mirror of
https://github.com/MicrosoftDocs/windows-itpro-docs.git
synced 2025-05-15 14:57:23 +00:00
Merge remote-tracking branch 'refs/remotes/origin/rs5' into jd5kiosk
This commit is contained in:
commit
42ebc6dcf8
@ -13,8 +13,6 @@ ms.sitesec: library
|
||||
---
|
||||
|
||||
# Address bar settings
|
||||
>*Supported versions: Microsoft Edge on Windows 10*
|
||||
|
||||
|
||||
|
||||
|
||||
|
@ -13,7 +13,6 @@ ms.sitesec: library
|
||||
---
|
||||
|
||||
# Adobe settings
|
||||
>*Supported versions: Microsoft Edge on Windows 10*
|
||||
|
||||
|
||||
|
||||
|
@ -13,7 +13,6 @@ ms.sitesec: library
|
||||
---
|
||||
|
||||
# Books Library management
|
||||
>*Supported versions: Microsoft Edge on Windows 10*
|
||||
|
||||
|
||||
|
||||
|
@ -13,7 +13,6 @@ ms.sitesec: library
|
||||
---
|
||||
|
||||
# Browser settings management
|
||||
>*Supported versions: Microsoft Edge on Windows 10*
|
||||
|
||||
|
||||
|
||||
|
@ -13,7 +13,7 @@ ms.sitesec: library
|
||||
---
|
||||
|
||||
# Developer settings
|
||||
>*Supported versions: Microsoft Edge on Windows 10*
|
||||
|
||||
|
||||
|
||||
|
||||
|
@ -13,7 +13,6 @@ ms.sitesec: library
|
||||
---
|
||||
|
||||
# Extensions management
|
||||
>*Supported versions: Microsoft Edge on Windows 10*
|
||||
|
||||
|
||||
|
||||
|
@ -13,8 +13,6 @@ ms.sitesec: library
|
||||
---
|
||||
|
||||
# Favorites management
|
||||
>*Supported versions: Microsoft Edge on Windows 10*
|
||||
|
||||
|
||||
|
||||
|
||||
|
@ -11,7 +11,6 @@ ms.sitesec: library
|
||||
|
||||
|
||||
# New tab page
|
||||
>*Supported versions: Microsoft Edge on Windows 10*
|
||||
|
||||
|
||||
Microsoft Edge loads the default New tab page by default. You can configure Microsoft Edge to load a New tab page URL and prevent users from changing it. When you enable this policy, and you disable the Allow web content on New tab page policy, Microsoft Edge ignores any URL specified in this policy and opens about:blank.
|
||||
|
@ -7,7 +7,7 @@ ms.date: 07/25/2018
|
||||
---
|
||||
|
||||
# Prelaunch Microsoft Edge and preload tabs in the background
|
||||
>*Supported versions: Microsoft Edge on Windows 10, next major update to Windows*
|
||||
|
||||
|
||||
|
||||
Microsoft Edge pre-launches as a background process during Windows startup when the system is idle waiting to be launched by the user. Pre-launching helps the performance of Microsoft Edge and minimizes the amount of time required to start up Microsoft Edge. You can also configure Microsoft Edge to prevent Microsoft Edge from pre-launching.
|
||||
|
@ -7,7 +7,6 @@ ms.date: 07/27/2018
|
||||
---
|
||||
|
||||
# Security and privacy management
|
||||
>*Supported versions: Microsoft Edge on Windows 10*
|
||||
|
||||
Microsoft Edge is designed with improved security in mind, helping to defend people from increasingly sophisticated and prevalent web-based attacks against Windows. Because Microsoft Edge is designed like a Universal Windows app, changing the browser to an app, it fundamentally changes the process model so that both the outer manager process and the different content processes all live within app container sandboxes.
|
||||
|
||||
|
@ -7,7 +7,7 @@ ms.date: 08/06/2018
|
||||
---
|
||||
|
||||
# Sync browser settings options
|
||||
>*Supported versions: Microsoft Edge on Windows 10, next major update to Windows*
|
||||
|
||||
|
||||
By default, the “browser” group syncs automatically between the user’s devices, letting users make changes. The “browser” group uses the Sync your Settings option in Settings to sync information like history and favorites. You can configure Microsoft Edge to prevent the “browser” group from syncing and prevent users from turning on the _Sync your Settings_ toggle in Settings. If you want syncing turned off by default but not disabled, select the _Allow users to turn “browser” syncing_ option in the Do not sync browser policy.
|
||||
|
||||
|
@ -7,7 +7,6 @@ ms.date: 07/29/2018
|
||||
---
|
||||
|
||||
# Telemetry and data collection
|
||||
>*Supported versions: Microsoft Edge on Windows 10, next major update to Windows*
|
||||
|
||||
|
||||
|
||||
|
@ -7,11 +7,11 @@
|
||||
|
||||
### Supported values
|
||||
|
||||
>[!div class="mx-tableFixed"]
|
||||
>|Group Policy |MDM |Registry |Description |Most restricted |
|
||||
>|---|:---:|:---:|---|:---:|
|
||||
>|Disabled |0 |0 |Prevented/not allowed. Hide the Address bar drop-down functionality and disable the _Show search and site suggestions as I type_ toggle in Settings. | |
|
||||
>|Enabled or not configured **(default)** |1 |1 |Allowed. Show the Address bar drop-down list and make it available. | |
|
||||
|
||||
|Group Policy |MDM |Registry |Description |Most restricted |
|
||||
|---|:---:|:---:|---|:---:|
|
||||
|Disabled |0 |0 |Prevented/not allowed. Hide the Address bar drop-down functionality and disable the _Show search and site suggestions as I type_ toggle in Settings. | |
|
||||
|Enabled or not configured **(default)** |1 |1 |Allowed. Show the Address bar drop-down list and make it available. | |
|
||||
---
|
||||
|
||||
### ADMX info and settings
|
||||
|
@ -27,7 +27,7 @@
|
||||
- **Data type:** Integer
|
||||
|
||||
#### Registry settings
|
||||
- **Path:** HLKM\Software\Policies\Microsoft\MicrosoftEdge\Addons
|
||||
- **Path:** HKLM\Software\Policies\Microsoft\MicrosoftEdge\Addons
|
||||
- **Value name:** FlashPlayerEnabled
|
||||
- **Value type:** REG_DWORD
|
||||
|
||||
|
@ -6,11 +6,11 @@
|
||||
|
||||
### Supported values
|
||||
|
||||
>[!div class="mx-tableFixed"]
|
||||
>|Group Policy |MDM |Registry |Description |Most restricted |
|
||||
>|---|:---:|:---:|---|:---:|
|
||||
>|Disabled or not configured **(default)** |0 |0 |Prevented/not allowed. Users can configure the _Clear browsing data_ option in Settings. | |
|
||||
>|Enabled |1 |1 |Allowed. Clear the browsing data upon exit automatically. | |
|
||||
|
||||
|Group Policy |MDM |Registry |Description |Most restricted |
|
||||
|---|:---:|:---:|---|:---:|
|
||||
|Disabled or not configured **(default)** |0 |0 |Prevented/not allowed. Users can configure the _Clear browsing data_ option in Settings. | |
|
||||
|Enabled |1 |1 |Allowed. Clear the browsing data upon exit automatically. | |
|
||||
---
|
||||
|
||||
|
||||
@ -29,7 +29,7 @@
|
||||
- **Data type:** Integer
|
||||
|
||||
#### *Registry
|
||||
- **Path:** HLKM\\Software\\Policies\\Microsoft\\MicrosoftEdge\\Privacy
|
||||
- **Path:** HKLM\\Software\\Policies\\Microsoft\\MicrosoftEdge\\Privacy
|
||||
- **Value name:** ClearBrowsingHistoryOnExit
|
||||
- **Value type:** REG_DWORD
|
||||
|
||||
|
@ -27,7 +27,7 @@
|
||||
- **Data type:** Integer
|
||||
|
||||
#### Registry settings
|
||||
- **Path:** HLKM\\Software\\Policies\\Microsoft\\MicrosoftEdge\\BooksLibrary
|
||||
- **Path:** HKLM\\Software\\Policies\\Microsoft\\MicrosoftEdge\\BooksLibrary
|
||||
- **Value name:** EnableExtendedBooksTelemetry
|
||||
- **Value type:** REG_DWORD
|
||||
|
||||
|
@ -27,7 +27,7 @@
|
||||
- **Data type:** Integer
|
||||
|
||||
#### Registry settings
|
||||
- **Path:** HLKM\\Software\\Policies\\Microsoft\\MicrosoftEdge\\Extensions
|
||||
- **Path:** HKLM\\Software\\Policies\\Microsoft\\MicrosoftEdge\\Extensions
|
||||
- **Value name:** ExtensionsEnabled
|
||||
- **Value type:** REG_DWORD
|
||||
|
||||
|
@ -29,7 +29,7 @@
|
||||
- **Data type:** Integer
|
||||
|
||||
#### Registry settings
|
||||
- **Path:** HLKM\Software\Policies\Microsoft\MicrosoftEdge\Main
|
||||
- **Path:** HKLM\Software\Policies\Microsoft\MicrosoftEdge\Main
|
||||
- **Value name:** AllowFullScreenMode
|
||||
- **Value type:** REG_DWORD
|
||||
|
||||
|
@ -29,7 +29,7 @@
|
||||
- **Data type:** Integer
|
||||
|
||||
#### Registry settings
|
||||
- **Path:** HLKM\\Software\\Policies\\Microsoft\\MicrosoftEdge\\Main
|
||||
- **Path:** HKLM\\Software\\Policies\\Microsoft\\MicrosoftEdge\\Main
|
||||
- **Value name:** AllowInPrivate
|
||||
- **Value type:** REG_DWORD
|
||||
|
||||
|
@ -27,7 +27,7 @@
|
||||
- **Data type:** Integer
|
||||
|
||||
#### Registry settings
|
||||
- **Path:** HLKM\\Software\\Policies\\Microsoft\\MicrosoftEdge\\BrowserEmulation
|
||||
- **Path:** HKLM\\Software\\Policies\\Microsoft\\MicrosoftEdge\\BrowserEmulation
|
||||
- **Value name:** MSCompatibilityMode
|
||||
- **Value type:** REG_DWORD
|
||||
|
||||
|
@ -33,7 +33,7 @@ For more details about configuring the prelaunch and preload options, see [Prela
|
||||
- **Data type:** Integer
|
||||
|
||||
#### Registry settings
|
||||
- **Path:** HLKM\Software\Policies\Microsoft\MicrosoftEdge\
|
||||
- **Path:** HKLM\Software\Policies\Microsoft\MicrosoftEdge\
|
||||
- **Value name:** AllowPrelaunch
|
||||
- **Value type:** REG_DWORD
|
||||
|
||||
|
@ -27,7 +27,7 @@
|
||||
- **Data type:** Integer
|
||||
|
||||
#### Registry settings
|
||||
- **Path:** HLKM\\Software\\Policies\\Microsoft\\MicrosoftEdge\\Main
|
||||
- **Path:** HKLM\\Software\\Policies\\Microsoft\\MicrosoftEdge\\Main
|
||||
- **Value name:** AllowPrinting
|
||||
