Merge branch 'main' of github.com:MicrosoftDocs/windows-docs-pr into pm-8548913-start

This commit is contained in:
Paolo Matarazzo
2024-04-10 13:43:08 -04:00
21 changed files with 88 additions and 85 deletions

View File

@ -1,7 +1,7 @@
--- ---
title: Upgrade Windows Home to Windows Education on student-owned devices title: Upgrade Windows Home to Windows Education on student-owned devices
description: Learn how IT Pros can upgrade student-owned devices from Windows Home to Windows Education using Mobile Device Management or Kivuto OnTheHub with qualifying subscriptions. description: Learn how IT Pros can upgrade student-owned devices from Windows Home to Windows Education using Mobile Device Management or Kivuto OnTheHub with qualifying subscriptions.
ms.date: 08/07/2023 ms.date: 04/10/2024
ms.topic: how-to ms.topic: how-to
author: scottbreenmsft author: scottbreenmsft
ms.author: scbree ms.author: scbree
@ -16,30 +16,30 @@ ms.collection:
## Overview ## Overview
Customers with qualifying subscriptions can upgrade student-owned and institution-owned devices from *Windows Home* to *Windows Education*, which is designed for both the classroom and remote learning. Customers with qualifying subscriptions can upgrade student-owned and institution-owned devices from *Windows Home* to *Windows Education*, which is designed for both the classroom and remote learning.
> [!NOTE] > [!NOTE]
> To be qualified for this process, customers must have a Windows Education subscription that includes the student use benefit and must have access to the Volume Licensing Service Center (VLSC) or the Microsoft 365 Admin Center. > To be qualified for this process, customers must have a Windows Education subscription that includes the student use benefit and must have access to the Volume Licensing Service Center (VLSC) or the Microsoft 365 Admin Center.
IT admins can upgrade student devices using a multiple activation key (MAK) manually or through Mobile Device Management (MDM). Alternatively, IT admins can set up a portal through [Kivuto OnTheHub](http://onthehub.com) where students can request a *Windows Pro Education* product key. The table below provides the recommended method depending on the scenario. IT admins can upgrade student devices using a multiple activation key (MAK) manually or through Mobile Device Management (MDM). Alternatively, IT admins can set up a portal through [Kivuto OnTheHub](http://onthehub.com) where students can request a *Windows Pro Education* product key. The following table provides the recommended method depending on the scenario.
| Method | Product key source | Device ownership | Best for | | Method | Product key source | Device ownership | Best for |
|-|-|-|-| |-|-|-|-|
| MDM | VLSC | Personal (student-owned) | IT admin initiated via MDM | | MDM | VLSC | Personal (student-owned) | IT admin initiated via MDM |
| Kivuto | Kivuto | Personal (student-owned) | Initiated on device by student, parent or guardian | | Kivuto | Kivuto | Personal (student-owned) | Initiated on device by student, parent, or guardian |
| Provisioning package | VLSC | Personal (student-owned) or Corporate (institution-owned) | IT admin initiated at first boot | | Provisioning package | VLSC | Personal (student-owned) or Corporate (institution-owned) | IT admin initiated at first boot |
These methods apply to devices with *Windows Home* installed; institution-owned devices can be upgraded from *Windows Professional* or *Windows Pro Edu* to *Windows Education* or *Windows Enterprise* using [Windows 10/11 Subscription Activation](/windows/deployment/windows-10-subscription-activation). These methods apply to devices with *Windows Home* installed; institution-owned devices can be upgraded from *Windows Professional* or *Windows Pro Edu* to *Windows Education* or *Windows Enterprise* using [Windows 10/11 Subscription Activation](/windows/deployment/windows-10-subscription-activation).
## User Notifications ## User Notifications
Users aren't notified their device has been or will be upgraded to Windows Education when using MDM. It's the responsibility of the institution to notify their users. Institutions should notify their users that MDM will initiate an upgrade to Windows Education and this upgrade will give the institution extra capabilities, such as installing applications. Users aren't notified when their device is upgraded to Windows Education when using MDM. It's the responsibility of the institution to notify their users. Institutions should notify their users that MDM initiates an upgrade to Windows Education, and that the upgrade gives the institution extra capabilities, such as installing applications.
Device users can disconnect from MDM in the Settings app, to prevent further actions from being taken on their personal device. For instructions on disconnecting from MDM, see [Remove your Windows device from management](/mem/intune/user-help/unenroll-your-device-from-intune-windows). Device users can disconnect from MDM in the Settings app, to prevent further actions from being taken on their personal device. For instructions on disconnecting from MDM, see [Remove your Windows device from management](/mem/intune/user-help/unenroll-your-device-from-intune-windows).
## Why upgrade student-owned devices from Windows Home to Windows Education? ## Why upgrade student-owned devices from Windows Home to Windows Education?
Some school institutions want to streamline student onboarding for student-owned devices using MDM. Typical MDM requirements include installing certificates, configuring WiFi profiles and installing applications. On Windows, MDM uses Configuration Service Providers (CSPs) to configure settings. Some CSPs aren't available on Windows Home, which can limit the capabilities. Some of the CSPs not available in Windows Home that can affect typical student onboarding are: Some school institutions want to streamline student onboarding for student-owned devices using MDM. Typical MDM requirements include installing certificates, configuring WiFi profiles, and installing applications. On Windows, MDM uses Configuration Service Providers (CSPs) to configure settings. Some CSPs aren't available on Windows Home, which can limit the capabilities. Some of the CSPs not available in Windows Home that can affect typical student onboarding are:
- [EnterpriseDesktopAppManagement](/windows/client-management/mdm/enterprisemodernappmanagement-csp) - which enables deployment of Windows installer or Win32 applications. - [EnterpriseDesktopAppManagement](/windows/client-management/mdm/enterprisemodernappmanagement-csp) - which enables deployment of Windows installer or Win32 applications.
- [DeliveryOptimization](/windows/client-management/mdm/policy-csp-deliveryoptimization) - which enables configuration of Delivery Optimization. - [DeliveryOptimization](/windows/client-management/mdm/policy-csp-deliveryoptimization) - which enables configuration of Delivery Optimization.
@ -48,11 +48,11 @@ A full list of CSPs are available at [Configuration service provider reference](
## Requirements for using a MAK to upgrade from Windows Home to Windows Education ## Requirements for using a MAK to upgrade from Windows Home to Windows Education
- Access to Volume Licensing Service Center (VLSC) or the Microsoft 365 Admin Center. - Access to Volume Licensing Service Center (VLSC) or the Microsoft 365 Admin Center
- A qualifying Windows subscription such as: - A qualifying Windows subscription such as:
- Windows A3, or; - Windows A3, or
- Windows A5. - Windows A5
- A pre-installed and activated instance of Windows 10 Home or Windows 11 Home. - A preinstalled and activated instance of Windows 10 Home or Windows 11 Home
You can find more information in the [Microsoft Product Terms](https://www.microsoft.com/licensing/terms/productoffering). You can find more information in the [Microsoft Product Terms](https://www.microsoft.com/licensing/terms/productoffering).
@ -67,20 +67,20 @@ IT admins with access to the VLSC or the Microsoft 365 Admin Center, can find th
It's critical that MAKs are protected whenever they're used. The following processes provide the best protection for a MAK being applied to a device: It's critical that MAKs are protected whenever they're used. The following processes provide the best protection for a MAK being applied to a device:
- Provisioning package by institution approved staff; - Provisioning package by institution approved staff
- Manual entry by institution approved staff (don't distribute the key via email); - Manual entry by institution approved staff (don't distribute the key via email)
- Mobile Device Management (like Microsoft Intune) via [WindowsLicensing CSP](/windows/client-management/mdm/windowslicensing-csp); - Mobile Device Management (like Microsoft Intune) via [WindowsLicensing CSP](/windows/client-management/mdm/windowslicensing-csp)
> [!IMPORTANT] > [!IMPORTANT]
> If you are using a Mobile Device Management product other than Microsoft Intune, ensure the key isn't accessible by students. > If you are using a Mobile Device Management product other than Microsoft Intune, ensure the key isn't accessible by students.
- Operating System Deployment processes with tools such as Microsoft Deployment Toolkit or Microsoft Configuration Manager. - Operating System Deployment processes with tools such as Microsoft Deployment Toolkit or Microsoft Configuration Manager
For a full list of methods to perform a Windows edition upgrade and more details, see [Windows 10 edition upgrade](/windows/deployment/upgrade/windows-10-edition-upgrades). For a full list of methods to perform a Windows edition upgrade and more details, see [Windows 10 edition upgrade](/windows/deployment/upgrade/windows-10-edition-upgrades).
