DeviceStatus CSP + updates

This commit is contained in:
Vinay Pamnani 2023-02-17 15:47:39 -05:00
parent dc1278f6c3
commit 8d361e28ad
10 changed files with 3770 additions and 1649 deletions

View File

@ -4,7 +4,7 @@ description: Learn more about the ActiveSync CSP.
author: vinaypamnani-msft author: vinaypamnani-msft
manager: aaroncz manager: aaroncz
ms.author: vinpa ms.author: vinpa
ms.date: 02/16/2023 ms.date: 02/17/2023
ms.localizationpriority: medium ms.localizationpriority: medium
ms.prod: windows-client ms.prod: windows-client
ms.technology: itpro-manage ms.technology: itpro-manage
@ -293,7 +293,7 @@ Specify the account type. This value is entered during setup and cannot be modif
<!-- User-Accounts-{Account GUID}-Domain-Description-Begin --> <!-- User-Accounts-{Account GUID}-Domain-Description-Begin -->
<!-- Description-Source-DDF --> <!-- Description-Source-DDF -->
Domain name of the Exchange server Domain name of the Exchange server.
<!-- User-Accounts-{Account GUID}-Domain-Description-End --> <!-- User-Accounts-{Account GUID}-Domain-Description-End -->
<!-- User-Accounts-{Account GUID}-Domain-Editable-Begin --> <!-- User-Accounts-{Account GUID}-Domain-Editable-Begin -->
@ -450,7 +450,7 @@ Specifies the time window used for syncing calendar items to the phone.
<!-- User-Accounts-{Account GUID}-Options-ContentTypes-Description-Begin --> <!-- User-Accounts-{Account GUID}-Options-ContentTypes-Description-Begin -->
<!-- Description-Source-DDF --> <!-- Description-Source-DDF -->
Interior node for Content Types Interior node for Content Types.
<!-- User-Accounts-{Account GUID}-Options-ContentTypes-Description-End --> <!-- User-Accounts-{Account GUID}-Options-ContentTypes-Description-End -->
<!-- User-Accounts-{Account GUID}-Options-ContentTypes-Editable-Begin --> <!-- User-Accounts-{Account GUID}-Options-ContentTypes-Editable-Begin -->
@ -1018,7 +1018,7 @@ Specifies the mail body type and email age filter.
<!-- User-Accounts-{Account GUID}-Policies-MailBodyType-Description-Begin --> <!-- User-Accounts-{Account GUID}-Policies-MailBodyType-Description-Begin -->
<!-- Description-Source-DDF --> <!-- Description-Source-DDF -->
Specifies the email body type. HTML or plain Specifies the email body type. HTML or plain.
<!-- User-Accounts-{Account GUID}-Policies-MailBodyType-Description-End --> <!-- User-Accounts-{Account GUID}-Policies-MailBodyType-Description-End -->
<!-- User-Accounts-{Account GUID}-Policies-MailBodyType-Editable-Begin --> <!-- User-Accounts-{Account GUID}-Policies-MailBodyType-Editable-Begin -->

View File

@ -4,7 +4,7 @@ description: Learn more about the ApplicationControl CSP.
author: vinaypamnani-msft author: vinaypamnani-msft
manager: aaroncz manager: aaroncz
ms.author: vinpa ms.author: vinpa
ms.date: 02/16/2023 ms.date: 02/17/2023
ms.localizationpriority: medium ms.localizationpriority: medium
ms.prod: windows-client ms.prod: windows-client
ms.technology: itpro-manage ms.technology: itpro-manage
@ -347,7 +347,7 @@ TRUE/FALSE if the Policy is a Base Policy versus a Supplemental Policy.
<!-- Device-Policies-{Policy GUID}-PolicyInfo-IsDeployed-Description-Begin --> <!-- Device-Policies-{Policy GUID}-PolicyInfo-IsDeployed-Description-Begin -->
<!-- Description-Source-DDF --> <!-- Description-Source-DDF -->
Whether the Policy indicated by the GUID is deployed on the system (on the physical machine). Whether the Policy indicated by the GUID is deployed on the system (on the physical machine)
<!-- Device-Policies-{Policy GUID}-PolicyInfo-IsDeployed-Description-End --> <!-- Device-Policies-{Policy GUID}-PolicyInfo-IsDeployed-Description-End -->
<!-- Device-Policies-{Policy GUID}-PolicyInfo-IsDeployed-Editable-Begin --> <!-- Device-Policies-{Policy GUID}-PolicyInfo-IsDeployed-Editable-Begin -->
@ -390,7 +390,7 @@ Supported values are as follows:
<!-- Device-Policies-{Policy GUID}-PolicyInfo-IsEffective-Description-Begin --> <!-- Device-Policies-{Policy GUID}-PolicyInfo-IsEffective-Description-Begin -->
<!-- Description-Source-DDF --> <!-- Description-Source-DDF -->
Whether the Policy indicated by the GUID is Effective on the system (loaded by the enforcement engine and in effect). Whether the Policy indicated by the GUID is Effective on the system (loaded by the enforcement engine and in effect)
<!-- Device-Policies-{Policy GUID}-PolicyInfo-IsEffective-Description-End --> <!-- Device-Policies-{Policy GUID}-PolicyInfo-IsEffective-Description-End -->
<!-- Device-Policies-{Policy GUID}-PolicyInfo-IsEffective-Editable-Begin --> <!-- Device-Policies-{Policy GUID}-PolicyInfo-IsEffective-Editable-Begin -->

