusive team, sent when they matter, not on a filler schedule.
Subscription Form email