## Downgrading, resetting, reinstalling and graduation rights ## Downgrading, resetting, reinstalling, and graduation rights
After upgrading from *Windows Home* to *Windows Education* there are some considerations for what happens during downgrade, reset or reinstall of the operating system. After upgrading from *Windows Home* to *Windows Education* there are some considerations for what happens during downgrade, reset or reinstall of the operating system.
The table below highlights the differences by upgrade product key type: The following table highlights the differences by upgrade product key type:
| Product Key Type | Downgrade (in-place) | Reset | Student reinstall | | Product Key Type | Downgrade (in-place) | Reset | Student reinstall |
|-|-|-|-| |-|-|-|-|
@ -93,27 +93,27 @@ It isn't possible to downgrade to *Windows Home* from *Windows Education* withou
### Reset ### Reset
If the computer is reset, Windows Education will be retained. If the computer is reset, Windows Education is retained.
### Reinstall ### Reinstall
The Education upgrade doesn't apply to reinstalling Windows. Use the original Windows edition when reinstalling Windows. The original product key or [firmware-embedded product key](#what-is-a-firmware-embedded-activation-key) will be used to activate Windows. The Education upgrade doesn't apply to reinstalling Windows. Use the original Windows edition when reinstalling Windows. The original product key or [firmware-embedded product key](#what-is-a-firmware-embedded-activation-key) is used to activate Windows.
If students require a *Windows Pro Education* key that can work on a new install of Windows, they should use [Kivuto OnTheHub](http://onthehub.com) to request a key prior to graduation. If students require a *Windows Pro Education* key that can work on a new install of Windows, they should use [Kivuto OnTheHub](http://onthehub.com) to request a key before graduation.
For details on product keys and reinstalling Windows, see [Find your Windows product key](https://support.microsoft.com/windows/find-your-windows-product-key-aaa2bf69-7b2b-9f13-f581-a806abf0a886). For details on product keys and reinstalling Windows, see [Find your Windows product key](https://support.microsoft.com/windows/find-your-windows-product-key-aaa2bf69-7b2b-9f13-f581-a806abf0a886).
### Resale ### Resale
The license will remain installed on the device if resold and the same conditions above apply for downgrade, reset or reinstall. The license remains installed on the device if resold and the same conditions apply for downgrade, reset, or reinstall.
## Step by step process for customers to upgrade student-owned devices using Microsoft Intune ## Step by step process for customers to upgrade student-owned devices using Microsoft Intune
These steps provide instructions on how to use Microsoft Intune to upgrade devices from Home to Education. These steps provide instructions on how to use Microsoft Intune to upgrade devices from Home to Education.
### Step 1: Create a Windows Home edition filter ### Step 1: Create a Windows Home edition filter
These steps configure a filter that will only apply to devices running the *Windows Home edition*. This filter will ensure only devices running *Windows Home edition* are upgraded. For more information about filters, see [Create filters in Microsoft Intune](/mem/intune/fundamentals/filters). These steps configure a filter that only applies to devices running the *Windows Home edition*, ensuring that only devices running *Windows Home edition* are upgraded. For more information about filters, see [Create filters in Microsoft Intune](/mem/intune/fundamentals/filters).
- Start in the [**Microsoft Intune admin center**](https://go.microsoft.com/fwlink/?linkid=2109431) - Start in the [**Microsoft Intune admin center**](https://go.microsoft.com/fwlink/?linkid=2109431)
- Select **Tenant administration** > **Filters** - Select **Tenant administration** > **Filters**
@ -130,7 +130,7 @@ These steps configure a filter that will only apply to devices running the *Wind
> [!NOTE] > [!NOTE]
> Ensure you've selected OR as the operator in the right And/Or column > Ensure you've selected OR as the operator in the right And/Or column
:::image type="content" source="images/change-home-to-edu-windows-home-edition-intune-filter.png" alt-text="Example of configuring the Windows Home filter"::: :::image type="content" source="images/change-home-to-edu-windows-home-edition-intune-filter.png" alt-text="Example of configuring the Windows Home filter":::
- Optionally select scope tags as required - Optionally select scope tags as required
@ -153,14 +153,14 @@ These steps create and assign a Windows edition upgrade policy. For more informa
- Change **Edition to upgrade** to **Windows 10/11 Education** - Change **Edition to upgrade** to **Windows 10/11 Education**
- In the **Product Key**, enter your *Windows 10/11 Education MAK* - In the **Product Key**, enter your *Windows 10/11 Education MAK*
- Select **Next** - Select **Next**
:::image type="content" source="images/change-home-to-edu-windows-edition-upgrade-policy.png" alt-text="Example of configuring the Windows upgrade policy in Microsoft Intune"::: :::image type="content" source="images/change-home-to-edu-windows-edition-upgrade-policy.png" alt-text="Example of configuring the Windows upgrade policy in Microsoft Intune":::
- Optionally select scope tags as required and select **Next** - Optionally select scope tags as required and select **Next**
- On the **assignments** screen; - On the **assignments** screen:
- Select **Add all devices** - Select **Add all devices**
- Next to **All devices**, select **Edit filter** - Next to **All devices**, select **Edit filter**
> [!NOTE] > [!NOTE]
> You can also target other security groups that contain a smaller scope of users or devices and apply the filter rather than All devices. > You can also target other security groups that contain a smaller scope of users or devices and apply the filter rather than All devices.
@ -171,7 +171,7 @@ These steps create and assign a Windows edition upgrade policy. For more informa
- Don't configure any applicability rules and select **next** - Don't configure any applicability rules and select **next**
- Review your settings and select **Create** - Review your settings and select **Create**
The edition upgrade policy will now apply to all existing and new Windows Home edition devices targeted. The edition upgrade policy applies to all existing and new Windows Home edition devices targeted.
### Step 3: Report on device edition ### Step 3: Report on device edition
@ -191,11 +191,11 @@ You can check the Windows versions of managed devices in the Microsoft Intune ad
Increases to MAK Activation quantity can be requested by contacting [VLSC support](/licensing/contact-us) and may be granted by exception. A request can be made by accounts with the VLSC Administrator, Key Administrator, or Key Viewer permissions. The request should include the following information: Increases to MAK Activation quantity can be requested by contacting [VLSC support](/licensing/contact-us) and may be granted by exception. A request can be made by accounts with the VLSC Administrator, Key Administrator, or Key Viewer permissions. The request should include the following information:
- Agreement/Enrollment Number or License ID and Authorization. - Agreement/Enrollment Number or License ID and Authorization
- Product Name (includes version and edition). - Product Name (includes version and edition)
- Last five characters of the product key. - Last five characters of the product key
- The number of host activations required. - The number of host activations required
- Business Justification or Reason for Deployment. - Business Justification or Reason for Deployment
### What is a firmware-embedded activation key? ### What is a firmware-embedded activation key?
@ -205,7 +205,7 @@ A firmware-embedded activation key is a Windows product key that is installed in
(Get-CimInstance -query 'select * from SoftwareLicensingService').OA3xOriginalProductKey (Get-CimInstance -query 'select * from SoftwareLicensingService').OA3xOriginalProductKey
``` ```
If the device has a firmware-embedded activation key, it will be displayed in the output. Otherwise, the device doesn't have a firmware embedded activation key. Most OEM-provided devices designed to run Windows 8 or later will have a firmware-embedded key. If the device has a firmware-embedded activation key, it's displayed in the output. Otherwise the device doesn't have a firmware embedded activation key. Most OEM-provided devices designed to run Windows 8 or later have a firmware-embedded key.
A firmware embedded key is only required to upgrade using Subscription Activation, a MAK upgrade doesn't require the firmware embedded key. A firmware embedded key is only required to upgrade using Subscription Activation, a MAK upgrade doesn't require the firmware embedded key.

View File

@ -1,15 +1,15 @@
--- ---
title: Configure federation between Google Workspace and Microsoft Entra ID title: Configure federation between Google Workspace and Microsoft Entra ID
description: Configuration of a federated trust between Google Workspace and Microsoft Entra ID, with Google Workspace acting as an identity provider (IdP) for Microsoft Entra ID. description: Configuration of a federated trust between Google Workspace and Microsoft Entra ID, with Google Workspace acting as an identity provider (IdP) for Microsoft Entra ID.
ms.date: 09/11/2023 ms.date: 04/10/2024
ms.topic: how-to ms.topic: how-to
appliesto: appliesto:
--- ---
# Configure federation between Google Workspace and Microsoft Entra ID # Configure federation between Google Workspace and Microsoft Entra ID
This article describes the steps required to configure Google Workspace as an identity provider (IdP) for Azure AD.\ This article describes the steps required to configure Google Workspace as an identity provider (IdP) for Microsoft Entra ID.\
Once configured, users will be able to sign in to Microsoft Entra ID with their Google Workspace credentials. Once configured, users can sign in to Microsoft Entra ID with their Google Workspace credentials.
