From 73dae35e6d551cc6bb4f77935518b8bc2c5a9ac3 Mon Sep 17 00:00:00 2001 From: Iaan D'Souza-Wiltshire Date: Thu, 6 Jul 2017 12:20:56 -0700 Subject: [PATCH 01/28] update table in events --- .../troubleshoot-windows-defender-antivirus.md | 6 +++++- 1 file changed, 5 insertions(+), 1 deletion(-) diff --git a/windows/threat-protection/windows-defender-antivirus/troubleshoot-windows-defender-antivirus.md b/windows/threat-protection/windows-defender-antivirus/troubleshoot-windows-defender-antivirus.md index 4e7c275117..27f48d105f 100644 --- a/windows/threat-protection/windows-defender-antivirus/troubleshoot-windows-defender-antivirus.md +++ b/windows/threat-protection/windows-defender-antivirus/troubleshoot-windows-defender-antivirus.md @@ -49,7 +49,11 @@ The table in this section lists the main Windows Defender Antivirus client event 4. In the details pane, view the list of individual events to find your event. 5. Click the event to see specific details about an event in the lower pane, under the **General** and **Details** tabs. - + From c25079a0c997ec109f018b6949f515311886ff90 Mon Sep 17 00:00:00 2001 From: Iaan D'Souza-Wiltshire Date: Thu, 6 Jul 2017 12:44:54 -0700 Subject: [PATCH 02/28] table layout --- .../troubleshoot-windows-defender-antivirus.md | 4 ++-- 1 file changed, 2 insertions(+), 2 deletions(-) diff --git a/windows/threat-protection/windows-defender-antivirus/troubleshoot-windows-defender-antivirus.md b/windows/threat-protection/windows-defender-antivirus/troubleshoot-windows-defender-antivirus.md index 27f48d105f..7c2cea1ee2 100644 --- a/windows/threat-protection/windows-defender-antivirus/troubleshoot-windows-defender-antivirus.md +++ b/windows/threat-protection/windows-defender-antivirus/troubleshoot-windows-defender-antivirus.md @@ -57,7 +57,7 @@ td {
- + @@ -101,7 +101,7 @@ td { - + From b06aae53ccfa1a62be7b9cbdfc7cf0c1c2b45dc6 Mon Sep 17 00:00:00 2001 From: Iaan D'Souza-Wiltshire Date: Thu, 6 Jul 2017 13:04:39 -0700 Subject: [PATCH 03/28] table layout --- .../troubleshoot-windows-defender-antivirus.md | 4 ++-- 1 file changed, 2 insertions(+), 2 deletions(-) diff --git a/windows/threat-protection/windows-defender-antivirus/troubleshoot-windows-defender-antivirus.md b/windows/threat-protection/windows-defender-antivirus/troubleshoot-windows-defender-antivirus.md index 7c2cea1ee2..db6ec62930 100644 --- a/windows/threat-protection/windows-defender-antivirus/troubleshoot-windows-defender-antivirus.md +++ b/windows/threat-protection/windows-defender-antivirus/troubleshoot-windows-defender-antivirus.md @@ -56,8 +56,8 @@ td {
Event ID: 1000Event ID: 1000

Symbolic name:

Event ID: 1001Event ID: 1001

Symbolic name:

- - + + From ee2deab98f461419b4c6bd8fe02f04b5de0e338c Mon Sep 17 00:00:00 2001 From: Iaan D'Souza-Wiltshire Date: Thu, 6 Jul 2017 15:08:11 -0700 Subject: [PATCH 04/28] table layout and bafs video move --- ...figure-block-at-first-sight-windows-defender-antivirus.md | 5 ++--- .../troubleshoot-windows-defender-antivirus.md | 2 +- ...-microsoft-cloud-protection-windows-defender-antivirus.md | 5 +++++ 3 files changed, 8 insertions(+), 4 deletions(-) diff --git a/windows/threat-protection/windows-defender-antivirus/configure-block-at-first-sight-windows-defender-antivirus.md b/windows/threat-protection/windows-defender-antivirus/configure-block-at-first-sight-windows-defender-antivirus.md index 0321537068..9e5993ed22 100644 --- a/windows/threat-protection/windows-defender-antivirus/configure-block-at-first-sight-windows-defender-antivirus.md +++ b/windows/threat-protection/windows-defender-antivirus/configure-block-at-first-sight-windows-defender-antivirus.md @@ -43,12 +43,11 @@ You can also [specify how long the file should be prevented from running](config ## How it works -When a Windows Defender Antivirus client encounters a suspicious but undetected file, it queries our cloud protection backend. The cloud backend will apply heuristics, machine learning, and automated analysis of the file to determine the files as malicious or clean. The following video describes how this feature works. +When a Windows Defender Antivirus client encounters a suspicious but undetected file, it queries our cloud protection backend. The cloud backend will apply heuristics, machine learning, and automated analysis of the file to determine the files as malicious or clean. The Block at first sight feature only uses the cloud protection backend for executable files that are downloaded from the Internet, or originating from the Internet zone. A hash value of the EXE file is checked via the cloud backend to determine if this is a previously undetected file. - + If the cloud backend is unable to make a determination, the file will be locked by Windows Defender AV while a copy is uploaded to the cloud. The cloud will perform additional analysis to reach a determination before it allows the file to run or blocks it in all future encounters, depending on whether the file is determined to be malicious or safe. diff --git a/windows/threat-protection/windows-defender-antivirus/troubleshoot-windows-defender-antivirus.md b/windows/threat-protection/windows-defender-antivirus/troubleshoot-windows-defender-antivirus.md index db6ec62930..855cf855ca 100644 --- a/windows/threat-protection/windows-defender-antivirus/troubleshoot-windows-defender-antivirus.md +++ b/windows/threat-protection/windows-defender-antivirus/troubleshoot-windows-defender-antivirus.md @@ -57,7 +57,7 @@ td {
Event ID: 1000
Event ID: 1000

Symbolic name:

- + diff --git a/windows/threat-protection/windows-defender-antivirus/utilize-microsoft-cloud-protection-windows-defender-antivirus.md b/windows/threat-protection/windows-defender-antivirus/utilize-microsoft-cloud-protection-windows-defender-antivirus.md index 5a534796e0..354b545edb 100644 --- a/windows/threat-protection/windows-defender-antivirus/utilize-microsoft-cloud-protection-windows-defender-antivirus.md +++ b/windows/threat-protection/windows-defender-antivirus/utilize-microsoft-cloud-protection-windows-defender-antivirus.md @@ -31,6 +31,11 @@ Cloud-delivered protection for Windows Defender Antivirus, also referred to as M Enabling cloud-delivered protection helps detect and block new malware - even if the malware has never been seen before - without needing to wait for a traditionally delivered definition update to block it. Definition updates can take hours to prepare and deliver, while our cloud service can deliver updated protection in seconds. +The following video describes how it works: + + + Cloud-delivered protection is enabled by default, however you may need to re-enable it if it has been disabled as part of previous organizational policies. The following table describes the differences in cloud-delivered protection between recent versions of Windows and System Center Configuration Manager. From 4fc6aaadb9e5712a4a7e1c1284593dc53940361a Mon Sep 17 00:00:00 2001 From: Iaan D'Souza-Wiltshire Date: Thu, 6 Jul 2017 16:07:52 -0700 Subject: [PATCH 05/28] table layout --- ...troubleshoot-windows-defender-antivirus.md | 132 +++++++++--------- 1 file changed, 64 insertions(+), 68 deletions(-) diff --git a/windows/threat-protection/windows-defender-antivirus/troubleshoot-windows-defender-antivirus.md b/windows/threat-protection/windows-defender-antivirus/troubleshoot-windows-defender-antivirus.md index 855cf855ca..49b904ed40 100644 --- a/windows/threat-protection/windows-defender-antivirus/troubleshoot-windows-defender-antivirus.md +++ b/windows/threat-protection/windows-defender-antivirus/troubleshoot-windows-defender-antivirus.md @@ -49,15 +49,11 @@ The table in this section lists the main Windows Defender Antivirus client event 4. In the details pane, view the list of individual events to find your event. 5. Click the event to see specific details about an event in the lower pane, under the **General** and **Details** tabs. - +
Event ID: 1000Event ID: 1000

Symbolic name:

- + @@ -101,7 +97,7 @@ td { - + @@ -144,7 +140,7 @@ td { - + @@ -189,7 +185,7 @@ td { - + @@ -233,7 +229,7 @@ td { - + @@ -277,7 +273,7 @@ td { - + @@ -342,7 +338,7 @@ Description of the error. - + @@ -416,7 +412,7 @@ UAC - + @@ -471,7 +467,7 @@ UAC - + @@ -529,7 +525,7 @@ Description of the error. - + @@ -574,7 +570,7 @@ Description of the error. - + @@ -623,7 +619,7 @@ Description of the error. - + @@ -668,7 +664,7 @@ For more information please see the following:

- + @@ -717,7 +713,7 @@ Description of the error. - + @@ -749,7 +745,7 @@ Description of the error. - + @@ -785,7 +781,7 @@ Description of the error. - + @@ -864,7 +860,7 @@ Name of the file. - + @@ -946,7 +942,7 @@ UAC - + @@ -1076,7 +1072,7 @@ The above context applies to the following client and server versions: - + @@ -1173,7 +1169,7 @@ Description of the error. - + @@ -1316,7 +1312,7 @@ Description of the error. - + @@ -1355,7 +1351,7 @@ Description of the error. - + @@ -1396,7 +1392,7 @@ Description of the error. - + @@ -1448,7 +1444,7 @@ Description of the error. - + @@ -1535,7 +1531,7 @@ Description of the error. - + @@ -1577,7 +1573,7 @@ Description of the error. - + @@ -1637,7 +1633,7 @@ Description of the error. - + @@ -1691,7 +1687,7 @@ Description of the error. - + @@ -1721,7 +1717,7 @@ Description of the error. - + @@ -1757,7 +1753,7 @@ Description of the error. - + @@ -1787,7 +1783,7 @@ Description of the error. - + @@ -1846,7 +1842,7 @@ Description of the error. - + @@ -1914,7 +1910,7 @@ Description of the error. - + @@ -1985,7 +1981,7 @@ Description of the error. - + @@ -2017,7 +2013,7 @@ Description of the error. - + @@ -2052,7 +2048,7 @@ Name of the file. - + @@ -2101,7 +2097,7 @@ Description of the error. - + @@ -2126,7 +2122,7 @@ Description of the error. - + @@ -2160,7 +2156,7 @@ Description of the error. - + @@ -2187,7 +2183,7 @@ Description of the error. - + @@ -2214,7 +2210,7 @@ Description of the error. - + @@ -2241,7 +2237,7 @@ Description of the error. - + @@ -2297,7 +2293,7 @@ Description of the error. - + @@ -2344,7 +2340,7 @@ Description of the error. - + @@ -2371,7 +2367,7 @@ Description of the error. - + @@ -2397,7 +2393,7 @@ Description of the error. - + @@ -2437,7 +2433,7 @@ Description of the error. - + @@ -2471,7 +2467,7 @@ New Windows Defender configuration value. - + @@ -2538,7 +2534,7 @@ or Hang - + @@ -2565,7 +2561,7 @@ or Hang - + @@ -2591,7 +2587,7 @@ or Hang - + @@ -2616,7 +2612,7 @@ or Hang - + @@ -2643,7 +2639,7 @@ or Hang - + @@ -2676,7 +2672,7 @@ or Hang - + @@ -2725,7 +2721,7 @@ This section provides the following information about Windows Defender Antivirus Use the information in these tables to help troubleshoot Windows Defender Antivirus error codes.
Event ID: 1000Event ID: 1000

Symbolic name:

Event ID: 1001Event ID: 1001

Symbolic name:

Event ID: 1002Event ID: 1002

Symbolic name:

Event ID: 1003%2

Symbolic name:

Event ID: 1004Event ID: 1004

Symbolic name:

Event ID: 1005Event ID: 1005

Symbolic name:

Event ID: 1006Event ID: 1006

Symbolic name:

Event ID: 1007Event ID: 1007

Symbolic name:

Event ID: 1008Event ID: 1008

Symbolic name:

Event ID: 1009Event ID: 1009

Symbolic name:

Event ID: 1010Event ID: 1010

Symbolic name:

Event ID: 1011Event ID: 1011

Symbolic name:

Event ID: 1012Event ID: 1012

Symbolic name:

Event ID: 1013Event ID: 1013

Symbolic name:

Event ID: 1014Event ID: 1014

Symbolic name:

Event ID: 1015Event ID: 1015

Symbolic name:

Event ID: 1116Event ID: 1116

Symbolic name:

Event ID: 1117Event ID: 1117

Symbolic name:

Event ID: 1118Event ID: 1118

Symbolic name:

Event ID: 1119Event ID: 1119

Symbolic name:

Event ID: 1120Event ID: 1120

Symbolic name:

Event ID: 1150Event ID: 1150

Symbolic name:

Event ID: 2000Event ID: 2000

Symbolic name:

Event ID: 2001Event ID: 2001

Symbolic name:

Event ID: 2002Event ID: 2002

Symbolic name:

Event ID: 2003Event ID: 2003

Symbolic name:

Event ID: 2004Event ID: 2004

Symbolic name:

Event ID: 2005Event ID: 2005

Symbolic name:

Event ID: 2006Event ID: 2006

Symbolic name:

Event ID: 2007Event ID: 2007

Symbolic name:

Event ID: 2010Event ID: 2010

Symbolic name:

Event ID: 2011Event ID: 2011

Symbolic name:

Event ID: 2012Event ID: 2012

Symbolic name:

Event ID: 2013Event ID: 2013

Symbolic name:

Event ID: 2020Event ID: 2020

Symbolic name:

Event ID: 2021Event ID: 2021

Symbolic name:

Event ID: 2030Event ID: 2030

Symbolic name:

Event ID: 2031Event ID: 2031

Symbolic name:

Event ID: 2040Event ID: 2040

Symbolic name:

Event ID: 2041Event ID: 2041

Symbolic name:

Event ID: 2042Event ID: 2042

Symbolic name:

Event ID: 3002Event ID: 3002

Symbolic name:

Event ID: 3007Event ID: 3007

Symbolic name:

Event ID: 5000Event ID: 5000

Symbolic name:

Event ID: 5001Event ID: 5001

Symbolic name:

Event ID: 5004Event ID: 5004

Symbolic name:

Event ID: 5007Event ID: 5007

Symbolic name:

Event ID: 5008Event ID: 5008

Symbolic name:

Event ID: 5009Event ID: 5009

Symbolic name:

Event ID: 5010Event ID: 5010

Symbolic name:

Event ID: 5011Event ID: 5011

Symbolic name:

Event ID: 5012Event ID: 5012

Symbolic name:

Event ID: 5100Event ID: 5100

Symbolic name:

Event ID: 5101Event ID: 5101

Symbolic name:

- + @@ -2767,7 +2763,7 @@ Use the information in these tables to help troubleshoot Windows Defender Antivi - - @@ -2846,15 +2842,15 @@ data that does not allow the engine to function properly. - - - @@ -2980,7 +2976,7 @@ The following error codes are used during internal testing of Windows Defender A
External error codesExternal error codes
Error code

This error indicates that there might be a problem with your security product.

