diff --git a/.openpublishing.publish.config.json b/.openpublishing.publish.config.json
index 0015a87b88..ca6ed75b69 100644
--- a/.openpublishing.publish.config.json
+++ b/.openpublishing.publish.config.json
@@ -251,7 +251,6 @@
".openpublishing.redirection.browsers.json",
".openpublishing.redirection.education.json",
".openpublishing.redirection.json",
- ".openpublishing.redirection.store-for-business.json",
".openpublishing.redirection.windows-application-management.json",
".openpublishing.redirection.windows-client-management.json",
".openpublishing.redirection.windows-configuration.json",
diff --git a/.openpublishing.redirection.store-for-business.json b/.openpublishing.redirection.store-for-business.json
deleted file mode 100644
index f825112907..0000000000
--- a/.openpublishing.redirection.store-for-business.json
+++ /dev/null
@@ -1,299 +0,0 @@
-{
- "redirections": [
- {
- "source_path": "store-for-business/acquire-apps-windows-store-for-business.md",
- "redirect_url": "/microsoft-store/acquire-apps-microsoft-store-for-business",
- "redirect_document_id": false
- },
- {
- "source_path": "store-for-business/add-unsigned-app-to-code-integrity-policy.md",
- "redirect_url": "/windows/security/threat-protection/windows-defender-application-control/deploy-catalog-files-to-support-windows-defender-application-control",
- "redirect_document_id": false
- },
- {
- "source_path": "store-for-business/app-inventory-managemement-windows-store-for-business.md",
- "redirect_url": "/microsoft-store/app-inventory-management-microsoft-store-for-business",
- "redirect_document_id": false
- },
- {
- "source_path": "store-for-business/app-inventory-management-windows-store-for-business.md",
- "redirect_url": "/microsoft-store/app-inventory-management-microsoft-store-for-business",
- "redirect_document_id": false
- },
- {
- "source_path": "store-for-business/apps-in-windows-store-for-business.md",
- "redirect_url": "/microsoft-store/apps-in-microsoft-store-for-business",
- "redirect_document_id": false
- },
- {
- "source_path": "store-for-business/configure-mdm-provider-windows-store-for-business.md",
- "redirect_url": "/microsoft-store/configure-mdm-provider-microsoft-store-for-business",
- "redirect_document_id": false
- },
- {
- "source_path": "store-for-business/device-guard-signing-portal.md",
- "redirect_url": "/windows/security/threat-protection/windows-defender-application-control/use-device-guard-signing-portal-in-microsoft-store-for-business",
- "redirect_document_id": false
- },
- {
- "source_path": "store-for-business/distribute-apps-to-your-employees-windows-store-for-business.md",
- "redirect_url": "/microsoft-store/distribute-apps-to-your-employees-microsoft-store-for-business",
- "redirect_document_id": false
- },
- {
- "source_path": "store-for-business/manage-apps-windows-store-for-business-overview.md",
- "redirect_url": "/microsoft-store/manage-apps-microsoft-store-for-business-overview",
- "redirect_document_id": false
- },
- {
- "source_path": "store-for-business/manage-mpsa-software-microsoft-store-for-business.md",
- "redirect_url": "/microsoft-store/index",
- "redirect_document_id": false
- },
- {
- "source_path": "store-for-business/manage-orders-windows-store-for-business.md",
- "redirect_url": "/microsoft-store/manage-orders-microsoft-store-for-business",
- "redirect_document_id": false
- },
- {
- "source_path": "store-for-business/manage-settings-windows-store-for-business.md",
- "redirect_url": "/microsoft-store/manage-settings-microsoft-store-for-business",
- "redirect_document_id": false
- },
- {
- "source_path": "store-for-business/manage-users-and-groups-windows-store-for-business.md",
- "redirect_url": "/microsoft-store/manage-users-and-groups-microsoft-store-for-business",
- "redirect_document_id": false
- },
- {
- "source_path": "store-for-business/prerequisites-windows-store-for-business.md",
- "redirect_url": "/microsoft-store/prerequisites-microsoft-store-for-business",
- "redirect_document_id": false
- },
- {
- "source_path": "store-for-business/roles-and-permissions-windows-store-for-business.md",
- "redirect_url": "/microsoft-store/roles-and-permissions-microsoft-store-for-business",
- "redirect_document_id": false
- },
- {
- "source_path": "store-for-business/settings-reference-windows-store-for-business.md",
- "redirect_url": "/microsoft-store/settings-reference-microsoft-store-for-business",
- "redirect_document_id": false
- },
- {
- "source_path": "store-for-business/sign-code-integrity-policy-with-device-guard-signing.md",
- "redirect_url": "/windows/security/threat-protection/windows-defender-application-control/use-signed-policies-to-protect-windows-defender-application-control-against-tampering",
- "redirect_document_id": false
- },
- {
- "source_path": "store-for-business/sign-up-microsoft-store-for-business.md",
- "redirect_url": "/microsoft-store",
- "redirect_document_id": false
- },
- {
- "source_path": "store-for-business/sign-up-windows-store-for-business-overview.md",
- "redirect_url": "/microsoft-store/sign-up-microsoft-store-for-business-overview",
- "redirect_document_id": false
- },
- {
- "source_path": "store-for-business/sign-up-windows-store-for-business.md",
- "redirect_url": "/microsoft-store/index",
- "redirect_document_id": false
- },
- {
- "source_path": "store-for-business/troubleshoot-windows-store-for-business.md",
- "redirect_url": "/microsoft-store/troubleshoot-microsoft-store-for-business",
- "redirect_document_id": false
- },
- {
- "source_path": "store-for-business/update-windows-store-for-business-account-settings.md",
- "redirect_url": "/microsoft-store/update-microsoft-store-for-business-account-settings",
- "redirect_document_id": false
- },
- {
- "source_path": "store-for-business/windows-store-for-business-overview.md",
- "redirect_url": "/microsoft-store/microsoft-store-for-business-overview",
- "redirect_document_id": false
- },
- {
- "source_path": "store-for-business/work-with-partner-microsoft-store-business.md",
- "redirect_url": "/microsoft-365/commerce/manage-partners",
- "redirect_document_id": false
- },
- {
- "source_path": "store-for-business/acquire-apps-microsoft-store-for-business.md",
- "redirect_url": "/microsoft-365/admin/",
- "redirect_document_id": false
- },
- {
- "source_path": "store-for-business/add-profile-to-devices.md",
- "redirect_url": "/microsoft-365/admin/",
- "redirect_document_id": false
- },
- {
- "source_path": "store-for-business/app-inventory-management-microsoft-store-for-business.md",
- "redirect_url": "/microsoft-365/admin/",
- "redirect_document_id": false
- },
- {
- "source_path": "store-for-business/apps-in-microsoft-store-for-business.md",
