fixed merge conflict with available-policies.md
@ -1,6 +1,481 @@
|
||||
{
|
||||
"redirections": [
|
||||
{
|
||||
"source_path": "windows/security/threat-protection/applocker/add-rules-for-packaged-apps-to-existing-applocker-rule-set.md",
|
||||
"redirect_url": "/windows/security/threat-protection/windows-defender-application-control/applocker/add-rules-for-packaged-apps-to-existing-applocker-rule-set",
|
||||
"redirect_document_id": true
|
||||
},
|
||||
{
|
||||
"source_path": "windows/security/threat-protection/windows-defender-application-control.md",
|
||||
"redirect_url": "/windows/security/threat-protection/windows-defender-application-control/windows-defender-application-control",
|
||||
"redirect_document_id": true
|
||||
},
|
||||
{
|
||||
"source_path": "windows/security/threat-protection/applocker/administer-applocker-using-mdm.md",
|
||||
"redirect_url": "/windows/security/threat-protection/windows-defender-application-control/applocker/administer-applocker-using-mdm",
|
||||
"redirect_document_id": true
|
||||
},
|
||||
{
|
||||
"source_path": "windows/security/threat-protection/applocker/administer-applocker.md",
|
||||
"redirect_url": "/windows/security/threat-protection/windows-defender-application-control/applocker/administer-applocker",
|
||||
"redirect_document_id": true
|
||||
},
|
||||
{
|
||||
"source_path": "windows/security/threat-protection/applocker/applocker-architecture-and-components.md",
|
||||
"redirect_url": "/windows/security/threat-protection/windows-defender-application-control/applocker/applocker-architecture-and-components",
|
||||
"redirect_document_id": true
|
||||
},
|
||||
{
|
||||
"source_path": "windows/security/threat-protection/applocker/applocker-functions.md",
|
||||
"redirect_url": "/windows/security/threat-protection/windows-defender-application-control/applocker/applocker-functions",
|
||||
"redirect_document_id": true
|
||||
},
|
||||
{
|
||||
"source_path": "windows/security/threat-protection/applocker/applocker-overview.md",
|
||||
"redirect_url": "/windows/security/threat-protection/windows-defender-application-control/applocker/applocker-overview",
|
||||
"redirect_document_id": true
|
||||
},
|
||||
{
|
||||
"source_path": "windows/security/threat-protection/applocker/applocker-policies-deployment-guide.md",
|
||||
"redirect_url": "/windows/security/threat-protection/windows-defender-application-control/applocker/applocker-policies-deployment-guide",
|
||||
"redirect_document_id": true
|
||||
},
|
||||
{
|
||||
"source_path": "windows/security/threat-protection/applocker/applocker-policies-design-guide.md",
|
||||
"redirect_url": "/windows/security/threat-protection/windows-defender-application-control/applocker/applocker-policies-design-guide",
|
||||
"redirect_document_id": true
|
||||
},
|
||||
{
|
||||
"source_path": "windows/security/threat-protection/applocker/applocker-policy-use-scenarios.md",
|
||||
"redirect_url": "/windows/security/threat-protection/windows-defender-application-control/applocker/applocker-policy-use-scenarios",
|
||||
"redirect_document_id": true
|
||||
},
|
||||
{
|
||||
"source_path": "windows/security/threat-protection/applocker/applocker-processes-and-interactions.md",
|
||||
"redirect_url": "/windows/security/threat-protection/windows-defender-application-control/applocker/applocker-processes-and-interactions",
|
||||
"redirect_document_id": true
|
||||
},
|
||||
{
|
||||
"source_path": "windows/security/threat-protection/applocker/applocker-settings.md",
|
||||
"redirect_url": "/windows/security/threat-protection/windows-defender-application-control/applocker/applocker-settings",
|
||||
"redirect_document_id": true
|
||||
},
|
||||
{
|
||||
"source_path": "windows/security/threat-protection/applocker/applocker-technical-reference.md",
|
||||
"redirect_url": "/windows/security/threat-protection/windows-defender-application-control/applocker/applocker-technical-reference",
|
||||
"redirect_document_id": true
|
||||
},
|
||||
{
|
||||
"source_path": "windows/security/threat-protection/applocker/configure-an-applocker-policy-for-audit-only.md",
|
||||
"redirect_url": "/windows/security/threat-protection/windows-defender-application-control/applocker/configure-an-applocker-policy-for-audit-only",
|
||||
"redirect_document_id": true
|
||||
},
|
||||
{
|
||||
"source_path": "windows/security/threat-protection/applocker/configure-an-applocker-policy-for-enforce-rules.md",
|
||||
"redirect_url": "/windows/security/threat-protection/windows-defender-application-control/applocker/configure-an-applocker-policy-for-enforce-rules",
|
||||
"redirect_document_id": true
|
||||
},
|
||||
{
|
||||
"source_path": "windows/security/threat-protection/applocker/configure-exceptions-for-an-applocker-rule.md",
|
||||
"redirect_url": "/windows/security/threat-protection/windows-defender-application-control/applocker/configure-exceptions-for-an-applocker-rule",
|
||||
"redirect_document_id": true
|
||||
},
|
||||
{
|
||||
"source_path": "windows/security/threat-protection/applocker/configure-the-application-identity-service.md",
|
||||
"redirect_url": "/windows/security/threat-protection/windows-defender-application-control/applocker/configure-the-application-identity-service",
|
||||
"redirect_document_id": true
|
||||
},
|
||||
{
|
||||
"source_path": "windows/security/threat-protection/applocker/configure-the-appLocker-reference-device.md",
|
||||
"redirect_url": "/windows/security/threat-protection/windows-defender-application-control/applocker/configure-the-appLocker-reference-device",
|
||||
"redirect_document_id": true
|
||||
},
|
||||
{
|
||||
"source_path": "windows/security/threat-protection/applocker/create-a-rule-for-packaged-apps.md",
|
||||
"redirect_url": "/windows/security/threat-protection/windows-defender-application-control/applocker/create-a-rule-for-packaged-apps",
|
||||
"redirect_document_id": true
|
||||
},
|
||||
{
|
||||
"source_path": "windows/security/threat-protection/applocker/create-a-rule-that-uses-a-file-hash-condition.md",
|
||||
"redirect_url": "/windows/security/threat-protection/windows-defender-application-control/applocker/create-a-rule-that-uses-a-file-hash-condition",
|
||||
"redirect_document_id": true
|
||||
},
|
||||
{
|
||||
"source_path": "windows/security/threat-protection/applocker/create-a-rule-that-uses-a-path-condition.md",
|
||||
"redirect_url": "/windows/security/threat-protection/windows-defender-application-control/applocker/create-a-rule-that-uses-a-path-condition",
|
||||
"redirect_document_id": true
|
||||
},
|
||||
{
|
||||
"source_path": "windows/security/threat-protection/applocker/create-a-rule-that-uses-a-publisher-condition.md",
|
||||
"redirect_url": "/windows/security/threat-protection/windows-defender-application-control/applocker/create-a-rule-that-uses-a-publisher-condition",
|
||||
"redirect_document_id": true
|
||||
},
|
||||
{
|
||||
"source_path": "windows/security/threat-protection/applocker/create-applocker-default-rules.md",
|
||||
"redirect_url": "/windows/security/threat-protection/windows-defender-application-control/applocker/create-applocker-default-rules",
|
||||
"redirect_document_id": true
|
||||
},
|
||||
{
|
||||
"source_path": "windows/security/threat-protection/applocker/create-list-of-applications-deployed-to-each-business-group.md",
|
||||
"redirect_url": "/windows/security/threat-protection/windows-defender-application-control/applocker/create-list-of-applications-deployed-to-each-business-group",
|
||||
"redirect_document_id": true
|
||||
},
|
||||
{
|
||||
"source_path": "windows/security/threat-protection/applocker/create-your-applocker-policies.md",
|
||||
"redirect_url": "/windows/security/threat-protection/windows-defender-application-control/applocker/create-your-applocker-policies",
|
||||
"redirect_document_id": true
|
||||
},
|
||||
{
|
||||
"source_path": "windows/security/threat-protection/applocker/create-your-applocker-rules.md",
|
||||
"redirect_url": "/windows/security/threat-protection/windows-defender-application-control/applocker/create-your-applocker-rules",
|
||||
"redirect_document_id": true
|
||||
},
|
||||
{
|
||||
"source_path": "windows/security/threat-protection/applocker/delete-an-applocker-rule.md",
|
||||
"redirect_url": "/windows/security/threat-protection/windows-defender-application-control/applocker/delete-an-applocker-rule",
|
||||
"redirect_document_id": true
|
||||
},
|
||||
{
|
||||
"source_path": "windows/security/threat-protection/applocker/deploy-applocker-policies-by-using-the-enforce-rules-setting.md",
|
||||
"redirect_url": "/windows/security/threat-protection/windows-defender-application-control/applocker/deploy-applocker-policies-by-using-the-enforce-rules-setting",
|
||||
"redirect_document_id": true
|
||||
},
|
||||
{
|
||||
"source_path": "windows/security/threat-protection/applocker/deploy-the-applocker-policy-into-production.md",
|
||||
"redirect_url": "/windows/security/threat-protection/windows-defender-application-control/applocker/deploy-the-applocker-policy-into-production",
|
||||
"redirect_document_id": true
|
||||
},
|
||||
{
|
||||
"source_path": "windows/security/threat-protection/applocker/determine-group-policy-structure-and-rule-enforcement.md",
|
||||
"redirect_url": "/windows/security/threat-protection/windows-defender-application-control/applocker/determine-group-policy-structure-and-rule-enforcement",
|
||||
"redirect_document_id": true
|
||||
},
|
||||
{
|
||||
"source_path": "windows/security/threat-protection/applocker/determine-which-applications-are-digitally-signed-on-a-reference-computer.md",
|
||||
"redirect_url": "/windows/security/threat-protection/windows-defender-application-control/applocker/determine-which-applications-are-digitally-signed-on-a-reference-computer",
|
||||
"redirect_document_id": true
|
||||
},
|
||||
{
|
||||
"source_path": "windows/security/threat-protection/applocker/determine-your-application-control-objectives.md",
|
||||
"redirect_url": "/windows/security/threat-protection/windows-defender-application-control/applocker/determine-your-application-control-objectives",
|
||||
"redirect_document_id": true
|
||||
},
|
||||
{
|
||||
"source_path": "windows/security/threat-protection/applocker/display-a-custom-url-message-when-users-try-to-run-a-blocked-application.md",
|
||||
"redirect_url": "/windows/security/threat-protection/windows-defender-application-control/applocker/display-a-custom-url-message-when-users-try-to-run-a-blocked-application",
|
||||
"redirect_document_id": true
|
||||
},
|
||||
{
|
||||
"source_path": "windows/security/threat-protection/applocker/dll-rules-in-applocker.md",
|
||||
"redirect_url": "/windows/security/threat-protection/windows-defender-application-control/applocker/dll-rules-in-applocker",
|
||||
"redirect_document_id": true
|
||||
},
|
||||
{
|
||||
"source_path": "windows/security/threat-protection/applocker/document-group-policy-structure-and-applocker-rule-enforcement.md",
|
||||
"redirect_url": "/windows/security/threat-protection/windows-defender-application-control/applocker/document-group-policy-structure-and-applocker-rule-enforcement",
|
||||
"redirect_document_id": true
|
||||
},
|
||||
{
|
||||
"source_path": "windows/security/threat-protection/applocker/document-your-application-list.md",
|
||||
"redirect_url": "/windows/security/threat-protection/windows-defender-application-control/applocker/document-your-application-list",
|
||||
"redirect_document_id": true
|
||||
},
|
||||
{
|
||||
"source_path": "windows/security/threat-protection/applocker/document-your-applocker-rules.md",
|
||||
"redirect_url": "/windows/security/threat-protection/windows-defender-application-control/applocker/document-your-applocker-rules",
|
||||
"redirect_document_id": true
|
||||
},
|
||||
{
|
||||
"source_path": "windows/security/threat-protection/applocker/edit-an-applocker-policy.md",
|
||||
"redirect_url": "/windows/security/threat-protection/windows-defender-application-control/applocker/edit-an-applocker-policy",
|
||||
"redirect_document_id": true
|
||||
},
|
||||
{
|
||||
"source_path": "windows/security/threat-protection/applocker/edit-applocker-rules.md",
|
||||
"redirect_url": "/windows/security/threat-protection/windows-defender-application-control/applocker/edit-applocker-rules",
|
||||
"redirect_document_id": true
|
||||
},
|
||||
{
|
||||
"source_path": "windows/security/threat-protection/applocker/enable-the-dll-rule-collection.md",
|
||||
"redirect_url": "/windows/security/threat-protection/windows-defender-application-control/applocker/enable-the-dll-rule-collection",
|
||||
"redirect_document_id": true
|
||||
},
|
||||
{
|
||||
"source_path": "windows/security/threat-protection/applocker/enforce-applocker-rules.md",
|
||||
"redirect_url": "/windows/security/threat-protection/windows-defender-application-control/applocker/enforce-applocker-rules",
|
||||
"redirect_document_id": true
|
||||
},
|
||||
{
|
||||
"source_path": "windows/security/threat-protection/applocker/executable-rules-in-applocker.md",
|
||||
"redirect_url": "/windows/security/threat-protection/windows-defender-application-control/applocker/executable-rules-in-applocker",
|
||||
"redirect_document_id": true
|
||||
},
|
||||
{
|
||||
"source_path": "windows/security/threat-protection/applocker/export-an-applocker-policy-from-a-gpo.md",
|
||||
"redirect_url": "/windows/security/threat-protection/windows-defender-application-control/applocker/export-an-applocker-policy-from-a-gpo",
|
||||
"redirect_document_id": true
|
||||
},
|
||||
{
|
||||
"source_path": "windows/security/threat-protection/applocker/export-an-applocker-policy-to-an-xml-file.md",
|
||||
"redirect_url": "/windows/security/threat-protection/windows-defender-application-control/applocker/export-an-applocker-policy-to-an-xml-file",
|
||||
"redirect_document_id": true
|
||||
},
|
||||
{
|
||||
"source_path": "windows/security/threat-protection/applocker/how-applocker-works-techref.md",
|
||||
"redirect_url": "/windows/security/threat-protection/windows-defender-application-control/applocker/how-applocker-works-techref",
|
||||
"redirect_document_id": true
|
||||
},
|
||||
{
|
||||
"source_path": "windows/security/threat-protection/applocker/import-an-applocker-policy-from-another-computer.md",
|
||||
"redirect_url": "/windows/security/threat-protection/windows-defender-application-control/applocker/import-an-applocker-policy-from-another-computer",
|
||||
"redirect_document_id": true
|
||||
},
|
||||
{
|
||||
"source_path": "windows/security/threat-protection/applocker/import-an-applocker-policy-into-a-gpo.md",
|
||||
"redirect_url": "/windows/security/threat-protection/windows-defender-application-control/applocker/import-an-applocker-policy-into-a-gpo",
|
||||
"redirect_document_id": true
|
||||
},
|
||||
{
|
||||
"source_path": "windows/security/threat-protection/applocker/maintain-applocker-policies.md",
|
||||
"redirect_url": "/windows/security/threat-protection/windows-defender-application-control/applocker/maintain-applocker-policies",
|
||||
"redirect_document_id": true
|
||||
},
|
||||
{
|
||||
"source_path": "windows/security/threat-protection/applocker/manage-packaged-apps-with-applocker.md",
|
||||
"redirect_url": "/windows/security/threat-protection/windows-defender-application-control/applocker/manage-packaged-apps-with-applocker",
|
||||
"redirect_document_id": true
|
||||
},
|
||||
{
|
||||
"source_path": "windows/security/threat-protection/applocker/merge-applocker-policies-by-using-set-applockerpolicy.md",
|
||||
"redirect_url": "/windows/security/threat-protection/windows-defender-application-control/applocker/merge-applocker-policies-by-using-set-applockerpolicy",
|
||||
"redirect_document_id": true
|
||||
},
|
||||
{
|
||||
"source_path": "windows/security/threat-protection/applocker/merge-applocker-policies-manually.md",
|
||||
"redirect_url": "/windows/security/threat-protection/windows-defender-application-control/applocker/merge-applocker-policies-manually",
|
||||
"redirect_document_id": true
|
||||
},
|
||||
{
|
||||
"source_path": "windows/security/threat-protection/applocker/monitor-application-usage-with-applocker.md",
|
||||
"redirect_url": "/windows/security/threat-protection/windows-defender-application-control/applocker/monitor-application-usage-with-applocker",
|
||||
"redirect_document_id": true
|
||||
},
|
||||
{
|
||||
"source_path": "windows/security/threat-protection/applocker/optimize-applocker-performance.md",
|
||||
"redirect_url": "/windows/security/threat-protection/windows-defender-application-control/applocker/optimize-applocker-performance",
|
||||
"redirect_document_id": true
|
||||
},
|
||||
{
|
||||
"source_path": "windows/security/threat-protection/applocker/packaged-apps-and-packaged-app-installer-rules-in-applocker.md",
|
||||
"redirect_url": "/windows/security/threat-protection/windows-defender-application-control/applocker/packaged-apps-and-packaged-app-installer-rules-in-applocker",
|
||||
"redirect_document_id": true
|
||||
},
|
||||
{
|
||||
"source_path": "windows/security/threat-protection/applocker/plan-for-applocker-policy-management.md",
|
||||
"redirect_url": "/windows/security/threat-protection/windows-defender-application-control/applocker/plan-for-applocker-policy-management",
|
||||
"redirect_document_id": true
|
||||
},
|
||||
{
|
||||
"source_path": "windows/security/threat-protection/applocker/refresh-an-applocker-policy.md",
|
||||
"redirect_url": "/windows/security/threat-protection/windows-defender-application-control/applocker/refresh-an-applocker-policy",
|
||||
"redirect_document_id": true
|
||||
},
|
||||
{
|
||||
"source_path": "windows/security/threat-protection/applocker/requirements-for-deploying-applocker-policies.md",
|
||||
"redirect_url": "/windows/security/threat-protection/windows-defender-application-control/applocker/requirements-for-deploying-applocker-policies",
|
||||
"redirect_document_id": true
|
||||
},
|
||||
{
|
||||
"source_path": "windows/security/threat-protection/applocker/requirements-to-use-applocker.md",
|
||||
"redirect_url": "/windows/security/threat-protection/windows-defender-application-control/applocker/requirements-to-use-applocker",
|
||||
"redirect_document_id": true
|
||||
},
|
||||
{
|
||||
"source_path": "windows/security/threat-protection/applocker/run-the-automatically-generate-rules-wizard.md",
|
||||
"redirect_url": "/windows/security/threat-protection/windows-defender-application-control/applocker/run-the-automatically-generate-rules-wizard",
|
||||
"redirect_document_id": true
|
||||
},
|
||||
{
|
||||
"source_path": "windows/security/threat-protection/applocker/script-rules-in-applocker.md",
|
||||
"redirect_url": "/windows/security/threat-protection/windows-defender-application-control/applocker/script-rules-in-applocker",
|
||||
"redirect_document_id": true
|
||||
},
|
||||
{
|
||||
"source_path": "windows/security/threat-protection/applocker/security-considerations-for-applocker.md",
|
||||
"redirect_url": "/windows/security/threat-protection/windows-defender-application-control/applocker/security-considerations-for-applocker",
|
||||
"redirect_document_id": true
|
||||
},
|
||||
{
|
||||
"source_path": "windows/security/threat-protection/applocker/select-types-of-rules-to-create.md",
|
||||
"redirect_url": "/windows/security/threat-protection/windows-defender-application-control/applocker/select-types-of-rules-to-create",
|
||||
"redirect_document_id": true
|
||||
},
|
||||
{
|
||||
"source_path": "windows/security/threat-protection/applocker/test-an-applocker-policy-by-using-test-applockerpolicy.md",
|
||||
"redirect_url": "/windows/security/threat-protection/windows-defender-application-control/applocker/test-an-applocker-policy-by-using-test-applockerpolicy",
|
||||
"redirect_document_id": true
|
||||
},
|
||||
{
|
||||
"source_path": "windows/security/threat-protection/applocker/test-and-update-an-applocker-policy.md",
|
||||
"redirect_url": "/windows/security/threat-protection/windows-defender-application-control/applocker/test-and-update-an-applocker-policy",
|
||||
"redirect_document_id": true
|
||||
},
|
||||
{
|
||||
"source_path": "windows/security/threat-protection/applocker/tools-to-use-with-applocker.md",
|
||||
"redirect_url": "/windows/security/threat-protection/windows-defender-application-control/applocker/tools-to-use-with-applocker",
|
||||
"redirect_document_id": true
|
||||
},
|
||||
{
|
||||
"source_path": "windows/security/threat-protection/applocker/understand-applocker-enforcement-settings.md",
|
||||
"redirect_url": "/windows/security/threat-protection/windows-defender-application-control/applocker/understand-applocker-enforcement-settings",
|
||||
"redirect_document_id": true
|
||||
},
|
||||
{
|
||||
"source_path": "windows/security/threat-protection/applocker/understand-applocker-policy-design-decisions.md",
|
||||
"redirect_url": "/windows/security/threat-protection/windows-defender-application-control/applocker/understand-applocker-policy-design-decisions",
|
||||
"redirect_document_id": true
|
||||
},
|
||||
{
|
||||
"source_path": "windows/security/threat-protection/applocker/understand-applocker-rules-and-enforcement-setting-inheritance-in-group-policy.md",
|
||||
"redirect_url": "/windows/security/threat-protection/windows-defender-application-control/applocker/understand-applocker-rules-and-enforcement-setting-inheritance-in-group-policy",
|
||||
"redirect_document_id": true
|
||||
},
|
||||
{
|
||||
"source_path": "windows/security/threat-protection/applocker/understand-the-applocker-policy-deployment-process.md",
|
||||
"redirect_url": "/windows/security/threat-protection/windows-defender-application-control/applocker/understand-the-applocker-policy-deployment-process",
|
||||
"redirect_document_id": true
|
||||
},
|
||||
{
|
||||
"source_path": "windows/security/threat-protection/applocker/understanding-applocker-allow-and-deny-actions-on-rules.md",
|
||||
"redirect_url": "/windows/security/threat-protection/windows-defender-application-control/applocker/understanding-applocker-allow-and-deny-actions-on-rules",
|
||||
"redirect_document_id": true
|
||||
},
|
||||
{
|
||||
"source_path": "windows/security/threat-protection/applocker/understanding-applocker-default-rules.md",
|
||||
"redirect_url": "/windows/security/threat-protection/windows-defender-application-control/applocker/understanding-applocker-default-rules",
|
||||
"redirect_document_id": true
|
||||
},
|
||||
{
|
||||
"source_path": "windows/security/threat-protection/applocker/understanding-applocker-rule-behavior.md",
|
||||
"redirect_url": "/windows/security/threat-protection/windows-defender-application-control/applocker/understanding-applocker-rule-behavior",
|
||||
"redirect_document_id": true
|
||||
},
|
||||
{
|
||||
"source_path": "windows/security/threat-protection/applocker/understanding-applocker-rule-collections.md",
|
||||
"redirect_url": "/windows/security/threat-protection/windows-defender-application-control/applocker/understanding-applocker-rule-collections",
|
||||
"redirect_document_id": true
|
||||
},
|
||||
{
|
||||
"source_path": "windows/security/threat-protection/applocker/understanding-applocker-rule-condition-types.md",
|
||||
"redirect_url": "/windows/security/threat-protection/windows-defender-application-control/applocker/understanding-applocker-rule-condition-types",
|
||||
"redirect_document_id": true
|
||||
},
|
||||
{
|
||||
"source_path": "windows/security/threat-protection/applocker/understanding-applocker-rule-exceptions.md",
|
||||
"redirect_url": "/windows/security/threat-protection/windows-defender-application-control/applocker/understanding-applocker-rule-exceptions",
|
||||
"redirect_document_id": true
|
||||
},
|
||||
{
|
||||
"source_path": "windows/security/threat-protection/applocker/understanding-the-file-hash-rule-condition-in-applocker.md",
|
||||
"redirect_url": "/windows/security/threat-protection/windows-defender-application-control/applocker/understanding-the-file-hash-rule-condition-in-applocker",
|
||||
"redirect_document_id": true
|
||||
},
|
||||
{
|
||||
"source_path": "windows/security/threat-protection/applocker/understanding-the-path-rule-condition-in-applocker.md",
|
||||
"redirect_url": "/windows/security/threat-protection/windows-defender-application-control/applocker/understanding-the-path-rule-condition-in-applocker",
|
||||
"redirect_document_id": true
|
||||
},
|
||||
{
|
||||
"source_path": "windows/security/threat-protection/applocker/understanding-the-publisher-rule-condition-in-applocker.md",
|
||||
"redirect_url": "/windows/security/threat-protection/windows-defender-application-control/applocker/understanding-the-publisher-rule-condition-in-applocker",
|
||||
"redirect_document_id": true
|
||||
},
|
||||
{
|
||||
"source_path": "windows/security/threat-protection/applocker/use-a-reference-computer-to-create-and-maintain-applocker-policies.md",
|
||||
"redirect_url": "/windows/security/threat-protection/windows-defender-application-control/applocker/use-a-reference-computer-to-create-and-maintain-applocker-policies",
|
||||
"redirect_document_id": true
|
||||
},
|
||||
{
|
||||
"source_path": "windows/security/threat-protection/applocker/use-applocker-and-software-restriction-policies-in-the-same-domain.md",
|
||||
"redirect_url": "/windows/security/threat-protection/windows-defender-application-control/applocker/use-applocker-and-software-restriction-policies-in-the-same-domain",
|
||||
"redirect_document_id": true
|
||||
},
|
||||
{
|
||||
"source_path": "windows/security/threat-protection/applocker/use-the-applocker-windows-powershell-cmdlets.md",
|
||||
"redirect_url": "/windows/security/threat-protection/windows-defender-application-control/applocker/use-the-applocker-windows-powershell-cmdlets",
|
||||
"redirect_document_id": true
|
||||
},
|
||||
{
|
||||
"source_path": "windows/security/threat-protection/applocker/using-event-viewer-with-applocker.md",
|
||||
"redirect_url": "/windows/security/threat-protection/windows-defender-application-control/applocker/using-event-viewer-with-applocker",
|
||||
"redirect_document_id": true
|
||||
},
|
||||
{
|
||||
"source_path": "windows/security/threat-protection/applocker/using-software-restriction-policies-and-applocker-policies.md",
|
||||
"redirect_url": "/windows/security/threat-protection/windows-defender-application-control/applocker/using-software-restriction-policies-and-applocker-policies",
|
||||
"redirect_document_id": true
|
||||
},
|
||||
{
|
||||
"source_path": "windows/security/threat-protection/applocker/what-is-applocker.md",
|
||||
"redirect_url": "/windows/security/threat-protection/windows-defender-application-control/applocker/what-is-applocker",
|
||||
"redirect_document_id": true
|
||||
},
|
||||
{
|
||||
"source_path": "windows/security/threat-protection/applocker/windows-installer-rules-in-applocker.md",
|
||||
"redirect_url": "/windows/security/threat-protection/windows-defender-application-control/applocker/windows-installer-rules-in-applocker",
|
||||
"redirect_document_id": true
|
||||
},
|
||||
{
|
||||
"source_path": "windows/security/threat-protection/applocker/working-with-applocker-policies.md",
|
||||
"redirect_url": "/windows/security/threat-protection/windows-defender-application-control/applocker/working-with-applocker-policies",
|
||||
"redirect_document_id": true
|
||||
},
|
||||
{
|
||||
"source_path": "windows/security/threat-protection/applocker/working-with-applocker-rules.md",
|
||||
"redirect_url": "/windows/security/threat-protection/windows-defender-application-control/applocker/working-with-applocker-rules",
|
||||
"redirect_document_id": true
|
||||
},
|
||||
{
|
||||
"source_path": "windows/security/threat-protection/device-guard/requirements-and-deployment-planning-guidelines-for-device-guard.md",
|
||||
"redirect_url": "/windows/security/threat-protection/windows-defender-exploit-guard/requirements-and-deployment-planning-guidelines-for-virtualization-based-protection-of-code-integrity",
|
||||
"redirect_document_id": true
|
||||
},
|
||||
{
|
||||
"source_path": "windows/security/threat-protection/device-guard/deploy-windows-defender-application-control.md",
|
||||
"redirect_url": "/windows/security/threat-protection/windows-defender-application-control/windows-defender-application-control-deployment-guide",
|
||||
"redirect_document_id": true
|
||||
},
|
||||
{
|
||||
"source_path": "windows/security/threat-protection/device-guard/optional-create-a-code-signing-certificate-for-windows-defender-application-control.md",
|
||||
"redirect_url": "/windows/security/threat-protection/windows-defender-application-control/create-code-signing-cert-for-windows-defender-application-control",
|
||||
"redirect_document_id": true
|
||||
},
|
||||
{
|
||||
"source_path": "windows/security/threat-protection/device-guard/deploy-windows-defender-application-control-policy-rules-and-file-rules.md",
|
||||
"redirect_url": "/windows/security/threat-protection/windows-defender-application-control/select-types-of-rules-to-create",
|
||||
"redirect_document_id": true
|
||||
},
|
||||
{
|
||||
"source_path": "windows/security/threat-protection/device-guard/steps-to-deploy-windows-defender-application-control.md",
|
||||
"redirect_url": "/windows/security/threat-protection/windows-defender-application-control/create-initial-default-policy",
|
||||
"redirect_document_id": true
|
||||
},
|
||||
{
|
||||
"source_path": "windows/security/threat-protection/device-guard/deploy-catalog-files-to-support-windows-defender-application-control.md",
|
||||
"redirect_url": "/windows/security/threat-protection/windows-defender-application-control/deploy-catalog-files-to-support-windows-defender-application-control",
|
||||
"redirect_document_id": true
|
||||
},
|
||||
{
|
||||
"source_path": "windows/security/threat-protection/device-guard/deploy-managed-installer-for-device-guard.md",
|
||||
"redirect_url": "/windows/security/threat-protection/windows-defender-application-control/use-windows-defender-application-control-with-managed-installer",
|
||||
"redirect_document_id": true
|
||||
},
|
||||
{
|
||||
"source_path": "windows/security/threat-protection/device-guard/device-guard-deployment-enable-virtualization-based-security.md",
|
||||
"redirect_url": "/windows/security/threat-protection/windows-defender-application-control/enable-virtualization-based-security",
|
||||
"redirect_document_id": true
|
||||
},
|
||||
{
|
||||
"source_path": "windows/threat-protection/windows-defender-smartscreen/windows-defender-smartscreen-available-settings.md",
|
||||
"redirect_url": "/windows/security/threat-protection/windows-defender-smartscreen/windows-defender-smartscreen-available-settings",
|
||||
"redirect_document_id": true
|
||||
@ -1967,12 +2442,12 @@
|
||||
},
|
||||
{
|
||||
"source_path": "windows/device-security/device-guard/requirements-and-deployment-planning-guidelines-for-device-guard.md",
|
||||
"redirect_url": "/windows/security/threat-protection/device-guard/requirements-and-deployment-planning-guidelines-for-device-guard",
|
||||
"redirect_url": "/windows/security/threat-protection/windows-defender-exploit-guard/requirements-and-deployment-planning-guidelines-for-virtualization-based-protection-of-code-integrity",
|
||||
"redirect_document_id": true
|
||||
},
|
||||
{
|
||||
"source_path": "windows/device-security/device-guard/steps-to-deploy-windows-defender-application-control.md",
|
||||
"redirect_url": "/windows/security/threat-protection/device-guard/steps-to-deploy-windows-defender-application-control",
|
||||
"redirect_url": "/windows/security/threat-protection/windows-defender-application-control/create-initial-default-policy",
|
||||
"redirect_document_id": true
|
||||
},
|
||||
{
|
||||
@ -4647,7 +5122,7 @@
|
||||
},
|
||||
{
|
||||
"source_path": "windows/device-security/device-guard/deploy-code-integrity-policies-steps.md",
|
||||
"redirect_url": "/windows/device-security/device-guard/steps-to-deploy-windows-defender-application-control",
|
||||
"redirect_url": "/windows/security/threat-protection/windows-defender-application-control/create-initial-default-policy",
|
||||
"redirect_document_id": true
|
||||
},
|
||||
{
|
||||
@ -4686,7 +5161,7 @@
|
||||
"redirect_document_id": true
|
||||
},
|
||||
{
|
||||
"source_path": "windows/configuration/basic-level-windows-diagnostic-events-and-fields-1709.md",
|
||||
"source_path": "windows/configuration/basic-level-windows-diagnostic-events-and-fields-1803.md",
|
||||
"redirect_url": "/windows/configuration/basic-level-windows-diagnostic-events-and-fields",
|
||||
"redirect_document_id": true
|
||||
},
|
||||
@ -6171,6 +6646,11 @@
|
||||
"redirect_document_id": true
|
||||
},
|
||||
{
|
||||
"source_path": "windows/configuration/multi-app-kiosk-xml.md",
|
||||
"redirect_url": "windows/configuration/kiosk-xml.md",
|
||||
"redirect_document_id": true
|
||||
},
|
||||
{
|
||||
"source_path": "windows/configure/provisioning-uninstall-package.md",
|
||||
"redirect_url": "/windows/configuration/provisioning-packages/provisioning-uninstall-package",
|
||||
"redirect_document_id": true
|
||||
@ -10997,7 +11477,7 @@
|
||||
},
|
||||
{
|
||||
"source_path": "windows/keep-secure/requirements-and-deployment-planning-guidelines-for-device-guard.md",
|
||||
"redirect_url": "/windows/device-security/device-guard/requirements-and-deployment-planning-guidelines-for-device-guard",
|
||||
"redirect_url": "/windows/security/threat-protection/windows-defender-exploit-guard/requirements-and-deployment-planning-guidelines-for-virtualization-based-protection-of-code-integrity",
|
||||
"redirect_document_id": true
|
||||
},
|
||||
{
|
||||
|
@ -3,6 +3,7 @@ description: Microsoft Edge works with Group Policy and Microsoft Intune to help
|
||||
ms.assetid: 2e849894-255d-4f68-ae88-c2e4e31fa165
|
||||
author: shortpatti
|
||||
ms.author: pashort
|
||||
manager: elizapo
|
||||
ms.prod: edge
|
||||
ms.mktglfcycl: explore
|
||||
ms.sitesec: library
|
||||
@ -27,21 +28,6 @@ Microsoft Edge works with the following Group Policy settings to help you manage
|
||||
|
||||
Computer Configuration\Administrative Templates\Windows Components\Microsoft Edge\
|
||||
|
||||
## Allow a shared books folder
|
||||
>*Supported versions: Windows 10, version 1803*
|
||||
|
||||
This policy setting specifies whether organizations should use a folder shared across users to store books from the Books Library.
|
||||
|
||||
**Microsoft Intune to manage your MDM settings**
|
||||
| | |
|
||||
|---|---|
|
||||
|MDM name |[UseSharedFolderForBooks](https://docs.microsoft.com/en-us/windows/client-management/mdm/policy-csp-browser#browser-usesharedfolderforbooks) |
|
||||
|Supported devices |Desktop |
|
||||
|URI full path |./Vendor/MSFT/Policy/Config/Browser/UseSharedFolderForBooks |
|
||||
|Data type | Integer |
|
||||
|Allowed values |<ul><li>**0** - No shared folder.</li><li>**1** - Use as shared folder.</li></ul> |
|
||||
|
||||
|
||||
## Allow Address bar drop-down list suggestions
|
||||
>*Supporteded versions: Windows 10, version 1703 or later*
|
||||
|
||||
@ -88,20 +74,6 @@ Your browsing data is the information that Microsoft Edge remembers and stores a
|
||||
|Data type | Integer |
|
||||
|Allowed values |<ul><li>**0 (default)** - Browsing data is not cleared on exit. The type of browsing data to clear can be configured by the employee in the Clear browsing data options under Settings.</li><li>**1** - Browsing data is cleared on exit.</li></ul> |
|
||||
|
||||
## Allow configuration updates for the Books Library
|
||||
>*Supporteded versions: Windows 10, version 1803*
|
||||
|
||||
Microsoft Edge automatically retrieves the configuration data for the Books Library, when this policy is enabled or not configured. If disabled, Microsoft Edge does not retrieve the Books configuration data.
|
||||
|
||||
**Microsoft Intune to manage your MDM settings**
|
||||
| | |
|
||||
|---|---|
|
||||
|MDM name |[AllowConfigurationUpdateForBooksLibrary ](https://docs.microsoft.com/en-us/windows/client-management/mdm/policy-csp-browser#browser-allowconfigurationupdateforbookslibrary) |
|
||||
|Supported devices |Desktop |
|
||||
|URI full path | ./Vendor/MSFT/Policy/Config/Browser/AllowConfigurationUpdateForBooksLibrary |
|
||||
|Data type | Integer |
|
||||
|Allowed values |<ul><li>**0** - Disable. Microsoft Edge cannot retrieve a configuration.</li><li>**1 (default)** - Enable (default). Microsoft Edge can retrieve a configuration for Books Library.</li></ul> |
|
||||
|
||||
|
||||
## Allow Cortana
|
||||
>*Supported versions: Windows 10, version 1607 or later*
|
||||
@ -132,19 +104,6 @@ F12 developer tools is a suite of tools to help you build and debug your webpage
|
||||
|Data type | Integer |
|
||||
|Allowed values |<ul><li>**0** - The F12 Developer Tools are disabled.</li><li>**1 (default)** - The F12 Developer Tools are enabled.</li></ul> |
|
||||
|
||||
## Allow extended telemetry for the Books tab
|
||||
>*Supporteded versions: Windows 10, version 1803*
|
||||
|
||||
If you enable this policy, both basic and additional diagnostic data is sent to Microsoft about the books you are reading from Books in Microsoft Edge. By default, this policy is disabled or not configured and only basic diagnostic data, depending on your device configuration, is sent to Microsoft.
|
||||
|
||||
**Microsoft Intune to manage your MDM settings**
|
||||
| | |
|
||||
|---|---|
|
||||
|MDM name |[EnableExtendedBooksTelemetry](https://docs.microsoft.com/en-us/windows/client-management/mdm/policy-csp-browser#browser-enableextendedbookstelemetry) |
|
||||
|Supported devices |Desktop<br>Mobile |
|
||||
|URI full path | ./Vendor/MSFT/Policy/Config/Browser/EnableExtendedBooksTelemetry |
|
||||
|Data type | Integer |
|
||||
|Allowed values |<ul><li>**0 (default)** - Disable. Only basic diagnostic data is sent.</li><li>**1** - Enable. Both Basic and additional diagnostic data is sent.</li></ul> |
|
||||
|
||||
## Allow Extensions
|
||||
>*Supporteded versions: Windows 10, version 1607 or later*
|
||||
@ -212,7 +171,7 @@ This policy setting lets you configure what appears when a New Tab page is opene
|
||||
|
||||
|
||||
## Always Enable book library
|
||||
>*Supporteded versions: Windows 10*
|
||||
>*Supporteded versions: Windows 10, version 1709 or later*
|
||||
|
||||
This policy settings specifies whether to always show the Books Library in Microsoft Edge. By default, this setting is disabled, which means the library is only visible in countries or regions where available. if enabled, the Books Library is always shown regardless of countries or region of activation.
|
||||
|
||||
|
@ -1,9 +1,12 @@
|
||||
# [Microsoft HoloLens](index.md)
|
||||
## [What's new in Microsoft HoloLens](hololens-whats-new.md)
|
||||
## [HoloLens in the enterprise: requirements and FAQ](hololens-requirements.md)
|
||||
## [Set up HoloLens](hololens-setup.md)
|
||||
## [Unlock Windows Holographic for Business features](hololens-upgrade-enterprise.md)
|
||||
## [Enroll HoloLens in MDM](hololens-enroll-mdm.md)
|
||||
## [Manage updates to HoloLens](hololens-updates.md)
|
||||
## [Set up HoloLens in kiosk mode](hololens-kiosk.md)
|
||||
## [Share HoloLens with multiple people](hololens-multiple-users.md)
|
||||
## [Configure HoloLens using a provisioning package](hololens-provisioning.md)
|
||||
## [Install apps on HoloLens](hololens-install-apps.md)
|
||||
## [Enable Bitlocker device encryption for HoloLens](hololens-encryption.md)
|
||||
|
@ -8,13 +8,22 @@ ms.sitesec: library
|
||||
ms.pagetype: surfacehub
|
||||
author: jdeckerms
|
||||
ms.localizationpriority: medium
|
||||
ms.date: 02/02/2018
|
||||
ms.date: 04/30/2018
|
||||
---
|
||||
|
||||
# Change history for Microsoft HoloLens documentation
|
||||
|
||||
This topic lists new and updated topics in the [Microsoft HoloLens documentation](index.md).
|
||||
|
||||
## Windows 10 Holographic for Business, version 1803
|
||||
|
||||
The topics in this library have been updated for Windows 10 Holographic for Business, version 1803. The following new topics have been added:
|
||||
|
||||
- [What's new in Microsoft HoloLens](hololens-whats-new.md)
|
||||
- [Manage updates to HoloLens](hololens-updates.md)
|
||||
- [Share HoloLens with multiple people](hololens-multiple-users.md)
|
||||
|
||||
|
||||
## February 2018
|
||||
|
||||
New or changed topic | Description
|
||||
|
@ -55,7 +55,7 @@ Provisioning packages are files created by the Windows Configuration Designer to
|
||||
|
||||
### Create a provisioning package that upgrades the Windows Holographic edition
|
||||
|
||||
1. [Create a provisioning package for HoloLens.](hololens-provisioning.md#create-a-provisioning-package-for-hololens)
|
||||
1. [Create a provisioning package for HoloLens.](hololens-provisioning.md)
|
||||
|
||||
2. Go to **Runtime settings** > **Policies** > **Security**, and select **RequireDeviceEncryption**.
|
||||
|
||||
|
@ -12,7 +12,7 @@ ms.date: 07/27/2017
|
||||
|
||||
# Enroll HoloLens in MDM
|
||||
|
||||
You can manage multiple Microsoft HoloLens devices simultaneously using solutions like Microsoft Intune. You will be able to manage settings, select apps to install and set security configurations tailored to your organization's need. See [Manage devices running Windows Holographic with Microsoft Intune](https://docs.microsoft.com/intune/windows-holographic-for-business), the [configuration service providers (CSPs) that are supported in Windows Holographic](https://msdn.microsoft.com/windows/hardware/commercialize/customize/mdm/configuration-service-provider-reference#hololens), and the [policies supported by Windows Holographic for Business](https://msdn.microsoft.com/windows/hardware/commercialize/customize/mdm/policy-configuration-service-provider#hololenspolicies).
|
||||
You can manage multiple Microsoft HoloLens devices simultaneously using solutions like [Microsoft Intune](https://docs.microsoft.com/intune/windows-holographic-for-business). You will be able to manage settings, select apps to install and set security configurations tailored to your organization's need. See [Manage devices running Windows Holographic with Microsoft Intune](https://docs.microsoft.com/intune/windows-holographic-for-business), the [configuration service providers (CSPs) that are supported in Windows Holographic](https://msdn.microsoft.com/windows/hardware/commercialize/customize/mdm/configuration-service-provider-reference#hololens), and the [policies supported by Windows Holographic for Business](https://msdn.microsoft.com/windows/hardware/commercialize/customize/mdm/policy-configuration-service-provider#hololenspolicies).
|
||||
|
||||
>[!NOTE]
|
||||
>Mobile device management (MDM), including the VPN, Bitlocker, and kiosk mode features, is only available when you [upgrade to Windows Holographic for Business](hololens-upgrade-enterprise.md).
|
||||
|
@ -1,20 +1,170 @@
|
||||
---
|
||||
title: Set up HoloLens in kiosk mode (HoloLens)
|
||||
description: Kiosk mode limits the user's ability to launch new apps or change the running app.
|
||||
description: Use a kiosk configuration to lock down the apps on HoloLens.
|
||||
ms.prod: w10
|
||||
ms.mktglfcycl: manage
|
||||
ms.pagetype: hololens, devices
|
||||
ms.sitesec: library
|
||||
author: jdeckerms
|
||||
ms.localizationpriority: medium
|
||||
ms.date: 07/27/2017
|
||||
ms.date: 04/30/2018
|
||||
---
|
||||
|
||||
# Set up HoloLens in kiosk mode
|
||||
|
||||
>[!WARNING]
|
||||
>Some information relates to prereleased product which may be substantially modified before it's commercially released. Microsoft makes no warranties, express or implied, with respect to the information provided here.
|
||||
|
||||
In Windows 10, version 1803, you can configure your HoloLens devices to run as multi-app or single-app kiosks.
|
||||
|
||||
When HoloLens is configured as a multi-app kiosk, only the allowed apps are available to the user. The benefit of a multi-app kiosk, or fixed-purpose device, is to provide an easy-to-understand experience for individuals by putting in front of them only the things they need to use, and removing from their view the things they don’t need to access.
|
||||
|
||||
Single-app kiosk mode starts the specified app when the user signs in, and restricts the user's ability to launch new apps or change the running app. When single-app kiosk mode is enabled for HoloLens, the bloom gesture and Cortana are disabled, and placed apps aren't shown in the user's surroundings.
|
||||
|
||||
The [AssignedAccess Configuration Service Provider (CSP)](https://docs.microsoft.com/windows/client-management/mdm/assignedaccess-csp) enables kiosk configuration.
|
||||
|
||||
>[!WARNING]
|
||||
>The assigned access feature which enables kiosk mode is intended for corporate-owned fixed-purpose devices. When the multi-app assigned access configuration is applied on the device, certain policies are enforced system-wide, and will impact other users on the device. Deleting the multi-app configuration will remove the assigned access lockdown profiles associated with the users, but it cannot revert all [the enforced policies](https://docs.microsoft.com/windows/configuration/lock-down-windows-10-to-specific-apps#policies-set-by-multi-app-kiosk-configuration). A factory reset is needed to clear all the policies enforced via assigned access.
|
||||
>
|
||||
>Be aware that voice commands are enabled for kiosk mode configured in Microsoft Intune or provisioning packages, even if the Cortana app is not selected as a kiosk app.
|
||||
|
||||
For HoloLens devices running Windows 10, version 1803, there are three methods that you can use to configure the device as a kiosk:
|
||||
- You can use [Microsoft Intune or other mobile device management (MDM) service](#intune-kiosk) to configure single-app and multi-app kiosks.
|
||||
- You can [use a provisioning package](#ppkg-kiosk) to configure single-app and multi-app kiosks.
|
||||
- You can [use the Windows Device Portal](#portal-kiosk) to configure single-app kiosks. This method is recommended only for demonstrations, as it requires that developer mode be enabled on the device.
|
||||
|
||||
For HoloLens devices running Windows 10, version 1607, you can [use the Windows Device Portal](#portal-kiosk) to configure single-app kiosks.
|
||||
|
||||
<span id="start-kiosk"/>
|
||||
## Start layout for HoloLens
|
||||
|
||||
If you use [MDM, Microsoft Intune](#intune-kiosk), or a [provisioning package](#ppkg-kiosk) to configure a multi-app kiosk, the procedure requires a Start layout. Start layout customization isn't supported in Holographic for Business, so you'll need to use a placeholder Start layout.
|
||||
|
||||
>[!NOTE]
|
||||
>Because a single-app kiosk launches the kiosk app when a user signs in, there is no Start screen displayed.
|
||||
|
||||
### Start layout file for Intune
|
||||
|
||||
Save the following sample as an XML file. You will select this file when you configure the kiosk in Microsoft Intune (or in another MDM service that provides a kiosk profile).
|
||||
|
||||
>[!NOTE]
|
||||
>If you need to use a custom setting and full XML configuration to set up a kiosk in your MDM service, use the [Start layout instructions for a provisioning package](#start-layout-for-a-provisioning-package).
|
||||
|
||||
```xml
|
||||
<LayoutModificationTemplate
|
||||
xmlns="http://schemas.microsoft.com/Start/2014/LayoutModification"
|
||||
xmlns:defaultlayout="http://schemas.microsoft.com/Start/2014/FullDefaultLayout"
|
||||
xmlns:start="http://schemas.microsoft.com/Start/2014/StartLayout"
|
||||
Version="1">
|
||||
<RequiredStartGroupsCollection>
|
||||
<RequiredStartGroups>
|
||||
<AppendGroup Name="">
|
||||
<start:Tile Size="2x2" Column="0" Row="0" AppUserModelID="placeholderpackagename_kzf8qxf38zg5c!App" />
|
||||
</AppendGroup>
|
||||
</RequiredStartGroups>
|
||||
</RequiredStartGroupsCollection>
|
||||
</LayoutModificationTemplate>
|
||||
```
|
||||
|
||||
### Start layout for a provisioning package
|
||||
|
||||
You will [create an XML file](#ppkg-kiosk) to define the kiosk configuration to be included in a provisioning package. Use the following sample in the `StartLayout` section of your XML file.
|
||||
|
||||
```xml
|
||||
<!-- This section is required for parity with Desktop Assigned Access. It is not currently used on HoloLens -->
|
||||
<StartLayout>
|
||||
<![CDATA[<LayoutModificationTemplate xmlns:defaultlayout="http://schemas.microsoft.com/Start/2014/FullDefaultLayout" xmlns:start="http://schemas.microsoft.com/Start/2014/StartLayout" Version="1" xmlns="http://schemas.microsoft.com/Start/2014/LayoutModification">
|
||||
<LayoutOptions StartTileGroupCellWidth="6" />
|
||||
<DefaultLayoutOverride>
|
||||
<StartLayoutCollection>
|
||||
<defaultlayout:StartLayout GroupCellWidth="6">
|
||||
<start:Group Name="">
|
||||
<start:Tile Size="2x2" Column="0" Row="0" AppUserModelID="placeholderpackagename_kzf8qxf38zg5c!App" />
|
||||
</start:Group>
|
||||
</defaultlayout:StartLayout>
|
||||
</StartLayoutCollection>
|
||||
</DefaultLayoutOverride>
|
||||
</LayoutModificationTemplate>
|
||||
]]>
|
||||
</StartLayout>
|
||||
<!-- This section is required for parity with Desktop Assigned Access. It is not currently used on HoloLens -->
|
||||
```
|
||||
|
||||
<span id="intune-kiosk"/>
|
||||
## Set up kiosk mode using Microsoft Intune or MDM (Windows 10, version 1803)
|
||||
|
||||
For HoloLens devices that are managed by Microsoft Intune, you [create a device restriction profile](https://docs.microsoft.com/intune/device-profile-create) and configure the [Kiosk (Preview) settings](https://docs.microsoft.com/intune/device-restrictions-windows-holographic#kiosk-preview).
|
||||
|
||||
For other MDM services, check your provider's documentation for instructions. If you need to use a custom setting and full XML configuration to set up a kiosk in your MDM service, [create an XML file that defines the kiosk configuration](#create-xml-file), and make sure to include the [Start layout](#start-layout-for-a-provisioning-package) in the XML file.
|
||||
|
||||
|
||||
Kiosk mode limits the user's ability to launch new apps or change the running app. When kiosk mode is enabled for HoloLens, the bloom gesture and Cortana are disabled, and placed apps aren't shown in the user's surroundings.
|
||||
|
||||
<span id="ppkg-kiosk"/>
|
||||
## Setup kiosk mode using a provisioning package (Windows 10, version 1803)
|
||||
|
||||
Process:
|
||||
1. [Create an XML file that defines the kiosk configuration.](#create-xml-file)
|
||||
2. [Add the XML file to a provisioning package.](#add-xml)
|
||||
3. [Apply the provisioning package to HoloLens.](#apply-ppkg)
|
||||
|
||||
<span id="create-xml-file"/>
|
||||
### Create a kiosk configuration XML file
|
||||
|
||||
Follow [the instructions for creating a kiosk configuration XML file for desktop](https://docs.microsoft.com/windows/configuration/lock-down-windows-10-to-specific-apps#configure-a-kiosk-using-a-provisioning-package), with the following exceptions:
|
||||
|
||||
- Do not include Classic Windows applications (Win32) since they aren't supported on HoloLens.
|
||||
- Use the [placeholder Start XML](#start-kiosk) for HoloLens.
|
||||
|
||||
|
||||
<span id="add-xml"/>
|
||||
### Add the kiosk configuration XML file to a provisioning package
|
||||
|
||||
1. Open [Windows Configuration Designer](https://www.microsoft.com/store/apps/9nblggh4tx22).
|
||||
2. Choose **Advanced provisioning**.
|
||||
3. Name your project, and click **Next**.
|
||||
4. Choose **Windows 10 Holographic** and click **Next**.
|
||||
5. Select **Finish**. The workspace for your package opens.
|
||||
6. Expand **Runtime settings** > **AssignedAccess** > **MultiAppAssignedAccessSettings**.
|
||||
7. In the center pane, click **Browse** to locate and select the kiosk configuration XML file that you created.
|
||||
|
||||

