Skip to content
Enable or Disable Find My Device using Intune Security Policy

Enable or Disable Find My Device using Intune Security Policy

Written By Anoop C Nair
Last Updated March 31, 2025
Posted In Intune
SHARE

Today, I would like to explain how to enable or disable Find My Device using Intune Security Policy. Intune’s Settings Catalog simplifies device management. It centralizes settings for various platforms, making policy creation easier.

Allow Find My Device policy turns on the Find My Device feature in Windows. If you misplace your Windows 10 or 11 device, Find My Device allows you to use your Microsoft account to find its location, lock it in security, or erase its data. This functionality works even if the device isn’t currently connected to the internet.

Enabling or disabling Find My Device in Windows 11 can be done using multiple methods, such as Settings, Registry, and Group Policy (GPO). With security being a top priority, Windows 11 offers robust features to help protect and recover lost or stolen devices. Understanding these options in advance ensures you’re prepared to locate your device if needed.

Through this post, I would like to explain enable or disable Allow Find My Device Policy using Intune Setting Catalog. This Setting Catalog makes creating and managing device policies easier, allowing administrators to customize configurations efficiently.

Patch My PC

What are the Benefits of Enabling or Disabling Find My Device?


If you enable (turn on) Find My Device, your device’s location is stored in the cloud, allowing you to find it through account.microsoft.com. Additionally, for compatible devices, it records the last used location of your active digitizer locally.

If you turn off (disable) Find My Device, you won’t be able to locate your device remotely, and the last used location of your active digitizer will not be recorded or available.

What are the Allowed Values of Allow Find My Device Policy?


In Windows 11, the Find My Device feature can be controlled using specific values. When set to 0, the feature is disabled, meaning the device cannot be tracked if lost or stolen. The default value is 1, which enables the feature, allowing the device’s location to be recorded and retrieved when needed.

Windows CSP DetailsExperience

Configuration Service Providers (CSPs) provide the functionality for Intune to manage Windows device settings, allowing for remote configuration changes through the Windows Registry. The following section will showcase the CSP details of the Allow Find My Device Policy, which is under the Experience category.

Description framework properties:

Property NameProperty Value
Format int
Access TypeAdd, Delete, Get, Replace
Default Value1
Enable or Disable Find My Device using Intune Security Policy – Table 1

./Device/Vendor/MSFT/Policy/Config/Experience/AllowFindMyDevice

Enable or Disable Find My Device using Intune Security Policy - Fig.1
Enable or Disable Find My Device using Intune Security Policy – Fig.1

Enable or Disable Find My Device using Intune Security Policy

To deploy an Intune policy, first, log in to the Microsoft Intune admin center. Then, create a new configuration profile by navigating to Devices > Configurations > Create policy. To begin creating a new policy, initiate the process by selecting New Policy.

Enable or Disable Find My Device using Intune Security Policy - Fig.2
Enable or Disable Find My Device using Intune Security Policy – Fig.2

Selecting New Policy opens the Create Profile window, allowing you to configure the policy. First, specify Windows 10 and later as the target platform. Next, select Settings Catalog as the profile type. Finally, confirm your selections by clicking Create, which will finalize the policy creation setup.

Enable or Disable Find My Device using Intune Security Policy - Fig.3
Enable or Disable Find My Device using Intune Security Policy – Fig.3

Basics

Policy creation begins with the Basics section. This mandatory step requires you to name your policy and provide a brief description, ensuring clear identification and purpose.

BasicsDetails
NameAllow Find My Device
DescriptionThis policy turns on Find My Device
PlatformWindows
Enable or Disable Find My Device using Intune Security Policy – Table 2
Enable or Disable Find My Device using Intune Security Policy - Fig.4
Enable or Disable Find My Device using Intune Security Policy – Fig.4

Configuration Settings

Following the Basics section, you must configure the policy’s actual settings. Click +Add settings to select the desired options. This Configuration settings section is mandatory and requires completion to proceed. When you click Add Settings, the Settings Picker window appears.

  • Search for policies by keyword or browse by category
  • Here, I select Experience as a category
  • I choose Allow Find My Device settings from the given list.
Enable or Disable Find My Device using Intune Security Policy - Fig.5
Enable or Disable Find My Device using Intune Security Policy – Fig.5

Enable or Disable Allow Find My Device

After closing the settings window, the main configuration screen shows up. This screen allows us to change various settings. Here, the Allow Find My Device policy is allowed (Enabled) by default. From here, we can change the policy settings to Block (disable) by toggling it left.

Enable or Disable Find My Device using Intune Security Policy - Fig.6
Enable or Disable Find My Device using Intune Security Policy – Fig.6

Scope Tags

In Intune, the Scope Tags section allows you to organize and manage access to your policies. Using tags, you can control who sees and uses specific policies based on criteria like department or location. While helpful for organization, adding scope tags is optional; you can proceed to the Next step without them.

Enable or Disable Find My Device using Intune Security Policy - Fig.7
Enable or Disable Find My Device using Intune Security Policy – Fig.7

Assignments

The Assignments section is where you determine which groups receive the Allow Find My Device Policy. To assign the policy, click Add Group within the Include Groups section. This will open a window where you can select the desired groups.

