The 'Process even if the Group Policy objects have not changed' option updates and reapplies policies even if the policies have not changed. The recommended state for this setting is: Enabled: TRUE (checked). Rationale: Setting this option to true (checked) will ensure unauthorized changes that might have been configured locally are forced to match the domain-based Group Policy settings again. Impact: Group Policies will be reapplied even if they have not been changed, which could have a slight impact on performance.
Solution
To establish the recommended configuration, set the following Device Configuration Policy to Enabled: TRUE (checked): To access the Device Configuration Policy from the Intune Home page: Click Devices Click Configuration profiles Click Create profile Select the platform (Windows 10 and later) Select the profile (Administrative Templates) Click Create Enter a Name Click Next Configure the following Setting Path: Computer Configuration\System\Group Policy Setting Name: Configure registry policy processing: Process even if the Group Policy objects have not changed Configuration: Enabled: TRUE (checked) Select OK Continue through the Wizard to complete the creation of the profile (profile assignments, applicability etc.) Note: More than one configuration setting from each of the Configuration profiles (ex: Administrative Templates, Custom etc.) can be added to each Device Configuration Policy. Default Value: Disabled. (Group policies are not reapplied if they have not been changed.)