+

  1. Update the definitions. Either:
      @@ -2828,7 +2824,7 @@ data that does not allow the engine to function properly.
+

0x80508023

+

ERR_MP_FULL_SCAN_REQUIRED

+

This error indicates that a full system scan might be required.

+

Run a full system scan.

- + @@ -3010,10 +3006,10 @@ The following error codes are used during internal testing of Windows Defender A - - - + @@ -1341,13 +1341,7 @@ Description of the error.
Hashes: <Hashes>

- - - - - @@ -2711,7 +2705,7 @@ Description of the error.
Internal error codesInternal error codes
Error code

ERROR_MP_UI_CONSOLIDATION_BASE

+

This is an internal error. The cause is not clearly defined.

+

  1. Update the definitions. Either:
      From c61347b00b1a1f20e30e2f4e0bfb203988443c95 Mon Sep 17 00:00:00 2001 From: Joey Caparas Date: Tue, 5 Sep 2017 15:30:01 -0700 Subject: [PATCH 06/28] add api topic to preview features page --- .../preview-windows-defender-advanced-threat-protection.md | 3 +++ 1 file changed, 3 insertions(+) diff --git a/windows/threat-protection/windows-defender-atp/preview-windows-defender-advanced-threat-protection.md b/windows/threat-protection/windows-defender-atp/preview-windows-defender-advanced-threat-protection.md index edc94e639a..096f49bab4 100644 --- a/windows/threat-protection/windows-defender-atp/preview-windows-defender-advanced-threat-protection.md +++ b/windows/threat-protection/windows-defender-atp/preview-windows-defender-advanced-threat-protection.md @@ -62,6 +62,9 @@ Machine group and tags support proper mapping of the network, enabling you to at - [Create and build Power BI reports using Windows Defender ATP data](powerbi-reports-windows-defender-advanced-threat-protection.md)
      Windows Defender ATP supports the use of Power BI data connectors to enable you to connect and access Windows Defender ATP data using Microsoft Graph. +- [Use the Windows Defender ATP exposed APIs](exposed-apis-windows-defender-advanced-threat-protection.md)
      + Windows Defender ATP exposes much of the available data and actions using a set of programmatic APIs that are part of the Microsoft Intelligence Security Graph. Those APIs will enable you, to automate workflows and innovate based on Windows Defender ATP capabilities. + From e7b75d05fc06f1dab9e4051dd35e491f1d757ee3 Mon Sep 17 00:00:00 2001 From: Greg Lindsay Date: Wed, 6 Sep 2017 00:36:39 +0000 Subject: [PATCH 07/28] Merged PR 3038: MBR2GPT external PR issues addressed MBR2GPT doc improved --- windows/deployment/mbr-to-gpt.md | 49 +++++++++++++++----------------- 1 file changed, 23 insertions(+), 26 deletions(-) diff --git a/windows/deployment/mbr-to-gpt.md b/windows/deployment/mbr-to-gpt.md index 8eb84d3afe..f828bce6a8 100644 --- a/windows/deployment/mbr-to-gpt.md +++ b/windows/deployment/mbr-to-gpt.md @@ -18,28 +18,41 @@ ms.localizationpriority: high ## Summary -**MBR2GPT.EXE** converts a disk from Master Boot Record (MBR) to GUID Partition Table (GPT) partition style without modifying or deleting data on the disk. The tool is designed to be run from a Windows Preinstallation Environment (Windows PE) command prompt, but can also be run from the full Windows 10 operating system (OS). +**MBR2GPT.EXE** converts a disk from the Master Boot Record (MBR) to the GUID Partition Table (GPT) partition style without modifying or deleting data on the disk. The tool is designed to be run from a Windows Preinstallation Environment (Windows PE) command prompt, but can also be run from the full Windows 10 operating system (OS) by using the **/allowFullOS** option. -MBR2GPT.EXE is located in the **Windows\\System32** directory on a Windows 10 computer running Windows 10 version 1703 or later. +See the following video for a detailed description and demonstration of MBR2GPT. -You can use MBR2GPT to perform the following: + -- \[Within the Windows PE environment\]: Convert any attached MBR-formatted system disk to the GPT partition format. -- \[From within the currently running OS\]: Convert any attached MBR-formatted system disk to the GPT partition format. - ->MBR2GPT is available in Windows 10 version 1703, also known as Windows 10 Creator's Update, and later versions. +>MBR2GPT.EXE is located in the **Windows\\System32** directory on a computer running Windows 10 version 1703 (also known as the Creator's Update) or later. >The tool is available in both the full OS environment and Windows PE. -You can use MBR2GPT to convert an MBR disk with BitLocker-encrypted volumes as long as protection has been suspended. To resume BitLocker after conversion, you will need to delete the existing protectors and recreate them. +You can use MBR2GPT to: -The MBR2GPT tool can convert operating system disks that have earlier versions of Windows 10 installed, such as versions 1507, 1511, and 1607. However, you must run the tool while booted into Windows 10 version 1703 or later, and perform an offline conversion. +- Convert any attached MBR-formatted system disk to the GPT partition format. You cannot use the tool to convert non-system disks from MBR to GPT. +- Convert an MBR disk with BitLocker-encrypted volumes as long as protection has been suspended. To resume BitLocker after conversion, you will need to delete the existing protectors and recreate them. +- Convert operating system disks that have earlier versions of Windows 10 installed, such as versions 1507, 1511, and 1607. However, you must run the tool while booted into Windows 10 version 1703 or later, and perform an offline conversion. Offline conversion of system disks with earlier versions of Windows installed, such as Windows 7, 8, or 8.1 are not officially supported. The recommended method to convert these disks is to upgrade the operating system to Windows 10 first, then perform the MBR to GPT conversion. >[!IMPORTANT] >After the disk has been converted to GPT partition style, the firmware must be reconfigured to boot in UEFI mode.
      Make sure that your device supports UEFI before attempting to convert the disk. - +## Prerequisites + +Before any change to the disk is made, MBR2GPT validates the layout and geometry of the selected disk to ensure that: +- The disk is currently using MBR +- There is enough space not occupied by partitions to store the primary and secondary GPTs: + - 16KB + 2 sectors at the front of the disk + - 16KB + 1 sector at the end of the disk +- There are at most 3 primary partitions in the MBR partition table +- One of the partitions is set as active and is the system partition +- The disk does not have any extended/logical partition +- The BCD store on the system partition contains a default OS entry pointing to an OS partition +- The volume IDs can be retrieved for each volume which has a drive letter assigned +- All partitions on the disk are of MBR types recognized by Windows or has a mapping specified using the /map command-line option + +If any of these checks fails, the conversion will not proceed and an error will be returned. ## Syntax @@ -218,22 +231,6 @@ The following steps illustrate high-level phases of the MBR-to-GPT conversion pr 5. The boot configuration data (BCD) store is updated. 6. Drive letter assignments are restored. -### Disk validation - -Before any change to the disk is made, MBR2GPT validates the layout and geometry of the selected disk to ensure that: -- The disk is currently using MBR -- There is enough space not occupied by partitions to store the primary and secondary GPTs: - - 16KB + 2 sectors at the front of the disk - - 16KB + 1 sector at the end of the disk -- There are at most 3 primary partitions in the MBR partition table -- One of the partitions is set as active and is the system partition -- The disk does not have any extended/logical partition -- The BCD store on the system partition contains a default OS entry pointing to an OS partition -- The volume IDs can be retrieved for each volume which has a drive letter assigned -- All partitions on the disk are of MBR types recognized by Windows or has a mapping specified using the /map command-line option - -If any of these checks fails, the conversion will not proceed and an error will be returned. - ### Creating an EFI system partition For Windows to remain bootable after the conversion, an EFI system partition (ESP) must be in place. MBR2GPT creates the ESP using the following rules: From 3bffef0b6771d04dbd72f58acd6177fa1ce66e89 Mon Sep 17 00:00:00 2001 From: Kaushik Ainapure Date: Wed, 6 Sep 2017 18:52:50 +0530 Subject: [PATCH 08/28] MBAM 2.5 Sp1 Reports does not work / render properly. Added new scenario and workaround to the end of the document. --- mdop/mbam-v25/release-notes-for-mbam-25-sp1.md | 14 ++++++++++++++ 1 file changed, 14 insertions(+) diff --git a/mdop/mbam-v25/release-notes-for-mbam-25-sp1.md b/mdop/mbam-v25/release-notes-for-mbam-25-sp1.md index a0c7a80e05..0167f592cc 100644 --- a/mdop/mbam-v25/release-notes-for-mbam-25-sp1.md +++ b/mdop/mbam-v25/release-notes-for-mbam-25-sp1.md @@ -128,6 +128,20 @@ If different encryption strengths are used, MBAM will report the machine as **no As of HF02, the MBAM Self-Service Portal automatically adds the '-' on Key ID entry. **Note:** The Server has to be reconfigured for the Javascript to take effect. +### MBAM 2.5 Sp1 Reports does not work / render properly +Reports Page does not render properly when SSRS is hosted on SQL Server 2016 edition.  +For example – Browsing to Helpdesk – Clicking on Reports –  ( Highlighted portion have “x”  on it ) +Digging this further with Fiddler – it does look like once we click on Reports – it calls the SSRS page with HTML 4.0 rendering format. + +**Workaround:** Looking at the site.master code and noticed the X-UA mode was dictated as IE8. As IE8 is WAY past the end of life, and customer is using IE11. Update the setting to the below code. This allows the site to utilize IE11 rendering technologies + + + +Original setting is: + + +This is the reason why the issue was not seen with other browsers like Chrome, Firefox etc. + ## Got a suggestion for MBAM? From 4ae08740de853c4029e50ccaa9d719cf02d43eff Mon Sep 17 00:00:00 2001 From: jcaparas Date: Wed, 6 Sep 2017 08:57:38 -0700 Subject: [PATCH 09/28] update image --- .../images/atp-sec-coverage.png | Bin 13261 -> 13287 bytes 1 file changed, 0 insertions(+), 0 deletions(-) diff --git a/windows/threat-protection/windows-defender-atp/images/atp-sec-coverage.png b/windows/threat-protection/windows-defender-atp/images/atp-sec-coverage.png index b83b4de959a969f23b2d32de43767d960bcdd5a6..fd2d52834b98940c191aa7cfafeecdf9917e7354 100644 GIT binary patch delta 10346 zcmY*<2|SeR`~GO5qmq=8EGp8nQ%ogTp}xW#49At=gDlWGUMbWf?=(!PweJ zmdQ4gJ;@TrSO+tP|2^OD@4xlw^BLZGyzlee+jZU7{kFP~yZ>{38~-ki1J+w~ykpTn z5sP5l#vI+kGMbnue@Sjiwx#M=1F`F2f6=Qxk8Ly`!kwU^5%GiB;1gBy1hoS` zGG(lX9$d%>Y1<6HBn2(^`{Va1JDf;tcJ(!UJop!vy;P!m9KLco_Ta){EUU-ew*1yh zSaHiYd&?%czMVFnjuZ@2BM!yg+2etrA2Q{bG0z*h@XCL_AX2p*jayA4e<=4WAV_*3I0UVlXUxeG47J8LB$$iA;s# z$6vPQ@>UC<7LR=P>=}besjBMg>(iP!HGJFp?zwYv#wn%-22ah*%w*7r7rj7sFC4|` ztJ@irnwr`WtB79cNbmElBaw%2c7$JZA=~PCC;ijs9xRKz{``;nty{OwuST$}&YwTu zKW1iceFr%s_cJ#y&wxZC&2zYfEH*oAHKMkn4Xjze zce^f1;Qsj~gvFYyzq>hxQC3!V=hbew!O!DLRK7GLnu1qwFqw-z0S}v;n0TkR%TZQp z(BZ}n8FXGjLD2NU9sCy7);X_UiLY{TqWkv~i9|!9CCN-*KkCoZr{iN||B~K6P)Hq* z>tk46x$>yDx3{aS>sQi!>bSYFaa)esW;a*Y;}SwhqjuD=VvD8SojY?mE~28M$CZ_- zx^jkYZg2DQ@?_BQ@$s60lP~`K^UtpS{`}I?Gu<>=Ooan&>2aVA$$w^Y(#*wWB!{j& zsJIL^{41#)b?f1$BJJ7w%?3tB7FVt`ByrxneLKj~hD}*uFr@PGvsx9G73Jl>)z?QJ z-Rp+9y7pwe`}f~-0|Ns=;aDs;tAWX2bU)g8&{@jS&W;E+)Bi_^|GuY>k0lmcGe18s zvvaEvxlhM!#mLC0%&MHE|IKDtRa4zg^$Xa!x5OR)Dmhtn2R|dyGg?#$t`>S@$nE_U~-Ql#RW8J`xin)VP#WP>|3#@^ZG0=NiVVcGTK%l=LKt zJSgs;-qm#@FgTbf7=f5+88g~q4&T+W&A=;i^UL}o_)6)`5i4R~S=(b`Zuj)*Fyu!(ot-FyFVqV^h z_;}YSYkXto9y#OheClF5dR-)S!fw2L`I4obmEkCV@BP1-)QKW4uFj>5F4&VWHs;o- ztREU0s)=Qn^7Hdg&o#2uo}_Ju&Hvqc6D1V&aYT3fceejV2nV~t8A|W4U&Gbe+SxI> z8`|28!Gn1eie1MS5k5mhdBbPgQq-i;JtKE017y`9^K9du^r)!Wn=TJW?%utd^bTXu5IJt;n7=hXQZ?RqQ)dQH&@}riPFt4`xsJ7 zCR4P@$yMboSa>-*5gC+iTmnG&4PY12Wx` zWb4X2J^0_~_q%)~_OZ;v3x`RLb+`t8Hg#joggY?A9e5n}ZKO-@5gB zBICq~@j0cxp+q4D1_rO@m9^oR38wN{-9#&|&rd}Su2uw2_2t+6F;mni)j71z7&5*o zn>4HSNuk?%VwhZ9YzF3qoHeP=258u!LiD{CK3&xKA}J}yJuUQ#RiQ(4C6&3c&YW5u zPfu_4Xw`svB)DZ0Vc%FE^-2Ah1k{=f&hGZExmoyY<|MI9n0Tc@Spud;F8!) z+J9<2YHU;7u<&gKf-rY@ZFOPp6>q%?DM8s$%Aax+<=a#2YI%%@f-R+{@_YTYWQ9v& zMbh~Yf-nH43N?BIceY?edHsI&PfcCaq1v%KD50tM0@Cd-PrFOl1y6s^a4aqTqH~vP zZf4dsKSPnceP89WOq_vmjNLxENt;YXl2b%?WE^UAt8lR zr>+mJG<;isGqmzZWX~Q|b@iOdNvzAR#SX);-)|CSc9K-2W!J!kEp`iP2#PsCtO?im z#c`MDzBoFuL@hC7z=y2e=j$^#6HlLtmr2zLr&T&jFs5w=R=G?=afO%aQYF{UPO6fY&?#c78;M;yozlDhwBP?Gx=;s@a&`)fV;_&-Qu?E5|B^!S7!w*Gq?VXclWOK8lDV$$M!xNj`>`&EE%SayO`ICI| zIVyscpB6r&!5MjfU!V-j5#yMA8>|TztqlFx_v6REPoGNN2$>v!?H!8QcMdhvt;1pU z1XgJUO@Djek<&fIkg6QG7++UYQ*)i~Z2llJm|-_0q1Jf0r#iHxbopR!kxP`!@0ORR z!;~g}i@+n3kg?F6a1h-JsuK1wS7Zmi+;^xTElrB!rbZ3Y@QLZGg*~W|E4$4wBrWOC zOZV^JS5Q=pquW*en7q5;-Gh7%T;u+96#~Q!Y8erA8c*)If^1F+sLuI<8)G8Mh(_r> zyY*(rUMjzmg7|o4Z6A5+N2~h|!w$#wQJqY^vpZoI{=L;Z>qkea8V+6&V=V_{tL*(Q zV+SIFAC_V%x+_00jPFGkU0q%MD(&IfoiUPHi!%b!*K!;xN*Djd2)1{2W@2}l?E*%q zB3*d|LXU7E;~!d~qcrpKYKxuaPCsX7=M;Cp@R%}P3HsbJ$KlD;ius+9y7cI&m1i4H z>+$&8t-vV{?-le|n(VeMa(*Zx;$yMi)+g!&oBI(IS0wo0sKJG5IaIy&M)`EzPtA3l zjwpSO4>flg#sBuPiU9ca!XH~o+J&k&mCWuwvFV`f;lVxdxAIyH@gnceS9;gmXbAq} zt#{vwAddwNkrQIN=_XJ>V!VNE0)Z3czaPWs>FH5WQj#K5r>AdGsDRI|?(QZ-59FZE zn(3xfbsMe6_nLhE{8>R>{_*meV-t_U*t$h^?2jW%7cAzWYn?Ur(;&j){+f=oH>o-0 z$+@UMC|QC%Z18w_3wT-y5E9TU;FcDajg-pdzIk&QS2r{`*w;tIa#*dCYj2MTZ_CNa zxe5iHkVPO6)TuXpwx>ydquLcrI8*iKeQijDl%=3P{HBe}goVwl@n4^me>0zv6^>7? zJhCdt$@on^%8s6yN*CYIuVc4bpgZPWpINX60=%!q2CQR8RfDE_-PM5SF4iL$_QG`6 zZ@ngu`N@&xPvL?kF+k|8RjM5djZ-y8ztaW=PU0I!wl#ot{3ruKNhwqL@q=Aml?Pvs zB^+dT`wn)_zj^jz+CjvB*G5A3SL})p?`gs69|~ngb*nAcTZz+DtB>i#;$d%{ictBr zv(@u)*=0Bd&2^ekugtZpybNs!Vad9gy7flA*-N6S&KV!=Y3z!EPP@dL2X9u zdrlyTY~94S_5OLFwOZ;kePk1Tyj0n;mzS6SgC-}HoDUx^aQuP6dKbR?4}+CrhgUR? zTnFUL$`H9bHa3>z0)S7ft8*lDwYMKee{E^G0i$#kmno1fRbl`jkZYrsM`y99eoNa1mMgRsp&Bf}b*Sx+}MlLG@x(v8?1svG!zF2wn zqU-@^CJ4WRD8RPw*wMY*PFQ-ZV+lSJg)!BtlMctdX2eSH6RaOon+|&*a$-3QxWwDU`wtCP;q<7A0SaYlw`l^F++csv2r^c5VCl!}Ef@#rV@gon# zoly1ne$It-b#xr@$eBK@s%r6HvJrF$*gk) z>g7d*Yh{0Z$S7RCo9?!>guT!iUD|$}9_O{EhT9v~IM` zeTxlV>RgcSW#}yy20dRe)Bo;M!b<;=@`(C=;a1{I<$_@lhaw$O03ImDbHMsKb(K$f z`DJ?c)_12Ux|0fWQ($1isUK2bKsv&-!!)PF(n7Y0xvU6%z+muesIsGTAri!V+Hz}a ztLE(=ku?MG<>}L%1t#TV?yZM`#`%!#pikN(PRY#tSmcbcu#kmLD0emc&6^(8j`vQt zFQs!>40GV4G63fz5c;Ldwh}1B_wJLtp;m~=0|WIENtCk@Hp9t^ zB*JvOC7S)7Wno(x5Ib1Ku9V5;lG8QWVLr>^I^^(Z?rNcQt;Iy_dc5moU64x`qJa%> zHsEk3G$gcpvJHooB^Fj1Y8+_~mmjtHj&@w0lw9ji8?v|O#>?MDp-!kAIB3okuT7r4W(uktXblB3XAaBCEQJyx0&LZI&5+k>UHW?3C;1W6j}v z`UrFElv+UGtbbXxl-bu;uBRHW89&E7i_m(cSM**mMHyH=bJZS^$JVdCo;SL5t5CI$8fsJLvRj#)=*@(BAQJs!t2 zFzPmG6PkFEj%mNNi%Vq0V}g5iVdQW5HU}kq8Z^O{-={hISb`*4z+uG|b%w-}VYQI?on-rgiZK|u-EeeKl6)Vzjo(;eL&1sGI^SNyz&2>61G37fZqm zt6ng|T&@wJ&t>29QVX>|?KHL;q071Bws5}3gZ|h%nYQ-CuY8@eBRb?Fclfix(<-ZX z!|_9T*-Z0B!_y5eqP0rV^ZCQ4`cxEw{aF?|kVF+N3JG)qrg$ZbH_e#wu6$1>FtF z+_EVyW6wG9YQY02)Te>{(L<6&-tATqwxx_F^%nl^l8SM$K3F=pS`(@;B!acerV}y>q!q9otAxkgm&&imBG}q)g?i zHQY+ai~Q7qe&~@uWdNFJf((!l(S7^!YHJ+;t4`~dtNLgIIc$b-%F6mQIJU3~g3r;q zAw6Vto#X`qo2T!y^+EOj&>BGSZiOZrz5KaH>$ye$VP@gY4KG9$uxq%J(uMd1rea}{ z9bK1l7|qTUnCVD&&u*K@ZF%seWVtb1urmfoaDB?yGABME;ca<&d5Fo@?Hz$St6yDZ zDT&Xk8i9u`;gMnUk<+?5v8hPjGacz%?pg@eo_^PHQGq*nNmX~m+@&oH*aq`>h(pq5 zYd(Hdixy4rE%fe{(EP*31Af%=jgF4yf((a7qk;7lFN3h9pr9b$?%?QH z$kVEh9=!;t^gm<@GC_3Pmg$j9E4S@}f?Y^^`(Nbf@?vqF#tCkOZo15I;cfE5+ip_R zbTse$d?1qxsaB*ZrDM6s0)7ov_5S|uJlu_t^F&XqweS|`ZyhUF+e`9fFp$Wf9hsUUnJbhl==!|6|?Rz<$1p*?XA+Art z1}QQg0~6SkjjLeY3}4+4f7KAf*JsP~O`E3n+_h4;`|R;>gfya_m6U5 zw^bz}{^Enw!TriT-h{<9GHp_z&njBX1rSXzaX>A@>(s!1tnUFVhF6fb(4hX0{`!?u zR%W59stUvg`Vhk3bSC(@H{(wUDdKJaTeKn&GlS%X{txT%^YdE-<;YN6Fbx<0>pN(J zr#Ph_a?2cTZIM?lgHrfL-MYHfGxDL87a9|5F zv)3RQQ%FTccRsD<&w8c00Hvy;Q1rXDNrTRCCv_aNb8dBc$&ISd9(-IJRTOhTu>AKy zT6B;8$MAH|)sD*s#!uQCWg>uu1`O9sJ=G4cLwM%Hg{@z#>Dq1if4Nl#P$7a0uQRGm zDE;KaNq3nQd5ss1S)tfvP^!#+J#?JJQ@8huS->bWpz>vLI zF4M7E4jm*}6ll-3N-$#lyvD~ThEf@S@bNDWzq;bzHcy{D8=XT!rsEBWmtI421-udz zrI_v?d3g!|U&mYJG$Y_#_B<)|X`!m6idYwL35mb7*cCTGKv zc-Hu40ihfK;`Qku3gZ+=bJ|jPB}~(?ex$&{kfKYRUqQ;<67skpAyO-xoqvv*&7j_Ww zLoQ_RDz7KHD}U#BGoK}vwx#~KiC@Pp^uFN{s77_5oos5BYWA>yNbb>my|qcd@Xu;h zg{qDY`LnIv)m36&2r=OvJoX=5AP7X?@+>kh~0Z>RA7BZ<&{5y1BWzety=j zy0*BTb90NC=kN*2Hd!XRl)N9SpC_f)>#r)@XN4ziYc zEE_nJSUcTt$R-;~vKRSs;+2-On^aIv#wC;2GB@82(D6J&+~Hi28@F3l1_2@Scjz^` z`C;b+QVA3aCA*rSn^@tq&ZOSIIKDa)o_>{p>khIw$TSLg)KzN|_``9i^dr->FZvW` zh0RYcz_PS3j97x%BNlU)qZPYG(S16F7n|7Grk#|TU~tD`Gg-I1j|4PnA4X3*rED^M z_V4txm7e&Dtxg7ed3LvTa7gRu=y<`K_3*|HabIK=H@_RE#j#|MA`f57jC*OW{c__> zy+29x(fu&(Wjpx4*^tcdDxtNhWP?htmwwW-vkB>PKC%X6De*P(tu`J&*VayKe0 zflhS;gJFcQe0lRCA~A4r;yTo{T%^3*5}-dO)Y>Fh3~!-^v9_K_3SV4vPHn!#b`WM4 zCeoFG$zT1jOc;sfhZj;ZU;&xc)w2n)w|xA)Z{HLkAxmXVm)t1?H> z8KzgK=q5jvuBu1Oz87GxjNr>44?;{v%Tq!WwSWLs2LHl*S=dS!Ivp*n8)#!=!*cni zqK0i>8Q9&o5BoX$a$j1?Qso&?GnN*y;v;Xw$j2iv;v*U#lQiJoM5{vDQ&Ghi|J?Q( zNEH3yK>+dkl5*{e^P1$i{Dm%_Qd|GQMXxScQy4ccv1#_qol5)s4ixHkvPkiU>Y(|% zQQfup5EH)B&w1VA?AXY`uc#J@v`u_*cejfpkDI2JzK;4uujJ+An1YJmayGH~4T}{- z!Jj)M?4O>h72Gh_a;&hX2BVZ{$XRBl`#I9ep4A!`S<`(=$wn`aX=wD!o!&b& zASXAs{jE`Q!2GW!v@`|T!08KX1x)+{LxPUZ&PHt|IXQh$|1>l-;-vf!7vXk)uL&oQ zjL*XKwhWY|8pq3*9|}q9PJb6bMYan^o;nFgHZ5##Wu-PL=#InH%KYxOa!f6&H0o}O zlUw@vOxZw0vAAUViCh{e1eFNrj$_{kdwOzfYjrvMbFCb)7L;IS(DcH5voe)-h7Yx{ zgHNpU7;GZ>tT&(yOqTRh+)wM|*C(f?6%0^V~AU!Jsfnib2l#kP>WJ%ppC`(614~+qQHK z4KY`U7fa>RBRbaKD9Xx?mRnBnq1=w3T&@KM2F3`hrcs!+b{*d+kIRR(6j zo?&vD7h@zeoC{Cv+qbVFA_?c=k!zf;OS&q<8&>GdecD5KWO;mHVFC0>)z=Z1#H;u} za=bhdPw}PRuI}!hk>^$yc5mAP)!IFA^NYkpla-Y5r_c5)_tu$yF1|Bz1;_=O0LFSt zvLl;uwxg1S!OLf=`B#D}?Uh{r{`-62$C0fSm9KMi(GMR!glFB2BM`21DUXkj_l=vw zAQ=GdkEK+wnNjlD9jpkGZYiTw8hZHD52J5FC4`Ix9WQN z$Zm+gn1kE+P%dzOTlmG8usD&4*DTjRvKzXj+`2l%Htns-!F;DzFpw^cTwY%8LxRZp zFj@LkwCAMSm)6!Yj@QkbranG1Ih?myS=Rz44NOd|E?&H^v%DJ6nSr>DG(=b39{!NS z*stu+^-9(2%B{MvrM$1r&5hLwpdas!Jmn2U72Hyom6erbqO1-h(X1k0Lb9Q_xcHU) zNYL$me|WgP^Xvv}z2`6!e$J#(28E{3A`rH3-n?1xxqL=WPHyZeWpsA7ytY#CCe9&Jk7-e6|h@L%=h#&rJhH(#C?cdi(kUhd*qkti5-RKMC=4t)j3w zQ5oNp79TGQ@dkE7x89kekz#rWCzzY>MjoAo3FhygpP$7|B1$3atK$~7wwgz_z_Yzt zU#SLti^j>k3h-LOWh7!zD4$(?VlLu1WRHEo>IDRW;X*-yF@(4{xpw(`kxS6=PqW|t zOa!G9Z;MY(PWBpVQA=}ajNu*CCE>94`pO8;YFWNJB34He8MROy%Dwx}I;UCo(MWdL zfq|jr*2M2{u9)1+lPVfFCnSNq`xj#6%c$SnH78VLG-`*_d0urGnTr6W&!4?J0u}jE z9|c30$m{SLh1-oo!ndolj<6pd(h8m_CBxaZVjxZMt0D=*qdVYFVq8e4?3EHBNeA$% z4v-|=O|e|gvZ97Y=qE!1xIFSk85Q~PAw1~H=-61^Ul|$a!H@9D2#W>lrur-Wq2-1D zy;Xt4pqc*T9`a}0A^aPSSR^0Xop#@6agPSmtQ;JC>dI!pkYV#pa^2s)IWb*o_&M-9 z8RVhWqhmPjYnhyVJrn*pP( z4lW;RY(MWtFk^O4)JTEURjykrmg(7$oI-l%U9K;Uy+K%n!VLOr)1Yoo zy=V6!eY_kR%CM!m`5v`8zDPd%*kr_i$HNQed6kfQF1oLQa$4VxfcQ`o zR%V%Ro$=tomhkWoVvVTCQ&55>@E13uPT0RVhf;Y3L&4@zc%%mJc88%~aw;8GZUzM* zf~V@B>g9Q&07{JKc88uy|Ll=DR~X&y13TXvT?(_fetkF715^VsV2mi#^9v|`6_-ba z_2p!8^C;riQ>b3vOVW?siD)ICS-dAmY@J$akT}Zr_S*+wx_!S=PHAb^DK`KrmyHSf zN&V&cloajM#7!ubDB(!HPZkh`FpL#_a;b|(ds|hdsddKc#tnF7#25nazcmEpf?~Y4 zuP+^vY?_sye}d6pX-?Stip>SMg?VM-g+oevS@H0;mqDFc#o;DwieM1ADVzU@AmDyoAZYHEv)E+YB4=h zm?PJ1Z6~)C6#>9#7#w1AI7?&6zLVcFF80=h2e)*982Eu_%Iw9(MR{3S*DltC=pYpN zNglRi%7trewZ(}tN7&7_cXflNlYkLG$$b$Udul0;57mMOmz{R&D@VLFBUavVD=R8O zKIy{gS<7Grcz1_4h>?LD zM>@VKG=-Ffpj1+!=J@&hGm_h3oM-(1^1XkYeBHN-LA+f-iy`|_Ne5C>Q|Hn)q3X~5 ze=!?}-P0JSvRfVzd9BBLZ?2X1#z2y2!BrWN*et5vhCQgMo%I_xy3sadcw#v!7@0XYEyf>$g^(>S(F4Fmo{@ z5C|6JjjMVH#I||_f@x#VE*KdNIhG0^dp&O4@>hX?vS7^|-gAt1Uuim2EFv*~_@1?{4SqciYnzVd1gGn7;4N zhdX-NxZH-Ro`|yg;%FG&!x%Qc?dj&|W{;@no(hMt-GANh<7s1ySlN0w`;Tc?++AI5 z-MkT$)>m~fwu>>%z|q^q7LhsMC5%8EMj2D8ziYd+Le#xA#xY*mYl9mX)lHwXe8-l*{zl)R{bq zYT7TBA%Jnp{w3Nt(0%Rg{`)zXuD^=x|MtP*QJA!|S*fiUdg~&=fla(FM0}yz>YU(Q zKzl$Ufk%3RjcwE`O6<_nt2qF#^u@Ii*@5Lnp|UA z>78YMCcZ}E1S*_``$FqF;~+x^4={%<585ZqL@Cby=t|Qdkzy}0Zt0|MEOp3iykXm6 z4PQCK5c}aHN5|fwqMGZQC#Tt9)>jzH9l{9oO)caifv=l<;4 zT1)pjdTH%y4LJ*o)wHm%pi=wm@>J>Fs=eu&@5ZGiU?EOxt?dhG8u81LTfZfp9349& zxn+4=YieqUBvP+)eoeX>e~^KYkdT+W3}f~kqwOB|?iJ93jE&<_XmpeEDIQj_1AC@_ zeSfKrMCz)mKNEBuuJn0y2PWUd=kEGBH8pjbA3f2?QbVWUQ8ZGS5RxxCoFRlz$B9#N zjAwp(jWE~IIiA#EAHs3?