- **Value type:** REG_DWORD
|
||||
|
||||
|
@ -28,7 +28,7 @@
|
||||
- **Data type:** Integer
|
||||
|
||||
#### Registry settings
|
||||
- **Path:** HLKM\\Software\\Policies\\Microsoft\\MicrosoftEdge\\Main
|
||||
- **Path:** HKLM\\Software\\Policies\\Microsoft\\MicrosoftEdge\\Main
|
||||
- **Value name:** AllowSavingHistory
|
||||
- **Value type:** REG_DWORD
|
||||
|
||||
|
@ -32,7 +32,7 @@ For more details about configuring the search engine, see [Search engine customi
|
||||
|
||||
|
||||
#### Registry settings
|
||||
- **Path:** HLKM\\Software\\Policies\\Microsoft\\MicrosoftEdge\\Protected
|
||||
- **Path:** HKLM\\Software\\Policies\\Microsoft\\MicrosoftEdge\\Protected
|
||||
- **Value name:** AllowSearchEngineCustomization
|
||||
- **Value type:** REG_DWORD
|
||||
|
||||
|
@ -26,7 +26,7 @@
|
||||
- **Data type:** Integer
|
||||
|
||||
#### Registry settings
|
||||
- **Path:** HLKM\\Software\\Policies\\Microsoft\\MicrosoftEdge\\BooksLibrary
|
||||
- **Path:** HKLM\\Software\\Policies\\Microsoft\\MicrosoftEdge\\BooksLibrary
|
||||
- **Value name:** UseSharedFolderForBooks
|
||||
- **Value type:** REG_DWORD
|
||||
|
||||
|
@ -27,7 +27,7 @@
|
||||
- **Data type:** Integer
|
||||
|
||||
#### Registry settings
|
||||
- **Path:** HLKM\Software\Policies\Microsoft\MicrosoftEdge\Extensions
|
||||
- **Path:** HKLM\Software\Policies\Microsoft\MicrosoftEdge\Extensions
|
||||
- **Value name:** AllowSideloadingOfExtensions
|
||||
- **Value type:** REG_DWORD
|
||||
|
||||
|
@ -30,7 +30,7 @@
|
||||
- **Data type:** Integer
|
||||
|
||||
#### Registry settings
|
||||
- **Path:** HLKM\\Software\\Policies\\Microsoft\\MicrosoftEdge\\ServiceUI
|
||||
- **Path:** HKLM\\Software\\Policies\\Microsoft\\MicrosoftEdge\\ServiceUI
|
||||
- **Value name:** AllowWebContentOnNewTabPage
|
||||
- **Value type:** REG_DWORD
|
||||
|
||||
|
@ -28,7 +28,7 @@
|
||||
- **Data type:** Integer
|
||||
|
||||
#### Registry settings
|
||||
- **Path:** HLKM\\Software\\Policies\\Microsoft\\MicrosoftEdge\\Main
|
||||
- **Path:** HKLM\\Software\\Policies\\Microsoft\\MicrosoftEdge\\Main
|
||||
- **Value name:** AlwaysEnableBooksLibrary
|
||||
- **Value type:** REG_DWORD
|
||||
|
||||
|
@ -32,7 +32,7 @@ For more details about configuring the search engine, see [Search engine customi
|
||||
- **Data type:** Integer
|
||||
|
||||
#### Registry settings
|
||||
- **Path:** HLKM\\Software\\Policies\\Microsoft\\MicrosoftEdge\\OpenSearch
|
||||
- **Path:** HKLM\\Software\\Policies\\Microsoft\\MicrosoftEdge\\OpenSearch
|
||||
- **Value name:** ConfigureAdditionalSearchEngines
|
||||
- **Value type:** REG_SZ
|
||||
|
||||
|
@ -27,7 +27,7 @@
|
||||
- **Data type:** Integer
|
||||
|
||||
#### Registry settings
|
||||
- **Path:** HLKM\\Software\\Policies\\Microsoft\\MicrosoftEdge\\Security
|
||||
- **Path:** HKLM\\Software\\Policies\\Microsoft\\MicrosoftEdge\\Security
|
||||
- **Value name:** FlashClickToRunMode
|
||||
- **Value type:** REG_DWORD
|
||||
|
||||
|
@ -29,7 +29,7 @@
|
||||
- **Data type:** Integer
|
||||
|
||||
#### Registry settings
|
||||
- **Path:** HLKM\Software\Policies\Microsoft\MicrosoftEdge\
|
||||
- **Path:** HKLM\Software\Policies\Microsoft\MicrosoftEdge\
|
||||
- **Value name:**
|
||||
- **Value type:** REG_DWORD
|
||||
|
||||
|
@ -27,7 +27,7 @@
|
||||
- **Data type:** Integer
|
||||
|
||||
#### Registry settings
|
||||
- **Path:** HLKM\\Software\\Policies\\Microsoft\\MicrosoftEdge\\Main
|
||||
- **Path:** HKLM\\Software\\Policies\\Microsoft\\MicrosoftEdge\\Main
|
||||
- **Value name:** Use FormSuggest
|
||||
- **Value type:** REG_SZ
|
||||
|
||||
|
@ -10,13 +10,13 @@
|
||||
|
||||
### Supported values
|
||||
|
||||
>[!div class="mx-tableFixed"]
|
||||
>|Group Policy |MDM |Registry |Description |Most restricted |
|
||||
>|---|:---:|:---:|---|:---:|
|
||||
>|Disabled or not configured<br>**(default)** |0 |0 |No data collected or sent | |
|
||||
>|Enabled |1 |1 |Send intranet history only | |
|
||||
>|Enabled |2 |2 |Send Internet history only | |
|
||||
>|Enabled |3 |3 |Send both intranet and Internet history | |
|
||||
|
||||
|Group Policy |MDM |Registry |Description |Most restricted |
|
||||
|---|:---:|:---:|---|:---:|
|
||||
|Disabled or not configured<br>**(default)** |0 |0 |No data collected or sent | |
|
||||
|Enabled |1 |1 |Send intranet history only | |
|
||||
|Enabled |2 |2 |Send Internet history only | |
|
||||
|Enabled |3 |3 |Send both intranet and Internet history | |
|
||||
---
|
||||
|
||||
>>You can find this policy and the related policies in the following location of the Group Policy Editor:
|
||||
@ -42,7 +42,7 @@
|
||||
- **Data type:** Integer
|
||||
|
||||
#### Registry settings
|
||||
- **Path:** HLKM\Software\Microsoft\Windows\CurrentVersion\Policies\DataCollection
|
||||
- **Path:** HKLM\Software\Microsoft\Windows\CurrentVersion\Policies\DataCollection
|
||||
- **Value name:** MicrosoftEdgeDataOptIn
|
||||
- **Value type:** REG_DWORD
|
||||
|
||||
|
@ -27,7 +27,7 @@
|
||||
- **Data type:** Integer
|
||||
|
||||
#### Registry settings
|
||||
- **Path:** HLKM\\Software\\Policies\\Microsoft\\MicrosoftEdge\\Main
|
||||
- **Path:** HKLM\\Software\\Policies\\Microsoft\\MicrosoftEdge\\Main
|
||||
- **Value name:** DoNotTrack
|
||||
- **Value type:** REG_DWORD
|
||||
|
||||
|
@ -28,7 +28,7 @@ You must set the Configure kiosk mode policy to enabled (1 - InPrivate public br
|
||||
- **Data type:** Integer
|
||||
|
||||
#### Registry settings
|
||||
- **Path:** HLKM\Software\Policies\Microsoft\MicrosoftEdge\KioskMode
|
||||
- **Path:** HKLM\Software\Policies\Microsoft\MicrosoftEdge\KioskMode
|
||||
- **Value name:**ConfigureKioskResetAfterIdleTimeout
|
||||
- **Value type:** REG_DWORD
|
||||
|
||||
|
@ -29,7 +29,7 @@
|
||||
- **Data type:** String
|
||||
|
||||
#### Registry settings
|
||||
- **Path:** HLKM\Software\Policies\Microsoft\MicrosoftEdge\Main\EnterpriseMode
|
||||
- **Path:** HKLM\Software\Policies\Microsoft\MicrosoftEdge\Main\EnterpriseMode
|
||||
- **Value name:** SiteList
|
||||
- **Value type:** REG_SZ
|
||||
|
||||
|
@ -8,12 +8,12 @@
|
||||
|
||||
### Supported values
|
||||
|
||||
>[!div class="mx-tableFixed"]
|
||||
>|Group Policy |MDM |Registry |Description |
|
||||
>|---|:---:|:---:|---|
|
||||
>|Not configured **(default)** |Blank |Blank |Hide the favorites bar but show it on the Start and New tab pages. The favorites bar toggle, in Settings, is set to Off but enabled allowing users to make changes. |
|
||||
>|Disabled |0 |0 |Hide the favorites bar on all pages. Also, the favorites bar toggle, in Settings, is set to Off and disabled preventing users from making changes. Microsoft Edge also hides the “show bar/hide bar” option in the context menu. |
|
||||
>|Enabled |1 |1 |Show the favorites bar on all pages. Also, the favorites bar toggle, in Settings, is set to On and disabled preventing users from making changes. Microsoft Edge also hides the “show bar/hide bar” option in the context menu. |
|
||||
|
||||
|Group Policy |MDM |Registry |Description |
|
||||
|---|:---:|:---:|---|
|
||||
|Not configured **(default)** |Blank |Blank |Hide the favorites bar but show it on the Start and New tab pages. The favorites bar toggle, in Settings, is set to Off but enabled allowing users to make changes. |
|
||||
|Disabled |0 |0 |Hide the favorites bar on all pages. Also, the favorites bar toggle, in Settings, is set to Off and disabled preventing users from making changes. Microsoft Edge also hides the “show bar/hide bar” option in the context menu. |
|
||||
|Enabled |1 |1 |Show the favorites bar on all pages. Also, the favorites bar toggle, in Settings, is set to On and disabled preventing users from making changes. Microsoft Edge also hides the “show bar/hide bar” option in the context menu. |
|
||||
---
|
||||
|
||||
### ADMX info and settings
|
||||
@ -30,7 +30,7 @@
|
||||
- **Data type:** Integer
|
||||
|
||||
#### Registry settings
|
||||
- **Path:** HLKM\Software\Policies\Microsoft\MicrosoftEdge\Main
|
||||
- **Path:** HKLM\Software\Policies\Microsoft\MicrosoftEdge\Main
|
||||
- **Value name:** ConfigureFavoritesBar
|
||||
- **Value type:** REG_DWORD
|
||||
|
||||
|
@ -39,7 +39,7 @@ For more details about configuring the different Home button options, see [Home
|
||||
- **Data type:** Integer
|
||||
|
||||
#### Registry settings
|
||||
- **Path:** HLKM\Software\Policies\Microsoft\MicrosoftEdge\Internet Settings
|
||||
- **Path:** HKLM\Software\Policies\Microsoft\MicrosoftEdge\Internet Settings
|
||||
- **Value name:** ConfigureHomeButton
|
||||
- **Value type:** REG_DWORD
|
||||
|
||||
|
@ -25,7 +25,7 @@
|
||||
- **Data type:** Integer
|
||||
|
||||
#### Registry settings
|
||||
- **Path:** HLKM\Software\Policies\Microsoft\MicrosoftEdge\
|
||||
- **Path:** HKLM\Software\Policies\Microsoft\MicrosoftEdge\
|
||||
- **Value name:**
|
||||
- **Value type:** REG_DWORD
|
||||
|
||||
|
@ -32,7 +32,7 @@ For this policy to work, you must configure Microsoft Edge in assigned access; o
|
||||
- **Data type:** Integer
|
||||
|
