diff --git a/.openpublishing.redirection.json b/.openpublishing.redirection.json index 1e2452332b..baa458ee02 100644 --- a/.openpublishing.redirection.json +++ b/.openpublishing.redirection.json @@ -8446,8 +8446,8 @@ "redirect_document_id": false }, { - "source_path": "windows/deploy/upgrade-windows-phone-8-1-to-10.md", - "redirect_url": "/windows/deployment/upgrade/upgrade-windows-phone-8-1-to-10", + "source_path": "windows/deployment/upgrade/upgrade-windows-phone-8-1-to-10.md", + "redirect_url": "/windows/deployment/upgrade/windows-10-edition-upgrades", "redirect_document_id": false }, { @@ -18950,17 +18950,7 @@ "redirect_url": "/windows/privacy/windows-10-and-privacy-compliance", "redirect_document_id": false }, - { - "source_path": "windows/client-management/windows-10-mobile-and-mdm.md", - "redirect_url": "/windows/client-management/index", - "redirect_document_id": false - }, - { - "source_path": "windows/application-management/deploy-app-upgrades-windows-10-mobile.md", - "redirect_url": "/windows/application-management/index", - "redirect_document_id": false - } - + ] } diff --git a/windows/client-management/mdm/policy-csp-privacy.md b/windows/client-management/mdm/policy-csp-privacy.md index ca873b0393..681623a2d3 100644 --- a/windows/client-management/mdm/policy-csp-privacy.md +++ b/windows/client-management/mdm/policy-csp-privacy.md @@ -412,7 +412,7 @@ Most restricted value is 0. ADMX Info: -- GP English name: *Allow Clipboard synchronization across devices* +- GP Friendly name: *Allow Clipboard synchronization across devices* - GP name: *AllowCrossDeviceClipboard* - GP path: *System/OS Policies* - GP ADMX file name: *OSPolicy.admx* @@ -480,7 +480,7 @@ Most restricted value is 0. ADMX Info: -- GP English name: *Allow input personalization* +- GP Friendly name: *Allow input personalization* - GP name: *AllowInputPersonalization* - GP path: *Control Panel/Regional and Language Options* - GP ADMX file name: *Globalization.admx* @@ -548,7 +548,7 @@ Most restricted value is 0. ADMX Info: -- GP English name: *Turn off the advertising ID* +- GP Friendly name: *Turn off the advertising ID* - GP name: *DisableAdvertisingId* - GP path: *System/User Profiles* - GP ADMX file name: *UserProfiles.admx* @@ -622,7 +622,7 @@ In some enterprise managed environments, the privacy settings may be set by poli ADMX Info: -- GP English name: *Don't launch privacy settings experience on user logon* +- GP Friendly name: *Don't launch privacy settings experience on user logon* - GP name: *DisablePrivacyExperience* - GP path: *Windows Components/OOBE* - GP ADMX file name: *OOBE.admx* @@ -690,7 +690,7 @@ Added in Windows 10, version 1709. Allows IT Admins to allow Apps/OS to publish ADMX Info: -- GP English name: *Enables Activity Feed* +- GP Friendly name: *Enables Activity Feed* - GP name: *EnableActivityFeed* - GP path: *System/OS Policies* - GP ADMX file name: *OSPolicy.admx* @@ -759,7 +759,7 @@ Most restricted value is 2. ADMX Info: -- GP English name: *Let Windows apps access account information* +- GP Friendly name: *Let Windows apps access account information* - GP name: *LetAppsAccessAccountInfo* - GP element: *LetAppsAccessAccountInfo_Enum* - GP path: *Windows Components/App Privacy* @@ -827,7 +827,7 @@ Added in Windows 10, version 1607. List of semi-colon delimited Package Family ADMX Info: -- GP English name: *Let Windows apps access account information* +- GP Friendly name: *Let Windows apps access account information* - GP name: *LetAppsAccessAccountInfo* - GP element: *LetAppsAccessAccountInfo_ForceAllowTheseApps_List* - GP path: *Windows Components/App Privacy* @@ -887,7 +887,7 @@ Added in Windows 10, version 1607. List of semi-colon delimited Package Family ADMX Info: -- GP English name: *Let Windows apps access account information* +- GP Friendly name: *Let Windows apps access account information* - GP name: *LetAppsAccessAccountInfo* - GP element: *LetAppsAccessAccountInfo_ForceDenyTheseApps_List* - GP path: *Windows Components/App Privacy* @@ -947,7 +947,7 @@ Added in Windows 10, version 1607. List of semi-colon delimited Package Family ADMX Info: -- GP English name: *Let Windows apps access account information* +- GP Friendly name: *Let Windows apps access account information* - GP name: *LetAppsAccessAccountInfo* - GP element: *LetAppsAccessAccountInfo_UserInControlOfTheseApps_List* - GP path: *Windows Components/App Privacy* @@ -1013,7 +1013,7 @@ Value type is integer. ADMX Info: -- GP English name: *Let Windows apps access background spatial perception* +- GP Friendly name: *Let Windows apps access background spatial perception* - GP name: *LetAppsAccessBackgroundSpatialPerception* - GP element: *LetAppsAccessBackgroundSpatialPerception_Enum* - GP path: *Windows Components/App Privacy* @@ -1087,7 +1087,7 @@ Value type is chr. ADMX Info: -- GP English name: *Let Windows apps access background spatial perception* +- GP Friendly name: *Let Windows apps access background spatial perception* - GP name: *LetAppsAccessBackgroundSpatialPerception* - GP element: *LetAppsAccessBackgroundSpatialPerception_ForceAllowTheseApps_List* - GP path: *Windows Components/App Privacy* @@ -1156,7 +1156,7 @@ Value type is chr. ADMX Info: -- GP English name: *Let Windows apps access background spatial perception* +- GP Friendly name: *Let Windows apps access background spatial perception* - GP name: *LetAppsAccessBackgroundSpatialPerception* - GP element: *LetAppsAccessBackgroundSpatialPerception_ForceDenyTheseApps_List* - GP path: *Windows Components/App Privacy* @@ -1226,7 +1226,7 @@ Value type is chr. ADMX Info: -- GP English name: *Let Windows apps access background spatial perception* +- GP Friendly name: *Let Windows apps access background spatial perception* - GP name: *LetAppsAccessBackgroundSpatialPerception* - GP element: *LetAppsAccessBackgroundSpatialPerception_UserInControlOfTheseApps_List* - GP path: *Windows Components/App Privacy* @@ -1292,7 +1292,7 @@ Most restricted value is 2. ADMX Info: -- GP English name: *Let Windows apps access the calendar* +- GP Friendly name: *Let Windows apps access the calendar* - GP name: *LetAppsAccessCalendar* - GP element: *LetAppsAccessCalendar_Enum* - GP path: *Windows Components/App Privacy* @@ -1360,7 +1360,7 @@ Added in Windows 10, version 1607. List of semi-colon delimited Package Family ADMX Info: -- GP English name: *Let Windows apps access the calendar* +- GP Friendly name: *Let Windows apps access the calendar* - GP name: *LetAppsAccessCalendar* - GP element: *LetAppsAccessCalendar_ForceAllowTheseApps_List* - GP path: *Windows Components/App Privacy* @@ -1420,7 +1420,7 @@ Added in Windows 10, version 1607. List of semi-colon delimited Package Family ADMX Info: -- GP English name: *Let Windows apps access the calendar* +- GP Friendly name: *Let Windows apps access the calendar* - GP name: *LetAppsAccessCalendar* - GP element: *LetAppsAccessCalendar_ForceDenyTheseApps_List* - GP path: *Windows Components/App Privacy* @@ -1480,7 +1480,7 @@ Added in Windows 10, version 1607. List of semi-colon delimited Package Family ADMX Info: -- GP English name: *Let Windows apps access the calendar* +- GP Friendly name: *Let Windows apps access the calendar* - GP name: *LetAppsAccessCalendar* - GP element: *LetAppsAccessCalendar_UserInControlOfTheseApps_List* - GP path: *Windows Components/App Privacy* @@ -1543,7 +1543,7 @@ Most restricted value is 2. ADMX Info: -- GP English name: *Let Windows apps access call history* +- GP Friendly name: *Let Windows apps access call history* - GP name: *LetAppsAccessCallHistory* - GP element: *LetAppsAccessCallHistory_Enum* - GP path: *Windows Components/App Privacy* @@ -1611,7 +1611,7 @@ Added in Windows 10, version 1607. List of semi-colon delimited Package Family ADMX Info: -- GP English name: *Let Windows apps access call history* +- GP Friendly name: *Let Windows apps access call history* - GP name: *LetAppsAccessCallHistory* - GP element: *LetAppsAccessCallHistory_ForceAllowTheseApps_List* - GP path: *Windows Components/App Privacy* @@ -1671,7 +1671,7 @@ Added in Windows 10, version 1607. List of semi-colon delimited Package Family ADMX Info: -- GP English name: *Let Windows apps access call history* +- GP Friendly name: *Let Windows apps access call history* - GP name: *LetAppsAccessCallHistory* - GP element: *LetAppsAccessCallHistory_ForceDenyTheseApps_List* - GP path: *Windows Components/App Privacy* @@ -1731,7 +1731,7 @@ Added in Windows 10, version 1607. List of semi-colon delimited Package Family ADMX Info: -- GP English name: *Let Windows apps access call history* +- GP Friendly name: *Let Windows apps access call history* - GP name: *LetAppsAccessCallHistory* - GP element: *LetAppsAccessCallHistory_UserInControlOfTheseApps_List* - GP path: *Windows Components/App Privacy* @@ -1794,7 +1794,7 @@ Most restricted value is 2. ADMX Info: -- GP English name: *Let Windows apps access the camera* +- GP Friendly name: *Let Windows apps access the camera* - GP name: *LetAppsAccessCamera* - GP element: *LetAppsAccessCamera_Enum* - GP path: *Windows Components/App Privacy* @@ -1862,7 +1862,7 @@ Added in Windows 10, version 1607. List of semi-colon delimited Package Family ADMX Info: -- GP English name: *Let Windows apps access the camera* +- GP Friendly name: *Let Windows apps access the camera* - GP name: *LetAppsAccessCamera* - GP element: *LetAppsAccessCamera_ForceAllowTheseApps_List* - GP path: *Windows Components/App Privacy* @@ -1922,7 +1922,7 @@ Added in Windows 10, version 1607. List of semi-colon delimited Package Family ADMX Info: -- GP English name: *Let Windows apps access the camera* +- GP Friendly name: *Let Windows apps access the camera* - GP name: *LetAppsAccessCamera* - GP element: *LetAppsAccessCamera_ForceDenyTheseApps_List* - GP path: *Windows Components/App Privacy* @@ -1982,7 +1982,7 @@ Added in Windows 10, version 1607. List of semi-colon delimited Package Family ADMX Info: -- GP English name: *Let Windows apps access the camera* +- GP Friendly name: *Let Windows apps access the camera* - GP name: *LetAppsAccessCamera* - GP element: *LetAppsAccessCamera_UserInControlOfTheseApps_List* - GP path: *Windows Components/App Privacy* @@ -2045,7 +2045,7 @@ Most restricted value is 2. ADMX Info: -- GP English name: *Let Windows apps access contacts* +- GP Friendly name: *Let Windows apps access contacts* - GP name: *LetAppsAccessContacts* - GP element: *LetAppsAccessContacts_Enum* - GP path: *Windows Components/App Privacy* @@ -2113,7 +2113,7 @@ Added in Windows 10, version 1607. List of semi-colon delimited Package Family ADMX Info: -- GP English name: *Let Windows apps access contacts* +- GP Friendly name: *Let Windows apps access contacts* - GP name: *LetAppsAccessContacts* - GP element: *LetAppsAccessContacts_ForceAllowTheseApps_List* - GP path: *Windows Components/App Privacy* @@ -2173,7 +2173,7 @@ Added in Windows 10, version 1607. List of semi-colon delimited Package Family ADMX Info: -- GP English name: *Let Windows apps access contacts* +- GP Friendly name: *Let Windows apps access contacts* - GP name: *LetAppsAccessContacts* - GP element: *LetAppsAccessContacts_ForceDenyTheseApps_List* - GP path: *Windows Components/App Privacy* @@ -2233,7 +2233,7 @@ Added in Windows 10, version 1607. List of semi-colon delimited Package Family ADMX Info: -- GP English name: *Let Windows apps access contacts* +- GP Friendly name: *Let Windows apps access contacts* - GP name: *LetAppsAccessContacts* - GP element: *LetAppsAccessContacts_UserInControlOfTheseApps_List* - GP path: *Windows Components/App Privacy* @@ -2296,7 +2296,7 @@ Most restricted value is 2. ADMX Info: -- GP English name: *Let Windows apps access email* +- GP Friendly name: *Let Windows apps access email* - GP name: *LetAppsAccessEmail* - GP element: *LetAppsAccessEmail_Enum* - GP path: *Windows Components/App Privacy* @@ -2364,7 +2364,7 @@ Added in Windows 10, version 1607. List of semi-colon delimited Package Family ADMX Info: -- GP English name: *Let Windows apps access email* +- GP Friendly name: *Let Windows apps access email* - GP name: *LetAppsAccessEmail* - GP element: *LetAppsAccessEmail_ForceAllowTheseApps_List* - GP path: *Windows Components/App Privacy* @@ -2424,7 +2424,7 @@ Added in Windows 10, version 1607. List of semi-colon delimited Package Family ADMX Info: -- GP English name: *Let Windows apps access email* +- GP Friendly name: *Let Windows apps access email* - GP name: *LetAppsAccessEmail* - GP element: *LetAppsAccessEmail_ForceDenyTheseApps_List* - GP path: *Windows Components/App Privacy* @@ -2484,7 +2484,7 @@ Added in Windows 10, version 1607. List of semi-colon delimited Package Family ADMX Info: -- GP English name: *Let Windows apps access email* +- GP Friendly name: *Let Windows apps access email* - GP name: *LetAppsAccessEmail* - GP element: *LetAppsAccessEmail_UserInControlOfTheseApps_List* - GP path: *Windows Components/App Privacy* @@ -2751,7 +2751,7 @@ Most restricted value is 2. ADMX Info: -- GP English name: *Let Windows apps access location* +- GP Friendly name: *Let Windows apps access location* - GP name: *LetAppsAccessLocation* - GP element: *LetAppsAccessLocation_Enum* - GP path: *Windows Components/App Privacy* @@ -2819,7 +2819,7 @@ Added in Windows 10, version 1607. List of semi-colon delimited Package Family ADMX Info: -- GP English name: *Let Windows apps access location* +- GP Friendly name: *Let Windows apps access location* - GP name: *LetAppsAccessLocation* - GP element: *LetAppsAccessLocation_ForceAllowTheseApps_List* - GP path: *Windows Components/App Privacy* @@ -2879,7 +2879,7 @@ Added in Windows 10, version 1607. List of semi-colon delimited Package Family ADMX Info: -- GP English name: *Let Windows apps access location* +- GP Friendly name: *Let Windows apps access location* - GP name: *LetAppsAccessLocation* - GP element: *LetAppsAccessLocation_ForceDenyTheseApps_List* - GP path: *Windows Components/App Privacy* @@ -2939,7 +2939,7 @@ Added in Windows 10, version 1607. List of semi-colon delimited Package Family ADMX Info: -- GP English name: *Let Windows apps access location* +- GP Friendly name: *Let Windows apps access location* - GP name: *LetAppsAccessLocation* - GP element: *LetAppsAccessLocation_UserInControlOfTheseApps_List* - GP path: *Windows Components/App Privacy* @@ -3002,7 +3002,7 @@ Most restricted value is 2. ADMX Info: -- GP English name: *Let Windows apps access messaging* +- GP Friendly name: *Let Windows apps access messaging* - GP name: *LetAppsAccessMessaging* - GP element: *LetAppsAccessMessaging_Enum* - GP path: *Windows Components/App Privacy* @@ -3070,7 +3070,7 @@ Added in Windows 10, version 1607. List of semi-colon delimited Package Family ADMX Info: -- GP English name: *Let Windows apps access messaging* +- GP Friendly name: *Let Windows apps access messaging* - GP name: *LetAppsAccessMessaging* - GP element: *LetAppsAccessMessaging_ForceAllowTheseApps_List* - GP path: *Windows Components/App Privacy* @@ -3130,7 +3130,7 @@ Added in Windows 10, version 1607. List of semi-colon delimited Package Family ADMX Info: -- GP English name: *Let Windows apps access messaging* +- GP Friendly name: *Let Windows apps access messaging* - GP name: *LetAppsAccessMessaging* - GP element: *LetAppsAccessMessaging_ForceDenyTheseApps_List* - GP path: *Windows Components/App Privacy* @@ -3190,7 +3190,7 @@ Added in Windows 10, version 1607. List of semi-colon delimited Package Family ADMX Info: -- GP English name: *Let Windows apps access messaging* +- GP Friendly name: *Let Windows apps access messaging* - GP name: *LetAppsAccessMessaging* - GP element: *LetAppsAccessMessaging_UserInControlOfTheseApps_List* - GP path: *Windows Components/App