## Prerequisites ## Prerequisites
@ -27,11 +27,11 @@ To test federation, the following prerequisites must be met:
> [!IMPORTANT] > [!IMPORTANT]
> Users require an email address defined in Google Workspace, which is used to match the users in Microsoft Entra ID. > Users require an email address defined in Google Workspace, which is used to match the users in Microsoft Entra ID.
> For more information about identity matching, see [Identity matching in Microsoft Entra ID](federated-sign-in.md#identity-matching-in-microsoft-entra-id). > For more information about identity matching, see [Identity matching in Microsoft Entra ID](federated-sign-in.md#identity-matching-in-microsoft-entra-id).
1. Individual Microsoft Entra accounts already created: each Google Workspace user will require a matching account defined in Microsoft Entra ID. These accounts are commonly created through automated solutions, for example: 1. Individual Microsoft Entra accounts already created: each Google Workspace user requires a matching account defined in Microsoft Entra ID. These accounts are commonly created through automated solutions, for example:
- School Data Sync (SDS) - School Data Sync (SDS)
- Microsoft Entra Connect Sync for environment with on-premises AD DS - Microsoft Entra Connect Sync for environment with on-premises AD DS
- PowerShell scripts that call the Microsoft Graph API - PowerShell scripts that call the Microsoft Graph API
- Provisioning tools offered by the IdP - this capability is offered by Google Workspace through [auto-provisioning](https://support.google.com/a/answer/7365072) - Provisioning tools offered by the IdP - Google Workspace offers [autoprovisioning](https://support.google.com/a/answer/7365072)
<a name='configure-google-workspace-as-an-idp-for-azure-ad'></a> <a name='configure-google-workspace-as-an-idp-for-azure-ad'></a>
@ -42,12 +42,12 @@ To test federation, the following prerequisites must be met:
1. Select **Add app > Search for apps** and search for *microsoft* 1. Select **Add app > Search for apps** and search for *microsoft*
1. In the search results page, hover over the *Microsoft Office 365 - Web (SAML)* app and select **Select** 1. In the search results page, hover over the *Microsoft Office 365 - Web (SAML)* app and select **Select**
:::image type="content" source="images/google/google-admin-search-app.png" alt-text="Screenshot showing Google Workspace and the search button for Microsoft Office 365 SAML app."::: :::image type="content" source="images/google/google-admin-search-app.png" alt-text="Screenshot showing Google Workspace and the search button for Microsoft Office 365 SAML app.":::
1. On the **Google Identity Provider details** page, select **Download Metadata** and take note of the location where the **IdP metadata** - *GoogleIDPMetadata.xml* - file is saved, as it will be used to setup Microsoft Entra ID later 1. On the **Google Identity Provider details** page, select **Download Metadata** and take note of the location where the **IdP metadata** - *GoogleIDPMetadata.xml* - file is saved, as it's used to set up Microsoft Entra ID later
1. On the **Service provider detail's** page 1. On the **Service provider detail's** page
- Select the option **Signed response** - Select the option **Signed response**
- Verify that the Name ID format is set to **PERSISTENT** - Verify that the Name ID format is set to **PERSISTENT**
- Depending on how the Microsoft Entra users have been provisioned in Microsoft Entra ID, you may need to adjust the **Name ID** mapping.\ - Depending on how the Microsoft Entra users have been provisioned in Microsoft Entra ID, you might need to adjust the **Name ID** mapping.\
If using Google auto-provisioning, select **Basic Information > Primary email** If using Google autoprovisioning, select **Basic Information > Primary email**
- Select **Continue** - Select **Continue**
1. On the **Attribute mapping** page, map the Google attributes to the Microsoft Entra attributes 1. On the **Attribute mapping** page, map the Google attributes to the Microsoft Entra attributes
@ -136,7 +136,7 @@ AdditionalProperties : {}
From a private browser session, navigate to https://portal.azure.com and sign in with a Google Workspace account: From a private browser session, navigate to https://portal.azure.com and sign in with a Google Workspace account:
1. As username, use the email as defined in Google Workspace 1. As username, use the email as defined in Google Workspace
1. The user will be redirected to Google Workspace to sign in 1. The user is redirected to Google Workspace to sign in
1. After Google Workspace authentication, the user will be redirected back to Microsoft Entra ID and signed in 1. After Google Workspace authentication, the user is redirected back to Microsoft Entra ID and signed in
:::image type="content" source="images/google/google-sso.gif" alt-text="A GIF that shows the user authenticating the Azure portal using a Google Workspace federated identity."::: :::image type="content" source="images/google/google-sso.gif" alt-text="A GIF that shows the user authenticating the Azure portal using a Google Workspace federated identity.":::

View File

@ -1,7 +1,7 @@
--- ---
title: Configure Stickers for Windows 11 SE title: Configure Stickers for Windows 11 SE
description: Learn about the Stickers feature and how to configure it via Intune and provisioning package. description: Learn about the Stickers feature and how to configure it via Intune and provisioning package.
ms.date: 11/09/2023 ms.date: 04/10/2024
ms.topic: how-to ms.topic: how-to
appliesto: appliesto:
-<a href="https://learn.microsoft.com/windows/release-health/supported-versions-windows-client" target="_blank">Windows 11 SE</a> -<a href="https://learn.microsoft.com/windows/release-health/supported-versions-windows-client" target="_blank">Windows 11 SE</a>
@ -25,7 +25,7 @@ With Stickers, students feel more attached to the device as they feel as if it's
## Enable Stickers ## Enable Stickers
Stickers aren't enabled by default. Follow the instructions below to configure your devices using either Microsoft Intune or a provisioning package (PPKG). Stickers aren't enabled by default. The following instructions describe how to configure your devices using either Microsoft Intune or a provisioning package (PPKG).
#### [:::image type="icon" source="images/icons/intune.svg"::: **Intune**](#tab/intune) #### [:::image type="icon" source="images/icons/intune.svg"::: **Intune**](#tab/intune)
@ -62,14 +62,14 @@ Content-Type: application/json
## How to use Stickers ## How to use Stickers
Once the Stickers feature is enabled, the sticker editor can be opened by either: Once the Stickers feature is enabled, open sticker editor by either:
- using the contextual menu on the desktop and selecting the option **Add or edit stickers** - using the contextual menu on the desktop and selecting the option **Add or edit stickers**
- opening the Settings app > **Personalization** > **Background** > **Add stickers** - opening the Settings app > **Personalization** > **Background** > **Add stickers**
:::image type="content" source="./images/win-11-se-stickers-menu.png" alt-text="Windows 11 SE desktop contextual menu to open the sticker editor" border="true"::: :::image type="content" source="./images/win-11-se-stickers-menu.png" alt-text="Windows 11 SE desktop contextual menu to open the sticker editor" border="true":::
Multiple stickers can be added from the picker by selecting them. The stickers can be resized, positioned or deleted from the desktop by using the mouse, keyboard, or touch. Multiple stickers can be added from the picker by selecting them. The stickers can be resized, positioned, or deleted from the desktop by using the mouse, keyboard, or touch.