||||
#### Registry settings
|
||||
- **Path:** HLKM\Software\Policies\Microsoft\MicrosoftEdge\KioskMode
|
||||
- **Path:** HKLM\Software\Policies\Microsoft\MicrosoftEdge\KioskMode
|
||||
- **Value name:** ConfigureKioskMode
|
||||
- **Value type:** REG_SZ
|
||||
|
||||
|
@ -44,7 +44,7 @@ For more details about configuring the Start pages, see [Start pages configurati
|
||||
- **Data type:** Integer
|
||||
|
||||
#### Registry settings
|
||||
- **Path:** HLKM\Software\Policies\Microsoft\MicrosoftEdge\Internet Settings
|
||||
- **Path:** HKLM\Software\Policies\Microsoft\MicrosoftEdge\Internet Settings
|
||||
- **Value name:** ConfigureOpenEdgeWith
|
||||
- **Value type:** REG_DWORD
|
||||
|
||||
|
@ -32,7 +32,7 @@ Verify not allowed/disabled settings:
|
||||
- **Data type:** Integer
|
||||
|
||||
#### Registry settings
|
||||
- **Path:** HLKM\Software\Policies\Microsoft\MicrosoftEdge\Main
|
||||
- **Path:** HKLM\Software\Policies\Microsoft\MicrosoftEdge\Main
|
||||
- **Value name:** FormSuggest Passwords
|
||||
- **Value type:** REG_SZ
|
||||
|
||||
|
@ -27,7 +27,7 @@
|
||||
- **Data type:** Integer
|
||||
|
||||
### Registry
|
||||
- **Path:** HLKM\\Software\\Policies\\Microsoft\\MicrosoftEdge\\Main
|
||||
- **Path:** HKLM\\Software\\Policies\\Microsoft\\MicrosoftEdge\\Main
|
||||
- **Value name:** AllowPopups
|
||||
- **Value type:** REG_SZ
|
||||
|
||||
|
@ -27,7 +27,7 @@
|
||||
- **Data type:** Integer
|
||||
|
||||
#### Registry settings
|
||||
- **Path:** HLKM\\Software\\Policies\\Microsoft\\MicrosoftEdge\\SearchScopes
|
||||
- **Path:** HKLM\\Software\\Policies\\Microsoft\\MicrosoftEdge\\SearchScopes
|
||||
- **Value name:** ShowSearchSuggestionsGlobal
|
||||
- **Value type:** REG_DWORD
|
||||
|
||||
|
@ -24,7 +24,7 @@
|
||||
- **Data type:** Integer
|
||||
|
||||
#### Registry settings
|
||||
- **Path:** HLKM\Software\Policies\Microsoft\MicrosoftEdge\
|
||||
- **Path:** HKLM\Software\Policies\Microsoft\MicrosoftEdge\
|
||||
- **Value name:**
|
||||
- **Value type:** REG_DWORD
|
||||
|
||||
|
@ -31,10 +31,9 @@ For more details about configuring the browser syncing options, see [Sync browse
|
||||
- **Data type:** Integer
|
||||
|
||||
#### Registry settings
|
||||
- **Path:** HLKM\\Software\Policies\Microsoft\Windows\SettingSync
|
||||
- **Path:** HKLM\\Software\Policies\Microsoft\Windows\SettingSync
|
||||
- **Value name:** DisableWebBrowserSettingSyncUserOverride
|
||||
- **Value type:** REG_DWORD
|
||||
|
||||
- **Value
|
||||
|
||||
### Related policies
|
||||
|
||||
|
@ -15,7 +15,7 @@
|
||||
|---|---|
|
||||
|ADMX info |<ul><li>**GP English name:** </li><li>**GP name:** </li><li>**GP path:** Windows Components/Microsoft Edge</li><li>**GP ADMX file name:** MicrosoftEdge.admx</li></ul> |
|
||||
|MDM settings |<ul><li>**MDM name:** Browser/[]()</li><li>**Supported devices:** Desktop and Mobile</li><li>**URI full path:** ./Vendor/MSFT/Policy/Config/Browser/ </li><li>**Data type:** Integer</li></ul> |
|
||||
|Registry |<ul><li>**Path:** HLKM\Software\Policies\Microsoft\MicrosoftEdge\ </li><li>**Value name:** </li><li>**Value type:** REG_DWORD</li></ul> |
|
||||
|Registry |<ul><li>**Path:** HKLM\Software\Policies\Microsoft\MicrosoftEdge\ </li><li>**Value name:** </li><li>**Value type:** REG_DWORD</li></ul> |
|
||||
---
|
||||
|
||||
|
||||
|
@ -27,7 +27,7 @@
|
||||
- **Data type:** String
|
||||
|
||||
#### Registry settings
|
||||
- **Path:** HLKM\Software\Policies\Microsoft\MicrosoftEdge\Extensions
|
||||
- **Path:** HKLM\Software\Policies\Microsoft\MicrosoftEdge\Extensions
|
||||
- **Value name:** PreventTurningOffRequiredExtensions
|
||||
- **Value type:** REG_SZ
|
||||
|
||||
|
@ -30,7 +30,7 @@
|
||||
- **Data type:** String
|
||||
|
||||
#### Registry settings
|
||||
- **Path:** HLKM\Software\Policies\Microsoft\MicrosoftEdge\Favorites
|
||||
- **Path:** HKLM\Software\Policies\Microsoft\MicrosoftEdge\Favorites
|
||||
- **Value name:** ConfiguredFavorites
|
||||
- **Value type:** REG_SZ
|
||||
|
||||
|
@ -31,7 +31,7 @@
|
||||
- **Data type:** Integer
|
||||
|
||||
#### Registry settings
|
||||
- **Path:** HLKM\\Software\\Policies\\Microsoft\\MicrosoftEdge\\Main
|
||||
- **Path:** HKLM\\Software\\Policies\\Microsoft\\MicrosoftEdge\\Main
|
||||
- **Value name:** SendIntranetTraffictoInternetExplorer
|
||||
- **Value type:** REG_DWORD
|
||||
|
||||
|
@ -33,7 +33,7 @@ For more details about configuring the search engine, see [Search engine customi
|
||||
- **Data type:** Integer
|
||||
|
||||
#### Registry settings
|
||||
- **Path:** HLKM\\Software\\Policies\\Microsoft\\MicrosoftEdge\\OpenSearch
|
||||
- **Path:** HKLM\\Software\\Policies\\Microsoft\\MicrosoftEdge\\OpenSearch
|
||||
- **Value name:** SetDefaultSearchEngine
|
||||
- **Value type:** REG_SZ
|
||||
|
||||
|
@ -46,7 +46,7 @@ We are discontinuing the **Configure Favorites** group policy. Use the **[Provis
|
||||
| [Configure Open Microsoft Edge With](#configure-open-microsoft-edge-with) | New | [ConfigureOpenEdgeWith](https://docs.microsoft.com/en-us/windows/client-management/mdm/policy-csp-browser#browser-configureopenmicrosoftedgewith) | New |
|
||||
| [Do not sync browser settings](available-policies.md#do-not-sync-browser-settings) | -- | [Experience/DoNotSyncBrowserSettings](https://docs.microsoft.com/en-us/windows/client-management/mdm/policy-csp-experience#experience-donotsyncbrowsersetting) | New |
|
||||
| [Prevent certificate error overrides](#prevent-certificate-error-overrides) | New | [PreventCertErrorOverrides](https://docs.microsoft.com/en-us/windows/client-management/mdm/policy-csp-browser#browser-preventcerterroroverrides) | New |
|
||||
| [Prevent users from turning on browser syncing](#preventusersfromturningonbrowsersyncing) | New | Experience/PreventUsersFromTurningOnBrowserSyncing | New |
|
||||
| [Prevent users from turning on browser syncing](#preventusersfromturningonbrowsersyncing) | New | [Experience/PreventUsersFromTurningOnBrowserSyncing](https://docs.microsoft.com/en-us/windows/client-management/mdm/policy-csp-experience#experience-preventusersfromturningonbrowsersyncing) | New |
|
||||
| [Prevent turning off required extensions](#prevent-turning-off-required-extensions) | New | [PreventTurningOffRequiredExtensions](https://docs.microsoft.com/en-us/windows/client-management/mdm/policy-csp-experience#experience-preventusersfromturningonbrowsersyncing) | New |
|
||||
| [Set Home button URL](#set-home-button-url) | New | [SetHomeButtonURL](https://docs.microsoft.com/en-us/windows/client-management/mdm/policy-csp-browser#browser-sethomebuttonurl) | New |
|
||||
| [Set New Tab page URL](#set-new-tab-page-url) | New | [SetNewTabPageURL](https://docs.microsoft.com/en-us/windows/client-management/mdm/policy-csp-browser#browser-setnewtabpageurl) | New |
|
||||
|
@ -7,7 +7,7 @@ author: jdeckerms
|
||||
ms.author: jdecker
|
||||
ms.topic: article
|
||||
ms.localizationpriority: medium
|
||||
ms.date: 05/22/2018
|
||||
ms.date: 08/14/2018
|
||||
---
|
||||
|
||||
# Set up HoloLens in kiosk mode
|
||||
@ -145,8 +145,7 @@ Use the following snippet in your kiosk configuration XML to enable the **Guest*
|
||||
|
||||

|
||||
|
||||
8. (**Optional**: If you want to apply the provisioning package after device initial setup and there is an admin user already available on the kiosk device, skip this step.) Create an admin user account in **Runtime settings** > **Accounts** > **Users**. Provide a **UserName** and **Password**, and select **UserGroup** as **Administrators**. With this account, you can view the provisioning status and logs if needed.
|
||||
8. (**Optional**: If you already have a non-admin account on the kiosk device, skip this step.) Create a local standard user account in **Runtime settings** > **Accounts** > **Users**. Make sure the **UserName** is the same as the account that you specify in the configuration XML. Select **UserGroup** as **Standard Users**.
|
||||
|
||||
8. On the **File** menu, select **Save.**
|
||||
9. On the **Export** menu, select **Provisioning package**.
|
||||
10. Change **Owner** to **IT Admin**, which will set the precedence of this provisioning package higher than provisioning packages applied to this device from other sources, and then select **Next.**
|
||||
|
@ -282,7 +282,7 @@ Use this procedure if you use Exchange online.
|
||||
|
||||
5. Add email address for your on-premises domain account.
|
||||
|
||||
For this procedure, you'll be using AD admin tools to add an email address for your on-preises domain account.
|
||||
For this procedure, you'll be using AD admin tools to add an email address for your on-premises domain account.
|
||||
|
||||
- In **Active Directory Users and Computers** AD tool, right-click on the folder or Organizational Unit that your Surface Hub accounts will be created in, click **New**, and **User**.
|
||||
- Type the display name from the previous cmdlet into the **Full name** box, and the alias into the **User logon name** box. Click **Next**.