Privacy* @@ -3253,7 +3253,7 @@ Most restricted value is 2. ADMX Info: -- GP English name: *Let Windows apps access the microphone* +- GP Friendly name: *Let Windows apps access the microphone* - GP name: *LetAppsAccessMicrophone* - GP element: *LetAppsAccessMicrophone_Enum* - GP path: *Windows Components/App Privacy* @@ -3321,7 +3321,7 @@ Added in Windows 10, version 1607. List of semi-colon delimited Package Family ADMX Info: -- GP English name: *Let Windows apps access the microphone* +- GP Friendly name: *Let Windows apps access the microphone* - GP name: *LetAppsAccessMicrophone* - GP element: *LetAppsAccessMicrophone_ForceAllowTheseApps_List* - GP path: *Windows Components/App Privacy* @@ -3381,7 +3381,7 @@ Added in Windows 10, version 1607. List of semi-colon delimited Package Family ADMX Info: -- GP English name: *Let Windows apps access the microphone* +- GP Friendly name: *Let Windows apps access the microphone* - GP name: *LetAppsAccessMicrophone* - GP element: *LetAppsAccessMicrophone_ForceDenyTheseApps_List* - GP path: *Windows Components/App Privacy* @@ -3441,7 +3441,7 @@ Added in Windows 10, version 1607. List of semi-colon delimited Package Family ADMX Info: -- GP English name: *Let Windows apps access the microphone* +- GP Friendly name: *Let Windows apps access the microphone* - GP name: *LetAppsAccessMicrophone* - GP element: *LetAppsAccessMicrophone_UserInControlOfTheseApps_List* - GP path: *Windows Components/App Privacy* @@ -3504,7 +3504,7 @@ Most restricted value is 2. ADMX Info: -- GP English name: *Let Windows apps access motion* +- GP Friendly name: *Let Windows apps access motion* - GP name: *LetAppsAccessMotion* - GP element: *LetAppsAccessMotion_Enum* - GP path: *Windows Components/App Privacy* @@ -3572,7 +3572,7 @@ Added in Windows 10, version 1607. List of semi-colon delimited Package Family ADMX Info: -- GP English name: *Let Windows apps access motion* +- GP Friendly name: *Let Windows apps access motion* - GP name: *LetAppsAccessMotion* - GP element: *LetAppsAccessMotion_ForceAllowTheseApps_List* - GP path: *Windows Components/App Privacy* @@ -3632,7 +3632,7 @@ Added in Windows 10, version 1607. List of semi-colon delimited Package Family ADMX Info: -- GP English name: *Let Windows apps access motion* +- GP Friendly name: *Let Windows apps access motion* - GP name: *LetAppsAccessMotion* - GP element: *LetAppsAccessMotion_ForceDenyTheseApps_List* - GP path: *Windows Components/App Privacy* @@ -3692,7 +3692,7 @@ Added in Windows 10, version 1607. List of semi-colon delimited Package Family ADMX Info: -- GP English name: *Let Windows apps access motion* +- GP Friendly name: *Let Windows apps access motion* - GP name: *LetAppsAccessMotion* - GP element: *LetAppsAccessMotion_UserInControlOfTheseApps_List* - GP path: *Windows Components/App Privacy* @@ -3755,7 +3755,7 @@ Most restricted value is 2. ADMX Info: -- GP English name: *Let Windows apps access notifications* +- GP Friendly name: *Let Windows apps access notifications* - GP name: *LetAppsAccessNotifications* - GP element: *LetAppsAccessNotifications_Enum* - GP path: *Windows Components/App Privacy* @@ -3823,7 +3823,7 @@ Added in Windows 10, version 1607. List of semi-colon delimited Package Family ADMX Info: -- GP English name: *Let Windows apps access notifications* +- GP Friendly name: *Let Windows apps access notifications* - GP name: *LetAppsAccessNotifications* - GP element: *LetAppsAccessNotifications_ForceAllowTheseApps_List* - GP path: *Windows Components/App Privacy* @@ -3883,7 +3883,7 @@ Added in Windows 10, version 1607. List of semi-colon delimited Package Family ADMX Info: -- GP English name: *Let Windows apps access notifications* +- GP Friendly name: *Let Windows apps access notifications* - GP name: *LetAppsAccessNotifications* - GP element: *LetAppsAccessNotifications_ForceDenyTheseApps_List* - GP path: *Windows Components/App Privacy* @@ -3943,7 +3943,7 @@ Added in Windows 10, version 1607. List of semi-colon delimited Package Family ADMX Info: -- GP English name: *Let Windows apps access notifications* +- GP Friendly name: *Let Windows apps access notifications* - GP name: *LetAppsAccessNotifications* - GP element: *LetAppsAccessNotifications_UserInControlOfTheseApps_List* - GP path: *Windows Components/App Privacy* @@ -4006,7 +4006,7 @@ Most restricted value is 2. ADMX Info: -- GP English name: *Let Windows apps make phone calls* +- GP Friendly name: *Let Windows apps make phone calls* - GP name: *LetAppsAccessPhone* - GP element: *LetAppsAccessPhone_Enum* - GP path: *Windows Components/App Privacy* @@ -4074,7 +4074,7 @@ Added in Windows 10, version 1607. List of semi-colon delimited Package Family ADMX Info: -- GP English name: *Let Windows apps make phone calls* +- GP Friendly name: *Let Windows apps make phone calls* - GP name: *LetAppsAccessPhone* - GP element: *LetAppsAccessPhone_ForceAllowTheseApps_List* - GP path: *Windows Components/App Privacy* @@ -4134,7 +4134,7 @@ Added in Windows 10, version 1607. List of semi-colon delimited Package Family ADMX Info: -- GP English name: *Let Windows apps make phone calls* +- GP Friendly name: *Let Windows apps make phone calls* - GP name: *LetAppsAccessPhone* - GP element: *LetAppsAccessPhone_ForceDenyTheseApps_List* - GP path: *Windows Components/App Privacy* @@ -4194,7 +4194,7 @@ Added in Windows 10, version 1607. List of semi-colon delimited Package Family ADMX Info: -- GP English name: *Let Windows apps make phone calls* +- GP Friendly name: *Let Windows apps make phone calls* - GP name: *LetAppsAccessPhone* - GP element: *LetAppsAccessPhone_UserInControlOfTheseApps_List* - GP path: *Windows Components/App Privacy* @@ -4257,7 +4257,7 @@ Most restricted value is 2. ADMX Info: -- GP English name: *Let Windows apps control radios* +- GP Friendly name: *Let Windows apps control radios* - GP name: *LetAppsAccessRadios* - GP element: *LetAppsAccessRadios_Enum* - GP path: *Windows Components/App Privacy* @@ -4325,7 +4325,7 @@ Added in Windows 10, version 1607. List of semi-colon delimited Package Family ADMX Info: -- GP English name: *Let Windows apps control radios* +- GP Friendly name: *Let Windows apps control radios* - GP name: *LetAppsAccessRadios* - GP element: *LetAppsAccessRadios_ForceAllowTheseApps_List* - GP path: *Windows Components/App Privacy* @@ -4385,7 +4385,7 @@ Added in Windows 10, version 1607. List of semi-colon delimited Package Family ADMX Info: -- GP English name: *Let Windows apps control radios* +- GP Friendly name: *Let Windows apps control radios* - GP name: *LetAppsAccessRadios* - GP element: *LetAppsAccessRadios_ForceDenyTheseApps_List* - GP path: *Windows Components/App Privacy* @@ -4445,7 +4445,7 @@ Added in Windows 10, version 1607. List of semi-colon delimited Package Family ADMX Info: -- GP English name: *Let Windows apps control radios* +- GP Friendly name: *Let Windows apps control radios* - GP name: *LetAppsAccessRadios* - GP element: *LetAppsAccessRadios_UserInControlOfTheseApps_List* - GP path: *Windows Components/App Privacy* @@ -4505,7 +4505,7 @@ Added in Windows 10, version 1703. Specifies whether Windows apps can access tas ADMX Info: -- GP English name: *Let Windows apps access Tasks* +- GP Friendly name: *Let Windows apps access Tasks* - GP name: *LetAppsAccessTasks* - GP element: *LetAppsAccessTasks_Enum* - GP path: *Windows Components/App Privacy* @@ -4565,7 +4565,7 @@ Added in Windows 10, version 1703. List of semi-colon delimited Package Family N ADMX Info: -- GP English name: *Let Windows apps access Tasks* +- GP Friendly name: *Let Windows apps access Tasks* - GP name: *LetAppsAccessTasks* - GP element: *LetAppsAccessTasks_ForceAllowTheseApps_List* - GP path: *Windows Components/App Privacy* @@ -4625,7 +4625,7 @@ Added in Windows 10, version 1703. List of semi-colon delimited Package Family N ADMX Info: -- GP English name: *Let Windows apps access Tasks* +- GP Friendly name: *Let Windows apps access Tasks* - GP name: *LetAppsAccessTasks* - GP element: *LetAppsAccessTasks_ForceDenyTheseApps_List* - GP path: *Windows Components/App Privacy* @@ -4685,7 +4685,7 @@ Added in Windows 10, version 1703. List of semi-colon delimited Package Family N ADMX Info: -- GP English name: *Let Windows apps access Tasks* +- GP Friendly name: *Let Windows apps access Tasks* - GP name: *LetAppsAccessTasks* - GP element: *LetAppsAccessTasks_UserInControlOfTheseApps_List* - GP path: *Windows Components/App Privacy* @@ -4748,7 +4748,7 @@ Most restricted value is 2. ADMX Info: -- GP English name: *Let Windows apps access trusted devices* +- GP Friendly name: *Let Windows apps access trusted devices* - GP name: *LetAppsAccessTrustedDevices* - GP element: *LetAppsAccessTrustedDevices_Enum* - GP path: *Windows Components/App Privacy* @@ -4816,7 +4816,7 @@ Added in Windows 10, version 1607. List of semi-colon delimited Package Family ADMX Info: -- GP English name: *Let Windows apps access trusted devices* +- GP Friendly name: *Let Windows apps access trusted devices* - GP name: *LetAppsAccessTrustedDevices* - GP element: *LetAppsAccessTrustedDevices_ForceAllowTheseApps_List* - GP path: *Windows Components/App Privacy* @@ -4876,7 +4876,7 @@ Added in Windows 10, version 1607. List of semi-colon delimited Package Family ADMX Info: -- GP English name: *Let Windows apps access trusted devices* +- GP Friendly name: *Let Windows apps access trusted devices* - GP name: *LetAppsAccessTrustedDevices* - GP element: *LetAppsAccessTrustedDevices_ForceDenyTheseApps_List* - GP path: *Windows Components/App Privacy* @@ -4936,7 +4936,7 @@ Added in Windows 10, version 1607. List of semi-colon delimited Package Family ADMX Info: -- GP English name: *Let Windows apps access trusted devices* +- GP Friendly name: *Let Windows apps access trusted devices* - GP name: *LetAppsAccessTrustedDevices* - GP element: *LetAppsAccessTrustedDevices_UserInControlOfTheseApps_List* - GP path: *Windows Components/App Privacy* @@ -4996,7 +4996,7 @@ Specifies if Windows apps can be activated by voice. ADMX Info: -- GP English name: *Allow voice activation* +- GP Friendly name: *Allow voice activation* - GP name: *LetAppsActivateWithVoice* - GP element: *LetAppsActivateWithVoice_Enum* - GP path: *Windows Components/App Privacy* @@ -5064,7 +5064,7 @@ Specifies if Windows apps can be activated by voice while the screen is locked. ADMX Info: -- GP English name: *Allow voice activation above locked screen* +- GP Friendly name: *Allow voice activation above locked screen* - GP name: *LetAppsActivateWithVoiceAboveLock* - GP element: *LetAppsActivateWithVoiceAboveLock_Enum* - GP path: *Windows Components/App Privacy* @@ -5135,7 +5135,7 @@ Most restricted value is 2. ADMX Info: -- GP English name: *Let Windows apps access diagnostic information about other apps* +- GP Friendly name: *Let Windows apps access diagnostic information about other apps* - GP name: *LetAppsGetDiagnosticInfo* - GP element: *LetAppsGetDiagnosticInfo_Enum* - GP path: *Windows Components/App Privacy* @@ -5203,7 +5203,7 @@ Added in Windows 10, version 1703. List of semi-colon delimited Package Family ADMX Info: -- GP English name: *Let Windows apps access diagnostic information about other apps* +- GP Friendly name: *Let Windows apps access diagnostic information about other apps* - GP name: *LetAppsGetDiagnosticInfo* - GP element: *LetAppsGetDiagnosticInfo_ForceAllowTheseApps_List* - GP path: *Windows Components/App Privacy* @@ -5263,7 +5263,7 @@ Added in Windows 10, version 1703. List of semi-colon delimited Package Family ADMX Info: -- GP English name: *Let Windows apps access diagnostic information about other apps* +- GP Friendly name: *Let Windows apps access diagnostic information about other apps* - GP name: *LetAppsGetDiagnosticInfo* - GP element: *LetAppsGetDiagnosticInfo_ForceDenyTheseApps_List* - GP path: *Windows Components/App Privacy* @@ -5323,7 +5323,7 @@ Added in Windows 10, version 1703. List of semi-colon delimited Package Family ADMX Info: -- GP English name: *Let Windows apps access diagnostic information about other apps* +- GP Friendly name: *Let Windows apps access diagnostic information about other apps* - GP name: *LetAppsGetDiagnosticInfo* - GP element: *LetAppsGetDiagnosticInfo_UserInControlOfTheseApps_List* - GP path: *Windows Components/App Privacy* @@ -5388,7 +5388,7 @@ Most restricted value is 2. ADMX Info: -- GP English name: *Let Windows apps run in the background* +- GP Friendly name: *Let Windows apps run in the background* - GP name: *LetAppsRunInBackground* - GP element: *LetAppsRunInBackground_Enum* - GP path: *Windows Components/App Privacy* @@ -5456,7 +5456,7 @@ Added in Windows 10, version 1703. List of semi-colon delimited Package Family ADMX Info: -- GP English name: *Let Windows apps run in the background* +- GP Friendly name: *Let Windows apps run in the background* - GP name: *LetAppsRunInBackground* - GP element: *LetAppsRunInBackground_ForceAllowTheseApps_List* - GP path: *Windows Components/App Privacy* @@ -5516,7 +5516,7 @@ Added in Windows 10, version 1703. List of semi-colon delimited Package Family ADMX Info: -- GP English name: *Let Windows apps run in the background* +- GP Friendly name: *Let Windows apps run in the background* - GP name: *LetAppsRunInBackground* - GP element: *LetAppsRunInBackground_ForceDenyTheseApps_List* - GP path: *Windows Components/App Privacy* @@ -5576,7 +5576,7 @@ Added in Windows 10, version 1703. List of semi-colon delimited Package Family ADMX Info: -- GP English name: *Let Windows apps run in the background* +- GP Friendly name: *Let Windows apps run in the background* - GP name: *LetAppsRunInBackground* - GP element: *LetAppsRunInBackground_UserInControlOfTheseApps_List* - GP path: *Windows Components/App Privacy* @@ -5639,7 +5639,7 @@ Most restricted value is 2. ADMX Info: -- GP English name: *Let Windows apps communicate with unpaired devices* +- GP Friendly name: *Let Windows apps communicate with unpaired devices* - GP name: *LetAppsSyncWithDevices* - GP element: *LetAppsSyncWithDevices_Enum* - GP path: *Windows Components/App Privacy* @@ -5707,7 +5707,7 @@ Added in Windows 10, version 1607. List of semi-colon delimited Package Family ADMX Info: -- GP English name: *Let Windows apps communicate with unpaired devices* +- GP Friendly name: *Let Windows apps communicate with unpaired devices* - GP name: *LetAppsSyncWithDevices* - GP element: *LetAppsSyncWithDevices_ForceAllowTheseApps_List* - GP path: *Windows Components/App Privacy* @@ -5767,7 +5767,7 @@ Added in Windows 10, version 1607. List of semi-colon delimited Package Family ADMX Info: -- GP English name: *Let Windows apps communicate with unpaired devices* +- GP Friendly name: *Let Windows apps communicate with unpaired devices* - GP name: *LetAppsSyncWithDevices* - GP element: *LetAppsSyncWithDevices_ForceDenyTheseApps_List* - GP path: *Windows Components/App Privacy* @@ -5827,7 +5827,7 @@ Added in Windows 10, version 1607. List of semi-colon delimited Package Family ADMX Info: -- GP English name: *Let Windows apps communicate with unpaired devices* +- GP Friendly name: *Let Windows apps communicate with unpaired devices* - GP name: *LetAppsSyncWithDevices* - GP element: *LetAppsSyncWithDevices_UserInControlOfTheseApps_List* - GP path: *Windows Components/App Privacy* @@ -5887,7 +5887,7 @@ Added in Windows 10, version 1709. Allows It Admins to enable publishing of user ADMX Info: -- GP English name: *Allow publishing of User Activities* +- GP Friendly name: *Allow publishing of User Activities* - GP name: *PublishUserActivities* - GP path: *System/OS Policies* - GP ADMX file name: *OSPolicy.admx* @@ -5953,7 +5953,7 @@ Allows ActivityFeed to upload published 'User Activities'. ADMX Info: -- GP