File diff suppressed because it is too large Load Diff

View File

@ -4,7 +4,7 @@ description: View the XML file containing the device description framework (DDF)
author: vinaypamnani-msft author: vinaypamnani-msft
manager: aaroncz manager: aaroncz
ms.author: vinpa ms.author: vinpa
ms.date: 11/02/2022 ms.date: 02/17/2023
ms.localizationpriority: medium ms.localizationpriority: medium
ms.prod: windows-client ms.prod: windows-client
ms.technology: itpro-manage ms.technology: itpro-manage
@ -46,7 +46,7 @@ The following XML file contains the device description framework (DDF) for the D
<MSFT:Applicability> <MSFT:Applicability>
<MSFT:OsBuildVersion>10.0.10586</MSFT:OsBuildVersion> <MSFT:OsBuildVersion>10.0.10586</MSFT:OsBuildVersion>
<MSFT:CspVersion>1.0</MSFT:CspVersion> <MSFT:CspVersion>1.0</MSFT:CspVersion>
<MSFT:EditionAllowList>0x4;0x1B;0x30;0x31;0x48;0x54;0x62;0x63;0x64;0x65;0x77;0x79;0x7A;0x7D;0x7E;0x81;0x82;0x8A;0x8B;0xA1;0xA2;0xA4;0xA5;0xAB;0xAC;0xAF;0xB4;0xBC;0xBD;0xBF;0xCA;0xCB;</MSFT:EditionAllowList> <MSFT:EditionAllowList>0x4;0x1B;0x30;0x31;0x48;0x54;0x62;0x63;0x64;0x65;0x77;0x79;0x7A;0x7D;0x7E;0x81;0x82;0x8A;0x8B;0xA1;0xA2;0xA4;0xA5;0xAB;0xAC;0xAF;0xB4;0xBC;0xBF;0xCA;0xCB;0xCD;</MSFT:EditionAllowList>
</MSFT:Applicability> </MSFT:Applicability>
</DFProperties> </DFProperties>
<Node> <Node>
@ -816,6 +816,7 @@ The following XML file contains the device description framework (DDF) for the D
<Get /> <Get />
<Replace /> <Replace />
</AccessType> </AccessType>
<Description>Follow the instructions provided here: https://learn.microsoft.com/en-us/microsoft-365/security/defender-endpoint/device-control-removable-storage-access-control?view=o365-worldwide </Description>
<DFFormat> <DFFormat>
<chr /> <chr />
</DFFormat> </DFFormat>
@ -884,6 +885,7 @@ The following XML file contains the device description framework (DDF) for the D
<Get /> <Get />
<Replace /> <Replace />
</AccessType> </AccessType>
<Description>Follow the instructions provided here: https://learn.microsoft.com/en-us/microsoft-365/security/defender-endpoint/device-control-removable-storage-access-control?view=o365-worldwide </Description>
<DFFormat> <DFFormat>
<chr /> <chr />
</DFFormat> </DFFormat>
@ -910,6 +912,7 @@ The following XML file contains the device description framework (DDF) for the D
<Get /> <Get />
<Replace /> <Replace />
</AccessType> </AccessType>
<DefaultValue>0</DefaultValue>
<Description>Tamper protection helps protect important security features from unwanted changes and interference. This includes real-time protection, behavior monitoring, and more. Accepts signed string to turn the feature on or off. Settings are configured with an MDM solution, such as Intune and is available in Windows 10 Enterprise E5 or equivalent subscriptions. Send off blob to device to reset tamper protection state before setting this configuration to "not configured" or "unassigned" in Intune. The data type is a Signed blob.</Description> <Description>Tamper protection helps protect important security features from unwanted changes and interference. This includes real-time protection, behavior monitoring, and more. Accepts signed string to turn the feature on or off. Settings are configured with an MDM solution, such as Intune and is available in Windows 10 Enterprise E5 or equivalent subscriptions. Send off blob to device to reset tamper protection state before setting this configuration to "not configured" or "unassigned" in Intune. The data type is a Signed blob.</Description>
<DFFormat> <DFFormat>
<chr /> <chr />
@ -1024,7 +1027,7 @@ The following XML file contains the device description framework (DDF) for the D
</DFType> </DFType>
<MSFT:Applicability> <MSFT:Applicability>
<MSFT:OsBuildVersion>10.0.14393</MSFT:OsBuildVersion> <MSFT:OsBuildVersion>10.0.14393</MSFT:OsBuildVersion>
<MSFT:CspVersion>9.9</MSFT:CspVersion> <MSFT:CspVersion>1.3</MSFT:CspVersion>
</MSFT:Applicability> </MSFT:Applicability>
<MSFT:AllowedValues ValueType="None"> <MSFT:AllowedValues ValueType="None">
</MSFT:AllowedValues> </MSFT:AllowedValues>
@ -1069,37 +1072,6 @@ The following XML file contains the device description framework (DDF) for the D
</MSFT:AllowedValues> </MSFT:AllowedValues>
</DFProperties> </DFProperties>
</Node> </Node>
<Node>
<NodeName>ExcludedIpAddresses</NodeName>
<DFProperties>
<AccessType>
<Add />
<Delete />
<Get />
<Replace />
</AccessType>
<Description>This node contains a list of values specifying any IP addresses that wdnisdrv will ignore when intercepting traffic.</Description>
<DFFormat>
<chr />
</DFFormat>
<Occurrence>
<One />
</Occurrence>
<Scope>
<Dynamic />
</Scope>
<DFType>
<MIME />
</DFType>
<MSFT:Applicability>
<MSFT:OsBuildVersion>10.0.14393</MSFT:OsBuildVersion>
<MSFT:CspVersion>1.3</MSFT:CspVersion>
</MSFT:Applicability>
<MSFT:AllowedValues ValueType="None">
<MSFT:List Delimiter="|" />
</MSFT:AllowedValues>
</DFProperties>
</Node>
<Node> <Node>
<NodeName>DisableCpuThrottleOnIdleScans</NodeName> <NodeName>DisableCpuThrottleOnIdleScans</NodeName>
<DFProperties> <DFProperties>
@ -1148,6 +1120,7 @@ The following XML file contains the device description framework (DDF) for the D
<Get /> <Get />
<Replace /> <Replace />
</AccessType> </AccessType>
<DefaultValue>0</DefaultValue>
<Description>When this value is set to false, it allows a local admin the ability to specify some settings for complex list type that will then merge /override the Preference settings with the Policy settings</Description> <Description>When this value is set to false, it allows a local admin the ability to specify some settings for complex list type that will then merge /override the Preference settings with the Policy settings</Description>
<DFFormat> <DFFormat>
<int /> <int />
@ -1452,6 +1425,7 @@ The following XML file contains the device description framework (DDF) for the D
<Get /> <Get />
<Replace /> <Replace />
</AccessType> </AccessType>
<DefaultValue>0</DefaultValue>
<Description>Enable this policy to specify when devices receive Microsoft Defender platform updates during the monthly gradual rollout.</Description> <Description>Enable this policy to specify when devices receive Microsoft Defender platform updates during the monthly gradual rollout.</Description>
<DFFormat> <DFFormat>
<int /> <int />
@ -1506,6 +1480,7 @@ The following XML file contains the device description framework (DDF) for the D
<Get /> <Get />
<Replace /> <Replace />
</AccessType> </AccessType>
<DefaultValue>0</DefaultValue>
<Description>Enable this policy to specify when devices receive Microsoft Defender engine updates during the monthly gradual rollout.</Description> <Description>Enable this policy to specify when devices receive Microsoft Defender engine updates during the monthly gradual rollout.</Description>
<DFFormat> <DFFormat>
<int /> <int />
@ -1560,6 +1535,7 @@ The following XML file contains the device description framework (DDF) for the D
<Get /> <Get />
<Replace /> <Replace />
</AccessType> </AccessType>
<DefaultValue>0</DefaultValue>
<Description>Enable this policy to specify when devices receive Microsoft Defender security intelligence updates during the daily gradual rollout.</Description> <Description>Enable this policy to specify when devices receive Microsoft Defender security intelligence updates during the daily gradual rollout.</Description>
<DFFormat> <DFFormat>
<int /> <int />
@ -1602,6 +1578,7 @@ The following XML file contains the device description framework (DDF) for the D
<Get /> <Get />
<Replace /> <Replace />
</AccessType> </AccessType>
<DefaultValue>0</DefaultValue>
<Description>Enable this policy to disable gradual rollout of Defender updates.</Description> <Description>Enable this policy to disable gradual rollout of Defender updates.</Description>
<DFFormat> <DFFormat>
<int /> <int />
@ -1640,6 +1617,7 @@ The following XML file contains the device description framework (DDF) for the D
<Get /> <Get />
<Replace /> <Replace />
</AccessType> </AccessType>
<DefaultValue>0</DefaultValue>
<Description>This settings controls whether Network Protection is allowed to be configured into block or audit mode on windows downlevel of RS3. If false, the value of EnableNetworkProtection will be ignored.</Description> <Description>This settings controls whether Network Protection is allowed to be configured into block or audit mode on windows downlevel of RS3. If false, the value of EnableNetworkProtection will be ignored.</Description>
<DFFormat> <DFFormat>
<int /> <int />
@ -1678,6 +1656,7 @@ The following XML file contains the device description framework (DDF) for the D
<Get /> <Get />
<Replace /> <Replace />
</AccessType> </AccessType>
<DefaultValue>1</DefaultValue>
<Description>This setting enables the DNS Sinkhole feature for Network Protection, respecting the value of EnableNetworkProtection for block vs audit, does nothing in inspect mode.</Description> <Description>This setting enables the DNS Sinkhole feature for Network Protection, respecting the value of EnableNetworkProtection for block vs audit, does nothing in inspect mode.</Description>
<DFFormat> <DFFormat>
<int /> <int />
@ -1716,6 +1695,7 @@ The following XML file contains the device description framework (DDF) for the D
<Get /> <Get />
<Replace /> <Replace />
</AccessType> </AccessType>
<DefaultValue>0</DefaultValue>
<Description>This setting disables Inbound connection filtering for Network Protection.</Description> <Description>This setting disables Inbound connection filtering for Network Protection.</Description>
<DFFormat> <DFFormat>
<int /> <int />
@ -1754,6 +1734,7 @@ The following XML file contains the device description framework (DDF) for the D
<Get /> <Get />
<Replace /> <Replace />
</AccessType> </AccessType>
<DefaultValue>0</DefaultValue>
<Description>This setting disables RDP Parsing for Network Protection.</Description> <Description>This setting disables RDP Parsing for Network Protection.</Description>
<DFFormat> <DFFormat>
<int /> <int />
@ -1792,6 +1773,7 @@ The following XML file contains the device description framework (DDF) for the D
<Get /> <Get />
<Replace /> <Replace />
</AccessType> </AccessType>
<DefaultValue>0</DefaultValue>
<Description>This settings controls whether Network Protection is allowed to enable datagram processing on Windows Server. If false, the value of DisableDatagramProcessing will be ignored and default to disabling Datagram inspection.</Description> <Description>This settings controls whether Network Protection is allowed to enable datagram processing on Windows Server. If false, the value of DisableDatagramProcessing will be ignored and default to disabling Datagram inspection.</Description>
<DFFormat> <DFFormat>
<int /> <int />