@K@I}-@bkOy&lNC>*2k3AcWAYh&}a#gM*mVzCI(GSYmc| zb`K6GS~n_*%+Ak`?;t#%O<=56FumPFiqpW|J)f0NX?noY%#1tZ7)bee;`nc#pA~np zg}#1%_|Yak9i0zRQLMD31;g<%(zR>XFsVeMQ&a6{Yn`yLu|o#O7=v54vbr<0#RLSdw6(RVYiQ`Zx{{vE+FC@L z^mi)|^778eT(}U0YMZF>1cf^iev75v=mt;ALpGJno*n~OH=@GI$%z8SGwto~SA5_N zQu6XDBF@gn#m5Ufia1mb&r3JBJ2_?76uK%uXlKsv{5+U_$<5WZcccd0J2aGQE#_&kr9p_)^K}ebyaanQvM31TU*uDs$+co4hTywPtC`tM2WBC(UvA0 zOS+TM_Jwf%;LNfSlyhs4p1ywX@G!QtwDjKUJCKN|;vXzl*I0HvjFPe=k(bsDtgQ0k zMd3M_>FJGbWeZT=ehh>$8jQ9UPP=O74w|i^C+?^7i>RMe*vJ zn!Xi~Gd46l%@9EWU$mOAc49F@BZ`|8eCJ-DJ$H^2aN|my&W?wd)RH=FX!PJFr+kh= z2{?u*t0*`n@2S>fEc^ElOhm7^A5uOFiue6(FM@|Pyea6&rxn8HB8B#uEm#U$u|^Lr zDJ{k2M81FjJ{yZQ^z$oAjS<@R>eZ_w0ZNI|Ey9fxzEv6LN8z0DN#WrO4mM#E_wV0- z?WL`$+1s0AtQKM0d(&*p*V_6bFE6h^p7yenYwi-a<%Qd>Mf=$bkVvF2f{#23-pE?P zP6iPl8_O^+0ZX*fEk{R3T(M(!MC)luN$sqxEKzas;_YwnB)%2x**+rCTVTL#NHgnG2B7J z>-S;JWbfoooBk|_;@1Gr;OXhfBYWI5nV)`PgR{kd>l7$LxAZJid2a5_@87@ctEiki z=VdCE^x4|utA^yW=g%j7t4OAX(M>5CNx`^+XrG&wmWfJy(R6W8w`x$@7V>Hf$#-_3 zz{b~Xd6k_*?1o0y{BTuoZ*N*uRFt%_bq+WMJl=V9&F+25`Q?@?YHHy&LU^a=^WC#6 z**Q5ax|`N*x7QXyVhE$zEkqo}AD2WAc`gQrETx^IK%V3>D9@K8*ujz}sa^58CRttV|| z)zPZzxOLgg4Ga!1ohtwJ>uzsPPpb)ue3^r;H1aL?!-tEYQ{9_kyCI?+Vh$^|YvaP2 zSLp5CTjn10u1NN?GG)Mqim#*N_hNUj2Zx)aaXnYwFfuaAPD#0fUY(CzH2`B^np)QM zh*qY&KE%$x(t56A8du^hy}C{x-3n6P+F0_E#|C5+7V6!9x#)clvB_E55_dAY|4%OzMI zVb}AFL+p;5-;SSHv$FQ@cVQ@W@Cb9*9k+}fa8UnV0RNX;`P-nvf8&+ZFINjo`P^1s z{vqo_nY-20_g>MDcvM2dQ`>qgHui8yH7!p`7Y!jY2fP->z{n^a?D=&Q8DFL?td;O7 znwy6wR#52FDXp!Z@t;#6%G~{n@tdFZ@9~Bxl>6#8m25|RZTMor6g(5JfTrX&H#Z-C zdiC(r{Z54T_l$wk5p+H(WmVZv%Wv2x-)5_@@a)R+vcs%}-^@_OVmQ8T>u2T|L?Oh! zrY|h@7_EdSSFt}Tdp)OL2xetus7c1g<7uS)ygslPhDAoY?W!W7_BSvoeSYamt3zJwmA6>o;u3y*Pd%Z1rh<@Iq{^q@eM8YV zqF`$W3Cjol;w{oTJo|k#7gjwkgTJ1+Tb9GF6qH+!)Iq?jD#n3SO`@4UB;zK#qSx^tq zggE&~%d+)I;b+h0 z>^C=m$6paEpRC(Rqr3b}PQI5oTV)f@I*e-kBuJmM8d0R$bi<8O`4R&NbIZ+yiIPV9 zjzq)c79r!F_!>Q!tFrdff;3d2Z)BcH4?SgGdr^6M`6YKnGj5ovTnid)<_ z_wRJn&mVUXAkw7Sm<0vZ1ga!G`24{J?dw|#nOPI*oT4Irz6hW_a4_d&$B>ZW#C8yh zI;8vLzv%-{!pzJ(t{l0yGAprGdoF)-VU1>D)vq=vX~bW!nuJ!Bmp$IE?;e5MTIWI(FaF&Eib*wsq9&b*)Z$R6tsUhOkumfWz-VJMDy|-k6&K>hL1h$6WAbT-1}o0 ze~^BCb)_S63u{H6dMoJojaS2vTI21i9^*Y0G%4ddOSP93LWV5=9HuVK^}JF2e(X1K zVzm*?>=gy{l*##O%Y3aQ71BW8@UTR5)5M;}m6a9Gs$t*P3FO?kk)ED)?&PWXchp|@ zk?v=c8nJVhN4(g!`ed4ee(@o@o+-|IKe9qL2i<+YVP=F+$`4aDwr#+p99neNT>U4@ zoC1O_hHRC)i!2kTu)QPP3Tw|T(?;Xv4#!GX=g(cdF~hAtIjYc2c$#$*4*EzW26JfV zHm02qFRjyq73Jnf>#TtDC|Y%PcJ_Mo-C8R1%a_YEFD7^obmgIm#Y{+8 zyL6sj^z!m*m4?IY9R<>iI1Lce_AfpPUMV{-@0B3Okt5A8JvH?zP+(53t|hdV_I4v+ zj)Gjw%-#W?mRVh`1mv8^>C;FYcVZYd6r!yRS~H`Lb`s2e3upQD-sSd6%M z{5TQ>)%?dFue(;>g4ExJ)TO?o=A^hsRvI_s6r1J*DwWr$p?ZBIS<6_A_mw(on@rH` z$C9!ytmbiXds*qWbISw+bGR7%iE_)b!uG?vY!>LSsq?Vv7Ge(xQi3< zDbrtxucWy62A3%MhNhjBfdRJ%XqB1j^p8kG(ldre;A3#k2IRFf#lbf3nkaF-)CnqOCq>PMA)B&dg zCwJ_o(BO%{gWEYL{fx<_&hb?S3fCW~{(qAP&wSeV{=OPHnEoJNZvG z?;v`IZ*!*x|*D@0d_Zg-!}kFqpa_@XoI>`(6g7)OZhM03wKeO~1VpfFua z47wQKVD-mJ4>xsmwAw7jp8v-ypO%$6%bBuO*TZ z+GdGt- zW@`|ik{`L8EWFe^{mdCEK1oITx_A!)%PBsQ|kO?U%#uo zuvP)qciNW3E8TQcE5hQr5=TSQfc4IHHdWeti}?c@-g_Sk1}%J_W*T@oJx6HBJizD7 zIy-zN<}4VPxpvJ7@cwe@0#n>j>#)}S-qO-tVAEt^Za%lC61XM9+qXaBaJcI|Iq7L> zS*4}EI2*S8`y+7RbV+-%CU#EEymi@oRlHNCaiYNK_0fb_Thn_@dMnj_xAY=41BlRT!ZI>GSAVR~=-|%; zO3A}j#=zJ{p@y;ss{Hby{=wUEqSVO_)Qv}W44ku!tgQ3u{BSpyK9_vkV_+a^Al~HL91e;5)lZ&N1`UKxKgY$ez(3X^GmT=(42mXnm493vP64Rx*zWaVf6$ zUQN$x*5-Yoxx5SpuCNep%7+OE7seTvjJ@_!nq$uV$bS#b#VduI?|`(qfjX+P|%IsZ)Y6_GZ&JcJ4+ z`;=5~*4EOevBhYyf#8-p-{~n?ydIsN!lxWiXcnN&Mo-x2eCRi8R_635I;cCPy7A)$ zwXN>up~Mmea9|d}pGMw)Fl=$px3ygBG%i_bBFivfgH?d<2|ryA?`~`!kQI%Boto>S*-YNDEmo zFmKvz_YwdSzkTU}*!TA$2TB7-Nh0?6x{j_Vvc3G4*{PZ6o!pk|SQJ&or~15&`51SX zNCy{R5sTN!!_1CtZ)Hp?Jkt&xa?7XbZ3F)FFiL zZs`cz$Q!@9(_1fY)Cq(ePPgf5oXouG)Uk68Pec#OC_R%M@>c;^={#&)iFF7xm z5EqAnI@f9r;$H=R%MijRMKrj48YtNIH&!!S#TYJsJuoVNe0*G0#6W)KprnXyzd%>|q9O`nQA%l5BFd(f5+-tDgdN^j4q`)k z`YEIy1XfVjzp7obvo>ZEjrss>H-hUx73W-4lC&Y*{-)8p=SM5ku~;mnbebILH5O#M z`|@vhixf-(O9PiXF^L}mIdeJ*fsw!&1jUM1j z%uQ@|d7?zSSe+p?!LX@T=ioXksM#l9L8- z9BQ<2e?mDZM($?gV*m(1(qAYk+!3Xg^s7Oou~3My3UQ4Wql+STZ~7aLbTsGW8u z8(fXirI=)sRo~tT!O^XrCd?oZhawog0M^Od^2PN#(D6c8{+j50{4?MQSFqu3*j?_L zJ?XFFoC1^uxBA9%S_^m~WF9qD{UJL~D-1@BT|svFmF8iD7d5E&7J`snD8C1&B%A~P z1OO4hGy_TD`6HDrBR%0sbhja!x+0%AOX@rdO>0M!do)HZ_`S3mXoIWcwpE&##4U;f z1aaa)n_LLvV}&$fZwWgtv3f*k02T`B4EJAe3T2*z1Rf{?W~ZlLhl&T3jxlr8VL*C{ z29FzTINYMz6iQ1E1_s;Xn3{a zCl&_?tFj?WvXp=x27)XqFCUOLf|_iK?;vx3pA4XO9RPixvj+P5Hf4+|@#`dxV62x5 zJloH2^$FJ)yRepA-qM4d6SWJqBXjFFM)`FqQhm}_K3@o$pi0vm{K@)QliI7_PfJr@ zKVn4hGqrwK7%&fH*QG5Pm>I9|<(U#K6g=Vwz$3-vZ!MTqM!@XHyc%?60G>YnI-Au= z6p;bO;teuC4+)3E5~_xalk;^?0w83cg`bybOP?R^hWfH=h;P*} zg%eBX@r25%1I*4KeKTyT+wK@w~1VWzc5;JlRxlmPbtU= zQW1}0wU9d7VNV9!vq=E4(e1n5b}z_R_Z;kFBqBBA+{67iNlC-CKH}2CB7utmFam_B z9W!7#;P|3G^+EwNp4kM0aZ`Kord(GXb*2FTMKot!Rh3ylKtN^Sdf~8LoZ(kJb90w? z;fM?E{t%XVZJ8(9Xi$u0pGQOEMN|ibX91(Ga4W+1$7}x7@Qcw#;%3R(Dplz}!_tWS z8w^z1_W|5X#J#U9$^pM5T*09UyJ0C&y-f}n_IP>s#CNyZ_=Ak|YrGWis)p%{(7qn1MOKB z5pSk!_wZJBI-j%uPWepi#jj_pr{ti-`IO;%6$U}m4_+z&_p^Qbc1p7^Fc6S&E6)V9 z_UNCubBym*RaI3+4MruY+>K7|czA`dK95eifeG&Q)qFRv;r+O$R@-M`bfma}tb=cp zrma!0m*s^}6fI_BFnW(EWVTTqNPz4}38kBByns+OtLFdA1zXBgO7YmuM|8$=l0^JYvCEt?jfI5!6u87+z-mgXf^PiwX6S@ zEJ$!x`2Fh$ZT2HJ$6fi$oU>`?KhU1w%wyI~{5$mu8tbHrXEc?jqN_bBjCmC`*fhVJ zz2wfi9=%#9br!>ASuvH%o4Aud(6d{&A59t7o+En&yT_#%8F%F>;r$3Teo>~XJjx?M z->op`ecya@xwDfKAw}-(>uV+~Wr5J4cZ8Ddv7EGp?d@r7yj~S-!exq$WR2=0=Ju-K zBArrBpFZ6QX$7y)fxefA1?3a9py}jT(T?Q5XaZk;h-*=XL`H@MC7s2&QAT7jHfB`m zAu-i+b;TAI74a^8O4O6)%Wh$_Ih4`n-H6qIv#x1ktS$uT*jiV}EkZV<5 z@V^qWsGX0miv6|rYgEBVxW#+!9Ul-iV&oYkY`INV?UrT-7B@Dy*dHx8^EAn#L}NcB z>~8%-refGmQpj5G8_7ma%cZvMaz z(W;v!E%B1ks|M-6ewhtI#f}^#K)!4#0(HBx!UHka|Fl=^D{v8$o)y;v4Gj!3lao){y=$4& zL!+yP)s7!{QqhrTQ8n&w_p*Ov)IPao4OeOmdxNarpF`FB1~x){Z?} zahKj8cz&cOFd?Q`nK*5lJ35R74;9q0@~gO%K`+=Ko|}tH5D6Knbi>nh_%?jbr+j7C27b!CDVpEUg*-P0Jw!?L=RG<3wb{yOiX0_ieKMZl z^cE4i^D!dg*h|<$+dEke%;tpZra*hqn`1^lHMO<-6P3~4%hS4QRsFL-$%IX4FZW49 zKIG%$1Ik?3qL%B)jD(hl{wJ#4YVOa^#0``<$FuUtSx0w|jO0Pjh1&5lBMph&tUR10 zO139}y(E&!ejB|fa4)r09JjjSFqpGx94P2%*i+A`Z(;FX;A$ix5j`JsetDiWhQs5* za)go45%qTPX*(uGEgC2G9Jn}X{&Xu-)9iEh?IMSsihu~Tl@=eRel%>}*a(EuV5A6t z%;UVz3!87>zP(;^0X9pKn~2ldv5g5@V+JP?larI|DunfM=trbT8WgzTijhGG-Css^Tph+bP5+v(MoL7a@Y zG7>!0xxPfGxPJg4b!wZGT@QQ_LPo1lGi}g&z5mZN_Nq%a{~b8VAqJil?OeEN6T=4LP&4SIFKeMHF(x@jkxNP17k zKH93BK68ezgilshw!ij`yAl`)V?RyeSNt~?n|v0>zad9C*M7H1;)ANp&$y1(27Oh+ zmcoYGris7J3ycZ?p7N@OqbYN`_VyVyqZAUJmz0*4rnC=&iKy|fz7V0yA9Y$yuQPJY z6U^e%lj_*l5n=}+FDw^JmAUrmW0F`T8_ajJWZxH<>qIggQ1Gw zxw@-MkGAt9n4^xT=kF)+vHmrdO&V4R#PfZyP;PTuo8gr!4^PHC0rF{%1k-+iQbMeN z9*tsG`~?!OM59Z`0ifci=y!8w!?_d5qep~UYLxSnr9Smh^Rmh1LYmO6(!r@9w zFI2huXI&9F{I+PFF$tV?ETnpZ@8q0dN8660IVNWH@qQ&F{J=xmcGty+~<#nF@Y8Gb`)qyHP|v zBJU4uo&4j=A02y#nCdV4{;X$$PLYAnJcv&VVV6%}Zxvk^GtM)(eEC6*^6dy4L_H_S zJF4j;6XJ*@z&Xyg*_Gx=Pw)f@jHexdx|tMiA>I}$zpDSa^84w-9Im8gaqTPuaq2l7 zWan>GO?GDHlhyNp3itmWCso8=vf5ZrgN=lZk zwtfGu3lFEuD=S-oizri7-B@U-^qg$Yw1EyN#(W6im{d4B4KC&`?h7tD5M*oIz3UL6 z-=L-acpmhfNZHY#t-R4C`b><7goMwd0TYJ42ps^Yi&|=v^#S814HgO8IqpDM--BZR zYhzHbScr>G=w)UyfRkmw0k|_}Pb?+)A`K56q}yUI@~Z}$1A1U#VPTY$HoqefQ_zPK0X0k!PW1ocmYmpmivx9`Wf0!&bO*qWVO|o|F`tSz5Z45vHaXW}ern z9K2E9muKNzR!1e~L~;E*Y8BY2+vU-ryedaMBOy@&8i8lL<0OHgsD3;-N&L2J3#6I> z0Ts$@i2CtyIJ1L}4smy@O_dO@kpL}VeM%ej54AGdIc1#t944FN)NkDQR95sCt0ovx zw-3=8)!yFjug!$8KK`H8^`GNFaJv5`KQ#ESE4AMC)Eaqfc*i5t2gk zX8ZGJ0a!m-W&8vn)X}W)?$cKiX6cILYJH7YLuUd%ZTA550Y~-Gj34d|-Rb@vBlM3S raI~>P;6a4$E#J%NHT%a;F1GlEM-Mv*lMSa}5P`g=bv5s@^@INfkKz^9 From 9d9676875feee2afb7f8a58068f57c6ef756929c Mon Sep 17 00:00:00 2001 From: Iaan D'Souza-Wiltshire Date: Wed, 6 Sep 2017 17:28:24 +0000 Subject: [PATCH 10/28] Updated configure-block-at-first-sight-windows-defender-antivirus.md --- ...configure-block-at-first-sight-windows-defender-antivirus.md | 2 +- 1 file changed, 1 insertion(+), 1 deletion(-) diff --git a/windows/threat-protection/windows-defender-antivirus/configure-block-at-first-sight-windows-defender-antivirus.md b/windows/threat-protection/windows-defender-antivirus/configure-block-at-first-sight-windows-defender-antivirus.md index 9e5993ed22..c0c0237884 100644 --- a/windows/threat-protection/windows-defender-antivirus/configure-block-at-first-sight-windows-defender-antivirus.md +++ b/windows/threat-protection/windows-defender-antivirus/configure-block-at-first-sight-windows-defender-antivirus.md @@ -45,7 +45,7 @@ You can also [specify how long the file should be prevented from running](config When a Windows Defender Antivirus client encounters a suspicious but undetected file, it queries our cloud protection backend. The cloud backend will apply heuristics, machine learning, and automated analysis of the file to determine the files as malicious or clean. -The Block at first sight feature only uses the cloud protection backend for executable files that are downloaded from the Internet, or originating from the Internet zone. A hash value of the EXE file is checked via the cloud backend to determine if this is a previously undetected file. +The Block at First Sight feature only uses the cloud protection backend for executable files that are downloaded from the Internet, or originating from the Internet zone. A hash value of the .exe file is checked via the cloud backend to determine if this is a previously undetected file. From 2b35168498f2a51b132f8974b17f899ab0477a8a Mon Sep 17 00:00:00 2001 From: Iaan D'Souza-Wiltshire Date: Wed, 6 Sep 2017 17:49:13 +0000 Subject: [PATCH 11/28] Updated troubleshoot-windows-defender-antivirus.md --- ...troubleshoot-windows-defender-antivirus.md | 109 +++++++++--------- 1 file changed, 54 insertions(+), 55 deletions(-) diff --git a/windows/threat-protection/windows-defender-antivirus/troubleshoot-windows-defender-antivirus.md b/windows/threat-protection/windows-defender-antivirus/troubleshoot-windows-defender-antivirus.md index 49b904ed40..93dd05c241 100644 --- a/windows/threat-protection/windows-defender-antivirus/troubleshoot-windows-defender-antivirus.md +++ b/windows/threat-protection/windows-defender-antivirus/troubleshoot-windows-defender-antivirus.md @@ -185,7 +185,7 @@ The table in this section lists the main Windows Defender Antivirus client event
%2Event ID: 1003

