Skip to main content

Remote PowerShell for Intune

Run remote PowerShell on Intune-managed devices

Run remote PowerShell on Microsoft Intune-managed Windows devices with streamed output, role-based access, cancellation, and captured session evidence.

Streamed command output
Focused remote execution
Role-based access
Captured session history

Run PowerShell where the device evidence is.

When a built-in diagnostic view cannot answer the next question, use PowerShell from the same connected device and support-session context.

Command context

01

Command context

Current device target

The command runs against the Windows endpoint already selected for the live support session.

02

Command context

Streamed output

Follow command progress and output while the task is running instead of waiting for a later deployment report.

03

Command context

Command cancellation

Stop a running command when the evidence is sufficient or the task should not continue.

04

Command context

Shared investigation context

Keep the command alongside the processes, services, files, events, and other checks that led to it.

Use a custom check without building a new deployment.

Remote PowerShell supports the one-off diagnostic and remediation work that appears during an active endpoint incident.

Practical use

  1. Validate a configuration

    Read the specific Windows, application, network, or management state required to confirm a suspected cause.

Practical use

  1. Collect focused evidence

    Return only the command output needed for the investigation or service-desk ticket.

Practical use

  1. Apply an approved remediation

    Run a targeted change when the administrator role and support process authorize it.

Practical use

  1. Confirm the result

    Use the command output or another live tool to verify the endpoint state after the action.

Keep powerful endpoint access controlled.

PowerShell access should be deliberate. IntuneRT aligns execution with tenant identity, tool permissions, and reviewable session evidence.

Guardrails

  1. Permissioned tool access

    Limit PowerShell availability to the administrator roles that require command execution.

Guardrails

  1. Visible commands and output

    Keep the submitted command and returned output in the support-session record.

Guardrails

  1. Accountable actions

    Associate command activity with the authenticated administrator and selected endpoint.

Guardrails

  1. Clear handoff

    Summarize the diagnostic intent, action, and outcome for the ticket or next support tier.

From live evidence to a documented outcome.

Keep the investigation, controlled action, and support record in one operational flow.

01

Live support

Confirm the target and intent

Open the connected Intune-managed endpoint and establish the diagnostic question the command needs to answer.

02

Live support

Run and review the command

Execute the focused PowerShell command, follow streamed output, and cancel if the task should stop.

03

Live support

Verify and document

Confirm the resulting device state and retain the command, output, and outcome with the support session.

Questions from Intune administrators.

Practical answers about where IntuneRT fits, how it connects, and how actions stay controlled.

FAQ

  1. Can Intune run PowerShell scripts without IntuneRT?

    Yes. Microsoft Intune can assign PowerShell scripts and remediations to managed devices. IntuneRT is intended for interactive, device-specific work during a live support session with immediate output and supporting endpoint context.

FAQ

  1. Is remote PowerShell available to every administrator?

    It does not need to be. IntuneRT tool permissions can restrict PowerShell access to the roles that require command execution.

FAQ

  1. Can a running command be stopped?

    Yes. The PowerShell tool supports cancelling a running command when the task should not continue.

FAQ

  1. Is command activity retained?

    PowerShell activity can remain with the support-session history so the investigation and outcome are reviewable.

Continue from the support outcome you need into the live tools that help deliver it.

Related capability

  1. Intune remote troubleshooting

    Use PowerShell as one focused step within a complete live troubleshooting and action workflow.

Related capability

  1. Intune device diagnostics

    Start with structured live views before choosing whether a custom command is necessary.

Related capability

  1. Explore every IntuneRT tool

    Review the built-in tools for processes, services, files, registry, events, applications, and more.

Start a live Intune troubleshooting session.

Try IntuneRT with up to 5 devices and move from current endpoint evidence to accountable action.

  • 5-device free tier
  • No credit card
  • Microsoft sign-in