|
||||
|
@ -26,10 +26,11 @@ You will also learn how to deploy apps using Microsoft Intune, turn on or off Ea
|
||||
## <a name="features"></a>Inclusive Classroom features
|
||||
|Reading features|Available in which apps|Office 2016 MSI|Office 2019| Office 365 ProPlus Monthly (C2R) | Office 365 ProPlus Semi Annual (C2R) | Office 365 ProPlus Annual (C2R) |
|
||||
|---|---|---|---|---|---|---|
|
||||
| Read aloud with simultaneous highlighting | <ul><li>OneNote 2016 (add-in), OneNote Online, OneNote for Windows 10, OneNote for iPad, OneNote Mac</li><li>Word 2016, Word Online, Word Mac, Word for iOS</li><li>Outlook 2016, Outlook Web Access</li><li>Office Lens on iOS, Android</li></ul> | | <p style="text-align: center;">X</p> <p style="text-align: center;">(N/A for Word for iOS, Word Online, Outlook Web Access, or Office Lens)</p> | <p style="text-align: center;">X</p> | <p style="text-align: center;">X</p> <p style="text-align: center;">(N/A for Outlook PC)</p> | <p style="text-align: center;">X</p> <p style="text-align: center;">(N/A for any OneNote apps or Outlook PC)</p> |
|
||||
| Adjustable text spacing and font size | <ul><li>OneNote 2016 (add-in), OneNote Online, OneNote for Windows 10, OneNote for iPad, OneNote Mac</li><li>Word 2016, Word Online, Word Mac, Word for iPad</li><li>Outlook Web Access</li><li>Office Lens on iOS, Android</li></ul> | | <p style="text-align: center;">X</p> <p style="text-align: center;">(N/A for Word for iOS, Word Online, Outlook Web Access, or Office Lens)</p> |<p style="text-align: center;">X</p> | <p style="text-align: center;">X</p> | <p style="text-align: center;">X</p> <p style="text-align: center;">(N/A for any OneNote apps)</p> |
|
||||
| Read aloud with simultaneous highlighting | <ul><li>OneNote 2016 (add-in), OneNote Online, OneNote for Windows 10, OneNote for iPad, OneNote Mac</li><li>Word 2016, Word Online, Word Mac, Word for iOS</li><li>Outlook 2016, Outlook Web Access</li><li>Office Lens on iOS, Android</li></ul> | <p style="text-align: center;">X</p> <p style="text-align: center;"><p style="text-align: center;">(N/A for Word for iOS, Word Online, Outlook Web Access, or Office Lens)</p> | <p style="text-align: center;">X</p> <p style="text-align: center;">(N/A for Word for iOS, Word Online, Outlook Web Access, or Office Lens)</p> | <p style="text-align: center;">X</p> | <p style="text-align: center;">X</p> <p style="text-align: center;">(N/A for Outlook PC)</p> | <p style="text-align: center;">X</p> <p style="text-align: center;">(N/A for any OneNote apps or Outlook PC)</p> |
|
||||
| Adjustable text spacing and font size | <ul><li>OneNote 2016 (add-in), OneNote Online, OneNote for Windows 10, OneNote for iPad, OneNote Mac</li><li>Word 2016, Word Online, Word Mac, Word for iPad</li><li>Outlook Web Access</li><li>Office Lens on iOS, Android</li></ul> | <p style="text-align: center;">X</p> <p style="text-align: center;"><p style="text-align: center;">(N/A for Word for iOS, Word Online, Outlook Web Access, or Office Lens)</p> | <p style="text-align: center;">X</p> <p style="text-align: center;">(N/A for Word for iOS, Word Online, Outlook Web Access, or Office Lens)</p> |<p style="text-align: center;">X</p> | <p style="text-align: center;">X</p> | <p style="text-align: center;">X</p> <p style="text-align: center;">(N/A for any OneNote apps)</p> |
|
||||
| Syllabification | <ul><li>OneNote 2016 (add-in), OneNote Online, OneNote for Windows 10, OneNote for iPad, OneNote Mac</li><li>Word Online</li><li>Outlook Web Access</li></ul> | | <p style="text-align: center;">X</p> <p style="text-align: center;">(N/A for Word for iOS, Word Online, Outlook Web Access)</p> | <p style="text-align: center;">X</p> <p style="text-align: center;">(N/A for Word iOS)</p> | <p style="text-align: center;">X</p> <p style="text-align: center;">(N/A for Word iOS)</p> | <p style="text-align: center;">X</p> <p style="text-align: center;">(N/A for any OneNote apps or Word iOS)</p> |
|
||||
| Parts of speech identification | <ul><li>OneNote 2016 (add-in), OneNote Online, OneNote for Windows 10, OneNote for iPad, OneNote Mac</li><li>Word 2016, Word Online, Word Mac, Word for iOS</li><li>Outlook 2016, Outlook Web Access</li><li>Office Lens on iOS, Android</li></ul> | | <p style="text-align: center;">X</p> <p style="text-align: center;">(N/A for Word Online, Outlook Web Access)</p> | <p style="text-align: center;">X</p> <p style="text-align: center;">(N/A for any OneNote apps)</p> | <p style="text-align: center;">X</p> <p style="text-align: center;">(N/A for any OneNote apps)</p> | <p style="text-align: center;">X</p> <p style="text-align: center;">(N/A for any OneNote apps)</p> |
|
||||
|
||||
| Parts of speech identification | <ul><li>OneNote 2016 (add-in), OneNote Online, OneNote for Windows 10, OneNote for iPad, OneNote Mac</li><li>Word 2016, Word Online, Word Mac, Word for iOS</li><li>Outlook 2016, Outlook Web Access</li><li>Office Lens on iOS, Android</li></ul> | <p style="text-align: center;">X</p> <p style="text-align: center;">(N/A for Word Online, Outlook Web Access)</p> | <p style="text-align: center;">X</p> <p style="text-align: center;">(N/A for Word Online, Outlook Web Access)</p> | <p style="text-align: center;">X</p> <p style="text-align: center;">(N/A for any OneNote apps)</p> | <p style="text-align: center;">X</p> <p style="text-align: center;">(N/A for any OneNote apps)</p> | <p style="text-align: center;">X</p> <p style="text-align: center;">(N/A for any OneNote apps)</p> |
|
||||
| Line focus mode | <ul><li>Word 2016, Word Online, Word Mac, Word for iOS</li><li>Outlook 2016, Outlook Web Access</li><li>Office Lens on iOS, Android</li></ul> | | <p style="text-align: center;">X</p> <p style="text-align: center;">(N/A for Word Online, Outlook Web Access)</p> | <p style="text-align: center;">X</p> <p style="text-align: center;">(N/A for any OneNote apps)</p> | <p style="text-align: center;">X</p> <p style="text-align: center;">(N/A for any OneNote apps)</p> | <p style="text-align: center;">X</p> <p style="text-align: center;">(N/A for any OneNote apps)</p> |
|
||||
| Picture Dictionary | <ul><li>Word 2016, Word Online, Word Mac, Word for iOS</li><li>Outlook 2016, Outlook Web Access</li><li>Office Lens on iOS, Android</li></ul> | | <p style="text-align: center;">X</p> <p style="text-align: center;">(N/A for Word Online, Outlook Web Access)</p> | <p style="text-align: center;">X</p> <p style="text-align: center;">(N/A for any OneNote apps)</p> | <p style="text-align: center;">X</p> <p style="text-align: center;">(N/A for any OneNote apps)</p> | <p style="text-align: center;">X</p> <p style="text-align: center;">(N/A for any OneNote apps)</p> |
|
||||
</br>
|
||||
@ -40,18 +41,19 @@ You will also learn how to deploy apps using Microsoft Intune, turn on or off Ea
|
||||
| Spelling suggestions for phonetic misspellings | <ul><li>Word 2016, Word Online, Word for Mac</li><li>Outlook 2016</li></ul> | | <p style="text-align: center;">X</p> | <p style="text-align: center;">X</p> | <p style="text-align: center;">X</p> | |
|
||||
| Synonyms alongside spelling suggestions that can be read aloud | <ul><li>Word 2016</li><li>Outlook 2016</li></ul> | | <p style="text-align: center;">X</p> | <p style="text-align: center;">X</p> | <p style="text-align: center;">X</p> | |
|
||||
| Grammar checks | <ul><li>Word 2016, Word Online, Word for Mac</li><li>Outlook 2016</li></ul> | | <p style="text-align: center;">X</p> | <p style="text-align: center;">X</p> | | |
|
||||
| Customizable writing critiques | <ul><li>Word 2016, Word for Mac</li><li>Outlook 2016</li></ul> | | <p style="text-align: center;">X</p> | <p style="text-align: center;">X</p> | | |
|
||||
| Tell me what you want to do | <ul><li>Office 2016</li><li>Office Online</li><li>Office on iOS, Android, Windows 10</li></ul> | | <p style="text-align: center;">X</p> | <p style="text-align: center;">X</p> | <p style="text-align: center;">X</p> | |
|
||||
| Customizable writing critiques | <ul><li>Word 2016, Word for Mac</li><li>Outlook 2016</li></ul> | <p style="text-align: center;">X</p> | <p style="text-align: center;">X</p> | <p style="text-align: center;">X</p> | | |
|
||||
| Tell me what you want to do | <ul><li>Office 2016</li><li>Office Online</li><li>Office on iOS, Android, Windows 10</li></ul> | <p style="text-align: center;">X</p> | <p style="text-align: center;">X</p> | <p style="text-align: center;">X</p> | <p style="text-align: center;">X</p> | |
|
||||
| Editor | <ul><li>Word 2016</li></ul> | | <p style="text-align: center;">X</p> | <p style="text-align: center;">X</p> | | |
|
||||
</br>
|
||||
|
||||
| Creating accessible content features | Available in which apps|Office 2016 MSI|Office 2019| Office 365 ProPlus Monthly (C2R) | Office 365 ProPlus Semi Annual (C2R) | Office 365 ProPlus Annual (C2R) |
|
||||
|---|---|---|---|---|---|---|
|
||||
| Accessibility Checker | <ul><li>All Office 365 authoring applications on PC, Mac, Web</li></ul> | | <p style="text-align: center;">X</p> | | | |
|
||||
| Accessible Templates | <ul><li>Word for PCs, Mac</li><li>Excel for PCs, Mac</li><li>PowerPoint for PCs, Mac</li><li>Sway on iOS, Web, Windows 10</li></ul> | | <p style="text-align: center;">X</p> | | | |
|
||||
| Ability to add alt-text for images | <ul><li>Word for PCs (includes automatic suggestions for image descriptions)</li><li>SharePoint Online (includes automatic suggestions for image descriptions)</li><li>PowerPoint for PCs (includes automatic suggestions for image descriptions)</li><li>OneNote (includes automatic extraction of text in images)</li><li>All Office 365 authoring applications (include ability to add alt-text manually)</li></ul> | | <p style="text-align: center;">X</p> | | | |
|
||||
|
||||
| Accessibility Checker | <ul><li>All Office 365 authoring applications on PC, Mac, Web</li></ul> | | <p style="text-align: center;">X</p> | <p style="text-align: center;">X</p> | | |
|
||||
| Accessible Templates | <ul><li>Word for PCs, Mac</li><li>Excel for PCs, Mac</li><li>PowerPoint for PCs, Mac</li><li>Sway on iOS, Web, Windows 10</li></ul> | | <p style="text-align: center;">X</p> | <p style="text-align: center;">X</p> | | |
|
||||
| Ability to add alt-text for images | <ul><li>Word for PCs (includes automatic suggestions for image descriptions)</li><li>SharePoint Online (includes automatic suggestions for image descriptions)</li><li>PowerPoint for PCs (includes automatic suggestions for image descriptions)</li><li>OneNote (includes automatic extraction of text in images)</li><li>All Office 365 authoring applications (include ability to add alt-text manually)</li></ul> | <p style="text-align: center;">X</p> | <p style="text-align: center;">X</p> | <p style="text-align: center;">X</p> | | |
|
||||
| Ability to add captions to videos | <ul><li>PowerPoint for PCs</li><li>Sway on iOS, Web, Windows 10</li><li>Microsoft Stream (includes ability to have captions auto-generated for videos in English and Spanish)</li></ul> | | <p style="text-align: center;">X</p> | | | |
|
||||
| Export as tagged PDF | <ul><li>Word for PCs, Mac</li><li>Sway on iOS, Web, Windows 10</li></ul> | | | | | |
|
||||
| Export as tagged PDF | <ul><li>Word for PCs, Mac</li><li>Sway on iOS, Web, Windows 10</li></ul> | | <p style="text-align: center;">X</p> | <p style="text-align: center;">X</p> | | |
|
||||
| Ability to request accessible content | <ul><li>Outlook Web Access</li></ul> | | | | | |
|
||||
</br>
|
||||
|
||||
|
@ -395,23 +395,6 @@ Add an app to the nonremovable app policy list
|
||||
</SyncML>
|
||||
```
|
||||
|
||||
Delete an app from the nonremovable app policy list
|
||||
```
|
||||
<SyncML xmlns="SYNCML:SYNCML1.2">
|
||||
<SyncBody>
|
||||
<Delete>
|
||||
<CmdID>1</CmdID>
|
||||
<Item>
|
||||
<Target>
|
||||
<LocURI>./Device/Vendor/MSFT/EnterpriseModernAppManagement/AppManagement/AppStore/PackageFamilyName/NonRemovable</LocURI>
|
||||
</Target>
|
||||
</Item>
|
||||
</Delete>
|
||||
<Final/>
|
||||
</SyncBody>
|
||||
</SyncML>
|
||||
```
|
||||
|
||||
Get the status for a particular app
|
||||
```
|
||||
<SyncML xmlns="SYNCML:SYNCML1.2">
|
||||
|
Binary file not shown.
