Merge remote-tracking branch 'refs/remotes/origin/master' into vs-10574249

This commit is contained in:
LizRoss 2017-01-26 09:33:26 -08:00
commit 6108992270
9 changed files with 35 additions and 14 deletions

View File

@ -5,6 +5,7 @@ ms.assetid: E9E2DED5-DBA7-4300-B411-BA0FD39BE18C
ms.prod: w10 ms.prod: w10
ms.mktglfcycl: deploy ms.mktglfcycl: deploy
ms.sitesec: library ms.sitesec: library
localizationpriority: high
author: greg-lindsay author: greg-lindsay
--- ---

View File

@ -3,6 +3,7 @@ title: Windows 10 and Windows 10 Mobile (Windows 10)
description: This library provides the core content that IT pros need to evaluate, plan, deploy, and manage devices running Windows 10 or Windows 10 Mobile. description: This library provides the core content that IT pros need to evaluate, plan, deploy, and manage devices running Windows 10 or Windows 10 Mobile.
ms.assetid: 345A4B4E-BC1B-4F5C-9E90-58E647D11C60 ms.assetid: 345A4B4E-BC1B-4F5C-9E90-58E647D11C60
ms.prod: w10 ms.prod: w10
localizationpriority: high
author: brianlic-msft author: brianlic-msft
--- ---

View File

@ -31,9 +31,9 @@ When a local setting is inaccessible, it indicates that a GPO currently controls
3. When you find the policy setting in the details pane, double-click the security policy that you want to modify. 3. When you find the policy setting in the details pane, double-click the security policy that you want to modify.
4. Modify the security policy setting, and then click **OK**. 4. Modify the security policy setting, and then click **OK**.
**Note**   > [!NOTE]
- Some security policy settings require that the device be restarted before the setting takes effect. > - Some security policy settings require that the device be restarted before the setting takes effect.
- Any change to the user rights assignment for an account becomes effective the next time the owner of the account logs on. > - Any change to the user rights assignment for an account becomes effective the next time the owner of the account logs on.
   
## <a href="" id="bkmk-domain"></a>To configure a security policy setting using the Local Group Policy Editor console ## <a href="" id="bkmk-domain"></a>To configure a security policy setting using the Local Group Policy Editor console
@ -48,11 +48,13 @@ You must have the appropriate permissions to install and use the Microsoft Manag
4. In the details pane, double-click the security policy setting that you want to modify. 4. In the details pane, double-click the security policy setting that you want to modify.
>**Note:**  If this security policy has not yet been defined, select the **Define these policy settings** check box. > [!NOTE]
> If this security policy has not yet been defined, select the **Define these policy settings** check box.
   
5. Modify the security policy setting, and then click **OK**. 5. Modify the security policy setting, and then click **OK**.
>**Note:**  If you want to configure security settings for many devices on your network, you can use the Group Policy Management Console. > [!NOTE]
> If you want to configure security settings for many devices on your network, you can use the Group Policy Management Console.
   
## <a href="" id="bkmk-dc"></a>To configure a setting for a domain controller ## <a href="" id="bkmk-dc"></a>To configure a setting for a domain controller
@ -65,13 +67,15 @@ The following procedure describes how to configure a security policy setting for
- Click **Local Policies** to edit the **Audit Policy**, a **User Rights Assignment**, or **Security Options**. - Click **Local Policies** to edit the **Audit Policy**, a **User Rights Assignment**, or **Security Options**.
3. In the details pane, double-click the security policy that you want to modify. 3. In the details pane, double-click the security policy that you want to modify.
>**Note**  If this security policy has not yet been defined, select the **Define these policy settings** check box.
> [!NOTE]
> If this security policy has not yet been defined, select the **Define these policy settings** check box.
   
4. Modify the security policy setting, and then click **OK**. 4. Modify the security policy setting, and then click **OK**.
**Important**   > [!IMPORTANT]  
- Always test a newly created policy in a test organizational unit before you apply it to your network. > - Always test a newly created policy in a test organizational unit before you apply it to your network.
- When you change a security setting through a GPO and click **OK**, that setting will take effect the next time you refresh the settings. > - When you change a security setting through a GPO and click **OK**, that setting will take effect the next time you refresh the settings.
   
## Related topics ## Related topics

View File

@ -6,6 +6,7 @@ ms.prod: w10
ms.mktglfcycl: deploy ms.mktglfcycl: deploy
ms.sitesec: library ms.sitesec: library
ms.pagetype: security ms.pagetype: security
localizationpriority: high
author: brianlic-msft author: brianlic-msft
--- ---
# Keep Windows 10 secure # Keep Windows 10 secure