English name: *Allow upload of User Activities* +- GP Friendly name: *Allow upload of User Activities* - GP name: *UploadUserActivities* - GP path: *System/OS Policies* - GP ADMX file name: *OSPolicy.admx* diff --git a/windows/client-management/mdm/policy-csp-remoteassistance.md b/windows/client-management/mdm/policy-csp-remoteassistance.md index 340bef38c2..a515e2b28f 100644 --- a/windows/client-management/mdm/policy-csp-remoteassistance.md +++ b/windows/client-management/mdm/policy-csp-remoteassistance.md @@ -105,7 +105,7 @@ If you do not configure this policy setting, the user sees the default warning m ADMX Info: -- GP English name: *Customize warning messages* +- GP Friendly name: *Customize warning messages* - GP name: *RA_Options* - GP path: *System/Remote Assistance* - GP ADMX file name: *remoteassistance.admx* @@ -177,7 +177,7 @@ If you do not configure this setting, application-based settings are used. ADMX Info: -- GP English name: *Turn on session logging* +- GP Friendly name: *Turn on session logging* - GP name: *RA_Logging* - GP path: *System/Remote Assistance* - GP ADMX file name: *remoteassistance.admx* @@ -257,7 +257,7 @@ If you enable this policy setting you should also enable appropriate firewall ex ADMX Info: -- GP English name: *Configure Solicited Remote Assistance* +- GP Friendly name: *Configure Solicited Remote Assistance* - GP name: *RA_Solicit* - GP path: *System/Remote Assistance* - GP ADMX file name: *remoteassistance.admx* @@ -360,7 +360,7 @@ Allow Remote Desktop Exception ADMX Info: -- GP English name: *Configure Offer Remote Assistance* +- GP Friendly name: *Configure Offer Remote Assistance* - GP name: *RA_Unsolicit* - GP path: *System/Remote Assistance* - GP ADMX file name: *remoteassistance.admx* diff --git a/windows/client-management/mdm/policy-csp-settings.md b/windows/client-management/mdm/policy-csp-settings.md index 1e16989ede..4a109d3361 100644 --- a/windows/client-management/mdm/policy-csp-settings.md +++ b/windows/client-management/mdm/policy-csp-settings.md @@ -360,7 +360,7 @@ If disabled, Settings will not contact Microsoft content services to retrieve ti ADMX Info: -- GP English name: *Allow Online Tips* +- GP Friendly name: *Allow Online Tips* - GP name: *AllowOnlineTips* - GP element: *CheckBox_AllowOnlineTips* - GP path: *Control Panel* @@ -784,7 +784,7 @@ Added in Windows 10, version 1703. Allows IT Admins to configure the default se ADMX Info: -- GP English name: *Show additional calendar* +- GP Friendly name: *Show additional calendar* - GP name: *ConfigureTaskbarCalendar* - GP path: *Start Menu and Taskbar* - GP ADMX file name: *Taskbar.admx* @@ -877,7 +877,7 @@ hide:network-wifi ADMX Info: -- GP English name: *Settings Page Visibility* +- GP Friendly name: *Settings Page Visibility* - GP name: *SettingsPageVisibility* - GP element: *SettingsPageVisibilityBox* - GP path: *Control Panel* diff --git a/windows/client-management/mdm/policy-csp-smartscreen.md b/windows/client-management/mdm/policy-csp-smartscreen.md index 2cdf136faf..3f4e279889 100644 --- a/windows/client-management/mdm/policy-csp-smartscreen.md +++ b/windows/client-management/mdm/policy-csp-smartscreen.md @@ -88,7 +88,7 @@ Added in Windows 10, version 1703. Allows IT Admins to control whether users ar ADMX Info: -- GP English name: *Configure App Install Control* +- GP Friendly name: *Configure App Install Control* - GP name: *ConfigureAppInstallControl* - GP path: *Windows Components/Windows Defender SmartScreen/Explorer* - GP ADMX file name: *SmartScreen.admx* @@ -154,7 +154,7 @@ Added in Windows 10, version 1703. Allows IT Admins to configure SmartScreen fo ADMX Info: -- GP English name: *Configure Windows Defender SmartScreen* +- GP Friendly name: *Configure Windows Defender SmartScreen* - GP name: *ShellConfigureSmartScreen* - GP path: *Windows Components/Windows Defender SmartScreen/Explorer* - GP ADMX file name: *SmartScreen.admx* @@ -220,7 +220,7 @@ Added in Windows 10, version 1703. Allows IT Admins to control whether users ca ADMX Info: -- GP English name: *Configure Windows Defender SmartScreen* +- GP Friendly name: *Configure Windows Defender SmartScreen* - GP name: *ShellConfigureSmartScreen* - GP element: *ShellConfigureSmartScreen_Dropdown* - GP path: *Windows Components/Windows Defender SmartScreen/Explorer* diff --git a/windows/client-management/mdm/policy-csp-speech.md b/windows/client-management/mdm/policy-csp-speech.md index 39cd9db038..59b7531703 100644 --- a/windows/client-management/mdm/policy-csp-speech.md +++ b/windows/client-management/mdm/policy-csp-speech.md @@ -79,7 +79,7 @@ Added in Windows 10, version 1607. Specifies whether the device will receive up ADMX Info: -- GP English name: *Allow Automatic Update of Speech Data* +- GP Friendly name: *Allow Automatic Update of Speech Data* - GP name: *AllowSpeechModelUpdate* - GP path: *Windows Components/Speech* - GP ADMX file name: *Speech.admx* diff --git a/windows/client-management/mdm/policy-csp-start.md b/windows/client-management/mdm/policy-csp-start.md index f8c10ffd3f..6e910385fe 100644 --- a/windows/client-management/mdm/policy-csp-start.md +++ b/windows/client-management/mdm/policy-csp-start.md @@ -817,6 +817,7 @@ The following list shows the supported values: [Scope](./policy-configuration-service-provider.md#policy-scope): > [!div class = "checklist"] +> * User > * Device
@@ -883,6 +884,7 @@ The following list shows the supported values: [Scope](./policy-configuration-service-provider.md#policy-scope): > [!div class = "checklist"] +> * User > * Device
@@ -1440,6 +1442,7 @@ To validate on Desktop, do the following: [Scope](./policy-configuration-service-provider.md#policy-scope): > [!div class = "checklist"] +> * User > * Device
diff --git a/windows/client-management/mdm/policy-csp-system.md b/windows/client-management/mdm/policy-csp-system.md index 456891257d..b02ba826b4 100644 --- a/windows/client-management/mdm/policy-csp-system.md +++ b/windows/client-management/mdm/policy-csp-system.md @@ -234,7 +234,7 @@ See the documentation at [ConfigureWDD](https://aka.ms/ConfigureWDD) for informa ADMX Info: -- GP English name: *Allow commercial data pipeline* +- GP Friendly name: *Allow commercial data pipeline* - GP name: *AllowCommercialDataPipeline* - GP element: *AllowCommercialDataPipeline* - GP path: *Data Collection and Preview Builds* @@ -333,7 +333,7 @@ This policy allows the device name to be sent to Microsoft as part of Windows di ADMX Info: -- GP English name: *Allow device name to be sent in Windows diagnostic data* +- GP Friendly name: *Allow device name to be sent in Windows diagnostic data* - GP name: *AllowDeviceNameInDiagnosticData* - GP element: *AllowDeviceNameInDiagnosticData* - GP path: *Data Collection and Preview Builds* @@ -526,7 +526,7 @@ This setting is used by lower-level components for text display and fond handlin ADMX Info: -- GP English name: *Enable Font Providers* +- GP Friendly name: *Enable Font Providers* - GP name: *EnableFontProviders* - GP path: *Network/Fonts* - GP ADMX file name: *GroupPolicy.admx* @@ -603,7 +603,7 @@ For example, an app's original Location setting is Off. The administrator then s ADMX Info: -- GP English name: *Turn off location* +- GP Friendly name: *Turn off location* - GP name: *DisableLocation_2* - GP path: *Windows Components/Location and Sensors* - GP ADMX file name: *Sensors.admx* @@ -822,7 +822,7 @@ Most restrictive value is 0. ADMX Info: -- GP English name: *Allow Telemetry* +- GP Friendly name: *Allow Telemetry* - GP name: *AllowTelemetry* - GP element: *AllowTelemetry* - GP path: *Data Collection and Preview Builds* @@ -889,7 +889,7 @@ If you disable or do not configure this policy setting, devices will not appear ADMX Info: -- GP English name: *Allow Update Compliance Processing* +- GP Friendly name: *Allow Update Compliance Processing* - GP name: *AllowUpdateComplianceProcessing* - GP element: *AllowUpdateComplianceProcessing* - GP path: *Data Collection and Preview Builds* @@ -1047,7 +1047,7 @@ If your malware detection application does not include an Early Launch Antimalwa ADMX Info: -- GP English name: *Boot-Start Driver Initialization Policy* +- GP Friendly name: *Boot-Start Driver Initialization Policy* - GP name: *POL_DriverLoadPolicy_Name* - GP path: *System/Early Launch Antimalware* - GP ADMX file name: *earlylauncham.admx* @@ -1107,7 +1107,7 @@ Value type is string. ADMX Info: -- GP English name: *Configure Microsoft 365 Update Readiness upload endpoint* +- GP Friendly name: *Configure Microsoft 365 Update Readiness upload endpoint* - GP name: *ConfigureMicrosoft365UploadEndpoint* - GP element: *ConfigureMicrosoft365UploadEndpoint* - GP path: *Data Collection and Preview Builds* @@ -1174,7 +1174,7 @@ If you set this policy setting to "Enable telemetry change notifications" or don ADMX Info: -- GP English name: *Configure telemetry opt-in change notifications.* +- GP Friendly name: *Configure telemetry opt-in change notifications.* - GP name: *ConfigureTelemetryOptInChangeNotification* - GP element: *ConfigureTelemetryOptInChangeNotification* - GP path: *Data Collection and Preview Builds* @@ -1242,7 +1242,7 @@ If you set this policy setting to "Enable Telemetry opt-in Settings" or don't co ADMX Info: -- GP English name: *Configure telemetry opt-in setting user interface.* +- GP Friendly name: *Configure telemetry opt-in setting user interface.* - GP name: *ConfigureTelemetryOptInSettingsUx* - GP element: *ConfigureTelemetryOptInSettingsUx* - GP path: *Data Collection and Preview Builds* @@ -1305,7 +1305,7 @@ If you disable or don't configure this policy setting, the Delete diagnostic dat ADMX Info: -- GP English name: *Disable deleting diagnostic data* +- GP Friendly name: *Disable deleting diagnostic data* - GP name: *DisableDeviceDelete* - GP element: *DisableDeviceDelete* - GP path: *Data Collection and Preview Builds* @@ -1372,7 +1372,7 @@ If you disable or don't configure this policy setting, the Diagnostic Data Viewe ADMX Info: -- GP English name: *Disable diagnostic data viewer.* +- GP Friendly name: *Disable diagnostic data viewer.* - GP name: *DisableDiagnosticDataViewer* - GP element: *DisableDiagnosticDataViewer* - GP path: *Data Collection and Preview Builds* @@ -1437,7 +1437,7 @@ This policy setting blocks the Connected User Experience and Telemetry service f ADMX Info: -- GP English name: *Configure Authenticated Proxy usage for the Connected User Experience and Telemetry service* +- GP Friendly name: *Configure Authenticated Proxy usage for the Connected User Experience and Telemetry service* - GP name: *DisableEnterpriseAuthProxy* - GP element: *DisableEnterpriseAuthProxy* - GP path: *Data Collection and Preview Builds* @@ -1501,7 +1501,7 @@ If you disable or do not configure this policy setting, apps and features can wo ADMX Info: -- GP English name: *Prevent the usage of OneDrive for file storage* +- GP Friendly name: *Prevent the usage of OneDrive for file storage* - GP name: *PreventOnedriveFileSync* - GP path: *Windows Components/OneDrive* - GP ADMX file name: *SkyDrive.admx* @@ -1588,7 +1588,7 @@ Also, see the "Turn off System Restore configuration" policy setting. If the "Tu ADMX Info: -- GP English name: *Turn off System Restore* +- GP Friendly name: *Turn off System Restore* - GP name: *SR_DisableSR* - GP path: *System/System Restore* - GP ADMX file name: *systemrestore.admx* @@ -1717,7 +1717,7 @@ If you disable or do not configure this policy setting, then the level of diagno ADMX Info: -- GP English name: *Limit Enhanced diagnostic data to the minimum required by Windows Analytics* +- GP Friendly name: *Limit Enhanced diagnostic data to the minimum required by Windows Analytics* - GP name: *LimitEnhancedDiagnosticDataWindowsAnalytics* - GP element: *LimitEnhancedDiagnosticDataWindowsAnalytics* - GP path: *Data Collection and Preview Builds* @@ -1775,7 +1775,7 @@ If you disable or do not configure this policy setting, Connected User Experienc ADMX Info: -- GP English name: *Configure Connected User Experiences and Telemetry* +- GP Friendly name: *Configure Connected User Experiences and Telemetry* - GP name: *TelemetryProxy* - GP element: *TelemetryProxyName* - GP path: *Data Collection and Preview Builds* @@ -1835,7 +1835,7 @@ If you disable or do not configure this policy setting, File History can be acti ADMX Info: -- GP English name: *Turn off File History* +- GP Friendly name: *Turn off File History* - GP name: *DisableFileHistory* - GP path: *Windows Components/File History* - GP ADMX file name: *FileHistory.admx* diff --git a/windows/client-management/mdm/policy-csp-systemservices.md b/windows/client-management/mdm/policy-csp-systemservices.md index a7f98a6c0c..1e4e35d190 100644 --- a/windows/client-management/mdm/policy-csp-systemservices.md +++ b/windows/client-management/mdm/policy-csp-systemservices.md @@ -94,7 +94,7 @@ Added in Windows 10, version 1803. This setting determines whether the service's GP Info: -- GP English name: *HomeGroup Listener* +- GP Friendly name: *HomeGroup Listener* - GP path: *Windows Settings/Security Settings/System Services* @@ -151,7 +151,7 @@ Added in Windows 10, version 1803. This setting determines whether the service's GP Info: -- GP English name: *HomeGroup Provider* +- GP Friendly name: *HomeGroup Provider* - GP path: *Windows Settings/Security Settings/System Services* @@ -208,7 +208,7 @@ Added in Windows 10, version 1803. This setting determines whether the service's GP Info: -- GP English name: *Xbox Accessory Management Service* +- GP Friendly name: *Xbox Accessory Management Service* - GP path: *Windows Settings/Security Settings/System Services* @@ -265,7 +265,7 @@ Added in Windows 10, version 1803. This setting determines whether the service's GP Info: -- GP English name: *Xbox Live Auth Manager* +- GP Friendly name: *Xbox Live Auth Manager* - GP path: *Windows Settings/Security Settings/System Services* @@ -322,7 +322,7 @@ Added in Windows 10, version 1803. This setting determines whether the service's GP Info: -- GP English name: *Xbox Live Game Save* +- GP Friendly name: *Xbox Live Game Save* - GP path: *Windows Settings/Security Settings/System Services* @@ -379,7 +379,7 @@ Added in Windows 10, version 1803. This setting determines whether the service's GP Info: -- GP English name: *Xbox Live Networking Service* +- GP Friendly name: *Xbox Live Networking Service* - GP path: *Windows Settings/Security Settings/System Services* diff --git a/windows/client-management/mdm/policy-csp-textinput.md b/windows/client-management/mdm/policy-csp-textinput.md index 99360d692b..444e70c323 100644 --- a/windows/client-management/mdm/policy-csp-textinput.md +++ b/windows/client-management/mdm/policy-csp-textinput.md @@ -716,7 +716,7 @@ Most restricted value is 0. ADMX Info: -- GP English name: *Allow Uninstallation of Language Features* +- GP Friendly name: *Allow Uninstallation of Language Features* - GP name: *AllowLanguageFeaturesUninstall* - GP path: *Windows Components/Text Input* - GP ADMX file name: *TextInput.admx* @@ -782,7 +782,7 @@ This policy setting controls the ability to send inking and typing data to Micro ADMX Info: -- GP English name: *Improve inking and typing recognition* +- GP Friendly name: *Improve inking and typing recognition* - GP name: *AllowLinguisticDataCollection* - GP path: *Windows Components/Text Input* - GP ADMX file name: *TextInput.admx* diff --git a/windows/client-management/mdm/policy-csp-troubleshooting.md b/windows/client-management/mdm/policy-csp-troubleshooting.md index c7862d0866..6c74dd7725 100644 --- a/windows/client-management/mdm/policy-csp-troubleshooting.md +++ b/windows/client-management/mdm/policy-csp-troubleshooting.md @@ -77,7 +77,7 @@ This