“Personal folder redirection is setting users’ Desktop, pictures, and documents folders to OneDrive for Business. It can be accomplished with Microsoft Intune and is nearly invisible to users while having many benefits”


What is personal folder redirection?

Personal folder redirection is setting users’ Desktop, pictures, and documents folders to OneDrive for Business. It can be accomplished with Microsoft Intune and is nearly invisible to users while having many benefits. 

Redirecting users’ personal folders allows for easier device migrations or swaps. Because user data is backed up on OneDrive when the user signs into a new device all their personal data will be automatically downloaded. This occurs in under an hour in most cases, and the user doesn’t have to worry about saving files manually before switching devices. This makes replacing broken, lost, or stolen devices a cinch – the same is true for scheduled device upgrades. 

Further, with personal folder redirection, users’ documents, pictures, and other files will automatically be backed up and version controlled so losing documents becomes a thing of the past. If the user’s device is hacked, restoration becomes much easier – just roll back to a previous version. 

Finally, with personal folder redirection live document editing becomes possible on ‘local’ files. Open a document, share it with whomever, and everyone can begin editing a document that looks like its saved on a user’s desktop. This is very convenient when someone might want another set of eyes to review a document, or a team needs to release a report. 


How it works

Administrative Templates allow administrators to setup Known Folder Move on behalf of the end user to automatically configure redirection of DesktopPictures, and Documents folders to OneDrive for Business. 

Microsoft maintains a full set of Administrative Template files for Microsoft 365 Apps for enterprise allowing for easy deployment and maintenance from within Microsoft Intune. 

Administrators can create and deploy configurations for OneDrive for Business via Microsoft Intune. 

End user devices will automatically apply the configuration and initiate the Known Folder Move setup process. 


Steps to set it up

These instructions require administrative privileges and must be performed by your system administrators. If you are not a system administrator, pass this article on and your admins can implement this capability on your behalf. 


  1. Login to Azure and navigate to Azure Active Directory.

  2. Under Overview, copy your Tenant ID for later use.



Profile Creation

1. Login to Azure and navigate to Microsoft Intune, navigate to Device configuration > Profile, then click Create Profile.

2. Select platform Windows 10 and later and profile Administrative Templates, then click Create.



3. Give the profile an appropriate name e.g. Department – Win10 – Device – Administrative Template – Microsoft OneDrive v1 and click Next.

4. Search for Silently move Windows known folders to OneDrive under Computer Configuration (the default selection), click on the search result.



5. Select Enabled, enter your Tenant ID from the Preparation steps above, then choose if you would like to notify end users. Click Ok.

Note: I usually notify end users to keep them informed of the change.



6. Search for Silently sign in users to the OneDrive sync client with their Windows credentials and repeat the process of enabling this policy.



7. Once your configuration is complete click Next and define Scope then Assignment and finally click Create to complete the profile setup.

There are many polices available for Microsoft 365 Apps for enterprise, consider some of the following while deploying Known Folder Redirect.

  • Require users to confirm large delete operations

  • Allow syncing OneDrive accounts for only specific organizations

  • Enable Automatic Updates

  • Hide option to enable or disable updates

  • Update Channel




Need help?

Mobile Mentor has a team of certified and experienced Microsoft engineers who can help you setup Azure Admin Consent workflow for your business. We offer multiple services related to Intune and the modern workplace. Feel free to contact us.

Microsoft Intune is a part of Microsoft Endpoint Manager and provides the cloud infrastructure, the cloud-based mobile device management (MDM), cloud-based mobile application management (MAM), and cloud-based PC management for your company.