|
||||
|
||||
8. (**Optional**: If you want to apply the provisioning package after device initial setup and there is an admin user already available on the kiosk device, skip this step.) Create an admin user account in **Runtime settings** > **Accounts** > **Users**. Provide a **UserName** and **Password**, and select **UserGroup** as **Administrators**. With this account, you can view the provisioning status and logs if needed.
|
||||
8. (**Optional**: If you already have a non-admin account on the kiosk device, skip this step.) Create a local standard user account in **Runtime settings** > **Accounts** > **Users**. Make sure the **UserName** is the same as the account that you specify in the configuration XML. Select **UserGroup** as **Standard Users**.
|
||||
8. On the **File** menu, select **Save.**
|
||||
9. On the **Export** menu, select **Provisioning package**.
|
||||
10. Change **Owner** to **IT Admin**, which will set the precedence of this provisioning package higher than provisioning packages applied to this device from other sources, and then select **Next.**
|
||||
|
||||
11. On the **Provisioning package security** page, do not select **Enable package encryption** or provisioning will fail on HoloLens. You can choose to enable package signing.
|
||||
|
||||
- **Enable package signing** - If you select this option, you must select a valid certificate to use for signing the package. You can specify the certificate by clicking **Browse** and choosing the certificate you want to use to sign the package.
|
||||
|
||||
12. Click **Next** to specify the output location where you want the provisioning package to go when it's built. By default, Windows Configuration Designer uses the project folder as the output location. Optionally, you can click **Browse** to change the default output location.
|
||||
|
||||
13. Click **Next**.
|
||||
|
||||
14. Click **Build** to start building the package. The provisioning package doesn't take long to build. The project information is displayed in the build page and the progress bar indicates the build status.
|
||||
|
||||
|
||||
|
||||
<span id="apply-ppkg"/>
|
||||
### Apply the provisioning package to HoloLens
|
||||
|
||||
1. Connect HoloLens via USB to a PC and start the device, but do not continue past the **Fit** page of OOBE (the first page with the blue box).
|
||||
|
||||
3. HoloLens will show up as a device in File Explorer on the PC.
|
||||
|
||||
4. In File Explorer, drag and drop the provisioning package (.ppkg) onto the device storage.
|
||||
|
||||
5. Briefly press and release the **Volume Down** and **Power** buttons simultaneously again while on the **fit** page.
|
||||
|
||||
6. The device will ask you if you trust the package and would like to apply it. Confirm that you trust the package.
|
||||
|
||||
7. You will see whether the package was applied successfully or not. If it failed, you can fix your package and try again. If it succeeded, proceed with OOBE.
|
||||
|
||||
|
||||
<span id="portal-kiosk"/>
|
||||
## Set up kiosk mode using the Windows Device Portal (Windows 10, version 1607 and version 1803)
|
||||
|
||||
1. [Set up the HoloLens to use the Windows Device Portal](https://developer.microsoft.com/windows/mixed-reality/using_the_windows_device_portal#setting_up_hololens_to_use_windows_device_portal). The Device Portal is a web server on your HoloLens that you can connect to from a web browser on your PC.
|
||||
|
||||
@ -37,3 +187,18 @@ Kiosk mode limits the user's ability to launch new apps or change the running ap
|
||||
|
||||
5. Select **Enable Kiosk Mode**, choose an app to run when the device starts, and click **Save**.
|
||||
|
||||
|
||||
## Kiosk app recommendations
|
||||
|
||||
- You cannot select Microsoft Edge, Microsoft Store, or the Shell app as a kiosk app.
|
||||
- We recommend that you do **not** select the Settings app and the File Explorer app as a kiosk app.
|
||||
- You can select Cortana as a kiosk app.
|
||||
- To enable photo or video capture, the HoloCamera app must be enabled as a kiosk app.
|
||||
|
||||
## More information
|
||||
|
||||
Watch how to configure a kiosk in Microsoft Intune.
|
||||
>[!VIDEO https://www.microsoft.com/videoplayer/embed/ce9992ab-9fea-465d-b773-ee960b990c4a?autoplay=false]
|
||||
|
||||
Watch how to configure a kiosk in a provisioning package.
|
||||
>[!VIDEO https://www.microsoft.com/videoplayer/embed/fa125d0f-77e4-4f64-b03e-d634a4926884?autoplay=false]
|
33
devices/hololens/hololens-multiple-users.md
Normal file
@ -0,0 +1,33 @@
|
||||
---
|
||||
title: Share HoloLens with multiple people (HoloLens)
|
||||
description: You can configure HoloLens to be shared by multiple Azure Active Directory accounts.
|
||||
ms.prod: w10
|
||||
ms.mktglfcycl: manage
|
||||
ms.pagetype: hololens, devices
|
||||
ms.sitesec: library
|
||||
author: jdeckerms
|
||||
ms.localizationpriority: medium
|
||||
ms.date: 04/30/2018
|
||||
---
|
||||
|
||||
# Share HoloLens with multiple people
|
||||
|
||||
>[!WARNING]
|
||||
>Some information relates to prereleased product which may be substantially modified before it's commercially released. Microsoft makes no warranties, express or implied, with respect to the information provided here.
|
||||
|
||||
A HoloLens device can be shared by multiple Azure Active Directory (Azure AD) accounts, each with their own user settings and user data on the device.
|
||||
|
||||
**Prerequisite**: The HoloLens device must be running Windows 10, version 1803, and be [upgraded to Windows Holographic for Business](hololens-upgrade-enterprise.md).
|
||||
|
||||
During setup, you must select **My work or school owns it** and sign in with an Azure AD account. After setup, ensure that **Other People** appears in **Settings** > **Accounts**.
|
||||
|
||||
Other people can use the HoloLens device by signing in with their Azure AD account credentials. To switch users, press the power button once to go to standby and then press the power button again to return to the lock screen, or select the user tile on the upper right of th epins panel to sign out the current user.
|
||||
|
||||
>[!NOTE]
|
||||
>Each subsequent user will need to perform [Calibration](https://developer.microsoft.com/windows/mixed-reality/calibration) in order to set their correct interpupillary distance (PD) for the device while signed in.
|
||||
|
||||
To see users on the device or to remove a user from the device, go to **Settings** > **Accounts** > **Other users**.
|
||||
|
||||
|
||||
|
||||
|
@ -7,30 +7,87 @@ ms.pagetype: hololens, devices
|
||||
ms.sitesec: library
|
||||
author: jdeckerms
|
||||
ms.localizationpriority: medium
|
||||
ms.date: 11/29/2017
|
||||
ms.date: 04/30/2018
|
||||
---
|
||||
|
||||
# Configure HoloLens using a provisioning package test
|
||||
# Configure HoloLens using a provisioning package
|
||||
|
||||
Windows provisioning makes it easy for IT administrators to configure end-user devices without imaging. The Windows Assessment and Deployment Kit (ADK) for Windows 10 includes the Windows Configuration Designer, a tool for configuring images and runtime settings which are then built into provisioning packages.
|
||||
>[!WARNING]
|
||||
>Some information relates to prereleased product which may be substantially modified before it's commercially released. Microsoft makes no warranties, express or implied, with respect to the information provided here.
|
||||
|
||||
[Windows provisioning](https://docs.microsoft.com/windows/configuration/provisioning-packages/provisioning-packages) makes it easy for IT administrators to configure end-user devices without imaging. Windows Configuration Designer is a tool for configuring images and runtime settings which are then built into provisioning packages.
|
||||
|
||||
Some of the HoloLens configurations that you can apply in a provisioning package:
|
||||
- Upgrade to Windows Holographic for Business
|
||||
- Set up a local account
|
||||
- Set up a Wi-Fi connection
|
||||
- Apply certificatess to the device
|
||||
- Apply certificates to the device
|
||||
|
||||
To install Windows Configuration Designer and create provisioning packages, you must [install the Windows Assessment and Deployment Kit (ADK) for Windows 10](https://developer.microsoft.com/windows/hardware/windows-assessment-deployment-kit) or install [Windows Configuration Designer](https://www.microsoft.com/store/apps/9nblggh4tx22) from the Microsoft Store.
|
||||
|
||||
When you run ADKsetup.exe for Windows 10, version 1607, select **Configuration Designer** from the **Select the features you want to install** dialog box.
|
||||
|
||||