:::image type="content" source="./images/win-11-se-stickers-animation.gif" alt-text="animation showing Windows 11 SE desktop with 4 pirate stickers being resized and moved" border="true"::: :::image type="content" source="./images/win-11-se-stickers-animation.gif" alt-text="animation showing Windows 11 SE desktop with 4 pirate stickers being resized and moved" border="true":::

View File

@ -1,7 +1,7 @@
--- ---
title: Configure education themes for Windows 11 title: Configure education themes for Windows 11
description: Learn about education themes for Windows 11 and how to configure them via Intune and provisioning package. description: Learn about education themes for Windows 11 and how to configure them via Intune and provisioning package.
ms.date: 09/11/2023 ms.date: 04/10/2024
ms.topic: how-to ms.topic: how-to
appliesto: appliesto:
-<a href="https://learn.microsoft.com/windows/release-health/supported-versions-windows-client" target="_blank">Windows 11</a> -<a href="https://learn.microsoft.com/windows/release-health/supported-versions-windows-client" target="_blank">Windows 11</a>

View File

@ -1,7 +1,7 @@
--- ---
title: Configure federated sign-in for Windows devices title: Configure federated sign-in for Windows devices
description: Learn how federated sign-in in Windows works and how to configure it. description: Learn how federated sign-in in Windows works and how to configure it.
ms.date: 09/11/2023 ms.date: 04/10/2024
ms.topic: how-to ms.topic: how-to
appliesto: appliesto:
-<a href="https://learn.microsoft.com/windows/release-health/supported-versions-windows-client" target="_blank">Windows 11</a> -<a href="https://learn.microsoft.com/windows/release-health/supported-versions-windows-client" target="_blank">Windows 11</a>

View File

@ -2,7 +2,7 @@
title: Get and deploy Minecraft Education title: Get and deploy Minecraft Education
description: Learn how to obtain and distribute Minecraft Education to Windows devices. description: Learn how to obtain and distribute Minecraft Education to Windows devices.
ms.topic: how-to ms.topic: how-to
ms.date: 09/11/2023 ms.date: 04/10/2024
ms.collection: ms.collection:
- education - education
- tier2 - tier2
@ -16,15 +16,15 @@ Minecraft Education is a game-based platform that inspires creative and inclusiv
**Prepare students for the future**: learners develop key skills like problem solving, collaboration, digital citizenship, and critical thinking to help them thrive now and in the future workplace. Spark a passion for STEM. **Prepare students for the future**: learners develop key skills like problem solving, collaboration, digital citizenship, and critical thinking to help them thrive now and in the future workplace. Spark a passion for STEM.
**Game based learning**: unlock creativity and deep learning with immersive content created with partners including BBC Earth, NASA, and the Nobel Peace Center. Inspire students to engage in real-world topics, with culturally relevant lessons and build challenges. **Game based learning**: unlock creativity and deep learning with immersive content created with partners including BBC Earth, NASA, and the Nobel Peace Center. Inspire students to engage in real-world topics, with culturally relevant lessons and build challenges.
## Minecraft Education key features ## Minecraft Education key features
- Multiplayer mode enables collaboration in-game across platforms, devices, and hybrid environments - Multiplayer mode enables collaboration in-game across platforms, devices, and hybrid environments
- Code Builder supports block-based coding, JavaScript, and Python with intuitive interface and in-game execution - Code Builder supports block-based coding, JavaScript, and Python with intuitive interface and in-game execution
- Immersive Reader helps players read and translate text - Immersive Reader helps players read and translate text
- Camera and Book & Quill items allow documentation and export of in-game creations - Camera and Book & Quill items allow documentation and export of in-game creations
- Integration with Microsoft Teams and Flipgrid supports assessment and teacher controls - Integration with Microsoft Teams and Flipgrid supports assessment and teacher controls
## Try or purchase Minecraft Education ## Try or purchase Minecraft Education
@ -34,7 +34,7 @@ Organizations can [purchase subscriptions][EDU-2] directly in the*Microsoft 3
When you sign up for a Minecraft Education trial, or purchase a subscription, Minecraft Education licenses are linked to your Microsoft Entra tenant. If you don't have a Microsoft Entra tenant: When you sign up for a Minecraft Education trial, or purchase a subscription, Minecraft Education licenses are linked to your Microsoft Entra tenant. If you don't have a Microsoft Entra tenant:
- Microsoft-verified academic organizations can set up a free [Office 365 Education subscription][EDU-3], which includes a Microsoft Entra tenant - Microsoft-verified academic organizations can set up a free [Office 365 Education subscription][EDU-3], which includes a Microsoft Entra tenant
- Non-Microsoft-verified academic organizations can set up a free Microsoft Entra tenant when they [purchase Minecraft Education commercial licenses][EDU-4] - Non-Microsoft-verified academic organizations can set up a free Microsoft Entra tenant when they [purchase Minecraft Education commercial licenses][EDU-4]
### Direct purchase ### Direct purchase
@ -78,7 +78,7 @@ To pay with an invoice:
1. During the purchase, select **Add a new payment method.** 1. During the purchase, select **Add a new payment method.**
2. Select the **Invoice** option, and provide the information needed for an invoice. The **PO number** item allows you to add a tracking number or info that is meaningful to your organization. 2. Select the **Invoice** option, and provide the information needed for an invoice. The **PO number** item allows you to add a tracking number or info that is meaningful to your organization.
For more information about invoices and how to pay by invoice, see [Payment options for your Microsoft subscription][M365-1]. For more information about invoices and how to pay by invoice, see [Payment options for your Microsoft subscription][M365-1].
## Assign Minecraft Education licenses ## Assign Minecraft Education licenses

View File

@ -1,7 +1,7 @@
--- ---
title: What's in Set up School PCs provisioning package title: What's in Set up School PCs provisioning package
description: Learn about the settings that are configured in the provisioning package created with the Set up School PCs app. description: Learn about the settings that are configured in the provisioning package created with the Set up School PCs app.
ms.date: 06/02/2023 ms.date: 04/10/2024
ms.topic: reference ms.topic: reference
appliesto: appliesto:
-<a href="https://learn.microsoft.com/windows/release-health/supported-versions-windows-client" target="_blank">Windows 10</a> -<a href="https://learn.microsoft.com/windows/release-health/supported-versions-windows-client" target="_blank">Windows 10</a>
@ -34,15 +34,15 @@ For a more detailed look at the policies, see the Windows article [Set up shared
| Disk level caching | 50% | Sets 50% of total disk space to be used as the disk space threshold for account caching. | | Disk level caching | 50% | Sets 50% of total disk space to be used as the disk space threshold for account caching. |
| Disk level deletion | For shared device setup, 25%; for single device-student setup, 0%. | When devices are optimized for shared use, the policy sets 25% of total disk space as the disk space threshold for account caching. When devices are optimized for use by a single student, the policy sets the value to 0% and doesn't delete accounts. | | Disk level deletion | For shared device setup, 25%; for single device-student setup, 0%. | When devices are optimized for shared use, the policy sets 25% of total disk space as the disk space threshold for account caching. When devices are optimized for use by a single student, the policy sets the value to 0% and doesn't delete accounts. |
| Enable account manager | True | Enables automatic account management. | | Enable account manager | True | Enables automatic account management. |
| Inactive threshold | For shared device setup, 30 days; for single device-student setup, 180 days. | After 30 or 180 days, respectively, if an account hasn't signed in, it will be deleted. | | Inactive threshold | For shared device setup, 30 days; for single device-student setup, 180 days. | After the threshold, if an account hasn't signed in, its user profile is deleted. |
| Kiosk Mode AMUID | `Microsoft.Windows.SecureAssessmentBrowser_cw5n1h2txyewy!App` | Configures the kiosk account on student devices to only run the Take a Test secure assessment browser. | | Kiosk Mode AMUID | `Microsoft.Windows.SecureAssessmentBrowser_cw5n1h2txyewy!App` | Configures the kiosk account on student devices to only run the Take a Test secure assessment browser. |
| Kiosk Mode User Tile Display Text | Take a Test | Displays "Take a Test" as the name of the kiosk account on student devices. | | Kiosk Mode User Tile Display Text | Take a Test | Displays "Take a Test" as the name of the kiosk account on student devices. |
| Restrict local storage | For shared device setup, True; for single device-student setup, False. | When devices are optimized for shared use across multiple PCs, this policy forces students to save to the cloud to prevent data loss. When your devices are optimized for use by a single student, this policy doesn't prevent students from saving on the PCs local hard drive. | | Restrict local storage | For shared device setup, True; for single device-student setup, False. | When devices are optimized for shared use across multiple PCs, this policy forces students to save to the cloud to prevent data loss. When your devices are optimized for use by a single student, this policy doesn't prevent students from saving on the PCs local hard drive. |
| Maintenance start time | 0 - midnight | The maintenance start time when automatic maintenance tasks, such as Windows Update, run on student devices. | | Maintenance start time | 0 - midnight | The maintenance start time when automatic maintenance tasks, such as Windows Update, run on student devices. |