Before Width: | Height: | Size: 8.6 KiB After Width: | Height: | Size: 15 KiB |
@ -10,7 +10,7 @@ ms.topic: article
|
||||
ms.prod: w10
|
||||
ms.technology: windows
|
||||
author: MariciaAlforque
|
||||
ms.date: 07/27/2018
|
||||
ms.date: 08/14/2018
|
||||
---
|
||||
|
||||
# What's new in MDM enrollment and management
|
||||
@ -1394,7 +1394,6 @@ For details about Microsoft mobile device management protocols for Windows 10 s
|
||||
<li>Browser/ConfigureKioskResetAfterIdleTimeout</li>
|
||||
<li>Browser/ConfigureOpenMicrosoftEdgeWith</li>
|
||||
<li>Browser/ConfigureTelemetryForMicrosoft365Analytics</li>
|
||||
<li>Browser/ForceEnabledExtensions</li>
|
||||
<li>Browser/PreventCertErrorOverrides</li>
|
||||
<li>Browser/SetHomeButtonURL</li>
|
||||
<li>Browser/SetNewTabPageURL</li>
|
||||
@ -1412,7 +1411,7 @@ For details about Microsoft mobile device management protocols for Windows 10 s
|
||||
<li>DeviceInstallation/PreventInstallationOfDevicesNotDescribedByOtherPolicySettings</li>
|
||||
<li>DmaGuard/DeviceEnumerationPolicy</li>
|
||||
<li>Experience/AllowClipboardHistory</li>
|
||||
<li>Experience/DoNotSyncBrowserSetting</li>
|
||||
<li>Experience/DoNotSyncBrowserSettings</li>
|
||||
<li>Experience/PreventUsersFromTurningOnBrowserSyncing</li>
|
||||
<li>Privacy/AllowCrossDeviceClipboard</li>
|
||||
<li>Privacy/UploadUserActivities</li>
|
||||
@ -1469,6 +1468,10 @@ For details about Microsoft mobile device management protocols for Windows 10 s
|
||||
<td style="vertical-align:top">[WindowsDefenderApplicationGuard CSP](windowsdefenderapplicationguard-csp.md)</td>
|
||||
<td style="vertical-align:top"><p>Added new settings in Windows 10, next major version.</p>
|
||||
</td></tr>
|
||||
<tr>
|
||||
<td style="vertical-align:top">[TenantLockdown CSP](\tenantlockdown--csp.md)</td>
|
||||
<td style="vertical-align:top"><p>Added new CSP in Windows 10, next major version.</p>
|
||||
</td></tr>
|
||||
</tbody>
|
||||
</table>
|
||||
|
||||
@ -1754,6 +1757,10 @@ The DM agent for [push-button reset](https://msdn.microsoft.com/windows/hardware
|
||||
</thead>
|
||||
<tbody>
|
||||
<tr>
|
||||
<td style="vertical-align:top">[TenantLockdown CSP](\tenantlockdown--csp.md)</td>
|
||||
<td style="vertical-align:top"><p>Added new CSP in Windows 10, next major version.</p>
|
||||
</td></tr>
|
||||
<tr>
|
||||
<td style="vertical-align:top">[WindowsDefenderApplicationGuard CSP](windowsdefenderapplicationguard-csp.md)</td>
|
||||
<td style="vertical-align:top"><p>Added new settings in Windows 10, next major version.</p>
|
||||
</td></tr>
|
||||
@ -1778,12 +1785,11 @@ The DM agent for [push-button reset](https://msdn.microsoft.com/windows/hardware
|
||||
<li>Browser/ConfigureKioskResetAfterIdleTimeout</li>
|
||||
<li>Browser/ConfigureOpenMicrosoftEdgeWith</li>
|
||||
<li>Browser/ConfigureTelemetryForMicrosoft365Analytics</li>
|
||||
<li>Browser/ForceEnabledExtensions</li>
|
||||
<li>Browser/PreventCertErrorOverrides</li>
|
||||
<li>Browser/SetHomeButtonURL</li>
|
||||
<li>Browser/SetNewTabPageURL</li>
|
||||
<li>Browser/UnlockHomeButton</li>
|
||||
<li>Experience/DoNotSyncBrowserSetting</li>
|
||||
<li>Experience/DoNotSyncBrowserSettings</li>
|
||||
<li>Experience/PreventUsersFromTurningOnBrowserSyncing</li>
|
||||
<li>Privacy/AllowCrossDeviceClipboard</li>
|
||||
<li>Privacy/UploadUserActivities</li>
|
||||
|
@ -7,7 +7,7 @@ ms.topic: article
|
||||
ms.prod: w10
|
||||
ms.technology: windows
|
||||
author: MariciaAlforque
|
||||
ms.date: 08/08/2018
|
||||
ms.date: 08/14/2018
|
||||
---
|
||||
|
||||
# Policy CSP
|
||||
@ -561,9 +561,6 @@ The following diagram shows the Policy configuration service provider in tree fo
|
||||
<dd>
|
||||
<a href="./policy-csp-browser.md#browser-firstrunurl" id="browser-firstrunurl">Browser/FirstRunURL</a>
|
||||
</dd>
|
||||
<dd>
|
||||
<a href="./policy-csp-browser.md#browser-forceenabledextensions" id="browser-forceenabledextensions">Browser/ForceEnabledExtensions</a>
|
||||
</dd>
|
||||
<dd>
|
||||
<a href="./policy-csp-browser.md#browser-homepages" id="browser-homepages">Browser/HomePages</a>
|
||||
</dd>
|
||||
@ -2470,6 +2467,9 @@ The following diagram shows the Policy configuration service provider in tree fo
|
||||
<dd>
|
||||
<a href="./policy-csp-privacy.md#privacy-disableadvertisingid" id="privacy-disableadvertisingid">Privacy/DisableAdvertisingId</a>
|
||||
</dd>
|
||||
<dd>
|
||||
<a href="./policy-csp-privacy.md#privacy-disableprivacyexperience" id="privacy-disableprivacyexperience">Privacy/DisablePrivacyExperience</a>
|
||||
</dd>
|
||||
<dd>
|
||||
<a href="./policy-csp-privacy.md#privacy-enableactivityfeed" id="privacy-enableactivityfeed">Privacy/EnableActivityFeed</a>
|
||||
</dd>
|
||||
@ -3034,6 +3034,9 @@ The following diagram shows the Policy configuration service provider in tree fo
|
||||
<dd>
|
||||
<a href="./policy-csp-start.md#start-allowpinnedfoldervideos" id="start-allowpinnedfoldervideos">Start/AllowPinnedFolderVideos</a>
|
||||
</dd>
|
||||
<dd>
|
||||
<a href="./policy-csp-start.md#start-disablecontextmenus" id="start-disablecontextmenus">Start/DisableContextMenus</a>
|
||||
</dd>
|
||||
<dd>
|
||||
<a href="./policy-csp-start.md#start-forcestartsize" id="start-forcestartsize">Start/ForceStartSize</a>
|
||||
</dd>
|
||||
@ -4203,7 +4206,6 @@ The following diagram shows the Policy configuration service provider in tree fo
|
||||
- [Browser/DisableLockdownOfStartPages](./policy-csp-browser.md#browser-disablelockdownofstartpages)
|
||||
- [Browser/EnableExtendedBooksTelemetry](./policy-csp-browser.md#browser-enableextendedbookstelemetry)
|
||||
- [Browser/EnterpriseModeSiteList](./policy-csp-browser.md#browser-enterprisemodesitelist)
|
||||
- [Browser/ForceEnabledExtensions](./policy-csp-browser.md#browser-forceenabledextensions)
|
||||
- [Browser/HomePages](./policy-csp-browser.md#browser-homepages)
|
||||
- [Browser/LockdownFavorites](./policy-csp-browser.md#browser-lockdownfavorites)
|
||||
- [Browser/PreventAccessToAboutFlagsInMicrosoftEdge](./policy-csp-browser.md#browser-preventaccesstoaboutflagsinmicrosoftedge)
|
||||
@ -4700,6 +4702,7 @@ The following diagram shows the Policy configuration service provider in tree fo
|
||||
- [Privacy/AllowCrossDeviceClipboard](./policy-csp-privacy.md#privacy-allowcrossdeviceclipboard)
|
||||
- [Privacy/AllowInputPersonalization](./policy-csp-privacy.md#privacy-allowinputpersonalization)
|
||||
- [Privacy/DisableAdvertisingId](./policy-csp-privacy.md#privacy-disableadvertisingid)
|
||||
- [Privacy/DisablePrivacyExperience](./policy-csp-privacy.md#privacy-disableprivacyexperience)
|
||||
- [Privacy/EnableActivityFeed](./policy-csp-privacy.md#privacy-enableactivityfeed)
|
||||
- [Privacy/LetAppsAccessAccountInfo](./policy-csp-privacy.md#privacy-letappsaccessaccountinfo)
|
||||
- [Privacy/LetAppsAccessAccountInfo_ForceAllowTheseApps](./policy-csp-privacy.md#privacy-letappsaccessaccountinfo-forceallowtheseapps)
|
||||
@ -4828,6 +4831,7 @@ The following diagram shows the Policy configuration service provider in tree fo
|
||||
- [SmartScreen/EnableSmartScreenInShell](./policy-csp-smartscreen.md#smartscreen-enablesmartscreeninshell)
|
||||
- [SmartScreen/PreventOverrideForFilesInShell](./policy-csp-smartscreen.md#smartscreen-preventoverrideforfilesinshell)
|
||||
- [Speech/AllowSpeechModelUpdate](./policy-csp-speech.md#speech-allowspeechmodelupdate)
|
||||
- [Start/DisableContextMenus](./policy-csp-start.md#start-disablecontextmenus)
|
||||
- [Start/HidePeopleBar](./policy-csp-start.md#start-hidepeoplebar)
|
||||
- [Start/HideRecentlyAddedApps](./policy-csp-start.md#start-hiderecentlyaddedapps)
|
||||
- [Start/StartLayout](./policy-csp-start.md#start-startlayout)
|
||||
|
@ -135,9 +135,6 @@ ms.date: 08/08/2018
|
||||
<dd>
|
||||
<a href="#browser-firstrunurl">Browser/FirstRunURL</a>
|
||||
</dd>
|
||||
<dd>
|
||||
<a href="#browser-forceenabledextensions">Browser/ForceEnabledExtensions</a>
|
||||
</dd>
|
||||
<dd>
|
||||
<a href="#browser-homepages">Browser/HomePages</a>
|
||||
</dd>
|
||||
@ -2717,66 +2714,6 @@ Data type = String
|
||||
|
||||
<hr/>
|
||||
|
||||
<!--Policy-->
|
||||
<a href="" id="browser-forceenabledextensions"></a>**Browser/ForceEnabledExtensions**
|
||||
|
||||
<!--SupportedSKUs-->
|
||||
<table>
|
||||
<tr>
|
||||
<th>Home</th>
|
||||
<th>Pro</th>
|
||||
<th>Business</th>
|
||||
<th>Enterprise</th>
|
||||
<th>Education</th>
|
||||
<th>Mobile</th>
|
||||
<th>Mobile Enterprise</th>
|
||||
</tr>
|
||||
<tr>
|
||||
<td><img src="images/crossmark.png" alt="cross mark" /></td>
|
||||
<td><img src="images/checkmark.png" alt="check mark" /><sup>5</sup></td>
|
||||
<td><img src="images/checkmark.png" alt="check mark" /><sup>5</sup></td>
|
||||
<td><img src="images/checkmark.png" alt="check mark" /><sup>5</sup></td>
|
||||
<td><img src="images/checkmark.png" alt="check mark" /><sup>5</sup></td>
|
||||
<td></td>
|
||||
<td></td>
|
||||
</tr>
|
||||
</table>
|
||||
|
||||
<!--/SupportedSKUs-->
|
||||
<!--Scope-->
|
||||
[Scope](./policy-configuration-service-provider.md#policy-scope):
|
||||
|
||||
> [!div class = "checklist"]
|
||||
> * User
|
||||
> * Device
|
||||
|
||||
<hr/>
|
||||
|
||||
<!--/Scope-->
|
||||
<!--Description-->
|
||||
This setting lets you decide which extensions should be always enabled.
|
||||
|
||||
<!--/Description-->
|
||||
<!--ADMXMapped-->
|
||||
ADMX Info:
|
||||
- GP name: *ForceEnabledExtensions*
|
||||
- GP element: *ForceEnabledExtensions_List*
|
||||
- GP ADMX file name: *MicrosoftEdge.admx*
|
||||
|
||||
<!--/ADMXMapped-->
|
||||
<!--SupportedValues-->
|
||||
|
||||
<!--/SupportedValues-->
|
||||
<!--Example-->
|
||||
|
||||
<!--/Example-->
|
||||
<!--Validation-->
|
||||
|
||||
<!--/Validation-->
|
||||
<!--/Policy-->
|
||||
|
||||
<hr/>
|
||||
|
||||
<!--Policy-->
|
||||
<a href="" id="browser-homepages"></a>**Browser/HomePages**
|
||||
|
||||
|
@ -6,7 +6,7 @@ ms.topic: article
|
||||
ms.prod: w10
|
||||
ms.technology: windows
|
||||
author: MariciaAlforque
|
||||
ms.date: 08/08/2018
|
||||
ms.date: 08/14/2018
|
||||
---
|
||||
|
||||
# Policy CSP - Privacy
|
||||
@ -33,6 +33,9 @@ ms.date: 08/08/2018
|
||||
<dd>
|
||||
<a href="#privacy-disableadvertisingid">Privacy/DisableAdvertisingId</a>
|
||||
</dd>
|
||||
<dd>
|
||||
<a href="#privacy-disableprivacyexperience">Privacy/DisablePrivacyExperience</a>
|
||||
</dd>
|
||||
<dd>
|
||||
<a href="#privacy-enableactivityfeed">Privacy/EnableActivityFeed</a>
|
||||
</dd>
|
||||
@ -387,12 +390,6 @@ The following list shows the supported values:
|
||||
1 (default) – Allowed.