View File

@ -2222,7 +2222,20 @@ Description of the error. </dt>
<td colspan="2"> <td colspan="2">
<p>The support for your operating system has expired. Windows Defender is no longer supported on your operating system, has stopped functioning, and is not protecting against malware threats.</p> <p>The support for your operating system has expired. Windows Defender is no longer supported on your operating system, has stopped functioning, and is not protecting against malware threats.</p>
</td> </td>
</tr><tr><th rowspan="3">Event ID: 2050</th><td><p>Symbolic name:</p></td><td colspan="2"><p><b>MALWAREPROTECTION_SAMPLESUBMISSION_UPLOADED</b></p></td></tr><tr><td><p>Message:</p></td><td colspan="2"><p><b>The antimalware engine has uploaded a file for further analysis.<br />Filename &lt;uploaded filename&gt;<br />Sha256: &lt;file SHA&gt;</b></p></td></tr><tr><td><p>Description:</p></td><td colspan="2"><p>A file was uploaded to the Windows Defender Antimalware cloud for further analysis or processing.</p></td></tr> </tr>
<tr><th rowspan="3">Event ID: 2050</th><td><p>Symbolic name:</p></td><td colspan="2"><p><b>MALWAREPROTECTION_SAMPLESUBMISSION_UPLOAD</b></p></td></tr><tr><td><p>Message:</p></td><td colspan="2"><p><b>The antimalware engine has uploaded a file for further analysis.<br />Filename &lt;uploaded filename&gt;<br />Sha256: &lt;file SHA&gt;</b></p></td></tr><tr><td><p>Description:</p></td><td colspan="2"><p>A file was uploaded to the Windows Defender Antimalware cloud for further analysis or processing.</p></td></tr>
<tr><th rowspan="4">Event ID: 2051</th><td><p>Symbolic name:</p></td><td colspan="2"><p><b>MALWAREPROTECTION_SAMPLESUBMISSION_UPLOADED_FAILED</b></p></td></tr><tr><td><p>Message:</p></td><td colspan="2"><p><b>The antimalware engine has encountered an error trying to upload a suspicious file for further analysis.<br />
Filename: &lt;uploaded filename&gt;<br />
Sha256: &lt;file SHA&gt;<br />
Current Signature Version: &lt;signature version number&gt;<br/>
Current Engine Version: &lt;engine version number&gt;<br />
Error code: &lt;error code&gt;</b></p></td></tr><tr><td><p>Description:</p></td><td colspan="2"><p>A file could not be uploaded to the Windows Defender Antimalware cloud.</p></td></tr><tr><td><p>User action:</p></td><td colspan="2"><p>You can attempt to manually submit the file.</p></td></tr>
<tr> <tr>
<th rowspan="4">Event ID: 3002</th> <th rowspan="4">Event ID: 3002</th>
<td> <td>

View File

@ -23,7 +23,6 @@ Because Outlook Web Access (OWA) can be used both personally and as part of your
|-------|-------------| |-------|-------------|
|Disable OWA. Employees can only use Microsoft Outlook 2016 or the Office 365 Mail app. | Disabled. | |Disable OWA. Employees can only use Microsoft Outlook 2016 or the Office 365 Mail app. | Disabled. |
|Don't configure outlook.office.com in any of your networking settings. |All mailboxes are automatically marked as personal. This means employees attempting to copy work content into OWA receive prompts and that files downloaded from OWA aren't automatically protected as corporate data. | |Don't configure outlook.office.com in any of your networking settings. |All mailboxes are automatically marked as personal. This means employees attempting to copy work content into OWA receive prompts and that files downloaded from OWA aren't automatically protected as corporate data. |
|Do all of the following:<ul><li>Create a domain (such as mail.contoso.com, redirecting to outlook.office.com) that can be used by your employees to access work email.</li><li>Add the new domain to the Enterprise Cloud Resources network element in your WIP policy.</li><li>Add the following URLs to the Neutral Resources network element in your WIP policy:<ul><li>outlook.office365.com</li><li>outlook.office.com</li><li>outlook-sdf.office.com</li><li>attachment.outlook.office.net</li></ul></li></ul> |Inbox content accessed through the new domain is automatically marked as corporate data, while content accessed through personal email is automatically marked as personal. |
|Add outlook.office.com to the Enterprise Cloud Resources network element in your WIP policy. |All mailboxes are automatically marked as corporate. This means any personal inboxes hosted on Office 365 are also automatically marked as corporate data. | |Add outlook.office.com to the Enterprise Cloud Resources network element in your WIP policy. |All mailboxes are automatically marked as corporate. This means any personal inboxes hosted on Office 365 are also automatically marked as corporate data. |
>[!NOTE] >[!NOTE]

View File

@ -7,6 +7,7 @@ ms.prod: w10
ms.mktglfcycl: manage ms.mktglfcycl: manage
ms.sitesec: library ms.sitesec: library
ms.pagetype: security ms.pagetype: security
localizationpriority: high
author: jdeckerMS author: jdeckerMS
--- ---

View File

@ -6,6 +6,7 @@ keywords: deploy, upgrade, update, configure
ms.prod: w10 ms.prod: w10
ms.mktglfcycl: plan ms.mktglfcycl: plan
ms.sitesec: library ms.sitesec: library
localizationpriority: high
author: TrudyHa author: TrudyHa
--- ---