|
||||
|
||||
> [!NOTE]
|
||||
> In previous versions of the Windows 10 ADK, you had to install additional features for Windows Configuration Designer to run. Starting in version 1607, you can install Windows Configuration Designer without other ADK features.
|
||||
To create provisioning packages, you must install Windows Configuration Designer [from Microsoft Store]((https://www.microsoft.com/store/apps/9nblggh4tx22)) or [from the Windows Assessment and Deployment Kit (ADK) for Windows 10](https://developer.microsoft.com/windows/hardware/windows-assessment-deployment-kit). If you install Windows Configurations Designer from the Windows ADK, select **Configuration Designer** from the **Select the features you want to install** dialog box.
|
||||
|
||||
|
||||
## Create a provisioning package for HoloLens
|
||||
|
||||
<span id="wizard" />
|
||||
## Create a provisioning package for HoloLens using the HoloLens wizard
|
||||
|
||||
The HoloLens wizard helps you configure the following settings in a provisioning package:
|
||||
|
||||
- Upgrade to the enterprise edition
|
||||
|
||||
>[!NOTE]
|
||||
>Settings in a provisioning package will only be applied if the provisioning package includes an edition upgrade license to Windows Holographic for Business or if [the device has already been upgraded to Windows Holographic for Business](hololens-upgrade-enterprise.md).
|
||||
|
||||
- Configure the HoloLens first experience (OOBE)
|
||||
- Configure Wi-Fi network
|
||||
- Enroll device in Azure Active Directory or create a local account
|
||||
- Add certificates
|
||||
- Enable Developer Mode
|
||||
|
||||
>[!WARNING]
|
||||
>You must run Windows Configuration Designer on Windows 10 to configure Azure Active Directory enrollment using any of the wizards.
|
||||
|
||||
Provisioning packages can include management instructions and policies, customization of network connections and policies, and more.
|
||||
|
||||
> [!TIP]
|
||||
> Use the desktop wizard to create a package with the common settings, then switch to the advanced editor to add other settings, apps, policies, etc.
|
||||
>
|
||||
>
|
||||
|
||||
### Create the provisioning package
|
||||
|
||||
Use the Windows Configuration Designer tool to create a provisioning package.
|
||||
|
||||
1. Open Windows Configuration Designer (by default, %windir%\Program Files (x86)\Windows Kits\10\Assessment and Deployment Kit\Imaging and Configuration Designer\x86\ICD.exe).
|
||||
|
||||
2. Click **Provision HoloLens devices**.
|
||||
|
||||

|
||||
|
||||
3. Name your project and click **Finish**.
|
||||
|
||||
4. Read the instructions on the **Getting started** page and select **Next**. The pages for desktop provisioning will walk you through the following steps.
|
||||
|
||||
> [!IMPORTANT]
|
||||
> When you build a provisioning package, you may include sensitive information in the project files and in the provisioning package (.ppkg) file. Although you have the option to encrypt the .ppkg file, project files are not encrypted. You should store the project files in a secure location and delete the project files when they are no longer needed.
|
||||
|
||||
### Configure settings
|
||||
|
||||
|
||||
<table>
|
||||
<tr><td style="width:45%" valign="top"><a id="one"></a></br></br>Browse to and select the enterprise license file to upgrade the HoloLens edition.</br></br>You can also toggle **Yes** or **No** to hide parts of the first experience.</br></br>Select a region and timezone in which the device will be used. </td><td></td></tr>
|
||||
<tr><td style="width:45%" valign="top"><a id="two"></a> </br></br>Toggle **On** or **Off** for wireless network connectivity. If you select **On**, enter the SSID, the network type (**Open** or **WPA2-Personal**), and (if **WPA2-Personal**) the password for the wireless network.</td><td></td></tr>
|
||||
<tr><td style="width:45%" valign="top"><a id="three"></a> </br></br>You can enroll the device in Azure Active Directory, or create a local account on the device</br></br>Before you use a Windows Configuration Designer wizard to configure bulk Azure AD enrollment, [set up Azure AD join in your organization](https://docs.microsoft.com/azure/active-directory/active-directory-azureadjoin-setup). The **maximum number of devices per user** setting in your Azure AD tenant determines how many times the bulk token that you get in the wizard can be used. To enroll the device in Azure AD, select that option and enter a friendly name for the bulk token you will get using the wizard. Set an expiration date for the token (maximum is 30 days from the date you get the token). Click **Get bulk token**. In the **Let's get you signed in** window, enter an account that has permissions to join a device to Azure AD, and then the password. Click **Accept** to give Windows Configuration Designer the necessary permissions. </br></br>To create a local account, select that option and enter a user name and password. </br></br>**Important:** (For Windows 10, version 1607 only) If you create a local account in the provisioning package, you must change the password using the **Settings** app every 42 days. If the password is not changed during that period, the account might be locked out and unable to sign in. </td><td></td></tr>
|
||||
<tr><td style="width:45%" valign="top"><a id="four"></a> </br></br>To provision the device with a certificate, click **Add a certificate**. Enter a name for the certificate, and then browse to and select the certificate to be used.</td><td></td></tr>
|
||||
<tr><td style="width:45%" valign="top"><a id="five"></a></br></br>Toggle **Yes** or **No** to enable Developer Mode on the HoloLens. [Learn more about Developer Mode.](https://docs.microsoft.com/windows/uwp/get-started/enable-your-device-for-development#developer-mode)</td><td></td></tr>
|
||||
<tr><td style="width:45%" valign="top"><a id="six"></a></br></br>Do not set a password to protect your provisioning package. If the provisioning package is protected by a password, provisioning the HoloLens device will fail.</td><td></td></tr>
|
||||
</table>
|
||||
|
||||
After you're done, click **Create**. It only takes a few seconds. When the package is built, the location where the package is stored is displayed as a hyperlink at the bottom of the page.
|
||||
|
||||
**Next step**: [How to apply a provisioning package](#apply)
|
||||
|
||||
|
||||
## Create a provisioning package for HoloLens using advanced provisioning
|
||||
|
||||
>[!NOTE]
|
||||
>Settings in a provisioning package will only be applied if the provisioning package includes an edition upgrade license to Windows Holographic for Business or if [the device has already been upgraded to Windows Holographic for Business](hololens-upgrade-enterprise.md).
|
||||
@ -47,7 +104,7 @@ When you run ADKsetup.exe for Windows 10, version 1607, select **Configuration D
|
||||
7. Expand **Runtime settings** and customize the package with any of the settings [described below](#what-you-can-configure).
|
||||
|
||||
>[!IMPORTANT]
|
||||
>If you create a local account in the provisioning package, you must change the password using the **Settings** app every 42 days. If the password is not changed during that period, the account might be locked out and unable to sign in. If the user account is locked out, you must [perform a full device recovery](https://developer.microsoft.com/windows/mixed-reality/reset_or_recover_your_hololens#perform_a_full_device_recovery).
|
||||
>(For Windows 10, version 1607 only) If you create a local account in the provisioning package, you must change the password using the **Settings** app every 42 days. If the password is not changed during that period, the account might be locked out and unable to sign in. If the user account is locked out, you must [perform a full device recovery](https://developer.microsoft.com/windows/mixed-reality/reset_or_recover_your_hololens#perform_a_full_device_recovery).
|
||||
|
||||
8. On the **File** menu, click **Save**.
|
||||
|
||||
@ -80,12 +137,12 @@ When you run ADKsetup.exe for Windows 10, version 1607, select **Configuration D
|
||||
|
||||
10. When the build completes, click **Finish**.
|
||||
|
||||
|
||||
<span id="apply" />
|
||||
## Apply a provisioning package to HoloLens
|
||||
|
||||
1. Connect the device via USB to a PC and start the device, but do not continue past the **Fit** page of OOBE (the first page with the blue box).
|
||||
|
||||
2. Briefly press and release the **Volume Down** and **Power** buttons simultaneously.
|
||||
2. Briefly press and release the **Volume Down** and **Power** buttons simultaneously. (This step isn't needed in Windows 10, version 1803.)
|
||||
|
||||
3. HoloLens will show up as a device in File Explorer on the PC.
|
||||
|
||||
@ -110,7 +167,6 @@ In Windows Configuration Designer, when you create a provisioning package for Wi
|
||||
|
||||
| Setting | Description |
|
||||
| --- | --- |
|
||||
| **Accounts** | Create a local account. HoloLens currently supports a single user only. Creating multiple local accounts in a provisioning package is not supported. <br><br>**IMPORTANT**<br>If you create a local account in the provisioning package, you must change the password using the **Settings** app every 42 days. If the password is not changed during that period, the account might be locked out and unable to sign in. If the user account is locked out, you must [perform a full device recovery](https://developer.microsoft.com/windows/mixed-reality/reset_or_recover_your_hololens#perform_a_full_device_recovery). |
|
||||
| **Certificates** | Deploy a certificate to HoloLens. |
|
||||
| **ConnectivityProfiles** | Deploy a Wi-Fi profile to HoloLens. |
|
||||
| **EditionUpgrade** | [Upgrade to Windows Holographic for Business.](hololens-upgrade-enterprise.md) |
|
||||
|
@ -54,8 +54,8 @@ Hello for Business (using a PIN to sign in) is supported for HoloLens. It must b
|
||||
Yes, the behavior for the type of account impacts the sign-in behavior. If you apply policies for sign-in, the policy is always respected. If no policy for sign-in is applied, these are the default behaviors for each account type.
|
||||
|
||||
- Microsoft account: signs in automatically
|
||||
- Local account: always asks for password, not configurable by Settings
|
||||
- Azure AD: asks for password by default; configurable by Settings to no longer ask for password.
|
||||
- Local account: always asks for password, not configurable in **Settings**
|
||||
- Azure AD: asks for password by default; configurable by **Settings** to no longer ask for password.
|
||||
|
||||
>[!NOTE]
|
||||
>Inactivity timers are currently not supported, which means that the **AllowIdleReturnWithoutPassword** policy is respected only when the device goes into StandBy.
|
||||
|
50
devices/hololens/hololens-updates.md
Normal file
@ -0,0 +1,50 @@
|
||||
---
|
||||
title: Manage updates to HoloLens (HoloLens)
|
||||
description: Administrators can use mobile device management to manage updates to HoloLens devices.
|
||||
ms.prod: w10
|
||||
ms.mktglfcycl: manage
|
||||
ms.pagetype: hololens, devices
|
||||
ms.sitesec: library
|
||||
author: jdeckerms
|
||||
ms.localizationpriority: medium
|
||||
ms.date: 04/30/2018
|
||||
---
|
||||
|
||||
# Manage updates to HoloLens
|
||||
|
||||
>[!WARNING]
|
||||
>Some information relates to prereleased product which may be substantially modified before it's commercially released. Microsoft makes no warranties, express or implied, with respect to the information provided here.
|
||||
|
||||
Windows 10, version 1803, is the first feature update to Windows Holographic for Business since its release in Windows 10, version 1607. As with desktop devices, administrators can manage updates to the HoloLens operating system using [Windows Update for Business](https://docs.microsoft.com/windows/deployment/update/waas-manage-updates-wufb).
|
||||
|
||||
>[!NOTE]
|
||||
>HoloLens devices must be [upgraded to Windows Holographic for Business](hololens-upgrade-enterprise.md) to manage updates.
|
||||
|
||||
|
||||
Mobile device management (MDM) providers use the [Policy Configuration Service Provider (CSP)](https://docs.microsoft.com/windows/client-management/mdm/policy-configuration-service-provider) to enable update management.
|
||||
|
||||
The Update policies supported for HoloLens are:
|
||||
|
||||
- [Update/AllowAutoUpdate](https://docs.microsoft.com/windows/client-management/mdm/policy-csp-update#update-allowautoupdate)
|
||||
- [Update/AllowUpdateService](https://docs.microsoft.com/windows/client-management/mdm/policy-csp-update#update-allowupdateservice)
|
||||
- [Update/RequireDeferUpgrade](https://docs.microsoft.com/windows/client-management/mdm/policy-csp-update#update-requiredeferupgrade)
|
||||
- [Update/RequireUpdateApproval](https://docs.microsoft.com/windows/client-management/mdm/policy-csp-update#update-requireupdateapproval)
|
||||
- [Update/UpdateServiceUrl](https://docs.microsoft.com/windows/client-management/mdm/policy-csp-update#update-updateserviceurl)
|
||||
|
||||
|
||||
|
||||
Typically, devices access Windows Update directly for updates. You can use the following update policies to configure devices to get updates from Windows Server Update Service (WSUS) instead:
|
||||
|
||||
- [Update/AllowUpdateService](https://docs.microsoft.com/windows/client-management/mdm/policy-csp-update#update-allowupdateservice)
|
||||
- [Update/RequireUpdateApproval](https://docs.microsoft.com/windows/client-management/mdm/policy-csp-update#update-requireupdateapproval)
|
||||
- [Update/UpdateServiceUrl](https://docs.microsoft.com/windows/client-management/mdm/policy-csp-update#update-updateserviceurl)
|
||||
|
||||
In Microsoft Intune, use [a custom profile](https://docs.microsoft.com/intune/custom-settings-windows-holographic) to configure devices to get updates from WSUS.
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
## Related topics
|
||||
|
||||
- [Manage software updates in Microsoft Intune](https://docs.microsoft.com/intune/windows-update-for-business-configure)
|
@ -7,17 +7,20 @@ ms.pagetype: hololens, devices
|
||||
ms.sitesec: library
|
||||
author: jdeckerms
|
||||
ms.localizationpriority: medium
|
||||
ms.date: 02/02/2018
|
||||
ms.date: 04/30/2018
|
||||
---
|
||||
|
||||
# Unlock Windows Holographic for Business features
|
||||
|
||||
>[!WARNING]
|
||||
>Some information relates to prereleased product which may be substantially modified before it's commercially released. Microsoft makes no warranties, express or implied, with respect to the information provided here.
|
||||
|
||||
Microsoft HoloLens is available in the *Development Edition*, which runs Windows Holographic (an edition of Windows 10 designed for HoloLens), and in the [Commercial Suite](https://docs.microsoft.com/windows/mixed-reality/commercial-features), which provides extra features designed for business.
|
||||
|
||||
When you purchase the Commercial Suite, you receive a license that upgrades Windows Holographic to Windows Holographic for Business. This license can be applied to the device either through the organization's [mobile device management (MDM) provider](#edition-upgrade-using-mdm) or a [provisioning package](#edition-upgrade-using-a-provisioning-package).
|
||||
|
||||
>[!TIP]
|
||||
>You can tell that the HoloLens has been upgraded to the business edition in **Settings** > **Network & Internet**. The **VPN** option is only available in Windows Holographic for Business.
|
||||
>In Windows 10, version 1803, you can tell that the HoloLens has been upgraded to the business edition in **Settings** > **System**.
|
||||
|
||||
|
||||
|
||||
@ -37,7 +40,7 @@ Provisioning packages are files created by the Windows Configuration Designer to
|
||||
|
||||
### Create a provisioning package that upgrades the Windows Holographic edition
|
||||
|
||||
1. [Create a provisioning package for HoloLens.](hololens-provisioning.md#create-a-provisioning-package-for-hololens)
|
||||
1. [Create a provisioning package for HoloLens.](hololens-provisioning.md)
|
||||
|
||||
2. Go to **Runtime settings** > **EditionUpgrade**, and select **EditionUpgradeWithLicense**.
|
||||
|
||||
|
55
devices/hololens/hololens-whats-new.md
Normal file
@ -0,0 +1,55 @@
|
||||
---
|
||||
title: What's new in Microsoft HoloLens (HoloLens)
|
||||
description: Windows Holographic for Business gets new features in Windows 10, version 1803.
|
||||
ms.prod: w10
|
||||
ms.mktglfcycl: manage
|
||||
ms.pagetype: hololens, devices
|
||||
ms.sitesec: library
|
||||
author: jdeckerms
|
||||
ms.localizationpriority: medium
|
||||
ms.date: 04/30/2018
|
||||
---
|
||||
|
||||
# What's new in Microsoft HoloLens
|
||||
|
||||
>[!WARNING]
|
||||
>Some information relates to prereleased product which may be substantially modified before it's commercially released. Microsoft makes no warranties, express or implied, with respect to the information provided here.
|
||||
|
||||
Windows 10, version 1803, is the first feature update to Windows Holographic for Business since its release in Windows 10, version 1607. This update introduces the following changes:
|
||||
|
||||
- Previously, you could only verify that upgrade license for Commercial Suite had been applied to your HoloLens device by checking to see if VPN was an available option on the device. Now, **Settings** > **System** will display **Windows Holographic for Business** after the upgrade license is applied. [Learn how to unlock Windows Holographic for Business features](hololens-upgrade-enterprise.md).
|
||||
|
||||
- You can view the operating system build number in device properties in the File Explorer app and in the [Windows Device Recovery Tool (WDRT)](https://support.microsoft.com/help/12379/windows-10-mobile-device-recovery-tool-faq).
|
||||
|
||||
- Provisioning a HoloLens device is now easier with the new **Provision HoloLens devices** wizard in the Windows Configuration Designer tool. In the wizard, you can configure the setup experience and network connections, set developer mode, and obtain bulk Azure AD tokens. [Learn how to use the simple provisioning wizard for HoloLens](hololens-provisioning.md#wizard).
|
||||
|
||||

|
||||
|
||||
- When you create a local account in a provisioning package, the password no longer expires every 42 days.
|
||||
|
||||
- You can [configure HoloLens as a single-app or multi-app kiosk](hololens-kiosk.md). Multi-app kiosk mode lets you set up a HoloLens to only run the apps that you specify, and prevents users from making changes.
|
||||
|
||||
- Media Transfer Protocol (MTP) is enabled so that you can connect the HoloLens device to a PC by USB and transfer files between HoloLens and the PC. You can also use the File Explorer app to move and delete files from within HoloLens.
|
||||
|
||||
- Previously, after you signed in to the device with an Azure Active Directory (Azure AD) account, you then had to **Add work access** in **Settings** to get access to corporate resources. Now, you sign in with an Azure AD account and enrollment happens automatically.
|
||||
|
||||
- Before you sign in, you can choose the network icon below the password field to choose a different Wi-Fi network to connect to. You can also connect to a guest network, such as at a hotel, conference center, or business.
|
||||
|
||||
- You can now easily [share HoloLens with multiple people](hololens-multiple-users.md) using Azure AD accounts.
|
||||
|
||||
- When setup or sign-in fails, choose the new **Collect info** option to get diagnostic logs for troubleshooting.
|
||||
|
||||
- Individual users can sync their corporate email without enrolling their device in mobile device management (MDM). You can use the device with a Microsoft Account, download and install the Mail app, and add an email account directly.
|
||||
|
||||
- You can check the MDM sync status for a device in **Settings** > **Accounts** > **Access Work or School** > **Info**. In the **Device sync status** section, you can start a sync, see areas managed by MDM, and create and export an advanced diagnostics report.
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
## Additional resources
|
||||
|
||||
- [Reset or recover your HoloLens](https://developer.microsoft.com/windows/mixed-reality/reset_or_recover_your_hololens)
|
||||
- [Restart, rest, or recover HoloLens](https://support.microsoft.com/help/13452/hololens-restart-reset-or-recover-hololens)
|
||||
- [Manage devices running Windows Holographic with Microsoft Intune](https://docs.microsoft.com/intune/windows-holographic-for-business)
|
||||
|
BIN
devices/hololens/images/account-management-details.png
Normal file
After Width: | Height: | Size: 20 KiB |
BIN
devices/hololens/images/account-management.PNG
Normal file
After Width: | Height: | Size: 2.0 KiB |
BIN
devices/hololens/images/add-certificates-details.PNG
Normal file
After Width: | Height: | Size: 12 KiB |
BIN
devices/hololens/images/add-certificates.PNG
Normal file
After Width: | Height: | Size: 2.1 KiB |
BIN
devices/hololens/images/backicon.png
Normal file
After Width: | Height: | Size: 304 B |
BIN
devices/hololens/images/check_blu.png
Normal file
After Width: | Height: | Size: 20 KiB |
BIN
devices/hololens/images/check_grn.png
Normal file
After Width: | Height: | Size: 20 KiB |
BIN
devices/hololens/images/checklistbox.gif
Normal file
After Width: | Height: | Size: 877 B |
BIN
devices/hololens/images/checklistdone.png
Normal file
After Width: | Height: | Size: 330 B |
BIN
devices/hololens/images/checkmark.png
Normal file
After Width: | Height: | Size: 20 KiB |
BIN
devices/hololens/images/crossmark.png
Normal file
After Width: | Height: | Size: 20 KiB |
BIN
devices/hololens/images/developer-setup-details.png
Normal file
After Width: | Height: | Size: 5.4 KiB |
BIN
devices/hololens/images/developer-setup.png
Normal file
After Width: | Height: | Size: 5.0 KiB |
BIN
devices/hololens/images/doneicon.png
Normal file
After Width: | Height: | Size: 410 B |
BIN
devices/hololens/images/finish-details.png
Normal file
After Width: | Height: | Size: 15 KiB |
BIN
devices/hololens/images/finish.PNG
Normal file
After Width: | Height: | Size: 1.0 KiB |
BIN
devices/hololens/images/five.png
Normal file
After Width: | Height: | Size: 429 B |
BIN
devices/hololens/images/four.png
Normal file
After Width: | Height: | Size: 470 B |
BIN
devices/hololens/images/icd-create-options-1703.PNG
Normal file
After Width: | Height: | Size: 21 KiB |
BIN
devices/hololens/images/icd-export-menu.png
Normal file
After Width: | Height: | Size: 2.1 KiB |
BIN
devices/hololens/images/icd-install.PNG
Normal file
After Width: | Height: | Size: 35 KiB |
BIN
devices/hololens/images/icd-simple-edit.png
Normal file
After Width: | Height: | Size: 16 KiB |
BIN
devices/hololens/images/launchicon.png
Normal file
After Width: | Height: | Size: 462 B |
BIN
devices/hololens/images/multiappassignedaccesssettings.png
Normal file
After Width: | Height: | Size: 5.0 KiB |
BIN
devices/hololens/images/one.png
Normal file
After Width: | Height: | Size: 319 B |
BIN
devices/hololens/images/provision-hololens-devices.png
Normal file
After Width: | Height: | Size: 3.7 KiB |
BIN
devices/hololens/images/set-up-device-details.PNG
Normal file
After Width: | Height: | Size: 38 KiB |
BIN
devices/hololens/images/set-up-device.PNG
Normal file
After Width: | Height: | Size: 1.5 KiB |
BIN
devices/hololens/images/set-up-network-details-desktop.PNG
Normal file
After Width: | Height: | Size: 7.6 KiB |
BIN
devices/hololens/images/set-up-network.PNG
Normal file
After Width: | Height: | Size: 1.8 KiB |
BIN
devices/hololens/images/seven.png
Normal file
After Width: | Height: | Size: 325 B |
BIN
devices/hololens/images/six.png
Normal file
After Width: | Height: | Size: 549 B |
BIN
devices/hololens/images/three.png
Normal file
After Width: | Height: | Size: 458 B |
BIN
devices/hololens/images/two.png
Normal file
After Width: | Height: | Size: 443 B |
BIN
devices/hololens/images/wizard-steps.png
Normal file
After Width: | Height: | Size: 18 KiB |
@ -7,7 +7,7 @@ ms.pagetype: hololens, devices
|
||||
ms.sitesec: library
|
||||
author: jdeckerms
|
||||
ms.localizationpriority: medium
|
||||
ms.date: 11/29/2017
|
||||
ms.date: 04/30/2018
|
||||
---
|
||||
|
||||
# Microsoft HoloLens
|
||||
@ -21,14 +21,18 @@ ms.date: 11/29/2017
|
||||
|
||||
| Topic | Description |
|
||||
| --- | --- |
|
||||
[What's new in Microsoft HoloLens](hololens-whats-new.md) | Discover the new features in the latest update.
|
||||
| [HoloLens in the enterprise: requirements](hololens-requirements.md) | Lists requirements for general use, Wi-Fi, and device management |
|
||||
| [Set up HoloLens](hololens-setup.md) | How to set up HoloLens for the first time |
|
||||
| [Unlock Windows Holographic for Business features](hololens-upgrade-enterprise.md) | How to upgrade your Development Edition HoloLens to Windows Holographic for Business|
|
||||
| [Enroll HoloLens in MDM](hololens-enroll-mdm.md) | Manage multiple HoloLens devices simultaneously using solutions like Microsoft Intune |
|
||||
[Manage updates to HoloLens](hololens-updates.md) | Use mobile device management (MDM) policies to configure settings for updates.
|
||||
| [Set up HoloLens in kiosk mode](hololens-kiosk.md) | Enable kiosk mode for HoloLens, which limits the user's ability to launch new apps or change the running app |
|
||||
[Share HoloLens with multiple people](hololens-multiple-users.md) | Multiple users can shared a HoloLens device by using their Azure Active Directory accounts.
|
||||
| [Configure HoloLens using a provisioning package](hololens-provisioning.md) | Provisioning packages make it easy for IT administrators to configure HoloLens devices without imaging |
|
||||
| [Install apps on HoloLens](hololens-install-apps.md) | Use Microsoft Store for Business, mobile device management (MDM), or the Windows Device Portal to install apps on HoloLens|
|
||||
</br>
|
||||
[Enable Bitlocker device encryption for HoloLens](hololens-encryption.md) | Learn how to use Bitlocker device encryption to protect files and information stored on the HoloLens.
|
||||
[Change history for Microsoft HoloLens documentation](change-history-hololens.md) | See new and updated topics in the HoloLens documentation library.
|
||||
|
||||
## Related resources
|
||||
|
||||
|
@ -177,8 +177,8 @@ Now that you're connected to the online services, you can finish setting up the
|
||||
4. Various Exchange properties can be set on the device account to improve the meeting experience. You can see which properties need to be set in the [Exchange properties](exchange-properties-for-surface-hub-device-accounts.md) section.
|
||||
|
||||
``` syntax
|
||||
Set-CalendarProcessing -Identity $acctUpn -AutomateProcessing AutoAccept -AddOrganizerToSubject $false –AllowConflicts $false –DeleteComments $false -DeleteSubject $false -RemovePrivateProperty $false
|
||||
Set-CalendarProcessing -Identity $acctUpn -AddAdditionalResponse $true -AdditionalResponse "This is a Surface Hub room!"
|
||||
Set-CalendarProcessing -Identity $strEmail -AutomateProcessing AutoAccept -AddOrganizerToSubject $false –AllowConflicts $false –DeleteComments $false -DeleteSubject $false -RemovePrivateProperty $false
|
||||
Set-CalendarProcessing -Identity $strEmail -AddAdditionalResponse $true -AdditionalResponse "This is a Surface Hub room!"
|
||||
```
|
||||
|
||||

|
||||
@ -211,7 +211,7 @@ In order to enable Skype for Business, your environment will need to meet the fo
|
||||
2. To enable your Surface Hub account for Skype for Business Server, run this cmdlet:
|
||||
|
||||
```PowerShell
|
||||
Enable-CsMeetingRoom -Identity $rm -RegistrarPool
|
||||
Enable-CsMeetingRoom -Identity $strEmail -RegistrarPool
|
||||
"sippoolbl20a04.infra.lync.com" -SipAddressType EmailAddress
|
||||
```
|
||||
|
||||
@ -325,8 +325,8 @@ Now that you're connected to the online services, you can finish setting up the
|
||||
4. Various Exchange properties can be set on the device account to improve the meeting experience. You can see which properties need to be set in the [Exchange properties](exchange-properties-for-surface-hub-device-accounts.md) section.
|
||||
|
||||
``` syntax
|
||||
Set-CalendarProcessing -Identity $acctUpn -AutomateProcessing AutoAccept -AddOrganizerToSubject $false –AllowConflicts $false –DeleteComments $false -DeleteSubject $false -RemovePrivateProperty $false
|
||||
Set-CalendarProcessing -Identity $acctUpn -AddAdditionalResponse $true -AdditionalResponse "This is a Surface Hub room!"
|
||||
Set-CalendarProcessing -Identity $strEmail -AutomateProcessing AutoAccept -AddOrganizerToSubject $false –AllowConflicts $false –DeleteComments $false -DeleteSubject $false -RemovePrivateProperty $false
|
||||
Set-CalendarProcessing -Identity $strEmail -AddAdditionalResponse $true -AdditionalResponse "This is a Surface Hub room!"
|
||||
```
|
||||
|
||||
5. Now we have to set some properties in AD. To do that, you need the alias of the account (this is the part of the UPN that becomes before the “@”).
|
||||
@ -369,7 +369,7 @@ In order to enable Skype for Business, your environment will need to meet the fo
|
||||
2. To enable your Surface Hub account for Skype for Business Server, run this cmdlet:
|
||||
|
||||
```PowerShell
|
||||
Enable-CsMeetingRoom -Identity $rm -RegistrarPool
|
||||
Enable-CsMeetingRoom -Identity $strEmail -RegistrarPool
|
||||
"sippoolbl20a04.infra.lync.com" -SipAddressType EmailAddress
|
||||
```
|
||||
|
||||
|
@ -60,6 +60,9 @@ If you see a blank screen for long periods of time during the **Reset device** p
|
||||
|
||||
In the Windows Recovery Environment (Windows RE), you can recover your device by downloading a factory build from the cloud and installing it on the Surface Hub. This allows devices in an unusable state to recover without requiring assistance from Microsoft Support.
|
||||
|
||||
>[!NOTE]
|
||||
>The **Recover from the cloud** process requires an open internet connection (no proxy, or other authentications). An ethernet connection is recommended.
|
||||
|
||||
### Recover a Surface Hub in a bad state
|
||||
|
||||
If the device account gets into an unstable state or the Admin account is running into issues, you can use cloud recovery in **Settings**. You should only use cloud recovery when [reset](#reset-a-surface-hub-from-settings) doesn't fix the problem.
|
||||
@ -77,8 +80,6 @@ On rare occasions, a Surface Hub may encounter an error while cleaning up user a
|
||||
1. From the welcome screen, toggle the Surface Hub's power switch 3 times. Wait a few seconds between each toggle. See the [Surface Hub Site Readiness Guide](https://www.microsoft.com/surface/support/surface-hub/surface-hub-site-readiness-guide) for help with locating the power switch.
|
||||
2. The device should automatically boot into Windows RE.
|
||||
3. After the Surface Hub enters Windows RE, select **Recover from the cloud**. (Optionally, you can choose **Reset**, however **Recover from the cloud** is the recommended approach.)
|
||||
>[!NOTE]
|
||||
>When using **Recover from the cloud**, an ethernet connection is recommended.
|
||||
|
||||