policy setting allows IT admins to configure how to apply recommended troub ADMX Info: -- GP English name: *Troubleshooting: Allow users to access recommended troubleshooting for known problems* +- GP Friendly name: *Troubleshooting: Allow users to access recommended troubleshooting for known problems* - GP name: *TroubleshootingAllowRecommendations* - GP path: *Troubleshooting and Diagnostics/Microsoft Support Diagnostic Tool* - GP ADMX file name: *MSDT.admx* diff --git a/windows/client-management/mdm/policy-csp-update.md b/windows/client-management/mdm/policy-csp-update.md index 94f7b317fd..1813782b4c 100644 --- a/windows/client-management/mdm/policy-csp-update.md +++ b/windows/client-management/mdm/policy-csp-update.md @@ -271,7 +271,7 @@ The default is 17 (5 PM). ADMX Info: -- GP English name: *Turn off auto-restart for updates during active hours* +- GP Friendly name: *Turn off auto-restart for updates during active hours* - GP name: *ActiveHours* - GP element: *ActiveHoursEndTime* - GP path: *Windows Components/Windows Update* @@ -335,7 +335,7 @@ The default value is 18 (hours). ADMX Info: -- GP English name: *Specify active hours range for auto-restarts* +- GP Friendly name: *Specify active hours range for auto-restarts* - GP name: *ActiveHoursMaxRange* - GP element: *ActiveHoursMaxRange* - GP path: *Windows Components/Windows Update* @@ -402,7 +402,7 @@ The default value is 8 (8 AM). ADMX Info: -- GP English name: *Turn off auto-restart for updates during active hours* +- GP Friendly name: *Turn off auto-restart for updates during active hours* - GP name: *ActiveHours* - GP element: *ActiveHoursStartTime* - GP path: *Windows Components/Windows Update* @@ -466,7 +466,7 @@ If the policy is not configured, end-users get the default behavior (Auto instal ADMX Info: -- GP English name: *Configure Automatic Updates* +- GP Friendly name: *Configure Automatic Updates* - GP name: *AutoUpdateCfg* - GP element: *AutoUpdateMode* - GP path: *Windows Components/Windows Update* @@ -546,7 +546,7 @@ This policy is accessible through the Update setting in the user interface or Gr ADMX Info: -- GP English name: *Allow updates to be downloaded automatically over metered connections* +- GP Friendly name: *Allow updates to be downloaded automatically over metered connections* - GP name: *AllowAutoWindowsUpdateDownloadOverMeteredNetwork* - GP path: *Windows Components/Windows Update* - GP ADMX file name: *WindowsUpdate.admx* @@ -612,7 +612,7 @@ Added in Windows 10, version 1607. Allows the IT admin to manage whether to sca ADMX Info: -- GP English name: *Configure Automatic Updates* +- GP Friendly name: *Configure Automatic Updates* - GP name: *AutoUpdateCfg* - GP element: *AllowMUUpdateServiceId* - GP path: *Windows Components/Windows Update* @@ -748,7 +748,7 @@ Enabling this policy will disable that functionality, and may cause connection t ADMX Info: -- GP English name: *Specify intranet Microsoft update service location* +- GP Friendly name: *Specify intranet Microsoft update service location* - GP name: *CorpWuURL* - GP path: *Windows Components/Windows Update* - GP ADMX file name: *WindowsUpdate.admx* @@ -830,7 +830,7 @@ If any of the following two policies are enabled, this policy has no effect: ADMX Info: -- GP English name: *Specify deadline before auto-restart for update installation* +- GP Friendly name: *Specify deadline before auto-restart for update installation* - GP name: *AutoRestartDeadline* - GP element: *AutoRestartDeadline* - GP path: *Windows Components/Windows Update* @@ -906,7 +906,7 @@ If any of the following two policies are enabled, this policy has no effect: ADMX Info: -- GP English name: *Specify deadline before auto-restart for update installation* +- GP Friendly name: *Specify deadline before auto-restart for update installation* - GP name: *AutoRestartDeadline* - GP element: *AutoRestartDeadlineForFeatureUpdates* - GP path: *Windows Components/Windows Update* @@ -968,7 +968,7 @@ The default value is 15 (minutes). ADMX Info: -- GP English name: *Configure auto-restart reminder notifications for updates* +- GP Friendly name: *Configure auto-restart reminder notifications for updates* - GP name: *AutoRestartNotificationConfig* - GP element: *AutoRestartNotificationSchd* - GP path: *Windows Components/Windows Update* @@ -1032,7 +1032,7 @@ Added in Windows 10, version 1703. Allows the IT Admin to specify the method by ADMX Info: -- GP English name: *Configure auto-restart required notification for updates* +- GP Friendly name: *Configure auto-restart required notification for updates* - GP name: *AutoRestartRequiredNotificationDismissal* - GP element: *AutoRestartRequiredNotificationDismissal* - GP path: *Windows Components/Windows Update* @@ -1105,7 +1105,7 @@ If you disable or do not configure this policy setting, the wake setting as spec ADMX Info: -- GP English name: *Automatic Maintenance WakeUp Policy* +- GP Friendly name: *Automatic Maintenance WakeUp Policy* - GP name: *WakeUpPolicy* - GP path: *Windows Components/Maintenance Scheduler* - GP ADMX file name: *msched.admx* @@ -1175,7 +1175,7 @@ Added in Windows 10, version 1607. Allows the IT admin to set which branch a de ADMX Info: -- GP English name: *Select when Preview Builds and Feature Updates are received* +- GP Friendly name: *Select when Preview Builds and Feature Updates are received* - GP name: *DeferFeatureUpdates* - GP element: *BranchReadinessLevelId* - GP path: *Windows Components/Windows Update/Windows Update for Business* @@ -1245,7 +1245,7 @@ Added in Windows 10, version 1903. Also available in Windows 10, versions 1809, ADMX Info: -- GP English name: *Specify deadlines for automatic updates and restarts* +- GP Friendly name: *Specify deadlines for automatic updates and restarts* - GP name: *ConfigureDeadlineForFeatureUpdates* - GP element: *ConfigureDeadlineForFeatureUpdates* - GP path: *Administrative Templates\Windows Components\WindowsUpdate* @@ -1316,7 +1316,7 @@ Added in Windows 10, version 1903. Also available in Windows 10, versions 1809, ADMX Info: -- GP English name: *Specify deadlines for automatic updates and restarts* +- GP Friendly name: *Specify deadlines for automatic updates and restarts* - GP name: *ConfigureDeadlineForQualityUpdates* - GP element: *ConfigureDeadlineForQualityUpdates* - GP path: *Administrative Templates\Windows Components\WindowsUpdate* @@ -1388,7 +1388,7 @@ Added in Windows 10, version 1903. Also available in Windows 10, versions 1809, ADMX Info: -- GP English name: *Specify deadlines for automatic updates and restarts* +- GP Friendly name: *Specify deadlines for automatic updates and restarts* - GP name: *ConfigureDeadlineGracePeriod* - GP element: *ConfigureDeadlineGracePeriod* - GP path: *Administrative Templates\Windows Components\WindowsUpdate* @@ -1461,7 +1461,7 @@ When disabled, if the device has installed the required updates and is outside o ADMX Info: -- GP English name: *Specify deadlines for automatic updates and restarts* +- GP Friendly name: *Specify deadlines for automatic updates and restarts* - GP name: *ConfigureDeadlineNoAutoReboot* - GP element: *ConfigureDeadlineNoAutoReboot* - GP path: *Administrative Templates\Windows Components\WindowsUpdate* @@ -1590,7 +1590,7 @@ Supported values are 0-365 days. ADMX Info: -- GP English name: *Select when Preview Builds and Feature Updates are received* +- GP Friendly name: *Select when Preview Builds and Feature Updates are received* - GP name: *DeferFeatureUpdates* - GP element: *DeferFeatureUpdatesPeriodId* - GP path: *Windows Components/Windows Update/Windows Update for Business* @@ -1652,7 +1652,7 @@ Supported values are 0-30. ADMX Info: -- GP English name: *Select when Quality Updates are received* +- GP Friendly name: *Select when Quality Updates are received* - GP name: *DeferQualityUpdates* - GP element: *DeferQualityUpdatesPeriodId* - GP path: *Windows Components/Windows Update/Windows Update for Business* @@ -1929,7 +1929,7 @@ Added in Windows 10, version 1703. Specifies the scan frequency from every 1 - 2 ADMX Info: -- GP English name: *Automatic Updates detection frequency* +- GP Friendly name: *Automatic Updates detection frequency* - GP name: *DetectionFrequency_Title* - GP element: *DetectionFrequency_Hour2* - GP path: *Windows Components/Windows Update* @@ -1995,7 +1995,7 @@ Value type is integer. Supported operations are Add, Get, Replace, and Delete. ADMX Info: -- GP English name: *Do not allow update deferral policies to cause scans against Windows Update* +- GP Friendly name: *Do not allow update deferral policies to cause scans against Windows Update* - GP name: *DisableDualScan* - GP path: *Windows Components/Windows Update* - GP ADMX file name: *WindowsUpdate.admx* @@ -2074,7 +2074,7 @@ IT admins can, if necessary, opt devices out of safeguard protections using this ADMX Info: -- GP English name: *Disable safeguards for Feature Updates* +- GP Friendly name: *Disable safeguards for Feature Updates* - GP name: *DisableWUfBSafeguards* - GP path: *Windows Components/Windows Update/Windows Update for Business* - GP ADMX file name: *WindowsUpdate.admx* @@ -2158,7 +2158,7 @@ If any of the following policies are configured, this policy has no effect: ADMX Info: -- GP English name: *Specify Engaged restart transition and notification schedule for updates* +- GP Friendly name: *Specify Engaged restart transition and notification schedule for updates* - GP name: *EngagedRestartTransitionSchedule* - GP element: *EngagedRestartDeadline* - GP path: *Windows Components/Windows Update* @@ -2231,7 +2231,7 @@ If any of the following policies are configured, this policy has no effect: ADMX Info: -- GP English name: *Specify Engaged restart transition and notification schedule for updates* +- GP Friendly name: *Specify Engaged restart transition and notification schedule for updates* - GP name: *EngagedRestartTransitionSchedule* - GP element: *EngagedRestartDeadlineForFeatureUpdates* - GP path: *Windows Components/Windows Update* @@ -2302,7 +2302,7 @@ If any of the following policies are configured, this policy has no effect: ADMX Info: -- GP English name: *Specify Engaged restart transition and notification schedule for updates* +- GP Friendly name: *Specify Engaged restart transition and notification schedule for updates* - GP name: *EngagedRestartTransitionSchedule* - GP element: *EngagedRestartSnoozeSchedule* - GP path: *Windows Components/Windows Update* @@ -2373,7 +2373,7 @@ If any of the following policies are configured, this policy has no effect: ADMX Info: -- GP English name: *Specify Engaged restart transition and notification schedule for updates* +- GP Friendly name: *Specify Engaged restart transition and notification schedule for updates* - GP name: *EngagedRestartTransitionSchedule* - GP element: *EngagedRestartSnoozeScheduleForFeatureUpdates* - GP path: *Windows Components/Windows Update* @@ -2444,7 +2444,7 @@ If any of the following policies are configured, this policy has no effect: ADMX Info: -- GP English name: *Specify Engaged restart transition and notification schedule for updates* +- GP Friendly name: *Specify Engaged restart transition and notification schedule for updates* - GP name: *EngagedRestartTransitionSchedule* - GP element: *EngagedRestartTransitionSchedule* - GP path: *Windows Components/Windows Update* @@ -2515,7 +2515,7 @@ If any of the following policies are configured, this policy has no effect: ADMX Info: -- GP English name: *Specify Engaged restart transition and notification schedule for updates* +- GP Friendly name: *Specify Engaged restart transition and notification schedule for updates* - GP name: *EngagedRestartTransitionSchedule* - GP element: *EngagedRestartTransitionScheduleForFeatureUpdates* - GP path: *Windows Components/Windows Update* @@ -2578,7 +2578,7 @@ Added in Windows 10, version 1607. Allows IT Admins to exclude Windows Update ( ADMX Info: -- GP English name: *Do not include drivers with Windows Updates* +- GP Friendly name: *Do not include drivers with Windows Updates* - GP name: *ExcludeWUDriversInQualityUpdate* - GP path: *Windows Components/Windows Update* - GP ADMX file name: *WindowsUpdate.admx* @@ -2647,7 +2647,7 @@ Added in the April service release of Windows 10, version 1607. Allows Windows U ADMX Info: -- GP English name: *Specify intranet Microsoft update service location* +- GP Friendly name: *Specify intranet Microsoft update service location* - GP name: *CorpWuURL* - GP element: *CorpWUFillEmptyContentUrls* - GP path: *Windows Components/Windows Update* @@ -2856,7 +2856,7 @@ Added in Windows 10, version 1709. Used to manage Windows 10 Insider Preview bu ADMX Info: -- GP English name: *Manage preview builds* +- GP Friendly name: *Manage preview builds* - GP name: *ManagePreviewBuilds* - GP element: *ManagePreviewBuildsId* - GP path: *Windows Components/Windows Update/Windows Update for Business* @@ -3001,7 +3001,7 @@ Added in Windows 10, version 1607. Allows IT Admins to pause feature updates fo ADMX Info: -- GP English name: *Select when Preview Builds and Feature Updates are received* +- GP Friendly name: *Select when Preview Builds and Feature Updates are received* - GP name: *DeferFeatureUpdates* - GP element: *PauseFeatureUpdatesId* - GP path: *Windows Components/Windows Update/Windows Update for Business* @@ -3070,7 +3070,7 @@ Value type is string (yyyy-mm-dd, ex. 2018-10-28). Supported operations are Add, ADMX Info: -- GP English name: *Select when Preview Builds and Feature Updates are received* +- GP Friendly name: *Select when Preview Builds and Feature Updates are received* - GP name: *DeferFeatureUpdates* - GP element: *PauseFeatureUpdatesStartId* - GP path: *Windows Components/Windows Update/Windows Update for Business* @@ -3130,7 +3130,7 @@ Added in Windows 10, version 1607. Allows IT Admins to pause quality updates. F ADMX Info: -- GP English name: *Select when Quality Updates are received* +- GP Friendly name: *Select when Quality Updates are received* - GP name: *DeferQualityUpdates* - GP element: *PauseQualityUpdatesId* - GP path: *Windows Components/Windows Update/Windows Update for Business* @@ -3199,7 +3199,7 @@ Value type is string (yyyy-mm-dd, ex. 2018-10-28). Supported operations are Add, ADMX Info: -- GP English name: *Select when Quality Updates are received* +- GP Friendly name: *Select when Quality Updates are received* - GP name: *DeferQualityUpdates* - GP element: *PauseQualityUpdatesStartId* - GP path: *Windows Components/Windows Update/Windows Update for Business* @@ -3405,7 +3405,7 @@ The default value is 15 (minutes). ADMX Info: -- GP English name: *Configure auto-restart warning notifications schedule for updates* +- GP Friendly name: *Configure auto-restart warning notifications schedule for updates* - GP name: *RestartWarnRemind* - GP element: *RestartWarn* - GP path: *Windows Components/Windows Update* @@ -3475,7 +3475,7 @@ The default value is 4 (hours). ADMX Info: -- GP English name: *Configure auto-restart warning notifications schedule for updates* +- GP Friendly name: *Configure auto-restart warning notifications schedule for updates* - GP name: *RestartWarnRemind* - GP element: *RestartWarnRemind* - GP path: *Windows Components/Windows Update* @@ -3543,7 +3543,7 @@ Supported operations are Add, Delete, Get, and Replace. ADMX Info: -- GP English name: *Configure Automatic Updates* +- GP Friendly name: *Configure Automatic Updates* - GP name: *AutoUpdateCfg* - GP element: *AutoUpdateSchDay* - GP path: *Windows Components/Windows Update* @@ -3620,7 +3620,7 @@ Added in Windows 10, version 1709. Enables the IT admin to schedule the update i ADMX Info: -- GP English name: *Configure Automatic Updates* +- GP Friendly name: *Configure