- "redirect_url": "/microsoft-365/admin/",
- "redirect_document_id": false
- },
- {
- "source_path": "store-for-business/assign-apps-to-employees.md",
- "redirect_url": "/microsoft-365/admin/",
- "redirect_document_id": false
- },
- {
- "source_path": "store-for-business/billing-payments-overview.md",
- "redirect_url": "/microsoft-365/admin/",
- "redirect_document_id": false
- },
- {
- "source_path": "store-for-business/billing-profile.md",
- "redirect_url": "/microsoft-365/admin/",
- "redirect_document_id": false
- },
- {
- "source_path": "store-for-business/billing-understand-your-invoice-msfb.md",
- "redirect_url": "/microsoft-365/admin/",
- "redirect_document_id": false
- },
- {
- "source_path": "store-for-business/configure-mdm-provider-microsoft-store-for-business.md",
- "redirect_url": "/microsoft-365/admin/",
- "redirect_document_id": false
- },
- {
- "source_path": "store-for-business/distribute-apps-from-your-private-store.md",
- "redirect_url": "/microsoft-365/admin/",
- "redirect_document_id": false
- },
- {
- "source_path": "store-for-business/distribute-apps-to-your-employees-microsoft-store-for-business.md",
- "redirect_url": "/microsoft-365/admin/",
- "redirect_document_id": false
- },
- {
- "source_path": "store-for-business/distribute-apps-with-management-tool.md",
- "redirect_url": "/microsoft-365/admin/",
- "redirect_document_id": false
- },
- {
- "source_path": "store-for-business/distribute-offline-apps.md",
- "redirect_url": "/microsoft-365/admin/",
- "redirect_document_id": false
- },
- {
- "source_path": "store-for-business/find-and-acquire-apps-overview.md",
- "redirect_url": "/microsoft-365/admin/",
- "redirect_document_id": false
- },
- {
- "source_path": "store-for-business/index.md",
- "redirect_url": "/microsoft-365/admin/",
- "redirect_document_id": false
- },
- {
- "source_path": "store-for-business/manage-access-to-private-store.md",
- "redirect_url": "/microsoft-365/admin/",
- "redirect_document_id": false
- },
- {
- "source_path": "store-for-business/manage-apps-microsoft-store-for-business-overview.md",
- "redirect_url": "/microsoft-365/admin/",
- "redirect_document_id": false
- },
- {
- "source_path": "store-for-business/manage-orders-microsoft-store-for-business.md",
- "redirect_url": "/microsoft-365/admin/",
- "redirect_document_id": false
- },
- {
- "source_path": "store-for-business/manage-private-store-settings.md",
- "redirect_url": "/microsoft-365/admin/",
- "redirect_document_id": false
- },
- {
- "source_path": "store-for-business/manage-settings-microsoft-store-for-business.md",
- "redirect_url": "/microsoft-365/admin/",
- "redirect_document_id": false
- },
- {
- "source_path": "store-for-business/manage-users-and-groups-microsoft-store-for-business.md",
- "redirect_url": "/microsoft-365/admin/",
- "redirect_document_id": false
- },
- {
- "source_path": "store-for-business/microsoft-store-for-business-education-powershell-module.md",
- "redirect_url": "/microsoft-365/admin/",
- "redirect_document_id": false
- },
- {
- "source_path": "store-for-business/microsoft-store-for-business-overview.md",
- "redirect_url": "/microsoft-365/admin/",
- "redirect_document_id": false
- },
- {
- "source_path": "store-for-business/notifications-microsoft-store-business.md",
- "redirect_url": "/microsoft-365/admin/",
- "redirect_document_id": false
- },
- {
- "source_path": "store-for-business/payment-methods.md",
- "redirect_url": "/microsoft-365/admin/",
- "redirect_document_id": false
- },
- {
- "source_path": "store-for-business/prerequisites-microsoft-store-for-business.md",
- "redirect_url": "/microsoft-365/admin/",
- "redirect_document_id": false
- },
- {
- "source_path": "store-for-business/release-history-microsoft-store-business-education.md",
- "redirect_url": "/microsoft-365/admin/",
- "redirect_document_id": false
- },
- {
- "source_path": "store-for-business/roles-and-permissions-microsoft-store-for-business.md",
- "redirect_url": "/microsoft-365/admin/",
- "redirect_document_id": false
- },
- {
- "source_path": "store-for-business/settings-reference-microsoft-store-for-business.md",
- "redirect_url": "/microsoft-365/admin/",
- "redirect_document_id": false
- },
- {
- "source_path": "store-for-business/sfb-change-history.md",
- "redirect_url": "/microsoft-365/admin/",
- "redirect_document_id": false
- },
- {
- "source_path": "store-for-business/sign-up-microsoft-store-for-business-overview.md",
- "redirect_url": "/microsoft-365/admin/",
- "redirect_document_id": false
- },
- {
- "source_path": "store-for-business/troubleshoot-microsoft-store-for-business.md",
- "redirect_url": "/microsoft-365/admin/",
- "redirect_document_id": false
- },
- {
- "source_path": "store-for-business/update-microsoft-store-for-business-account-settings.md",
- "redirect_url": "/microsoft-365/admin/",
- "redirect_document_id": false
- },
- {
- "source_path": "store-for-business/whats-new-microsoft-store-business-education.md",
- "redirect_url": "/microsoft-365/admin/",
- "redirect_document_id": false
- },
- {
- "source_path": "store-for-business/working-with-line-of-business-apps.md",
- "redirect_url": "/microsoft-365/admin/",
- "redirect_document_id": false
- }
- ]
-}
diff --git a/education/windows/index.yml b/education/windows/index.yml
index 4bc8fe8393..981e1d8466 100644
--- a/education/windows/index.yml
+++ b/education/windows/index.yml
@@ -12,22 +12,16 @@ metadata:
author: paolomatarazzo
ms.author: paoloma
manager: aaroncz
- ms.date: 07/22/2024
+ ms.date: 10/10/2024
highlightedContent:
items:
- - title: Get started with Windows 11 SE
- itemType: get-started
- url: windows-11-se-overview.md
- - title: Windows 11, version 23H2
+ - title: Windows 11, version 24H2
itemType: whats-new
- url: /windows/whats-new/whats-new-windows-11-version-23h2
+ url: /windows/whats-new/whats-new-windows-11-version-24h2
- title: Explore all Windows trainings and learning paths for IT pros
itemType: learn
url: https://learn.microsoft.com/en-us/training/browse/?products=windows&roles=administrator
- - title: Deploy applications to Windows 11 SE with Intune
- itemType: how-to-guide
- url: /education/windows/tutorial-deploy-apps-winse
productDirectory:
title: Get started
diff --git a/education/windows/windows-11-se-faq.yml b/education/windows/windows-11-se-faq.yml
index 4a9b022c07..c33dec8686 100644
--- a/education/windows/windows-11-se-faq.yml
+++ b/education/windows/windows-11-se-faq.yml
@@ -1,9 +1,9 @@
### YamlMime:FAQ
metadata:
title: Windows 11 SE Frequently Asked Questions (FAQ)
- description: Use these frequently asked questions (FAQ) to learn important details about Windows 11 SE.