| Max page file size in MB | 1024 | Sets the maximum size of the paging file to 1024 MB. Applies only to systems with less than 32-GB storage and at least 3 GB of RAM. | | Max page file size in MB | 1024 | Sets the maximum size of the paging file to 1,024 MB. Applies only to systems with less than 32-GB storage and at least 3 GB of RAM. |
| Set power policies | True | Prevents users from changing power settings and turns off hibernate. Also overrides all power state transitions to sleep, such as lid close. | | Set power policies | True | Prevents users from changing power settings and turns off hibernate. Also overrides all power state transitions to sleep, such as lid close. |
| Sign in on resume | True | Requires the device user to sign in with a password when the PC wakes from sleep. | | Sign in on resume | True | Requires the device user to sign in with a password when the PC wakes from sleep. |
| Sleep timeout | 3600 seconds | Specifies the maximum idle time before the PC should sleep. If you don't set sleep timeout, the default time, 3600 seconds (1 hour), is applied. | | Sleep timeout | 3,600 seconds | Specifies the maximum idle time before the PC should sleep. If you don't set sleep timeout, the default time, 3,600 seconds (1 hour), is applied. |
## MDM and local group policies ## MDM and local group policies
@ -58,7 +58,7 @@ For a more detailed look of each policy listed, see [Policy CSP](/windows/client
| Hide OOBE for desktop | True | Hides the interactive OOBE flow for Windows 10. | | Hide OOBE for desktop | True | Hides the interactive OOBE flow for Windows 10. |
| Download Mode | 1 - HTTP blended with peering behind the same NAT | Specifies the download method that Delivery Optimization can use in downloads of Windows Updates, Apps, and App updates | | Download Mode | 1 - HTTP blended with peering behind the same NAT | Specifies the download method that Delivery Optimization can use in downloads of Windows Updates, Apps, and App updates |
| Select when Preview Builds and Feature Updates are received | 32 - Semi-annual Channel. Device gets feature updates from Semi-annual Channel | Specifies how frequently devices receive preview builds and feature updates. | | Select when Preview Builds and Feature Updates are received | 32 - Semi-annual Channel. Device gets feature updates from Semi-annual Channel | Specifies how frequently devices receive preview builds and feature updates. |
| Allow auto update | 4 - Auto-installs and restarts without device-user control | When an auto update is available, it auto-installs and restarts the device without any input or action from the device user. | | Allow auto update | 4 - Autoinstalls and restarts without device-user control | When an auto update is available, it autoinstalls and restarts the device without any input or action from the device user. |
| Configure automatic updates | 3 - Set to install at 3am | Scheduled time to install updates. | | Configure automatic updates | 3 - Set to install at 3am | Scheduled time to install updates. |
| Update power policy for cart restarts | 1 - Configured | Skips all restart checks to ensure that the reboot will happen at the scheduled install time. | | Update power policy for cart restarts | 1 - Configured | Skips all restart checks to ensure that the reboot will happen at the scheduled install time. |
| Select when Preview Builds and Feature Updates are received | 365 days | Defers Feature Updates for the specified number of days. When not specified, defaults to 365 days. | | Select when Preview Builds and Feature Updates are received | 365 days | Defers Feature Updates for the specified number of days. When not specified, defaults to 365 days. |
@ -70,7 +70,7 @@ For a more detailed look of each policy listed, see [Policy CSP](/windows/client
| Allow add provisioning package | Disabled | Students can't add and upload new provisioning packages to their device. | | Allow add provisioning package | Disabled | Students can't add and upload new provisioning packages to their device. |
| Allow remove provisioning package | Disabled | Students can't remove packages that you've uploaded to their device, including the Set up School PCs app | | Allow remove provisioning package | Disabled | Students can't remove packages that you've uploaded to their device, including the Set up School PCs app |
| Start Layout | Enabled | Lets you specify the Start layout for users and prevents them from changing the configuration. | | Start Layout | Enabled | Lets you specify the Start layout for users and prevents them from changing the configuration. |
| Import Edge Assets | Enabled | Import Microsoft Edge assets, such as PNG and JPG files, for secondary tiles on the Start layout. Tiles will appear as weblinks and will be tied to the relevant image asset files. | | Import Microsoft Edge Assets | Enabled | Import Microsoft Edge assets, such as PNG and JPG files, for secondary tiles on the Start layout. Tiles will appear as weblinks and will be tied to the relevant image asset files. |
| Allow pinned folder downloads | 1 - The shortcut is visible and disables the setting in the Settings app | Makes the Downloads shortcut on the Start menu visible to students. | | Allow pinned folder downloads | 1 - The shortcut is visible and disables the setting in the Settings app | Makes the Downloads shortcut on the Start menu visible to students. |
| Allow pinned folder File Explorer | 1 - The shortcut is visible and disables the setting in the Settings app | Makes the File Explorer shortcut on the Start menu visible to students. | | Allow pinned folder File Explorer | 1 - The shortcut is visible and disables the setting in the Settings app | Makes the File Explorer shortcut on the Start menu visible to students. |
| Personalization | Deploy lock screen image | Set to the image you picked when you customized the lock screen during device setup. If you didn't customize the image, the computer will show the default. | | Personalization | Deploy lock screen image | Set to the image you picked when you customized the lock screen during device setup. If you didn't customize the image, the computer will show the default. |
@ -112,7 +112,7 @@ The time it takes to install a package on a device depends on the:
- Number of policies and apps within the package - Number of policies and apps within the package
- Other configurations made to the device - Other configurations made to the device
Review the table below to estimate your expected provisioning time. A package that only applies Set Up School PC's default configurations will provision the fastest. A package that removes preinstalled apps, through CleanPC, will take much longer to provision. Review the table below to estimate your expected provisioning time. A package that only applies Set Up School PC's default configurations provisions the fastest. A package that removes preinstalled apps, through CleanPC, will take longer to provision.
| Configurations | Connection type | Estimated provisioning time | | Configurations | Connection type | Estimated provisioning time |
|--|--|--| |--|--|--|

View File

@ -1,7 +1,7 @@
--- ---
title: Important considerations before deploying apps with managed installer title: Important considerations before deploying apps with managed installer
description: Learn about important aspects to consider before deploying apps with managed installer. description: Learn about important aspects to consider before deploying apps with managed installer.
ms.date: 06/19/2023 ms.date: 04/10/2024
ms.topic: tutorial ms.topic: tutorial
appliesto: appliesto:
-<a href="https://learn.microsoft.com/windows/release-health/supported-versions-windows-client" target="_blank">Windows 11 SE, version 22H2 and later</a> -<a href="https://learn.microsoft.com/windows/release-health/supported-versions-windows-client" target="_blank">Windows 11 SE, version 22H2 and later</a>

View File

@ -1,7 +1,7 @@
--- ---
title: Create policies to enable applications title: Create policies to enable applications
description: Learn how to create policies to enable the installation and execution of apps on Windows SE. description: Learn how to create policies to enable the installation and execution of apps on Windows SE.
ms.date: 06/19/2023 ms.date: 04/10/2024
ms.topic: tutorial ms.topic: tutorial
appliesto: appliesto:
-<a href="https://learn.microsoft.com/windows/release-health/supported-versions-windows-client" target="_blank">Windows 11 SE, version 22H2 and later</a> -<a href="https://learn.microsoft.com/windows/release-health/supported-versions-windows-client" target="_blank">Windows 11 SE, version 22H2 and later</a>

View File

@ -1,7 +1,7 @@
--- ---
title: Applications deployment considerations title: Applications deployment considerations
description: Learn how to deploy different types of applications to Windows 11 SE and some considerations before deploying them. description: Learn how to deploy different types of applications to Windows 11 SE and some considerations before deploying them.
ms.date: 05/23/2023 ms.date: 04/10/2024
ms.topic: tutorial ms.topic: tutorial
appliesto: appliesto:
-<a href="https://learn.microsoft.com/windows/release-health/supported-versions-windows-client" target="_blank">Windows 11 SE, version 22H2 and later</a> -<a href="https://learn.microsoft.com/windows/release-health/supported-versions-windows-client" target="_blank">Windows 11 SE, version 22H2 and later</a>

View File

@ -1,7 +1,7 @@
--- ---
title: Deploy policies to enable applications title: Deploy policies to enable applications
description: Learn how to deploy AppLocker policies to enable apps execution on Windows SE devices. description: Learn how to deploy AppLocker policies to enable apps execution on Windows SE devices.
ms.date: 05/23/2023 ms.date: 04/10/2024
ms.topic: tutorial ms.topic: tutorial
appliesto: appliesto:
-<a href="https://learn.microsoft.com/windows/release-health/supported-versions-windows-client" target="_blank">Windows 11 SE, version 22H2 and later</a> -<a href="https://learn.microsoft.com/windows/release-health/supported-versions-windows-client" target="_blank">Windows 11 SE, version 22H2 and later</a>

View File

@ -1,7 +1,7 @@
--- ---
title: Deploy applications to Windows 11 SE with Intune title: Deploy applications to Windows 11 SE with Intune
description: Learn how to deploy applications to Windows 11 SE with Intune and how to validate the apps. description: Learn how to deploy applications to Windows 11 SE with Intune and how to validate the apps.