Automatic Updates* - GP name: *AutoUpdateCfg* - GP element: *AutoUpdateSchEveryWeek* - GP path: *Windows Components/Windows Update* @@ -3684,7 +3684,7 @@ Added in Windows 10, version 1709. Enables the IT admin to schedule the update i ADMX Info: -- GP English name: *Configure Automatic Updates* +- GP Friendly name: *Configure Automatic Updates* - GP name: *AutoUpdateCfg* - GP element: *AutoUpdateSchFirstWeek* - GP path: *Windows Components/Windows Update* @@ -3748,7 +3748,7 @@ Added in Windows 10, version 1709. Enables the IT admin to schedule the update i ADMX Info: -- GP English name: *Configure Automatic Updates* +- GP Friendly name: *Configure Automatic Updates* - GP name: *AutoUpdateCfg* - GP element: *ScheduledInstallFourthWeek* - GP path: *Windows Components/Windows Update* @@ -3812,7 +3812,7 @@ Added in Windows 10, version 1709. Enables the IT admin to schedule the update i ADMX Info: -- GP English name: *Configure Automatic Updates* +- GP Friendly name: *Configure Automatic Updates* - GP name: *AutoUpdateCfg* - GP element: *ScheduledInstallSecondWeek* - GP path: *Windows Components/Windows Update* @@ -3876,7 +3876,7 @@ Added in Windows 10, version 1709. Enables the IT admin to schedule the update i ADMX Info: -- GP English name: *Configure Automatic Updates* +- GP Friendly name: *Configure Automatic Updates* - GP name: *AutoUpdateCfg* - GP element: *ScheduledInstallThirdWeek* - GP path: *Windows Components/Windows Update* @@ -3948,7 +3948,7 @@ The default value is 3. ADMX Info: -- GP English name: *Configure Automatic Updates* +- GP Friendly name: *Configure Automatic Updates* - GP name: *AutoUpdateCfg* - GP element: *AutoUpdateSchTime* - GP path: *Windows Components/Windows Update* @@ -4008,7 +4008,7 @@ Added in Windows 10, version 1703. Allows the IT Admin to disable auto-restart ADMX Info: -- GP English name: *Turn off auto-restart notifications for update installations* +- GP Friendly name: *Turn off auto-restart notifications for update installations* - GP name: *AutoRestartNotificationDisable* - GP element: *AutoRestartNotificationSchd* - GP path: *Windows Components/Windows Update* @@ -4195,7 +4195,7 @@ When you set this policy along with Update/ActiveHoursStart, Update/ActiveHoursE ADMX Info: -- GP English name: *Update Power Policy for Cart Restarts* +- GP Friendly name: *Update Power Policy for Cart Restarts* - GP name: *SetEDURestart* - GP path: *Windows Components/Windows Update* - GP ADMX file name: *WindowsUpdate.admx* @@ -4264,7 +4264,7 @@ This policy setting does not impact those customers who have, per Microsoft reco ADMX Info: -- GP English name: *Select the proxy behavior for Windows Update client for detecting updates with non-TLS (HTTP) based service* +- GP Friendly name: *Select the proxy behavior for Windows Update client for detecting updates with non-TLS (HTTP) based service* - GP name: *Select the proxy behavior* - GP element: *Select the proxy behavior* - GP path: *Windows Components/Windows Update/Specify intranet Microsoft update service location* @@ -4332,7 +4332,7 @@ Available in Windows 10, version 1803 and later. Enables IT administrators to sp ADMX Info: -- GP English name: *Select the target Feature Update version* +- GP Friendly name: *Select the target Feature Update version* - GP name: *TargetReleaseVersion* - GP element: *TargetReleaseVersionId* - GP path: *Windows Components/Windows Update/Windows Update for Business* @@ -4410,7 +4410,7 @@ Options: ADMX Info: -- GP English name: *Display options for update notifications* +- GP Friendly name: *Display options for update notifications* - GP name: *UpdateNotificationLevel* - GP path: *Windows Components/Windows Update* - GP ADMX file name: *WindowsUpdate.admx* @@ -4483,7 +4483,7 @@ Supported operations are Get and Replace. ADMX Info: -- GP English name: *Specify intranet Microsoft update service location* +- GP Friendly name: *Specify intranet Microsoft update service location* - GP name: *CorpWuURL* - GP element: *CorpWUURL_Name* - GP path: *Windows Components/Windows Update* @@ -4581,7 +4581,7 @@ Value type is string and the default value is an empty string, "". If the settin ADMX Info: -- GP English name: *Specify intranet Microsoft update service location* +- GP Friendly name: *Specify intranet Microsoft update service location* - GP name: *CorpWuURL* - GP element: *CorpWUContentHost_Name* - GP path: *Windows Components/Windows Update* @@ -4602,4 +4602,4 @@ Footnotes: - 7 - Available in Windows 10, version 1909. - 8 - Available in Windows 10, version 2004. - \ No newline at end of file +1` \ No newline at end of file diff --git a/windows/client-management/mdm/policy-csp-userrights.md b/windows/client-management/mdm/policy-csp-userrights.md index 4a44915184..7ac5e6f283 100644 --- a/windows/client-management/mdm/policy-csp-userrights.md +++ b/windows/client-management/mdm/policy-csp-userrights.md @@ -243,7 +243,7 @@ This user right is used by Credential Manager during Backup/Restore. No accounts GP Info: -- GP English name: *Access Credential Manager as a trusted caller* +- GP Friendly name: *Access Credential Manager as a trusted caller* - GP path: *Windows Settings/Security Settings/Local Policies/User Rights Assignment* @@ -302,7 +302,7 @@ This user right determines which users and groups are allowed to connect to the GP Info: -- GP English name: *Access this computer from the network* +- GP Friendly name: *Access this computer from the network* - GP path: *Windows Settings/Security Settings/Local Policies/User Rights Assignment* @@ -361,7 +361,7 @@ This user right allows a process to impersonate any user without authentication. GP Info: -- GP English name: *Act as part of the operating system* +- GP Friendly name: *Act as part of the operating system* - GP path: *Windows Settings/Security Settings/Local Policies/User Rights Assignment* @@ -420,7 +420,7 @@ This user right determines which users can log on to the computer. GP Info: -- GP English name: *Allow log on locally* +- GP Friendly name: *Allow log on locally* - GP path: *Windows Settings/Security Settings/Local Policies/User Rights Assignment* @@ -479,7 +479,7 @@ This user right determines which users can bypass file, directory, registry, and GP Info: -- GP English name: *Back up files and directories* +- GP Friendly name: *Back up files and directories* - GP path: *Windows Settings/Security Settings/Local Policies/User Rights Assignment* @@ -536,7 +536,7 @@ This user right determines which users and groups can change the time and date o GP Info: -- GP English name: *Change the system time* +- GP Friendly name: *Change the system time* - GP path: *Windows Settings/Security Settings/Local Policies/User Rights Assignment* @@ -595,7 +595,7 @@ This security setting determines whether users can create global objects that ar GP Info: -- GP English name: *Create global objects* +- GP Friendly name: *Create global objects* - GP path: *Windows Settings/Security Settings/Local Policies/User Rights Assignment* @@ -652,7 +652,7 @@ This user right determines which users and groups can call an internal applicati GP Info: -- GP English name: *Create a pagefile* +- GP Friendly name: *Create a pagefile* - GP path: *Windows Settings/Security Settings/Local Policies/User Rights Assignment* @@ -709,7 +709,7 @@ This user right determines which accounts can be used by processes to create a d GP Info: -- GP English name: *Create permanent shared objects* +- GP Friendly name: *Create permanent shared objects* - GP path: *Windows Settings/Security Settings/Local Policies/User Rights Assignment* @@ -770,7 +770,7 @@ This user right determines if the user can create a symbolic link from the compu GP Info: -- GP English name: *Create symbolic links* +- GP Friendly name: *Create symbolic links* - GP path: *Windows Settings/Security Settings/Local Policies/User Rights Assignment* @@ -829,7 +829,7 @@ This user right determines which accounts can be used by processes to create a t GP Info: -- GP English name: *Create a token object* +- GP Friendly name: *Create a token object* - GP path: *Windows Settings/Security Settings/Local Policies/User Rights Assignment* @@ -888,7 +888,7 @@ This user right determines which users can attach a debugger to any process or t GP Info: -- GP English name: *Debug programs* +- GP Friendly name: *Debug programs* - GP path: *Windows Settings/Security Settings/Local Policies/User Rights Assignment* @@ -945,7 +945,7 @@ This user right determines which users are prevented from accessing a computer o GP Info: -- GP English name: *Deny access to this computer from the network* +- GP Friendly name: *Deny access to this computer from the network* - GP path: *Windows Settings/Security Settings/Local Policies/User Rights Assignment* @@ -1004,7 +1004,7 @@ This security setting determines which service accounts are prevented from regis GP Info: -- GP English name: *Deny log on Locally* +- GP Friendly name: *Deny log on Locally* - GP path: *Windows Settings/Security Settings/Local Policies/User Rights Assignment* @@ -1061,7 +1061,7 @@ This user right determines which users and groups are prohibited from logging on GP Info: -- GP English name: *Deny log on through Remote Desktop Services* +- GP Friendly name: *Deny log on through Remote Desktop Services* - GP path: *Windows Settings/Security Settings/Local Policies/User Rights Assignment* @@ -1120,7 +1120,7 @@ This user right determines which users can set the Trusted for Delegation settin GP Info: -- GP English name: *Enable computer and user accounts to be trusted for delegation* +- GP Friendly name: *Enable computer and user accounts to be trusted for delegation* - GP path: *Windows Settings/Security Settings/Local Policies/User Rights Assignment* @@ -1177,7 +1177,7 @@ This user right determines which accounts can be used by a process to add entrie GP Info: -- GP English name: *Generate security audits* +- GP Friendly name: *Generate security audits* - GP path: *Windows Settings/Security Settings/Local Policies/User Rights Assignment* @@ -1244,7 +1244,7 @@ Because of these factors, users do not usually need this user right. GP Info: -- GP English name: *Impersonate a client after authentication* +- GP Friendly name: *Impersonate a client after authentication* - GP path: *Windows Settings/Security Settings/Local Policies/User Rights Assignment* @@ -1301,7 +1301,7 @@ This user right determines which accounts can use a process with Write Property GP Info: -- GP English name: *Increase scheduling priority* +- GP Friendly name: *Increase scheduling priority* - GP path: *Windows Settings/Security Settings/Local Policies/User Rights Assignment* > [!WARNING] @@ -1365,7 +1365,7 @@ This user right determines which users can dynamically load and unload device dr GP Info: -- GP English name: *Load and unload device drivers* +- GP Friendly name: *Load and unload device drivers* - GP path: *Windows Settings/Security Settings/Local Policies/User Rights Assignment* @@ -1422,7 +1422,7 @@ This user right determines which accounts can use a process to keep data in phys GP Info: -- GP English name: *Lock pages in memory* +- GP Friendly name: *Lock pages in memory* - GP path: *Windows Settings/Security Settings/Local Policies/User Rights Assignment* @@ -1479,7 +1479,7 @@ This user right determines which users can specify object access auditing option GP Info: -- GP English name: *Manage auditing and security log* +- GP Friendly name: *Manage auditing and security log* - GP path: *Windows Settings/Security Settings/Local Policies/User Rights Assignment* @@ -1536,7 +1536,7 @@ This user right determines which users and groups can run maintenance tasks on a GP Info: -- GP English name: *Perform volume maintenance tasks* +- GP Friendly name: *Perform volume maintenance tasks* - GP path: *Windows Settings/Security Settings/Local Policies/User Rights Assignment* @@ -1595,7 +1595,7 @@ This user right determines who can modify firmware environment values. Firmware GP Info: -- GP English name: *Modify firmware environment values* +- GP Friendly name: *Modify firmware environment values* - GP path: *Windows Settings/Security Settings/Local Policies/User Rights Assignment* @@ -1652,7 +1652,7 @@ This user right determines which user accounts can modify the integrity label of GP Info: -- GP English name: *Modify an object label* +- GP Friendly name: *Modify an object label* - GP path: *Windows Settings/Security Settings/Local Policies/User Rights Assignment* @@ -1709,7 +1709,7 @@ This user right determines which users can use performance monitoring tools to m GP Info: -- GP English name: *Profile single process* +- GP Friendly name: *Profile single process* - GP path: *Windows Settings/Security Settings/Local Policies/User Rights Assignment* @@ -1766,7 +1766,7 @@ This user right determines which users are allowed to shut down a computer from GP Info: -- GP English name: *Force shutdown from a remote system* +- GP Friendly name: *Force shutdown from a remote system* - GP path: *Windows Settings/Security Settings/Local Policies/User Rights Assignment* @@ -1825,7 +1825,7 @@ This user right determines which users can bypass file, directory, registry, and GP Info: -- GP English name: *Restore files and directories* +- GP Friendly name: *Restore files and directories* - GP path: *Windows Settings/Security Settings/Local Policies/User Rights Assignment* @@ -1884,7 +1884,7 @@ This user right determines which users can take ownership of any securable objec GP Info: -- GP English name: *Take ownership of files or other objects* +- GP Friendly name: *Take ownership of files or other objects* - GP path: *Windows Settings/Security Settings/Local Policies/User Rights Assignment* diff --git a/windows/client-management/mdm/policy-csp-wifi.md b/windows/client-management/mdm/policy-csp-wifi.md index db63da7a5a..0db9332538 100644 --- a/windows/client-management/mdm/policy-csp-wifi.md +++ b/windows/client-management/mdm/policy-csp-wifi.md @@ -112,7 +112,7 @@ Most restricted value is 0. ADMX Info: -- GP English name: *Allow Windows to automatically connect to suggested open hotspots, to networks shared by contacts, and to hotspots offering paid services* +- GP Friendly name: *Allow Windows to automatically connect to suggested open hotspots, to networks shared by contacts, and to hotspots offering paid services* - GP name: *WiFiSense* - GP path: *Network/WLAN Service/WLAN Settings* - GP ADMX file name: *wlansvc.admx* @@ -180,7 +180,7 @@ Most restricted value is 0. ADMX Info: -- GP English name: *Prohibit use of Internet Connection Sharing on your DNS domain network* +- GP Friendly name: *Prohibit use of Internet Connection Sharing on your DNS domain network* - GP name: *NC_ShowSharedAccessUI* - GP path: *Network/Network Connections* - GP ADMX file name: *NetworkConnections.admx* diff --git a/windows/client-management/mdm/policy-csp-windowsconnectionmanager.md b/windows/client-management/mdm/policy-csp-windowsconnectionmanager.md index 4f89b78bcf..9af69e0c2b 100644 --- a/windows/client-management/mdm/policy-csp-windowsconnectionmanager.md +++ b/windows/client-management/mdm/policy-csp-windowsconnectionmanager.md @@ -1,6 +1,6 @@ --- title: Policy CSP - WindowsConnectionManager -description: The Policy CSP - WindowsConnectionManager setting prevents computers from connecting to a domain based network and a non-domain based network simultaneously. +description: The Policy CSP - WindowsConnectionManager setting prevents computers from connecting to a domain-based network and a non-domain-based network simultaneously. ms.author: dansimp ms.topic: article ms.prod: w10 @@ -74,17 +74,17 @@ manager: dansimp -This policy setting prevents computers from connecting to both a domain based network and a