+ description: Use these frequently asked questions (FAQ) to learn important details about Windows 11 SE.
ms.topic: faq
- ms.date: 01/16/2024
+ ms.date: 10/10/2024
appliesto:
- ✅ Windows 11 SE
@@ -30,7 +30,7 @@ sections:
- Express yourself and celebrate accomplishments with the *emoji and GIF panel* and *Stickers*
- name: Deployment
questions:
- - question: Can I load Windows 11 SE on any hardware?
+ - question: Can I load Windows 11 SE on any hardware?
answer: |
Windows 11 SE is only available on devices that are built for education. To learn more, see [Windows 11 SE Overview](/education/windows/windows-11-se-overview).
- question: Can I PXE boot a Windows SE device?
diff --git a/education/windows/windows-11-se-overview.md b/education/windows/windows-11-se-overview.md
index e5fd11df2b..3c0a5f8d93 100644
--- a/education/windows/windows-11-se-overview.md
+++ b/education/windows/windows-11-se-overview.md
@@ -2,7 +2,7 @@
title: Windows 11 SE Overview
description: Learn about Windows 11 SE, and the apps that are included with the operating system.
ms.topic: overview
-ms.date: 01/09/2024
+ms.date: 10/10/2024
appliesto:
- ✅ Windows 11 SE
ms.collection:
@@ -96,9 +96,9 @@ The following applications can also run on Windows 11 SE, and can be deployed us
| `CKAuthenticator` | 3.6+ | `Win32` | `ContentKeeper` |
| `Class Policy` | 116.0.0 | `Win32` | `Class Policy` |
| `Classroom.cloud` | 1.40.0004 | `Win32` | `NetSupport` |
-| `Clipchamp` | 2.5.2. | `Store` | `Microsoft` |
+| `Clipchamp` | 2.5.2. | `Store` | `Microsoft` |
| `CoGat Secure Browser` | 11.0.0.19 | `Win32` | `Riverside Insights` |
-| `ColorVeil` | 4.0.0.175 | `Win32` | `East-Tec` |
+| `ColorVeil` | 4.0.0.175 | `Win32` | `East-Tec` |
| `ContentKeeper Cloud` | 9.01.45 | `Win32` | `ContentKeeper Technologies` |
| `DigiExam` | 14.1.0 | `Win32` | `Digiexam` |
| `Digital Secure testing browser` | 15.0.0 | `Win32` | `Digiexam` |
diff --git a/education/windows/windows-11-se-settings-list.md b/education/windows/windows-11-se-settings-list.md
index 1c973e2035..5e09c2f2d1 100644
--- a/education/windows/windows-11-se-settings-list.md
+++ b/education/windows/windows-11-se-settings-list.md
@@ -2,7 +2,7 @@
title: Windows 11 SE settings list
description: Windows 11 SE automatically configures settings in the operating system. Learn more about the settings you can control and manage, and the settings you can't change.
ms.topic: reference
-ms.date: 05/06/2024
+ms.date: 10/10/2024
appliesto:
- ✅ Windows 11 SE
ms.collection:
diff --git a/store-for-business/breadcrumb/toc.yml b/store-for-business/breadcrumb/toc.yml
deleted file mode 100644
index 4b1853471b..0000000000
--- a/store-for-business/breadcrumb/toc.yml
+++ /dev/null
@@ -1,7 +0,0 @@
-- name: Docs
- tocHref: /
- topicHref: /
- items:
- - name: Microsoft Store for Business
- tocHref: /microsoft-store
- topicHref: /microsoft-store/index
\ No newline at end of file
diff --git a/store-for-business/docfx.json b/store-for-business/docfx.json
deleted file mode 100644
index e29e3bfdae..0000000000
--- a/store-for-business/docfx.json
+++ /dev/null
@@ -1,81 +0,0 @@
-{
- "build": {
- "content": [
- {
- "files": [
- "**/*.md",
- "**/**.yml"
- ],
- "exclude": [
- "**/obj/**",
- "**/includes/**",
- "README.md",
- "LICENSE",
- "LICENSE-CODE",
- "ThirdPartyNotices"
- ]
- }
- ],
- "resource": [
- {
- "files": [
- "**/*.png",
- "**/*.jpg"
- ],
- "exclude": [
- "**/obj/**",
- "**/includes/**"
- ]
- }
- ],
- "overwrite": [],
- "externalReference": [],
- "globalMetadata": {
- "recommendations": true,
- "adobe-target": true,
- "ms.collection": [
- "tier2"
- ],
- "breadcrumb_path": "/microsoft-store/breadcrumb/toc.json",
- "uhfHeaderId": "MSDocsHeader-Archive",
- "is_archived": true,
- "is_retired": true,
- "ROBOTS": "NOINDEX,NOFOLLOW",
- "ms.author": "trudyha",
- "audience": "ITPro",
- "ms.service": "store-for-business",
- "ms.topic": "article",
- "ms.date": "05/09/2017",
- "searchScope": [
- "Store"
- ],
- "feedback_system": "None",
- "hideEdit": true,
- "_op_documentIdPathDepotMapping": {
- "./": {
- "depot_name": "MSDN.store-for-business",
- "folder_relative_path_in_docset": "./"
- }
- },
- "contributors_to_exclude": [
- "dstrome2",
- "rjagiewich",
- "American-Dipper",
- "claydetels19",
- "jborsecnik",
- "v-stchambers",
- "shdyas",
- "Stacyrch140",
- "garycentric",
- "dstrome",
- "alekyaj",
- "aditisrivastava07",
- "padmagit77"
- ]
- },
- "fileMetadata": {},
- "template": [],
- "dest": "store-for-business",
- "markdownEngineName": "markdig"
- }
-}
diff --git a/windows/client-management/manage-windows-copilot.md b/windows/client-management/manage-windows-copilot.md
index d48ca50d9a..d2904f504a 100644
--- a/windows/client-management/manage-windows-copilot.md
+++ b/windows/client-management/manage-windows-copilot.md
@@ -16,7 +16,7 @@ appliesto:
# Updated Windows and Microsoft Copilot experience
->**Looking for consumer information?** See [Welcome to Copilot in Windows](https://support.microsoft.com/topic/675708af-8c16-4675-afeb-85a5a476ccb0).