|
||||
|
||||
<!--/SupportedValues-->
|
||||
<!--Example-->
|
||||
|
||||
<!--/Example-->
|
||||
<!--Validation-->
|
||||
|
||||
<!--/Validation-->
|
||||
<!--/Policy-->
|
||||
|
||||
<hr/>
|
||||
@ -518,6 +515,73 @@ The following list shows the supported values:
|
||||
|
||||
<hr/>
|
||||
|
||||
<!--Policy-->
|
||||
<a href="" id="privacy-disableprivacyexperience"></a>**Privacy/DisablePrivacyExperience**
|
||||
|
||||
<!--SupportedSKUs-->
|
||||
<table>
|
||||
<tr>
|
||||
<th>Home</th>
|
||||
<th>Pro</th>
|
||||
<th>Business</th>
|
||||
<th>Enterprise</th>
|
||||
<th>Education</th>
|
||||
<th>Mobile</th>
|
||||
<th>Mobile Enterprise</th>
|
||||
</tr>
|
||||
<tr>
|
||||
<td><img src="images/checkmark.png" alt="check mark" /><sup>5</sup></td>
|
||||
<td><img src="images/checkmark.png" alt="check mark" /><sup>5</sup></td>
|
||||
<td><img src="images/checkmark.png" alt="check mark" /><sup>5</sup></td>
|
||||
<td><img src="images/checkmark.png" alt="check mark" /><sup>5</sup></td>
|
||||
<td><img src="images/checkmark.png" alt="check mark" /><sup>5</sup></td>
|
||||
<td></td>
|
||||
<td></td>
|
||||
</tr>
|
||||
</table>
|
||||
|
||||
<!--/SupportedSKUs-->
|
||||
<!--Scope-->
|
||||
[Scope](./policy-configuration-service-provider.md#policy-scope):
|
||||
|
||||
> [!div class = "checklist"]
|
||||
> * User
|
||||
> * Device
|
||||
|
||||
<hr/>
|
||||
|
||||
<!--/Scope-->
|
||||
<!--Description-->
|
||||
Enabling this policy prevents the privacy experience from launching during user logon for new and upgraded users.
|
||||
|
||||
Value type is integer.
|
||||
- 0 (default) - Allow the "choose privacy settings for your device" screen for a new user during their first logon or when an existing user logs in for the first time after an upgrade.
|
||||
- 1 - Do not allow the "choose privacy settings for your device" screen when a new user logs in or an existing user logs in for the first time after an upgrade.
|
||||
|
||||
In some enterprise managed environments, the privacy settings may be set by policies. In these cases, you can use this policy if you do not want to show a screen that would prompt your users to change these privacy settings.
|
||||
|
||||
<!--/Description-->
|
||||
<!--ADMXMapped-->
|
||||
ADMX Info:
|
||||
- GP English name: *Don't launch privacy settings experience on user logon*
|
||||
- GP name: *DisablePrivacyExperience*
|
||||
- GP path: *Windows Components/OOBE*
|
||||
- GP ADMX file name: *OOBE.admx*
|
||||
|
||||
<!--/ADMXMapped-->
|
||||
<!--SupportedValues-->
|
||||
|
||||
<!--/SupportedValues-->
|
||||
<!--Example-->
|
||||
|
||||
<!--/Example-->
|
||||
<!--Validation-->
|
||||
|
||||
<!--/Validation-->
|
||||
<!--/Policy-->
|
||||
|
||||
<hr/>
|
||||
|
||||
<!--Policy-->
|
||||
<a href="" id="privacy-enableactivityfeed"></a>**Privacy/EnableActivityFeed**
|
||||
|
||||
@ -1929,15 +1993,6 @@ ADMX Info:
|
||||
This policy setting specifies whether Windows apps can access the eye tracker.
|
||||
|
||||
<!--/Description-->
|
||||
<!--SupportedValues-->
|
||||
|
||||
<!--/SupportedValues-->
|
||||
<!--Example-->
|
||||
|
||||
<!--/Example-->
|
||||
<!--Validation-->
|
||||
|
||||
<!--/Validation-->
|
||||
<!--/Policy-->
|
||||
|
||||
<hr/>
|
||||
@ -1981,15 +2036,6 @@ This policy setting specifies whether Windows apps can access the eye tracker.
|
||||
List of semi-colon delimited Package Family Names of Windows Store Apps. Listed apps are allowed access to the eye tracker. This setting overrides the default LetAppsAccessGazeInput policy setting for the specified apps.
|
||||
|
||||
<!--/Description-->
|
||||
<!--SupportedValues-->
|
||||
|
||||
<!--/SupportedValues-->
|
||||
<!--Example-->
|
||||
|
||||
<!--/Example-->
|
||||
<!--Validation-->
|
||||
|
||||
<!--/Validation-->
|
||||
<!--/Policy-->
|
||||
|
||||
<hr/>
|
||||
@ -2033,15 +2079,6 @@ List of semi-colon delimited Package Family Names of Windows Store Apps. Listed
|
||||
List of semi-colon delimited Package Family Names of Windows Store Apps. Listed apps are denied access to the eye tracker. This setting overrides the default LetAppsAccessGazeInput policy setting for the specified apps.
|
||||
|
||||
<!--/Description-->
|
||||
<!--SupportedValues-->
|
||||
|
||||
<!--/SupportedValues-->
|
||||
<!--Example-->
|
||||
|
||||
<!--/Example-->
|
||||
<!--Validation-->
|
||||
|
||||
<!--/Validation-->
|
||||
<!--/Policy-->
|
||||
|
||||
<hr/>
|
||||
@ -2085,15 +2122,6 @@ List of semi-colon delimited Package Family Names of Windows Store Apps. Listed
|
||||
List of semi-colon delimited Package Family Names of Windows Store Apps. The user is able to control the eye tracker privacy setting for the listed apps. This setting overrides the default LetAppsAccessGazeInput policy setting for the specified apps.
|
||||
|
||||
<!--/Description-->
|
||||
<!--SupportedValues-->
|
||||
|
||||
<!--/SupportedValues-->
|
||||
<!--Example-->
|
||||
|
||||
<!--/Example-->
|
||||
<!--Validation-->
|
||||
|
||||
<!--/Validation-->
|
||||
<!--/Policy-->
|
||||
|
||||
<hr/>
|
||||
@ -4822,15 +4850,6 @@ ADMX Info:
|
||||
- GP ADMX file name: *OSPolicy.admx*
|
||||
|
||||
<!--/ADMXMapped-->
|
||||
<!--SupportedValues-->
|
||||
|
||||
<!--/SupportedValues-->
|
||||
<!--Example-->
|
||||
|
||||
<!--/Example-->
|
||||
<!--Validation-->
|
||||
|
||||
<!--/Validation-->
|
||||
<!--/Policy-->
|
||||
<hr/>
|
||||
|
||||
@ -4844,4 +4863,3 @@ Footnote:
|
||||
|
||||
<!--/Policies-->
|
||||
|
||||
|
||||
|
@ -6,11 +6,13 @@ ms.topic: article
|
||||
ms.prod: w10
|
||||
ms.technology: windows
|
||||
author: MariciaAlforque
|
||||
ms.date: 08/09/2018
|
||||
ms.date: 08/14/2018
|
||||
---
|
||||
|
||||
# Policy CSP - Start
|
||||
|
||||
> [!WARNING]
|
||||
> Some information relates to prereleased product which may be substantially modified before it's commercially released. Microsoft makes no warranties, express or implied, with respect to the information provided here.
|
||||
|
||||
|
||||
<hr/>
|
||||
@ -49,6 +51,9 @@ ms.date: 08/09/2018
|
||||
<dd>
|
||||
<a href="#start-allowpinnedfoldervideos">Start/AllowPinnedFolderVideos</a>
|
||||
</dd>
|
||||
<dd>
|
||||
<a href="#start-disablecontextmenus">Start/DisableContextMenus</a>
|
||||
</dd>
|
||||
<dd>
|
||||
<a href="#start-forcestartsize">Start/ForceStartSize</a>
|
||||
</dd>
|
||||
@ -621,6 +626,67 @@ The following list shows the supported values:
|
||||
|
||||
<hr/>
|
||||
|
||||
<!--Policy-->
|
||||
<a href="" id="start-disablecontextmenus"></a>**Start/DisableContextMenus**
|
||||
|
||||
<!--SupportedSKUs-->
|
||||
<table>
|
||||
<tr>
|
||||
<th>Home</th>
|
||||
<th>Pro</th>
|
||||
<th>Business</th>
|
||||
<th>Enterprise</th>
|
||||
<th>Education</th>
|
||||
<th>Mobile</th>
|
||||
<th>Mobile Enterprise</th>
|
||||
</tr>
|
||||
<tr>
|
||||
<td><img src="images/crossmark.png" alt="cross mark" /></td>
|
||||
<td><img src="images/checkmark.png" alt="check mark" /><sup>4</sup></td>
|
||||
<td><img src="images/checkmark.png" alt="check mark" /><sup>4</sup></td>
|
||||
<td><img src="images/checkmark.png" alt="check mark" /><sup>4</sup></td>
|
||||
<td><img src="images/checkmark.png" alt="check mark" /><sup>4</sup></td>
|
||||
<td></td>
|
||||
<td></td>
|
||||
</tr>
|
||||
</table>
|
||||
|
||||
<!--/SupportedSKUs-->
|
||||
<!--Scope-->
|
||||
[Scope](./policy-configuration-service-provider.md#policy-scope):
|
||||
|
||||
> [!div class = "checklist"]
|
||||
> * User
|
||||
> * Device
|
||||
|
||||
<hr/>
|
||||
|
||||
<!--/Scope-->
|
||||
<!--Description-->
|
||||
Enabling this policy prevents context menus from being invoked in the Start Menu.
|
||||
|
||||
<!--/Description-->
|
||||
<!--ADMXMapped-->
|
||||
ADMX Info:
|
||||
- GP English name: *Disable context menus in the Start Menu*
|
||||
- GP name: *DisableContextMenusInStart*
|
||||
- GP path: *Start Menu and Taskbar*
|
||||
- GP ADMX file name: *StartMenu.admx*
|
||||
|
||||
<!--/ADMXMapped-->
|
||||
<!--SupportedValues-->
|
||||
|
||||
<!--/SupportedValues-->
|
||||
<!--Example-->
|
||||
|
||||
<!--/Example-->
|
||||
<!--Validation-->
|
||||
|
||||
<!--/Validation-->
|
||||
<!--/Policy-->
|
||||
|
||||
<hr/>
|
||||
|
||||
<!--Policy-->
|
||||
<a href="" id="start-forcestartsize"></a>**Start/ForceStartSize**
|
||||
|
||||
@ -1780,6 +1846,7 @@ Footnote:
|
||||
- 2 - Added in Windows 10, version 1703.
|
||||
- 3 - Added in Windows 10, version 1709.
|
||||
- 4 - Added in Windows 10, version 1803.
|
||||
- 5 - Added in the next major release of Windows 10.
|
||||
|
||||
<!--/Policies-->
|
||||
|
||||
|
@ -7,7 +7,7 @@ ms.topic: article
|
||||
ms.prod: w10
|
||||
ms.technology: windows
|
||||
author: MariciaAlforque
|
||||
ms.date: 03/23/2018
|
||||
ms.date: 08/13/2018
|
||||
---
|
||||
|
||||
# RemoteWipe CSP
|
||||
@ -44,7 +44,28 @@ Supported operation is Exec.