|
||||
|
||||
|
@ -24,7 +24,7 @@ To let people in your organization sign in to Surface Hub with their phones and
|
||||
|
||||
- Make sure you have at minimum an Office 365 E3 subscription.
|
||||
|
||||
- [Configure Multi-Factor Authentication](https://docs.microsoft.com/azure/multi-factor-authentication/multi-factor-authentication). Make sure **Notification through mobile app** is selected.
|
||||
- [Configure Multi-Factor Authentication](https://docs.microsoft.com/en-us/azure/active-directory/authentication/howto-mfa-mfasettings). Make sure **Notification through mobile app** is selected.
|
||||
|
||||

|
||||
|
||||
|
@ -1,6 +1,6 @@
|
||||
# [Surface](index.md)
|
||||
## [Deploy Surface devices](deploy.md)
|
||||
### [Windows AutoPilot and Surface devices](windows-autopilot-and-surface-devices.md)
|
||||
### [Windows Autopilot and Surface devices](windows-autopilot-and-surface-devices.md)
|
||||
### [Surface device compatibility with Windows 10 Long-Term Servicing Branch](surface-device-compatibility-with-windows-10-ltsc.md)
|
||||
#### [Long-Term Servicing Branch for Surface devices](ltsb-for-surface.md)
|
||||
### [Deploy Windows 10 to Surface devices with MDT](deploy-windows-10-to-surface-devices-with-mdt.md)
|
||||
|
@ -23,7 +23,7 @@ This topic lists new and updated topics in the Surface documentation library.
|
||||
|
||||
|New or changed topic | Description |
|
||||
| --- | --- |
|
||||
|[Windows AutoPilot and Surface devices](windows-autopilot-and-surface-devices.md) | New article |
|
||||
|[Windows Autopilot and Surface devices](windows-autopilot-and-surface-devices.md) | New article |
|
||||
|[Microsoft Surface Data Eraser](microsoft-surface-data-eraser.md) | Added version 3.2.45.0 information |
|
||||
|[Surface device compatibility with Windows 10 Long-Term Servicing Channel (LTSC)](surface-device-compatibility-with-windows-10-ltsc.md) | Updated Current Branch (CB) or Current Branch for Business (CBB) servicing options with Semi-Annual Channel (SAC) information |
|
||||
|[Wake On LAN for Surface devices](wake-on-lan-for-surface-devices.md) | Added Surface Book 2, Surface Laptop, Surface Pro, Surface Pro with LTE Advanced, and Surface Pro information |
|
||||
|
@ -18,7 +18,7 @@ Get deployment guidance for your Surface devices including information about MDT
|
||||
|
||||
| Topic | Description |
|
||||
| --- | --- |
|
||||
| [Windows AutoPilot and Surface devices](windows-autopilot-and-surface-devices.md) | Find out how to remotely deploy and configure devices with Windows AutoPilot. |
|
||||
| [Windows Autopilot and Surface devices](windows-autopilot-and-surface-devices.md) | Find out how to remotely deploy and configure devices with Windows Autopilot. |
|
||||
| [Surface device compatibility with Windows 10 Long-Term Servicing Channel](surface-device-compatibility-with-windows-10-ltsc.md) | Find out about compatibility and limitations of Surface devices running Windows 10 Enterprise LTSC edition. |
|
||||
| [Deploy Windows 10 to Surface devices with MDT](deploy-windows-10-to-surface-devices-with-mdt.md) | Walk through the recommended process of how to deploy Windows 10 to your Surface devices with the Microsoft Deployment Toolkit.|
|
||||
| [Upgrade Surface devices to Windows 10 with MDT](upgrade-surface-devices-to-windows-10-with-mdt.md)| Find out how to perform a Windows 10 upgrade deployment to your Surface devices. |
|
||||
|
@ -1,6 +1,6 @@
|
||||
---
|
||||
title: Windows AutoPilot and Surface Devices (Surface)
|
||||
description: Find out about Windows AutoPilot deployment options for Surface devices.
|
||||
title: Windows Autopilot and Surface Devices (Surface)
|
||||
description: Find out about Windows Autopilot deployment options for Surface devices.
|
||||
keywords: autopilot, windows 10, surface, deployment
|
||||
ms.prod: w10
|
||||
ms.mktglfcycl: deploy
|
||||
@ -11,16 +11,16 @@ ms.date: 01/31/2018
|
||||
ms.author: jdecker
|
||||
---
|
||||
|
||||
# Windows AutoPilot and Surface devices
|
||||
# Windows Autopilot and Surface devices
|
||||
|
||||
Windows AutoPilot is a cloud-based deployment technology available in Windows 10. Using Windows AutoPilot, you can remotely deploy and configure devices in a truly zero-touch process right out of the box. Windows AutoPilot registered devices are identified over the internet at first boot using a unique device signature, known as the hardware hash, and automatically enrolled and configured using modern management solutions such as Azure Active Directory (AAD) and Mobile Device Management (MDM).
|
||||
Windows Autopilot is a cloud-based deployment technology available in Windows 10. Using Windows Autopilot, you can remotely deploy and configure devices in a truly zero-touch process right out of the box. Windows Autopilot registered devices are identified over the internet at first boot using a unique device signature, known as the hardware hash, and automatically enrolled and configured using modern management solutions such as Azure Active Directory (AAD) and Mobile Device Management (MDM).
|
||||
|
||||
With Surface devices, you can choose to register your devices at the time of purchase when purchasing from a Surface partner enabled for Windows AutoPilot. New devices can be shipped directly to your end-users and will be automatically enrolled and configured when the units are unboxed and turned on for the first time. This process can eliminate need to reimage your devices as part of your deployment process, reducing the work required of your deployment staff and opening up new, agile methods for device management and distribution.
|
||||
With Surface devices, you can choose to register your devices at the time of purchase when purchasing from a Surface partner enabled for Windows Autopilot. New devices can be shipped directly to your end-users and will be automatically enrolled and configured when the units are unboxed and turned on for the first time. This process can eliminate need to reimage your devices as part of your deployment process, reducing the work required of your deployment staff and opening up new, agile methods for device management and distribution.
|
||||
|
||||
In this article learn how to enroll your Surface devices in Windows AutoPilot with a Surface partner and the options and considerations you will need to know along the way. This article focuses specifically on Surface devices, for more information about using Windows AutoPilot with other devices, or to read more about Windows AutoPilot and its capabilities, see [Overview of Windows AutoPilot](https://docs.microsoft.com/en-us/windows/deployment/windows-autopilot/windows-10-autopilot) in the Windows Docs Library.
|
||||
In this article learn how to enroll your Surface devices in Windows Autopilot with a Surface partner and the options and considerations you will need to know along the way. This article focuses specifically on Surface devices, for more information about using Windows Autopilot with other devices, or to read more about Windows Autopilot and its capabilities, see [Overview of Windows Autopilot](https://docs.microsoft.com/en-us/windows/deployment/windows-autopilot/windows-10-autopilot) in the Windows Docs Library.
|
||||
|
||||
## Prerequisites
|
||||
Enrollment of Surface devices in Windows AutoPilot with a Surface partner enabled for Windows AutoPilot has the following licensing requirements for each enrolled Surface device:
|
||||
Enrollment of Surface devices in Windows Autopilot with a Surface partner enabled for Windows Autopilot has the following licensing requirements for each enrolled Surface device:
|
||||
* **Azure Active Directory Premium** – Required to enroll your devices in your organization and to automatically enroll devices in your organization’s mobile management solution.
|
||||
* **Mobile Device Management (such as Microsoft Intune)** – Required to remotely deploy applications, configure, and manage your enrolled devices.
|
||||
* **Office 365 ProPlus** – Required to deploy Microsoft Office to your enrolled devices.
|
||||
@ -33,19 +33,19 @@ Or
|
||||
* Office 365 ProPlus, E3, or E5 (includes Office 365 ProPlus)
|
||||
|
||||
>[!NOTE]
|
||||
>Deployment of devices using Windows AutoPilot to complete the Out-of-Box Experience (OOBE) is supported without these prerequisites, however will yield deployed devices without applications, configuration, or enrollment in a management solution and is highly discouraged.
|
||||
>Deployment of devices using Windows Autopilot to complete the Out-of-Box Experience (OOBE) is supported without these prerequisites, however will yield deployed devices without applications, configuration, or enrollment in a management solution and is highly discouraged.
|
||||
|
||||
### Windows version considerations
|
||||
Support for broad deployments of Surface devices using Windows AutoPilot, including enrollment performed by Surface partners at the time of purchase, requires devices manufactured with or otherwise installed with Windows 10 Version 1709 (Fall Creators Update). Windows 10 Version 1709 uses a secure 4096-bit (4k) hash value to uniquely identify devices for Windows AutoPilot that is necessary for deployments at scale.
|
||||
Support for broad deployments of Surface devices using Windows Autopilot, including enrollment performed by Surface partners at the time of purchase, requires devices manufactured with or otherwise installed with Windows 10 Version 1709 (Fall Creators Update). Windows 10 Version 1709 uses a secure 4096-bit (4k) hash value to uniquely identify devices for Windows Autopilot that is necessary for deployments at scale.
|
||||
|
||||
### Surface device support
|
||||
Surface devices with support for out-of-box deployment with Windows AutoPilot, enrolled during the purchase process with a Surface partner, include the following devices, where the devices ship from the factory with Windows 10 Version 1709:
|
||||
Surface devices with support for out-of-box deployment with Windows Autopilot, enrolled during the purchase process with a Surface partner, include the following devices, where the devices ship from the factory with Windows 10 Version 1709:
|
||||
* Surface Pro (Model 1796)
|
||||
* Surface Book 2
|
||||
* Surface Laptop
|
||||
* Surface Studio
|
||||
|
||||
## Surface partners enabled for Windows AutoPilot
|
||||
Enrolling Surface devices in Windows AutoPilot at the time of purchase is a capability provided by select Surface partners that are enabled with the capability to identify individual Surface devices during the purchase process and perform enrollment on an organization’s behalf. Devices enrolled by a Surface partner at time of purchase can be shipped directly to users and configured entirely through the zero-touch process of Windows AutoPilot, Azure Active Directory, and Mobile Device Management.
|
||||
## Surface partners enabled for Windows Autopilot
|
||||
Enrolling Surface devices in Windows Autopilot at the time of purchase is a capability provided by select Surface partners that are enabled with the capability to identify individual Surface devices during the purchase process and perform enrollment on an organization’s behalf. Devices enrolled by a Surface partner at time of purchase can be shipped directly to users and configured entirely through the zero-touch process of Windows Autopilot, Azure Active Directory, and Mobile Device Management.
|
||||
|
||||
You can find a list of Surface partners enabled for Windows AutoPilot at the [Windows AutoPilot for Surface portal](https://www.microsoft.com/en-us/itpro/surface/windows-autopilot-for-surface).
|
||||
You can find a list of Surface partners enabled for Windows Autopilot at the [Windows Autopilot for Surface portal](https://www.microsoft.com/en-us/itpro/surface/windows-autopilot-for-surface).
|
@ -26,8 +26,7 @@ ms.date: 03/18/2018
|
||||
| [](#edu-task2) | **Interested in significantly improving your students' reading speed and comprehension?<sup>[1](#footnote1)</sup>** </br>Try the [Learning Tools Immersive Reader](#edu-task2) to see how kids can learn to read faster, using text read aloud, and highlighting words for syntax. |
|
||||
| [](#edu-task3) | **Looking to foster collaboration, communication, and critical thinking in the classroom?** </br>Launch [Microsoft Teams](#edu-task3) and learn how to set up digital classroom discussions, respond to student questions, and organize class content. |
|
||||
| [](#edu-task4) | **Trying to expand classroom creativity and interaction between students?** </br>Open [OneNote](#edu-task4) and create an example group project for your class. |
|
||||
| [](#edu-task5) | **Curious about telling stories through video?** </br>Try the [Photos app](#edu-task5) to make your own example video. |
|
||||
| [](#edu-task6) | **Want to teach kids to further collaborate and problem solve?** </br>Play with [Minecraft: Education Edition](#edu-task6) to see how it can be used as a collaborative and versatile platform across subjects to encourage 21st century skills. |
|
||||
| [](#edu-task5) | **Want to teach kids to further collaborate and problem solve?** </br>Play with [Minecraft: Education Edition](#edu-task5) to see how it can be used as a collaborative and versatile platform across subjects to encourage 21st century skills. |
|
||||
| | |
|
||||
|
||||
</br>
|
||||
@ -43,8 +42,11 @@ ms.date: 03/18/2018
|
||||
To try out the educator tasks, start by logging in as a teacher.
|
||||
|
||||
1. Turn on **Device A** and ensure you plug in the PC to an electrical outlet.
|
||||
2. Log in to **Device A** using the **Teacher Username** and **Teacher Password** included in the **Credentials Sheet** located in your kit.
|
||||
3. Connect to your school's Wi-Fi network or connect with a local Ethernet connection.
|
||||
2. Connect to your school's Wi-Fi network or connect with a local Ethernet connection.
|
||||
>**Note**: If your Wi-Fi network requires a web browser login page to connect to the Internet you should connect using the Ethernet port. If your Wi-Fi network has additional restrictions that will prevent the device from connecting to the internet without registration you should consider using Device A from a different network.
|
||||
|
||||
3. Log in to **Device A** using the **Teacher Username** and **Teacher Password** included in the **Credentials Sheet** located in your kit.
|
||||
|
||||
|
||||
</br>
|
||||
</br>
|
||||
@ -81,6 +83,8 @@ Learning Tools and the Immersive Reader can be used in the Microsoft Edge browse
|
||||
</br>
|
||||
</br>
|
||||
|
||||
|
||||
|
||||

|
||||
## <a name="edu-task3"></a>3. Spark communication, critical thinking, and creativity in the classroom
|
||||
|
||||
@ -134,7 +138,7 @@ When you're not using the pen, just use the magnet to stick it to the left side
|
||||
</br>
|
||||
</br>
|
||||
|
||||

|
||||
<!-- 
|
||||
## <a name="edu-task5"></a>5. Engage with students by creating videos
|
||||
|
||||
PHOTOS APP VIDEO COMING SOON!
|
||||
@ -178,10 +182,10 @@ Use video to create a project summary.
|
||||
Check out this use case video of the Photos team partnering with the Bureau Of Fearless Ideas in Seattle to bring the Photos app to local middle school students: <a href="https://www.youtube.com/watch?v=0dFFAu6XwPg" target="_blank">https://www.youtube.com/watch?v=0dFFAu6XwPg</a>
|
||||
</br>
|
||||
</br>
|
||||
</br>
|
||||
</br> -->
|
||||
|
||||

|
||||
## <a name="edu-task6"></a>6. Get kids to further collaborate and problem solve
|
||||
## <a name="edu-task5"></a>5. Get kids to further collaborate and problem solve
|
||||
|
||||
> [!VIDEO https://www.youtube.com/embed/QI_bRNUugog]
|
||||
|
||||
|
BIN
education/trial-in-a-box/images/Bug.png
Normal file
After Width: | Height: | Size: 294 KiB |
BIN
education/trial-in-a-box/images/screenshot-bug.png
Normal file
After Width: | Height: | Size: 294 KiB |
@ -45,8 +45,10 @@ If you run into any problems while following the steps in this guide, or you hav
|
||||
To try out the IT admin tasks, start by logging in as an IT admin.
|
||||
|
||||
1. Turn on **Device A** and ensure you plug in the PC to an electrical outlet.
|
||||
2. Log in to **Device A** using the **Administrator Username** and **Administrator Password** included in the **Credentials Sheet** located in your kit.
|
||||
3. Connect to your school's Wi-Fi network or connect with a local Ethernet connection.
|
||||
2. Connect to your school's Wi-Fi network or connect with a local Ethernet connection.
|
||||
>**Note**: If your Wi-Fi network requires a web browser login page to connect to the Internet you should connect using the Ethernet port. If your Wi-Fi network has additional restrictions that will prevent the device from connecting to the internet without registration you should consider using Device A from a different network.
|
||||
|
||||
3. Log in to **Device A** using the **Administrator Username** and **Administrator Password** included in the **Credentials Sheet** located in your kit.
|
||||
4. Note the serial numbers on the Trial in a Box devices and register both devices with the hardware manufacturer to activate the manufacturer's warranty.
|
||||
|
||||
</br>
|
||||
@ -98,7 +100,7 @@ If you've previously used Set up School PCs to provision student devices, you ca
|
||||
- Set up School PCs will change some account management logic so that it sets the expiration time for an account to 180 days (without requiring sign-in).
|
||||
- This setting also increases the maximum storage to 100% of the available disk space. This prevents the student's account from being erased if the student stores a lot of files or data or if the student doesn't use the PC over a prolonged period.
|
||||
- **Let guests sign-in to these PCs** allows guests to use student PCs without a school account. If you select this option, a **Guest** account button will be added in the PC's sign-in screen to allow anyone to use the PC.
|
||||
- **Enable Windows 10 Automatic Redeployment** enables IT admins to quickly remove personal files, apps, and settings, and reset Windows 10 devices from the lock screen any time and apply original settings and management enrollment the student PC is returned to a fully configured or known approved state. For more info, see [Windows Automatic Redeployment](https://docs.microsoft.com/en-us/education/windows/windows-automatic-redeployment).
|
||||
- **Enable Windows 10 Autopilot Reset** enables IT admins to quickly remove personal files, apps, and settings, and reset Windows 10 devices from the lock screen any time and apply original settings and management enrollment the student PC is returned to a fully configured or known approved state. For more info, see [Autopilot Reset](https://docs.microsoft.com/en-us/education/windows/autopilot-reset).
|
||||
- **Lock screen background** shows the default backgroudn used for student PCs provisioned by Set up School PCs. Select **Browse** to change the default.
|
||||
|
||||
7. **Set up the Take a Test app** configures the device for taking quizzes and high-stakes assessments by some providers like Smarter Balanced. Windows will lock down the student PC so that students can't access anything else while taking the test.
|
||||
@ -150,7 +152,7 @@ A provisioning package is a method for applying settings to Windows 10 without n
|
||||
|
||||

|
||||
|
||||
If the PC is past the account setup screen, reset the PC to start over. To reset the PC, go to **Settings > Update & security > Recovery > Reset this PC**.
|
||||
If you go past the region selection screen, select **Ctrl + Shift + F3** which will prompt the "System Preparation Tool." Select **Okay** in the tool to return to the region selection screen. If this doesn't work, reset the PC by going to **Settings > Update & Security > Recovery > Reset this PC.**
|
||||
|
||||
2. Insert the USB drive into **Device B**. Windows will recognize the drive and automatically install the provisioning package.
|
||||
3. When prompted, remove the USB drive. You can then use the USB drive to start provisioning another student PC.
|
||||
@ -231,10 +233,10 @@ The Microsoft Store for Education is where you can shop for more apps for your s
|
||||
Update settings for all devices in your tenant by adding the **Documents** and **Downloads** folders to all devices managed in Intune for Education.
|
||||
|
||||
1. Go to the <a href="https://intuneeducation.portal.azure.com/" target="_blank">Intune for Education console</a>.
|
||||
2. Select **Group > All Devices > Settings** and expand **Windows interface customizations**.
|
||||
2. Select **Group > All Devices > Settings** and expand **Windows interface settings**.
|
||||
3. In **Choose folders that appear in the Start menu**, select **Documents** and **Downloads**.
|
||||
|
||||

|
||||

|
||||
|
||||
4. **Save** your changes.
|
||||
|
||||
|
@ -11,7 +11,7 @@
|
||||
### [Set up Take a Test on a single PC](take-a-test-single-pc.md)
|
||||
### [Set up Take a Test on multiple PCs](take-a-test-multiple-pcs.md)
|
||||
### [Take a Test app technical reference](take-a-test-app-technical.md)
|
||||
## [Reset devices with Windows Automatic Redeployment](windows-automatic-redeployment.md)
|
||||
## [Reset devices with Autopilot Reset](autopilot-reset.md)
|
||||
## [Working with Microsoft Store for Education](education-scenarios-store-for-business.md)
|
||||
## [Get Minecraft: Education Edition](get-minecraft-for-education.md)
|
||||
### [For teachers: get Minecraft Education Edition](teacher-get-minecraft.md)
|
||||
@ -20,6 +20,7 @@
|
||||
## [Test Windows 10 S on existing Windows 10 education devices](test-windows10s-for-edu.md)
|
||||
## [Deploy Windows 10 in a school](deploy-windows-10-in-a-school.md)
|
||||
## [Deploy Windows 10 in a school district](deploy-windows-10-in-a-school-district.md)
|
||||
## [Switch to Windows 10 Pro Education from Windows 10 Pro or Windows 10 S](switch-to-pro-education.md)
|
||||
## [Switch to Windows 10 Pro Education in S mode from Windows 10 Pro in S mode](s-mode-switch-to-edu.md)
|
||||
## [Switch to Windows 10 Pro Education from Windows 10 Pro](switch-to-pro-education.md)
|
||||
## [Chromebook migration guide](chromebook-migration-guide.md)
|
||||
## [Change history for Windows 10 for Education](change-history-edu.md)
|
||||
|
110
education/windows/autopilot-reset.md
Normal file
@ -0,0 +1,110 @@
|
||||
---
|
||||
title: Reset devices with Autopilot Reset
|
||||
description: Gives an overview of Autopilot Reset and how you can enable and use it in your schools.
|
||||
keywords: Autopilot Reset, Windows 10, education
|
||||
ms.prod: w10
|
||||
ms.mktglfcycl: deploy
|
||||
ms.sitesec: library
|
||||
ms.pagetype: edu
|
||||
ms.localizationpriority: high
|
||||
author: CelesteDG
|
||||
ms.author: celested
|
||||
ms.date: 03/08/2018
|
||||
---
|
||||
|
||||
# Reset devices with Autopilot Reset
|
||||
**Applies to:**
|
||||
|
||||
- Windows 10, version 1709
|
||||
|
||||
IT admins or technical teachers can use Autopilot Reset to quickly remove personal files, apps, and settings, and reset Windows 10 devices from the lock screen any time and apply original settings and management enrollment (Azure Active Directory and device management) so the devices are ready to use. With Autopilot Reset, devices are returned to a fully configured or known IT-approved state.
|
||||
|
||||
To enable Autopilot Reset in Windows 10, version 1709 (Fall Creators Update), you must:
|
||||
|
||||
1. [Enable the policy for the feature](#enable-autopilot-reset)
|
||||
2. [Trigger a reset for each device](#trigger-autopilot-reset)
|
||||
|
||||
## Enable Autopilot Reset
|
||||
|
||||
To use Autopilot Reset, [Windows Recovery Environment (WinRE) must be enabled on the device](#winre).
|
||||
|
||||
**DisableAutomaticReDeploymentCredentials** is a policy that enables or disables the visibility of the credentials for Autopilot Reset. It is a policy node in the [Policy CSP](https://docs.microsoft.com/windows/client-management/mdm/policy-csp-credentialproviders), **CredentialProviders/DisableAutomaticReDeploymentCredentials**. By default, this policy is set to 1 (Disable). This ensures that Autopilot Reset isn't triggered by accident.
|
||||
|
||||
You can set the policy using one of these methods:
|
||||
|
||||
- MDM provider
|
||||
|
||||
- Autopilot Reset in Intune for Education is coming soon. In a future update of Intune for Education, new tenants will automatically have the Autopilot Reset setting enabled by default on the **All devices** group as part of initial tenant configuration. You will also be able to manage this setting to target different groups in the admin console.
|
||||
- If you're using an MDM provider other than Intune for Education, check your MDM provider documentation on how to set this policy. If your MDM provider doesn't explicitly support this policy, you can manually set this policy if your MDM provider allows specific OMA-URIs to be manually set.
|
||||
|
||||
For example, in Intune, create a new configuration policy and add an OMA-URI.
|
||||
- OMA-URI: ./Vendor/MSFT/Policy/Config/CredentialProviders/DisableAutomaticReDeploymentCredentials
|
||||
- Data type: Integer
|
||||
- Value: 0
|
||||
|
||||
- Windows Configuration Designer
|
||||
|
||||
You can [use Windows Configuration Designer](https://docs.microsoft.com/windows/configuration/provisioning-packages/provisioning-create-package) to set the **Runtime settings > Policies > CredentialProviders > DisableAutomaticReDeploymentCredentials** setting and create a provisioning package.
|
||||
|
||||
- Set up School PCs app
|
||||
|
||||
Autopilot Reset in the Set up School PCs app is available in the latest release of the app. Make sure you are running Windows 10, version 1709 on the student PCs if you want to use Autopilot Reset through the Set up School PCs app. You can check the version several ways:
|
||||
- Reach out to your device manufacturer.
|
||||
- If you manage your PCs using Intune or Intune for Education, you can check the OS version by checking the **OS version** info for the device. If you are using another MDM provider, check the documentation for the MDM provider to confirm the OS version.
|
||||
- Log into the PCs, go to the **Settings > System > About** page, look in the **Windows specifications** section and confirm **Version** is set to 1709.
|
||||
|
||||
To use the Autopilot Reset setting in the Set up School PCs app:
|
||||
* When using [Set up School PCs](use-set-up-school-pcs-app.md), in the **Configure student PC settings** screen, select **Enable Windows 10 Autopilot Reset** among the list of settings for the student PC as shown in the following example:
|
||||
|
||||

|
||||
|
||||
## Trigger Autopilot Reset
|
||||
Autopilot Reset is a two-step process: trigger it and then authenticate. Once you've done these two steps, you can let the process execute and once it's done, the device is again ready for use.
|
||||
|
||||
**To trigger Autopilot Reset**
|
||||
|
||||
1. From the Windows device lock screen, enter the keystroke: **CTRL +  + R**.
|
||||
|
||||

|
||||
|
||||
This will open up a custom login screen for Autopilot Reset. The screen serves two purposes:
|
||||
1. Confirm/verify that the end user has the right to trigger Autopilot Reset
|
||||
2. Notify the user in case a provisioning package, created using Windows Configuration Designer or Set up School PCs, will be used as part of the process.
|
||||
|
||||

|
||||
|
||||
2. Sign in with the admin account credentials. If you created a provisioning package, plug in the USB drive and trigger Autopilot Reset.
|
||||
|
||||
Once Autopilot Reset is triggered, the reset process starts.
|
||||
|
||||
After reset, the device:
|
||||
- Sets the region, language, and keyboard.
|
||||
- Connects to Wi-Fi.
|
||||
- If you provided a provisioning package when Autopilot Reset is triggered, the system will apply this new provisioning package. Otherwise, the system will re-apply the original provisioning package on the device.
|
||||
- Is returned to a known good managed state, connected to Azure AD and MDM.
|
||||
|
||||