+>**Looking for consumer information?** See [Welcome to Copilot in Windows](https://support.microsoft.com/topic/675708af-8c16-4675-afeb-85a5a476ccb0). **Looking for more information on Microsoft Copilot experiences?** See [Understanding the different Microsoft Copilot experiences](https://support.microsoft.com/topic/cfff4791-694a-4d90-9c9c-1eb3fb28e842).
## Enhanced data protection with enterprise data protection
diff --git a/windows/client-management/mdm/index.yml b/windows/client-management/mdm/index.yml
index f1b84cf506..632aec5fb8 100644
--- a/windows/client-management/mdm/index.yml
+++ b/windows/client-management/mdm/index.yml
@@ -9,7 +9,7 @@ metadata:
ms.topic: landing-page
ms.collection:
- tier1
- ms.date: 10/25/2023
+ ms.date: 10/07/2024
ms.localizationpriority: medium
# linkListType: architecture | concept | deploy | download | get-started | how-to-guide | learn | overview | quickstart | reference | tutorial | video | whats-new
@@ -27,8 +27,8 @@ landingContent:
url: configuration-service-provider-support.md
- text: Device description framework (DDF) files
url: configuration-service-provider-ddf.md
- - text: BitLocker CSP
- url: bitlocker-csp.md
+ - text: Contribute to CSP reference
+ url: contribute-csp-reference.md
- text: Declared Configuration protocol
url: ../declared-configuration.md
@@ -42,8 +42,8 @@ landingContent:
url: policy-configuration-service-provider.md
- text: Policy DDF file
url: configuration-service-provider-ddf.md
- - text: Policy CSP - Start
- url: policy-csp-start.md
+ - text: Policy CSP - Defender
+ url: policy-csp-defender.md
- text: Policy CSP - Update
url: policy-csp-update.md
diff --git a/windows/client-management/mdm/office-csp.md b/windows/client-management/mdm/office-csp.md
index 70692efc8b..5dc08b8a09 100644
--- a/windows/client-management/mdm/office-csp.md
+++ b/windows/client-management/mdm/office-csp.md
@@ -1,7 +1,7 @@
---
title: Office CSP
description: Learn more about the Office CSP.
-ms.date: 01/18/2024
+ms.date: 10/10/2024
---
@@ -11,7 +11,7 @@ ms.date: 01/18/2024
-The Office configuration service provider (CSP) enables a Microsoft Office client to be installed on a device via the Office Deployment Tool (ODT). For more information, see [Configuration options for the Office Deployment Tool](/deployoffice/office-deployment-tool-configuration-options) and [How to assign Office 365 apps to Windows 10 devices with Microsoft Intune](/intune/apps-add-office365).
+The Office configuration service provider (CSP) enables a Microsoft Office client to be installed on a device via the Office Deployment Tool (ODT). For more information, see [Configuration options for the Office Deployment Tool](/deployoffice/office-deployment-tool-configuration-options) and [Add Microsoft 365 Apps to Windows devices with Microsoft Intune](/mem/intune/apps/apps-add-office365).
@@ -587,7 +587,7 @@ To get the current status of Office 365 on the device.
| 17001 | ERROR_QUEUE_SCENARIO
Failed to queue installation scenario in C2RClient | Failure |
| 17002 | ERROR_COMPLETING_SCENARIO
Failed to complete the process. Possible reasons:
Installation canceled by userInstallation canceled by another installationOut of disk space during installation Unknown language ID | Failure |
| 17003 | ERROR_ANOTHER_RUNNING_SCENARIO
Another scenario is running | Failure |
-| 17004 | ERROR_COMPLETING_SCENARIO_NEED_CLEAN_UP
Possible reasons:Unknown SKUsContent does't exist on CDN- Such as trying to install an unsupported LAP, like zh-sg
- CDN issue that content is not available
Signature check issue, such as failed the signature check for Office contentUser canceled | Failure |
+| 17004 | ERROR_COMPLETING_SCENARIO_NEED_CLEAN_UP
Possible reasons:Unknown SKUsContent doesn't exist on CDN- Such as trying to install an unsupported LAP, like zh-sg
- CDN issue that content is not available
Signature check issue, such as failed the signature check for Office contentUser canceled | Failure |
| 17005 | ERROR_SCENARIO_CANCELLED_AS_PLANNED | Failure |
| 17006 | ERROR_SCENARIO_CANCELLED
Blocked update by running apps | Failure |
| 17007 | ERROR_REMOVE_INSTALLATION_NEEDED
The client is requesting client clean-up in a "Remove Installation" scenario | Failure |
diff --git a/windows/client-management/mdm/policy-csp-audit.md b/windows/client-management/mdm/policy-csp-audit.md
index 3e7b9cbfee..a3a20cf60a 100644
--- a/windows/client-management/mdm/policy-csp-audit.md
+++ b/windows/client-management/mdm/policy-csp-audit.md
@@ -1,7 +1,7 @@
---
title: Audit Policy CSP
description: Learn more about the Audit Area in Policy CSP.
-ms.date: 08/06/2024
+ms.date: 10/10/2024
---
@@ -846,7 +846,7 @@ Volume: Low.
-This policy setting allows you to audit events generated by special logons such as the following: The use of a special logon, which is a logon that has administrator-equivalent privileges and can be used to elevate a process to a higher level. A logon by a member of a Special Group. Special Groups enable you to audit events generated when a member of a certain group has logged-on to your network. You can configure a list of group security identifiers (SIDs) in the registry. If any of those SIDs are added to a token during logon and the subcategory is enabled, an event is logged. For more information about this feature, see [article 947223 in the Microsoft Knowledge Base](https://go.microsoft.com/fwlink/?LinkId=121697).
+This policy setting allows you to audit events generated by special logons such as the following: The use of a special logon, which is a logon that has administrator-equivalent privileges and can be used to elevate a process to a higher level. A logon by a member of a Special Group. Special Groups enable you to audit events generated when a member of a certain group has logged-on to your network. You can configure a list of group security identifiers (SIDs) in the registry. If any of those SIDs are added to a token during logon and the subcategory is enabled, an event is logged.
diff --git a/windows/client-management/mdm/policy-csp-localpoliciessecurityoptions.md b/windows/client-management/mdm/policy-csp-localpoliciessecurityoptions.md
index 4333825aac..031f151e0e 100644
--- a/windows/client-management/mdm/policy-csp-localpoliciessecurityoptions.md
+++ b/windows/client-management/mdm/policy-csp-localpoliciessecurityoptions.md
@@ -1454,6 +1454,8 @@ Interactive logon: Message text for users attempting to log on This security set
+> [!IMPORTANT]
+> Windows Autopilot pre-provisioning doesn't work when this policy setting is enabled. For more information, see [Windows Autopilot troubleshooting FAQ](/autopilot/troubleshooting-faq#troubleshooting-policy-conflicts-with-windows-autopilot).