|
||||
|
||||
<a href="" id="doWipePersistUserData"></a>**doWipePersistUserData**
|
||||
Added in Windows 10, version 1709. Exec on this node will perform a remote reset on the device and persist user accounts and data. The return status code shows whether the device accepted the Exec command.
|
||||
|
||||
|
||||
<a href="" id="automaticredeployment"></a>**AutomaticRedeployment**
|
||||
Added in Windows 10, next major update. Node for the Autopilot Reset operation.
|
||||
|
||||
<a href="" id="doautomaticredeployment"></a>**AutomaticRedeployment/doAutomaticRedeployment**
|
||||
Added in Windows 10, next major update. Exec on this node triggers Autopilot Reset operation. This works like PC Reset, similar to other existing nodes in this RemoteWipe CSP, except that it keeps the device enrolled in Azure AD and MDM, keeps Wi-Fi profiles, and a few other settings like region, language, keyboard.
|
||||
|
||||
<a href="" id="lasterror"></a>**AutomaticRedeployment/LastError**
|
||||
Added in Windows 10, next major update. Error value, if any, associated with Autopilot Reset operation (typically an HRESULT).
|
||||
|
||||
<a href="" id="status"></a>**AutomaticRedeployment/Status**
|
||||
Added in Windows 10, next major update. Status value indicating current state of an Autopilot Reset operation.
|
||||
|
||||
Supported values:
|
||||
|
||||
- 0: Never run (not started). The default state.
|
||||
- 1: Complete.
|
||||
- 10: Reset has been scheduled.
|
||||
- 20: Reset is scheduled and waiting for a reboot.
|
||||
- 30: Failed during CSP Execute ("Exec" in SyncML).
|
||||
- 40: Failed: power requirements not met.
|
||||
- 50: Failed: reset internals failed during reset attempt.
|
||||
|
||||
## Related topics
|
||||
|
||||
|
@ -7,7 +7,7 @@ ms.topic: article
|
||||
ms.prod: w10
|
||||
ms.technology: windows
|
||||
author: MariciaAlforque
|
||||
ms.date: 03/23/2018
|
||||
ms.date: 08/13/2018
|
||||
---
|
||||
|
||||
# RemoteWipe DDF file
|
||||
@ -17,7 +17,7 @@ This topic shows the OMA DM device description framework (DDF) for the **RemoteW
|
||||
|
||||
Looking for the DDF XML files? See [CSP DDF files download](configuration-service-provider-reference.md#csp-ddf-files-download).
|
||||
|
||||
The XML below is the DDF for Windows 10, version 1709.
|
||||
The XML below is the DDF for Windows 10, next major version.
|
||||
|
||||
``` syntax
|
||||
<?xml version="1.0" encoding="UTF-8"?>
|
||||
@ -43,7 +43,7 @@ The XML below is the DDF for Windows 10, version 1709.
|
||||
<Permanent />
|
||||
</Scope>
|
||||
<DFType>
|
||||
<DDFName></DDFName>
|
||||
<MIME>com.microsoft/1.1/MDM/RemoteWipe</MIME>
|
||||
</DFType>
|
||||
<Description>The root node for remote wipe function.</Description>
|
||||
</DFProperties>
|
||||
@ -131,21 +131,91 @@ The XML below is the DDF for Windows 10, version 1709.
|
||||
<Description>Exec on this node will perform a remote reset on the device and persist user accounts and data. The return status code shows whether the device accepted the Exec command.</Description>
|
||||
</DFProperties>
|
||||
</Node>
|
||||
<Node>
|
||||
<NodeName>AutomaticRedeployment</NodeName>
|
||||
<DFProperties>
|
||||
<AccessType>
|
||||
<Get />
|
||||
</AccessType>
|
||||
<DFFormat>
|
||||
<node />
|
||||
</DFFormat>
|
||||
<Occurrence>
|
||||
<One />
|
||||
</Occurrence>
|
||||
<Scope>
|
||||
<Permanent />
|
||||
</Scope>
|
||||
<DFType>
|
||||
<DDFName></DDFName>
|
||||
</DFType>
|
||||
</DFProperties>
|
||||
<Node>
|
||||
<NodeName>doAutomaticRedeployment</NodeName>
|
||||
<DFProperties>
|
||||
<AccessType>
|
||||
<Get />
|
||||
<Exec />
|
||||
</AccessType>
|
||||
<DFFormat>
|
||||
<chr />
|
||||
</DFFormat>
|
||||
<Occurrence>
|
||||
<One />
|
||||
</Occurrence>
|
||||
<Scope>
|
||||
<Permanent />
|
||||
</Scope>
|
||||
<DFType>
|
||||
<MIME>text/plain</MIME>
|
||||
</DFType>
|
||||
</DFProperties>
|
||||
</Node>
|
||||
<Node>
|
||||
<NodeName>LastError</NodeName>
|
||||
<DFProperties>
|
||||
<AccessType>
|
||||
<Get />
|
||||
</AccessType>
|
||||
<DefaultValue>0</DefaultValue>
|
||||
<Description>Error value, if any, associated with Automatic Redeployment operation (typically an HRESULT).</Description>
|
||||
<DFFormat>
|
||||
<int />
|
||||
</DFFormat>
|
||||
<Occurrence>
|
||||
<One />
|
||||
</Occurrence>
|
||||
<Scope>
|
||||
<Permanent />
|
||||
</Scope>
|
||||
<DFType>
|
||||
<MIME>text/plain</MIME>
|
||||
</DFType>
|
||||
</DFProperties>
|
||||
</Node>
|
||||
<Node>
|
||||
<NodeName>Status</NodeName>
|
||||
<DFProperties>
|
||||
<AccessType>
|
||||
<Get />
|
||||
</AccessType>
|
||||
<DefaultValue>0</DefaultValue>
|
||||
<Description>Status value indicating current state of an Automatic Redeployment operation. 0: Never run (not started). The default state. 1: Complete. 10: Reset has been scheduled. 20: Reset is scheduled and waiting for a reboot. 30: Failed during CSP Execute ("Exec" in SyncML). 40: Failed: power requirements not met. 50: Failed: reset internals failed during reset attempt.</Description>
|
||||
<DFFormat>
|
||||
<int />
|
||||
</DFFormat>
|
||||
<Occurrence>
|
||||
<One />
|
||||
</Occurrence>
|
||||
<Scope>
|
||||
<Permanent />
|
||||
</Scope>
|
||||
<DFType>
|
||||
<MIME>text/plain</MIME>
|
||||
</DFType>
|
||||
</DFProperties>
|
||||
</Node>
|
||||
</Node>
|
||||
</Node>
|
||||
</MgmtTree>
|
||||
```
|
||||
|
||||
## Related topics
|
||||
|
||||
|
||||
[RemoteWipe configuration service provider](remotewipe-csp.md)
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
|
@ -7,7 +7,7 @@ ms.topic: article
|
||||
ms.prod: w10
|
||||
ms.technology: windows
|
||||
author: MariciaAlforque
|
||||
ms.date: 07/25/2018
|
||||
ms.date: 08/15/2018
|
||||
---
|
||||
|
||||
# WindowsLicensing CSP
|
||||
@ -182,6 +182,13 @@ Added in Windows 10, next major version. Returns the status of the latest Switch
|
||||
|
||||
Value type is integer. Supported operation is Get.
|
||||
|
||||
Values:
|
||||
- Request fails with error code 404 - no SwitchFromSMode request has been made.
|
||||
- 0 - The device successfully switched out of S mode
|
||||
- 1 - The device is processing the request to switch out of S mode
|
||||
- 3 - The device was already switched out of S mode
|
||||
- 4 - The device failed to switch out of S mode
|
||||
|
||||
## SyncML examples
|
||||
|
||||
|
||||
|
@ -9,7 +9,7 @@ author: jdeckerms
|
||||
ms.localizationpriority: medium
|
||||
ms.author: jdecker
|
||||
ms.topic: article
|
||||
ms.date: 08/03/2018
|
||||
ms.date: 08/15/2018
|
||||
---
|
||||
|
||||
# Guidelines for choosing an app for assigned access (kiosk mode)
|
||||
@ -47,6 +47,9 @@ In Windows 10, version 1809, Microsoft Edge includes support for kiosk mode. [Le
|
||||
|
||||
In Windows 10, version 1803 and later, you can install the **Kiosk Browser** app from Microsoft to use as your kiosk app. For digital signage scenarios, you can configure **Kiosk Browser** to navigate to a URL and show only that content -- no navigation buttons, no address bar, etc. For kiosk scenarios, you can configure additional settings, such as allowed and blocked URLs, navigation buttons, and end session buttons. For example, you could configure your kiosk to show the online catalog for your store, where customers can navigate between departments and items, but aren’t allowed to go to a competitor's website.
|
||||
|
||||
>[!NOTE]
|
||||
>Kiosk Browser supports a single tab. If a website has links that open a new tab, those links will not work with Kiosk Browser.
|
||||
|
||||
|
||||
**Kiosk Browser** must be downloaded for offline licensing using Microsoft Store For Business. You can deploy **Kiosk Browser** to devices running Windows 10, version 1803 (Pro, Business, Enterprise, and Education).
|
||||
|
||||
|
@ -85,10 +85,10 @@ sections:
|
||||
Prevent, detect, investigate, and respond to advanced threats. The following capabilities are available across multiple products that make up the Windows Defender ATP platform.