  • After making your selection, click the Select button.
  • Then click on the Next button to move on.
Enable or Disable Find My Device using Intune Security Policy - Fig.8
Enable or Disable Find My Device using Intune Security Policy – Fig.8

Review + Create

After assigning the policy to the device group, you’ll arrive at the Review + Create page. This is your final chance to examine all settings and configurations. If changes are required, use the Previous button. Once you’re satisfied, click Create to deploy the policy.

Enable or Disable Find My Device using Intune Security Policy - Fig.9
Enable or Disable Find My Device using Intune Security Policy – Fig.9

Device and User Check-in Status

It’s crucial to sync your device with the Company Portal before reviewing the results, as this speeds up policy application. Then, go to Devices > Windows > Configuration and find your policy. The deployment status will be shown in the ‘Device and user check-in status’ section.

Enable or Disable Find My Device using Intune Security Policy - Fig.10
Enable or Disable Find My Device using Intune Security Policy – Fig.10

Client Side Verification

For client-side verification, use the Event Viewer. Navigate to Applications and Services Logs > Microsoft > Windows > Device Management > Enterprise Diagnostic Provider > Admin. To quickly find your policy results within the list, utilize the Filter Current Log option in the right pane.

Policy Details
MDM PolicyManager: Set policy int, Policy: (AllowFindMyDevice), Area: (Experience), EnrollmentID requesting merge: (B1E9301C-8666-412A-BA2F-3BF8A55BFA62), Current User: (Device), Int: (0x1), Enrollment Type: (0x6), Scope: (0x0). Event ID -813
Enable or Disable Find My Device using Intune Security Policy - Fig.11
Enable or Disable Find My Device using Intune Security Policy – Fig.11

Need Further Assistance or Have Technical Questions?

Join the LinkedIn Page and Telegram group to get the latest step-by-step guides and news updates. Join our Meetup Page to participate in User group meetings. Also, Join the WhatsApp Community to get the latest news on Microsoft Technologies. We are there on Reddit as well.

Author

Anoop C Nair has been Microsoft MVP for 10 consecutive years from 2015 onwards. He is a Workplace Solution Architect with more than 22+ years of experience in Workplace technologies. He is a Blogger, Speaker, and Local User Group Community leader. His primary focus is on Device Management technologies like SCCM and Intune. He writes about technologies like Intune, SCCM, Windows, Cloud PC, Windows, Entra, Microsoft Security, Career, etc.

Written by

Anoop C Nair is Workplace Technology solution architect with 25+ years of experience in global enterprise organizations such as JP Morgan, Capgemini, etc. Microsoft Certified Trainer. Microsoft MVP from 2015 onwards for consecutive 11+ years! He also conducts Intune and modern workplace tech training for enterprise organizations. He is Blogger, Speaker, and Founder of HTMD Community and HTMD Conference. His main focus is on Device Management technologies like Intune, Windows, Cloud PC. He writes about technologies like Intune, SCCM, Windows, Cloud PC, Windows, Entra, Microsoft Security.

Discussion

Join the discussion

Your email address will not be published. Required fields are marked *

Related guides

Intune

Simplify Windows Devices to Run Only the Required Applications using Intune

Key Takeaways Hey, let’s learn about Simplify Windows Devices to Run Only the Required Applications using Intune. This policy lets administrators replace the default windows shell with a custom or lightweight shell. it improves performance by using system resources and is useful for devices that run a dedicated application. If the policy is disabled or […]

AC Anoop C Nair 8 min read
Intune

Enhance macOS Compliance with Custom Security and Compliance Checks to Improve Device Security using Microsoft Intune

Key Takeaways In this post we are discussing about Enhance macOS Compliance with Custom Security and Compliance Checks to Improve Device Security using Microsoft Intune. Microsoft has announced the general availability of Custom Compliance Settings for macOS in Microsoft Intune. The feature helps organizations strengthen security controls while supporting many types of macOS management scenarios. […]

AC Anoop C Nair 4 min read
Intune

Manage Samsung Galaxy Firmware Versions to Improve Security and Compliance using Microsoft Intune

Key Takeaways In this post we are discussing Manage Samsung Galaxy Firmware Versions to Improve Security and Compliance using Microsoft Intune. Microsoft Intune has received a new update that expands firmware management capabilities for Samsung Galaxy devices through Firmware Versionsintegration. This enhancement gives IT administrators more control over firmware and operating system updates, helping them […]

AC Anoop C Nair 4 min read
Intune

MS Intune Adds Windows Registry Data Collection to Device Inventory for Single Values All Key Values and Subkeys

Key Takeaways Microsoft Intune 2607 introduces Windows Registry Data collection in Device Inventory, allowing IT admins to verify actual device configurations without relying on custom discovery or remediation scripts. Using the Properties Catalog, admins can collect registry information through Single Value, All Values Under a Key (Non-Recursive), or Same Value Across Subkeys. MS Intune Adds […]

AC Anoop C Nair 5 min read