@@ -1503,6 +1505,8 @@ Interactive logon: Message title for users attempting to log on This security se
+> [!IMPORTANT]
+> Windows Autopilot pre-provisioning doesn't work when this policy setting is enabled. For more information, see [Windows Autopilot troubleshooting FAQ](/autopilot/troubleshooting-faq#troubleshooting-policy-conflicts-with-windows-autopilot).
diff --git a/windows/configuration/assigned-access/overview.md b/windows/configuration/assigned-access/overview.md
index 12ed03cf42..29d6b948b2 100644
--- a/windows/configuration/assigned-access/overview.md
+++ b/windows/configuration/assigned-access/overview.md
@@ -298,35 +298,6 @@ To change the default time for Assigned Access to resume, add *IdleTimeOut* (DWO
The Breakout Sequence of Ctrl + Alt + Del is the default, but this sequence can be configured to be a different sequence of keys. The breakout sequence uses the format **modifiers + keys**. An example breakout sequence is CTRL + ALT + A, where CTRL + ALT are the modifiers, and A is the key value. To learn more, see [Create an Assigned Access configuration XML file](configuration-file.md).
-### Keyboard shortcuts
-
-The following keyboard shortcuts are blocked for the user accounts with Assigned Access:
-
-| Keyboard shortcut | Action |
-|------------------------------------------------------|-----------------------------------------------------------------------------------------------|
-| Ctrl + Shift + Esc | Open Task Manager |
-| WIN + , (comma) | Temporarily peek at the desktop |
-| WIN + A | Open Action center |
-| WIN + Alt + D | Display and hide the date and time on the desktop |
-| WIN + Ctrl + F | Find computer objects in Active Directory |
-| WIN + D | Display and hide the desktop |
-| WIN + E | Open File Explorer |
-| WIN + F | Open Feedback Hub |
-| WIN + G | Open Game bar when a game is open |
-| WIN + I | Open Settings |
-| WIN + J | Set focus to a Windows tip when one is available |
-| WIN + O | Lock device orientation |
-| WIN + Q | Open search |
-| WIN + R | Open the Run dialog box |
-| WIN + S | Open search |
-| WIN + Shift + C | Open Cortana in listening mode |
-| WIN + X | Open the Quick Link menu |
-| LaunchApp1 | Open the app that is assigned to this key |
-| LaunchApp2 | Open the app that is assigned to this key. On many Microsoft keyboards, the app is Calculator |
-| LaunchMail | Open the default mail client |
-
-For information on how to customize keyboard shortcuts, see [Assigned Access recommendations](recommendations.md#keyboard-shortcuts).
-
## Remove Assigned Access
Deleting the restricted user experience removes the policy settings associated with the users, but it can't revert all the configurations. For example, the Start menu configuration is maintained.
diff --git a/windows/configuration/assigned-access/policy-settings.md b/windows/configuration/assigned-access/policy-settings.md
index 0bf8a93e30..9e9794304b 100644
--- a/windows/configuration/assigned-access/policy-settings.md
+++ b/windows/configuration/assigned-access/policy-settings.md
@@ -112,3 +112,32 @@ The deny list is used to prevent the user from accessing the apps, which are cur
1. The default rule is to allow all users to launch the desktop programs signed with *Microsoft Certificate* for the system to boot and function. The rule also allows the admin user group to launch all desktop programs.
1. There's a predefined inbox desktop app deny list for the Assigned Access user account, which is updated based on the *desktop app allow list* that you defined in the Assigned Access configuration
1. Enterprise-defined allowed desktop apps are added in the AppLocker allow list
+
+## Keyboard shortcuts
+
+The following keyboard shortcuts are blocked for the user accounts with Assigned Access:
+
+| Keyboard shortcut | Action |
+|------------------------------------------------------|-----------------------------------------------------------------------------------------------|
+| Ctrl + Shift + Esc | Open Task Manager |
+| WIN + , (comma) | Temporarily peek at the desktop |
+| WIN + A | Open Action center |
+| WIN + Alt + D | Display and hide the date and time on the desktop |
+| WIN + Ctrl + F | Find computer objects in Active Directory |
+| WIN + D | Display and hide the desktop |
+| WIN + E | Open File Explorer |
+| WIN + F | Open Feedback Hub |
+| WIN + G | Open Game bar when a game is open |
+| WIN + I | Open Settings |
+| WIN + J | Set focus to a Windows tip when one is available |
+| WIN + O | Lock device orientation |
+| WIN + Q | Open search |
+| WIN + R | Open the Run dialog box |
+| WIN + S | Open search |
+| WIN + Shift + C | Open Cortana in listening mode |
+| WIN + X | Open the Quick Link menu |
+| LaunchApp1 | Open the app that is assigned to this key |
+| LaunchApp2 | Open the app that is assigned to this key. On many Microsoft keyboards, the app is Calculator |
+| LaunchMail | Open the default mail client |
+
+For information on how to customize keyboard shortcuts, see [Assigned Access recommendations](recommendations.md#keyboard-shortcuts).
diff --git a/windows/configuration/provisioning-packages/provision-pcs-with-apps.md b/windows/configuration/provisioning-packages/provision-pcs-with-apps.md
index 3ffeaa9b73..97c7612c30 100644
--- a/windows/configuration/provisioning-packages/provision-pcs-with-apps.md
+++ b/windows/configuration/provisioning-packages/provision-pcs-with-apps.md
@@ -12,7 +12,7 @@ You can install multiple Universal Windows Platform (UWP) apps and Windows deskt
When you add an app in a Windows Configuration Designer wizard, the appropriate settings are displayed based on the app that you select. For instructions on adding an app using the advanced editor in Windows Configuration Designer, see [Add an app using advanced editor](#add-a-windows-desktop-application-using-advanced-editor).