|
||||
<br> <br>
|
||||
<table border='0'><tr><td><b>Attack surface reduction</b></td><td><b>Next generation protection</b></td><td><b>Endpoint detection and response</b></td><td><b>Auto investigation and remediation</b></td><td><b>Security posture</b></td></tr>
|
||||
<tr><td>[Hardware based isolation](https://docs.microsoft.com/en-us/windows/security/hardware-protection/how-hardware-based-containers-help-protect-windows)<br><br>[Application control](https://docs.microsoft.com/windows/security/threat-protection/windows-defender-application-control/windows-defender-application-control)<br><br>[Exploit protection](https://docs.microsoft.com/windows/security/threat-protection/windows-defender-exploit-guard/windows-defender-exploit-guard)<br><br>[Network protection](https://docs.microsoft.com/windows/security/threat-protection/windows-defender-exploit-guard/network-protection-exploit-guard)<br><br>[Controlled folder access](https://docs.microsoft.com/windows/security/threat-protection/windows-defender-exploit-guard/controlled-folders-exploit-guard)<br><br>[Network firewall](https://docs.microsoft.com/en-us/windows/security/identity-protection/windows-firewall/windows-firewall-with-advanced-security)<br><br>[Attack surface reduction controls](https://docs.microsoft.com/en-us/windows/security/threat-protection/windows-defender-exploit-guard/attack-surface-reduction-exploit-guard)</td>
|
||||
<td>[Antivirus](https://docs.microsoft.com/windows/security/threat-protection/windows-defender-antivirus/windows-defender-antivirus-in-windows-10)<br><br>[Machine learning](https://docs.microsoft.com/windows/security/threat-protection/windows-defender-antivirus/utilize-microsoft-cloud-protection-windows-defender-antivirus)<br><br>[Automated sandbox service](https://docs.microsoft.com/en-us/windows/security/threat-protection/windows-defender-antivirus/configure-block-at-first-sight-windows-defender-antivirus)</td>
|
||||
<td>[Alerts queue](https://docs.microsoft.com/en-us/windows/security/threat-protection/windows-defender-atp/alerts-queue-windows-defender-advanced-threat-protection)<br><br>[Historical endpoint data](https://docs.microsoft.com/windows/security/threat-protection/windows-defender-atp/investigate-machines-windows-defender-advanced-threat-protection#machine-timeline)<br><br>[Realtime and historical threat hunting](https://docs.microsoft.com/windows/security/threat-protection/windows-defender-atp/advanced-hunting-windows-defender-advanced-threat-protection)<br><br>[API and SIEM integration](https://docs.microsoft.com/en-us/windows/security/threat-protection/windows-defender-atp/configure-siem-windows-defender-advanced-threat-protection)<br><br>[Response orchestration](https://docs.microsoft.com/windows/security/threat-protection/windows-defender-atp/response-actions-windows-defender-advanced-threat-protection)<br><br>[Forensic collection](https://docs.microsoft.com/windows/security/threat-protection/windows-defender-atp/respond-machine-alerts-windows-defender-advanced-threat-protection#collect-investigation-package-from-machines)<br><br>[Threat intelligence](https://docs.microsoft.com/windows/security/threat-protection/windows-defender-atp/threat-indicator-concepts-windows-defender-advanced-threat-protection)<br><br>[Advanced detonation and analysis service](https://docs.microsoft.com/en-us/windows/security/threat-protection/windows-defender-atp/respond-file-alerts-windows-defender-advanced-threat-protection#deep-analysis)</td>
|
||||
<td>[Automated investigation and remediation](https://docs.microsoft.com/en-us/windows/security/threat-protection/windows-defender-atp/automated-investigations-windows-defender-advanced-threat-protection)<br><br>[Threat remediation](https://docs.microsoft.com/en-us/windows/security/threat-protection/windows-defender-atp/automated-investigations-windows-defender-advanced-threat-protection#how-threats-are-remediated)<br><br>[Manage automated investigations](https://docs.microsoft.com/en-us/windows/security/threat-protection/windows-defender-atp/automated-investigations-windows-defender-advanced-threat-protection#manage-automated-investigations)<br><br>[Analyze automated investigation](https://docs.microsoft.com/en-us/windows/security/threat-protection/windows-defender-atp/automated-investigations-windows-defender-advanced-threat-protection#analyze-automated-investigations)</td>
|
||||
<tr><td>[Hardware based isolation](https://docs.microsoft.com/windows/security/hardware-protection/how-hardware-based-containers-help-protect-windows)<br><br>[Application control](https://docs.microsoft.com/windows/security/threat-protection/windows-defender-application-control/windows-defender-application-control)<br><br>[Exploit protection](https://docs.microsoft.com/windows/security/threat-protection/windows-defender-exploit-guard/windows-defender-exploit-guard)<br><br>[Network protection](https://docs.microsoft.com/windows/security/threat-protection/windows-defender-exploit-guard/network-protection-exploit-guard)<br><br>[Controlled folder access](https://docs.microsoft.com/windows/security/threat-protection/windows-defender-exploit-guard/controlled-folders-exploit-guard)<br><br>[Network firewall](https://docs.microsoft.com/windows/security/identity-protection/windows-firewall/windows-firewall-with-advanced-security)<br><br>[Attack surface reduction controls](https://docs.microsoft.com/windows/security/threat-protection/windows-defender-exploit-guard/attack-surface-reduction-exploit-guard)</td>
|
||||
<td>[Antivirus](https://docs.microsoft.com/windows/security/threat-protection/windows-defender-antivirus/windows-defender-antivirus-in-windows-10)<br><br>[Machine learning](https://docs.microsoft.com/windows/security/threat-protection/windows-defender-antivirus/utilize-microsoft-cloud-protection-windows-defender-antivirus)<br><br>[Automated sandbox service](https://docs.microsoft.com/windows/security/threat-protection/windows-defender-antivirus/configure-block-at-first-sight-windows-defender-antivirus)</td>
|
||||
<td>[Alerts queue](https://docs.microsoft.com/windows/security/threat-protection/windows-defender-atp/alerts-queue-windows-defender-advanced-threat-protection)<br><br>[Historical endpoint data](https://docs.microsoft.com/windows/security/threat-protection/windows-defender-atp/investigate-machines-windows-defender-advanced-threat-protection#machine-timeline)<br><br>[Realtime and historical threat hunting](https://docs.microsoft.com/windows/security/threat-protection/windows-defender-atp/advanced-hunting-windows-defender-advanced-threat-protection)<br><br>[API and SIEM integration](https://docs.microsoft.com/windows/security/threat-protection/windows-defender-atp/configure-siem-windows-defender-advanced-threat-protection)<br><br>[Response orchestration](https://docs.microsoft.com/windows/security/threat-protection/windows-defender-atp/response-actions-windows-defender-advanced-threat-protection)<br><br>[Forensic collection](https://docs.microsoft.com/windows/security/threat-protection/windows-defender-atp/respond-machine-alerts-windows-defender-advanced-threat-protection#collect-investigation-package-from-machines)<br><br>[Threat intelligence](https://docs.microsoft.com/windows/security/threat-protection/windows-defender-atp/threat-indicator-concepts-windows-defender-advanced-threat-protection)<br><br>[Advanced detonation and analysis service](https://docs.microsoft.com/windows/security/threat-protection/windows-defender-atp/respond-file-alerts-windows-defender-advanced-threat-protection#deep-analysis)</td>
|
||||
<td>[Automated investigation and remediation](https://docs.microsoft.com/windows/security/threat-protection/windows-defender-atp/automated-investigations-windows-defender-advanced-threat-protection)<br><br>[Threat remediation](https://docs.microsoft.com/windows/security/threat-protection/windows-defender-atp/automated-investigations-windows-defender-advanced-threat-protection#how-threats-are-remediated)<br><br>[Manage automated investigations](https://docs.microsoft.com/windows/security/threat-protection/windows-defender-atp/automated-investigations-windows-defender-advanced-threat-protection#manage-automated-investigations)<br><br>[Analyze automated investigation](https://docs.microsoft.com/windows/security/threat-protection/windows-defender-atp/automated-investigations-windows-defender-advanced-threat-protection#analyze-automated-investigations)</td>
|
||||
<td>[Asset inventory](https://docs.microsoft.com/windows/security/threat-protection/windows-defender-atp/secure-score-dashboard-windows-defender-advanced-threat-protection)<br><br>[Operating system baseline compliance](https://docs.microsoft.com/windows/security/threat-protection/windows-defender-atp/secure-score-dashboard-windows-defender-advanced-threat-protection)<br><br>[Recommended improvement actions](https://docs.microsoft.com/windows/security/threat-protection/windows-defender-atp/secure-score-dashboard-windows-defender-advanced-threat-protection)<br><br>[Secure score](https://docs.microsoft.com/windows/security/threat-protection/windows-defender-atp/secure-score-dashboard-windows-defender-advanced-threat-protection)<br><br>[Threat analytics](https://docs.microsoft.com/windows/security/threat-protection/windows-defender-atp/threat-analytics-dashboard-windows-defender-advanced-threat-protection)<br><br>[Reporting and trends](https://docs.microsoft.com/windows/security/threat-protection/windows-defender-atp/powerbi-reports-windows-defender-advanced-threat-protection)</td>
|
||||
</tr>
|
||||
</table>"
|
@ -19,7 +19,7 @@ Describes the best practices, location, values, policy management, and security
|
||||
|
||||
## Reference
|
||||
|
||||
The **Minimum password age** policy setting determines the period of time (in days) that a password can be used before the system requires the user to change it. You can set passwords to expire after a number of days between 1 and 999, or you can specify that passwords never expire by setting the number of days to 0. If [Maximum password age](maximum-password-age.md) is between 1 and 999 days, the minimum password age must be less than the maximum password age. If Maximum password age is set to 0, **Minimum password age** can be any value between 0 and 998 days.
|
||||
The **Minimum password age** policy setting determines the period of time (in days) that a password must be used before the user can change it. You can set a value between 1 and 998 days, or you can allow changes immediately by setting the number of days to 0. The minimum password age must be less than the Maximum password age, unless the maximum password age is set to 0, indicating that passwords will never expire. If the maximum password age is set to 0, the minimum password age can be set to any value between 0 and 998.
|
||||
|
||||
### Possible values
|
||||
|
||||
|
@ -40,16 +40,17 @@ ms.date: 07/10/2018
|
||||
You can run an on-demand scan on individual endpoints. These scans will start immediately, and you can define parameters for the scan, such as the location or type.
|
||||
|
||||
|
||||
## Quick scan versus full scan
|
||||
## Quick scan versus full scan and custom scan
|
||||
|
||||
Quick scan looks at all the locations where there could be malware registered to start with the system, such as registry keys and known Windows startup folders.
|
||||
|
||||
Combined with [always-on real-time protection capability](configure-real-time-protection-windows-defender-antivirus.md) - which reviews files when they are opened and closed, and whenever a user navigates to a folder - a quick scan helps provide strong coverage both for malware that starts with the system and kernel-level malware.
|
||||
Combined with [always-on real-time protection capability](configure-real-time-protection-windows-defender-antivirus.md), which reviews files when they are opened and closed, and whenever a user navigates to a folder, a quick scan helps provide strong coverage both for malware that starts with the system and kernel-level malware.
|
||||
|
||||
In most instances, this means a quick scan is adequate to find malware that wasn't picked up by real-time protection.
|
||||
|
||||
A full scan can be useful on endpoints that have encountered a malware threat to identify if there are any inactive components that require a more thorough clean-up, and can be ideal when running on-demand scans.
|
||||
|
||||
A custom scan allows you to specify files or folders to scan, such as a USB drive.
|
||||
|
||||
**Use the mpcmdrum.exe command-line utility to run a scan:**
|
||||
|
||||
|
@ -60,7 +60,7 @@ To configure the Group Policy settings described in this topic:
|
||||
|
||||
Also see the [Manage when protection updates should be downloaded and applied](manage-protection-update-schedule-windows-defender-antivirus.md) and [Prevent or allow users to locally modify policy settings](configure-local-policy-overrides-windows-defender-antivirus.md) topics.
|
||||
|
||||
## Quick scan versus full scan
|
||||
## Quick scan versus full scan and custom scan
|
||||
|
||||
When you set up scheduled scans, you can set up whether the scan should be a full or quick scan.
|
||||
|
||||
@ -72,6 +72,8 @@ In most instances, this means a quick scan is adequate to find malware that wasn
|
||||
|
||||
A full scan can be useful on endpoints that have encountered a malware threat to identify if there are any inactive components that require a more thorough clean-up. In this instance, you may want to use a full scan when running an [on-demand scan](run-scan-windows-defender-antivirus.md).
|
||||
|
||||
A custom scan allows you to specify the files and folders to scan, such as a USB drive.
|
||||
|
||||
## Set up scheduled scans
|
||||
|
||||
Scheduled scans will run at the day and time you specify. You can use Group Policy, PowerShell, and WMI to configure scheduled scans.
|
||||
|
@ -10,7 +10,7 @@ ms.pagetype: security
|
||||
ms.author: macapara
|
||||
author: mjcaparas
|
||||
ms.localizationpriority: medium
|
||||
ms.date: 06/13/2018
|
||||
ms.date: 08/15/2018
|
||||
---
|
||||
|
||||
# Query data using Advanced hunting in Windows Defender ATP
|
||||
@ -51,7 +51,8 @@ First, we define a time filter to review only records from the previous seven da
|
||||
|
||||
We then add a filter on the _FileName_ to contain only instances of _powershell.exe_.
|
||||
|
||||
Afterwards, we add a filter on the _ProcessCommandLine_
|
||||
Afterwards, we add a filter on the _ProcessCommandLine_.
|
||||
|
||||
Finally, we project only the columns we're interested in exploring and limit the results to 100 and click **Run query**.
|
||||
|
||||
You have the option of expanding the screen view so you can focus on your hunting query and related results.
|
||||
|
Binary file not shown.
Before Width: | Height: | Size: 45 KiB After Width: | Height: | Size: 53 KiB |
@ -234,3 +234,4 @@ Support in [Windows Defender Application Guard](#windows-defender-application-gu
|
||||
[What's New in Windows 10](https://docs.microsoft.com/windows/whats-new/): See what’s new in other versions of Windows 10.<br>
|
||||
[What's new in Windows 10, version 1709](https://docs.microsoft.com/windows-hardware/get-started/what-s-new-in-windows): See what’s new in Windows 10 hardware.<br>
|
||||
[Windows 10 Fall Creators Update Next Generation Security](https://www.youtube.com/watch?v=JDGMNFwyUg8): YouTube video about Windows Defender ATP in Windows 10, version 1709.
|
||||
[How to take a screenshot on pc without any app](https://rahulit.com/how-to-take-a-screenshot-on-a-dell-laptop/)
|
||||
|
Loading…
x
Reference in New Issue
Block a user