non-domain based network at the same time. +This policy setting prevents computers from connecting to both a domain-based network and a non-domain-based network at the same time. If this policy setting is enabled, the computer responds to automatic and manual network connection attempts based on the following circumstances: Automatic connection attempts -- When the computer is already connected to a domain based network, all automatic connection attempts to non-domain networks are blocked. -- When the computer is already connected to a non-domain based network, automatic connection attempts to domain based networks are blocked. +- When the computer is already connected to a domain-based network, all automatic connection attempts to non-domain networks are blocked. +- When the computer is already connected to a non-domain-based network, automatic connection attempts to domain-based networks are blocked. Manual connection attempts -- When the computer is already connected to either a non-domain based network or a domain based network over media other than Ethernet, and a user attempts to create a manual connection to an additional network in violation of this policy setting, the existing network connection is disconnected and the manual connection is allowed. -- When the computer is already connected to either a non-domain based network or a domain based network over Ethernet, and a user attempts to create a manual connection to an additional network in violation of this policy setting, the existing Ethernet connection is maintained and the manual connection attempt is blocked. +- When the computer is already connected to either a non-domain-based network or a domain-based network over media other than Ethernet, and a user attempts to create a manual connection to an additional network in violation of this policy setting, the existing network connection is disconnected and the manual connection is allowed. +- When the computer is already connected to either a non-domain-based network or a domain-based network over Ethernet, and a user attempts to create a manual connection to an additional network in violation of this policy setting, the existing Ethernet connection is maintained and the manual connection attempt is blocked. If this policy setting is not configured or is disabled, computers are allowed to connect simultaneously to both domain and non-domain networks. @@ -98,7 +98,7 @@ If this policy setting is not configured or is disabled, computers are allowed t ADMX Info: -- GP English name: *Prohibit connection to non-domain networks when connected to domain authenticated network* +- GP Friendly name: *Prohibit connection to non-domain networks when connected to domain authenticated network* - GP name: *WCM_BlockNonDomain* - GP path: *Network/Windows Connection Manager* - GP ADMX file name: *WCM.admx* diff --git a/windows/client-management/mdm/policy-csp-windowsdefendersecuritycenter.md b/windows/client-management/mdm/policy-csp-windowsdefendersecuritycenter.md index a4cd3536f0..10c2f369a9 100644 --- a/windows/client-management/mdm/policy-csp-windowsdefendersecuritycenter.md +++ b/windows/client-management/mdm/policy-csp-windowsdefendersecuritycenter.md @@ -143,7 +143,7 @@ Value type is string. Supported operations are Add, Get, Replace and Delete. ADMX Info: -- GP English name: *Specify contact company name* +- GP Friendly name: *Specify contact company name* - GP name: *EnterpriseCustomization_CompanyName* - GP element: *Presentation_EnterpriseCustomization_CompanyName* - GP path: *Windows Components/Windows Defender Security Center/Enterprise Customization* @@ -203,7 +203,7 @@ Added in Windows 10, next major release. Use this policy setting to specify if t ADMX Info: -- GP English name: *Hide the Account protection area* +- GP Friendly name: *Hide the Account protection area* - GP name: *AccountProtection_UILockdown* - GP path: *Windows Components/Windows Defender Security Center/Account protection* - GP ADMX file name: *WindowsDefenderSecurityCenter.admx* @@ -271,7 +271,7 @@ Value type is integer. Supported operations are Add, Get, Replace and Delete. ADMX Info: -- GP English name: *Hide the App and browser protection area* +- GP Friendly name: *Hide the App and browser protection area* - GP name: *AppBrowserProtection_UILockdown* - GP path: *Windows Components/Windows Defender Security Center/App and browser protection* - GP ADMX file name: *WindowsDefenderSecurityCenter.admx* @@ -351,7 +351,7 @@ Supported values: ADMX Info: -- GP English name: *Disable the Clear TPM button* +- GP Friendly name: *Disable the Clear TPM button* - GP name: *DeviceSecurity_DisableClearTpmButton* - GP path: *Windows Components/Windows Security/Device security* - GP ADMX file name: *WindowsDefenderSecurityCenter.admx* @@ -419,7 +419,7 @@ Added in Windows 10, next major release. Use this policy setting if you want to ADMX Info: -- GP English name: *Hide the Device security area* +- GP Friendly name: *Hide the Device security area* - GP name: *DeviceSecurity_UILockdown* - GP path: *Windows Components/Windows Defender Security Center/Device security* - GP ADMX file name: *WindowsDefenderSecurityCenter.admx* @@ -490,7 +490,7 @@ Value type is integer. Supported operations are Add, Get, Replace and Delete. ADMX Info: -- GP English name: *Hide non-critical notifications* +- GP Friendly name: *Hide non-critical notifications* - GP name: *Notifications_DisableEnhancedNotifications* - GP path: *Windows Components/Windows Defender Security Center/Notifications* - GP ADMX file name: *WindowsDefenderSecurityCenter.admx* @@ -558,7 +558,7 @@ Value type is integer. Supported operations are Add, Get, Replace and Delete. ADMX Info: -- GP English name: *Hide the Family options area* +- GP Friendly name: *Hide the Family options area* - GP name: *FamilyOptions_UILockdown* - GP path: *Windows Components/Windows Defender Security Center/Family options* - GP ADMX file name: *WindowsDefenderSecurityCenter.admx* @@ -626,7 +626,7 @@ Value type is integer. Supported operations are Add, Get, Replace and Delete. ADMX Info: -- GP English name: *Hide the Device performance and health area* +- GP Friendly name: *Hide the Device performance and health area* - GP name: *DevicePerformanceHealth_UILockdown* - GP path: *Windows Components/Windows Defender Security Center/Device performance and health* - GP ADMX file name: *WindowsDefenderSecurityCenter.admx* @@ -694,7 +694,7 @@ Value type is integer. Supported operations are Add, Get, Replace and Delete. ADMX Info: -- GP English name: *Hide the Firewall and network protection area* +- GP Friendly name: *Hide the Firewall and network protection area* - GP name: *FirewallNetworkProtection_UILockdown* - GP path: *Windows Components/Windows Defender Security Center/Firewall and network protection* - GP ADMX file name: *WindowsDefenderSecurityCenter.admx* @@ -762,7 +762,7 @@ Value type is integer. Supported operations are Add, Get, Replace and Delete. ADMX Info: -- GP English name: *Hide all notifications* +- GP Friendly name: *Hide all notifications* - GP name: *Notifications_DisableNotifications* - GP path: *Windows Components/Windows Defender Security Center/Notifications* - GP ADMX file name: *WindowsDefenderSecurityCenter.admx* @@ -842,7 +842,7 @@ Supported values: ADMX Info: -- GP English name: *Hide the TPM Firmware Update recommendation.* +- GP Friendly name: *Hide the TPM Firmware Update recommendation.* - GP name: *DeviceSecurity_DisableTpmFirmwareUpdateWarning* - GP path: *Windows Components/Windows Security/Device security* - GP ADMX file name: *WindowsDefenderSecurityCenter.admx* @@ -912,7 +912,7 @@ Value type is integer. Supported operations are Add, Get, Replace and Delete. ADMX Info: -- GP English name: *Hide the Virus and threat protection area* +- GP Friendly name: *Hide the Virus and threat protection area* - GP name: *VirusThreatProtection_UILockdown* - GP path: *Windows Components/Windows Defender Security Center/Virus and threat protection* - GP ADMX file name: *WindowsDefenderSecurityCenter.admx* @@ -980,7 +980,7 @@ Value type is integer. Supported operations are Add, Get, Replace and Delete. ADMX Info: -- GP English name: *Prevent users from modifying settings* +- GP Friendly name: *Prevent users from modifying settings* - GP name: *AppBrowserProtection_DisallowExploitProtectionOverride* - GP path: *Windows Components/Windows Defender Security Center/App and browser protection* - GP ADMX file name: *WindowsDefenderSecurityCenter.admx* @@ -1048,7 +1048,7 @@ Value type is string. Supported operations are Add, Get, Replace and Delete. ADMX Info: -- GP English name: *Specify contact email address or Email ID* +- GP Friendly name: *Specify contact email address or Email ID* - GP name: *EnterpriseCustomization_Email* - GP element: *Presentation_EnterpriseCustomization_Email* - GP path: *Windows Components/Windows Defender Security Center/Enterprise Customization* @@ -1110,7 +1110,7 @@ Value type is integer. Supported operations are Add, Get, Replace, and Delete. ADMX Info: -- GP English name: *Configure customized notifications* +- GP Friendly name: *Configure customized notifications* - GP name: *EnterpriseCustomization_EnableCustomizedToasts* - GP path: *Windows Components/Windows Defender Security Center/Enterprise Customization* - GP ADMX file name: *WindowsDefenderSecurityCenter.admx* @@ -1178,7 +1178,7 @@ Value type is integer. Supported operations are Add, Get, Replace, and Delete. ADMX Info: -- GP English name: *Configure customized contact information* +- GP Friendly name: *Configure customized contact information* - GP name: *EnterpriseCustomization_EnableInAppCustomization* - GP path: *Windows Components/Windows Defender Security Center/Enterprise Customization* - GP ADMX file name: *WindowsDefenderSecurityCenter.admx* @@ -1244,7 +1244,7 @@ Added in Windows 10, version 1803. Use this policy setting to hide the Ransomwar ADMX Info: -- GP English name: *Hide the Ransomware data recovery area* +- GP Friendly name: *Hide the Ransomware data recovery area* - GP name: *VirusThreatProtection_HideRansomwareRecovery* - GP path: *Windows Components/Windows Defender Security Center/Virus and threat protection* - GP ADMX file name: *WindowsDefenderSecurityCenter.admx* @@ -1310,7 +1310,7 @@ Added in Windows 10, version 1803. Use this policy to hide the Secure boot area ADMX Info: -- GP English name: *Hide the Secure boot area* +- GP Friendly name: *Hide the Secure boot area* - GP name: *DeviceSecurity_HideSecureBoot* - GP path: *Windows Components/Windows Defender Security Center/Device security* - GP ADMX file name: *WindowsDefenderSecurityCenter.admx* @@ -1376,7 +1376,7 @@ Added in Windows 10, version 1803. Use this policy to hide the Security processo ADMX Info: -- GP English name: *Hide the Security processor (TPM) troubleshooter page* +- GP Friendly name: *Hide the Security processor (TPM) troubleshooter page* - GP name: *DeviceSecurity_HideTPMTroubleshooting* - GP path: *Windows Components/Windows Defender Security Center/Device security* - GP ADMX file name: *WindowsDefenderSecurityCenter.admx* @@ -1458,7 +1458,7 @@ Supported values: ADMX Info: -- GP English name: *Hide Windows Security Systray* +- GP Friendly name: *Hide Windows Security Systray* - GP name: *Systray_HideSystray* - GP path: *Windows Components/Windows Security/Systray* - GP ADMX file name: *WindowsDefenderSecurityCenter.admx* @@ -1528,7 +1528,7 @@ Value type is string. Supported operations are Add, Get, Replace, and Delete. ADMX Info: -- GP English name: *Specify contact phone number or Skype ID* +- GP Friendly name: *Specify contact phone number or Skype ID* - GP name: *EnterpriseCustomization_Phone* - GP element: *Presentation_EnterpriseCustomization_Phone* - GP path: *Windows Components/Windows Defender Security Center/Enterprise Customization* @@ -1590,7 +1590,7 @@ Value type is Value type is string. Supported operations are Add, Get, Replace, ADMX Info: -- GP English name: *Specify contact website* +- GP Friendly name: *Specify contact website* - GP name: *EnterpriseCustomization_URL* - GP element: *Presentation_EnterpriseCustomization_URL* - GP path: *Windows Components/Windows Defender Security Center/Enterprise Customization* diff --git a/windows/client-management/mdm/policy-csp-windowsinkworkspace.md b/windows/client-management/mdm/policy-csp-windowsinkworkspace.md index e60269d795..b352b0818c 100644 --- a/windows/client-management/mdm/policy-csp-windowsinkworkspace.md +++ b/windows/client-management/mdm/policy-csp-windowsinkworkspace.md @@ -82,7 +82,7 @@ Added in Windows 10, version 1607. Show recommended app suggestions in the ink ADMX Info: -- GP English name: *Allow suggested apps in Windows Ink Workspace* +- GP Friendly name: *Allow suggested apps in Windows Ink Workspace* - GP name: *AllowSuggestedAppsInWindowsInkWorkspace* - GP path: *Windows Components/Windows Ink Workspace* - GP ADMX file name: *WindowsInkWorkspace.admx* @@ -148,7 +148,7 @@ Added in Windows 10, version 1607. Specifies whether to allow the user to acces ADMX Info: -- GP English name: *Allow Windows Ink Workspace* +- GP Friendly name: *Allow Windows Ink Workspace* - GP name: *AllowWindowsInkWorkspace* - GP element: *AllowWindowsInkWorkspaceDropdown* - GP path: *Windows Components/Windows Ink Workspace* diff --git a/windows/client-management/mdm/policy-csp-windowslogon.md b/windows/client-management/mdm/policy-csp-windowslogon.md index c7ccb54106..4d822efc0c 100644 --- a/windows/client-management/mdm/policy-csp-windowslogon.md +++ b/windows/client-management/mdm/policy-csp-windowslogon.md @@ -114,7 +114,7 @@ If you disable this policy setting, the device does not configure automatic sign ADMX Info: -- GP English name: *Sign-in and lock last interactive user automatically after a restart* +- GP Friendly name: *Sign-in and lock last interactive user automatically after a restart* - GP name: *AutomaticRestartSignOn* - GP path: *Windows Components/Windows Logon Options* - GP ADMX file name: *WinLogon.admx* @@ -199,7 +199,7 @@ If you disable or do not configure this setting, automatic sign on defaults to t ADMX Info: -- GP English name: *Configure the mode of automatically signing in and locking last interactive user after a restart or cold boot* +- GP Friendly name: *Configure the mode of automatically signing in and locking last interactive user after a restart or cold boot* - GP name: *ConfigAutomaticRestartSignOn* - GP path: *Windows Components/Windows Logon Options* - GP ADMX file name: *WinLogon.admx* @@ -278,7 +278,7 @@ If you disable or do not configure this policy setting, users can choose which a ADMX Info: -- GP English name: *Turn off app notifications on the lock screen* +- GP Friendly name: *Turn off app notifications on the lock screen* - GP name: *DisableLockScreenAppNotifications* - GP path: *System/Logon* - GP ADMX file name: *logon.admx* @@ -373,7 +373,7 @@ Here is an example to enable this policy: ADMX Info: -- GP English name: *Do not display network selection UI* +- GP Friendly name: *Do not display network selection UI* - GP name: *DontDisplayNetworkSelectionUI* - GP path: *System/Logon* - GP ADMX file name: *logon.admx* @@ -441,7 +441,7 @@ If you do not configure this policy setting, the user who completes the initial ADMX Info: -- GP English name: *Show first sign-in animation* +- GP Friendly name: *Show first sign-in animation* - GP name: *EnableFirstLogonAnimation* - GP path: *System/Logon* - GP ADMX file name: *Logon.admx* @@ -522,7 +522,7 @@ If you disable or do not configure this policy setting, the Logon UI will not en ADMX Info: -- GP English name: *Enumerate local users on domain-joined computers* +- GP Friendly name: *Enumerate local users on domain-joined computers* - GP name: *EnumerateLocalUsers* - GP path: *System/Logon* - GP ADMX file name: *logon.admx* @@ -581,7 +581,7 @@ Added in Windows 10, version 1703. This policy setting allows you to hide the Sw ADMX Info: -- GP English name: *Hide entry points for Fast User Switching* +- GP Friendly name: *Hide entry points for Fast User Switching* - GP name: *HideFastUserSwitching* - GP path: *System/Logon* - GP ADMX file name: *Logon.admx* diff --git a/windows/client-management/mdm/policy-csp-windowspowershell.md b/windows/client-management/mdm/policy-csp-windowspowershell.md index b60def1361..3cf0a24d74 100644 --- a/windows/client-management/mdm/policy-csp-windowspowershell.md +++ b/windows/client-management/mdm/policy-csp-windowspowershell.md @@ -95,7 +95,7 @@ Note: This policy setting exists under both Computer Configuration and User Conf ADMX Info: -- GP English name: *Turn on PowerShell Script Block Logging* +- GP Friendly name: *Turn on PowerShell Script Block Logging* - GP name: *EnableScriptBlockLogging* - GP path: *Windows Components/Windows PowerShell* - GP ADMX file name: *PowerShellExecutionPolicy.admx* diff --git a/windows/deployment/update/change-history-for-update-windows-10.md b/windows/deployment/update/change-history-for-update-windows-10.md index e2ea19dc8e..1f326784c8 100644 --- a/windows/deployment/update/change-history-for-update-windows-10.md +++ b/windows/deployment/update/change-history-for-update-windows-10.md @@ -1,6 +1,6 @@ --- title: Change history for Update Windows 10 (Windows 10) -description: This topic lists new and updated topics in the Update Windows 10 documentation for Windows 10 and Windows 10 Mobile. +description: This topic lists new and updated topics in the Update Windows 10 documentation for Windows 10. ms.prod: w10 ms.mktglfcycl: manage audience: itpro diff --git a/windows/deployment/update/index.md b/windows/deployment/update/index.md index f0fb882c47..3f72fde718 100644 --- a/windows/deployment/update/index.md +++ b/windows/deployment/update/index.md @@ -16,7 +16,6 @@ ms.topic: article **Applies to** - Windows 10 -- Windows 10 Mobile > **Looking for consumer information?