@ -1830,6 +1812,7 @@ The following XML file contains the device description framework (DDF) for the D
<Get /> <Get />
<Replace /> <Replace />
</AccessType> </AccessType>
<DefaultValue>0</DefaultValue>
<Description>This setting disables the gathering and send of performance telemetry from Network Protection.</Description> <Description>This setting disables the gathering and send of performance telemetry from Network Protection.</Description>
<DFFormat> <DFFormat>
<int /> <int />
@ -1868,6 +1851,7 @@ The following XML file contains the device description framework (DDF) for the D
<Get /> <Get />
<Replace /> <Replace />
</AccessType> </AccessType>
<DefaultValue>0</DefaultValue>
<Description>This policy setting controls whether or not exclusions are visible to local admins. For end users (that are not local admins) exclusions are not visible, whether or not this setting is enabled.</Description> <Description>This policy setting controls whether or not exclusions are visible to local admins. For end users (that are not local admins) exclusions are not visible, whether or not this setting is enabled.</Description>
<DFFormat> <DFFormat>
<int /> <int />
@ -2026,6 +2010,38 @@ The following XML file contains the device description framework (DDF) for the D
</MSFT:AllowedValues> </MSFT:AllowedValues>
</DFProperties> </DFProperties>
</Node> </Node>
<Node>
<NodeName>DataDuplicationLocalRetentionPeriod</NodeName>
<DFProperties>
<AccessType>
<Add />
<Delete />
<Get />
<Replace />
</AccessType>
<DefaultValue>60</DefaultValue>
<Description>Define the retention period in days of how much time the evidence data will be kept on the client machine should any transfer to the remote locations would occur.</Description>
<DFFormat>
<chr />
</DFFormat>
<Occurrence>
<One />
</Occurrence>
<Scope>
<Dynamic />
</Scope>
<DFType>
<MIME />
</DFType>
<MSFT:Applicability>
<MSFT:OsBuildVersion>10.0.17763</MSFT:OsBuildVersion>
<MSFT:CspVersion>1.3</MSFT:CspVersion>
</MSFT:Applicability>
<MSFT:AllowedValues ValueType="Range">
<MSFT:Value>[1-120]</MSFT:Value>
</MSFT:AllowedValues>
</DFProperties>
</Node>
<Node> <Node>
<NodeName>DeviceControlEnabled</NodeName> <NodeName>DeviceControlEnabled</NodeName>
<DFProperties> <DFProperties>
@ -2035,6 +2051,7 @@ The following XML file contains the device description framework (DDF) for the D
<Get /> <Get />
<Replace /> <Replace />
</AccessType> </AccessType>
<DefaultValue>0</DefaultValue>
<Description>Control Device Control feature.</Description> <Description>Control Device Control feature.</Description>
<DFFormat> <DFFormat>
<int /> <int />
@ -2075,6 +2092,7 @@ The following XML file contains the device description framework (DDF) for the D
<Get /> <Get />
<Replace /> <Replace />
</AccessType> </AccessType>
<DefaultValue>1</DefaultValue>
<Description>Control Device Control default enforcement. This is the enforcement applied if there are no policy rules present or at the end of the policy rules evaluation none were matched.</Description> <Description>Control Device Control default enforcement. This is the enforcement applied if there are no policy rules present or at the end of the policy rules evaluation none were matched.</Description>
<DFFormat> <DFFormat>
<int /> <int />
@ -2113,6 +2131,7 @@ The following XML file contains the device description framework (DDF) for the D
<Get /> <Get />
<Replace /> <Replace />
</AccessType> </AccessType>
<DefaultValue>0</DefaultValue>
<Description>Setting to control automatic remediation for Sense scans.</Description> <Description>Setting to control automatic remediation for Sense scans.</Description>
<DFFormat> <DFFormat>
<int /> <int />
@ -2147,105 +2166,7 @@ The following XML file contains the device description framework (DDF) for the D
</DFProperties> </DFProperties>
</Node> </Node>
<Node> <Node>
<NodeName>PauseUpdateStartTime</NodeName> <NodeName>IntelTDTEnabled</NodeName>
<DFProperties>
<AccessType>
<Add />
<Delete />
<Get />
<Replace />
</AccessType>
<Description>Pause update from the UTC time in ISO string format without milliseconds, for example, 2022-02-24T00:03:59Z.</Description>
<DFFormat>
<chr />
</DFFormat>
<Occurrence>
<One />
</Occurrence>
<Scope>
<Dynamic />
</Scope>
<DFType>
<MIME />
</DFType>
<MSFT:Applicability>
<MSFT:OsBuildVersion>10.0.14393</MSFT:OsBuildVersion>
<MSFT:CspVersion>1.3</MSFT:CspVersion>
</MSFT:Applicability>
<MSFT:AllowedValues ValueType="None">
</MSFT:AllowedValues>
</DFProperties>
</Node>
<Node>
<NodeName>PauseUpdateExpirationTime</NodeName>
<DFProperties>
<AccessType>
<Add />
<Delete />
<Get />
<Replace />
</AccessType>
<Description>Pause update until the UTC time in ISO string format without milliseconds, for example, 2022-02-24T00:03:59Z.</Description>
<DFFormat>
<chr />
</DFFormat>
<Occurrence>
<One />
</Occurrence>
<Scope>
<Dynamic />
</Scope>
<DFType>
<MIME />
</DFType>
<MSFT:Applicability>
<MSFT:OsBuildVersion>10.0.14393</MSFT:OsBuildVersion>
<MSFT:CspVersion>1.3</MSFT:CspVersion>
</MSFT:Applicability>
<MSFT:AllowedValues ValueType="None">
</MSFT:AllowedValues>
</DFProperties>
</Node>
<Node>
<NodeName>PauseUpdateFlag</NodeName>
<DFProperties>
<AccessType>
<Add />
<Delete />
<Get />
<Replace />
</AccessType>
<Description>Setting to control automatic remediation for Sense scans.</Description>
<DFFormat>
<int />
</DFFormat>
<Occurrence>
<One />
</Occurrence>
<Scope>
<Dynamic />
</Scope>
<DFType>
<MIME />
</DFType>
<MSFT:Applicability>
<MSFT:OsBuildVersion>10.0.14393</MSFT:OsBuildVersion>
<MSFT:CspVersion>1.3</MSFT:CspVersion>
</MSFT:Applicability>
<MSFT:AllowedValues ValueType="ENUM">
<MSFT:Enum>
<MSFT:Value>0</MSFT:Value>
<MSFT:ValueDescription>Update not paused</MSFT:ValueDescription>
</MSFT:Enum>
<MSFT:Enum>
<MSFT:Value>1</MSFT:Value>
<MSFT:ValueDescription>Update paused</MSFT:ValueDescription>
</MSFT:Enum>
</MSFT:AllowedValues>
</DFProperties>
</Node>
<Node>
<NodeName>TDTFeatureEnabled</NodeName>
<DFProperties> <DFProperties>
<AccessType> <AccessType>
<Add /> <Add />
@ -2254,7 +2175,7 @@ The following XML file contains the device description framework (DDF) for the D
<Replace /> <Replace />
</AccessType> </AccessType>
<DefaultValue>0</DefaultValue> <DefaultValue>0</DefaultValue>
<Description>This policy setting configures the integration level for Intel TDT integration for Intel TDT-capable devices.</Description> <Description>This policy setting configures the Intel TDT integration level for Intel TDT-capable devices.</Description>
<DFFormat> <DFFormat>
<int /> <int />
</DFFormat> </DFFormat>
@ -2274,11 +2195,128 @@ The following XML file contains the device description framework (DDF) for the D
<MSFT:AllowedValues ValueType="ENUM"> <MSFT:AllowedValues ValueType="ENUM">
<MSFT:Enum> <MSFT:Enum>
<MSFT:Value>0</MSFT:Value> <MSFT:Value>0</MSFT:Value>
<MSFT:ValueDescription>If you do not configure this setting, the default value will be applied. The default value is set to control by signatures. TDT will be enabled based on particular signatures that are released by Microsoft.</MSFT:ValueDescription> <MSFT:ValueDescription>If you do not configure this setting, the default value will be applied. The default value is controlled by Microsoft security intelligence updates. Microsoft will enable Intel TDT if there is a known threat.</MSFT:ValueDescription>
</MSFT:Enum> </MSFT:Enum>
<MSFT:Enum> <MSFT:Enum>
<MSFT:Value>2</MSFT:Value> <MSFT:Value>2</MSFT:Value>
<MSFT:ValueDescription>If you configure this setting to disabled, Intel TDT integration will be turned off.</MSFT:ValueDescription> <MSFT:ValueDescription>If you configure this setting to disabled, Intel TDT integration will turn off.</MSFT:ValueDescription>
</MSFT:Enum>
</MSFT:AllowedValues>
</DFProperties>
</Node>
<Node>
<NodeName>DisableSmtpParsing</NodeName>
<DFProperties>
<AccessType>
<Add />
<Delete />
<Get />
<Replace />
</AccessType>
<DefaultValue>0</DefaultValue>
<Description>This setting disables SMTP Parsing for Network Protection.</Description>
<DFFormat>
<int />
</DFFormat>
<Occurrence>
<One />
</Occurrence>
<Scope>
<Dynamic />
</Scope>
<DFType>
<MIME />
</DFType>
<MSFT:Applicability>
<MSFT:OsBuildVersion>10.0.14393</MSFT:OsBuildVersion>
<MSFT:CspVersion>1.3</MSFT:CspVersion>
</MSFT:Applicability>
<MSFT:AllowedValues ValueType="ENUM">
<MSFT:Enum>
<MSFT:Value>1</MSFT:Value>
<MSFT:ValueDescription>SMTP parsing is disabled</MSFT:ValueDescription>
</MSFT:Enum>
<MSFT:Enum>
<MSFT:Value>0</MSFT:Value>
<MSFT:ValueDescription>SMTP parsing is enabled</MSFT:ValueDescription>
</MSFT:Enum>
</MSFT:AllowedValues>
</DFProperties>
</Node>
<Node>
<NodeName>RandomizeScheduleTaskTimes</NodeName>
<DFProperties>
<AccessType>
<Add />
<Delete />
<Get />
<Replace />
</AccessType>
<DefaultValue>1</DefaultValue>
<Description>In Microsoft Defender Antivirus, randomize the start time of the scan to any interval from 0 to 23 hours. This can be useful in virtual machines or VDI deployments.</Description>
<DFFormat>
<int />
</DFFormat>
<Occurrence>
<One />
</Occurrence>
<Scope>
<Dynamic />
</Scope>
<DFType>
<MIME />
</DFType>
<MSFT:Applicability>
<MSFT:OsBuildVersion>10.0.14393</MSFT:OsBuildVersion>
<MSFT:CspVersion>1.3</MSFT:CspVersion>
</MSFT:Applicability>
<MSFT:AllowedValues ValueType="ENUM">
<MSFT:Enum>
<MSFT:Value>1</MSFT:Value>
<MSFT:ValueDescription>Widen or narrow the randomization period for scheduled scans. Specify a randomization window of between 1 and 23 hours by using the setting SchedulerRandomizationTime.</MSFT:ValueDescription>
</MSFT:Enum>
<MSFT:Enum>
<MSFT:Value>0</MSFT:Value>
<MSFT:ValueDescription>Scheduled tasks will begin at a random time within 4 hours after the time specified in Task Scheduler.</MSFT:ValueDescription>
</MSFT:Enum>
</MSFT:AllowedValues>
</DFProperties>
</Node>
<Node>
<NodeName>ScanOnlyIfIdleEnabled</NodeName>
<DFProperties>
<AccessType>
<Add />
<Delete />
<Get />
<Replace />
</AccessType>
<DefaultValue>1</DefaultValue>
<Description>In Microsoft Defender Antivirus, this setting will run scheduled scans only if the system is idle.</Description>
<DFFormat>
<int />
</DFFormat>
<Occurrence>
<One />
</Occurrence>
<Scope>
<Dynamic />
</Scope>
<DFType>
<MIME />
</DFType>
<MSFT:Applicability>
<MSFT:OsBuildVersion>10.0.14393</MSFT:OsBuildVersion>
<MSFT:CspVersion>1.3</MSFT:CspVersion>
</MSFT:Applicability>
<MSFT:AllowedValues ValueType="ENUM">
<MSFT:Enum>
<MSFT:Value>1</MSFT:Value>
<MSFT:ValueDescription>Runs scheduled scans only if the system is idle.</MSFT:ValueDescription>
</MSFT:Enum>
<MSFT:Enum>
<MSFT:Value>0</MSFT:Value>
<MSFT:ValueDescription>Runs scheduled scans regardless of whether the system is idle.</MSFT:ValueDescription>
</MSFT:Enum> </MSFT:Enum>
</MSFT:AllowedValues> </MSFT:AllowedValues>
</DFProperties> </DFProperties>