> [!IMPORTANT]
-> If you plan to use Intune to manage your devices, we recommend using Intune to install Microsoft 365 Apps for enterprise. Apps that are installed using a provisioning package cannot be managed or modified using Intune. [Learn how to add Microsoft 365 Apps to Windows devices with Microsoft Intune.](/intune/apps-add-office365)
+> If you plan to use Intune to manage your devices, we recommend using Intune to install Microsoft 365 Apps for enterprise. Apps that are installed using a provisioning package cannot be managed or modified using Intune. [Learn how to add Microsoft 365 Apps to Windows devices with Microsoft Intune.](/mem/intune/apps/apps-add-office365)
## Settings for UWP apps
diff --git a/windows/deployment/do/delivery-optimization-endpoints.md b/windows/deployment/do/delivery-optimization-endpoints.md
index aa1c2a6abf..79e8211757 100644
--- a/windows/deployment/do/delivery-optimization-endpoints.md
+++ b/windows/deployment/do/delivery-optimization-endpoints.md
@@ -32,6 +32,7 @@ Use the table below to reference any particular content types or services endpoi
| *.officecdn.microsoft.com.edgesuite.net, *.officecdn.microsoft.com, *.cdn.office.net | HTTP / 80 | Office CDN updates | [Complete list](/office365/enterprise/office-365-endpoints) of endpoints for Office CDN updates. | Both |
| *.manage.microsoft.com, *.swda01.manage.microsoft.com, *.swda02.manage.microsoft.com, *.swdb01.manage.microsoft.com, *.swdb02.manage.microsoft.com, *.swdc01.manage.microsoft.com, *.swdc02.manage.microsoft.com, *.swdd01.manage.microsoft.com, *.swdd02.manage.microsoft.com, *.swda01-mscdn.manage.microsoft.com, *.swda02-mscdn.manage.microsoft.com, *.swdb01-mscdn.manage.microsoft.com, *.swdb02-mscdn.manage.microsoft.com, *.swdc01-mscdn.manage.microsoft.com, *.swdc02-mscdn.manage.microsoft.com, *.swdd01-mscdn.manage.microsoft.com, *.swdd02-mscdn.manage.microsoft.com | HTTP / 80 HTTPs / 443 | Intune Win32 Apps | [Complete list](/mem/intune/fundamentals/intune-endpoints) of endpoints for Intune Win32 Apps updates. | Both |
| *.statics.teams.cdn.office.net | HTTP / 80 HTTPs / 443 | Teams | Future support is planned for peering and Connected Cache | TBD |
+| *.res.cdn.office.net | HTTP / 80 HTTPs / 443 | Outlook | Future support is planned for peering and Connected Cache | TBD |
| *.assets1.xboxlive.com, *.assets2.xboxlive.com, *.dlassets.xboxlive.com, *.dlassets2.xboxlive.com, *.d1.xboxlive.com, *.d2.xboxlive.com, *.assets.xbox.com, *.xbl-dlassets-origin.xboxlive.com, *.assets-origin.xboxlive.com, *.xvcb1.xboxlive.com, *.xvcb2.xboxlive.com, *.xvcf1.xboxlive.com, *.xvcf2.xboxlive.com | HTTP / 80 | Xbox | | Both |
| *.tlu.dl.adu.microsoft.com, *.nlu.dl.adu.microsoft.com, *.dcsfe.prod.adu.microsoft.com | HTTP / 80 | Device Update | [Complete list](/azure/iot-hub-device-update/) of endpoints for Device Update updates. | Both |
| *.do.dsp.mp.microsoft.com | HTTP / 80 HTTPs / 443 | Microsoft Connected Cache -> Delivery Optimization Services communication | [Complete list](../do/waas-delivery-optimization-faq.yml) of endpoints for Delivery Optimization only. | Connected Cache Managed in Azure |
diff --git a/windows/deployment/do/waas-delivery-optimization-faq.yml b/windows/deployment/do/waas-delivery-optimization-faq.yml
index 1f78efa270..cda14c3e5e 100644
--- a/windows/deployment/do/waas-delivery-optimization-faq.yml
+++ b/windows/deployment/do/waas-delivery-optimization-faq.yml
@@ -17,7 +17,7 @@ metadata:
- ✅ Windows 10
- ✅ Windows Server 2019, and later
- ✅ Delivery Optimization
- ms.date: 09/10/2024
+ ms.date: 10/15/2024
title: Frequently Asked Questions about Delivery Optimization
summary: |
This article answers frequently asked questions about Delivery Optimization.
@@ -42,6 +42,7 @@ summary: |
**Peer-to-peer related questions**:
- [How does Delivery Optimization determine which content is available for peering?](#how-does-delivery-optimization-determine-which-content-is-available-for-peering)
+ - [Where does Delivery Optimization get content from first?](#where-does-delivery-optimization-get-content-from-first)
- [Does Delivery Optimization use multicast?](#does-delivery-optimization-use-multicast)
- [How does Delivery Optimization deal with congestion on the router from peer-to-peer activity on the LAN?](#how-does-delivery-optimization-deal-with-congestion-on-the-router-from-peer-to-peer-activity-on-the-lan)
- [How does Delivery Optimization handle VPNs?](#how-does-delivery-optimization-handle-vpns)
@@ -128,6 +129,11 @@ sections:
- question: How does Delivery Optimization determine which content is available for peering?
answer: |
Delivery Optimization uses the cache content on the device to determine what's available for peering. For the upload source device, there's a limited number (4) of slots for cached content that's available for peering at a given time. Delivery Optimization contains logic that rotates the cached content in those slots.
+ - question: Where does Delivery Optimization get content from first?
+ answer: |
+ When Delivery Optimization client is configured to use peers and Microsoft Connected Cache (MCC), the client connects to both MCC and peers in parallel. There is no prioritization between the two. Once downloading starts in parallel, Delivery Optimization
+ will taper off requests to the HTTP source (CDN or MCC) when the peer connections are able to reach the target download speed. For background downloads, Delivery Optimization will drop HTTP connections if peers are meeting the minimum QoS speed. To manage delaying the default behavior
+ there are a collection of policies that can be used. For more information, see [Delivery Optimization delay policies](waas-delivery-optimization-reference.md#policies-to-prioritize-the-use-of-peer-to-peer-and-cache-server-sources).
- question: Does Delivery Optimization use multicast?
answer: |
No. It relies on the cloud service for peer discovery, resulting in a list of peers and their IP addresses. Client devices then connect to their peers to obtain download files over TCP/IP.
diff --git a/windows/deployment/do/waas-delivery-optimization-reference.md b/windows/deployment/do/waas-delivery-optimization-reference.md
index f43982a7c5..a8f8a4b517 100644
--- a/windows/deployment/do/waas-delivery-optimization-reference.md
+++ b/windows/deployment/do/waas-delivery-optimization-reference.md
@@ -14,7 +14,7 @@ appliesto:
- ✅ Windows 11
- ✅ Windows 10
- ✅ Delivery Optimization
-ms.date: 05/23/2024
+ms.date: 10/15/2024
---
# Delivery Optimization reference
@@ -106,7 +106,7 @@ When Delivery Optimization client is configured to use peers and Microsoft Conne
##### Microsoft Connected Cache (MCC) delay fallback settings
- [Delay foreground download cache server fallback (in secs)](#delay-foreground-download-cache-server-fallback-in-secs) allows you to delay the use of an HTTP source in a foreground (interactive) download that is allowed to use a cache server.
