PowerShell scripts to validate connectivity to Microsoft service endpoints used by Intune, Windows Update, Defender, Microsoft 365, Azure AD, and other enterprise cloud services.
This repository is designed for real-world IT and endpoint troubleshooting: firewall validation, proxy check, network diagnostics, and endpoint accessibility testing from Windows clients and servers.
flowchart TB
subgraph L1[Data Flow]
A[Windows Client / Server]
B[CheckMicrosoftEndpointsV2.ps1]
C[CheckMEMEndpoints.ps1]
D[MaintainEndpointBaseline.ps1]
end
subgraph L2[Firewall / Proxy / Internet]
E[Firewall / Proxy / DNS]
F[Internet Path]
end
subgraph L3[Endpoint Validation]
G[HTTPS TCP Connectivity]
H[Ping / Latency]
I[Response Time Checks]
J[MEM / Intune Baseline]
end
subgraph L4[Microsoft Services]
K[Windows Update]
L[Intune / Endpoint Manager]
M[Defender]
N[Microsoft 365 / Azure AD]
end
subgraph L5[Reporting]
O[HTML Report]
P[Drift & Baseline Output]
end
A --> B
A --> C
A --> D
B --> G
B --> H
B --> I
C --> J
D --> P
E --> F
F --> G
F --> H
F --> I
F --> J
G --> K
G --> L
G --> M
G --> N
H --> K
H --> L
H --> M
H --> N
I --> K
I --> L
I --> M
I --> N
B --> O
C --> P
-
CheckMicrosoftEndpointsV2.ps1
Full endpoint connectivity test with selectable services, latency checks, response-time measurement, and optional HTML reporting. -
CheckMEMEndpoints.ps1
Focused Microsoft Endpoint Manager / Intune validation with baseline-based testing and legacy API fallback support. -
MaintainEndpointBaseline.ps1
Detects endpoint drift against a saved baseline and can update or enforce drift checks in automation. -
Info.md and Info_EN.md
Detailed technical documentation with endpoint sources, methodology, and service references.
- Validate Microsoft cloud connectivity from enterprise networks
- Check firewall, proxy, routing, or DNS-related connectivity issues
- Verify Intune and Endpoint Manager access
- Test Windows Update, Defender, Microsoft 365, Azure AD, Autopatch, and related services
- Generate quick status reports for IT operations teams
- PowerShell 5.1 or later
- Windows 10, Windows 11, or Windows Server 2016+
- Internet access for endpoint testing
- No administrator rights required for most checks
# Change to the repository folder
cd "C:\path\to\CheckMicrosoftEndpoints"
# Interactive service selection
.\CheckMicrosoftEndpointsV2.ps1
# Test all services
.\CheckMicrosoftEndpointsV2.ps1 -Services All
# Test Intune + Defender and generate HTML report
.\CheckMicrosoftEndpointsV2.ps1 -Services Intune,Defender -HtmlReport "Microsoft-Endpoints.html" -OpenReport
# MEM / Intune validation
.\CheckMEMEndpoints.ps1- Windows Update for Business
- Windows Autopatch
- Microsoft Intune
- Microsoft Defender
- Azure Active Directory
- Microsoft 365
- Microsoft Store
- Windows Activation
- Microsoft Edge
- Windows Telemetry
.\CheckMicrosoftEndpointsV2.ps1 -Services All -HtmlReport "NetworkReport.html" -OpenReportThis creates a readable HTML report summarizing connectivity state, service results, latency, and response times.
# Check for drift
.\MaintainEndpointBaseline.ps1
# Update the saved baseline after intentional changes
.\MaintainEndpointBaseline.ps1 -UpdateBaseline
# Fail automation when drift is detected
.\MaintainEndpointBaseline.ps1 -FailOnDrift- Info_EN.md — technical documentation in English
- Info.md — technische Doku auf Deutsch
This project is licensed under the GNU General Public License v3.0.
Ronny Alhelm
Enterprise-ready · Microsoft endpoint focused · PowerShell based