|
||||
|
||||
Once provisioning is complete, the device is again ready for use.
|
||||
|
||||
<span id="winre"/>
|
||||
## Troubleshoot Autopilot Reset
|
||||
|
||||
Autopilot Reset will fail when the [Windows Recovery Environment (WinRE)](https://docs.microsoft.com/windows-hardware/manufacture/desktop/windows-recovery-environment--windows-re--technical-reference) is not enabled on the device. You will see `Error code: ERROR_NOT_SUPPORTED (0x80070032)`.
|
||||
|
||||
To make sure WinRE is enabled, use the [REAgentC.exe tool](https://docs.microsoft.com/windows-hardware/manufacture/desktop/reagentc-command-line-options) to run the following command:
|
||||
|
||||
```
|
||||
reagentc /enable
|
||||
```
|
||||
|
||||
If Windows Automatic Reployment fails after enabling WinRE, or if you are unable to enable WinRE, please contact [Microsoft Support](https://support.microsoft.com) for assistance.
|
||||
|
||||
## Related topics
|
||||
|
||||
[Set up Windows devices for education](set-up-windows-10.md)
|
||||
|
||||
|
||||
|
||||
|
||||
|
@ -19,7 +19,7 @@ This topic lists new and updated topics in the [Windows 10 for Education](index.
|
||||
|
||||
New or changed topic | Description
|
||||
--- | ---
|
||||
[Reset devices with Windows Automatic Redeployment](windows-automatic-redeployment.md) | Added section for troubleshooting Windows Automatic Redeployment.
|
||||
[Reset devices with Autopilot Reset](autopilot-reset.md) | Added section for troubleshooting Autopilot Reset.
|
||||
|
||||
## November 2017
|
||||
|
||||
@ -34,7 +34,7 @@ New or changed topic | Description
|
||||
|
||||
| New or changed topic | Description |
|
||||
| --- | ---- |
|
||||
| [Reset devices with Windows Automatic Redeployment](windows-automatic-redeployment.md) | New. Learn how you can use this new feature to quickly reset student PCs from the lock screen and apply original settings and management enrollment (Azure Active Directory and device management) so the devices are ready to use and returned to a fully configured or known IT-approved state. |
|
||||
| [Reset devices with Autopilot Reset](autopilot-reset.md) | New. Learn how you can use this new feature to quickly reset student PCs from the lock screen and apply original settings and management enrollment (Azure Active Directory and device management) so the devices are ready to use and returned to a fully configured or known IT-approved state. |
|
||||
| [Test Windows 10 S on existing Windows 10 education devices](test-windows10s-for-edu.md) | Updated the *Go back to your previous edition of Windows 10* section with new information on how to work around cases where Win32 apps are blocked after switching from Windows 10 S back to your previous Windows edition. |
|
||||
| [Take a Test app technical reference](take-a-test-app-technical.md) | Updated. Starting with Windows 10, version 1709 (Fall Creators Update), assessments can now run in permissive mode. This mode enables students who need access to other apps, like accessibility tools, to use the apps. |
|
||||
|
||||
@ -103,7 +103,7 @@ New or changed topic | Description
|
||||
|
||||
| New or changed topic | Description|
|
||||
| --- | --- |
|
||||
| [Working with Microsoft Store for Business – education scenarios](education-scenarios-store-for-business.md) | New. Learn about education scenarios for Microsoft Store for Business. |
|
||||
| [Working with Microsoft Store for Business – education scenarios](education-scenarios-store-for-business.md) | New. Learn about education scenarios for Microsoft Store for Business. |
|
||||
| [For teachers - get Minecraft: Education Edition](teacher-get-minecraft.md) | Updates. Subscription support for Minecraft: Education Edition. |
|
||||
| [For IT administrators - get Minecraft: Education Edition](school-get-minecraft.md) | Updates. Subscription support for Minecraft: Education Edition. |
|
||||
|
||||
|
Before Width: | Height: | Size: 19 KiB After Width: | Height: | Size: 19 KiB |
Before Width: | Height: | Size: 528 KiB After Width: | Height: | Size: 528 KiB |
Before Width: | Height: | Size: 26 KiB After Width: | Height: | Size: 26 KiB |
@ -21,15 +21,6 @@ ms.date: 10/13/2017
|
||||
<p><b>[Windows 10 editions for education customers](windows-editions-for-education-customers.md)</b><br />Windows 10, version 1607 introduces two editions designed for the unique needs of K-12 institutions: Windows 10 Pro Education and Windows 10 Education. These editions provide education-specific default settings for the evolving landscape in K-12 education IT environments.</p>
|
||||
<p><b>[Compare each Windows edition](https://www.microsoft.com/en-us/WindowsForBusiness/Compare)</b><br />Find out more about the features and functionality we support in each edition of Windows.</p>
|
||||
<p><b>[Get Windows 10 Education or Windows 10 Pro Education](https://www.microsoft.com/en-us/education/buy-license/overview-of-how-to-buy/default.aspx?tabshow=schools)</b><br />When you've made your decision, find out how to buy Windows for your school.</p>
|
||||
<p><b>How-to videos</b><br />
|
||||
<ul>
|
||||
<li><a href="https://technet.microsoft.com/en-us/windows/mt723345" target="_blank">Automate common Windows 10 deployment and configuration tasks</a></li>
|
||||
<li><a href="https://technet.microsoft.com/en-us/windows/mt723346" target="_blank">Deploy a custom Windows 10 Start menu</a></li>
|
||||
<li><a href="https://technet.microsoft.com/en-us/windows/mt723347" target="_blank">Manage Windows 10 updates and upgrades</a></li>
|
||||
<li><a href="https://technet.microsoft.com/en-us/windows/mt723344" target="_blank">Reprovision devices at the end of the school year</a></li> <li><a href="https://technet.microsoft.com/en-us/windows/mt723343" target="_blank">Use MDT to deploy Windows 10</a></li>
|
||||
<li><a href="https://technet.microsoft.com/en-us/windows/mt723348" target="_blank">Use Microsoft Store for Business</a></li>
|
||||
</ul>
|
||||
</p>
|
||||
|
||||
##  Plan
|
||||
|
||||
|
76
education/windows/s-mode-switch-to-edu.md
Normal file
@ -0,0 +1,76 @@
|
||||
---
|
||||
title: Switch to Windows 10 Pro Education in S mode from Windows 10 Pro in S mode
|
||||
description: Overview of Windows 10 Pro Education in S mode, switching options, and system requirements
|
||||
keywords: Windows 10 Pro Education S, S mode, system requirements, Overview, Windows 10 Pro in S mode, Education, EDU
|
||||
ms.mktglfcycl: deploy
|
||||
ms.localizationpriority: high
|
||||
ms.prod: w10
|
||||
ms.sitesec: library
|
||||
ms.pagetype: edu
|
||||
ms.date: 04/30/2018
|
||||
author: Mikeblodge
|
||||
---
|
||||
|
||||
# Switch to Windows 10 Pro Education in S mode from Windows 10 Pro in S mode
|
||||
|
||||
S mode is an enhanced security mode of Windows 10 – streamlined for security and superior performance. With Windows 10 in S mode, everyone can download and install Microsoft-verified apps from the Microsoft Store for Education – this keep devices running fast and secure day in and day out.
|
||||
|
||||
## Benefits of Windows 10 Pro in S mode for Education
|
||||
|
||||
- **Microsoft-verified security** - It reduces risk of malware and exploitations that harm students and educators, because only Microsoft-verified apps can be installed.
|
||||
- **Performance that lasts** - Provides all-day battery life to keep students on task and not tripping over cords. Also, verified apps won’t degrade device performance over time.
|
||||
- **Streamlined for Speed** - Offers faster log-in times so teachers spend less time waiting and more time teaching.
|
||||
|
||||
|
||||
| |Home |S mode |Pro/Pro Education |Enterprise/Education |
|
||||
|---------|:---:|:---:|:---:|:---:|
|
||||
|Start Menu/Hello/Cortana/<BR>Windows Ink/Microsoft Edge | X | X | X | X |
|
||||
|Store apps (including Windows <BR>desktop bridge apps) | X | X | X | X |
|
||||
|Windows Update | X | X | X | X |
|
||||
|Device Encryption | X | X | X | X |
|
||||
|BitLocker | | X | X | X |
|
||||
|Windows Update for Business | | X | X | X |
|
||||
|Microsoft Store for Education | | X | X | X |
|
||||
|Mobile Device Management<BR> and Azure AD join | | X | X | X |
|
||||
|Group Policy management and <BR>Active Directory Domain Services | | | X | X |
|
||||
|Desktop (Windows 32) Apps | X | | X | X |
|
||||
|Change App Defaults<BR>Search/Browser/Photos/etc. | X | | X | X |
|
||||
|Credential Guard | | | | X |
|
||||
|Device Guard | | | | X |
|
||||
|
||||
### Windows 10 in S mode is safe, secure, and fast.
|
||||
However, in some limited scenarios, you might need to switch to Windows 10 Education. You can switch devices running Windows 10, version 1709 or later. Use the following information to switch to Windows 10 Pro through the Microsoft Store or by using Autopilot.
|
||||
|
||||
> [!IMPORTANT]
|
||||
> While it’s free to switch to Windows 10 Pro, it’s not reversible. The only way to rollback this kind of switch is through a BMR factory reset.
|
||||
|
||||
## How to switch
|
||||
|
||||
### Devices running Windows 10, version 1803
|
||||
The way that you switch a Windows 10, version 1803 device from S mode to EDU is different from Windows 10, version 1709. Instead of applying a MAK key (which only switches editions), you need to switch the device using Intune/MDM either at OOBE (Windows Autopilot) or while managing your devices Post OOBE.”
|
||||
|
||||
1. Select which devices to switch out of S mode.
|
||||
2. Select the S mode switch option in Intune/MDM.
|
||||
|
||||
> [!NOTE]
|
||||
> To rollback to Windows 10 Pro in S mode, a BMR factory reset must be performed.
|
||||
|
||||
### Switch using the Microsoft Store for Education
|
||||
There are two switch options available using the Microsoft Store for Education:
|
||||
|
||||
Tenant-wide Windows 10 Pro in S mode > Pro EDU in S mode <BR>
|
||||
Tenant-wide Windows 10 Pro > Pro EDU
|
||||
|
||||
### Devices running Windows 10, version 1709
|
||||
|
||||
1. **Bulk switch through Microsoft Store for Education** - In this scenario, the global admin for the Azure AD education tenant can use Microsoft Store to switch all Windows 10 Pro in S mode devices on the tenant to Windows 10 Pro Education. (Devices running Windows 10, version 1803 will switch to Windows 10 Pro EDU in S mode.)
|
||||
|
||||
2. **Key acquisition options** - For schools with **active Microsoft Volume Licensing** agreements, global admins can obtain free MAK keys for Windows 10 Pro Education. For schools without an active Microsoft Volume Licensing agreement, the global admin can contact CSS, fill out a form and provide a proof of purchase to receive MAK keys for Windows 10 Pro Education.
|
||||
|
||||
> [!NOTE]
|
||||
> There is currently no "bulk-switch" option for devices running Windows 10, version 1803.
|
||||
|
||||
## Related Topics
|
||||
[Deploy Windows 10 in a school](deploy-windows-10-in-a-school.md)<BR>
|
||||
[Deploy Windows 10 in a school district](deploy-windows-10-in-a-school-district.md) <BR>
|
||||
[Compare Windows 10 editions](https://www.microsoft.com/en-us/WindowsForBusiness/Compare)
|
@ -1,29 +1,29 @@
|
||||
---
|
||||
title: Switch to Windows 10 Pro Education from Windows 10 Pro or Windows 10 S
|
||||
description: Learn how IT Pros can opt into switching to Windows 10 Pro Education from Windows 10 Pro or Windows 10 S.
|
||||
keywords: switch, free switch, Windows 10 Pro to Windows 10 Pro Education, Windows 10 S to Windows 10 Pro Education, education customers, Windows 10 Pro Education, Windows 10 Pro, Windows 10 S
|
||||
title: Switch to Windows 10 Pro Education from Windows 10 Pro
|
||||
description: Learn how IT Pros can opt into switching to Windows 10 Pro Education from Windows 10 Pro.
|
||||
keywords: switch, free switch, Windows 10 Pro to Windows 10 Pro Education, Windows 10 Pro to Windows 10 Pro Education, education customers, Windows 10 Pro Education, Windows 10 Pro
|
||||
ms.prod: w10
|
||||
ms.mktglfcycl: deploy
|
||||
ms.sitesec: library
|
||||
ms.pagetype: edu
|
||||
ms.localizationpriority: high
|
||||
author: CelesteDG
|
||||
ms.author: celested
|
||||
author: MikeBlodge
|
||||
ms.author: MikeBlodge
|
||||
ms.date: 10/30/2017
|
||||
---
|
||||
|
||||
# Switch to Windows 10 Pro Education from Windows 10 Pro or Windows 10 S
|
||||
# Switch to Windows 10 Pro Education from Windows 10 Pro
|
||||
Windows 10 Pro Education is a new offering in Windows 10, version 1607. This edition builds on the commercial version of Windows 10 Pro and provides important management controls needed in schools by providing education-specific default settings.
|
||||
|
||||
If you have an education tenant and use devices with Windows 10 Pro or Windows 10 S, global administrators can opt-in to a free switch to Windows 10 Pro Education depending on your scenario.
|
||||
- [Switch from Windows 10 S to Windows 10 Pro Education](#switch-from-windows-10-s-to-windows-10-pro-education)
|
||||
If you have an education tenant and use devices with Windows 10 Pro, global administrators can opt-in to a free switch to Windows 10 Pro Education depending on your scenario.
|
||||
- [Switch from Windows 10 Pro in S mode to Windows 10 Pro Education in S mode](https://www.microsoft.com/en-us/education/windows/s-mode-switch-to-edu)
|
||||
- [Switch from Windows 10 Pro to Windows 10 Pro Education](#switch-from-windows-10-pro-to-windows-10-pro-education)
|
||||
|
||||
To take advantage of this offering, make sure you meet the [requirements for switching](#requirements-for-switching). For academic customers who are eligible to switch to Windows 10 Pro Education, but are unable to use the above methods, contact Microsoft Support for assistance.
|
||||
|
||||
## Requirements for switching
|
||||
Before you switch to Windows 10 Pro Education, make sure you meet these requirements:
|
||||
- Devices must be running Windows 10 Pro, version 1607 or higher; or running Windows 10 S, version 1703
|
||||
- Devices must be running Windows 10 Pro, version 1607 or higher.
|
||||
- Devices must be Azure Active Directory joined, or domain joined with Azure AD Connect. Customers who are federated with Azure AD are also eligible. For more information, see [Review requirements on devices](#review-requirements-on-devices).
|
||||
|
||||
If you haven't domain joined your devices already, [prepare for deployment of Windows 10 Pro Education licenses](#preparing-for-deployment-of-windows-10-pro-education-licenses).
|
||||
@ -37,42 +37,6 @@ You can [compare Windows 10 Editions](https://www.microsoft.com/en-us/WindowsFor
|
||||
|
||||
For more info about Windows 10 default settings and recommendations for education customers, see [Windows 10 configuration recommendations for education customers](configure-windows-for-education.md).
|
||||
|
||||
|
||||
## Switch from Windows 10 S to Windows 10 Pro Education
|
||||
There are two ways to switch from Windows 10 S to Windows 10 Pro Education, outlined below. Regardless of how you switch to Windows 10 Pro Education, note that you can only switch devices back to Windows 10 S through reimaging.
|
||||
|
||||
1. **Bulk switch through Microsoft Store for Education**
|
||||
|
||||
In this scenario, the global admin for the Azure AD education tenant can use Microsoft Store to switch all Windows 10 S devices on the tenant to Windows 10 Pro Education.
|
||||
|
||||
See [Switch using Microsoft Store for Education](#switch-using-microsoft-store-for-education) for details on how to do this.
|
||||
|
||||
2. **Asynchronous switch**
|
||||
|
||||
In this scenario, the global admin must acquire the necessary keys and then select a method for key distribution.
|
||||
|
||||
**Key acquisition options:**
|
||||
- **Volume Licensing customers** - For schools with active Microsoft Volume Licensing agreements, global admins can obtain free MAK keys for Windows 10 Pro Education.
|
||||
|
||||
> [!NOTE]
|
||||
> Windows 10 S is a Qualified OS (QOS) for Academic Volume Licensing only.
|
||||
|
||||
- **Non-Volume Licensing customers** - For schools without an active Microsoft Volume Licensing agreement, the global admin can contact CSS, fill out a form and provide a proof of purchase to receive MAK keys for Windows 10 Pro Education.
|
||||
|
||||
**Key distribution options:**
|
||||
|
||||
You can find step-by-step info on how to use each of the options described here in [Switch options from Windows 10 S to Windows 10 Pro Education](#switch-options-from-windows-10-s-to-windows-10-pro-education).
|
||||
|
||||
- **Bulk key distribution** - You can apply MAK keys to switch the operating system on select devices or groups of devices using one of these methods:
|
||||
- Use Microsoft Intune for Education. See [Switch using Intune for Education](#switch-using-intune-for-education) for details on how to do this.
|
||||
- Use Windows Configuration Designer to create a provisioning package that will provision the switch on the device(s). See [Switch using Windows Configuration Designer](#switch-using-windows-configuration-designer) for details on how to do this.
|
||||
- Use the mobile device management (MDM) policy, **UpgradeEditionWithProductKey**. See [Switch using MDM](#switch-using-mdm) for details on how to do this.
|
||||
- Use scripting. See [Switch using scripting](#switch-using-scripting) for details on how to do this.
|
||||
- **Manual key entry** - You can also manually apply the MAK key using one of these methods:
|
||||
- Enter the MAK key in the Windows **Settings > Activation** page. See [Switch using the Activation page](#switch-using-the-activation-page) for details on how to do this.
|
||||
- Install with a media and key through Windows setup. We don't recommend this option due to the potential for multi-reboot requirements.
|
||||
|
||||
|
||||
## Switch from Windows 10 Pro to Windows 10 Pro Education
|
||||
|
||||
For schools that want to standardize all their Windows 10 Pro devices to Windows 10 Pro Education, a global admin for the school can opt-in to a free switch through the Microsoft Store for Education.
|
||||
@ -85,9 +49,6 @@ In this scenario:
|
||||
|
||||
See [Switch using Microsoft Store for Education](#switch-using-microsoft-store-for-education) for details on how to do this.
|
||||
|
||||
## Switch options from Windows 10 S to Windows 10 Pro Education
|
||||
If you want to switch only a few or a select group of Windows 10 S devices to Windows 10 Pro Education, you can use one of the following key distribution options once you've obtained the MAK keys for Windows 10 Pro Education. See [Switch from Windows 10 S to Windows 10 Pro Education](#switch-from-windows-10-s-to-windows-10-pro-education) for more info.
|
||||
|
||||
### Switch using Intune for Education
|
||||
|
||||
1. In Intune for Education, select **Groups** and then choose the group that you want to apply the MAK license key to.
|
||||
@ -119,20 +80,6 @@ You can use Windows Configuration Designer to create a provisioning package that
|
||||
|
||||
For more information about using Windows Configuration Designer, see [Set up student PCs to join domain](https://technet.microsoft.com/en-us/edu/windows/set-up-students-pcs-to-join-domain).
|
||||
|
||||
### Switch using MDM
|
||||
|
||||
To switch Windows 10 S to Windows 10 Pro Education, enter the product key for the Windows 10 Pro Education edition in the **UpgradeEditionWithProductKey** policy setting of the [WindowsLicensing CSP](https://msdn.microsoft.com/en-us/windows/hardware/commercialize/customize/mdm/windowslicensing-csp).
|
||||
|
||||
### Switch using scripting
|
||||
|
||||
You can switch from Windows 10 S to Windows 10 Pro Education by running the changepk.exe command-line tool. To do this, run the following command:
|
||||
|
||||
```
|
||||
changepk.exe /ProductKey MAK_key_or_product_key
|
||||
```
|
||||
|
||||
Replace *MAK_key_or_product_key* with the MAK key that you obtained for the Windows 10 edition switch.
|
||||
|
||||
|
||||
### Switch using the Activation page
|
||||
|
||||
@ -143,11 +90,11 @@ Replace *MAK_key_or_product_key* with the MAK key that you obtained for the Wind
|
||||
|
||||
## Education customers with Azure AD joined devices
|
||||
|
||||
Academic institutions can easily move from Windows 10 S or Windows 10 Pro to Windows 10 Pro Education without using activation keys or reboots. When one of your users enters their Azure AD credentials associated with a Windows 10 Pro Education license, the operating system switches to Windows 10 Pro Education and all the appropriate Windows 10 Pro Education features are unlocked. Previously, only schools or organizations purchasing devices as part of the Shape the Future K-12 program or with a Microsoft Volume Licensing Agreement could deploy Windows 10 Pro Education to their users. Now, if you have an Azure AD for your organization, you can take advantage of the Windows 10 Pro Education features.
|
||||
Academic institutions can easily move from Windows 10 Pro to Windows 10 Pro Education without using activation keys or reboots. When one of your users enters their Azure AD credentials associated with a Windows 10 Pro Education license, the operating system switches to Windows 10 Pro Education and all the appropriate Windows 10 Pro Education features are unlocked. Previously, only schools or organizations purchasing devices as part of the Shape the Future K-12 program or with a Microsoft Volume Licensing Agreement could deploy Windows 10 Pro Education to their users. Now, if you have an Azure AD for your organization, you can take advantage of the Windows 10 Pro Education features.
|
||||
|
||||
When you switch to Windows 10 Pro Education, you get the following benefits:
|
||||
|
||||
- **Windows 10 Pro Education edition**. Devices currently running Windows 10 Pro, version 1607 or higher, or Windows 10 S, version 1703, can get Windows 10 Pro Education Current Branch (CB). This benefit does not include Long Term Service Branch (LTSB).
|
||||
- **Windows 10 Pro Education edition**. Devices currently running Windows 10 Pro, version 1607 or higher, or Windows 10 S mode, version 1703, can get Windows 10 Pro Education Current Branch (CB). This benefit does not include Long Term Service Branch (LTSB).
|
||||
- **Support from one to hundreds of users**. The Windows 10 Pro Education program does not have a limitation on the number of licenses an organization can have.
|
||||
- **Roll back options to Windows 10 Pro**
|
||||
- When a user leaves the domain or you turn off the setting to automatically switch to Windows 10 Pro Education, the device reverts seamlessly to Windows 10 Pro edition (after a grace period of up to 30 days).
|
||||
@ -155,11 +102,9 @@ When you switch to Windows 10 Pro Education, you get the following benefits:
|
||||
|
||||
See [Roll back Windows 10 Pro Education to Windows 10 Pro](#roll-back-windows-10-pro-education-to-windows-10-pro) for more info.
|
||||
|
||||
For devices that originally had Windows 10 S installed, Windows 10 Pro Education cannot step back down to Windows 10 S. You will need to reimage these devices with Windows 10 S if you need to step down from Windows 10 Pro Education to Windows 10 S.
|
||||
|
||||
|
||||
### Switch using Microsoft Store for Education
|
||||
Once you enable the setting to switch to Windows 10 Pro Education, the switch will begin only after a user signs in to their device. The setting applies to the entire organization or tenant, so you cannot select which users will receive the switch. The switch will only apply to Windows 10 S and Windows 10 Pro devices.
|
||||
Once you enable the setting to switch to Windows 10 Pro Education, the switch will begin only after a user signs in to their device. The setting applies to the entire organization or tenant, so you cannot select which users will receive the switch. The switch will only apply to Windows 10 Pro devices.
|
||||
|
||||
**To turn on the automatic switch to Windows 10 Pro Education**
|
||||
|
||||
@ -170,13 +115,13 @@ Once you enable the setting to switch to Windows 10 Pro Education, the switch wi
|
||||
2. Click **Manage** from the top menu and then select the **Benefits tile**.
|
||||
3. In the **Benefits** tile, look for the **Switch to Windows 10 Pro Education for free** link and then click it.
|
||||
|
||||
You will see the following page informing you that your school is eligible to switch free to Windows 10 Pro Education from Windows 10 S or Windows 10 Pro.
|
||||
You will see the following page informing you that your school is eligible to switch free to Windows 10 Pro Education to Windows 10 Pro.
|
||||
|
||||
**Figure 3** - Switch Windows 10 Pro to Windows 10 Pro Education
|
||||
|
||||

|
||||
|
||||
4. In the **Switch all your devices to Windows 10 Pro Education for free** page, check box next to **I understand enabling this setting will switch all domain-joined devices running Windows 10 Pro or Windows 10 S in my organization**.
|
||||
4. In the **Switch all your devices to Windows 10 Pro Education for free** page, check box next to **I understand enabling this setting will switch all domain-joined devices running Windows 10 Pro in my organization**.
|
||||
|
||||
**Figure 4** - Check the box to confirm
|
||||
|
||||
@ -195,7 +140,7 @@ Once you enable the setting to switch to Windows 10 Pro Education, the switch wi
|
||||
|
||||
8. Click **Switch now** in the **Switching your device to Windows 10 Pro Education for free** page in the Microsoft Store.
|
||||
|
||||
You will see a window that confirms you've successfully switched all the devices in your organization to Windows 10 Pro Education, and each Azure AD joined device running Windows 10 Pro or Windows 10 S will automatically switch the next time someone in your organization signs in to the device.
|
||||
You will see a window that confirms you've successfully switched all the devices in your organization to Windows 10 Pro Education, and each Azure AD joined device running Windows 10 Pro will automatically switch the next time someone in your organization signs in to the device.
|
||||
|
||||
9. Click **Close** in the **Success** window.
|
||||
|
||||
@ -214,11 +159,11 @@ So what will users experience? How will they switch their devices?
|
||||
Existing Azure AD domain joined devices will be switched to Windows 10 Pro Education the next time the user logs in. That's it! No additional steps are needed.
|
||||
|
||||
### For new devices that are not Azure AD joined
|
||||
Now that you've turned on the setting to automatically switch to Windows 10 Pro Education, the users are ready to switch their devices running Windows 10 Pro, version 1607 or higher or Windows 10 S, version 1703 to Windows 10 Pro Education edition.
|
||||
Now that you've turned on the setting to automatically switch to Windows 10 Pro Education, the users are ready to switch their devices running Windows 10 Pro, version 1607 or higher, version 1703 to Windows 10 Pro Education edition.
|
||||
|
||||
#### Step 1: Join users’ devices to Azure AD
|
||||
|
||||
Users can join a device to Azure AD the first time they start the device (during setup), or they can join a device that they already use running Windows 10 Pro, version 1607 or higher, or Windows 10 S, version 1703.
|
||||
Users can join a device to Azure AD the first time they start the device (during setup), or they can join a device that they already use running Windows 10 Pro, version 1607 or higher, version 1703.
|
||||
|
||||
**To join a device to Azure AD the first time the device is started**
|
||||
|
||||
@ -245,7 +190,7 @@ If the Windows device is running Windows 10, version 1703, follow these steps.
|
||||
3. Go through the rest of Windows device setup. Once you're done, the device will be Azure AD joined to your school's subscription.
|
||||
|
||||
|
||||
**To join a device to Azure AD when the device already has Windows 10 Pro, version 1703 or Windows 10 S, version 1703 installed and set up**
|
||||
**To join a device to Azure AD when the device already has Windows 10 Pro, version 1703 installed and set up**
|
||||
|
||||
If the Windows device is running Windows 10, version 1703, follow these steps.
|
||||
|
||||
@ -289,7 +234,7 @@ If there are any problems with the Windows 10 Pro Education license or the acti
|
||||
|
||||
In some instances, users may experience problems with the Windows 10 Pro Education switch. The most common problems that users may experience are as follows:
|
||||
|
||||
- The existing operating system (Windows 10 Pro, version 1607 or higher, or Windows 10 S, version 1703) is not activated.
|
||||
- The existing operating system (Windows 10 Pro, version 1607 or higher, or version 1703) is not activated.
|
||||
- The Windows 10 Pro Education switch has lapsed or has been removed.
|
||||
|
||||
Use the following figures to help you troubleshoot when users experience these common problems:
|
||||
@ -306,7 +251,7 @@ Use the following figures to help you troubleshoot when users experience these c
|
||||
|
||||
### Review requirements on devices
|
||||
|
||||
Devices must be running Windows 10 Pro, version 1607 or higher, or Windows 10 S, version 1703 and be Azure AD joined, or domain joined with Azure AD Connect. Customers who are federated with Azure AD are also eligible. You can use the following procedures to review whether a particular device meets requirements.
|
||||
Devices must be running Windows 10 Pro, version 1607 or higher, or domain joined with Azure AD Connect. Customers who are federated with Azure AD are also eligible. You can use the following procedures to review whether a particular device meets requirements.
|
||||
|
||||
**To determine if a device is Azure AD joined**
|
||||
|
||||
@ -341,7 +286,7 @@ If your organization has the Windows 10 Pro to Windows 10 Pro Education switch e
|
||||
Once the automatic switch to Windows 10 Pro Education is turned off, the change is effective immediately. Devices that were switched will revert to Windows 10 Pro only after the license has been refreshed (every 30 days) and the next time the user signs in. This means that a user whose device was switched may not immediately see Windows 10 Pro Education rolled back to Windows 10 Pro for up to 30 days. However, users who haven't signed in during the time that a switch was enabled and then turned off will never see their device change from Windows 10 Pro.
|
||||
|
||||
> [!NOTE]
|
||||
> Devices that were switched from Windows 10 S to Windows 10 Pro Education cannot roll back to Windows 10 S.
|
||||
> Devices that were switched from mode to Windows 10 Pro Education cannot roll back to Windows 10 Pro Education S mode.
|
||||
|
||||
**To roll back Windows 10 Pro Education to Windows 10 Pro**
|
||||
|
||||
|
@ -30,7 +30,7 @@ Set up School PCs makes it easy to set up Windows 10 PCs with Microsoft's recomm
|
||||
- Sets Microsoft-recommended school PC settings, including shared PC mode which provides faster sign-in and automatic account cleanup
|
||||
- Enables optional guest account for younger students, lost passwords, or visitors
|
||||
- Enables optional secure testing account
|
||||
- Enables optional Windows Automatic Redeployment feature to return devices to a fully configured or known IT-approved state
|
||||
- Enables optional Autopilot Reset feature to return devices to a fully configured or known IT-approved state
|
||||
- Locks down the student PC to prevent mischievous activity:
|
||||
* Prevents students from removing the PC from the school's device management system
|
||||
* Prevents students from removing the Set up School PCs settings
|
||||
@ -197,7 +197,7 @@ The **Set up School PCs** app guides you through the configuration choices for t
|
||||
|
||||
If you select this option, this adds a **Guest** account button in the PC's sign-in screen to allow anyone to use the PC.
|
||||
|
||||
- Select **Enable Windows Automatic Redeployment** to reset student PCs from the lock screen any time and apply original settings and device management enrollment (Azure AD and MDM) so they’re ready to use. Make sure you are running Windows 10, version 1709 on the student PCs if you want to use Windows Automatic Redeployment through the Set up School PCs app.
|
||||
- Select **Enable Autopilot Reset** to reset student PCs from the lock screen any time and apply original settings and device management enrollment (Azure AD and MDM) so they’re ready to use. Make sure you are running Windows 10, version 1709 on the student PCs if you want to use Autopilot Reset through the Set up School PCs app.
|
||||
- To change the default lock screen background or to use your school's custom lock screen background, click **Browse** to select a new lock screen background.
|
||||
|
||||
**Figure 4** - Configure student PC settings
|
||||
|
@ -1,110 +0,0 @@
|
||||
---
|
||||
title: Reset devices with Windows Automatic Redeployment
|
||||
description: Gives an overview of Windows Automatic Redeployment and how you can enable and use it in your schools.
|
||||
keywords: Windows Automatic Redeployment, Windows 10, education
|
||||
ms.prod: w10
|
||||
ms.mktglfcycl: deploy
|
||||
ms.sitesec: library
|
||||
ms.pagetype: edu
|
||||
ms.localizationpriority: high
|
||||
author: CelesteDG
|
||||
ms.author: celested
|
||||
ms.date: 03/08/2018
|
||||
---
|
||||
|
||||
# Reset devices with Windows Automatic Redeployment
|
||||
**Applies to:**
|
||||
|
||||
- Windows 10, version 1709
|
||||
|
||||
IT admins or technical teachers can use Windows Automatic Redeployment to quickly remove personal files, apps, and settings, and reset Windows 10 devices from the lock screen any time and apply original settings and management enrollment (Azure Active Directory and device management) so the devices are ready to use. With Windows Automatic Redeployment, devices are returned to a fully configured or known IT-approved state.
|
||||
|
||||
To enable Windows Automatic Redeployment in Windows 10, version 1709 (Fall Creators Update), you must:
|
||||
|
||||
1. [Enable the policy for the feature](#enable-windows-automatic-redeployment)
|
||||
2. [Trigger a reset for each device](#trigger-windows-automatic-redeployment)
|
||||
|
||||
## Enable Windows Automatic Redeployment
|
||||
|
||||
To use Windows Automatic Redeployment, [Windows Recovery Environment (WinRE) must be enabled on the device](#winre).
|
||||
|
||||
**DisableAutomaticReDeploymentCredentials** is a policy that enables or disables the visibility of the credentials for Windows Automatic Redeployment. It is a policy node in the [Policy CSP](https://docs.microsoft.com/windows/client-management/mdm/policy-csp-credentialproviders), **CredentialProviders/DisableAutomaticReDeploymentCredentials**. By default, this policy is set to 1 (Disable). This ensures that Windows Automatic Redeployment isn't triggered by accident.
|
||||
|
||||
You can set the policy using one of these methods:
|
||||
|
||||
- MDM provider
|
||||
|
||||
- Windows Automatic Redeployment in Intune for Education is coming soon. In a future update of Intune for Education, new tenants will automatically have the Windows Automatic Redeployment setting enabled by default on the **All devices** group as part of initial tenant configuration. You will also be able to manage this setting to target different groups in the admin console.
|
||||
- If you're using an MDM provider other than Intune for Education, check your MDM provider documentation on how to set this policy. If your MDM provider doesn't explicitly support this policy, you can manually set this policy if your MDM provider allows specific OMA-URIs to be manually set.
|
||||
|
||||
For example, in Intune, create a new configuration policy and add an OMA-URI.
|
||||
- OMA-URI: ./Vendor/MSFT/Policy/Config/CredentialProviders/DisableAutomaticReDeploymentCredentials
|
||||
- Data type: Integer
|
||||
- Value: 0
|
||||
|
||||
- Windows Configuration Designer
|
||||
|
||||
You can [use Windows Configuration Designer](https://docs.microsoft.com/windows/configuration/provisioning-packages/provisioning-create-package) to set the **Runtime settings > Policies > CredentialProviders > DisableAutomaticReDeploymentCredentials** setting and create a provisioning package.
|
||||
|
||||
- Set up School PCs app
|
||||
|
||||
Windows Automatic Redeployment in the Set up School PCs app is available in the latest release of the app. Make sure you are running Windows 10, version 1709 on the student PCs if you want to use Windows Automatic Redeployment through the Set up School PCs app. You can check the version several ways:
|
||||
- Reach out to your device manufacturer.
|
||||
- If you manage your PCs using Intune or Intune for Education, you can check the OS version by checking the **OS version** info for the device. If you are using another MDM provider, check the documentation for the MDM provider to confirm the OS version.
|
||||
- Log into the PCs, go to the **Settings > System > About** page, look in the **Windows specifications** section and confirm **Version** is set to 1709.
|
||||
|
||||
To use the Windows Automatic Redeployment setting in the Set up School PCs app:
|
||||
* When using [Set up School PCs](use-set-up-school-pcs-app.md), in the **Configure student PC settings** screen, select **Enable Windows 10 Automatic Redeployment** among the list of settings for the student PC as shown in the following example:
|
||||
|
||||