File diff suppressed because it is too large Load Diff

View File

@ -1,31 +1,29 @@
--- ---
title: DeviceStatus DDF title: DeviceStatus DDF file
description: This topic shows the OMA DM device description framework (DDF) for the DeviceStatus configuration service provider. DDF files are used only with OMA DM provisioning XML. description: View the XML file containing the device description framework (DDF) for the DeviceStatus configuration service provider.
ms.reviewer: author: vinaypamnani-msft
manager: aaroncz manager: aaroncz
ms.author: vinpa ms.author: vinpa
ms.topic: article ms.date: 02/17/2023
ms.localizationpriority: medium
ms.prod: windows-client ms.prod: windows-client
ms.technology: itpro-manage ms.technology: itpro-manage
author: vinaypamnani-msft ms.topic: reference
ms.date: 03/12/2018
--- ---
# DeviceStatus DDF <!-- Auto-Generated CSP Document -->
This topic shows the OMA DM device description framework (DDF) for the **DeviceStatus** configuration service provider. DDF files are used only with OMA DM provisioning XML. # DeviceStatus DDF file
Looking for the DDF XML files? See [CSP DDF files download](configuration-service-provider-ddf.md). The following XML file contains the device description framework (DDF) for the DeviceStatus configuration service provider.
The XML below is for Windows 10, version 1803.
```xml ```xml
<?xml version="1.0" encoding="UTF-8"?> <?xml version="1.0" encoding="UTF-8"?>
<!DOCTYPE MgmtTree PUBLIC " -//OMA//DTD-DM-DDF 1.2//EN" <!DOCTYPE MgmtTree PUBLIC " -//OMA//DTD-DM-DDF 1.2//EN" "http://www.openmobilealliance.org/tech/DTD/DM_DDF-V1_2.dtd"[<?oma-dm-ddf-ver supported-versions="1.2"?>]>
"http://www.openmobilealliance.org/tech/DTD/DM_DDF-V1_2.dtd"
[<?oma-dm-ddf-ver supported-versions="1.2"?>]>
<MgmtTree xmlns:MSFT="http://schemas.microsoft.com/MobileDevice/DM"> <MgmtTree xmlns:MSFT="http://schemas.microsoft.com/MobileDevice/DM">
<VerDTD>1.2</VerDTD> <VerDTD>1.2</VerDTD>
<MSFT:Diagnostics>
</MSFT:Diagnostics>
<Node> <Node>
<NodeName>DeviceStatus</NodeName> <NodeName>DeviceStatus</NodeName>
<Path>./Vendor/MSFT</Path> <Path>./Vendor/MSFT</Path>
@ -43,8 +41,13 @@ The XML below is for Windows 10, version 1803.
<Permanent /> <Permanent />
</Scope> </Scope>
<DFType> <DFType>
<MIME>com.microsoft/1.4/MDM/DeviceStatus</MIME> <MIME />
</DFType> </DFType>
<MSFT:Applicability>
<MSFT:OsBuildVersion>10.0.10586</MSFT:OsBuildVersion>
<MSFT:CspVersion>1.0</MSFT:CspVersion>
<MSFT:EditionAllowList>0x4;0x1B;0x30;0x31;0x48;0x54;0x62;0x63;0x64;0x65;0x77;0x79;0x7A;0x7D;0x7E;0x81;0x82;0x88;0x88*;0x8A;0x8B;0xA1;0xA2;0xA4;0xA5;0xAB;0xAC;0xAF;0xB4;0xBC;0xBF;0xCA;0xCB;0xCD;</MSFT:EditionAllowList>
</MSFT:Applicability>
</DFProperties> </DFProperties>
<Node> <Node>
<NodeName>SecureBootState</NodeName> <NodeName>SecureBootState</NodeName>
@ -52,6 +55,7 @@ The XML below is for Windows 10, version 1803.
<AccessType> <AccessType>
<Get /> <Get />
</AccessType> </AccessType>
<Description>Indicates whether secure boot is enabled. The value is one of the following: 0 - Not supported, 1 - Enabled, 2 - Disabled</Description>
<DFFormat> <DFFormat>
<int /> <int />
</DFFormat> </DFFormat>
@ -62,7 +66,7 @@ The XML below is for Windows 10, version 1803.
<Permanent /> <Permanent />
</Scope> </Scope>
<DFType> <DFType>
<MIME>text/plain</MIME> <MIME />
</DFType> </DFType>
</DFProperties> </DFProperties>
</Node> </Node>
@ -72,6 +76,7 @@ The XML below is for Windows 10, version 1803.
<AccessType> <AccessType>
<Get /> <Get />
</AccessType> </AccessType>
<Description>Node for queries on the SIM cards.</Description>
<DFFormat> <DFFormat>
<node /> <node />
</DFFormat> </DFFormat>
@ -82,15 +87,17 @@ The XML below is for Windows 10, version 1803.
<Permanent /> <Permanent />
</Scope> </Scope>
<DFType> <DFType>
<DDFName></DDFName> <DDFName />
</DFType> </DFType>
</DFProperties> </DFProperties>
<Node> <Node>
<NodeName></NodeName> <NodeName>
</NodeName>
<DFProperties> <DFProperties>
<AccessType> <AccessType>
<Get /> <Get />
</AccessType> </AccessType>
<Description>The unique International Mobile Station Equipment Identity (IMEI) number of the mobile device. An IMEI is present for each SIM card on the device.</Description>
<DFFormat> <DFFormat>
<node /> <node />
</DFFormat> </DFFormat>
@ -102,8 +109,11 @@ The XML below is for Windows 10, version 1803.
</Scope> </Scope>
<DFTitle>IMEI</DFTitle> <DFTitle>IMEI</DFTitle>
<DFType> <DFType>
<DDFName></DDFName> <DDFName />
</DFType> </DFType>
<MSFT:DynamicNodeNaming>
<MSFT:ClientInventory />
</MSFT:DynamicNodeNaming>
</DFProperties> </DFProperties>
<Node> <Node>
<NodeName>IMSI</NodeName> <NodeName>IMSI</NodeName>
@ -111,6 +121,7 @@ The XML below is for Windows 10, version 1803.
<AccessType> <AccessType>
<Get /> <Get />
</AccessType> </AccessType>
<Description>The International Mobile Subscriber Identity (IMSI) associated with the IMEI number.</Description>
<DFFormat> <DFFormat>
<chr /> <chr />
</DFFormat> </DFFormat>
@ -121,7 +132,7 @@ The XML below is for Windows 10, version 1803.
<Dynamic /> <Dynamic />
</Scope> </Scope>
<DFType> <DFType>
<MIME>text/plain</MIME> <MIME />
</DFType> </DFType>
</DFProperties> </DFProperties>
</Node> </Node>
@ -131,6 +142,7 @@ The XML below is for Windows 10, version 1803.
<AccessType> <AccessType>
<Get /> <Get />
</AccessType> </AccessType>
<Description>The Integrated Circuit Card ID (ICCID) of the SIM card associated with the specific IMEI number.</Description>
<DFFormat> <DFFormat>
<chr /> <chr />
</DFFormat> </DFFormat>
@ -141,7 +153,7 @@ The XML below is for Windows 10, version 1803.
<Dynamic /> <Dynamic />
</Scope> </Scope>
<DFType> <DFType>
<MIME>text/plain</MIME> <MIME />
</DFType> </DFType>
</DFProperties> </DFProperties>
</Node> </Node>
@ -151,6 +163,7 @@ The XML below is for Windows 10, version 1803.
<AccessType> <AccessType>
<Get /> <Get />
</AccessType> </AccessType>
<Description>Phone number associated with the specific IMEI number.</Description>
<DFFormat> <DFFormat>
<chr /> <chr />
</DFFormat> </DFFormat>
@ -161,7 +174,7 @@ The XML below is for Windows 10, version 1803.
<Dynamic /> <Dynamic />
</Scope> </Scope>
<DFType> <DFType>
<MIME>text/plain</MIME> <MIME />
</DFType> </DFType>
</DFProperties> </DFProperties>
</Node> </Node>
@ -171,6 +184,7 @@ The XML below is for Windows 10, version 1803.
<AccessType> <AccessType>
<Get /> <Get />
</AccessType> </AccessType>
<Description>The mobile service provider or mobile operator associated with the specific IMEI number.</Description>
<DFFormat> <DFFormat>
<chr /> <chr />
</DFFormat> </DFFormat>
@ -181,7 +195,7 @@ The XML below is for Windows 10, version 1803.
<Dynamic /> <Dynamic />
</Scope> </Scope>
<DFType> <DFType>
<MIME>text/plain</MIME> <MIME />
</DFType> </DFType>
</DFProperties> </DFProperties>
</Node> </Node>
@ -191,6 +205,7 @@ The XML below is for Windows 10, version 1803.
<AccessType> <AccessType>
<Get /> <Get />
</AccessType> </AccessType>
<Description>Indicates whether the SIM card associated with the specific IMEI number is roaming.</Description>
<DFFormat> <DFFormat>
<bool /> <bool />
</DFFormat> </DFFormat>
@ -201,7 +216,7 @@ The XML below is for Windows 10, version 1803.
<Dynamic /> <Dynamic />
</Scope> </Scope>
<DFType> <DFType>
<MIME>text/plain</MIME> <MIME />
</DFType> </DFType>
</DFProperties> </DFProperties>
</Node> </Node>
@ -211,6 +226,7 @@ The XML below is for Windows 10, version 1803.
<AccessType> <AccessType>
<Get /> <Get />
</AccessType> </AccessType>
<Description>Boolean value that indicates compliance with the enforced enterprise roaming policy.</Description>
<DFFormat> <DFFormat>
<bool /> <bool />
</DFFormat> </DFFormat>
@ -221,7 +237,7 @@ The XML below is for Windows 10, version 1803.
<Dynamic /> <Dynamic />
</Scope> </Scope>
<DFType> <DFType>
<MIME>text/plain</MIME> <MIME />
</DFType> </DFType>
</DFProperties> </DFProperties>
</Node> </Node>
@ -233,6 +249,7 @@ The XML below is for Windows 10, version 1803.
<AccessType> <AccessType>
<Get /> <Get />
</AccessType> </AccessType>
<Description>Node for queries on network and device properties.</Description>
<DFFormat> <DFFormat>
<node /> <node />
</DFFormat> </DFFormat>
@ -243,15 +260,17 @@ The XML below is for Windows 10, version 1803.
<Permanent /> <Permanent />
</Scope> </Scope>
<DFType> <DFType>
<DDFName></DDFName> <DDFName />
</DFType> </DFType>
</DFProperties> </DFProperties>
<Node> <Node>
<NodeName></NodeName> <NodeName>
</NodeName>
<DFProperties> <DFProperties>
<AccessType> <AccessType>
<Get /> <Get />
</AccessType> </AccessType>
<Description>MAC address of the wireless network card. A MAC address is present for each network card on the device.</Description>
<DFFormat> <DFFormat>