-- [Delay background download from HTTP (in secs)](#delay-background-download-from-http-in-secs) allows you to delay the use of an HTTP source in a background download that is allowed to use a cache server.
+- [Delay background download cache server fallback (in secs)](#delay-background-download-cache-server-fallback-in-secs) allows you to delay the use of an HTTP source in a background download that is allowed to use a cache server.
**If both peer-to-peer and MCC are configured, the peer-to-peer delay settings will take precedence over the cache server delay settings.** This setting allows Delivery Optimization to discover peers first then recognize the fallback setting for the MCC cache server.
@@ -245,13 +245,13 @@ The default behaviors differ between Windows 10 and Windows 11. In Windows 10, t
MDM Setting: **DODelayForegroundDownloadFromHttp**
-Starting in Windows 10, version 1803, allows you to delay the use of an HTTP source in a foreground (interactive) download that is allowed to use peer-to-peer. The maximum value is 4294967295 seconds. **By default, this policy isn't configured.**
+Starting in Windows 10, version 1803, allows you to delay the use of an HTTP source in a foreground (interactive) download that is allowed to use peer-to-peer. **By default, this policy isn't configured.**
### Delay background download from HTTP (in secs)
MDM Setting: **DODelayBackgroundDownloadFromHttp**
-Starting in Windows 10, version 1803, this allows you to delay the use of an HTTP source in a background download that is allowed to use peer-to-peer. The maximum value is 4294967295 seconds. **By default, this policy isn't configured.**
+Starting in Windows 10, version 1803, this allows you to delay the use of an HTTP source in a background download that is allowed to use peer-to-peer. **By default, this policy isn't configured.**
### Delay foreground download cache server fallback (in secs)
diff --git a/windows/deployment/windows-autopatch/deploy/windows-autopatch-device-registration-overview.md b/windows/deployment/windows-autopatch/deploy/windows-autopatch-device-registration-overview.md
index b484ef3547..b65c4701ea 100644
--- a/windows/deployment/windows-autopatch/deploy/windows-autopatch-device-registration-overview.md
+++ b/windows/deployment/windows-autopatch/deploy/windows-autopatch-device-registration-overview.md
@@ -41,7 +41,7 @@ The overall device registration process is as follows:
:::image type="content" source="../media/windows-autopatch-device-registration-overview.png" alt-text="Overview of the device registration process" lightbox="../media/windows-autopatch-device-registration-overview.png":::
1. IT admin reviews [Windows Autopatch device registration prerequisites](#prerequisites-for-device-registration) before registering devices with Windows Autopatch.
-2. IT admin identifies and adds devices or nests other Microsoft Entra device groups into any Microsoft Entra group used with an Autopatch group, imported (WUfB) policies, or direct membership to the **Modern Workplace Devices-Windows-Autopatch-X-groups**.
+2. IT admin identifies and adds devices, or nests other Microsoft Entra device groups when you [create an Autopatch group](../manage/windows-autopatch-manage-autopatch-groups.md#create-an-autopatch-group), [edit an Autopatch group](../manage/windows-autopatch-manage-autopatch-groups.md#edit-an-autopatch-group), or import Windows Update for Business (WUfB) policies.
3. Windows Autopatch then:
1. Performs device readiness prior registration (prerequisite checks).
2. Calculates the deployment ring distribution.
@@ -77,7 +77,7 @@ The deployment ring distribution is designed to release software update deployme
### Device record and deployment ring assignment
-Registering your devices with Windows Autopatch does the following:
+When you register your devices, Windows Autopatch:
1. Makes a record of devices in the service.
2. Assign devices to the [deployment ring set](#default-deployment-ring-calculation-logic) and other groups required for software update management.
diff --git a/windows/deployment/windows-autopatch/prepare/windows-autopatch-configure-network.md b/windows/deployment/windows-autopatch/prepare/windows-autopatch-configure-network.md
index 6666b1fe35..8ba74fe797 100644
--- a/windows/deployment/windows-autopatch/prepare/windows-autopatch-configure-network.md
+++ b/windows/deployment/windows-autopatch/prepare/windows-autopatch-configure-network.md
@@ -63,7 +63,7 @@ The following URLs must be on the allowed list of your proxy and firewall so tha
| Microsoft service | URLs required on allowlist |
| ----- | ----- |
-| Windows Autopatch | - mmdcustomer.microsoft.com
- mmdls.microsoft.com
- logcollection.mmd.microsoft.com
- support.mmd.microsoft.com
- devicelistenerprod.microsoft.com
- login.windows.net
- payloadprod*.blob.core.windows.net
|
+| Windows Autopatch | - mmdcustomer.microsoft.com
- mmdls.microsoft.com
- logcollection.mmd.microsoft.com
- support.mmd.microsoft.com
- devicelistenerprod.microsoft.com
- login.windows.net
- payloadprod*.blob.core.windows.net
- device.autopatch.microsoft.com
|
## Delivery Optimization
diff --git a/windows/privacy/required-windows-11-diagnostic-events-and-fields.md b/windows/privacy/required-windows-11-diagnostic-events-and-fields.md
index 8b37f691d4..dc34bef60a 100644
--- a/windows/privacy/required-windows-11-diagnostic-events-and-fields.md
+++ b/windows/privacy/required-windows-11-diagnostic-events-and-fields.md
@@ -7,7 +7,7 @@ ms.localizationpriority: high
author: DHB-MSFT
ms.author: danbrown
manager: laurawi
-ms.date: 10/01/2024
+ms.date: 10/08/2024
ms.collection: privacy-windows
ms.topic: reference
---
@@ -19,6 +19,8 @@ ms.topic: reference
- Windows 11, version 21H2
+> [!IMPORTANT]
+> This version of Windows 11 has reached its end of servicing date. For more information, see [Microsoft Product Lifecyle](/lifecycle/products).
Required diagnostic data gathers a limited set of information that is critical for understanding the device and its configuration including: basic device information, quality-related information, app compatibility, and Microsoft Store.
@@ -1947,7 +1949,7 @@ Fires at the beginning and end of the HVCI auto-enablement process in sysprep.
The following fields are available:
-- **wilActivity** Contains the thread ID used to match the begin and end events, and for the end event also a HResult indicating sucess or failure.
+- **wilActivity** Contains the thread ID used to match the begin and end events, and for the end event also a HResult indicating success or failure.
### Microsoft.Windows.Security.CodeIntegrity.HVCISysprep.HvciAlreadyEnabled
@@ -5187,7 +5189,7 @@ The following fields are available:
### Update360Telemetry.UpdateAgentMitigationSummary
-This event sends a summary of all the update agent mitigations available for an this update. The data collected with this event is used to help keep Windows secure and up to date.
+This event sends a summary of all the update agent mitigations available for an update. The data collected with this event is used to help keep Windows secure and up to date.