Symbolic name:

Note This event will only be logged if the following policy is set: ThreatFileHashLogging unsigned.
-
-## Windows Defender client error codes +## Windows Defender Antivirus client error codes If Windows Defender Antivirus experiences any issues it will usually give you an error code to help you troubleshoot the issue. Most often an error means there was a problem installing an update. This section provides the following information about Windows Defender Antivirus client errors. - The error code @@ -2719,6 +2713,8 @@ This section provides the following information about Windows Defender Antivirus - Advice on what to do now Use the information in these tables to help troubleshoot Windows Defender Antivirus error codes. + + @@ -2741,8 +2737,7 @@ Use the information in these tables to help troubleshoot Windows Defender Antivi - - @@ -2821,6 +2815,14 @@ data that does not allow the engine to function properly. @@ -2835,8 +2837,7 @@ data that does not allow the engine to function properly. - @@ -2849,8 +2850,7 @@ data that does not allow the engine to function properly. - @@ -2873,8 +2873,7 @@ data that does not allow the engine to function properly. - @@ -2891,8 +2890,7 @@ data that does not allow the engine to function properly. - @@ -2909,8 +2907,7 @@ data that does not allow the engine to function properly. - @@ -2927,8 +2924,7 @@ data that does not allow the engine to function properly. - @@ -2945,10 +2941,8 @@ data that does not allow the engine to function properly. - @@ -2963,8 +2957,7 @@ article.

- @@ -2993,9 +2986,8 @@ The following error codes are used during internal testing of Windows Defender A

- @@ -3008,20 +3000,11 @@ The following error codes are used during internal testing of Windows Defender A - @@ -3317,6 +3308,14 @@ The following error codes are used during internal testing of Windows Defender A
External error codes

This error indicates that you might have run out of memory.

-
+

What to do now

  1. Check the available memory on your device.
  2. @@ -2762,20 +2757,11 @@ Use the information in these tables to help troubleshoot Windows Defender Antivi

This error indicates that there might be a problem with your security product.

-
+

What to do now

    -
  1. Update the definitions. Either:
      -
    1. Click the Update definitions button on the Update tab in Windows Defender. Update definitions in Windows Defender

      Or,

      -
    2. -
    3. Download the latest definitions from the Microsoft Malware Protection Center. -

      Note: The size of the definitions file downloaded from the Microsoft Malware Protection Center can exceed 60 MB and should not be used as a long-term solution for updating definitions.

      -
    4. -
    -
  2. -
  3. Run a full scan. -
  4. +
  5. [Update the definitions](manage-updates-baselines-windows-defender-antivirus.md).
  6. +
  7. Run a full scan.
  8. Restart the device and try again.

@@ -2807,6 +2793,14 @@ data that does not allow the engine to function properly.

This error indicates that Windows Defender failed to quarantine a threat.

+

What to do now

+

+

    +
  1. [Update the definitions](manage-updates-baselines-windows-defender-antivirus.md).
  2. +
  3. Run a full scan.
  4. +
  5. Restart the device and try again.
  6. +
+

This error indicates that a reboot is required to complete threat removal.

+

What to do now

+

+

    +
  1. [Update the definitions](manage-updates-baselines-windows-defender-antivirus.md).
  2. +
  3. Run a full scan.
  4. +
  5. Restart the device and try again.
  6. +
+

This error indicates that the threat might no longer be present on the media, or malware might be stopping you from scanning your device.