<node /> <node />
</DFFormat> </DFFormat>
@ -263,8 +282,11 @@ The XML below is for Windows 10, version 1803.
</Scope> </Scope>
<DFTitle>MacAddress</DFTitle> <DFTitle>MacAddress</DFTitle>
<DFType> <DFType>
<DDFName></DDFName> <DDFName />
</DFType> </DFType>
<MSFT:DynamicNodeNaming>
<MSFT:ClientInventory />
</MSFT:DynamicNodeNaming>
</DFProperties> </DFProperties>
<Node> <Node>
<NodeName>IPAddressV4</NodeName> <NodeName>IPAddressV4</NodeName>
@ -272,6 +294,7 @@ The XML below is for Windows 10, version 1803.
<AccessType> <AccessType>
<Get /> <Get />
</AccessType> </AccessType>
<Description>IPv4 address of the network card associated with the MAC address.</Description>
<DFFormat> <DFFormat>
<chr /> <chr />
</DFFormat> </DFFormat>
@ -282,7 +305,7 @@ The XML below is for Windows 10, version 1803.
<Dynamic /> <Dynamic />
</Scope> </Scope>
<DFType> <DFType>
<MIME>text/plain</MIME> <MIME />
</DFType> </DFType>
</DFProperties> </DFProperties>
</Node> </Node>
@ -292,6 +315,7 @@ The XML below is for Windows 10, version 1803.
<AccessType> <AccessType>
<Get /> <Get />
</AccessType> </AccessType>
<Description>IPv6 address of the network card associated with the MAC address.</Description>
<DFFormat> <DFFormat>
<chr /> <chr />
</DFFormat> </DFFormat>
@ -302,7 +326,7 @@ The XML below is for Windows 10, version 1803.
<Dynamic /> <Dynamic />
</Scope> </Scope>
<DFType> <DFType>
<MIME>text/plain</MIME> <MIME />
</DFType> </DFType>
</DFProperties> </DFProperties>
</Node> </Node>
@ -312,6 +336,7 @@ The XML below is for Windows 10, version 1803.
<AccessType> <AccessType>
<Get /> <Get />
</AccessType> </AccessType>
<Description>Boolean value that indicates whether the network card associated with the MAC address has an active network connection.</Description>
<DFFormat> <DFFormat>
<bool /> <bool />
</DFFormat> </DFFormat>
@ -322,7 +347,7 @@ The XML below is for Windows 10, version 1803.
<Dynamic /> <Dynamic />
</Scope> </Scope>
<DFType> <DFType>
<MIME>text/plain</MIME> <MIME />
</DFType> </DFType>
</DFProperties> </DFProperties>
</Node> </Node>
@ -332,6 +357,7 @@ The XML below is for Windows 10, version 1803.
<AccessType> <AccessType>
<Get /> <Get />
</AccessType> </AccessType>
<Description>Type of network connection. The value is one of the following: 2 - WLAN (or other Wireless interface), 1 - LAN (or other Wired interface), 0 - Unknown</Description>
<DFFormat> <DFFormat>
<int /> <int />
</DFFormat> </DFFormat>
@ -342,7 +368,7 @@ The XML below is for Windows 10, version 1803.
<Dynamic /> <Dynamic />
</Scope> </Scope>
<DFType> <DFType>
<MIME>text/plain</MIME> <MIME />
</DFType> </DFType>
</DFProperties> </DFProperties>
</Node> </Node>
@ -354,6 +380,7 @@ The XML below is for Windows 10, version 1803.
<AccessType> <AccessType>
<Get /> <Get />
</AccessType> </AccessType>
<Description>Node for the compliance query.</Description>
<DFFormat> <DFFormat>
<node /> <node />
</DFFormat> </DFFormat>
@ -364,7 +391,7 @@ The XML below is for Windows 10, version 1803.
<Permanent /> <Permanent />
</Scope> </Scope>
<DFType> <DFType>
<DDFName></DDFName> <DDFName />
</DFType> </DFType>
</DFProperties> </DFProperties>
<Node> <Node>
@ -373,6 +400,7 @@ The XML below is for Windows 10, version 1803.
<AccessType> <AccessType>
<Get /> <Get />
</AccessType> </AccessType>
<Description>Boolean value that indicates compliance with the enterprise encryption policy for OS (system) drives. The value is one of the following: 0 - not encrypted, 1 - encrypted</Description>
<DFFormat> <DFFormat>
<bool /> <bool />
</DFFormat> </DFFormat>
@ -383,7 +411,7 @@ The XML below is for Windows 10, version 1803.
<Permanent /> <Permanent />
</Scope> </Scope>
<DFType> <DFType>
<MIME>text/plain</MIME> <MIME />
</DFType> </DFType>
</DFProperties> </DFProperties>
</Node> </Node>
@ -394,6 +422,7 @@ The XML below is for Windows 10, version 1803.
<AccessType> <AccessType>
<Get /> <Get />
</AccessType> </AccessType>
<Description>Node for the TPM query.</Description>
<DFFormat> <DFFormat>
<node /> <node />
</DFFormat> </DFFormat>
@ -404,8 +433,12 @@ The XML below is for Windows 10, version 1803.
<Permanent /> <Permanent />
</Scope> </Scope>
<DFType> <DFType>
<DDFName></DDFName> <DDFName />
</DFType> </DFType>
<MSFT:Applicability>
<MSFT:OsBuildVersion>10.0.15063</MSFT:OsBuildVersion>
<MSFT:CspVersion>1.1</MSFT:CspVersion>
</MSFT:Applicability>
</DFProperties> </DFProperties>
<Node> <Node>
<NodeName>SpecificationVersion</NodeName> <NodeName>SpecificationVersion</NodeName>
@ -414,20 +447,99 @@ The XML below is for Windows 10, version 1803.
<Get /> <Get />
</AccessType> </AccessType>
<DefaultValue>Not available</DefaultValue> <DefaultValue>Not available</DefaultValue>
<Description>String that specifies the specification version.</Description>
<DFFormat> <DFFormat>
<chr /> <chr />
</DFFormat> </DFFormat>
<Occurrence> <Occurrence>
<ZeroOrOne /> <One />
</Occurrence> </Occurrence>
<Scope> <Scope>
<Permanent /> <Permanent />
</Scope> </Scope>
<DFType> <DFType>
<MIME>text/plain</MIME> <MIME />
</DFType> </DFType>
</DFProperties> </DFProperties>
</Node> </Node>
<Node>
<NodeName>ManufacturerId</NodeName>
<DFProperties>
<AccessType>
<Get />
</AccessType>
<DefaultValue>Not available</DefaultValue>
<Description>String that specifies the TPM manufacturer ID as a number.</Description>
<DFFormat>
<chr />
</DFFormat>
<Occurrence>
<One />
</Occurrence>
<Scope>
<Permanent />
</Scope>
<DFType>
<MIME />
</DFType>
<MSFT:Applicability>
<MSFT:OsBuildVersion>10.0.22000, 10.0.19041.1387, 10.0.19042.1387, 10.0.19043.1387, 10.0.19044.1387</MSFT:OsBuildVersion>
<MSFT:CspVersion>1.5</MSFT:CspVersion>
</MSFT:Applicability>
</DFProperties>
</Node>
<Node>
<NodeName>ManufacturerIdTxt</NodeName>
<DFProperties>
<AccessType>
<Get />
</AccessType>
<DefaultValue>Not available</DefaultValue>
<Description>String that specifies the TPM manufacturer ID as text.</Description>
<DFFormat>
<chr />
</DFFormat>
<Occurrence>
<One />
</Occurrence>
<Scope>
<Permanent />
</Scope>
<DFType>
<MIME />
</DFType>
<MSFT:Applicability>
<MSFT:OsBuildVersion>10.0.22000, 10.0.19041.1387, 10.0.19042.1387, 10.0.19043.1387, 10.0.19044.1387</MSFT:OsBuildVersion>
<MSFT:CspVersion>1.5</MSFT:CspVersion>
</MSFT:Applicability>
</DFProperties>
</Node>
<Node>
<NodeName>ManufacturerVersion</NodeName>
<DFProperties>
<AccessType>
<Get />
</AccessType>
<DefaultValue>Not available</DefaultValue>
<Description>String that specifies the manufacturer version.</Description>
<DFFormat>
<chr />
</DFFormat>
<Occurrence>
<One />
</Occurrence>
<Scope>
<Permanent />
</Scope>
<DFType>
<MIME />
</DFType>
<MSFT:Applicability>
<MSFT:OsBuildVersion>10.0.22000, 10.0.19041.1387, 10.0.19042.1387, 10.0.19043.1387, 10.0.19044.1387</MSFT:OsBuildVersion>
<MSFT:CspVersion>1.5</MSFT:CspVersion>
</MSFT:Applicability>
</DFProperties>
</Node>
</Node> </Node>
<Node> <Node>
<NodeName>OS</NodeName> <NodeName>OS</NodeName>
@ -435,6 +547,7 @@ The XML below is for Windows 10, version 1803.
<AccessType> <AccessType>
<Get /> <Get />
</AccessType> </AccessType>
<Description>Node for the OS query.</Description>
<DFFormat> <DFFormat>
<node /> <node />
</DFFormat> </DFFormat>
@ -445,8 +558,12 @@ The XML below is for Windows 10, version 1803.
<Permanent /> <Permanent />
</Scope> </Scope>
<DFType> <DFType>
<DDFName></DDFName> <DDFName />
</DFType> </DFType>
<MSFT:Applicability>
<MSFT:OsBuildVersion>10.0.15063</MSFT:OsBuildVersion>
<MSFT:CspVersion>1.1</MSFT:CspVersion>
</MSFT:Applicability>
</DFProperties> </DFProperties>
<Node> <Node>
<NodeName>Edition</NodeName> <NodeName>Edition</NodeName>
@ -455,6 +572,7 @@ The XML below is for Windows 10, version 1803.
<Get /> <Get />
</AccessType> </AccessType>
<DefaultValue>Not available</DefaultValue> <DefaultValue>Not available</DefaultValue>
<Description>String that specifies the OS edition.</Description>
<DFFormat> <DFFormat>
<chr /> <chr />
</DFFormat> </DFFormat>
@ -465,7 +583,7 @@ The XML below is for Windows 10, version 1803.
<Permanent /> <Permanent />
</Scope> </Scope>
<DFType> <DFType>
<MIME>text/plain</MIME> <MIME />
</DFType> </DFType>
</DFProperties> </DFProperties>
</Node> </Node>
@ -476,8 +594,9 @@ The XML below is for Windows 10, version 1803.
<Get /> <Get />
</AccessType> </AccessType>
<DefaultValue>Not available</DefaultValue> <DefaultValue>Not available</DefaultValue>
<Description>Read only node that specifies the device mode. Valid values: 0 - the device is in standard configuration, 1 - the device is in S mode configuration</Description>
<DFFormat> <DFFormat>
<chr /> <int />
</DFFormat> </DFFormat>
<Occurrence> <Occurrence>
<One /> <One />
@ -486,8 +605,12 @@ The XML below is for Windows 10, version 1803.