|
||||
|
||||
## Trigger Windows Automatic Redeployment
|
||||
Windows Automatic Redeployment is a two-step process: trigger it and then authenticate. Once you've done these two steps, you can let the process execute and once it's done, the device is again ready for use.
|
||||
|
||||
**To trigger Windows Automatic Redeployment**
|
||||
|
||||
1. From the Windows device lock screen, enter the keystroke: **CTRL +  + R**.
|
||||
|
||||

|
||||
|
||||
This will open up a custom login screen for Windows Automatic Redeployment. The screen serves two purposes:
|
||||
1. Confirm/verify that the end user has the right to trigger Windows Automatic Redeployment
|
||||
2. Notify the user in case a provisioning package, created using Windows Configuration Designer or Set up School PCs, will be used as part of the process.
|
||||
|
||||

|
||||
|
||||
2. Sign in with the admin account credentials. If you created a provisioning package, plug in the USB drive and trigger Windows Automatic Redeployment.
|
||||
|
||||
Once Windows Automatic Redeployment is triggered, the reset process starts.
|
||||
|
||||
After reset, the device:
|
||||
- Sets the region, language, and keyboard.
|
||||
- Connects to Wi-Fi.
|
||||
- If you provided a provisioning package when Windows Automatic Redeployment is triggered, the system will apply this new provisioning package. Otherwise, the system will re-apply the original provisioning package on the device.
|
||||
- Is returned to a known good managed state, connected to Azure AD and MDM.
|
||||
|
||||

|
||||
|
||||
Once provisioning is complete, the device is again ready for use.
|
||||
|
||||
<span id="winre"/>
|
||||
## Troubleshoot Windows Automatic Redeployment
|
||||
|
||||
Windows Automatic Redeployment will fail when the [Windows Recovery Environment (WinRE)](https://docs.microsoft.com/windows-hardware/manufacture/desktop/windows-recovery-environment--windows-re--technical-reference) is not enabled on the device. You will see `Error code: ERROR_NOT_SUPPORTED (0x80070032)`.
|
||||
|
||||
To make sure WinRE is enabled, use the [REAgentC.exe tool](https://docs.microsoft.com/windows-hardware/manufacture/desktop/reagentc-command-line-options) to run the following command:
|
||||
|
||||
```
|
||||
reagentc /enable
|
||||
```
|
||||
|
||||
If Windows Automatic Reployment fails after enabling WinRE, or if you are unable to enable WinRE, please contact [Microsoft Support](https://support.microsoft.com) for assistance.
|
||||
|
||||
## Related topics
|
||||
|
||||
[Set up Windows devices for education](set-up-windows-10.md)
|
||||
|
||||
|
||||
|
||||
|
||||
|
@ -57,8 +57,8 @@ ms.date: 06/16/2016
|
||||
|
||||
- If short paths have been disabled for the virtualized package’s target volume, you must also sequence the package to a volume that was created and still has short-paths disabled. It cannot be the system volume.
|
||||
|
||||
**Note**
|
||||
The App-V 5.x Sequencer cannot sequence applications with filenames matching "CO_<x>" where x is any numeral. Error 0x8007139F will be generated.
|
||||
> [!NOTE]
|
||||
> The App-V 5.x Sequencer cannot sequence applications with filenames matching "CO_<x>" where x is any numeral. Error 0x8007139F will be generated.
|
||||
|
||||
**To sequence a new standard application**
|
||||
|
||||
@ -68,13 +68,13 @@ The App-V 5.x Sequencer cannot sequence applications with filenames matching "CO
|
||||
|
||||
3. On the **Prepare Computer** page, review the issues that could cause the package creation to fail or could cause the package to contain unnecessary data. You should resolve all potential issues before you continue. After making any corrections, click **Refresh** to display the updated information. After you have resolved all potential issues, click **Next**.
|
||||
|
||||
**Important**
|
||||
If you are required to disable virus scanning software, you should first scan the computer that runs the sequencer in order to ensure that no unwanted or malicious files could be added to the package.
|
||||
> [!IMPORTANT]
|
||||
> If you are required to disable virus scanning software, you should first scan the computer that runs the sequencer in order to ensure that no unwanted or malicious files could be added to the package.
|
||||
|
||||
|
||||
|
||||
**Note**
|
||||
There is currently no way to disable Windows Defender in Windows 10. If you receive a warning, you can safely ignore it. It is unlikely that Windows Defender will affect sequencing at all.
|
||||
> [!NOTE]
|
||||
> There is currently no way to disable Windows Defender in Windows 10. If you receive a warning, you can safely ignore it. It is unlikely that Windows Defender will affect sequencing at all.
|
||||
|
||||
|
||||
|
||||
@ -82,8 +82,8 @@ The App-V 5.x Sequencer cannot sequence applications with filenames matching "CO
|
||||
|
||||
5. On the **Select Installer** page, click **Browse** and specify the installation file for the application.
|
||||
|
||||
**Note**
|
||||
If the specified application installer modifies security access to a file or directory, existing or new, the associated changes will not be captured into the package.
|
||||
> [!NOTE]
|
||||
> If the specified application installer modifies security access to a file or directory, existing or new, the associated changes will not be captured into the package.
|
||||
|
||||
|
||||
|
||||
@ -95,8 +95,8 @@ The App-V 5.x Sequencer cannot sequence applications with filenames matching "CO
|
||||
|
||||
7. On the **Installation** page, when the sequencer and application installer are ready you can proceed to install the application so that the sequencer can monitor the installation process.
|
||||
|
||||
**Important**
|
||||
You should always install applications to a secure location and make sure no other users are logged on to the computer running the sequencer during monitoring.
|
||||
> [!IMPORTANT]
|
||||
> You should always install applications to a secure location and make sure no other users are logged on to the computer running the sequencer during monitoring.
|
||||
|
||||
|
||||
|
||||
@ -106,8 +106,8 @@ The App-V 5.x Sequencer cannot sequence applications with filenames matching "CO
|
||||
|
||||
9. On the **Configure Software** page, optionally run the programs contained in the package. This step allows you to complete any necessary license or configuration tasks before you deploy and run the package on target computers. To run all the programs at one time, select at least one program, and then click **Run All**. To run specific programs, select the program or programs, and then click **Run Selected**. Complete the required configuration tasks and then close the applications. You may need to wait several minutes for all programs to run.
|
||||
|
||||
**Note**
|
||||
To run first-use tasks for any application that is not available in the list, open the application. The associated information will be captured during this step.
|
||||
> [!NOTE]
|
||||
> To run first-use tasks for any application that is not available in the list, open the application. The associated information will be captured during this step.
|
||||
|
||||
|
||||
|
||||
@ -125,15 +125,15 @@ The App-V 5.x Sequencer cannot sequence applications with filenames matching "CO
|
||||
|
||||
12. On the **Streaming** page, run each program so that it can be optimized and run more efficiently on target computers. It can take several minutes for all the applications to run. After all applications have run, close each of the applications, and then click **Next**.
|
||||
|
||||
**Note**
|
||||
If you do not open any applications during this step, the default streaming method is on-demand streaming delivery. This means applications will be downloaded bit by bit until it can be opened, and then depending on how the background loading is configured, will load the rest of the application.
|
||||
> [!NOTE]
|
||||
> If you do not open any applications during this step, the default streaming method is on-demand streaming delivery. This means applications will be downloaded bit by bit until it can be opened, and then depending on how the background loading is configured, will load the rest of the application.
|
||||
|
||||
|
||||
|
||||
13. On the **Target OS** page, specify the operating systems that can run this package. To allow all supported operating systems in your environment to run this package, select **Allow this package to run on any operating system**. To configure this package to run only on specific operating systems, select **Allow this package to run only on the following operating systems** and select the operating systems that can run this package. Click **Next**.
|
||||
|
||||
**Important**
|
||||
Make sure that the operating systems you specify here are supported by the application you are sequencing.
|
||||
> [!IMPORTANT]
|
||||
> Make sure that the operating systems you specify here are supported by the application you are sequencing.
|
||||
|
||||
|
||||
|
||||
@ -141,8 +141,8 @@ The App-V 5.x Sequencer cannot sequence applications with filenames matching "CO
|
||||
|
||||
To save the package immediately, select **Save the package now** (default). Add optional **Comments** to be associated with the package. Comments are useful for identifying the program version and other information about the package.
|
||||
|
||||
**Important**
|
||||
The system does not support non-printable characters in **Comments** and **Descriptions**.
|
||||
> [!IMPORTANT]
|
||||
> The system does not support non-printable characters in **Comments** and **Descriptions**.
|
||||
|
||||
|
||||
|
||||
@ -152,19 +152,17 @@ The App-V 5.x Sequencer cannot sequence applications with filenames matching "CO
|
||||
|
||||
The package is now available in the sequencer.
|
||||
|
||||
**Important**
|
||||
After you have successfully created a virtual application package, you cannot run the virtual application package on the computer that is running the sequencer.
|
||||
> [!IMPORTANT]
|
||||
> After you have successfully created a virtual application package, you cannot run the virtual application package on the computer that is running the sequencer.
|
||||
|
||||
|
||||
|
||||
**To sequence an add-on or plug-in application**
|
||||
|
||||
1.
|
||||
|
||||
**Note**
|
||||
Before performing the following procedure, install the parent application locally on the computer that is running the sequencer. Or if you have the parent application virtualized, you can follow the steps in the add-on or plug-in workflow to unpack the parent application on the computer.
|
||||
|
||||
For example, if you are sequencing a plug-in for Microsoft Excel, install Microsoft Excel locally on the computer that is running the sequencer. Also install the parent application in the same directory where the application is installed on target computers. If the plug-in or add-on is going to be used with an existing virtual application package, install the application on the same virtual application drive that was used when you created the parent virtual application package.
|
||||
1. > [!NOTE]
|
||||
> Before performing the following procedure, install the parent application locally on the computer that is running the sequencer. Or if you have the parent application virtualized, you can follow the steps in the add-on or plug-in workflow to unpack the parent application on the computer.
|
||||
>
|
||||
> For example, if you are sequencing a plug-in for Microsoft Excel, install Microsoft Excel locally on the computer that is running the sequencer. Also install the parent application in the same directory where the application is installed on target computers. If the plug-in or add-on is going to be used with an existing virtual application package, install the application on the same virtual application drive that was used when you created the parent virtual application package.
|
||||
|
||||
|
||||
|
||||
@ -174,8 +172,8 @@ The App-V 5.x Sequencer cannot sequence applications with filenames matching "CO
|
||||
|
||||
3. On the **Prepare Computer** page, review the issues that might cause the package creation to fail or could cause the package to contain unnecessary data. You should resolve all potential issues before you continue. After making any corrections, click **Refresh** to display the updated information. After you have resolved all potential issues, click **Next**.
|
||||
|
||||
**Important**
|
||||
If you are required to disable virus scanning software, you should first scan the computer that runs the sequencer in order to ensure that no unwanted or malicious files could be added to the package.
|
||||
> [!IMPORTANT]
|
||||
> If you are required to disable virus scanning software, you should first scan the computer that runs the sequencer in order to ensure that no unwanted or malicious files could be added to the package.
|
||||
|
||||
|
||||
|
||||
@ -205,8 +203,8 @@ The App-V 5.x Sequencer cannot sequence applications with filenames matching "CO
|
||||
|
||||
11. On the **Streaming** page, run each program so that it can be optimized and run more efficiently on target computers. Streaming improves the experience when the virtual application package is run on target computers on high-latency networks. It can take several minutes for all the applications to run. After all applications have run, close each of the applications. You can also configure the package to be required to be fully downloaded before opening by selecting the **Force applications to be downloaded** check-box. Click **Next**.
|
||||
|
||||
**Note**
|
||||
If necessary, you can stop an application from loading during this step. In the **Application Launch** dialog box, click **Stop** and select one of the check boxes: **Stop all applications** or **Stop this application only**.
|
||||
> [!NOTE]
|
||||
> If necessary, you can stop an application from loading during this step. In the **Application Launch** dialog box, click **Stop** and select one of the check boxes: **Stop all applications** or **Stop this application only**.
|
||||
|
||||
|
||||
|
||||
@ -216,8 +214,8 @@ The App-V 5.x Sequencer cannot sequence applications with filenames matching "CO
|
||||
|
||||
To save the package immediately, select **Save the package now**. Optionally, add a **Description** that will be associated with the package. Descriptions are useful for identifying the version and other information about the package.
|
||||
|
||||
**Important**
|
||||
The system does not support non-printable characters in Comments and Descriptions.
|
||||
> [!IMPORTANT]
|
||||
> The system does not support non-printable characters in Comments and Descriptions.
|
||||
|
||||
|
||||
|
||||
@ -231,8 +229,8 @@ The App-V 5.x Sequencer cannot sequence applications with filenames matching "CO
|
||||
|
||||
3. On the **Prepare Computer** page, review the issues that could cause the package creation to fail or could cause the package to contain unnecessary data. You should resolve all potential issues before you continue. After making any corrections, click **Refresh** to display the updated information. After you have resolved all potential issues, click **Next**.
|
||||
|
||||
**Important**
|
||||
If you are required to disable virus scanning software, you should first scan the computer that runs the App-V 5.0 Sequencer in order to ensure that no unwanted or malicious files can be added to the package.
|
||||
> [!IMPORTANT]
|
||||
> If you are required to disable virus scanning software, you should first scan the computer that runs the App-V 5.0 Sequencer in order to ensure that no unwanted or malicious files can be added to the package.
|
||||
|
||||
|
||||
|
||||
@ -256,8 +254,8 @@ The App-V 5.x Sequencer cannot sequence applications with filenames matching "CO
|
||||
|
||||
To save the package immediately, select **Save the package now**. Optionally, add a **Description** to be associated with the package. Descriptions are useful for identifying the program version and other information about the package.
|
||||
|
||||
**Important**
|
||||
The system does not support non-printable characters in Comments and Descriptions.
|
||||
> [!IMPORTANT]
|
||||
> The system does not support non-printable characters in Comments and Descriptions.
|
||||
|
||||
|
||||
|
||||
@ -267,8 +265,8 @@ The App-V 5.x Sequencer cannot sequence applications with filenames matching "CO
|
||||
|
||||
The package is now available in the sequencer. To edit the package properties, click **Edit \[Package Name\]**.
|
||||
|
||||
**Important**
|
||||
After you have successfully created a virtual application package, you cannot run the virtual application package on the computer that is running the sequencer.
|
||||
> [!IMPORTANT]
|
||||
> After you have successfully created a virtual application package, you cannot run the virtual application package on the computer that is running the sequencer.
|
||||
|
||||
|
||||
|
||||
|
@ -21,7 +21,7 @@
|
||||
### [Manage access to private store](manage-access-to-private-store.md)
|
||||
### [Manage private store settings](manage-private-store-settings.md)
|
||||
### [Configure MDM provider](configure-mdm-provider-microsoft-store-for-business.md)
|
||||
### [Manage Windows device deployment with Windows AutoPilot Deployment](add-profile-to-devices.md)
|
||||
### [Manage Windows device deployment with Windows Autopilot Deployment](add-profile-to-devices.md)
|
||||
### [Microsoft Store for Business and Education PowerShell module - preview](microsoft-store-for-business-education-powershell-module.md)
|
||||
### [Manage software purchased with Microsoft Products and Services agreement in Microsoft Store for Business](manage-mpsa-software-microsoft-store-for-business.md)
|
||||
## [Device Guard signing portal](device-guard-signing-portal.md)
|
||||
|
@ -1,6 +1,6 @@
|
||||
---
|
||||
title: Manage Windows device deployment with Windows AutoPilot Deployment
|
||||
description: Add an AutoPilot profile to devices. AutoPilot profiles control what is included in Windows set up experience for your employees.
|
||||
title: Manage Windows device deployment with Windows Autopilot Deployment
|
||||
description: Add an Autopilot profile to devices. Autopilot profiles control what is included in Windows set up experience for your employees.
|
||||
ms.prod: w10
|
||||
ms.mktglfcycl: manage
|
||||
ms.sitesec: library
|
||||
@ -11,55 +11,55 @@ ms.date: 2/9/2018
|
||||
ms.localizationpriority: high
|
||||
---
|
||||
|
||||
# Manage Windows device deployment with Windows AutoPilot Deployment
|
||||
# Manage Windows device deployment with Windows Autopilot Deployment
|
||||
|
||||
**Applies to**
|
||||
- Windows 10
|
||||
|
||||
Windows AutoPilot simplifies device set up for IT Admins. For an overview of benefits, scenarios, and prerequisites, see [Overview of Windows AutoPilot](https://docs.microsoft.com/windows/deployment/windows-autopilot/windows-10-autopilot).
|
||||
Windows Autopilot simplifies device set up for IT Admins. For an overview of benefits, scenarios, and prerequisites, see [Overview of Windows Autopilot](https://docs.microsoft.com/windows/deployment/windows-autopilot/windows-10-autopilot).
|
||||
|
||||
Watch this video to learn more about Windows AutoPilot in Micrsoft Store for Business. </br>
|
||||
Watch this video to learn more about Windows Autopilot in Micrsoft Store for Business. </br>
|
||||
|
||||
> [!video https://www.microsoft.com/en-us/videoplayer/embed/3b30f2c2-a3e2-4778-aa92-f65dbc3ecf54?autoplay=false]
|
||||
|
||||
## What is Windows AutoPilot?
|
||||
In Microsoft Store for Business, you can manage devices for your organization and apply an *AutoPilot deployment profile* to your devices. When people in your organization run the out-of-box experience on the device, the profile configures Windows based on the AutoPilot deployment profile you applied to the device.
|
||||
## What is Windows Autopilot?
|
||||
In Microsoft Store for Business, you can manage devices for your organization and apply an *Autopilot deployment profile* to your devices. When people in your organization run the out-of-box experience on the device, the profile configures Windows based on the Autopilot deployment profile you applied to the device.
|
||||
|
||||
You can create and apply AutoPilot deployment profiles to these devices. The overall process looks like this.
|
||||
You can create and apply Autopilot deployment profiles to these devices. The overall process looks like this.
|
||||
|
||||

|
||||

|
||||
|
||||
Figure 1 - Windows AutoPilot Deployment Program process
|
||||
Figure 1 - Windows Autopilot Deployment Program process
|
||||
|
||||
AutoPilot deployment profiles have two main parts: default settings that can't be changed, and optional settings that you can include.
|
||||
Autopilot deployment profiles have two main parts: default settings that can't be changed, and optional settings that you can include.
|
||||
|
||||
### AutoPilot deployment profiles - default settings
|
||||
These settings are configured with all AutoPilot deployment profiles:
|
||||
### Autopilot deployment profiles - default settings
|
||||
These settings are configured with all Autopilot deployment profiles:
|
||||
- Skip Cortana, OneDrive, and OEM registration setup pages
|
||||
- Automatically setup for work or school
|
||||
- Sign in experience with company or school brand
|
||||
|
||||
### AutoPilot deployment profiles - optional settings
|
||||
These settings are off by default. You can turn them on for your AutoPilot deployment profiles:
|
||||
### Autopilot deployment profiles - optional settings
|
||||
These settings are off by default. You can turn them on for your Autopilot deployment profiles:
|
||||
- Skip privacy settings
|
||||
|
||||
### Support for AutoPilot profile settings
|
||||
AutoPilot profile settings are supported beginning with the version of Windows they were introduced in. This table summarizes the settings and what they are supported on.
|
||||
### Support for Autopilot profile settings
|
||||
Autopilot profile settings are supported beginning with the version of Windows they were introduced in. This table summarizes the settings and what they are supported on.
|
||||
|
||||
| Setting | Supported on |
|
||||
| ------- | ------------- |
|
||||
| Deployment default features| Windows 10, version 1703 or later |
|
||||
| Skip privacy settings | Windows 10, version 1703 or later |
|
||||
| Disable local admin account creation on the device | Windows 10, version 1703 or later |
|
||||
| Skip End User License Agreement (EULA) | Windows 10, version 1709 or later. </br> [Learn about Windows AutoPilot EULA dismissal](https://docs.microsoft.com/windows/deployment/Windows-AutoPilot-EULA-note) |
|
||||
| Skip End User License Agreement (EULA) | Windows 10, version 1709 or later. </br> [Learn about Windows Autopilot EULA dismissal](https://docs.microsoft.com/windows/deployment/Windows-Autopilot-EULA-note) |
|
||||
|
||||
|
||||
## Windows AutoPilot deployment profiles in Microsoft Store for Business and Education
|
||||
## Windows Autopilot deployment profiles in Microsoft Store for Business and Education
|
||||
You can manage new devices in Microsoft Store for Business or Microsoft Store for Education. Devices need to meet these requirements:
|
||||
- Windows 10, version 1703 or later
|
||||
- New devices that have not been through Windows out-of-box experience.
|
||||
|
||||
## Add devices and apply AutoPilot deployment profile
|
||||
## Add devices and apply Autopilot deployment profile
|
||||
To manage devices through Microsoft Store for Business and Education, you'll need a .csv file that contains specific information about the devices. You should be able to get this from your Microsoft account contact, or the store where you purchased the devices. Upload the .csv file to Microsoft Store to add the devices.
|
||||
|
||||
### Device information file format
|
||||
@ -72,7 +72,7 @@ Here's a sample device information file:
|
||||
|
||||

|
||||
|
||||
When you add devices, you need to add them to an *AutoPilot deployment group*. Use these groups to apply AutoPilot deployment profiles to a group of devices. The first time you add devices to a group, you'll need to create an AutoPilot deployment group.
|
||||
When you add devices, you need to add them to an *Autopilot deployment group*. Use these groups to apply Autopilot deployment profiles to a group of devices. The first time you add devices to a group, you'll need to create an Autopilot deployment group.
|
||||
|
||||
> [!NOTE]
|
||||
> You can only add devices to a group when you add devices to **Microsoft Store for Business and Education**. If you decide to reorganize devices into different groups, you'll need to delete them from **Devices** in **Microsoft Store**, and add them again.
|
||||
@ -81,50 +81,50 @@ When you add devices, you need to add them to an *AutoPilot deployment group*. U
|
||||
1. Sign in to [Microsoft Store for Business](http://businessstore.microsoft.com) or [Microsoft Store for Education](https://educationstore.microsoft.com).
|
||||
2. Click **Manage**, and then click **Devices**.
|
||||
3. Click **Add devices**, navigate to the *.csv file and select it.
|
||||
4. Type a name for a new AutoPilot deployment group, or choose one from the list, and then click **Add**. </br>
|
||||
4. Type a name for a new Autopilot deployment group, or choose one from the list, and then click **Add**. </br>
|
||||
If you don't add devices to a group, you can select the individual devices to apply a profile to. <br>
|
||||
</br>
|
||||
|
||||
5. Click the devices or AutoPilot deployment group that you want to manage. You need to select devices before you can apply an AutoPilot deployment profile. You can switch between seeing groups or devices by clicking **View groups** or **View devices**.
|
||||
5. Click the devices or Autopilot deployment group that you want to manage. You need to select devices before you can apply an Autopilot deployment profile. You can switch between seeing groups or devices by clicking **View groups** or **View devices**.
|
||||
|
||||
**Apply AutoPilot deployment profile**
|
||||
1. When you have devices selected, click **AutoPilot deployment**.
|
||||
2. Choose the AutoPilot deployment profile to apply to the selected devices.
|
||||
**Apply Autopilot deployment profile**
|
||||
1. When you have devices selected, click **Autopilot deployment**.
|
||||
2. Choose the Autopilot deployment profile to apply to the selected devices.
|
||||
|
||||
> [!NOTE]
|
||||
> The first time you use AutoPilot deployment profiles, you'll need to create one. See [Create AutoPilot profile](#create-autopilot-profile).
|
||||
> The first time you use Autopilot deployment profiles, you'll need to create one. See [Create Autopilot profile](#create-autopilot-profile).
|
||||
|
||||
3. Microsoft Store for Business applies the profile to your selected devices, and shows the profile name on **Devices**.
|
||||
|
||||
## Manage AutoPilot deployment profiles
|
||||
You can manage the AutoPilot deployment profiles created in Microsoft Store. You can create a new profile, edit, or delete a profile.
|
||||
## Manage Autopilot deployment profiles
|
||||
You can manage the Autopilot deployment profiles created in Microsoft Store. You can create a new profile, edit, or delete a profile.
|
||||
|
||||
### Create AutoPilot profile
|
||||
### Create Autopilot profile
|
||||
|
||||
1. Sign in to [Microsoft Store for Business](http://businessstore.microsoft.com) or [Microsoft Store for Education](https://educationstore.microsoft.com).
|
||||
2. Click **Manage**, and then click **Devices**.
|
||||
3. Click **AutoPilot deployment**, and then click **Create new profile**.
|
||||
3. Click **Autopilot deployment**, and then click **Create new profile**.
|
||||
4. Name the profile, choose the settings to include, and then click **Create**.</br>
|
||||
The new profile is added to the **AutoPilot deployment** list.
|
||||
The new profile is added to the **Autopilot deployment** list.
|
||||
|
||||
### Edit or delete AutoPilot profile
|
||||
### Edit or delete Autopilot profile
|
||||
|
||||
1. Sign in to [Microsoft Store for Business](http://businessstore.microsoft.com) or [Microsoft Store for Education](https://educationstore.microsoft.com).
|
||||
2. Click **Manage**, and then click **Devices**.
|
||||
3. Click **AutoPilot deployment**, click **Edit your profiles**, and then choose the profile to edit.
|
||||
3. Click **Autopilot deployment**, click **Edit your profiles**, and then choose the profile to edit.
|
||||
TBD: art
|
||||
4. Change settings for the profile, and then click **Save**.</br>
|
||||
-or-</br>
|
||||
Click **Delete profile** to delete the profile.
|
||||
|
||||
## Apply a different AutoPilot deployment profile to devices
|
||||
After you've applied an AutoPilot deployment profile to a device, if you decide to apply a different profile, you can remove the profile and apply a new profile.
|
||||
## Apply a different Autopilot deployment profile to devices
|
||||
After you've applied an Autopilot deployment profile to a device, if you decide to apply a different profile, you can remove the profile and apply a new profile.
|
||||
|
||||
> [!NOTE]
|
||||
> The new profile will only be applied if the device has not been started, and gone through the out-of-box experience. Settings from a different profile can't be applied when another profile has been applied. Windows would need to be reinstalled on the device for the second profile to be applied to the device.
|
||||
|
||||
## AutoPilot device information file error messages
|
||||
Here's info on some of the errors you might see while working with AutoPilot deployment profiles in **Microsoft Store for Business and Education**.
|
||||
## Autopilot device information file error messages
|
||||
Here's info on some of the errors you might see while working with Autopilot deployment profiles in **Microsoft Store for Business and Education**.
|
||||
|
||||
| Message Id | Message explanation |
|
||||
| ---------- | ------------------- |
|
||||
@ -135,6 +135,6 @@ Here's info on some of the errors you might see while working with AutoPilot dep
|
||||
| wadp005 | Check your .csv file with your device provider. One of the devices on your list has been claimed by another organization. |
|
||||
| wadp006 | Try that again. Something happened on our end. Waiting a bit might help. |
|
||||
| wadp007 | Check the info for this device in your .csv file. The device is already registered in your organization. |
|
||||
| wadp008 | The device does not meet AutoPilot Deployment requirements. |
|
||||
| wadp008 | The device does not meet Autopilot Deployment requirements. |
|
||||
| wadp009 | Check with your device provider for an update .csv file. The current file doesn’t work |
|
||||
| wadp010 | Try that again. Something happened on our end. Waiting a bit might help. |
|
||||
|
@ -26,7 +26,7 @@
|
||||
### [Manage access to private store](/microsoft-store/manage-access-to-private-store?toc=/microsoft-store/education/toc.json)
|
||||
### [Manage private store settings](/microsoft-store/manage-private-store-settings?toc=/microsoft-store/education/toc.json)
|
||||
### [Configure MDM provider](/microsoft-store/configure-mdm-provider-microsoft-store-for-business?toc=/microsoft-store/education/toc.json)
|
||||
### [Manage Windows device deployment with Windows AutoPilot Deployment](/microsoft-store/add-profile-to-devices?toc=/microsoft-store/education/toc.json)
|
||||
### [Manage Windows device deployment with Windows Autopilot Deployment](/microsoft-store/add-profile-to-devices?toc=/microsoft-store/education/toc.json)
|
||||
### [Microsoft Store for Business and Education PowerShell module - preview](/microsoft-store/microsoft-store-for-business-education-powershell-module?toc=/microsoft-store/education/toc.json)
|
||||
### [Manage software purchased with Microsoft Products and Services agreement in Microsoft Store for Business](/microsoft-store/manage-mpsa-software-microsoft-store-for-business?toc=/microsoft-store/education/toc.json)
|
||||
## [Device Guard signing portal](/microsoft-store/device-guard-signing-portal?toc=/microsoft-store/education/toc.json)
|
||||
|
BIN
store-for-business/images/license-assign-icon.png
Normal file
After Width: | Height: | Size: 7.9 KiB |
@ -28,6 +28,6 @@ Manage products and services in Microsoft Store for Business and Microsoft Store
|
||||
| [App inventory managemement for Microsoft Store for Business and Education](app-inventory-management-microsoft-store-for-business.md) | You can manage all apps that you've acquired on your **Apps & software** page. |
|
||||
| [Manage private store settings](manage-private-store-settings.md) | The private store is a feature in Microsoft Store for Business and Education that organizations receive during the sign up process. When admins add apps to the private store, all employees in the organization can view and download the apps. Only online-licensed apps can be distributed from your private store. |
|
||||
| [Configure MDM provider](configure-mdm-provider-microsoft-store-for-business.md) | For companies or organizations using mobile device management (MDM) tools, those tools can synchronize with Microsoft Store for Business inventory to manage apps with offline licenses. Microsoft Store management tool services work with your third-party management tool to manage content. |
|
||||
| [Manage Windows device deployment with Windows AutoPilot Deployment](add-profile-to-devices.md) | In Microsoft Store for Business, you can manage devices for your organization and apply an AutoPilot deployment profile to your devices. When people in your organization run the out-of-box experience on the device, the profile configures Windows based on the AutoPilot deployment profile you applied to the device. |
|
||||
| [Manage Windows device deployment with Windows Autopilot Deployment](add-profile-to-devices.md) | In Microsoft Store for Business, you can manage devices for your organization and apply an Autopilot deployment profile to your devices. When people in your organization run the out-of-box experience on the device, the profile configures Windows based on the Autopilot deployment profile you applied to the device. |
|
||||
| [Microsoft Store for Business and Education PowerShell module - preview](microsoft-store-for-business-education-powershell-module.md) | Use PowerShell cmdlets to automate basic app license assignment. |
|
||||
| [Manage software purchased with Microsoft Products and Services agreement in Microsoft Store for Business](manage-mpsa-software-microsoft-store-for-business.md) | Software purchased with the Microsoft Products and Services Agreement (MPSA) can be managed in Microsoft Store for Business and Education. This allows customers to manage online software purchases in one location. |
|
@ -30,8 +30,8 @@ You can change the name of your private store in Microsoft Store.
|
||||
**To change the name of your private store**
|
||||
|
||||
1. Sign in to the [Microsoft Store for Business](http://businessstore.microsoft.com) or [Microsoft Store for Education](https://educationstore.microsoft.com).
|
||||
2. Click **Manage**, click **Permissions**.
|
||||
3. On the **Private store** tab, click **Change**.
|
||||
2. Click **Settings**, click **Distribute**.
|
||||
3. In the **Private store** section, click **Change**.
|
||||
4. Type a new display name for your private store, and click **Save**.
|
||||
|
||||

