mirror of
https://github.com/MicrosoftDocs/windows-itpro-docs.git
synced 2025-06-21 13:23:36 +00:00
new topic
This commit is contained in:
@ -18,10 +18,14 @@ ms.date: 11/12/2018
|
|||||||
|
|
||||||
You can configure Intune settings to reduce threats from removable storage such as USB devices, including these options:
|
You can configure Intune settings to reduce threats from removable storage such as USB devices, including these options:
|
||||||
|
|
||||||
- Completely block the use of removable storage or USB
|
- [Completely block the use of removable storage or USB](#completely-block-removable-storage-or-usb-connections)
|
||||||
- Allow removable storage or USB connections but block unsigned or untrusted processes from running
|
- [Allow removable storage or USB connections but block unsigned or untrusted processes from running](#allow-removable-storage-or-usb-connections-but-block-unsigned-or-untrusted-processes-from-running)
|
||||||
|
|
||||||
You can also [run a PowerShell script to perform a custom scan](https://aka.ms/scanusb) of a USB drive after it is mounted.
|
You can also [run a PowerShell script to perform a custom scan](https://aka.ms/scanusb) of a USB drive after it is mounted.
|
||||||
|
|
||||||
>[!NOTE]
|
>[!NOTE]
|
||||||
>For more comprehensive data loss prevention for Windows 10 devices, you can configure [BitLocker](https://docs.microsoft.com/windows/security/information-protection/bitlocker/bitlocker-overview) and [Windows Information Protection](https://docs.microsoft.com/windows/security/information-protection/windows-information-protection/create-wip-policy-using-intune-azure), which will encrypt company data even if it is stored on a personal device.
|
>For more comprehensive data loss prevention for Windows 10 devices, you can configure [BitLocker](https://docs.microsoft.com/windows/security/information-protection/bitlocker/bitlocker-overview) and [Windows Information Protection](https://docs.microsoft.com/windows/security/information-protection/windows-information-protection/create-wip-policy-using-intune-azure), which will encrypt company data even if it is stored on a personal device.
|
||||||
|
|
||||||
|
## Completely block removable storage or USB connections
|
||||||
|
|
||||||
|
## Allow removable storage or USB connections but block unsigned or untrusted processes from running
|
Reference in New Issue
Block a user