ms.date: 06/07/2023 ms.date: 04/10/2024
ms.topic: tutorial ms.topic: tutorial
appliesto: appliesto:
-<a href="https://learn.microsoft.com/windows/release-health/supported-versions-windows-client" target="_blank">Windows 11 SE, version 22H2 and later</a> -<a href="https://learn.microsoft.com/windows/release-health/supported-versions-windows-client" target="_blank">Windows 11 SE, version 22H2 and later</a>

View File

@ -1,7 +1,7 @@
--- ---
title: Troubleshoot app deployment issues in Windows SE title: Troubleshoot app deployment issues in Windows SE
description: Troubleshoot common issues when deploying apps to Windows SE devices. description: Troubleshoot common issues when deploying apps to Windows SE devices.
ms.date: 06/19/2023 ms.date: 04/10/2024
ms.topic: tutorial ms.topic: tutorial
appliesto: appliesto:
-<a href="https://learn.microsoft.com/windows/release-health/supported-versions-windows-client" target="_blank">Windows 11 SE, version 22H2 and later</a> -<a href="https://learn.microsoft.com/windows/release-health/supported-versions-windows-client" target="_blank">Windows 11 SE, version 22H2 and later</a>
@ -45,10 +45,10 @@ Use the Event Viewer to see if a supplemental policy is deployed correctly. Thes
``` ```
citool.exe -lp citool.exe -lp
``` ```
- For the policy that allows managed installers to run, a policyID `C0DB889B-59C5-453C-B297-399C851934E4` and Friendly Name *[Win-EDU] Microsoft Apps Supplemental Policy - Prod* should be present, and have **Is Currently Enforced** showing as **true** - For the policy that allows managed installers to run, a policyID `C0DB889B-59C5-453C-B297-399C851934E4` and Friendly Name *[Win-EDU] Microsoft Apps Supplemental Policy - Prod* should be present, and have **Is Currently Enforced** showing as **true**
- For any additional policies that you deploy, check that a policy with a matching ID and Friendly Name is shown in the list and the **Is Currently Enforced** and **Is Authorized** properties are both showing as **true** - For any additional policies that you deploy, check that a policy with a matching ID and Friendly Name is shown in the list and the **Is Currently Enforced** and **Is Authorized** properties are both showing as **true**
:::image type="content" source="images/troubleshoot-citool.png" alt-text="Screenshot of the output of citool.exe with the Win-EDU supplemental policy."::: :::image type="content" source="images/troubleshoot-citool.png" alt-text="Screenshot of the output of citool.exe with the Win-EDU supplemental policy.":::
1. Check for **error events** with code **3077**: and reference [Understanding Application Control event IDs][WIN-1] 1. Check for **error events** with code **3077**: and reference [Understanding Application Control event IDs][WIN-1]

View File

@ -1,7 +1,7 @@
--- ---
title: Validate the applications deployed to Windows SE devices title: Validate the applications deployed to Windows SE devices
description: Learn how to validate the applications deployed to Windows SE devices via Intune. description: Learn how to validate the applications deployed to Windows SE devices via Intune.
ms.date: 06/19/2023 ms.date: 04/10/2024
ms.topic: tutorial ms.topic: tutorial
appliesto: appliesto:
-<a href="https://learn.microsoft.com/windows/release-health/supported-versions-windows-client" target="_blank">Windows 11 SE, version 22H2 and later</a> -<a href="https://learn.microsoft.com/windows/release-health/supported-versions-windows-client" target="_blank">Windows 11 SE, version 22H2 and later</a>
@ -65,11 +65,11 @@ To check the installation status of an app from the Intune portal:
1. Select **App > All apps** 1. Select **App > All apps**
1. Select the application you want to check 1. Select the application you want to check
1. From the **Overview** page, you can verify the overall installation status 1. From the **Overview** page, you can verify the overall installation status
:::image type="content" source="./images/intune-app-install-overview.png" alt-text="Screenshot of the Microsoft Intune admin center - App installation details." lightbox="./images/intune-app-install-overview.png"::: :::image type="content" source="./images/intune-app-install-overview.png" alt-text="Screenshot of the Microsoft Intune admin center - App installation details." lightbox="./images/intune-app-install-overview.png":::
1. From the **Device install status** page, you can verify the installation status for each device, and the status code that indicates the cause of the failure 1. From the **Device install status** page, you can verify the installation status for each device, and the status code that indicates the cause of the failure
:::image type="content" source="./images/intune-app-install-status.png" alt-text="Screenshot of the Microsoft Intune admin center - App installation status for each device." lightbox="./images/intune-app-install-status.png"::: :::image type="content" source="./images/intune-app-install-status.png" alt-text="Screenshot of the Microsoft Intune admin center - App installation status for each device." lightbox="./images/intune-app-install-status.png":::
> [!NOTE] > [!NOTE]

View File

@ -77,7 +77,7 @@ Using this method, you create an AppId Tagging policy directly using the WDAC Po
4. Set the name and ID on the policy, which is helpful for future debugging: 4. Set the name and ID on the policy, which is helpful for future debugging:
```powershell ```powershell
Set-CIPolicyIdInfo -ResetPolicyId -PolicyName "MyPolicyName" -PolicyId "MyPolicyId"" -AppIdTaggingPolicy -FilePath ".\AppIdPolicy.xml" Set-CIPolicyIdInfo -ResetPolicyId -PolicyName "MyPolicyName" -PolicyId "MyPolicyId" -AppIdTaggingPolicy -FilePath ".\AppIdPolicy.xml"
``` ```
The policyID GUID is returned by the PowerShell command if successful. The policyID GUID is returned by the PowerShell command if successful.

View File

@ -1,7 +1,7 @@
--- ---
title: Web sign-in for Windows title: Web sign-in for Windows
description: Learn how Web sign-in in Windows works, key scenarios, and how to configure it. description: Learn how Web sign-in in Windows works, key scenarios, and how to configure it.