-
+

What to do now

Run the Microsoft Safety Scanner then update your security software and try again.

This error indicates that a full system scan might be required.

-
+

What to do now

Run a full system scan.

This error indicates that manual steps are required to complete threat removal.

-
+

What to do now

Follow the manual remediation steps outlined in the Microsoft Malware Protection Encyclopedia. You can find a threat-specific link in the event history.

This error indicates that removal inside the container type might not be not supported.

-
+

What to do now

Windows Defender is not able to remediate threats detected inside the archive. Consider manually removing the detected resources.

This error indicates that removal of low and medium threats might be disabled.

-
+

What to do now

Check the detected threats and resolve them as required.

This error indicates a rescan of the threat is required.

-
+

What to do now

Run a full system scan.

This error indicates that an offline scan is required.

-
-

Run Windows Defender Offline. You can read about how to do this in the Windows Defender Offline -article.

+

What to do now

+

Run [Windows Defender Offline](windows-defender-offline.md).

This error indicates that Windows Defender does not support the current version of the platform and requires a new version of the platform.

-
+

What to do now

You can only use Windows Defender in Windows 10. For Windows 8, Windows 7 and Windows Vista, you can use System Center Endpoint Protection.

-

Check your Internet connection, then run the scan again.

-
+

Windows Defender Antivirus can't access the Internet.

+

What to do now

Check your Internet connection, then run the scan again.

This is an internal error. The cause is not clearly defined.

-
+

What to do now

    -
  1. Update the definitions. Either:
      -
    1. Click the Update definitions button on the Update tab in Windows Defender. Update definitions in Windows Defender

      Or,

      -
    2. -
    3. Download the latest definitions from the Microsoft Malware Protection Center. -

      Note: The size of the definitions file downloaded from the Microsoft Malware Protection Center can exceed 60 MB and should not be used as a long-term solution for updating definitions.

      -
    4. -
    -
  2. -
  3. Run a full scan. -
  4. +
  5. [Update the definitions](manage-updates-baselines-windows-defender-antivirus.md).
  6. +
  7. Run a full scan.
  8. Restart the device and try again.

@@ -3303,6 +3286,14 @@ The following error codes are used during internal testing of Windows Defender A

This is an internal error. It might be triggered when malware removal is not successful.

+

What to do now

+

+

    +
  1. [Update the definitions](manage-updates-baselines-windows-defender-antivirus.md).
  2. +
  3. Run a full scan.
  4. +
  5. Restart the device and try again.
  6. +
+

This is an internal error. It might have triggered when a scan fails to complete.

+

What to do now

+

+

    +
  1. [Update the definitions](manage-updates-baselines-windows-defender-antivirus.md).
  2. +
  3. Run a full scan.
  4. +
  5. Restart the device and try again.
  6. +
+

From 89d62da7b1b34b493bf7147a783547d1d6766e97 Mon Sep 17 00:00:00 2001 From: Tanya Bittenmaster <30839220+tbit0001@users.noreply.github.com> Date: Wed, 6 Sep 2017 13:58:41 -0400 Subject: [PATCH 12/28] Update menu items --- ...oints-vdi-windows-defender-advanced-threat-protection.md | 6 +++--- 1 file changed, 3 insertions(+), 3 deletions(-) diff --git a/windows/threat-protection/windows-defender-atp/configure-endpoints-vdi-windows-defender-advanced-threat-protection.md b/windows/threat-protection/windows-defender-atp/configure-endpoints-vdi-windows-defender-advanced-threat-protection.md index 6d00f63c3e..8d28359a61 100644 --- a/windows/threat-protection/windows-defender-atp/configure-endpoints-vdi-windows-defender-advanced-threat-protection.md +++ b/windows/threat-protection/windows-defender-atp/configure-endpoints-vdi-windows-defender-advanced-threat-protection.md @@ -26,7 +26,7 @@ Windows Defender ATP supports non-persistent VDI session onboarding. There might - Instant early onboarding of a short living session - - A session should be onboarded to Windows Defender ATP prior to the actual provisioning + - A session should be onboarded to Windows Defender ATP prior to the actual provisioning. - Machine name persistence - The machine names are typically reused for new sessions. One may ask to have them as a single machine entry while others may prefer to have multiple entries per machine name. @@ -42,14 +42,14 @@ You can onboard VDI machines using a single entry or multiple entries for each m 2. Copy the extracted files from the .zip into `golden/master` image under the path `C:\WINDOWS\System32\GroupPolicy\Machine\Scripts\Startup`. You should have a folder called `WindowsDefenderATPOnboardingPackage` containing the file `WindowsDefenderATPOnboardingScript.cmd`. >[!NOTE] - >If you don't see the `C:\WINDOWS\System32\GroupPolicy\Machine\Scripts\Startup` folder, it might be hidden. You'll need to choose to the **Show hidden files and folders** option from file explorer. + >If you don't see the `C:\WINDOWS\System32\GroupPolicy\Machine\Scripts\Startup` folder, it might be hidden. You'll need to choose the **Show hidden files and folders** option from file explorer. 3. The following step is only applicable if you're implementing a single entry for each machine:
**For single entry for each machine**:
a. From the `WindowsDefenderATPOnboardingPackage`, copy the `Onboard-NonPersistentMachine.ps1` file to `golden/master` image to the path `C:\WINDOWS\System32\GroupPolicy\Machine\Scripts\Startup`.
>[!NOTE] - >If you don't see the `C:\WINDOWS\System32\GroupPolicy\Machine\Scripts\Startup` folder, it might be hidden. You'll need to choose to the **Show hidden files and folders** option from file explorer. + >If you don't see the `C:\WINDOWS\System32\GroupPolicy\Machine\Scripts\Startup` folder, it might be hidden. You'll need to choose the **Show hidden files and folders** option from file explorer. 4. Open a Local Group Policy Editor window and navigate to **Computer Configuration** > **Windows Settings** > **Scripts** > **Startup**. From 03bdf5d322d11303b414701cd9f99b848a30783a Mon Sep 17 00:00:00 2001 From: Tanya Bittenmaster <30839220+tbit0001@users.noreply.github.com> Date: Wed, 6 Sep 2017 13:59:40 -0400 Subject: [PATCH 13/28] Update menu items --- ...ics-dashboard-windows-defender-advanced-threat-protection.md | 2 +- 1 file changed, 1 insertion(+), 1 deletion(-) diff --git a/windows/threat-protection/windows-defender-atp/security-analytics-dashboard-windows-defender-advanced-threat-protection.md b/windows/threat-protection/windows-defender-atp/security-analytics-dashboard-windows-defender-advanced-threat-protection.md index 1ec66ba4c3..4a5e44b615 100644 --- a/windows/threat-protection/windows-defender-atp/security-analytics-dashboard-windows-defender-advanced-threat-protection.md +++ b/windows/threat-protection/windows-defender-atp/security-analytics-dashboard-windows-defender-advanced-threat-protection.md @@ -58,7 +58,7 @@ Click on each control to see the recommended optimizations. ![Improvement opportunities](images/atp-improv-ops.png) -The numbers beside the green triangle icon on each recommended action represents the number of points you can gain by taking the action. When added together, the total number makes up the nominator in the fraction for each segment in the Improvement opportunities tile. +The numbers beside the green triangle icon on each recommended action represents the number of points you can gain by taking the action. When added together, the total number makes up the numerator in the fraction for each segment in the Improvement opportunities tile. Recommendations that do not display a green action are informational only and no action is required. From caf0f25977de47e5300b135485624d57616ce191 Mon Sep 17 00:00:00 2001 From: Tanya Bittenmaster <30839220+tbit0001@users.noreply.github.com> Date: Wed, 6 Sep 2017 14:01:12 -0400 Subject: [PATCH 14/28] Update menu item --- .../exposed-apis-windows-defender-advanced-threat-protection.md | 2 +- 1 file changed, 1 insertion(+), 1 deletion(-) diff --git a/windows/threat-protection/windows-defender-atp/exposed-apis-windows-defender-advanced-threat-protection.md b/windows/threat-protection/windows-defender-atp/exposed-apis-windows-defender-advanced-threat-protection.md index 2a5b60e599..239c463a13 100644 --- a/windows/threat-protection/windows-defender-atp/exposed-apis-windows-defender-advanced-threat-protection.md +++ b/windows/threat-protection/windows-defender-atp/exposed-apis-windows-defender-advanced-threat-protection.md @@ -23,7 +23,7 @@ ms.date: 09/05/2017 - Windows 10 Pro Education - Windows Defender Advanced Threat Protection (Windows Defender ATP) -Windows Defender ATP exposes much of the available data and actions using a set of programmatic APIs that are part of the Microsoft Intelligence Security Graph. Those APIs will enable you, to automate workflows and innovate based on Windows Defender ATP capabilities. The API access requires OAuth2.0 authentication. For more information, see [OAuth 2.0 Authorization Code Flow](https://docs.microsoft.com/en-us/azure/active-directory/develop/active-directory-v2-protocols-oauth-code). +Windows Defender ATP exposes much of the available data and actions using a set of programmatic APIs that are part of the Microsoft Intelligence Security Graph. Those APIs will enable you to automate workflows and innovate based on Windows Defender ATP capabilities. The API access requires OAuth2.0 authentication. For more information, see [OAuth 2.0 Authorization Code Flow](https://docs.microsoft.com/en-us/azure/active-directory/develop/active-directory-v2-protocols-oauth-code). In general, you’ll need to take the following steps to use the APIs: - Create an app From 877e78ca6e014cb150749b244be81897fd2137f7 Mon Sep 17 00:00:00 2001 From: Iaan D'Souza-Wiltshire Date: Wed, 6 Sep 2017 18:11:50 +0000 Subject: [PATCH 15/28] Updated troubleshoot-windows-defender-antivirus.md --- ...troubleshoot-windows-defender-antivirus.md | 194 +++++++++--------- 1 file changed, 94 insertions(+), 100 deletions(-) diff --git a/windows/threat-protection/windows-defender-antivirus/troubleshoot-windows-defender-antivirus.md b/windows/threat-protection/windows-defender-antivirus/troubleshoot-windows-defender-antivirus.md index 93dd05c241..997073d317 100644 --- a/windows/threat-protection/windows-defender-antivirus/troubleshoot-windows-defender-antivirus.md +++ b/windows/threat-protection/windows-defender-antivirus/troubleshoot-windows-defender-antivirus.md @@ -37,11 +37,11 @@ The tables list: Windows Defender AV records event IDs in the Windows event log. -You can directly view the event log, or if you have a third-party security information and event management (SIEM) tool, you can also consume [Windows Defender client event IDs](troubleshoot-windows-defender-antivirus.md#windows-defender-av-ids) to review specific events and errors from your endpoints. +You can directly view the event log, or if you have a third-party security information and event management (SIEM) tool, you can also consume the events to review specific events and errors from your endpoints. -The table in this section lists the main Windows Defender Antivirus client event IDs and, where possible, provides suggested solutions to fix or resolve the error. +The table in this section lists the main Windows Defender AV client event IDs and, where possible, provides suggested solutions to fix or resolve the error. -**To view a Windows Defender client event** +**View a Windows Defender AV client event** 1. Open **Event Viewer**. 2. In the console tree, expand **Applications and Services Logs**, then **Microsoft**, then **Windows**, then **Windows Defender**. @@ -325,7 +325,7 @@ Description of the error.

User action:

-

The Windows Defender client encountered an error, and the current scan has stopped. The scan might fail due to a client-side issue. This event record includes the scan ID, type of scan (antivirus, antispyware, antimalware), scan parameters, the user that started the scan, the error code, and a description of the error. +

The Windows Defender AV client encountered an error, and the current scan has stopped. The scan might fail due to a client-side issue. This event record includes the scan ID, type of scan (antivirus, antispyware, antimalware), scan parameters, the user that started the scan, the error code, and a description of the error.

To troubleshoot this event:

    @@ -436,7 +436,7 @@ UAC

    -

    Windows Defender has taken action to protect this machine from malware or other potentially unwanted software. For more information please see the following:

    +

    Windows Defender AV has taken action to protect this machine from malware or other potentially unwanted software. For more information please see the following:

    User: <Domain>\\<User>
    Name: <Threat name>
    @@ -489,7 +489,7 @@ UAC

    -

    Windows Defender has encountered an error when taking action on malware or other potentially unwanted software. For more information please see the following:

    +

    Windows Defender AV has encountered an error when taking action on malware or other potentially unwanted software. For more information please see the following:

    User: <Domain>\\<User>
    Name: <Threat name>
    @@ -549,7 +549,7 @@ Description of the error.

    -

    Windows Defender has restored an item from quarantine. For more information please see the following:

    +

    Windows Defender AV has restored an item from quarantine. For more information please see the following:

    Name: <Threat name>
    ID: <Threat ID>
    @@ -594,7 +594,7 @@ Description of the error.

    -

    Windows Defender has encountered an error trying to restore an item from quarantine. For more information please see the following:

    +

    Windows Defender AV has encountered an error trying to restore an item from quarantine. For more information please see the following:

    Name: <Threat name>
    ID: <Threat ID>
    @@ -642,7 +642,7 @@ Description of the error.

    -

    Windows Defender has deleted an item from quarantine. +

    Windows Defender AV has deleted an item from quarantine. For more information please see the following:

    Name: <Threat name>
    @@ -687,7 +687,7 @@ For more information please see the following:

    -

    Windows Defender has encountered an error trying to delete an item from quarantine. +

    Windows Defender AV has encountered an error trying to delete an item from quarantine. For more information please see the following:

    Name: <Threat name>
    @@ -736,7 +736,7 @@ Description of the error.

    -

    Windows Defender has removed history of malware and other potentially unwanted software.

    +

    Windows Defender AV has removed history of malware and other potentially unwanted software.

    Time: The time when the event occurred, for example when the history is purged. Note that this parameter is not used in threat events so that there is no confusion regarding whether it is remediation time or infection time. For those, we specifically call them as Action Time or Detection Time.
    User: <Domain>\\<User>
    @@ -768,7 +768,7 @@ Description of the error.

    -

    Windows Defender has encountered an error trying to remove history of malware and other potentially unwanted software.