The following fields are available:
@@ -5620,7 +5622,7 @@ The following fields are available:
- **ReportId** With Windows Update, this is the updateID that is passed to Setup. In media setup, this is the GUID for the install.wim.
- **Setup360Extended** Detailed information about the phase/action when the potential failure occurred.
- **Setup360Mode** The phase of Setup360. Example: Predownload, Install, Finalize, Rollback.
-- **Setup360Result** The result of Setup360. This is an HRESULT error code that can be used used to diagnose errors.
+- **Setup360Result** The result of Setup360. This is an HRESULT error code that can be used to diagnose errors.
- **Setup360Scenario** The Setup360 flow type. Example: Boot, Media, Update, MCT.
- **SetupVersionBuildNumber** The build number of Setup360 (build number of target OS).
- **State** The exit state of a Setup360 run. Example: succeeded, failed, blocked, canceled.
@@ -5667,7 +5669,7 @@ The following fields are available:
- **pluginFailureCount** The number of plugins that have failed.
- **pluginsCount** The number of plugins.
- **qualityAssessmentImpact** WaaS Assessment impact for quality updates.
-- **remediationSummary** Result of each operation performed on a device to fix an invalid state or configuration that's preventing the device from getting updates. For example, if Windows Update service is turned off, the fix is to turn the it back on.
+- **remediationSummary** Result of each operation performed on a device to fix an invalid state or configuration that's preventing the device from getting updates. For example, if Windows Update service is turned off, the fix is to turn it back on.
- **usingBackupFeatureAssessment** Relying on backup feature assessment.
- **usingBackupQualityAssessment** Relying on backup quality assessment.
- **usingCachedFeatureAssessment** WaaS Medic run didn't get OS build age from the network on the previous run.
@@ -5680,7 +5682,7 @@ The following fields are available:
### Microsoft.Windows.WERVertical.OSCrash
-This event sends binary data from the collected dump file whenever a bug check occurs, to help keep Windows up to date. The is the OneCore version of this event.
+This event sends binary data from the collected dump file whenever a bug check occurs, to help keep Windows up to date. This is the OneCore version of this event.
The following fields are available:
@@ -6110,7 +6112,7 @@ The following fields are available:
- **CatalogId** The Store Catalog ID for the product being installed.
- **ProductId** The Store Product ID for the product being installed.
-- **SkuId** Specfic edition of the app being updated.
+- **SkuId** Specific edition of the app being updated.
### Microsoft.Windows.StoreAgent.Telemetry.StateTransition
diff --git a/windows/security/identity-protection/hello-for-business/faq.yml b/windows/security/identity-protection/hello-for-business/faq.yml
index c17a99f819..9a2ac25742 100644
--- a/windows/security/identity-protection/hello-for-business/faq.yml
+++ b/windows/security/identity-protection/hello-for-business/faq.yml
@@ -5,7 +5,7 @@ metadata:
author: paolomatarazzo
ms.author: paoloma
ms.topic: faq
- ms.date: 01/03/2024
+ ms.date: 10/10/2024
title: Common questions about Windows Hello for Business
summary: Windows Hello for Business replaces password sign-in with strong authentication, using an asymmetric key pair. This Frequently Asked Questions (FAQ) article is intended to help you learn more about Windows Hello for Business.
diff --git a/windows/security/includes/mdag-edge-deprecation-notice.md b/windows/security/includes/mdag-edge-deprecation-notice.md
index 150cffe43f..69454f1d18 100644
--- a/windows/security/includes/mdag-edge-deprecation-notice.md
+++ b/windows/security/includes/mdag-edge-deprecation-notice.md
@@ -6,5 +6,5 @@ ms.topic: include
---
> [!NOTE]
-> - Microsoft Defender Application Guard, including the [Windows Isolated App Launcher APIs](/windows/win32/api/isolatedapplauncher/), will be deprecated for Microsoft Edge for Business and [will no longer be updated](/windows/whats-new/feature-lifecycle). Please download the [Microsoft Edge For Business Security Whitepaper](https://edgestatic.azureedge.net/shared/cms/pdfs/Microsoft_Edge_Security_Whitepaper_v2.pdf) to learn more about Edge for Business security capabilities.
+> - Microsoft Defender Application Guard, including the [Windows Isolated App Launcher APIs](/windows/win32/api/isolatedapplauncher/), will be deprecated for Microsoft Edge for Business and [will no longer be updated](/windows/whats-new/feature-lifecycle). To learn more about Microsoft Edge security capabilities, see [Microsoft Edge For Business Security](/deployedge/ms-edge-security-for-business).
> - Because Application Guard is deprecated there will not be a migration to Edge Manifest V3. The corresponding browser extensions and associated Windows Store app are no longer available. If you want to block unprotected browsers until you are ready to retire MDAG usage in your enterprise, we recommend using AppLocker policies or [Microsoft Edge management service](/deployedge/microsoft-edge-management-service). For more information, see [Microsoft Edge and Microsoft Defender Application Guard](/deployedge/microsoft-edge-security-windows-defender-application-guard).
\ No newline at end of file
diff --git a/windows/security/operating-system-security/virus-and-threat-protection/microsoft-defender-smartscreen/available-settings.md b/windows/security/operating-system-security/virus-and-threat-protection/microsoft-defender-smartscreen/available-settings.md
index d53d8c5dc7..9824baf8c1 100644
--- a/windows/security/operating-system-security/virus-and-threat-protection/microsoft-defender-smartscreen/available-settings.md
+++ b/windows/security/operating-system-security/virus-and-threat-protection/microsoft-defender-smartscreen/available-settings.md
@@ -1,7 +1,7 @@
---
title: Available Microsoft Defender SmartScreen settings
description: A list of all available settings for Microsoft Defender SmartScreen using Group Policy and mobile device management (MDM) settings.
-ms.date: 07/10/2024
+ms.date: 10/10/2024
ms.topic: reference
---
@@ -9,7 +9,7 @@ ms.topic: reference
Microsoft Defender SmartScreen works with Intune, Group Policy, and mobile device management (MDM) settings to help you manage your organization's computer settings. Based on how you set up Microsoft Defender SmartScreen, you can show users a warning page and let them continue to the site, or you can block the site entirely.
-See [Windows settings to protect devices using Intune](/intune/endpoint-protection-windows-10#windows-defender-smartscreen-settings) for the controls you can use in Intune.
+See [Windows settings to protect devices using Intune](/mem/intune/protect/endpoint-protection-windows-10#microsoft-defender-smartscreen-settings) for the controls you can use in Intune.
> [!NOTE]
> For a list of settings available for Enhanced phishing protection, see [Enhanced phishing protection](enhanced-phishing-protection.md#configure-enhanced-phishing-protection-for-your-organization).