|
||||
@ -102,4 +102,4 @@ We've recently made performance improvements for changes in the private store. T
|
||||
| Create a new collection | 15 minutes|
|
||||
| Edit or remove a collection | 15 minutes |
|
||||
| Create private store tab | 4-6 hours |
|
||||
| Rename private store tab | 4-6 hours |
|
||||
| Rename private store tab | 4-6 hours |
|
||||
|
@ -6,7 +6,7 @@ ms.mktglfcycl: manage
|
||||
ms.sitesec: library
|
||||
ms.pagetype: store
|
||||
author: TrudyHa
|
||||
ms.date: 3/29/2018
|
||||
ms.date: 4/26/2018
|
||||
---
|
||||
|
||||
# Microsoft Store for Business and Education release history
|
||||
@ -15,9 +15,16 @@ Microsoft Store for Business and Education regularly releases new and improved f
|
||||
|
||||
Looking for info on the latest release? Check out [What's new in Microsoft Store for Business and Education](whats-new-microsoft-store-business-education.md)
|
||||
|
||||
## March 2018
|
||||
- **Performance improvements in private store** - We've made it significantly faster for you to udpate the private store. Many changes to the private store are available immediately after you make them. [Get more info](https://docs.microsoft.com/microsoft-store/manage-private-store-settings#private-store-performance)
|
||||
- **Private store collection updates** - We’ve made it easier to find apps when creating private store collections – now you can search and filter results.
|
||||
[Get more info](https://docs.microsoft.com/microsoft-store/manage-private-store-settings#private-store-collections)
|
||||
- **Manage Skype Communication credits** - Office 365 customers that own Skype Communication Credits can now see and manage them in Microsoft Store for Business. You can view your account, add funds to your account, and manage auto-recharge settings.
|
||||
- **Upgrade Office 365 trial subscription** - Customers with Office 365 can upgrade their subscription and automatically re-assign their user licenses over to a new target subscription. For example, you could upgrade your Office 365 Business to Office 365 Business Premium.
|
||||
|
||||
## January and February 2018
|
||||
- **One place for apps, software, and subscriptions** - The new **Products & services** page in Microsoft Store for Business and Education gives customers a single place to manage all products and services.
|
||||
- **Create collections of apps in your private store** - Use **collections** to customize your private store. Collections allow you to create groups of apps that are commonly used in your organization or school -- you might create a collection for a Finance department, or a 6th-grade class. [Get more info](https://docs.microsoft.com/en-us/microsoft-store/manage-private-store-settings#private-store-collections)
|
||||
- **Create collections of apps in your private store** - Use **collections** to customize your private store. Collections allow you to create groups of apps that are commonly used in your organization or school -- you might create a collection for a Finance department, or a 6th-grade class. [Get more info](https://docs.microsoft.com/microsoft-store/manage-private-store-settings#private-store-collections)
|
||||
- **Upgrade Office 365 trial subscription** - Customers with Office 365 trials can now transition their trial to a paid subscription in Microsoft Store for Business. This works for trials you acquired from Microsoft Store for Business, or Office Admin Portal.
|
||||
- **Supporting Microsoft Product and Services Agreement customers** - If you are purchasing under the Microsoft Products and Services Agreement (MPSA), you can use Microsoft Store for Business. Here you will find access to Products & Services purchased, Downloads & Keys, Software Assurance benefits, Order history, and Agreement details.
|
||||
- **Microsoft Product and Services Agreement customers can invite people to take roles** - MPSA admins can invite people to take Microsoft Store for Business roles even if the person is not in their tenant. You provide an email address when you assign the role, and we'll add the account to your tenant and assign the role.
|
||||
@ -36,7 +43,7 @@ Looking for info on the latest release? Check out [What's new in Microsoft Store
|
||||
|
||||
## September 2017
|
||||
|
||||
- **Manage Windows device deployment with Windows AutoPilot Deployment** - In Microsoft Store for Business, you can manage devices for your organization and apply an AutoPilot deployment profile to your devices. When people in your organization run the out-of-box experience on the device, the profile configures Windows, based on the AutoPilot deployment profile you applied to the device. [Get more info](add-profile-to-devices.md)
|
||||
- **Manage Windows device deployment with Windows Autopilot Deployment** - In Microsoft Store for Business, you can manage devices for your organization and apply an Autopilot deployment profile to your devices. When people in your organization run the out-of-box experience on the device, the profile configures Windows, based on the Autopilot deployment profile you applied to the device. [Get more info](add-profile-to-devices.md)
|
||||
- **Request an app** - People in your organization can reqest additional licenses for apps in your private store, and then Admins or Purchasers can make the purchases. [Get more info](https://docs.microsoft.com/microsoft-store/acquire-apps-microsoft-store-for-business#request-apps)
|
||||
- **My organization** - **My organization** shows you all Agreements that apply to your organization. You can also update profile info for you org, such as mailing address and email associated with your account.
|
||||
- **Manage prepaid Office 365 subscriptions** - Office 365 prepaid subscriptions can be redeemed using a prepaid token. Tokens are available through 3rd-party businesses, outside of Microsoft Store for Business or the Office 365 Admin portal. After redemming prepaid subscriptions, Admins can add more licenses or extend the subscription's expiration date.
|
||||
|
@ -7,7 +7,7 @@ ms.sitesec: library
|
||||
ms.pagetype: store
|
||||
author: TrudyHa
|
||||
ms.author: TrudyHa
|
||||
ms.date: 3/29/2018
|
||||
ms.date: 4/26/2018
|
||||
ms.localizationpriority: high
|
||||
---
|
||||
|
||||
@ -18,13 +18,19 @@ ms.localizationpriority: high
|
||||
- Windows 10
|
||||
- Windows 10 Mobile
|
||||
|
||||
## April 2018
|
||||
| New or changed topic | Description |
|
||||
| --- | --- |
|
||||
| [Configure access to Microsoft Store](https://docs.microsoft.com/en-us/windows/configuration/stop-employees-from-using-microsoft-store#a-href-idblock-store-group-policyablock-microsoft-store-using-group-policy) | Update on app updates when Microsoft Store is blocked. |
|
||||
| [What's New in Microsoft Store for Business and Education](whats-new-microsoft-store-business-education.md) | Update |
|
||||
|
||||
## March 2018
|
||||
| New or changed topic | Description |
|
||||
| --- | --- |
|
||||
| [Manage software purchased with Microsoft Products and Services agreement in Microsoft Store for Business](manage-mpsa-software-microsoft-store-for-business.md) | New |
|
||||
| [Manage private store settings](manage-private-store-settings.md) | Update for adding private store performance improvements. |
|
||||
| [What's New in Microsoft Store for Business and Education](whats-new-microsoft-store-business-education.md) | Update |
|
||||
[Roles and permissions in Microsoft Store for Business](roles-and-permissions-microsoft-store-for-business.md) | Update |
|
||||
| [Roles and permissions in Microsoft Store for Business](roles-and-permissions-microsoft-store-for-business.md) | Update |
|
||||
|
||||
## February 2018
|
||||
|
||||
@ -43,7 +49,7 @@ ms.localizationpriority: high
|
||||
|
||||
| New or changed topic | Description |
|
||||
| --- | --- |
|
||||
| [Manage Windows device deployment with Windows AutoPilot Deployment](add-profile-to-devices.md) | Update. Add profile settings with supported build info. |
|
||||
| [Manage Windows device deployment with Windows Autopilot Deployment](add-profile-to-devices.md) | Update. Add profile settings with supported build info. |
|
||||
| [What's New in Microsoft Store for Business and Education](whats-new-microsoft-store-business-education.md) | Update |
|
||||
|
||||
## September 2017
|
||||
@ -72,7 +78,7 @@ ms.localizationpriority: high
|
||||
|
||||
| New or changed topic | Description |
|
||||
| -------------------- | ----------- |
|
||||
| [Manage Windows device deployment with Windows AutoPilot Deployment](add-profile-to-devices.md) | New. Information about Windows AutoPilot Deployment Program and how it is used in Microsoft Store for Business and Education. |
|
||||
| [Manage Windows device deployment with Windows Autopilot Deployment](add-profile-to-devices.md) | New. Information about Windows Autopilot Deployment Program and how it is used in Microsoft Store for Business and Education. |
|
||||
| [Microsoft Store for Business and Education overview - supported markets](https://docs.microsoft.com/en-us/microsoft-store/windows-store-for-business-overview#supported-markets) | Updates for added market support. |
|
||||
|
||||
|
||||
|
@ -6,7 +6,7 @@ ms.mktglfcycl: manage
|
||||
ms.sitesec: library
|
||||
ms.pagetype: store
|
||||
author: TrudyHa
|
||||
ms.date: 3/29/2018
|
||||
ms.date: 4/26/2018
|
||||
---
|
||||
|
||||
# What's new in Microsoft Store for Business and Education
|
||||
@ -15,27 +15,33 @@ Microsoft Store for Business and Education regularly releases new and improved f
|
||||
|
||||
## Latest updates for Store for Business and Education
|
||||
|
||||
**March 2018**
|
||||
**April 2018**
|
||||
|
||||
| | |
|
||||
|--------------------------------------|---------------------------------|
|
||||
|  |**Performance improvements in private store**<br /><br /> We've made it significantly faster for you to update the private store. Many changes to the private store are available immediately after you make them. <br /><br />[Get more info](https://docs.microsoft.com/microsoft-store/manage-private-store-settings#private-store-performance)<br /><br />**Applies to**:<br /> Microsoft Store for Business <br /> Microsoft Store for Education |
|
||||
|  |**Private store collection updates**<br /><br /> We’ve made it easier to find apps when creating private store collections – now you can search and filter results. <br /><br />[Get more info](https://docs.microsoft.com/microsoft-store/manage-private-store-settings#private-store-collections)<br /><br />**Applies to**:<br /> Microsoft Store for Business <br /> Microsoft Store for Education |
|
||||
|  |**Manage Skype communication credits in Microsoft Store for Business and Education**<br /><br> Office 365 customers that own Skype Communication Credits can now see and manage them in Microsoft Store for Business. You can view your account, add funds to your account, and manage auto-recharge settings. <br /><br />**Applies to**:<br /> Microsoft Store for Business <br /> Microsoft Store for Education |
|
||||
|  |**Upgrade Office 365 trial subscription**<br /><br> Customers with Office 365 can upgrade their subscription and automatically re-assign their user licenses over to a new target subscription. For example, you could upgrade your Office 365 Business to Office 365 Business Premium. <br /><br />**Applies to**:<br /> Microsoft Store for Business <br /> Microsoft Store for Education |
|
||||
|  |**Assign apps to larger groups**<br /><br /> We're making it easier for admins to assign apps to groups of people. Admins can assign licenses to groups of any size, and include subgroups within those groups. We’ll figure out who’s in those groups, and assign licenses to people in the groups (skipping people who already have licenses). Along the way, we’ll let you know how many licenses are needed, and provide an estimate on the time required to assign licenses.<br /><br />**Applies to**:<br /> Microsoft Store for Business <br /> Microsoft Store for Education |
|
||||
|  |**Change collection order in private store**<br /><br /> Private store collections make it easy for groups of people to find the apps that they need. Now, you can customize the order of your private store collections. <br /><br />**Applies to**:<br /> Microsoft Store for Business <br /> Microsoft Store for Education |
|
||||
|  |**Office 365 subscription management**<br /><br /> We know that sometimes customers need to cancel subscription. While we don't want to lose a customer, we want the process for managing subscriptions to be easy. Now, you can delete your Office 365 subscription without calling Support. From Microsoft Store for Business and Education, you can request to delete an Office 365 subscription. We'll wait three days before permanently deleting the subscription. In case of a mistake, customers are welcome to reactivate subscriptions during the three-day period. <br /><br />**Applies to**:<br /> Microsoft Store for Business <br /> Microsoft Store for Education |
|
||||
|
||||
|
||||
<!---
|
||||
We’ve been working on bug fixes and performance improvements to provide you a better experience. Stay tuned for new features!
|
||||
| | |
|
||||
|-----------------------|---------------------------------|
|
||||
|  |**Performance improvements in private store**<br /><br /> We've made it significantly faster for you to update the private store. Many changes to the private store are available immediately after you make them. <br /><br />[Get more info](https://docs.microsoft.com/microsoft-store/manage-private-store-settings#private-store-performance)<br /><br />**Applies to**:<br /> Microsoft Store for Business <br /> Microsoft Store for Education |
|
||||
| <iframe width="288" height="232" src="https://www.youtube.com/embed/IpLIZU_j7Z0" frameborder="0" allowfullscreen></iframe>| **Manage Windows device deployment with Windows AutoPilot Deployment** <br /><br /> In Microsoft Store for Business, you can manage devices for your organization and apply an AutoPilot deployment profile to your devices. When people in your organization run the out-of-box experience on the device, the profile configures Windows, based on the AutoPilot deployment profile you applied to the device.<br /><br />[Get more info](add-profile-to-devices.md)<br /><br />**Applies to**:<br /> Microsoft Store for Business <br /> Microsoft Store for Education |
|
||||
| <iframe width="288" height="232" src="https://www.youtube.com/embed/IpLIZU_j7Z0" frameborder="0" allowfullscreen></iframe>| **Manage Windows device deployment with Windows Autopilot Deployment** <br /><br /> In Microsoft Store for Business, you can manage devices for your organization and apply an Autopilot deployment profile to your devices. When people in your organization run the out-of-box experience on the device, the profile configures Windows, based on the Autopilot deployment profile you applied to the device.<br /><br />[Get more info](add-profile-to-devices.md)<br /><br />**Applies to**:<br /> Microsoft Store for Business <br /> Microsoft Store for Education |
|
||||
|  |**Request an app**<br /><br />People in your organization can reqest additional licenses for apps in your private store, and then Admins or Purchasers can make the purchases. <br /><br />[Get more info](https://docs.microsoft.com/microsoft-store/acquire-apps-microsoft-store-for-business#request-apps)<br /><br />**Applies to**:<br /> Microsoft Store for Business <br /> Microsoft Store for Education |
|
||||
||  |**Private store collections**<br /><br> You can groups of apps in your private store with **Collections**. This can help you organize apps and help people find apps for their job or classroom. <br /><br />[Get more info](https://review.docs.microsoft.com/microsoft-store/manage-private-store-settings?branch=msfb-14856406#add-a-collection)<br /><br />**Applies to**:<br /> Microsoft Store for Business <br /> Microsoft Store for Education |
|
||||
-->
|
||||
|
||||
## Previous releases and updates
|
||||
|
||||
[March 2018](release-history-microsoft-store-business-education.md#march-2018)
|
||||
- Performance improvements in private store
|
||||
- Private store collection updates
|
||||
- Manage Skype communication credits
|
||||
- Upgrade Office 365 trial subscription
|
||||
|
||||
[January & February, 2018](release-history-microsoft-store-business-education.md#january-and-february-2018)
|
||||
- One place for apps, software, and subscriptions
|
||||
- Create collections of apps in your private store
|
||||
@ -54,7 +60,7 @@ We’ve been working on bug fixes and performance improvements to provide you a
|
||||
- Bug fixes and permformance improvements
|
||||
|
||||
[September 2017](release-history-microsoft-store-business-education.md#september-2017)
|
||||
- Manage Windows device deployment with Windows AutoPilot Deployment
|
||||
- Manage Windows device deployment with Windows Autopilot Deployment
|
||||
- Request an app
|
||||
- My organization
|
||||
- Manage prepaid Office 365 subscriptions
|
||||
|
@ -2,6 +2,8 @@
|
||||
## [Sideload apps](sideload-apps-in-windows-10.md)
|
||||
## [Remove background task resource restrictions](enterprise-background-activity-controls.md)
|
||||
## [Enable or block Windows Mixed Reality apps in the enterprise](manage-windows-mixed-reality.md)
|
||||
## [Understand apps in Windows 10](apps-in-windows-10.md)
|
||||
## [Add apps and features in Windows 10](add-apps-and-features.md)
|
||||
## [Application Virtualization (App-V) for Windows](app-v/appv-for-windows.md)
|
||||
### [Getting Started with App-V](app-v/appv-getting-started.md)
|
||||
#### [What's new in App-V for Windows 10, version 1703 and earlier](app-v/appv-about-appv.md)
|
||||
@ -104,6 +106,5 @@
|
||||
## [Service Host process refactoring](svchost-service-refactoring.md)
|
||||
## [Per-user services in Windows](per-user-services-in-windows.md)
|
||||
## [Disabling System Services in Windows Server](https://docs.microsoft.com/windows-server/security/windows-services/security-guidelines-for-disabling-system-services-in-windows-server)
|
||||
## [Understand apps in Windows 10](apps-in-windows-10.md)
|
||||
## [Deploy app upgrades on Windows 10 Mobile](deploy-app-upgrades-windows-10-mobile.md)
|
||||
## [Change history for Application management](change-history-for-application-management.md)
|
||||
|
27
windows/application-management/add-apps-and-features.md
Normal file
@ -0,0 +1,27 @@
|
||||
---
|
||||
title: Windows 10 - How to add apps from Apps & features
|
||||
description: Learn how to add apps, like XPS Viewer, to your Windows 10 device with the Apps & features page in Settings
|
||||
ms.prod: w10
|
||||
ms.mktglfcycl: manage
|
||||
ms.sitesec: library
|
||||
ms.pagetype: article
|
||||
ms.author: elizapo
|
||||
author: lizap
|
||||
ms.localizationpriority: low
|
||||
ms.date: 04/26/2018
|
||||
---
|
||||
# How to add apps and features to Windows 10
|
||||
> Applies to: Windows 10
|
||||
|
||||
Windows 10 includes a range of [applications](apps-in-windows-10.md), from [system apps](apps-in-windows-10.md#system-apps) that support the operating system (like Settings) to ["provisioned" apps](apps-in-windows-10.md#provisioned-windows-apps) (like Feedback Hub) that are installed the first time you run Windows. We also provide additional apps and features, called Features on Demand (like language packs or handwriting recognition), that you can install at any time. If you're working in a managed environment (like at work, where you have an administrator who manages your systems and resources), your admin can use [Windows Update to install Features on Demand](https://docs.microsoft.com/windows-hardware/manufacture/desktop/features-on-demand-v2--capabilities). If you're working on your own device, you can add apps and features from the Settings app.
|
||||
|
||||
Here's how you do that:
|
||||
|
||||
1. In the Search bar, search for "apps."
|
||||
2. Select **Apps and features** in the results.
|
||||
3. Select **Manage optional features**, and then select **Add a feature**.
|
||||
4. Select the feature you want to add, like **XPS Viewer**, and then select **Install.**
|
||||
|
||||
And that's it. You can see the apps you have installed on the **Apps & features** page and the features on **Manage optional features**.
|
||||
|
||||
You can manage and uninstall apps and features from the same Settings page. Just select the app or feature, and then select **Uninstall**.
|
@ -8,7 +8,7 @@ ms.pagetype: mobile
|
||||
ms.author: elizapo
|
||||
author: lizap
|
||||
ms.localizationpriority: low
|
||||
ms.date: 01/24/2018
|
||||
ms.date: 04/30/2018
|
||||
---
|
||||
# Understand the different apps included in Windows 10
|
||||
|
||||
@ -23,7 +23,7 @@ Digging into the Windows apps, there are two categories:
|
||||
- Provisioned: Installed the first time you sign into Windows. You'll see a tile or Start menu item for these apps, but they aren't installed until the first sign-in.
|
||||
- Installed: Installed as part of the OS.
|
||||
|
||||
The following tables list the system apps, installed Windows apps, and provisioned Windows apps in a standard Windows 10 Enterprise installation. (If you have a custom image, your specific apps might differ.) The tables list the app, the full name, show the app's status in Windows 10 version 1607, 1703, and 1709, and indicate whether an app can be uninstalled through the UI.
|
||||
The following tables list the system apps, installed Windows apps, and provisioned Windows apps in a standard Windows 10 Enterprise installation. (If you have a custom image, your specific apps might differ.) The tables list the app, the full name, show the app's status in Windows 10 version 1607, 1703, and 1709, and indicate whether an app can be uninstalled through the UI.
|
||||
|
||||
Some of the apps show up in multiple tables - that's because their status changed between versions. Make sure to check the version column for the version you are currently running.
|
||||
|
||||
@ -32,115 +32,143 @@ Some of the apps show up in multiple tables - that's because their status change
|
||||
> ```powershell
|
||||
> Get-AppxPackage |Select Name,PackageFamilyName
|
||||
> Get-AppxProvisionedPackage -Online | select DisplayName,PackageName
|
||||
> ```
|
||||
|
||||
> ```
|
||||
|
||||
## System apps
|
||||
System apps are integral to the operating system. Here are the typical system apps in Windows 10 versions 1607, 1703, and 1709.
|
||||
|
||||
| Name | Full name | 1607 | 1703 | 1709 |Uninstall through UI? |
|
||||
|------------------|-------------------------------------------|------|------|------|-------------------------------------------------------|
|
||||
| Cortana UI | CortanaListenUIApp | | x | | No |
|
||||
| | Desktop Learning | | x | | No |
|
||||
| | DesktopView | | x | | No |
|
||||
| | EnvironmentsApp | | x | | No |
|
||||
| Mixed Reality + | HoloCamera | | x | | No |
|
||||
| Mixed Reality + | HoloItemPlayerApp | | x | | No |
|
||||
| Mixed Reality + | HoloShell | | x | | No |
|
||||
| | InputApp | | | x | No |
|
||||
| | Microsoft.AAD.Broker.Plugin | x | x | x | No |
|
||||
| | Microsoft.AccountsControl | x | x | x | No |
|
||||
| Hello setup UI | Microsoft.BioEnrollment | x | x | x | No |
|
||||
| | Microsoft.CredDialogHost | | x | x | No |
|
||||
| | Microsoft.ECApp | | | x | No |
|
||||
| | Microsoft.LockApp | x | x | x | No |
|
||||
| Microsoft Edge | Microsoft.Microsoft.Edge | x | x | x | No |
|
||||
| | Microsoft.PPIProjection | x | x | x | No |
|
||||
| | Microsoft.Windows. Apprep.ChxApp | x | x | x | No |
|
||||
| | Microsoft.Windows. AssignedAccessLockApp | x | x | x | No |
|
||||
| | Microsoft.Windows. CloudExperienceHost | x | x | x | No |
|
||||
| | Microsoft.Windows. ContentDeliveryManager | x | x | x | No |
|
||||
| Cortana | Microsoft.Windows.Cortana | x | x | x | No |
|
||||
| | Microsoft.Windows. Holographic.FirstRun | | x | x | No |
|
||||
| | Microsoft.Windows. ModalSharePickerHost | | x | | No |
|
||||
| | Microsoft.Windows. OOBENetworkCaptivePort | | x | x | No |
|
||||
| | Microsoft.Windows. OOBENetworkConnectionFlow | | x | x | No |
|
||||
| | Microsoft.Windows. ParentalControls | x | x | x | No |
|
||||
| People Hub | Microsoft.Windows. PeopleExperienceHost | | | x | No |
|
||||
| | Microsoft.Windows. PinningConfirmationDialog | | | x | No |
|
||||
| | Microsoft.Windows. SecHealthUI | | x | x | No |
|
||||
| | Microsoft.Windows. SecondaryTileExperience | x | x | x | No |
|
||||
| | Microsoft.Windows. SecureAssessmentBrowser | | x | x | No |
|
||||
| Start | Microsoft.Windows. ShellExperienceHost | x | x | x | No |
|
||||
| Windows Feedback | Microsoft.WindowsFeedback | * | * | * | No |
|
||||
| | Microsoft.XboxGameCallableUI | x | x | x | No |
|
||||
| Contact Support* | Windows.ContactSupport | x | x | * | Through the Optional Features app |
|
||||
| Settings | Windows.ImmersiveControlPanel | x | x | x | No |
|
||||
| Connect | Windows.MiracastView | x | x | | No |
|
||||
| Print 3D | Windows.Print3D | | | x | Yes |
|
||||
| Print UI | Windows.PrintDialog | x | x | x | No |
|
||||
System apps are integral to the operating system. Here are the typical system apps in Windows 10 versions 1703, 1709, and 1803.
|
||||
|
||||
> [!NOTE]
|
||||
> - The Windows Feedback app changed to the Feedback Hub in version 1607. It's listed in the provisioned apps table below.
|
||||
| Name | Full name |1703 | 1709 | 1803 |Uninstall through UI? |
|
||||
|------------------|-------------------------------------------|:------:|:------:|:------:|-------------------------------------------------------|
|
||||
| Cortana UI | CortanaListenUIApp | x | | |No |
|
||||
| | Desktop Learning | x | | |No |
|
||||
| | DesktopView | x | | |No |
|
||||
| | EnvironmentsApp | x | | |No |
|
||||
| Mixed Reality + | HoloCamera | x | | |No |
|
||||
| Mixed Reality + | HoloItemPlayerApp | x | | |No |
|
||||
| Mixed Reality + | HoloShell | x | | |No |
|
||||
| | InputApp | | x | x |No |
|
||||
| | Microsoft.AAD.Broker.Plugin | x | x | x |No |
|
||||
| | Microsoft.AccountsControl | x | x | x |No |
|
||||
| Hello setup UI | Microsoft.BioEnrollment | x | x | x |No |
|
||||
| | Microsoft.CredDialogHost | x | x | x |No |
|
||||
| | Microsoft.ECApp | | x | x |No |
|
||||
| | Microsoft.LockApp | x | x | x |No |
|
||||
| Microsoft Edge | Microsoft.Microsoft.Edge | x | x | x |No |
|
||||
| | Microsoft.PPIProjection | x | x | x |No |
|
||||
| | Microsoft.Windows. Apprep.ChxApp | x | x | x |No |
|
||||
| | Microsoft.Windows. AssignedAccessLockApp | x | x | x |No |
|
||||
| | Microsoft.Windows. CloudExperienceHost | x | x | x |No |
|
||||
| | Microsoft.Windows. ContentDeliveryManager | x | x | x |No |
|
||||
| Cortana | Microsoft.Windows.Cortana | x | x | x |No |
|
||||
| | Microsoft.Windows. Holographic.FirstRun | x | x | x |No |
|
||||
| | Microsoft.Windows. ModalSharePickerHost | x | | |No |
|
||||
| | Microsoft.Windows. OOBENetworkCaptivePort | x | x | x |No |
|
||||
| | Microsoft.Windows. OOBENetworkConnectionFlow | x | x | x |No |
|
||||
| | Microsoft.Windows. ParentalControls | x | x | x |No |
|
||||
| People Hub | Microsoft.Windows. PeopleExperienceHost | | x | x |No |
|
||||
| | Microsoft.Windows. PinningConfirmationDialog | | x | x |No |
|
||||
| | Microsoft.Windows. SecHealthUI | x | x | x |No |
|
||||
| | Microsoft.Windows. SecondaryTileExperience | x | x | |No |
|
||||
| | Microsoft.Windows. SecureAssessmentBrowser | x | x | x |No |
|
||||
| Start | Microsoft.Windows. ShellExperienceHost | x | x | x |No |
|
||||
| Windows Feedback | Microsoft.WindowsFeedback | * | * | |No |
|
||||
| | Microsoft.XboxGameCallableUI | x | x | x |No |
|
||||
| Contact Support* | Windows.ContactSupport | x | * | |Through the Optional Features app |
|
||||
| Settings | Windows.ImmersiveControlPanel | x | x | |No |
|
||||
| Connect | Windows.MiracastView | x | | |No |
|
||||
| Print 3D | Windows.Print3D | | x | |Yes |
|
||||
| Print UI | Windows.PrintDialog | x | x | x |No |
|
||||
| Purchase UI | Windows.PurchaseDialog | | | x |No |
|
||||
| | Microsoft.AsyncTextService | | | x |No |
|
||||
| | Microsoft.MicrosoftEdgeDevToolsClient | | | x |No |
|
||||
| | Microsoft.Win32WebViewHost | | | x |No |
|
||||
| | Microsoft.Windows.CapturePicker | | | x |No |
|
||||
| | Windows.CBSPreview | | | x |No |
|
||||
|File Picker | 1527c705-839a-4832-9118-54d4Bd6a0c89 | | | x |No |
|
||||
|File Explorer | c5e2524a-ea46-4f67-841f-6a9465d9d515 | | | x |No |
|
||||
|App Resolver | E2A4F912-2574-4A75-9BB0-0D023378592B | | | x |No |
|
||||
|Add Suggested folder Dialog box| F46D4000-FD22-4DB4-AC8E-4E1DDDE828FE|| | x |No |
|
||||
|
||||
> [!NOTE]
|
||||
> - The Contact Support app changed to Get Help in version 1709. Get Help is a provisioned app (instead of system app like Contact Support).
|
||||
> - As of Windows 10 version 1607, you can use the Optional Features app to uninstall the Contact Support app.
|
||||
|
||||
## Installed Windows apps
|
||||
Here are the typical installed Windows apps in Windows 10 versions 1607, 1703, and 1709.
|
||||
|
||||
| Name | Full name | 1607 | 1703 | 1709 |Uninstall through UI? |
|
||||
|--------------------|-----------------------------------------|------|------|------|----------------------|
|
||||
| Remote Desktop | Microsoft.RemoteDesktop | x | x | x | Yes |
|
||||
| PowerBI | Microsoft.Microsoft PowerBIforWindows | x | x | | Yes |
|
||||
| Code Writer | ActiproSoftwareLLC.562882FEEB491 | x | x | x | Yes |
|
||||
| Eclipse Manager | 46928bounde.EclipseManager | x | x | x | Yes |
|
||||
| Pandora | PandoraMediaInc.29680B314EFC2 | x | x | x | Yes |
|
||||
| Photoshop Express | AdobeSystemIncorporated. AdobePhotoshop | x | x | x | Yes |
|
||||
| Duolingo | D5EA27B7.Duolingo- LearnLanguagesforFree | | x | x | Yes |
|
||||
| Network Speed Test | Microsoft.NetworkSpeedTest | x | x | x | Yes |
|
||||
| Paid Wi-FI | | | x | | Yes |
|
||||
Here are the typical installed Windows apps in Windows 10 versions 1703, 1709, and 1803.
|
||||
|
||||
| Name | Full name | 1703 | 1709 | 1803 |Uninstall through UI? |
|
||||
|--------------------|------------------------------------------|:------:|:------:|:------:|----------------------|
|
||||
| Remote Desktop | Microsoft.RemoteDesktop | x | x | | Yes |
|
||||
| PowerBI | Microsoft.Microsoft PowerBIforWindows | x | | | Yes |
|
||||
| Code Writer | ActiproSoftwareLLC.562882FEEB491 | x | x | x | Yes |
|
||||
| Eclipse Manager | 46928bounde.EclipseManager | x | x | x | Yes |
|
||||
| Pandora | PandoraMediaInc.29680B314EFC2 | x | x | x | Yes |
|
||||
| Photoshop Express | AdobeSystemIncorporated. AdobePhotoshop | x | x | x | Yes |
|
||||
| Duolingo | D5EA27B7.Duolingo- LearnLanguagesforFree | x | x | x | Yes |
|
||||
| Network Speed Test | Microsoft.NetworkSpeedTest | x | x | x | Yes |
|
||||
| News | Microsoft.BingNews | x | x | x | Yes |
|
||||
| Flipboard | | | | | Yes |
|
||||
| | Microsoft.Advertising.Xaml | x | x | x | Yes |
|
||||
| | Microsoft.NET.Native.Framework.1.2 | x | x | x | Yes |
|
||||
| | Microsoft.NET.Native.Framework.1.3 | x | x | x | Yes |
|
||||
| | Microsoft.NET.Native.Framework.1.6 | | x | x | Yes |
|
||||
| | Microsoft.NET.Native.Framework.1.7 | | | x | Yes |
|
||||
| | Microsoft.NET.Native.Framework.2.0 | | x | x | Yes |
|
||||
| | Microsoft.NET.Native.Runtime.1.1 | | x | x | Yes |
|
||||
| | Microsoft.NET.Native.Runtime.1.3 | x | x | | Yes |
|
||||
| | Microsoft.NET.Native.Runtime.1.4 | x | x | x | Yes |
|
||||
| | Microsoft.NET.Native.Runtime.1.6 | | x | x | Yes |
|
||||
| | Microsoft.NET.Native.Runtime.1.7 | | | x | Yes |
|
||||
| | Microsoft.NET.Native.Runtime.2.0 | | x | x | Yes |
|
||||
| | Microsoft.Services.Store.Engagement | | x | x | Yes |
|
||||
| | Microsoft.VCLibs.120.00 | x | x | x | Yes |
|
||||
| | Microsoft.VCLibs.140.00 | x | x | x | Yes |
|
||||
| | Microsoft.VCLibs.120.00.Universal | | x | | Yes |
|
||||
| | Microsoft.VCLibs.140.00.UWPDesktop | | | x | Yes |
|
||||
| | Microsoft.WinJS.2.0 | x | | | Yes |
|
||||
|
||||
## Provisioned Windows apps
|
||||
Here are the typical provisioned Windows apps in Windows 10 versions 1607, 1703, and 1709.
|
||||
|
||||
| Name | Full name | 1607 | 1703 | 1709 | Uninstall through UI? |
|
||||
|---------------------------------|----------------------------------------|------|------|------|---------------------|
|
||||
| 3D Builder | Microsoft.3DBuilder | | x | | Yes |
|
||||
| Alarms & Clock | Microsoft.WindowsAlarms | x | x | x | No |
|
||||
| App Installer | Microsoft.DesktopAppInstaller | x | x | x | No |
|
||||
| Calculator | Microsoft.WindowsCalculator | x | x | x | No |
|
||||
| Camera | Microsoft.WindowsCamera | x | x | x | No |
|
||||
| Feedback Hub | Microsoft.WindowsFeedbackHub | x | x | x | Yes |
|
||||
| Get Help | Microsoft.GetHelp | | | x | No |
|
||||
| Get Office/My Office | Microsoft.Microsoft OfficeHub | x | x | x | Yes |
|
||||
| Get Skype/Skype (preview)/Skype | Microsoft.SkypeApp | x | x | x | Yes |
|
||||
| Get Started/Tips | Microsoft.Getstarted | x | x | x | Yes |
|
||||
| Groove | Microsoft.ZuneMusic | x | x | x | No |
|
||||
| Mail and Calendar | microsoft.windowscommunicationsapps | x | x | x | No |
|
||||
| Maps | Microsoft.WindowsMaps | x | x | x | No |
|
||||
| Messaging | Microsoft.Messaging | x | x | x | No |
|
||||
| Microsoft 3D Viewer | Microsoft.Microsoft3DViewer | | x | x | No |
|
||||
| Movies & TV | Microsoft.ZuneVideo | x | x | x | No |
|
||||
| News | Microsoft.BingNews | x | x | x | Yes |
|
||||
| OneNote | Microsoft.Office.OneNote | x | x | x | Yes |
|
||||
| Paint 3D | Microsoft.MSPaint | | x | x | No |
|
||||
| People | Microsoft.People | x | x | x | No |
|
||||
| Photos | Microsoft.Windows.Photos | x | x | x | No |
|
||||
| Print 3D | Microsoft.Print3D | | | x | No |
|
||||
| Solitaire | Microsoft.MicrosoftSolitaireCollection | x | x | x | Yes |
|
||||
| Sticky Notes | Microsoft.MicrosoftStickyNotes | x | x | x | No |
|
||||
| Store | Microsoft.WindowsStore | x | x | x | No |
|
||||
| Sway | Microsoft.Office.Sway | * | * | x | Yes |
|
||||
| Voice Recorder | Microsoft.WindowsSoundRecorder | x | x | x | No |
|
||||
| Wallet | Microsoft.Wallet | | x | x | No |
|
||||
| Weather | Microsoft.BingWeather | x | x | x | Yes |
|
||||
| Xbox | Microsoft.XboxApp | x | x | x | No |
|
||||
| | Microsoft.OneConnect | x | x | x | No |
|
||||
| | Microsoft.StorePurchaseApp | x | x | x | No |
|
||||
| | Microsoft.Xbox.TCUI | | | x | No |
|
||||
| | Microsoft.XboxGameOverlay | | x | x | No |
|
||||
| | Microsoft.XboxIdentityProvider | x | x | * | No |
|
||||
| | Microsoft.XboxSpeech ToTextOverlay | | x | x | No |
|
||||
Here are the typical provisioned Windows apps in Windows 10 versions 1703, 1709, and 1803.
|
||||
|
||||
\* moved from "provisioned" to "installed" in this version.
|
||||
| Name | Full name | 1703 | 1709 | 1803 | Uninstall through UI? |
|
||||
|---------------------------------|----------------------------------------|:------:|:------:|:------:|---------------------------|
|
||||
| 3D Builder | Microsoft.3DBuilder | x | | | Yes |
|
||||
| Alarms & Clock | Microsoft.WindowsAlarms | x | x | x | No |
|
||||
| App Installer | Microsoft.DesktopAppInstaller | x | x | x | Via Settings App |
|
||||
| Calculator | Microsoft.WindowsCalculator | x | x | x | No |
|
||||
| Camera | Microsoft.WindowsCamera | x | x | x | No |
|
||||
| Feedback Hub | Microsoft.WindowsFeedbackHub | x | x | x | Yes |
|
||||
| Get Help | Microsoft.GetHelp | | x | x | No |
|
||||
| Get Office/My Office | Microsoft.Microsoft OfficeHub | x | x | x | Yes |
|
||||
| Get Skype/Skype (preview)/Skype | Microsoft.SkypeApp | x | x | x | Yes |
|
||||
| Get Started/Tips | Microsoft.Getstarted | x | x | x | Yes |
|
||||
| Groove | Microsoft.ZuneMusic | x | x | x | No |
|
||||
| Mail and Calendar | Microsoft.windows communicationsapps | x | x | x | No |
|
||||
| Maps | Microsoft.WindowsMaps | x | x | x | No |
|
||||
| Messaging | Microsoft.Messaging | x | x | x | No |
|
||||
| Microsoft 3D Viewer | Microsoft.Microsoft3DViewer | x | x | x | No |
|
||||
| Movies & TV | Microsoft.ZuneVideo | x | x | x | No |
|
||||
| OneNote | Microsoft.Office.OneNote | x | x | x | Yes |
|
||||
| Paid Wi-FI | Microsoft.OneConnect | x | x | x | Yes |
|
||||
| Paint 3D | Microsoft.MSPaint | x | x | x | No |
|
||||
| People | Microsoft.People | x | x | x | No |
|
||||
| Photos | Microsoft.Windows.Photos | x | x | x | No |
|
||||
| Print 3D | Microsoft.Print3D | | x | x | No |
|
||||
| Solitaire | Microsoft.Microsoft SolitaireCollection| x | x | x | Yes |
|
||||
| Sticky Notes | Microsoft.MicrosoftStickyNotes | x | x | x | No |
|
||||
| Store | Microsoft.WindowsStore | x | x | x | No |
|
||||
| Sway | Microsoft.Office.Sway | * | x | x | Yes |
|
||||
| Voice Recorder | Microsoft.SoundRecorder | x | x | x | No |
|
||||
| Wallet | Microsoft.Wallet | x | x | x | No |
|
||||
| Weather | Microsoft.BingWeather | x | x | x | Yes |
|
||||
| Xbox | Microsoft.XboxApp | x | x | x | No |
|
||||
| | Microsoft.OneConnect | x | x | x | No |
|
||||
| | Microsoft.DesktopAppInstaller | | | x | No |
|
||||
| | Microsoft.StorePurchaseApp | x | x | x | No |
|
||||
| | Microsoft.WebMediaExtensions | | | x | No |
|
||||
| | Microsoft.Xbox.TCUI | | x | x | No |
|
||||
| | Microsoft.XboxGameOverlay | x | x | x | No |
|
||||
| | Microsoft.XboxGamingOverlay | | | x | No |
|
||||
| | Microsoft.XboxIdentityProvider | x | x | x | No |
|
||||
| | Microsoft.XboxSpeech ToTextOverlay | x | x | x | No |
|
@ -15,6 +15,10 @@ ms.date: 10/24/2017
|
||||
|
||||
This topic lists new and updated topics in the [Configure Windows 10](index.md) documentation for Windows 10 and Windows 10 Mobile.
|
||||
|
||||
## RELEASE: Windows 10, version 1803
|
||||
|
||||
The topics in this library have been updated for Windows 10, version 1803.
|
||||
|
||||
## October 2017
|
||||
|
||||
New or changed topic | Description
|
||||
|
@ -8,7 +8,7 @@ ms.sitesec: library
|
||||
ms.localizationpriority: medium
|
||||
author: jdeckerms
|
||||
ms.author: jdecker
|
||||
ms.date: 11/09/2017
|
||||
ms.date: 04/30/2018
|
||||
---
|
||||
|
||||
# Enable or block Windows Mixed Reality apps in the enterprise
|
||||
@ -17,27 +17,39 @@ ms.date: 11/09/2017
|
||||
|
||||
- Windows 10
|
||||
|
||||
Windows 10, version 1709 (also known as the Fall Creators Update), introduces [Windows Mixed Reality](https://blogs.windows.com/windowsexperience/2017/10/03/the-era-of-windows-mixed-reality-begins-october-17/). Organizations that use Windows Server Update Services (WSUS) must take action to [enable Windows Mixed Reality](#enable). Any organization that wants to prohibit use of Windows Mixed Reality can [block the installation of the Mixed Reality Portal](#block).
|
||||
|
||||
[Windows Mixed Reality](https://blogs.windows.com/windowsexperience/2017/10/03/the-era-of-windows-mixed-reality-begins-october-17/) was introduced in Windows 10, version 1709 (also known as the Fall Creators Update), as a [Windows 10 Feature on Demand (FOD)](https://docs.microsoft.com/windows-hardware/manufacture/desktop/features-on-demand-v2--capabilities). Features on Demand are Windows feature packages that can be added at any time. When a Windows 10 PC needs a new feature, it can request the feature package from Windows Update.
|
||||
|
||||
Organizations that use Windows Server Update Services (WSUS) must take action to [enable Windows Mixed Reality](#enable). Any organization that wants to prohibit use of Windows Mixed Reality can [block the installation of the Mixed Reality Portal](#block).
|
||||
|
||||
|
||||
<span id="enable" />
|
||||
## Enable Windows Mixed Reality in WSUS
|
||||
|
||||
To enable users to download the Windows Mixed Reality software for devices running Windows 10, version 1703, enterprises using WSUS can approve Windows Mixed Reality package by unblocking **KB4016509: FeatureOnDemandOasis - Windows 10 version 1703 for x64-based Systems**.
|
||||
|
||||
Enterprises devices running Windows 10, version 1709, will not be able to install Windows Mixed Reality Feature on Demand (FOD) directly from WSUS. Instead, use one of the following options to install Windows Mixed Reality software:
|
||||
1. [Check your version of Windows 10.](https://support.microsoft.com/help/13443/windows-which-operating-system)
|
||||
|
||||
- Manually install the Mixed Reality software
|
||||
|
||||
- [Download the Microsoft Windows Holographic Desktop Feature on Demand package.](http://download.microsoft.com/download/6/F/8/6F816172-AC7D-4F45-B967-D573FB450CB7/Microsoft-Windows-Holographic-Desktop-FOD-Package.cab)
|
||||
|
||||
- Open a command prompt as administrator and run the following command to install the package:
|
||||
|
||||
`dism /online /add-package /packagepath:"path to the cab file"`
|
||||
|
||||
- Go to **Settings** > **Update & Security** > **Windows Update** and **Check for updates**.
|
||||
|
||||
- IT admin can create [Side by side feature store (shared folder)](https://technet.microsoft.com/library/jj127275.aspx)
|
||||
>[!NOTE]
|
||||
>You must be on at least Windows 10, version 1709, to run Windows Mixed Reality.
|
||||
|
||||
2. Windows Mixed Reality Feature on Demand (FOD) is downloaded from Windows Update. If access to Windows Update is blocked, you must manually install the Windows Mixed Reality FOD.
|
||||
|
||||
a. Download [the FOD .cab file for Windows 10, version 1803](http://download.microsoft.com/download/9/9/3/9934B163-FA01-4108-A38A-851B4ACD1244/Microsoft-Windows-Holographic-Desktop-FOD-Package~31bf3856ad364e35~amd64~~.cab) or [the FOD .cab file for Windows 10, version 1709]
|
||||
(http://download.microsoft.com/download/6/F/8/6F816172-AC7D-4F45-B967-D573FB450CB7/Microsoft-Windows-Holographic-Desktop-FOD-Package.cab).
|
||||
|
||||
>[!NOTE]
|
||||
>You must download the FOD .cab file that matches your operating system version.
|
||||
|
||||
b. Use `Add-Package` to add Windows Mixed Reality FOD to the image.
|
||||
|
||||
```
|
||||
Add-Package
|
||||
Dism /Image:C:\test\offline /Add-Package /PackagePath:*path to the cab file*
|
||||
```
|
||||
|
||||
c. In **Settings** > **Update & Security** > **Windows Update**, select **Check for updates**.
|
||||
|
||||
|
||||
IT admins can also create [Side by side feature store (shared folder)](https://technet.microsoft.com/library/jj127275.aspx) to allow access to the Windows Mixed Reality FOD.
|
||||
|
||||
|
||||
<span id="block" />
|
||||
|
@ -6,6 +6,7 @@
|
||||
## [New policies for Windows 10](new-policies-for-windows-10.md)
|
||||
## [Group Policies that apply only to Windows 10 Enterprise and Windows 10 Education](group-policies-for-enterprise-and-education-editions.md)
|
||||
## [Manage the Settings app with Group Policy](manage-settings-app-with-group-policy.md)
|
||||
## [What version of Windows am I running](windows-version-search.md)
|
||||
## [Reset a Windows 10 Mobile device](reset-a-windows-10-mobile-device.md)
|
||||
## [Transitioning to modern management](manage-windows-10-in-your-organization-modern-management.md)
|
||||
## [Windows 10 Mobile deployment and management guide](windows-10-mobile-and-mdm.md)
|
||||
|
BIN
windows/client-management/images/WinVer.PNG
Normal file
After Width: | Height: | Size: 24 KiB |
BIN
windows/client-management/images/msinfo32.png
Normal file
After Width: | Height: | Size: 18 KiB |
BIN
windows/client-management/images/msinfosnip.jpg
Normal file
After Width: | Height: | Size: 44 KiB |
BIN
windows/client-management/images/refcmd.png
Normal file
After Width: | Height: | Size: 24 KiB |
BIN
windows/client-management/images/slmgr_dlv.png
Normal file
After Width: | Height: | Size: 73 KiB |
BIN
windows/client-management/images/systemcollage.png
Normal file
After Width: | Height: | Size: 103 KiB |
BIN
windows/client-management/images/systeminfo.png
Normal file
After Width: | Height: | Size: 14 KiB |
BIN
windows/client-management/images/systemproperties.png
Normal file
After Width: | Height: | Size: 9.6 KiB |
BIN
windows/client-management/images/systemprops.jpg
Normal file
After Width: | Height: | Size: 187 KiB |
BIN
windows/client-management/images/winsearchbar.jpg
Normal file
After Width: | Height: | Size: 8.3 KiB |
BIN
windows/client-management/images/winversnip.jpg
Normal file
After Width: | Height: | Size: 51 KiB |
@ -6,9 +6,9 @@ ms.prod: w10
|
||||
ms.mktglfcycl: manage
|
||||
ms.sitesec: library
|
||||
ms.pagetype: devices
|
||||
author: jdeckerms
|
||||
author: MariciaAlforque
|
||||
ms.localizationpriority: high
|
||||
ms.date: 12/04/2017
|
||||
ms.date: 04/26/2018
|
||||
---
|
||||
|
||||
# Manage Windows 10 in your organization - transitioning to modern management
|
||||
@ -21,10 +21,10 @@ Your organization can support various operating systems across a wide range of d
|
||||
|
||||
This six-minute video demonstrates how users can bring in a new retail device and be up and working with their personalized settings and a managed experience in a few minutes, without being on the corporate network. It also demonstrates how IT can apply policies and configurations to ensure device compliance.
|
||||
|
||||
<iframe width="560" height="315" src="https://www.youtube.com/embed/g1rIcBhhxpA" frameborder="0" allowfullscreen></iframe>
|
||||
> [!VIDEO https://www.youtube.com/embed/g1rIcBhhxpA]
|
||||
|
||||
>[!NOTE]
|
||||
>The video demonstrates the configuration process using the classic Azure portal, which will be retired January 08, 2018. Customers should use the new Azure portal. [Learn how use the new Azure portal to perform tasks that you used to do in the classic Azure portal.](https://docs.microsoft.com/information-protection/deploy-use/migrate-portal)
|
||||
>The video demonstrates the configuration process using the classic Azure portal, which is retired. Customers should use the new Azure portal. [Learn how use the new Azure portal to perform tasks that you used to do in the classic Azure portal.](https://docs.microsoft.com/information-protection/deploy-use/migrate-portal)
|
||||
|
||||
This topic offers guidance on strategies for deploying and managing Windows 10, including deploying Windows 10 in a mixed environment. The topic covers [management options](#reviewing-the-management-options-with-windows-10) plus the four stages of the device lifecycle:
|
||||
|
||||
@ -94,17 +94,14 @@ As you review the roles in your organization, you can use the following generali
|
||||
|
||||
Your configuration requirements are defined by multiple factors, including the level of management needed, the devices and data managed, and your industry requirements. Meanwhile, employees are frequently concerned about IT applying strict policies to their personal devices, but they still want access to corporate email and documents. With Windows 10, you can create a consistent set of configurations across PCs, tablets, and phones through the common MDM layer.
|
||||
|
||||
**MDM**: [MDM](https://www.microsoft.com/en-us/cloud-platform/mobile-device-management) gives you a way to configure settings that achieve your administrative intent without exposing every possible setting. (In contrast, Group Policy exposes fine-grained settings that you control individually.) One benefit of MDM is that it enables you to apply broader privacy, security, and application management settings through lighter and more efficient tools. This makes MDM the best choice for devices that are constantly on the go.
|
||||
**MDM**: [MDM](https://www.microsoft.com/en-us/cloud-platform/mobile-device-management) gives you a way to configure settings that achieve your administrative intent without exposing every possible setting. (In contrast, Group Policy exposes fine-grained settings that you control individually.) One benefit of MDM is that it enables you to apply broader privacy, security, and application management settings through lighter and more efficient tools. MDM also allows you to target Internet-connected devices to manage policies without using GP that requires on-premise domain joined devices. This makes MDM the best choice for devices that are constantly on the go.
|
||||
|
||||
**Group Policy** and **System Center Configuration Manager**: Your organization might still need to manage domain joined computers at a granular level such as Internet Explorer’s 1,500 configurable Group Policy settings, or very specific Windows Firewall rules. If so, Group Policy and System Center Configuration Manager continue to be excellent management choices:
|
||||
**Group Policy** and **System Center Configuration Manager**: Your organization might still need to manage domain joined computers at a granular level such as Internet Explorer’s 1,500 configurable Group Policy settings. If so, Group Policy and System Center Configuration Manager continue to be excellent management choices:
|
||||
|
||||
- Group Policy is the best way to granularly configure domain joined Windows PCs and tablets connected to the corporate network using Windows-based tools. Microsoft continues to add Group Policy settings with each new version of Windows.
|
||||
|
||||
- Configuration Manager remains the recommended solution for granular configuration with robust software deployment, Windows updates, and OS deployment.
|
||||
|
||||
You can use the following generalized decision tree to review the management choices for devices in your organization:
|
||||
|
||||