ms.date: 03/12/2023 ms.date: 04/10/2024
ms.topic: how-to ms.topic: how-to
appliesto: appliesto:
-<a href="https://learn.microsoft.com/windows/release-health/supported-versions-windows-client" target="_blank">Windows 11</a> -<a href="https://learn.microsoft.com/windows/release-health/supported-versions-windows-client" target="_blank">Windows 11</a>

View File

@ -0,0 +1,3 @@
<svg width="17" height="17" viewBox="0 0 17 17" fill="none" xmlns="http://www.w3.org/2000/svg">
<path d="M2.87598 14.75C2.50684 14.75 2.15527 14.6768 1.82129 14.5303C1.4873 14.3779 1.19434 14.1787 0.942383 13.9326C0.696289 13.6807 0.49707 13.3877 0.344727 13.0537C0.198242 12.7197 0.125 12.3682 0.125 11.999V2.87598C0.125 2.50684 0.198242 2.15527 0.344727 1.82129C0.49707 1.4873 0.696289 1.19727 0.942383 0.951172C1.19434 0.699219 1.4873 0.5 1.82129 0.353516C2.15527 0.201172 2.50684 0.125 2.87598 0.125H11.999C12.3682 0.125 12.7197 0.201172 13.0537 0.353516C13.3877 0.5 13.6777 0.699219 13.9238 0.951172C14.1758 1.19727 14.375 1.4873 14.5215 1.82129C14.6738 2.15527 14.75 2.50684 14.75 2.87598V6.11035C14.3926 5.93457 14.0176 5.79395 13.625 5.68848V2.9375C13.625 2.70898 13.5811 2.49219 13.4932 2.28711C13.4053 2.08203 13.2822 1.90332 13.124 1.75098C12.9717 1.59277 12.793 1.46973 12.5879 1.38184C12.3828 1.29395 12.166 1.25 11.9375 1.25H2.9375C2.70898 1.25 2.49219 1.29395 2.28711 1.38184C2.08203 1.46973 1.90039 1.59277 1.74219 1.75098C1.58984 1.90332 1.46973 2.08203 1.38184 2.28711C1.29395 2.49219 1.25 2.70898 1.25 2.9375V11.9375C1.25 12.166 1.29395 12.3828 1.38184 12.5879C1.46973 12.793 1.58984 12.9746 1.74219 13.1328C1.90039 13.2852 2.08203 13.4053 2.28711 13.4932C2.49219 13.5811 2.70898 13.625 2.9375 13.625H5.68848C5.79395 14.0176 5.93457 14.3926 6.11035 14.75H2.87598ZM4.0625 4.625C3.91016 4.625 3.77832 4.56934 3.66699 4.45801C3.55566 4.34668 3.5 4.21484 3.5 4.0625C3.5 3.91016 3.55566 3.77832 3.66699 3.66699C3.77832 3.55566 3.91016 3.5 4.0625 3.5H10.8125C10.9648 3.5 11.0967 3.55566 11.208 3.66699C11.3193 3.77832 11.375 3.91016 11.375 4.0625C11.375 4.21484 11.3193 4.34668 11.208 4.45801C11.0967 4.56934 10.9648 4.625 10.8125 4.625H4.0625ZM4.0625 8C3.91016 8 3.77832 7.94434 3.66699 7.83301C3.55566 7.72168 3.5 7.58984 3.5 7.4375C3.5 7.28516 3.55566 7.15332 3.66699 7.04199C3.77832 6.93066 3.91016 6.875 4.0625 6.875H7.91211C7.70703 7.03906 7.51074 7.21484 7.32324 7.40234C7.13574 7.58984 6.96289 7.78906 6.80469 8H4.0625ZM6.875 11.9375C6.875 11.2402 7.00684 10.584 7.27051 9.96875C7.54004 9.35352 7.90332 8.81738 8.36035 8.36035C8.81738 7.90332 9.35352 7.54297 9.96875 7.2793C10.584 7.00977 11.2402 6.875 11.9375 6.875C12.4004 6.875 12.8457 6.93652 13.2734 7.05957C13.707 7.17676 14.1113 7.34668 14.4863 7.56934C14.8613 7.78613 15.2041 8.0498 15.5146 8.36035C15.8252 8.6709 16.0889 9.01367 16.3057 9.38867C16.5283 9.76367 16.6982 10.168 16.8154 10.6016C16.9385 11.0293 17 11.4746 17 11.9375C17 12.6348 16.8652 13.291 16.5957 13.9062C16.332 14.5215 15.9717 15.0576 15.5146 15.5146C15.0576 15.9717 14.5215 16.335 13.9062 16.6045C13.291 16.8682 12.6348 17 11.9375 17C11.2344 17 10.5752 16.8682 9.95996 16.6045C9.34473 16.3408 8.80859 15.9805 8.35156 15.5234C7.89453 15.0664 7.53418 14.5303 7.27051 13.915C7.00684 13.2998 6.875 12.6406 6.875 11.9375ZM12.5 12.5H14.1875C14.3398 12.5 14.4717 12.4443 14.583 12.333C14.6943 12.2217 14.75 12.0898 14.75 11.9375C14.75 11.7852 14.6943 11.6533 14.583 11.542C14.4717 11.4307 14.3398 11.375 14.1875 11.375H12.5V9.6875C12.5 9.53516 12.4443 9.40332 12.333 9.29199C12.2217 9.18066 12.0898 9.125 11.9375 9.125C11.7852 9.125 11.6533 9.18066 11.542 9.29199C11.4307 9.40332 11.375 9.53516 11.375 9.6875V11.375H9.6875C9.53516 11.375 9.40332 11.4307 9.29199 11.542C9.18066 11.6533 9.125 11.7852 9.125 11.9375C9.125 12.0898 9.18066 12.2217 9.29199 12.333C9.40332 12.4443 9.53516 12.5 9.6875 12.5H11.375V14.1875C11.375 14.3398 11.4307 14.4717 11.542 14.583C11.6533 14.6943 11.7852 14.75 11.9375 14.75C12.0898 14.75 12.2217 14.6943 12.333 14.583C12.4443 14.4717 12.5 14.3398 12.5 14.1875V12.5Z" fill="#0883D9"/>
</svg>

After

Width:  |  Height:  |  Size: 3.6 KiB

View File

@ -1,3 +1,3 @@
<svg width="17" height="17" viewBox="0 0 17 17" fill="none" xmlns="http://www.w3.org/2000/svg"> <svg width="18" height="18" viewBox="0 0 18 18" fill="none" xmlns="http://www.w3.org/2000/svg">
<path d="M2.87598 14.75C2.50684 14.75 2.15527 14.6768 1.82129 14.5303C1.4873 14.3779 1.19434 14.1787 0.942383 13.9326C0.696289 13.6807 0.49707 13.3877 0.344727 13.0537C0.198242 12.7197 0.125 12.3682 0.125 11.999V2.87598C0.125 2.50684 0.198242 2.15527 0.344727 1.82129C0.49707 1.4873 0.696289 1.19727 0.942383 0.951172C1.19434 0.699219 1.4873 0.5 1.82129 0.353516C2.15527 0.201172 2.50684 0.125 2.87598 0.125H11.999C12.3682 0.125 12.7197 0.201172 13.0537 0.353516C13.3877 0.5 13.6777 0.699219 13.9238 0.951172C14.1758 1.19727 14.375 1.4873 14.5215 1.82129C14.6738 2.15527 14.75 2.50684 14.75 2.87598V6.11035C14.3926 5.93457 14.0176 5.79395 13.625 5.68848V2.9375C13.625 2.70898 13.5811 2.49219 13.4932 2.28711C13.4053 2.08203 13.2822 1.90332 13.124 1.75098C12.9717 1.59277 12.793 1.46973 12.5879 1.38184C12.3828 1.29395 12.166 1.25 11.9375 1.25H2.9375C2.70898 1.25 2.49219 1.29395 2.28711 1.38184C2.08203 1.46973 1.90039 1.59277 1.74219 1.75098C1.58984 1.90332 1.46973 2.08203 1.38184 2.28711C1.29395 2.49219 1.25 2.70898 1.25 2.9375V11.9375C1.25 12.166 1.29395 12.3828 1.38184 12.5879C1.46973 12.793 1.58984 12.9746 1.74219 13.1328C1.90039 13.2852 2.08203 13.4053 2.28711 13.4932C2.49219 13.5811 2.70898 13.625 2.9375 13.625H5.68848C5.79395 14.0176 5.93457 14.3926 6.11035 14.75H2.87598ZM4.0625 4.625C3.91016 4.625 3.77832 4.56934 3.66699 4.45801C3.55566 4.34668 3.5 4.21484 3.5 4.0625C3.5 3.91016 3.55566 3.77832 3.66699 3.66699C3.77832 3.55566 3.91016 3.5 4.0625 3.5H10.8125C10.9648 3.5 11.0967 3.55566 11.208 3.66699C11.3193 3.77832 11.375 3.91016 11.375 4.0625C11.375 4.21484 11.3193 4.34668 11.208 4.45801C11.0967 4.56934 10.9648 4.625 10.8125 4.625H4.0625ZM4.0625 8C3.91016 8 3.77832 7.94434 3.66699 7.83301C3.55566 7.72168 3.5 7.58984 3.5 7.4375C3.5 7.28516 3.55566 7.15332 3.66699 7.04199C3.77832 6.93066 3.91016 6.875 4.0625 6.875H7.91211C7.70703 7.03906 7.51074 7.21484 7.32324 7.40234C7.13574 7.58984 6.96289 7.78906 6.80469 8H4.0625ZM6.875 11.9375C6.875 11.2402 7.00684 10.584 7.27051 9.96875C7.54004 9.35352 7.90332 8.81738 8.36035 8.36035C8.81738 7.90332 9.35352 7.54297 9.96875 7.2793C10.584 7.00977 11.2402 6.875 11.9375 6.875C12.4004 6.875 12.8457 6.93652 13.2734 7.05957C13.707 7.17676 14.1113 7.34668 14.4863 7.56934C14.8613 7.78613 15.2041 8.0498 15.5146 8.36035C15.8252 8.6709 16.0889 9.01367 16.3057 9.38867C16.5283 9.76367 16.6982 10.168 16.8154 10.6016C16.9385 11.0293 17 11.4746 17 11.9375C17 12.6348 16.8652 13.291 16.5957 13.9062C16.332 14.5215 15.9717 15.0576 15.5146 15.5146C15.0576 15.9717 14.5215 16.335 13.9062 16.6045C13.291 16.8682 12.6348 