    +

    Windows Defender AV has encountered an error trying to remove history of malware and other potentially unwanted software.

    Time: The time when the event occurred, for example when the history is purged. Note that this parameter is not used in threat events so that there is no confusion regarding whether it is remediation time or infection time. For those, we specifically call them as Action Time or Detection Time.
    User: <Domain>\\<User>
    @@ -804,7 +804,7 @@ Description of the error.

    -

    Windows Defender has detected a suspicious behavior. +

    Windows Defender AV has detected a suspicious behavior. For more information please see the following:

    Name: <Threat name>
    @@ -883,7 +883,7 @@ Name of the file.

    -

    Windows Defender has detected malware or other potentially unwanted software. +

    Windows Defender AV has detected malware or other potentially unwanted software. For more information please see the following:

    Name: <Threat name>
    @@ -938,7 +938,7 @@ UAC

    User action:

    -

    No action is required. Windows Defender can suspend and take routine action on this threat. If you want to remove the threat manually, in the Windows Defender interface, click Clean Computer.

    +

    No action is required. Windows Defender AV can suspend and take routine action on this threat. If you want to remove the threat manually, in the Windows Defender AV interface, click Clean Computer.

    @@ -966,7 +966,7 @@ UAC

    -

    Windows Defender has taken action to protect this machine from malware or other potentially unwanted software. +

    Windows Defender AV has taken action to protect this machine from malware or other potentially unwanted software. For more information please see the following:

    Name: <Threat name>
    @@ -1028,7 +1028,7 @@ Description of the error.
    Signature Version: <Definition version>
    Engine Version: <Antimalware Engine version>

    NOTE: -

    Whenever Windows Defender, Microsoft Security Essentials, Malicious Software Removal Tool, or System Center Endpoint Protection detects a malware, it will restore the following system settings and services which the malware might have changed:

      +

      Whenever Windows Defender AV, Microsoft Security Essentials, Malicious Software Removal Tool, or System Center Endpoint Protection detects a malware, it will restore the following system settings and services which the malware might have changed:

      • Default Internet Explorer or Microsoft Edge setting
      • User Access Control settings
      • Chrome settings
      • @@ -1068,7 +1068,7 @@ The above context applies to the following client and server versions:

        User action:

        -

        No action is necessary. Windows Defender removed or quarantined a threat.

        +

        No action is necessary. Windows Defender AV removed or quarantined a threat.

        @@ -1095,7 +1095,7 @@ The above context applies to the following client and server versions:

        -

        Windows Defender has encountered a non-critical error when taking action on malware or other potentially unwanted software. +

        Windows Defender AV has encountered a non-critical error when taking action on malware or other potentially unwanted software. For more information please see the following:

        Name: <Threat name>
        @@ -1165,7 +1165,7 @@ Description of the error.

        User action:

        -

        No action is necessary. Windows Defender failed to complete a task related to the malware remediation. This is not a critical failure.

        +

        No action is necessary. Windows Defender AV failed to complete a task related to the malware remediation. This is not a critical failure.

        @@ -1192,7 +1192,7 @@ Description of the error.

        -

        Windows Defender has encountered a critical error when taking action on malware or other potentially unwanted software. +

        Windows Defender AV has encountered a critical error when taking action on malware or other potentially unwanted software. For more information please see the following:

        Name: <Threat name>
        @@ -1262,7 +1262,7 @@ Description of the error.

        User action:

        -

        The Windows Defender client encountered this error due to critical issues. The endpoint might not be protected. Review the error description then follow the relevant User action steps below.

        +

        The Windows Defender AV client encountered this error due to critical issues. The endpoint might not be protected. Review the error description then follow the relevant User action steps below.

        @@ -1325,7 +1325,7 @@ Description of the error.

        Message:

        @@ -1334,7 +1334,7 @@ Description of the error. @@ -1410,7 +1410,7 @@ Description of the error. @@ -1461,7 +1461,7 @@ Description of the error. @@ -1590,7 +1583,7 @@ Description of the error. @@ -1649,7 +1637,7 @@ Description of the error. @@ -1928,7 +1916,7 @@ Description of the error. @@ -2112,7 +2100,7 @@ Description of the error.

        Description:

        @@ -2139,7 +2127,7 @@ Description of the error. @@ -2200,7 +2188,7 @@ Description of the error.

        Description:

        @@ -2227,7 +2215,7 @@ Description of the error.

        Description:

        @@ -2254,7 +2242,7 @@ Description of the error. @@ -2280,7 +2268,7 @@ Description of the error. @@ -2357,7 +2345,7 @@ Description of the error.

        Description:

        @@ -2383,7 +2371,7 @@ Description of the error.

        Description:

        @@ -2411,7 +2399,7 @@ Description of the error. @@ -2483,7 +2471,7 @@ New Windows Defender configuration value. @@ -2577,7 +2565,7 @@ or Hang

        Description:

        @@ -2602,7 +2590,7 @@ or Hang

        Description:

        @@ -2629,7 +2617,7 @@ or Hang

        Description:

        @@ -2657,10 +2645,10 @@ or Hang @@ -2690,7 +2678,7 @@ or Hang
        Action -

        Windows Defender has deduced the hashes for a threat resource.

        +

        Windows Defender AV has deduced the hashes for a threat resource.

        -

        Windows Defender client is up and running in a healthy state.

        +

        Windows Defender AV client is up and running in a healthy state.

        Current Platform Version: <Current platform version>
        Threat Resource Path: <Path>
        @@ -1368,7 +1368,7 @@ Description of the error.

        -

        Windows Defender client is up and running in a healthy state.

        +

        Windows Defender AV client is up and running in a healthy state.

        Platform Version: <Current platform version>
        Signature Version: <Definition version>
        @@ -1382,7 +1382,7 @@ Description of the error.

        User action:

        -

        No action is necessary. The Windows Defender Antivirus client is in a healthy state. This event is reported on an hourly basis.

        +

        No action is necessary. The Windows Defender AV Antivirus client is in a healthy state. This event is reported on an hourly basis.

        -

        Windows Defender signature version has been updated.

        +

        Windows Defender AV signature version has been updated.

        Current Signature Version: <Current signature version>
        Previous Signature Version: <Previous signature version>
        @@ -1434,7 +1434,7 @@ Description of the error.

        User action:

        -

        No action is necessary. The Windows Defender client is in a healthy state. This event is reported when signatures are successfully updated.

        +

        No action is necessary. The Windows Defender AV client is in a healthy state. This event is reported when signatures are successfully updated.

        -

        Windows Defender has encountered an error trying to update signatures.

        +

        Windows Defender AV has encountered an error trying to update signatures.

        New Signature Version: <New version number>
        Previous Signature Version: <Previous signature version>
        @@ -1509,14 +1509,7 @@ Description of the error.

        This error occurs when there is a problem updating definitions.

        To troubleshoot this event:

          -
        1. Update the definitions. Either:
            -
          1. Click the Update definitions button on the Update tab in Windows Defender. Update definitions in Windows Defender

            Or,

            -
          2. -
          3. Download the latest definitions from the Microsoft Malware Protection Center. -

            Note: The size of the definitions file downloaded from the Microsoft Malware Protection Center can exceed 60 MB and should not be used as a long-term solution for updating definitions.

            -
          4. -
          -
        2. +
        3. [Update the definitions](manage-updates-baselines-windows-defender-antivirus.md).
        4. Review the entries in the %Windir%\WindowsUpdate.log file for more information about this error.
        5. Contact Microsoft Technical Support.
        6. @@ -1548,7 +1541,7 @@ Description of the error.

        -

        Windows Defender engine version has been updated.

        +

        Windows Defender AV engine version has been updated.

        Current Engine Version: <Current engine version>
        Previous Engine Version: <Previous engine version>
        @@ -1563,7 +1556,7 @@ Description of the error.

        User action:

        -

        No action is necessary. The Windows Defender client is in a healthy state. This event is reported when the antimalware engine is successfully updated.

        +

        No action is necessary. The Windows Defender AV client is in a healthy state. This event is reported when the antimalware engine is successfully updated.

        -

        Windows Defender has encountered an error trying to update the engine.

        +

        Windows Defender AV has encountered an error trying to update the engine.

        New Engine Version:
        Previous Engine Version: <Previous engine version>
        @@ -1609,19 +1602,14 @@ Description of the error.

        User action:

        -

        The Windows Defender client update failed. This event occurs when the client fails to update itself. This event is usually due to an interruption in network connectivity during an update.

        +

        The Windows Defender AV client update failed. This event occurs when the client fails to update itself. This event is usually due to an interruption in network connectivity during an update.

        To troubleshoot this event: +

          -
        1. Update the definitions. Either:
            -
          1. Click the Update definitions button on the Update tab in Windows Defender. Update definitions in Windows Defender

            Or,

            -
          2. -
          3. Download the latest definitions from the Microsoft Malware Protection Center. -

            Note: The size of the definitions file downloaded from the Microsoft Malware Protection Center can exceed 60 MB and should not be used as a long-term solution for updating definitions.

            -
          4. -
          -
        2. -
        3. Contact Microsoft Technical Support. -
        4. +
        5. [Update the definitions](manage-updates-baselines-windows-defender-antivirus.md).
        6. +
        7. Run a full scan.
        8. +
        9. Restart the device and try again.
        10. +
        11. Contact Microsoft Technical Support

        -

        Windows Defender has encountered an error trying to load signatures and will attempt reverting back to a known-good set of signatures.

        +

        Windows Defender AV has encountered an error trying to load signatures and will attempt reverting back to a known-good set of signatures.

        Signatures Attempted:
        Error Code: <Error code> @@ -1667,7 +1655,7 @@ Description of the error.

        User action:

        -

        The Windows Defender client attempted to download and install the latest definitions file and failed. This error can occur when the client encounters an error while trying to load the definitions, or if the file is corrupt. Windows Defender will attempt to revert back to a known-good set of definitions.

        +

        The Windows Defender AV client attempted to download and install the latest definitions file and failed. This error can occur when the client encounters an error while trying to load the definitions, or if the file is corrupt. Windows Defender AV will attempt to revert back to a known-good set of definitions.

        To troubleshoot this event:

        1. Restart the computer and try again.
        2. @@ -1703,7 +1691,7 @@ Description of the error.

        -

        Windows Defender could not load antimalware engine because current platform version is not supported. Windows Defender will revert back to the last known-good engine and a platform update will be attempted.

        +

        Windows Defender AV could not load antimalware engine because current platform version is not supported. Windows Defender AV will revert back to the last known-good engine and a platform update will be attempted.

        Current Platform Version: <Current platform version>
        @@ -1735,7 +1723,7 @@ Description of the error.

        -

        Windows Defender has encountered an error trying to update the platform.

        +

        Windows Defender AV has encountered an error trying to update the platform.

        Current Platform Version: <Current platform version>
        Error Code: <Error code> @@ -1769,7 +1757,7 @@ Description of the error.

        -

        Windows Defender will soon require a newer platform version to support future versions of the antimalware engine. Download the latest Windows Defender platform to maintain the best level of protection available.

        +

        Windows Defender AV will soon require a newer platform version to support future versions of the antimalware engine. Download the latest Windows Defender AV platform to maintain the best level of protection available.

        Current Platform Version: <Current platform version>
        @@ -1801,7 +1789,7 @@ Description of the error.

        -

        Windows Defender used Dynamic Signature Service to retrieve additional signatures to help protect your machine.

        +

        Windows Defender AV used Dynamic Signature Service to retrieve additional signatures to help protect your machine.

        Current Signature Version: <Current signature version>
        Signature Type: <Signature type>, for example:
          @@ -1860,7 +1848,7 @@ Description of the error.

        -

        Windows Defender used Dynamic Signature Service to discard obsolete signatures.

        +

        Windows Defender AV used Dynamic Signature Service to discard obsolete signatures.

        Current Signature Version: <Current signature version>
        Signature Type: <Signature type>, for example:
          @@ -1900,7 +1888,7 @@ Description of the error.

        User action:

        -

        No action is necessary. The Windows Defender client is in a healthy state. This event is reported when the Dynamic Signature Service successfully deletes out-of-date dynamic definitions.

        +

        No action is necessary. The Windows Defender AV client is in a healthy state. This event is reported when the Dynamic Signature Service successfully deletes out-of-date dynamic definitions.

        -

        Windows Defender has encountered an error trying to use Dynamic Signature Service.

        +

        Windows Defender AV has encountered an error trying to use Dynamic Signature Service.

        Current Signature Version: <Current signature version>
        Signature Type: <Signature type>, for example:
          @@ -1999,7 +1987,7 @@ Description of the error.

        -

        Windows Defender discarded all Dynamic Signature Service signatures.

        +

        Windows Defender AV discarded all Dynamic Signature Service signatures.

        Current Signature Version: <Current signature version>
        @@ -2031,7 +2019,7 @@ Description of the error.

        -

        Windows Defender downloaded a clean file.

        +

        Windows Defender AV downloaded a clean file.

        Filename: <File name> Name of the file.
        @@ -2065,7 +2053,7 @@ Name of the file.

        -

        Windows Defender has encountered an error trying to download a clean file.

        +

        Windows Defender AV has encountered an error trying to download a clean file.

        Filename: <File name> Name of the file.
        @@ -2086,7 +2074,7 @@ Description of the error.

        Check your Internet connectivity settings.

        -

        The Windows Defender client encountered an error when using the Dynamic Signature Service to download the latest definitions to a specific threat. This error is likely caused by a network connectivity issue. +

        The Windows Defender AV client encountered an error when using the Dynamic Signature Service to download the latest definitions to a specific threat. This error is likely caused by a network connectivity issue.

        -

        Windows Defender downloaded and configured Windows Defender Offline to run on the next reboot.

        +

        Windows Defender AV downloaded and configured Windows Defender Offline to run on the next reboot.

        -

        Windows Defender has encountered an error trying to download and configure Windows Defender Offline.

        +

        Windows Defender AV has encountered an error trying to download and configure Windows Defender Offline.

        Error Code: <Error code> Result code associated with threat status. Standard HRESULT values.
        @@ -2173,7 +2161,7 @@ Description of the error.

        Description:

        -

        The support for your operating system will expire shortly. Running Windows Defender on an out of support operating system is not an adequate solution to protect against threats.

