diff --git a/windows/keep-secure/implement-microsoft-passport-in-your-organization.md b/windows/keep-secure/implement-microsoft-passport-in-your-organization.md
index ee6e108018..e4de8535f1 100644
--- a/windows/keep-secure/implement-microsoft-passport-in-your-organization.md
+++ b/windows/keep-secure/implement-microsoft-passport-in-your-organization.md
@@ -275,7 +275,7 @@ The following table lists the MDM policy settings that you can configure for Win
Device or user |
1 |
- 1: Uppercase letters are not allowed
+1: Uppercase letters are not allowed.
2: At least one uppercase letter is required
|
@@ -318,27 +318,27 @@ You’ll need this software to set Windows Hello for Business policies in your e
Key-based authentication |
-Azure AD subscription |
+[Azure AD subscription](https://docs.microsoft.com/azure/active-directory/active-directory-howto-tenant) |
-- Azure AD subscription
-- [Azure AD Connect](https://go.microsoft.com/fwlink/p/?LinkId=616792)
+- [Azure AD subscription](https://docs.microsoft.com/azure/active-directory/active-directory-howto-tenant)
+- [Azure AD Connect](https://docs.microsoft.com/azure/active-directory/active-directory-aadconnect)
- A few Windows Server 2016 domain controllers on-site
-- A management solution, such as Configuration Manager, Group Policy, or MDM
-- Active Directory Certificate Services (AD CS) without Network Device Enrollment Service (NDES)
+- A management solution, such as [Configuration Manager](https://docs.microsoft.com/sccm/index), Group Policy, or MDM
+- [Active Directory Certificate Services](https://technet.microsoft.com/windowsserver/dd448615.aspx) (AD CS) without Network Device Enrollment Service (NDES)
|
Certificate-based authentication |
-- Azure AD subscription
+- [Azure AD subscription](https://docs.microsoft.com/azure/active-directory/active-directory-howto-tenant)
- Intune or non-Microsoft mobile device management (MDM) solution
-- PKI infrastructure
+- [PKI infrastructure](https://msdn.microsoft.com/library/windows/desktop/bb427432(v=vs.85).aspx)
|
-- Azure AD subscription
-- [Azure AD Connect](https://go.microsoft.com/fwlink/p/?LinkId=616792)
-- AD CS with NDES
-- Configuration Manager for domain-joined certificate enrollment, or InTune for non-domain-joined devices, or a non-Microsoft MDM service that supports Passport for Work
+- [Azure AD subscription](https://docs.microsoft.com/azure/active-directory/active-directory-howto-tenant)
+- [Azure AD Connect](https://docs.microsoft.com/azure/active-directory/active-directory-aadconnect)
+- [AD CS](https://technet.microsoft.com/windowsserver/dd448615.aspx) with NDES
+- [Configuration Manager](https://docs.microsoft.com/sccm/index) for domain-joined certificate enrollment, or [InTune](https://docs.microsoft.com/intune/deploy-use/control-microsoft-passport-settings-on-devices-with-microsoft-intune) for non-domain-joined devices, or a non-Microsoft MDM service that supports Hello for Business
|
@@ -346,7 +346,9 @@ You’ll need this software to set Windows Hello for Business policies in your e
Configuration Manager and MDM provide the ability to manage Windows Hello for Business policy and to deploy and manage certificates protected by Windows Hello for Business.
-Azure AD provides the ability to register devices with your enterprise and to provision Windows Hello for Business for organization accounts.
+[Azure AD](https://docs.microsoft.com/azure/active-directory/active-directory-azureadjoin-passport) provides the ability to register devices with your enterprise and to provision Windows Hello for Business for organization accounts.
+
+[Learn more about enabling Windows Hello for Business in an Azure AD/AD hybrid environment.](https://docs.microsoft.com/azure/active-directory/active-directory-azureadjoin-passport-deployment)
## Windows Hello for BYOD
diff --git a/windows/whats-new/whats-new-windows-10-version-1507-and-1511.md b/windows/whats-new/whats-new-windows-10-version-1507-and-1511.md
index b676817d41..57aa3fec84 100644
--- a/windows/whats-new/whats-new-windows-10-version-1507-and-1511.md
+++ b/windows/whats-new/whats-new-windows-10-version-1507-and-1511.md
@@ -231,11 +231,12 @@ In Windows 10, User Account Control has added some improvements.
### VPN profile options
Windows 10 provides a set of VPN features that both increase enterprise security and provide an improved user experience, including:
-• Always-on auto connection behavior
-• App=triggered VPN
-• VPN traffic filters
-• Lock down VPN
-• Integration with Microsoft Passport for Work
+
+- Always-on auto connection behavior
+- App=triggered VPN
+- VPN traffic filters
+- Lock down VPN
+- Integration with Microsoft Passport for Work
[Learn more about the VPN options in Windows 10.](../keep-secure/vpn-profile-options.md)