|
||||
|
||||
## Updating and Servicing
|
||||
|
||||
@ -116,12 +113,24 @@ MDM with Intune provide tools for applying Windows updates to client computers i
|
||||
|
||||
There are a variety of steps you can take to begin the process of modernizing device management in your organization:
|
||||
|
||||
- **Assess current management practices, and look for investments you might make today.** Which of your current practices need to stay the same, and which can you change? Specifically, what elements of traditional management do you need to retain and where can you modernize? Whether you take steps to minimize custom imaging, re-evaluate settings management, or reassesses authentication and compliance, the benefits can be immediate.
|
||||
**Assess current management practices, and look for investments you might make today.** Which of your current practices need to stay the same, and which can you change? Specifically, what elements of traditional management do you need to retain and where can you modernize? Whether you take steps to minimize custom imaging, re-evaluate settings management, or reassesses authentication and compliance, the benefits can be immediate. You can use the [MDM Migration Analysis Tool (MMAT)](http://aka.ms/mmat) to help determine which Group Policies are set for a target user/computer and cross-reference them against the list of available MDM policies.
|
||||
|
||||
- **Assess the different use cases and management needs in your environment.** Are there groups of devices that could benefit from lighter, simplified management? BYOD devices, for example, are natural candidates for cloud-based management. Users or devices handling more highly regulated data might require an on-premises Active Directory domain for authentication. Configuration Manager and EMS provide you the flexibility to stage implementation of modern management scenarios while targeting different devices the way that best suits your business needs.
|
||||
**Assess the different use cases and management needs in your environment.** Are there groups of devices that could benefit from lighter, simplified management? BYOD devices, for example, are natural candidates for cloud-based management. Users or devices handling more highly regulated data might require an on-premises Active Directory domain for authentication. Configuration Manager and EMS provide you the flexibility to stage implementation of modern management scenarios while targeting different devices the way that best suits your business needs.
|
||||
|
||||
- **Review the decision trees in this article.** With the different options in Windows 10, plus Configuration Manager and Enterprise Mobility + Security, you have the flexibility to handle imaging, authentication, settings, and management tools for any scenario.
|
||||
**Review the decision trees in this article.** With the different options in Windows 10, plus Configuration Manager and Enterprise Mobility + Security, you have the flexibility to handle imaging, authentication, settings, and management tools for any scenario.
|
||||
|
||||
- **Take incremental steps.** Moving towards modern device management doesn’t have to be an overnight transformation. New operating systems and devices can be brought in while older ones remain. With this “managed diversity,” users can benefit from productivity enhancements on new Windows 10 devices, while you continue to maintain older devices according to your standards for security and manageability.
|
||||
**Take incremental steps.** Moving towards modern device management doesn’t have to be an overnight transformation. New operating systems and devices can be brought in while older ones remain. With this “managed diversity,” users can benefit from productivity enhancements on new Windows 10 devices, while you continue to maintain older devices according to your standards for security and manageability. Starting with Windows 10, version 1803, the new policy [MDMWinsOverGP](https://docs.microsoft.com/en-us/windows/client-management/mdm/policy-csp-controlpolicyconflict#controlpolicyconflict-mdmwinsovergp) was added to allow MDM policies to take precedence over GP when both GP and its equivalent MDM policies are set on the device. You can start implementing MDM policies while keeping your GP environment. Here is the list of MDM policies with equivalent GP - [Policies supported by GP](https://docs.microsoft.com/en-us/windows/client-management/mdm/policy-configuration-service-provider#policies-supported-by-gp)
|
||||
|
||||
- **Optimize your existing investments**. On the road from traditional on-premises management to modern cloud-based management, take advantage of the flexible, hybrid architecture of Configuration Manager and Intune. As additional capabilities become available in the cloud-identity/MDM model, Microsoft is committed to providing a clear path from traditional to modern management.
|
||||
|
||||
**Optimize your existing investments**. On the road from traditional on-premises management to modern cloud-based management, take advantage of the flexible, hybrid architecture of Configuration Manager and Intune. Starting with Configuration Manager 1710, co-management enables you to concurrently manage Windows 10 devices by using both Configuration Manager and Intune. See these topics for details:
|
||||
|
||||
- [Co-management for Windows 10 devices](https://docs.microsoft.com/en-us/sccm/core/clients/manage/co-management-overview)
|
||||
- [Prepare Windows 10 devices for co-management](https://docs.microsoft.com/en-us/sccm/core/clients/manage/co-management-prepare)
|
||||
- [Switch Configuration Manager workloads to Intune](https://docs.microsoft.com/en-us/sccm/core/clients/manage/co-management-switch-workloads)
|
||||
- [Co-management dashboard in System Center Configuration Manager](https://docs.microsoft.com/en-us/sccm/core/clients/manage/co-management-dashboard)
|
||||
|
||||
## Related topics
|
||||
|
||||
- [What is Intune?](https://docs.microsoft.com/en-us/intune/introduction-intune)
|
||||
- [Windows 10 Policy CSP](https://docs.microsoft.com/en-us/windows/client-management/mdm/policy-configuration-service-provider)
|
||||
- [Configuration service Providers](https://docs.microsoft.com/en-us/windows/client-management/mdm/configuration-service-provider-reference)
|
||||
|
@ -70,6 +70,8 @@
|
||||
## [Configuration service provider reference](configuration-service-provider-reference.md)
|
||||
### [AccountManagement CSP](accountmanagement-csp.md)
|
||||
#### [AccountManagement DDF file](accountmanagement-ddf.md)
|
||||
### [Accounts CSP](accounts-csp.md)
|
||||
#### [Accounts DDF file](accounts-ddf-file.md)
|
||||
### [ActiveSync CSP](activesync-csp.md)
|
||||
#### [ActiveSync DDF file](activesync-ddf-file.md)
|
||||
### [AllJoynManagement CSP](alljoynmanagement-csp.md)
|
||||
|