<Permanent /> <Permanent />
</Scope> </Scope>
<DFType> <DFType>
<MIME>text/plain</MIME> <MIME />
</DFType> </DFType>
<MSFT:Applicability>
<MSFT:OsBuildVersion>10.0.17134</MSFT:OsBuildVersion>
<MSFT:CspVersion>1.4</MSFT:CspVersion>
</MSFT:Applicability>
</DFProperties> </DFProperties>
</Node> </Node>
</Node> </Node>
@ -497,6 +620,7 @@ The XML below is for Windows 10, version 1803.
<AccessType> <AccessType>
<Get /> <Get />
</AccessType> </AccessType>
<Description>Node for the antivirus query.</Description>
<DFFormat> <DFFormat>
<node /> <node />
</DFFormat> </DFFormat>
@ -507,8 +631,12 @@ The XML below is for Windows 10, version 1803.
<Permanent /> <Permanent />
</Scope> </Scope>
<DFType> <DFType>
<DDFName></DDFName> <DDFName />
</DFType> </DFType>
<MSFT:Applicability>
<MSFT:OsBuildVersion>10.0.15063</MSFT:OsBuildVersion>
<MSFT:CspVersion>1.1</MSFT:CspVersion>
</MSFT:Applicability>
</DFProperties> </DFProperties>
<Node> <Node>
<NodeName>SignatureStatus</NodeName> <NodeName>SignatureStatus</NodeName>
@ -517,17 +645,18 @@ The XML below is for Windows 10, version 1803.
<Get /> <Get />
</AccessType> </AccessType>
<DefaultValue>1</DefaultValue> <DefaultValue>1</DefaultValue>
<Description>Integer that specifies the status of the antivirus signature. Valid values: 0 - The security software reports that it is not the most recent version. 1 (default) - The security software reports that it is the most recent version. 2 Not applicable. This is returned for devices like the phone that do not have an antivirus (where the API doesnt exist.) If more than one antivirus provider is active, this node returns: 1 If every active antivirus provider has a valid signature status. 0 If any of the active antivirus providers has an invalid signature status.</Description>
<DFFormat> <DFFormat>
<int /> <int />
</DFFormat> </DFFormat>
<Occurrence> <Occurrence>
<ZeroOrOne /> <One />
</Occurrence> </Occurrence>
<Scope> <Scope>
<Permanent /> <Permanent />
</Scope> </Scope>
<DFType> <DFType>
<MIME>text/plain</MIME> <MIME />
</DFType> </DFType>
</DFProperties> </DFProperties>
</Node> </Node>
@ -538,17 +667,18 @@ The XML below is for Windows 10, version 1803.
<Get /> <Get />
</AccessType> </AccessType>
<DefaultValue>3</DefaultValue> <DefaultValue>3</DefaultValue>
<Description>Integer that specifies the status of the antivirus. Valid values: 0 Antivirus is on and monitoring, 1 Antivirus is disabled, 2 Antivirus is not monitoring the device/PC or some options have been turned off, 3 (default) Antivirus is temporarily not completely monitoring the device/PC, 4 Antivirus not applicable for this device. This is returned for devices like the phone that do not have an antivirus (where the API doesnt exist.)</Description>
<DFFormat> <DFFormat>
<int /> <int />
</DFFormat> </DFFormat>
<Occurrence> <Occurrence>
<ZeroOrOne /> <One />
</Occurrence> </Occurrence>
<Scope> <Scope>
<Permanent /> <Permanent />
</Scope> </Scope>
<DFType> <DFType>
<MIME>text/plain</MIME> <MIME />
</DFType> </DFType>
</DFProperties> </DFProperties>
</Node> </Node>
@ -559,6 +689,7 @@ The XML below is for Windows 10, version 1803.
<AccessType> <AccessType>
<Get /> <Get />
</AccessType> </AccessType>
<Description>Node for the antispyware query.</Description>
<DFFormat> <DFFormat>
<node /> <node />
</DFFormat> </DFFormat>
@ -569,8 +700,12 @@ The XML below is for Windows 10, version 1803.
<Permanent /> <Permanent />
</Scope> </Scope>
<DFType> <DFType>
<DDFName></DDFName> <DDFName />
</DFType> </DFType>
<MSFT:Applicability>
<MSFT:OsBuildVersion>10.0.15063</MSFT:OsBuildVersion>
<MSFT:CspVersion>1.1</MSFT:CspVersion>
</MSFT:Applicability>
</DFProperties> </DFProperties>
<Node> <Node>
<NodeName>SignatureStatus</NodeName> <NodeName>SignatureStatus</NodeName>
@ -579,17 +714,18 @@ The XML below is for Windows 10, version 1803.
<Get /> <Get />
</AccessType> </AccessType>
<DefaultValue>1</DefaultValue> <DefaultValue>1</DefaultValue>
<Description>Integer that specifies the status of the antispyware signature. Valid values: 0 - The security software reports that it is not the most recent version. 1 - The security software reports that it is the most recent version. 2 - Not applicable. This is returned for devices like the phone that do not have an antivirus (where the API doesnt exist.) If more than one antispyware provider is active, this node returns: 1 If every active antispyware provider has a valid signature status. 0 If any of the active antispyware providers has an invalid signature status.</Description>
<DFFormat> <DFFormat>
<int /> <int />
</DFFormat> </DFFormat>
<Occurrence> <Occurrence>
<ZeroOrOne /> <One />
</Occurrence> </Occurrence>
<Scope> <Scope>
<Permanent /> <Permanent />
</Scope> </Scope>
<DFType> <DFType>
<MIME>text/plain</MIME> <MIME />
</DFType> </DFType>
</DFProperties> </DFProperties>
</Node> </Node>
@ -600,17 +736,18 @@ The XML below is for Windows 10, version 1803.
<Get /> <Get />
</AccessType> </AccessType>
<DefaultValue>3</DefaultValue> <DefaultValue>3</DefaultValue>
<Description>Integer that specifies the status of the antispyware. Valid values: 0 - The status of the security provider category is good and does not need user attention. 1 - The status of the security provider category is not monitored by Windows Security Center (WSC). 2 - The status of the security provider category is poor and the computer may be at risk. 3 - The security provider category is in snooze state. Snooze indicates that WSC is not actively protecting the computer.</Description>
<DFFormat> <DFFormat>
<int /> <int />
</DFFormat> </DFFormat>
<Occurrence> <Occurrence>
<ZeroOrOne /> <One />
</Occurrence> </Occurrence>
<Scope> <Scope>
<Permanent /> <Permanent />
</Scope> </Scope>
<DFType> <DFType>
<MIME>text/plain</MIME> <MIME />
</DFType> </DFType>
</DFProperties> </DFProperties>
</Node> </Node>
@ -621,6 +758,7 @@ The XML below is for Windows 10, version 1803.
<AccessType> <AccessType>
<Get /> <Get />
</AccessType> </AccessType>
<Description>Node for the firewall query.</Description>
<DFFormat> <DFFormat>
<node /> <node />
</DFFormat> </DFFormat>
@ -631,8 +769,12 @@ The XML below is for Windows 10, version 1803.
<Permanent /> <Permanent />
</Scope> </Scope>
<DFType> <DFType>
<DDFName></DDFName> <DDFName />
</DFType> </DFType>
<MSFT:Applicability>
<MSFT:OsBuildVersion>10.0.15063</MSFT:OsBuildVersion>
<MSFT:CspVersion>1.1</MSFT:CspVersion>
</MSFT:Applicability>
</DFProperties> </DFProperties>
<Node> <Node>
<NodeName>Status</NodeName> <NodeName>Status</NodeName>
@ -641,17 +783,18 @@ The XML below is for Windows 10, version 1803.
<Get /> <Get />
</AccessType> </AccessType>
<DefaultValue>3</DefaultValue> <DefaultValue>3</DefaultValue>
<Description>Integer that specifies the status of the firewall. Valid values: 0 Firewall is on and monitoring, 1 Firewall has been disabled, 2 Firewall is not monitoring all networks or some rules have been turned off, 3 (default) Firewall is temporarily not monitoring all networks, 4 Not applicable. This is returned for devices like the phone that do not have an antivirus (where the API doesnt exist.)</Description>
<DFFormat> <DFFormat>
<int /> <int />
</DFFormat> </DFFormat>
<Occurrence> <Occurrence>
<ZeroOrOne /> <One />
</Occurrence> </Occurrence>
<Scope> <Scope>
<Permanent /> <Permanent />
</Scope> </Scope>
<DFType> <DFType>
<MIME>text/plain</MIME> <MIME />
</DFType> </DFType>
</DFProperties> </DFProperties>
</Node> </Node>
@ -662,6 +805,7 @@ The XML below is for Windows 10, version 1803.
<AccessType> <AccessType>
<Get /> <Get />
</AccessType> </AccessType>
<Description>Node for the UAC query.</Description>
<DFFormat> <DFFormat>
<node /> <node />
</DFFormat> </DFFormat>
@ -672,8 +816,12 @@ The XML below is for Windows 10, version 1803.
<Permanent /> <Permanent />
</Scope> </Scope>
<DFType> <DFType>
<DDFName></DDFName> <DDFName />
</DFType> </DFType>
<MSFT:Applicability>
<MSFT:OsBuildVersion>10.0.15063</MSFT:OsBuildVersion>
<MSFT:CspVersion>1.1</MSFT:CspVersion>
</MSFT:Applicability>
</DFProperties> </DFProperties>
<Node> <Node>
<NodeName>Status</NodeName> <NodeName>Status</NodeName>
@ -681,17 +829,18 @@ The XML below is for Windows 10, version 1803.
<AccessType> <AccessType>
<Get /> <Get />
</AccessType> </AccessType>
<Description>Integer that specifies the status of the UAC.</Description>
<DFFormat> <DFFormat>
<int /> <int />
</DFFormat> </DFFormat>
<Occurrence> <Occurrence>
<ZeroOrOne /> <One />
</Occurrence> </Occurrence>
<Scope> <Scope>
<Permanent /> <Permanent />
</Scope> </Scope>
<DFType> <DFType>
<MIME>text/plain</MIME> <MIME />
</DFType> </DFType>
</DFProperties> </DFProperties>
</Node> </Node>