** See [Windows Update: FAQ](https://support.microsoft.com/help/12373/windows-update-faq) diff --git a/windows/deployment/update/update-compliance-monitor.md b/windows/deployment/update/update-compliance-monitor.md index f3b292274c..7d3ea12222 100644 --- a/windows/deployment/update/update-compliance-monitor.md +++ b/windows/deployment/update/update-compliance-monitor.md @@ -39,4 +39,4 @@ See the following topics in this guide for detailed information about configurin * [Get started with Update Compliance](update-compliance-get-started.md) * [Use Update Compliance to monitor Windows Updates](update-compliance-using.md) -* [Update Compliance Schema Reference](update-compliance-schema.md) \ No newline at end of file +* [Update Compliance Schema Reference](update-compliance-schema.md) diff --git a/windows/deployment/update/waas-configure-wufb.md b/windows/deployment/update/waas-configure-wufb.md index 07e9ae9bde..31c1ef07ab 100644 --- a/windows/deployment/update/waas-configure-wufb.md +++ b/windows/deployment/update/waas-configure-wufb.md @@ -30,7 +30,6 @@ You can use Group Policy or your mobile device management (MDM) service to confi > [!IMPORTANT] > Beginning with Windows 10, version 1903, organizations can use Windows Update for Business policies, regardless of the diagnostic data level chosen. If the diagnostic data level is set to **0 (Security)**, Windows Update for Business policies will still be honored. For instructions, see [Configure the operating system diagnostic data level](/windows/configuration/configure-windows-diagnostic-data-in-your-organization#diagnostic-data-levels). -Some Windows Update for Business policies are not applicable or behave differently for devices running Windows 10 Mobile Enterprise. Specifically, policies pertaining to Feature Updates will not be applied to Windows 10 Mobile Enterprise. All Windows 10 Mobile updates are recognized as Quality Updates, and can only be deferred or paused using the Quality Update policy settings. Additional information is provided in this topic. ## Start by grouping devices @@ -129,9 +128,6 @@ Quality updates are typically published on the second Tuesday of every month, al You can set your system to receive updates for other Microsoft products—known as Microsoft updates (such as Microsoft Office, Visual Studio)—along with Windows updates by setting the **AllowMUUpdateService** policy. When you do this, these Microsoft updates will follow the same deferral and pause rules as all other quality updates. ->[!IMPORTANT] ->This policy defers both Feature and Quality Updates on Windows 10 Mobile Enterprise. - **Policy settings for deferring quality updates** | Policy | Sets registry key under HKLM\Software | diff --git a/windows/deployment/update/waas-restart.md b/windows/deployment/update/waas-restart.md index 000a86eb6f..62a5078e43 100644 --- a/windows/deployment/update/waas-restart.md +++ b/windows/deployment/update/waas-restart.md @@ -158,7 +158,7 @@ In the Group Policy editor, you will see a number of policy settings that pertai | Turn off auto-restart for updates during active hours | ![yes](images/checkmark.png) | Use this policy to configure active hours, during which the device will not be restarted. This policy has no effect if the **No auto-restart with logged on users for scheduled automatic updates installations** or **Always automatically restart at the scheduled time** policies are enabled. | | Always automatically restart at the scheduled time | ![yes](images/checkmark.png) | Use this policy to configure a restart timer (between 15 and 180 minutes) that will start immediately after Windows Update installs important updates. This policy has no effect if the **No auto-restart with logged on users for scheduled automatic updates installations** policy is enabled. | | Specify deadline before auto-restart for update installation | ![yes](images/checkmark.png) | Use this policy to specify how many days (between 2 and 14) an automatic restart can be delayed. This policy has no effect if the **No auto-restart with logged on users for scheduled automatic updates installations** or **Always automatically restart at the scheduled time** policies are enabled. | -| No auto-restart with logged on users for scheduled automatic updates installations | ![yes](images/checkmark.png) | Use this policy to prevent automatic restart when a user is logged on. This policy applies only when the **Configure Automatic Updates** policy is configured to perform scheduled installations of updates.
There is no equivalent MDM policy setting for Windows 10 Mobile. | +| No auto-restart with logged on users for scheduled automatic updates installations | ![yes](images/checkmark.png) | Use this policy to prevent automatic restart when a user is logged on. This policy applies only when the **Configure Automatic Updates** policy is configured to perform scheduled installations of updates. | | Re-prompt for restart with scheduled installations | ![no](images/crossmark.png) | | | Delay Restart for scheduled installations | ![no](images/crossmark.png) | | | Reschedule Automatic Updates scheduled installations | ![no](images/crossmark.png) | | diff --git a/windows/deployment/upgrade/submit-errors.md b/windows/deployment/upgrade/submit-errors.md index 5839bb088a..580a08b67c 100644 --- a/windows/deployment/upgrade/submit-errors.md +++ b/windows/deployment/upgrade/submit-errors.md @@ -32,7 +32,7 @@ This topic describes how to submit problems with a Windows 10 upgrade to Microso The Feedback Hub app lets you tell Microsoft about any problems you run in to while using Windows 10 and send suggestions to help us improve your Windows experience. Previously, you could only use the Feedback Hub if you were in the Windows Insider Program. Now anyone can use this tool. You can download the Feedback Hub app from the Microsoft Store [here](https://www.microsoft.com/store/p/feedback-hub/9nblggh4r32n?SilentAuth=1&wa=wsignin1.0). -The Feedback Hub requires Windows 10 or Windows 10 mobile. If you are having problems upgrading from an older version of Windows to Windows 10, you can use the Feedback Hub to submit this information, but you must collect the log files from the legacy operating system and then attach these files to your feedback using a device that is running Windows 10. If you are upgrading to Windows 10 from a previous verion of Windows 10, the Feedback Hub will collect log files automatically. +The Feedback Hub requires Windows 10. If you are having problems upgrading from an older version of Windows to Windows 10, you can use the Feedback Hub to submit this information, but you must collect the log files from the legacy operating system and then attach these files to your feedback using a device that is running Windows 10. If you are upgrading to Windows 10 from a previous version of Windows 10, the Feedback Hub will collect log files automatically. ## Submit feedback @@ -69,7 +69,7 @@ After you click Submit, that's all you need to do. Microsoft will receive your f After your feedback is submitted, you can email or post links to it by opening the Feedback Hub, clicking My feedback at the top, clicking the feedback item you submitted, clicking **Share**, then copying the short link that is displayed. -![share](../images/share.jpg) +![share link](../images/share.jpg) ## Related topics diff --git a/windows/deployment/upgrade/upgrade-windows-phone-8-1-to-10.md b/windows/deployment/upgrade/upgrade-windows-phone-8-1-to-10.md deleted file mode 100644 index fd07fae01c..0000000000 --- a/windows/deployment/upgrade/upgrade-windows-phone-8-1-to-10.md +++ /dev/null @@ -1,110 +0,0 @@ ---- -title: Upgrade Windows Phone 8.1 to Windows 10 Mobile in an MDM environment (Windows 10) -ms.reviewer: -manager: laurawi -ms.author: greglin -description: This article describes how to upgrade eligible Windows Phone 8.1 devices to Windows 10 Mobile using MDM. -keywords: upgrade, update, windows, phone, windows 10, mdm, mobile -ms.prod: w10 -ms.mktglfcycl: deploy -ms.localizationpriority: medium -ms.sitesec: library -ms.pagetype: mdm -audience: itpro -author: greg-lindsay -ms.topic: article ---- - -# Upgrade a Windows Phone 8.1 to Windows 10 Mobile with Mobile Device Management (MDM) - -**Applies to** - -- Windows 10 Mobile - -## Summary - -This article describes how system administrators can upgrade eligible Windows Phone 8.1 devices to Windows 10 Mobile using [Mobile Device Management](/windows/client-management/mdm/) (MDM). - ->[!IMPORTANT] ->If you are not a system administrator, see the [Windows 10 Mobile Upgrade & Updates](https://www.microsoft.com/windows/windows-10-mobile-upgrade) page for details about updating your Windows 8.1 Mobile device to Windows 10 Mobile using the [Upgrade Advisor](https://www.microsoft.com/store/p/upgrade-advisor/9nblggh0f5g4). - -## Upgrading with MDM - -The Windows Phone 8.1 to Windows 10 Mobile upgrade uses an "opt-in" or "seeker" model. To determine if the device is eligible for an upgrade with MDM, see the [How to determine whether an upgrade is available for a device](#howto-upgrade-available) topic in this article. An eligible device must opt-in to be offered the upgrade. For consumers, the Windows 10 Mobile Upgrade Advisor app is available from the Windows Store to perform the opt-in. For Enterprises, Microsoft is offering a centralized management solution through MDM that can push a management policy to each eligible device to perform the opt-in. - -If you use a list of allowed applications (an app allowlist) with MDM, verify that system applications are allow-listed before you upgrade to Windows 10 Mobile. Also, be aware that there are [known issues](/windows/client-management/mdm/new-in-windows-mdm-enrollment-management) with app allowlists that could adversely affect the device after you upgrade. - -Some enterprises might want to control the availability of the Windows 10 Mobile upgrade to their users. With the opt-in model, the enterprise can block the Upgrade Advisor app to prevent their users from upgrading prematurely. For more information about how to restrict the Upgrade Advisor app, see the [How to restrict the Upgrade Advisor app](#howto-restrict) section in this article. Enterprises that have restricted the Upgrade Advisor app can use the solution described in this article to select the upgrade timing on a per-device basis. - -## More information - -To provide enterprises with a solution that's independent of the Upgrade Advisor, a new registry key in the registry configuration service provider (CSP) is available. A special GUID key value is defined. When Microsoft Update (MU) detects the presence of the registry key value on a device, any available upgrade will be made available to the device. - -### Prerequisites - -- Windows Phone 8.1 device with an available upgrade to Windows 10 Mobile. -- Device connected to Wi-Fi or cellular network to perform scan for upgrade. -- Device is already enrolled with an MDM session. -- Device is able to receive the management policy. -- MDM is capable of pushing the management policy to devices. Minimum version numbers for some popular MDM providers that support this solution are: InTune: 5.0.5565, AirWatch: 8.2, Mobile Iron: 9.0. - -### Instructions for the MDM server - -The registry CSP is used to push the GUID value to the following registry key for which the Open Mobile Alliance (OMA) Device Management (DM) client has Read/Write access and for which the Device Update service has Read access. - -``` -[HKLM\Software\Microsoft\Provisioning\OMADM] -"EnterpriseUpgrade"="d369c9b6-2379-466d-9162-afc53361e3c2” -``` - - -The complete SyncML command for the solution is as follows. Note: The SyncML may vary, depending on your MDM solution. - -``` -SyncML xmlns="SYNCML:SYNCML1.1"> - - - 250 - - - ./Vendor/MSFT/Registry/HKLM/SOFTWARE/Microsoft/Provisioning/OMADM/EnterpriseUpgrade - - - chr - - d369c9b6-2379-466d-9162-afc53361e3c2 - - - - - -``` - -The OMA DM server policy description is provided in the following table: - -|Item |Setting | -|------|------------| -| OMA-URI |./Vendor/MSFT/Registry/HKLM/SOFTWARE/Microsoft/Provisioning/OMADM/EnterpriseUpgrade | -| Data Type |String | -| Value |d369c9b6-2379-466d-9162-afc53361e3c2 | - - -After the device consumes the policy, it will be able to receive an available upgrade. - -To disable the policy, delete the **OMADM** registry key or set the **EnterpriseUpgrade** string value to anything other than the GUID. - -### How to determine whether an upgrade is available for a device - -The Windows 10 Mobile Upgrade Advisor app is not designed or intended for Enterprise customers who want to automate the upgrade process. However, the Windows 10 Mobile Upgrade Advisor app is the best mechanism to determine when an upgrade is available. The app dynamically queries whether the upgrade is released for this device model and associated mobile operator (MO). - -We recommend that enterprises use a pilot device with the Windows 10 Mobile Upgrade Advisor app installed. The pilot device provides the device model and MO used by the enterprise. When you run the app on the pilot device, it will tell you that either an upgrade is available, that the device is eligible for upgrade, or that an upgrade is not available for this device. - -Note: The availability of Windows 10 Mobile as an update for existing Windows Phone 8.1 devices varies by device manufacturer, device model, country or region, mobile operator or service provider, hardware limitations, and other factors. To check for compatibility and other important installation information, see the [Windows 10 Mobile FAQ](https://support.microsoft.com/help/10599/windows-10-mobile-how-to-get) page. - -### How to restrict the Upgrade Advisor app - -Some enterprises may want to block their users from installing the Windows 10 Mobile Upgrade Advisor app. With Windows Phone 8.1, you can allow or deny individual apps by adding specific app publishers or the app globally unique identifier (GUID) from the Window Phone Store to an allow or deny XML list. The GUID for a particular application can be found in the URL for the app in the phone store. For example, the GUID to the Windows 10 Mobile Upgrade Adviser (fbe47e4f-7769-4103-910e-dca8c43e0b07) is displayed in the following URL: - -http://windowsphone.com/s?appid=fbe47e4f-7769-4103-910e-dca8c43e0b07 - -For more information about how to do this, see [Try it out: restrict Windows Phone 8.1 apps](/previous-versions/windows/it-pro/windows-phone/cc182269(v=technet.10)). diff --git a/windows/deployment/upgrade/windows-10-edition-upgrades.md b/windows/deployment/upgrade/windows-10-edition-upgrades.md index 1454fe92ed..57307ee3d0 100644 --- a/windows/deployment/upgrade/windows-10-edition-upgrades.md +++ b/windows/deployment/upgrade/windows-10-edition-upgrades.md @@ -20,7 +20,6 @@ ms.topic: article **Applies to** - Windows 10 -- Windows 10 Mobile With Windows 10, you can quickly upgrade from one edition of Windows 10 to another, provided the upgrade path is supported. For information on what edition of Windows 10 is right for you, see [Compare Windows 10 Editions](https://go.microsoft.com/fwlink/p/?LinkID=690882). For a comprehensive list of all possible upgrade paths to Windows 10, see [Windows 10 upgrade paths](windows-10-upgrade-paths.md). Downgrading the edition of Windows is discussed in the [License expiration](#license-expiration) section on this page. @@ -77,15 +76,12 @@ X = unsupported
