Win 11 Upgrade – few important things

/ Uncategorized/ 0 comments

Upgrade Plans PreReqs Wi-Fi profile changes Credential Guard overview | Microsoft Learn Default enablement Starting in Windows 11, 22H2 and Windows Server 2025, VBS and Credential Guard are enabled by default on devices that meet the requirements. The default enablement is without UEFI Lock, thus allowing administrators to disable Credential Guard remotely if needed. When Credential Guard is enabled, VBS is automatically enabled too. Security Baseline

Read More

Autopilot (V1) vs Device Preparation (V2)

/ Uncategorized/ 0 comments

Feature Windows Autopilotdevice preparation Windows Autopilot Features Support for Government Community Cloud High (GCCH) and Department of Defense (DoD) environments. Faster, more consistent provisioning experience. Near real-time monitoring and troubleshooting info. Support for multiple device types (HoloLens, Teams Meeting Room). Many customization options for the provisioning experience. Supported modes User-driven. User-driven. Pre-provisioned. Self-deploying. Existing devices. Join types supported Microsoft Entra join.

Read More

Naming Conventions Intune & Entra ID etc.

/ Uncategorized/ 0 comments

Intune Policy Configuration Platform – Set – Profile Type – Setting name [(optional info)] – Version Platform Set Profile Type Setting name optional info Version Indicator for platform type e.g. Win, macOS Indictor profile set e.g. Default, Kiosk, SharedDevices, PAW Indicator profile type e.g. Device restrictions, Custom Indicator setting e.g. Edge Favorites, for Custom AreaName/PolicyName Optional flag indicator e.g. test

Read More

Device identity and management architecture

/ EntraID, Intune/ 0 comments

If you are planning to manage your devices via EntraID in the clud in the future, there are some architectural decisions to be made in the area of device identity, device management and the type and manner of synchronization tools and methods. I will try to summarize the main decision paths as briefly as possible to give you an idea

Read More

New Update (in Preview) for Defender for Endpoint: Enroll devices without joining them to Azure AD:

/ Defender for Endpoint/ 0 comments

New Update (in Preview) for Defender for Endpoint: Enroll devices without joining them to Azure AD: You need to enable the preview-feature in the Defender for Endpoint-Portal: Settings > Endpoints > Advanced features > Preview features And create a dynamic group based on the systemLabels property containing the “MDEManaged” value to get all MDE-managed devices “Important: If a Windows device was managed by Defender for Endpoint via

Read More

Intune Suite

/ Intune, Uncategorized/ 0 comments

Intune Suite add-on capabilities Capability Standalone add-on Intune Plan 2 Intune Suite Advanced endpoint analytics ✔️ Endpoint Privilege Management ✔️ ✔️ Microsoft Tunnel for Mobile Application Management ✔️ ✔️ Remote help ✔️ ✔️ Specialized devices management ✔️ ✔️ Use Intune Suite add-on capabilities – Microsoft Intune | Microsoft Learn .

Coming soon to Intune:

/ Intune, Uncategorized/ 0 comments

Organizational messages generally available May 31st! Reach users more effectively: organizational messages in Windows – Microsoft Community Hub Windows driver and firmware managrment Coming soon to Intune: Windows driver and firmware updates – Microsoft Community Hub Preview Available: June 2023 Rollout Start: November 2023 advanced app management and patching Keep apps secure and updated with advanced app management and patching – Microsoft

Read More