17 11.9375 17C11.2344 17 10.5752 16.8682 9.95996 16.6045C9.34473 16.3408 8.80859 15.9805 8.35156 15.5234C7.89453 15.0664 7.53418 14.5303 7.27051 13.915C7.00684 13.2998 6.875 12.6406 6.875 11.9375ZM12.5 12.5H14.1875C14.3398 12.5 14.4717 12.4443 14.583 12.333C14.6943 12.2217 14.75 12.0898 14.75 11.9375C14.75 11.7852 14.6943 11.6533 14.583 11.542C14.4717 11.4307 14.3398 11.375 14.1875 11.375H12.5V9.6875C12.5 9.53516 12.4443 9.40332 12.333 9.29199C12.2217 9.18066 12.0898 9.125 11.9375 9.125C11.7852 9.125 11.6533 9.18066 11.542 9.29199C11.4307 9.40332 11.375 9.53516 11.375 9.6875V11.375H9.6875C9.53516 11.375 9.40332 11.4307 9.29199 11.542C9.18066 11.6533 9.125 11.7852 9.125 11.9375C9.125 12.0898 9.18066 12.2217 9.29199 12.333C9.40332 12.4443 9.53516 12.5 9.6875 12.5H11.375V14.1875C11.375 14.3398 11.4307 14.4717 11.542 14.583C11.6533 14.6943 11.7852 14.75 11.9375 14.75C12.0898 14.75 12.2217 14.6943 12.333 14.583C12.4443 14.4717 12.5 14.3398 12.5 14.1875V12.5Z" fill="#0883D9"/> <path d="M16.875 15.1875C16.875 15.3398 16.8193 15.4717 16.708 15.583L14.458 17.833C14.3467 17.9443 14.2148 18 14.0625 18C13.9102 18 13.7783 17.9443 13.667 17.833C13.5557 17.7217 13.5 17.5898 13.5 17.4375C13.5 17.2852 13.5557 17.1533 13.667 17.042L14.959 15.75H3.87598C3.50684 15.75 3.15527 15.6768 2.82129 15.5303C2.4873 15.3838 2.19727 15.1846 1.95117 14.9326C1.70508 14.6807 1.50586 14.3877 1.35352 14.0537C1.20117 13.7197 1.125 13.3682 1.125 12.999V3.87598C1.125 3.50684 1.19824 3.15527 1.34473 2.82129C1.49121 2.4873 1.69043 2.19727 1.94238 1.95117C2.19434 1.70508 2.4873 1.50586 2.82129 1.35352C3.15527 1.20117 3.50684 1.125 3.87598 1.125H12.999C13.3682 1.125 13.7197 1.19824 14.0537 1.34473C14.3877 1.49121 14.6777 1.69043 14.9238 1.94238C15.1699 2.19434 15.3691 2.4873 15.5215 2.82129C15.6738 3.15527 15.75 3.50684 15.75 3.87598V10.6875C15.75 10.8398 15.6943 10.9717 15.583 11.083C15.4717 11.1943 15.3398 11.25 15.1875 11.25C15.0352 11.25 14.9033 11.1943 14.792 11.083C14.6807 10.9717 14.625 10.8398 14.625 10.6875V3.9375C14.625 3.70898 14.5811 3.49219 14.4932 3.28711C14.4053 3.08203 14.2852 2.90332 14.1328 2.75098C13.9805 2.59863 13.7988 2.47559 13.5879 2.38184C13.377 2.28809 13.1602 2.24414 12.9375 2.25H3.9375C3.70898 2.25 3.49219 2.29395 3.28711 2.38184C3.08203 2.46973 2.90332 2.58984 2.75098 2.74219C2.59863 2.89453 2.47559 3.07617 2.38184 3.28711C2.28809 3.49805 2.24414 3.71484 2.25 3.9375V12.9375C2.25 13.166 2.29395 13.3828 2.38184 13.5879C2.46973 13.793 2.58984 13.9717 2.74219 14.124C2.89453 14.2764 3.07617 14.3994 3.28711 14.4932C3.49805 14.5869 3.71484 14.6309 3.9375 14.625H14.959L13.667 13.333C13.5557 13.2217 13.5 13.0898 13.5 12.9375C13.5 12.7852 13.5557 12.6533 13.667 12.542C13.7783 12.4307 13.9102 12.375 14.0625 12.375C14.2148 12.375 14.3467 12.4307 14.458 12.542L16.708 14.792C16.8193 14.9033 16.875 15.0352 16.875 15.1875ZM11.8125 4.5C11.9648 4.5 12.0967 4.55566 12.208 4.66699C12.3193 4.77832 12.375 4.91016 12.375 5.0625C12.375 5.21484 12.3193 5.34668 12.208 5.45801C12.0967 5.56934 11.9648 5.625 11.8125 5.625H5.0625C4.91016 5.625 4.77832 5.56934 4.66699 5.45801C4.55566 5.34668 4.5 5.21484 4.5 5.0625C4.5 4.91016 4.55566 4.77832 4.66699 4.66699C4.77832 4.55566 4.91016 4.5 5.0625 4.5H11.8125ZM11.8125 7.875C11.9648 7.875 12.0967 7.93066 12.208 8.04199C12.3193 8.15332 12.375 8.28516 12.375 8.4375C12.375 8.58984 12.3193 8.72168 12.208 8.83301C12.0967 8.94434 11.9648 9 11.8125 9H5.0625C4.91016 9 4.77832 8.94434 4.66699 8.83301C4.55566 8.72168 4.5 8.58984 4.5 8.4375C4.5 8.28516 4.55566 8.15332 4.66699 8.04199C4.77832 7.93066 4.91016 7.875 5.0625 7.875H11.8125Z" fill="#0883D9"/>
</svg> </svg>

Before

Width:  |  Height:  |  Size: 3.6 KiB

After

Width:  |  Height:  |  Size: 2.7 KiB

View File

@ -2,7 +2,7 @@
title: Windows security features licensing and edition requirements title: Windows security features licensing and edition requirements
description: Learn about Windows licensing and edition requirements for the features included in Windows. description: Learn about Windows licensing and edition requirements for the features included in Windows.
ms.topic: conceptual ms.topic: conceptual
ms.date: 06/15/2023 ms.date: 04/10/2024
appliesto: appliesto:
-<a href=/windows/release-health/supported-versions-windows-client target=_blank>Windows 11</a> -<a href=/windows/release-health/supported-versions-windows-client target=_blank>Windows 11</a>
ms.author: paoloma ms.author: paoloma
@ -15,7 +15,7 @@ This article lists the security features that are available in Windows.
Select one of the two tabs to learn about licensing requirements to use the security features, or to learn about the Windows edition requirements that support them: Select one of the two tabs to learn about licensing requirements to use the security features, or to learn about the Windows edition requirements that support them:
#### [:::image type="icon" source="images/icons/subscription.svg" border="false"::: **Licensing requirements**](#tab/licensing) #### [:::image type="icon" source="images/icons/subscription-add.svg" border="false"::: **Licensing requirements**](#tab/licensing)
[!INCLUDE [licensing-requirements](../../includes/licensing/_licensing-requirements.md)] [!INCLUDE [licensing-requirements](../../includes/licensing/_licensing-requirements.md)]

View File

@ -2,7 +2,7 @@
title: Configure S/MIME for Windows title: Configure S/MIME for Windows
description: S/MIME lets users encrypt outgoing messages and attachments so that only intended recipients with a digital ID, also known as a certificate, can read them. Learn how to configure S/MIME for Windows. description: S/MIME lets users encrypt outgoing messages and attachments so that only intended recipients with a digital ID, also known as a certificate, can read them. Learn how to configure S/MIME for Windows.
ms.topic: how-to ms.topic: how-to
ms.date: 05/31/2023 ms.date: 04/10/2024
--- ---

View File

@ -2,7 +2,7 @@
title: Windows security foundations title: Windows security foundations
description: Get an overview of security foundations, including the security development lifecycle, common criteria, and the bug bounty program. description: Get an overview of security foundations, including the security development lifecycle, common criteria, and the bug bounty program.
ms.topic: overview ms.topic: overview
ms.date: 06/15/2023 ms.date: 04/10/2024
author: paolomatarazzo author: paolomatarazzo
ms.author: paoloma ms.author: paoloma
--- ---
@ -15,4 +15,4 @@ Our strong security foundation uses Microsoft Security Development Lifecycle (SD
Use the links in the following table to learn more about the security foundations: Use the links in the following table to learn more about the security foundations:
[!INCLUDE [operating-system-security](../includes/sections/security-foundations.md)] [!INCLUDE [security-foundations](../includes/sections/security-foundations.md)]