## Upgrade using mobile device management (MDM) - To upgrade desktop editions of Windows 10 using MDM, you'll need to enter the product key for the upgraded edition in the **UpgradeEditionWithProductKey** policy setting of the **WindowsLicensing** CSP. For more info, see [WindowsLicensing CSP](/windows/client-management/mdm/windowslicensing-csp). -- To upgrade mobile editions of Windows 10 using MDM, you'll need to enter the product key for the upgraded edition in the **UpgradeEditionWithLicense** policy setting of the **WindowsLicensing** CSP. For more info, see [WindowsLicensing CSP](/windows/client-management/mdm/windowslicensing-csp). ## Upgrade using a provisioning package -Use Windows Configuration Designer to create a provisioning package to upgrade a desktop edition or mobile edition of Windows 10. To get started, [install Windows Configuration Designer from the Microsoft Store](https://www.microsoft.com/store/apps/9nblggh4tx22). +Use Windows Configuration Designer to create a provisioning package to upgrade a desktop edition. To get started, [install Windows Configuration Designer from the Microsoft Store](https://www.microsoft.com/store/apps/9nblggh4tx22). - To create a provisioning package for upgrading desktop editions of Windows 10, go to **Runtime settings > EditionUpgrade > UpgradeEditionWithProductKey** in the **Available customizations** panel in Windows ICD and enter the product key for the upgraded edition. -- To create a provisioning package for upgrading mobile editions of Windows 10, go to **Runtime settings > EditionUpgrade > UpgradeEditionWithLicense** in the **Available customizations** panel in Windows ICD and enter the product key for the upgraded edition. - For more info about Windows Configuration Designer, see these topics: - [Create a provisioning package for Windows 10](/windows/configuration/provisioning-packages/provisioning-create-package) - [Apply a provisioning package](/windows/configuration/provisioning-packages/provisioning-apply-package) @@ -169,7 +165,7 @@ You can move directly from Enterprise to any valid destination edition. In this Enterprise - Starting edition + Starting edition Home diff --git a/windows/deployment/upgrade/windows-10-upgrade-paths.md b/windows/deployment/upgrade/windows-10-upgrade-paths.md index b0a3dcf6d5..8970d2a5cf 100644 --- a/windows/deployment/upgrade/windows-10-upgrade-paths.md +++ b/windows/deployment/upgrade/windows-10-upgrade-paths.md @@ -18,7 +18,6 @@ ms.topic: article **Applies to** - Windows 10 -- Windows 10 Mobile ## Upgrade paths @@ -49,11 +48,9 @@ D = Edition downgrade; personal data is maintained, applications and settings ar Windows 10 Pro Education Windows 10 Education Windows 10 Enterprise - Windows 10 Mobile - Windows 10 Mobile Enterprise - Windows 7 + Windows 7 Starter @@ -62,8 +59,6 @@ D = Edition downgrade; personal data is maintained, applications and settings ar ✔ ✔ - - Home Basic @@ -72,8 +67,6 @@ D = Edition downgrade; personal data is maintained, applications and settings ar ✔ ✔ - - Home Premium @@ -82,8 +75,6 @@ D = Edition downgrade; personal data is maintained, applications and settings ar ✔ ✔ - - Professional @@ -92,8 +83,6 @@ D = Edition downgrade; personal data is maintained, applications and settings ar ✔ ✔ ✔ - - Ultimate @@ -102,8 +91,6 @@ D = Edition downgrade; personal data is maintained, applications and settings ar ✔ ✔ ✔ - - Enterprise @@ -112,11 +99,9 @@ D = Edition downgrade; personal data is maintained, applications and settings ar ✔ ✔ - - - Windows 8.1 + Windows 8.1 (Core) @@ -125,8 +110,6 @@ D = Edition downgrade; personal data is maintained, applications and settings ar ✔ ✔ - - Connected @@ -135,8 +118,6 @@ D = Edition downgrade; personal data is maintained, applications and settings ar ✔ ✔ - - Pro @@ -145,8 +126,6 @@ D = Edition downgrade; personal data is maintained, applications and settings ar ✔ ✔ ✔ - - Pro Student @@ -155,8 +134,6 @@ D = Edition downgrade; personal data is maintained, applications and settings ar ✔ ✔ ✔ - - Pro WMC @@ -165,8 +142,6 @@ D = Edition downgrade; personal data is maintained, applications and settings ar ✔ ✔ ✔ - - Enterprise @@ -175,8 +150,6 @@ D = Edition downgrade; personal data is maintained, applications and settings ar ✔ ✔ - - Embedded Industry @@ -185,8 +158,6 @@ D = Edition downgrade; personal data is maintained, applications and settings ar ✔ - - Windows RT @@ -195,8 +166,6 @@ D = Edition downgrade; personal data is maintained, applications and settings ar - - Windows Phone 8.1 @@ -205,11 +174,9 @@ D = Edition downgrade; personal data is maintained, applications and settings ar - - ✔ - Windows 10 + Windows 10 Home @@ -218,8 +185,6 @@ D = Edition downgrade; personal data is maintained, applications and settings ar ✔ ✔ - - Pro @@ -228,8 +193,6 @@ D = Edition downgrade; personal data is maintained, applications and settings ar ✔ ✔ ✔ - - Education @@ -238,8 +201,6 @@ D = Edition downgrade; personal data is maintained, applications and settings ar D - - Enterprise @@ -248,20 +209,8 @@ D = Edition downgrade; personal data is maintained, applications and settings ar ✔ - - - - Mobile - - - - - - - ✔ - - + ## Related Topics diff --git a/windows/deployment/windows-adk-scenarios-for-it-pros.md b/windows/deployment/windows-adk-scenarios-for-it-pros.md index 13b1ae3cea..9c27c2ce11 100644 --- a/windows/deployment/windows-adk-scenarios-for-it-pros.md +++ b/windows/deployment/windows-adk-scenarios-for-it-pros.md @@ -73,7 +73,7 @@ For a list of settings you can change, see [Unattended Windows Setup Reference]( ### Create a Windows image using Windows ICD -Introduced in Windows 10, [Windows Imaging and Configuration Designer (ICD)](/windows/configuration/provisioning-packages/provisioning-install-icd) streamlines the customizing and provisioning of a Windows 10 for desktop editions (Home, Pro, Enterprise, and Education), Windows 10 Mobile, or Windows 10 IoT Core (IoT Core) image. +Introduced in Windows 10, [Windows Imaging and Configuration Designer (ICD)](/windows/configuration/provisioning-packages/provisioning-install-icd) streamlines the customizing and provisioning of a Windows 10 for desktop editions (Home, Pro, Enterprise, and Education) or Windows 10 IoT Core (IoT Core) image. Here are some things you can do with Windows ICD: diff --git a/windows/privacy/index.yml b/windows/privacy/index.yml index ad4c6fefef..2fd2b1fc97 100644 --- a/windows/privacy/index.yml +++ b/windows/privacy/index.yml @@ -8,7 +8,7 @@ metadata: title: Windows Privacy description: Learn about how privacy is managed in Windows. services: windows - ms.product: windows + ms.prod: windows ms.topic: hub-page # Required ms.collection: M365-security-compliance author: dansimp diff --git a/windows/security/index.yml b/windows/security/index.yml index 83e7dcbb53..4a5558a16d 100644 --- a/windows/security/index.yml +++ b/windows/security/index.yml @@ -9,7 +9,7 @@ metadata: title: Windows 10 Enterprise Security # Required; page title displayed in search results. Include the brand. < 60 chars. description: Learn about enterprise-grade security features for Windows 10. # Required; article description that is displayed in search results. < 160 chars. services: windows - ms.product: windows + ms.prod: windows ms.topic: hub-page # Required ms.collection: M365-security-compliance # Optional; Remove if no collection is used. author: dansimp #Required; your GitHub user alias, with correct capitalization. diff --git a/windows/security/threat-protection/windows-defender-application-control/microsoft-recommended-block-rules.md b/windows/security/threat-protection/windows-defender-application-control/microsoft-recommended-block-rules.md index c69955e62b..1bea88acc3 100644 --- a/windows/security/threat-protection/windows-defender-application-control/microsoft-recommended-block-rules.md +++ b/windows/security/threat-protection/windows-defender-application-control/microsoft-recommended-block-rules.md @@ -4,6 +4,7 @@ description: View a list of recommended block rules, based on knowledge shared b keywords: security, malware ms.assetid: 8d6e0474-c475-411b-b095-1c61adb2bdbb ms.prod: m365-security +ms.technology: mde ms.mktglfcycl: deploy ms.sitesec: library ms.pagetype: security @@ -14,8 +15,7 @@ author: jsuther1974 ms.reviewer: isbrahm ms.author: dansimp manager: dansimp -ms.date: 04/09/2019 -ms.technology: mde +ms.date: 08/23/2021 --- # Microsoft recommended block rules @@ -23,7 +23,7 @@ ms.technology: mde **Applies to:** - Windows 10 -- Windows Server 2016 and above +- Windows Server 2016 or later Members of the security community* continuously collaborate with Microsoft to help protect customers. With the help of their valuable reports, Microsoft has identified a list of valid applications that an attacker could also potentially use to bypass Windows Defender Application Control. @@ -71,38 +71,35 @@ Unless your use scenarios explicitly require them, Microsoft recommends that you 1 A vulnerability in bginfo.exe has been fixed in the latest version 4.22. If you use BGInfo, for security, make sure to download and run the latest version here [BGInfo 4.22](/sysinternals/downloads/bginfo). Note that BGInfo versions earlier than 4.22 are still vulnerable and should be blocked. -2 If you are using your reference system in a development context and use msbuild.exe to build managed applications, we recommend that you allow msbuild.exe in your code integrity policies. However, if your reference system is an end user device that is not being used in a development context, we recommend that you block msbuild.exe. +2 If you are using your reference system in a development context and use msbuild.exe to build managed applications, we recommend that you allow msbuild.exe in your code integrity policies. However, if your reference system is an end-user device that is not being used in a development context, we recommend that you block msbuild.exe. -* Microsoft recognizes the efforts of those in the security community who help us protect customers through responsible vulnerability disclosure, and extends thanks to the following people: +* Microsoft recognizes the efforts of people in the security community who help us protect customers through responsible vulnerability disclosure, and extends thanks to the following people:
|Name|Twitter| |---|---| -|Casey Smith |@subTee| -|Matt Graeber | @mattifestation| -|Matt Nelson | @enigma0x3| -|Oddvar Moe |@Oddvarmoe| -|Alex Ionescu | @aionescu| -|Lee Christensen|@tifkin_| -|Vladas Bulavas | Kaspersky Lab | -|Lasse Trolle Borup | Langkjaer Cyber Defence | -|Jimmy Bayne | @bohops | -|Philip Tsukerman | @PhilipTsukerman | -|Brock Mammen| | +| `Alex Ionescu` | `@aionescu`| +| `Brock Mammen`| | +| `Casey Smith` | `@subTee` | +| `Jimmy Bayne` | `@bohops` | +| `Lasse Trolle Borup` | `Langkjaer Cyber Defence` | +| `Lee Christensen` | `@tifkin_` | +| `Matt Graeber` | `@mattifestation` | +| `Matt Nelson` | `@enigma0x3` | +| `Oddvar Moe` | `@Oddvarmoe` | +| `Philip Tsukerman` | `@PhilipTsukerman` | +| `Vladas Bulavas` | `Kaspersky Lab` | +| `William Easton` | `@Strawgate` |
> [!Note] > This application list will be updated with the latest vendor information as application vulnerabilities are resolved and new issues are discovered. -Certain software applications may allow additional code to run by design. -These types of applications should be blocked by your Windows Defender Application Control policy. -In addition, when an application version is upgraded to fix a security vulnerability or potential Windows Defender Application Control bypass, you should add deny rules to your WDAC policies for that application’s previous, less secure versions. +Certain software applications may allow other code to run by design. Such applications should be blocked by your Windows Defender Application Control policy. In addition, when an application version is upgraded to fix a security vulnerability or potential Windows Defender Application Control bypass, you should add *deny* rules to your application control policies for that application’s previous, less secure versions. -Microsoft recommends that you install the latest security updates. -The June 2017 Windows updates resolve several issues in PowerShell modules that allowed an attacker to bypass Windows Defender Application Control. -These modules cannot be blocked by name or version, and therefore must be blocked by their corresponding hashes. +Microsoft recommends that you install the latest security updates. The June 2017 Windows updates resolve several issues in PowerShell modules that allowed an attacker to bypass Windows Defender Application Control. These modules cannot be blocked by name or version, and therefore must be blocked by their corresponding hashes. For October 2017, we are announcing an update to system.management.automation.dll in which we are revoking older versions by hash values, instead of version rules. @@ -112,7 +109,7 @@ Microsoft recommends that you block the following Microsoft-signed applications - msxml6.dll - jscript9.dll -Pick the correct version of each .dll for the Windows release you plan to support, and remove the other versions. Ensure that you also uncomment them in the signing scenarios section. +Select the correct version of each .dll for the Windows release you plan to support, and remove the other versions. Ensure that you also uncomment them in the signing scenarios section. ```xml @@ -148,6 +145,7 @@ Pick the correct version of each .dll for the Windows release you plan to suppor + @@ -177,6 +175,7 @@ Pick the correct version of each .dll for the Windows release you plan to suppor + @@ -888,6 +887,7 @@ Pick the correct version of each .dll for the Windows release you plan to suppor + @@ -916,6 +916,7 @@ Pick the correct version of each .dll for the Windows release you plan to suppor +