@ -702,6 +851,7 @@ The XML below is for Windows 10, version 1803.
<AccessType> <AccessType>
<Get /> <Get />
</AccessType> </AccessType>
<Description>Node for the battery query.</Description>
<DFFormat> <DFFormat>
<node /> <node />
</DFFormat> </DFFormat>
@ -712,8 +862,12 @@ The XML below is for Windows 10, version 1803.
<Permanent /> <Permanent />
</Scope> </Scope>
<DFType> <DFType>
<DDFName></DDFName> <DDFName />
</DFType> </DFType>
<MSFT:Applicability>
<MSFT:OsBuildVersion>10.0.15063</MSFT:OsBuildVersion>
<MSFT:CspVersion>1.1</MSFT:CspVersion>
</MSFT:Applicability>
</DFProperties> </DFProperties>
<Node> <Node>
<NodeName>Status</NodeName> <NodeName>Status</NodeName>
@ -722,6 +876,7 @@ The XML below is for Windows 10, version 1803.
<Get /> <Get />
</AccessType> </AccessType>
<DefaultValue>0</DefaultValue> <DefaultValue>0</DefaultValue>
<Description>Integer that specifies the status of the battery</Description>
<DFFormat> <DFFormat>
<int /> <int />
</DFFormat> </DFFormat>
@ -732,7 +887,7 @@ The XML below is for Windows 10, version 1803.
<Permanent /> <Permanent />
</Scope> </Scope>
<DFType> <DFType>
<MIME>text/plain</MIME> <MIME />
</DFType> </DFType>
</DFProperties> </DFProperties>
</Node> </Node>
@ -743,6 +898,7 @@ The XML below is for Windows 10, version 1803.
<Get /> <Get />
</AccessType> </AccessType>
<DefaultValue>0</DefaultValue> <DefaultValue>0</DefaultValue>
<Description> Integer that specifies the estimated battery charge remaining. This is the value returned in BatteryLifeTime in SYSTEM_POWER_STATUS structure. The value is the number of seconds of battery life remaining when the device is not connected to an AC power source. When it is connected to a power source, the value is -1. When the estimation is unknown, the value is -1.</Description>
<DFFormat> <DFFormat>
<int /> <int />
</DFFormat> </DFFormat>
@ -753,7 +909,7 @@ The XML below is for Windows 10, version 1803.
<Permanent /> <Permanent />
</Scope> </Scope>
<DFType> <DFType>
<MIME>text/plain</MIME> <MIME />
</DFType> </DFType>
</DFProperties> </DFProperties>
</Node> </Node>
@ -764,6 +920,7 @@ The XML below is for Windows 10, version 1803.
<Get /> <Get />
</AccessType> </AccessType>
<DefaultValue>0</DefaultValue> <DefaultValue>0</DefaultValue>
<Description> Integer that specifies the estimated runtime of the battery. This is the value returned in BatteryLifeTime in SYSTEM_POWER_STATUS structure. The value is the number of seconds of battery life remaining when the device is not connected to an AC power source. When it is connected to a power source, the value is -1. When the estimation is unknown, the value is -1.</Description>
<DFFormat> <DFFormat>
<int /> <int />
</DFFormat> </DFFormat>
@ -774,7 +931,7 @@ The XML below is for Windows 10, version 1803.
<Permanent /> <Permanent />
</Scope> </Scope>
<DFType> <DFType>
<MIME>text/plain</MIME> <MIME />
</DFType> </DFType>
</DFProperties> </DFProperties>
</Node> </Node>
@ -797,8 +954,12 @@ The XML below is for Windows 10, version 1803.
</Scope> </Scope>
<DFTitle>DomainName</DFTitle> <DFTitle>DomainName</DFTitle>
<DFType> <DFType>
<MIME>text/plain</MIME> <MIME />
</DFType> </DFType>
<MSFT:Applicability>
<MSFT:OsBuildVersion>10.0.17134</MSFT:OsBuildVersion>
<MSFT:CspVersion>1.3</MSFT:CspVersion>
</MSFT:Applicability>
</DFProperties> </DFProperties>
</Node> </Node>
<Node> <Node>
@ -807,6 +968,7 @@ The XML below is for Windows 10, version 1803.
<AccessType> <AccessType>
<Get /> <Get />
</AccessType> </AccessType>
<Description>Node for Device Guard query.</Description>
<DFFormat> <DFFormat>
<node /> <node />
</DFFormat> </DFFormat>
@ -817,8 +979,12 @@ The XML below is for Windows 10, version 1803.
<Permanent /> <Permanent />
</Scope> </Scope>
<DFType> <DFType>
<DDFName></DDFName> <DDFName />
</DFType> </DFType>
<MSFT:Applicability>
<MSFT:OsBuildVersion>10.0.17134</MSFT:OsBuildVersion>
<MSFT:CspVersion>1.3</MSFT:CspVersion>
</MSFT:Applicability>
</DFProperties> </DFProperties>
<Node> <Node>
<NodeName>VirtualizationBasedSecurityHwReq</NodeName> <NodeName>VirtualizationBasedSecurityHwReq</NodeName>
@ -826,6 +992,7 @@ The XML below is for Windows 10, version 1803.
<AccessType> <AccessType>
<Get /> <Get />
</AccessType> </AccessType>
<Description>Virtualization-based security hardware requirement status. The value is a 256 value bitmask. 0x0: System meets hardware configuration requirements, 0x1: SecureBoot required, 0x2: DMA Protection required, 0x4: HyperV not supported for Guest VM, 0x8: HyperV feature is not available</Description>
<DFFormat> <DFFormat>
<int /> <int />
</DFFormat> </DFFormat>
@ -836,7 +1003,7 @@ The XML below is for Windows 10, version 1803.
<Permanent /> <Permanent />
</Scope> </Scope>
<DFType> <DFType>
<MIME>text/plain</MIME> <MIME />
</DFType> </DFType>
</DFProperties> </DFProperties>
</Node> </Node>
@ -846,6 +1013,7 @@ The XML below is for Windows 10, version 1803.
<AccessType> <AccessType>
<Get /> <Get />
</AccessType> </AccessType>
<Description>Virtualization-based security status. Value is one of the following: 0 - Running, 1 - Reboot required, 2 - 64 bit architecture required, 3 - not licensed, 4 - not configured, 5 - System doesn't meet hardware requirements, 42 Other. Event logs in Microsoft-Windows-DeviceGuard have more details</Description>
<DFFormat> <DFFormat>
<int /> <int />
</DFFormat> </DFFormat>
@ -856,7 +1024,7 @@ The XML below is for Windows 10, version 1803.
<Permanent /> <Permanent />
</Scope> </Scope>
<DFType> <DFType>
<MIME>text/plain</MIME> <MIME />
</DFType> </DFType>
</DFProperties> </DFProperties>
</Node> </Node>
@ -866,6 +1034,7 @@ The XML below is for Windows 10, version 1803.
<AccessType> <AccessType>
<Get /> <Get />
</AccessType> </AccessType>
<Description>Local System Authority (LSA) credential guard status. 0 - Running, 1 - Reboot required, 2 - Not licensed for Credential Guard, 3 - Not configured, 4 - VBS not running</Description>
<DFFormat> <DFFormat>
<int /> <int />
</DFFormat> </DFFormat>
@ -876,7 +1045,103 @@ The XML below is for Windows 10, version 1803.
<Permanent /> <Permanent />
</Scope> </Scope>
<DFType> <DFType>
<MIME>text/plain</MIME> <MIME />
</DFType>
</DFProperties>
</Node>
<Node>
<NodeName>HypervisorEnforcedCodeIntegrityStatus</NodeName>
<DFProperties>
<AccessType>
<Get />
</AccessType>
<Description>Hypervisor Enforced Code Integrity (HVCI) status. 0 - Running, 1 - Reboot required, 2 - Not configured, 3 - VBS not running</Description>
<DFFormat>
<int />
</DFFormat>
<Occurrence>
<One />
</Occurrence>
<Scope>
<Permanent />
</Scope>
<DFType>
<MIME />
</DFType>
<MSFT:Applicability>
<MSFT:OsBuildVersion>10.0.22000</MSFT:OsBuildVersion>
<MSFT:CspVersion>1.5</MSFT:CspVersion>
</MSFT:Applicability>
</DFProperties>
</Node>
<Node>
<NodeName>SystemGuardStatus</NodeName>
<DFProperties>
<AccessType>
<Get />
</AccessType>
<Description>System Guard status. 0 - Running, 1 - Reboot required, 2 - Not configured, 3 - System doesn't meet hardware requirements</Description>
<DFFormat>
<int />
</DFFormat>
<Occurrence>
<One />
</Occurrence>
<Scope>
<Permanent />
</Scope>
<DFType>
<MIME />
</DFType>
<MSFT:Applicability>
<MSFT:OsBuildVersion>10.0.22000</MSFT:OsBuildVersion>
<MSFT:CspVersion>1.5</MSFT:CspVersion>
</MSFT:Applicability>
</DFProperties>
</Node>
</Node>
<Node>
<NodeName>DMA</NodeName>
<DFProperties>
<AccessType>
<Get />
</AccessType>
<Description>Node for DMA query.</Description>
<DFFormat>
<node />
</DFFormat>
<Occurrence>
<One />
</Occurrence>
<Scope>
<Permanent />
</Scope>
<DFType>
<DDFName />
</DFType>
<MSFT:Applicability>
<MSFT:OsBuildVersion>10.0.22000</MSFT:OsBuildVersion>
<MSFT:CspVersion>1.5</MSFT:CspVersion>
</MSFT:Applicability>
</DFProperties>
<Node>
<NodeName>BootDMAProtectionStatus</NodeName>
<DFProperties>
<AccessType>
<Get />
</AccessType>
<Description>Boot DMA Protection status. 1 - Enabled, 2 - Disabled</Description>
<DFFormat>
<int />
</DFFormat>
<Occurrence>
<One />
</Occurrence>
<Scope>
<Permanent />
</Scope>
<DFType>
<MIME />
</DFType> </DFType>
</DFProperties> </DFProperties>
</Node> </Node>
@ -900,6 +1165,10 @@ The XML below is for Windows 10, version 1803.
<DFType> <DFType>
<DDFName /> <DDFName />
</DFType> </DFType>
<MSFT:Applicability>
<MSFT:OsBuildVersion>10.0.22621, 10.0.22000.1165</MSFT:OsBuildVersion>
<MSFT:CspVersion>1.5</MSFT:CspVersion>
</MSFT:Applicability>
</DFProperties> </DFProperties>
<Node> <Node>
<NodeName>MDMClientCertAttestation</NodeName> <NodeName>MDMClientCertAttestation</NodeName>
@ -926,3 +1195,7 @@ The XML below is for Windows 10, version 1803.
</Node> </Node>
</MgmtTree> </MgmtTree>
``` ```
## Related articles
[DeviceStatus configuration service provider reference](devicestatus-csp.md)

View File

@ -4,7 +4,7 @@ description: Learn more about the Policy CSP.
author: vinaypamnani-msft author: vinaypamnani-msft
manager: aaroncz manager: aaroncz
ms.author: vinpa ms.author: vinpa
ms.date: 01/17/2023 ms.date: 02/17/2023
ms.localizationpriority: medium ms.localizationpriority: medium
ms.prod: windows-client ms.prod: windows-client
ms.technology: itpro-manage ms.technology: itpro-manage
@ -344,7 +344,7 @@ Specifies the name of the Win32 or Desktop Bridge app associated with the ADMX f
<!-- Device-ConfigOperations-ADMXInstall-{AppName}-{SettingsType}-Description-Begin --> <!-- Device-ConfigOperations-ADMXInstall-{AppName}-{SettingsType}-Description-Begin -->
<!-- Description-Source-DDF --> <!-- Description-Source-DDF -->
Setting Type of Win32 App. Policy Or Preference Setting Type of Win32 App. Policy Or Preference.
<!-- Device-ConfigOperations-ADMXInstall-{AppName}-{SettingsType}-Description-End --> <!-- Device-ConfigOperations-ADMXInstall-{AppName}-{SettingsType}-Description-End -->
<!-- Device-ConfigOperations-ADMXInstall-{AppName}-{SettingsType}-Editable-Begin --> <!-- Device-ConfigOperations-ADMXInstall-{AppName}-{SettingsType}-Editable-Begin -->
@ -384,7 +384,7 @@ Setting Type of Win32 App. Policy Or Preference
<!-- Device-ConfigOperations-ADMXInstall-{AppName}-{SettingsType}-{AdmxFileId}-Description-Begin --> <!-- Device-ConfigOperations-ADMXInstall-{AppName}-{SettingsType}-{AdmxFileId}-Description-Begin -->
<!-- Description-Source-DDF --> <!-- Description-Source-DDF -->
Unique ID of ADMX file Unique ID of ADMX file.
<!-- Device-ConfigOperations-ADMXInstall-{AppName}-{SettingsType}-{AdmxFileId}-Description-End --> <!-- Device-ConfigOperations-ADMXInstall-{AppName}-{SettingsType}-{AdmxFileId}-Description-End -->
<!-- Device-ConfigOperations-ADMXInstall-{AppName}-{SettingsType}-{AdmxFileId}-Editable-Begin --> <!-- Device-ConfigOperations-ADMXInstall-{AppName}-{SettingsType}-{AdmxFileId}-Editable-Begin -->
@ -424,7 +424,7 @@ Unique ID of ADMX file
<!-- Device-ConfigOperations-ADMXInstall-{AppName}-Properties-Description-Begin --> <!-- Device-ConfigOperations-ADMXInstall-{AppName}-Properties-Description-Begin -->
<!-- Description-Source-DDF --> <!-- Description-Source-DDF -->
Properties of Win32 App ADMX Ingestion Properties of Win32 App ADMX Ingestion.
<!-- Device-ConfigOperations-ADMXInstall-{AppName}-Properties-Description-End --> <!-- Device-ConfigOperations-ADMXInstall-{AppName}-Properties-Description-End -->
<!-- Device-ConfigOperations-ADMXInstall-{AppName}-Properties-Editable-Begin --> <!-- Device-ConfigOperations-ADMXInstall-{AppName}-Properties-Editable-Begin -->
@ -463,7 +463,7 @@ Properties of Win32 App ADMX Ingestion
<!-- Device-ConfigOperations-ADMXInstall-{AppName}-Properties-{SettingsType}-Description-Begin --> <!-- Device-ConfigOperations-ADMXInstall-{AppName}-Properties-{SettingsType}-Description-Begin -->
<!-- Description-Source-DDF --> <!-- Description-Source-DDF -->
Setting Type of Win32 App. Policy Or Preference Setting Type of Win32 App. Policy Or Preference.
<!-- Device-ConfigOperations-ADMXInstall-{AppName}-Properties-{SettingsType}-Description-End --> <!-- Device-ConfigOperations-ADMXInstall-{AppName}-Properties-{SettingsType}-Description-End -->
<!-- Device-ConfigOperations-ADMXInstall-{AppName}-Properties-{SettingsType}-Editable-Begin --> <!-- Device-ConfigOperations-ADMXInstall-{AppName}-Properties-{SettingsType}-Editable-Begin -->
@ -503,7 +503,7 @@ Setting Type of Win32 App. Policy Or Preference
<!-- Device-ConfigOperations-ADMXInstall-{AppName}-Properties-{SettingsType}-{AdmxFileId}-Description-Begin --> <!-- Device-ConfigOperations-ADMXInstall-{AppName}-Properties-{SettingsType}-{AdmxFileId}-Description-Begin -->
<!-- Description-Source-DDF --> <!-- Description-Source-DDF -->
Unique ID of ADMX file Unique ID of ADMX file.
<!-- Device-ConfigOperations-ADMXInstall-{AppName}-Properties-{SettingsType}-{AdmxFileId}-Description-End --> <!-- Device-ConfigOperations-ADMXInstall-{AppName}-Properties-{SettingsType}-{AdmxFileId}-Description-End -->
<!-- Device-ConfigOperations-ADMXInstall-{AppName}-Properties-{SettingsType}-{AdmxFileId}-Editable-Begin --> <!-- Device-ConfigOperations-ADMXInstall-{AppName}-Properties-{SettingsType}-{AdmxFileId}-Editable-Begin -->

View File

@ -678,7 +678,7 @@ items:
- name: DeviceStatus - name: DeviceStatus
href: devicestatus-csp.md href: devicestatus-csp.md
items: items:
- name: DeviceStatus DDF - name: DeviceStatus DDF file
href: devicestatus-ddf.md href: devicestatus-ddf.md
- name: DevInfo - name: DevInfo
href: devinfo-csp.md href: devinfo-csp.md

View File

@ -214,14 +214,12 @@ Initiates remote installation of Application Guard feature.
<!-- Description-Source-DDF-Forced --> <!-- Description-Source-DDF-Forced -->
Returns bitmask that indicates status of Application Guard platform installation and prerequisites on the device. Returns bitmask that indicates status of Application Guard platform installation and prerequisites on the device.
| Value | Description | Bit 0 - Set to 1 when Application Guard is enabled into enterprise manage mode.
|:--|:--| Bit 1 - Set to 1 when the client machine is Hyper-V capable.
| Bit 0 | Set to 1 when Application Guard is enabled into enterprise manage mode | Bit 2 - Reserved for Microsoft.
| Bit 1 | Set to 1 when the client machine is Hyper-V capable | Bit 3 - Set to 1 when Application Guard is installed on the client machine.
| Bit 2 | Reserved for Microsoft | Bit 4 - Reserved for Microsoft.
| Bit 3 | Set to 1 when Application Guard is installed on the client machine | Bit 5 - Set to 1 when the client machine meets minimum hardware requirements.
| Bit 4 | Reserved for Microsoft |
| Bit 5 | Set to 1 when the client machine meets minimum hardware requirements |
<!-- Device-PlatformStatus-Description-End --> <!-- Device-PlatformStatus-Description-End -->
@ -949,15 +947,13 @@ This policy setting allows you to determine whether users can elect to download
<!-- Description-Source-DDF-Forced --> <!-- Description-Source-DDF-Forced -->
Returns bitmask that indicates status of Application Guard installation and pre-requisites on the device. Returns bitmask that indicates status of Application Guard installation and pre-requisites on the device.
| Value | Description | Bit 0 - Set to 1 when Application Guard is enabled into enterprise manage mode.
|:--|:--| Bit 1 - Set to 1 when the client machine is Hyper-V capable.
| Bit 0 | Set to 1 when Application Guard is enabled into enterprise manage mode | Bit 2 - Set to 1 when the client machine has a valid OS license and SKU.
| Bit 1 | Set to 1 when the client machine is Hyper-V capable | Bit 3 - Set to 1 when Application Guard installed on the client machine.
| Bit 2 | Set to 1 when the client machine has a valid OS license and SKU | Bit 4 - Set to 1 when required Network Isolation Policies are configured.
| Bit 3 | Set to 1 when Application Guard installed on the client machine | Bit 5 - Set to 1 when the client machine meets minimum hardware requirements.
| Bit 4 | Set to 1 when required Network Isolation Policies are configured | Bit 6 - Set to 1 when system reboot is required.
| Bit 5 | Set to 1 when the client machine meets minimum hardware requirements |
| Bit 6 | Set to 1 when system reboot is required |
<!-- Device-Status-Description-End --> <!-- Device-Status-Description-End -->

View File

@ -4,7 +4,7 @@ description: Learn more about the WiredNetwork CSP.
author: vinaypamnani-msft author: vinaypamnani-msft
manager: aaroncz manager: aaroncz
ms.author: vinpa ms.author: vinpa
ms.date: 02/16/2023 ms.date: 02/17/2023
ms.localizationpriority: medium ms.localizationpriority: medium
ms.prod: windows-client ms.prod: windows-client
ms.technology: itpro-manage ms.technology: itpro-manage
@ -91,7 +91,7 @@ Enable block period (minutes), used to specify the duration for which automatic
<!-- Device-LanXML-Description-Begin --> <!-- Device-LanXML-Description-Begin -->
<!-- Description-Source-DDF --> <!-- Description-Source-DDF -->
XML describing the wired network configuration and follows the LAN_profile schemas <https://msdn.microsoft.com/library/windows/desktop/aa816366(v=vs.85).aspx>. XML describing the wired network configuration and follows the LAN_profile schemas <https://msdn.microsoft.com/library/windows/desktop/aa816366(v=vs.85).aspx>
<!-- Device-LanXML-Description-End --> <!-- Device-LanXML-Description-End -->
<!-- Device-LanXML-Editable-Begin --> <!-- Device-LanXML-Editable-Begin -->
@ -170,7 +170,7 @@ Enable block period (minutes), used to specify the duration for which automatic
<!-- User-LanXML-Description-Begin --> <!-- User-LanXML-Description-Begin -->
<!-- Description-Source-DDF --> <!-- Description-Source-DDF -->
XML describing the wired network configuration and follows the LAN_profile schemas <https://msdn.microsoft.com/library/windows/desktop/aa816366(v=vs.85).aspx>. XML describing the wired network configuration and follows the LAN_profile schemas <https://msdn.microsoft.com/library/windows/desktop/aa816366(v=vs.85).aspx>
<!-- User-LanXML-Description-End --> <!-- User-LanXML-Description-End -->
<!-- User-LanXML-Editable-Begin --> <!-- User-LanXML-Editable-Begin -->