        +

        The support for your operating system will expire shortly. Running Windows Defender AV on an out of support operating system is not an adequate solution to protect against threats.

        -

        The support for your operating system has expired. Running Windows Defender on an out of support operating system is not an adequate solution to protect against threats.

        +

        The support for your operating system has expired. Running Windows Defender AV on an out of support operating system is not an adequate solution to protect against threats.

        -

        The support for your operating system has expired. Windows Defender is no longer supported on your operating system, has stopped functioning, and is not protecting against malware threats.

        +

        The support for your operating system has expired. Windows Defender AV is no longer supported on your operating system, has stopped functioning, and is not protecting against malware threats.

        -

        Windows Defender Real-Time Protection feature has encountered an error and failed.

        +

        Windows Defender AV real-time protection feature has encountered an error and failed.

        Feature: <Feature>, for example:
          @@ -2268,7 +2256,7 @@ Description of the error.
        Result code associated with threat status. Standard HRESULT values.
        Error Description: <Error description> Description of the error.
        -
        Reason: The reason Windows Defender real-time protection has restarted a feature.
        +
        Reason: The reason Windows Defender AV real-time protection has restarted a feature.

        You should restart the system then run a full scan because it's possible the system was not protected for some time.

        -

        The Windows Defender client's real-time protection feature encountered an error because one of the services failed to start. +

        The Windows Defender AV client's real-time protection feature encountered an error because one of the services failed to start.

        If it is followed by a 3007 event ID, the failure was temporary and the antimalware client recovered from the failure.

        @@ -2310,7 +2298,7 @@ Description of the error.

        -

        Windows Defender Real-time Protection has restarted a feature. It is recommended that you run a full system scan to detect any items that may have been missed while this agent was down.

        +

        Windows Defender AV real-time protection has restarted a feature. It is recommended that you run a full system scan to detect any items that may have been missed while this agent was down.

        Feature: <Feature>, for example:
          @@ -2320,7 +2308,7 @@ Description of the error.
      • Network Inspection System
      • -
        Reason: The reason Windows Defender real-time protection has restarted a feature.
        +
        Reason: The reason Windows Defender AV real-time protection has restarted a feature.

        -

        Windows Defender Real-time Protection scanning for malware and other potentially unwanted software was enabled.

        +

        Windows Defender AV real-time protection scanning for malware and other potentially unwanted software was enabled.

        -

        Windows Defender Real-time Protection scanning for malware and other potentially unwanted software was disabled.

        +

        Windows Defender AV real-time protection scanning for malware and other potentially unwanted software was disabled.

        -

        Windows Defender Real-time Protection feature configuration has changed.

        +

        Windows Defender AV real-time protection feature configuration has changed.

        Feature: <Feature>, for example:
          @@ -2450,12 +2438,12 @@ Description of the error.

        -

        Windows Defender Configuration has changed. If this is an unexpected event you should review the settings as this may be the result of malware.

        +

        Windows Defender AV configuration has changed. If this is an unexpected event you should review the settings as this may be the result of malware.

        Old value: <Old value number> -Old Windows Defender configuration value.
        +Old Windows Defender AV configuration value.
        New value: <New value number> -New Windows Defender configuration value.
        +New Windows Defender AV configuration value.

        -

        Windows Defender engine has been terminated due to an unexpected error.

        +

        Windows Defender AV engine has been terminated due to an unexpected error.

        Failure Type: <Failure type>, for example: Crash @@ -2516,7 +2504,7 @@ or Hang

        User action:

        -

        The Windows Defender client engine stopped due to an unexpected error.

        +

        The Windows Defender AV client engine stopped due to an unexpected error.

        To troubleshoot this event:

        1. Run the scan again.
        2. @@ -2551,7 +2539,7 @@ or Hang

          Description:

        -

        Windows Defender scanning for malware and other potentially unwanted software has been enabled.

        +

        Windows Defender AV scanning for malware and other potentially unwanted software has been enabled.

        -

        Windows Defender scanning for malware and other potentially unwanted software is disabled.

        +

        Windows Defender AV scanning for malware and other potentially unwanted software is disabled.

        -

        Windows Defender scanning for viruses has been enabled.

        +

        Windows Defender AV scanning for viruses has been enabled.

        -

        Windows Defender scanning for viruses is disabled.

        +

        Windows Defender AV scanning for viruses is disabled.

        -

        Windows Defender has entered a grace period and will soon expire. After expiration, this program will disable protection against viruses, spyware, and other potentially unwanted software.

        +

        Windows Defender AV has entered a grace period and will soon expire. After expiration, this program will disable protection against viruses, spyware, and other potentially unwanted software.

        -
        Expiration Reason: The reason Windows Defender will expire.
        -
        Expiration Date: The date Windows Defender will expire.
        +
        Expiration Reason: The reason Windows Defender AV will expire.
        +
        Expiration Date: The date Windows Defender AV will expire.

        -

        Windows Defender grace period has expired. Protection against viruses, spyware, and other potentially unwanted software is disabled.

        +

        Windows Defender AV grace period has expired. Protection against viruses, spyware, and other potentially unwanted software is disabled.

        Expiration Reason:
        Expiration Date:
        @@ -2706,13 +2694,13 @@ Description of the error. ## Windows Defender Antivirus client error codes -If Windows Defender Antivirus experiences any issues it will usually give you an error code to help you troubleshoot the issue. Most often an error means there was a problem installing an update. -This section provides the following information about Windows Defender Antivirus client errors. +If Windows Defender AV experiences any issues it will usually give you an error code to help you troubleshoot the issue. Most often an error means there was a problem installing an update. +This section provides the following information about Windows Defender AV client errors. - The error code - The possible reason for the error - Advice on what to do now -Use the information in these tables to help troubleshoot Windows Defender Antivirus error codes. +Use the information in these tables to help troubleshoot Windows Defender AV error codes. @@ -2723,7 +2711,6 @@ Use the information in these tables to help troubleshoot Windows Defender Antivi - @@ -2791,7 +2786,7 @@ data that does not allow the engine to function properly.

        @@ -2955,10 +2950,10 @@ data that does not allow the engine to function properly.

        @@ -2975,7 +2970,6 @@ The following error codes are used during internal testing of Windows Defender A - From 30388edb198f52faf677f9870a8709a6979fe063 Mon Sep 17 00:00:00 2001 From: Iaan D'Souza-Wiltshire Date: Wed, 6 Sep 2017 18:16:47 +0000 Subject: [PATCH 16/28] Updated troubleshoot-windows-defender-antivirus.md --- .../troubleshoot-windows-defender-antivirus.md | 16 ++++++---------- 1 file changed, 6 insertions(+), 10 deletions(-) diff --git a/windows/threat-protection/windows-defender-antivirus/troubleshoot-windows-defender-antivirus.md b/windows/threat-protection/windows-defender-antivirus/troubleshoot-windows-defender-antivirus.md index 997073d317..178a164669 100644 --- a/windows/threat-protection/windows-defender-antivirus/troubleshoot-windows-defender-antivirus.md +++ b/windows/threat-protection/windows-defender-antivirus/troubleshoot-windows-defender-antivirus.md @@ -1312,7 +1312,7 @@ Description of the error. - + @@ -2700,14 +2700,12 @@ This section provides the following information about Windows Defender AV client - The possible reason for the error - Advice on what to do now -Use the information in these tables to help troubleshoot Windows Defender AV error codes. +Use the information in these tables to help troubleshoot Windows Defender AV error codes. +### External error codes
        Error code Message displayed Possible reason for errorWhat to do now
        @@ -2779,6 +2766,14 @@ Use the information in these tables to help troubleshoot Windows Defender Antivi

        This error indicates that there might be an engine configuration error; commonly, this is related to input data that does not allow the engine to function properly.

        +

        What to do now

        +

        +

          +
        1. [Update the definitions](manage-updates-baselines-windows-defender-antivirus.md).
        2. +
        3. Run a full scan.
        4. +
        5. Restart the device and try again.
        6. +
        +

        -

        This error indicates that Windows Defender failed to quarantine a threat. +

        This error indicates that Windows Defender AV failed to quarantine a threat.

        What to do now

        @@ -2891,7 +2886,7 @@ data that does not allow the engine to function properly.

        This error indicates that removal inside the container type might not be not supported.

        What to do now

        -

        Windows Defender is not able to remediate threats detected inside the archive. Consider manually removing the detected resources. +

        Windows Defender AV is not able to remediate threats detected inside the archive. Consider manually removing the detected resources.

        -

        This error indicates that Windows Defender does not support the current version of the platform and requires a new version of the platform. +

        This error indicates that Windows Defender AV does not support the current version of the platform and requires a new version of the platform.

        What to do now

        -

        You can only use Windows Defender in Windows 10. For Windows 8, Windows 7 and Windows Vista, you can use System Center Endpoint Protection. +

        You can only use Windows Defender AV in Windows 10. For Windows 8, Windows 7 and Windows Vista, you can use System Center Endpoint Protection.

        Error code Message displayed Possible reason for errorWhat to do now
        @@ -2986,7 +2980,7 @@ The following error codes are used during internal testing of Windows Defender A

        -

        Windows Defender Antivirus can't access the Internet.

        +

        Windows Defender AV can't access the Internet.

        What to do now

        Check your Internet connection, then run the scan again.

        Event ID: 1120Event ID: 1120

        Symbolic name:

        - - - @@ -2959,14 +2957,12 @@ data that does not allow the engine to function properly.
        External error codes
        Error code Message displayed Possible reason for error
        - -The following error codes are used during internal testing of Windows Defender AV. +### Internal error codes + +The following error codes are used during internal testing of Windows Defender AV. - - - From e90ec0028f8646e475e3e2ce0b884cc9f292e53d Mon Sep 17 00:00:00 2001 From: Iaan D'Souza-Wiltshire Date: Wed, 6 Sep 2017 18:31:24 +0000 Subject: [PATCH 17/28] Updated troubleshoot-windows-defender-antivirus.md --- ...troubleshoot-windows-defender-antivirus.md | 19 ++----------------- 1 file changed, 2 insertions(+), 17 deletions(-) diff --git a/windows/threat-protection/windows-defender-antivirus/troubleshoot-windows-defender-antivirus.md b/windows/threat-protection/windows-defender-antivirus/troubleshoot-windows-defender-antivirus.md index 178a164669..cd2c6ccda5 100644 --- a/windows/threat-protection/windows-defender-antivirus/troubleshoot-windows-defender-antivirus.md +++ b/windows/threat-protection/windows-defender-antivirus/troubleshoot-windows-defender-antivirus.md @@ -2488,29 +2488,14 @@ or Hang - - - - From 27ff4311916302a0fa62a34768bd4def59d8db93 Mon Sep 17 00:00:00 2001 From: Jeanie Decker Date: Wed, 6 Sep 2017 20:48:27 +0000 Subject: [PATCH 18/28] Merged PR 3053: Fix metadata --- windows/configuration/wcd/wcd-accounts.md | 2 +- windows/configuration/wcd/wcd-admxingestion.md | 2 +- windows/configuration/wcd/wcd-applicationmanagement.md | 2 +- windows/configuration/wcd/wcd-assignedaccess.md | 2 +- windows/configuration/wcd/wcd-automatictime.md | 2 +- windows/configuration/wcd/wcd-browser.md | 2 +- windows/configuration/wcd/wcd-callandmessagingenhancement.md | 2 +- windows/configuration/wcd/wcd-cellular.md | 2 +- windows/configuration/wcd/wcd-certificates.md | 2 +- windows/configuration/wcd/wcd-cleanpc.md | 2 +- windows/configuration/wcd/wcd-connections.md | 2 +- windows/configuration/wcd/wcd-connectivityprofiles.md | 2 +- windows/configuration/wcd/wcd-countryandregion.md | 2 +- windows/configuration/wcd/wcd-desktopbackgroundandcolors.md | 2 +- windows/configuration/wcd/wcd-developersetup.md | 2 +- windows/configuration/wcd/wcd-deviceformfactor.md | 2 +- windows/configuration/wcd/wcd-devicemanagement.md | 2 +- windows/configuration/wcd/wcd-dmclient.md | 2 +- windows/configuration/wcd/wcd-editionupgrade.md | 2 +- windows/configuration/wcd/wcd-embeddedlockdownprofiles.md | 2 +- windows/configuration/wcd/wcd-firewallconfiguration.md | 2 +- windows/configuration/wcd/wcd-firstexperience.md | 2 +- windows/configuration/wcd/wcd-folders.md | 2 +- windows/configuration/wcd/wcd-initialsetup.md | 2 +- windows/configuration/wcd/wcd-internetexplorer.md | 2 +- windows/configuration/wcd/wcd-licensing.md | 2 +- windows/configuration/wcd/wcd-maps.md | 2 +- windows/configuration/wcd/wcd-messaging.md | 2 +- windows/configuration/wcd/wcd-modemconfigurations.md | 2 +- windows/configuration/wcd/wcd-multivariant.md | 2 +- windows/configuration/wcd/wcd-networkproxy.md | 2 +- windows/configuration/wcd/wcd-networkqospolicy.md | 2 +- windows/configuration/wcd/wcd-nfc.md | 2 +- windows/configuration/wcd/wcd-oobe.md | 2 +- windows/configuration/wcd/wcd-otherassets.md | 2 +- windows/configuration/wcd/wcd-personalization.md | 2 +- windows/configuration/wcd/wcd-policies.md | 2 +- windows/configuration/wcd/wcd-provisioningcommands.md | 2 +- windows/configuration/wcd/wcd-sharedpc.md | 2 +- windows/configuration/wcd/wcd-shell.md | 2 +- windows/configuration/wcd/wcd-smisettings.md | 2 +- windows/configuration/wcd/wcd-start.md | 2 +- windows/configuration/wcd/wcd-startupapp.md | 2 +- windows/configuration/wcd/wcd-startupbackgroundtasks.md | 2 +- windows/configuration/wcd/wcd-surfacehubmanagement.md | 2 +- windows/configuration/wcd/wcd-tabletmode.md | 2 +- windows/configuration/wcd/wcd-takeatest.md | 2 +- windows/configuration/wcd/wcd-theme.md | 2 +- windows/configuration/wcd/wcd-unifiedwritefilter.md | 2 +- windows/configuration/wcd/wcd-universalappinstall.md | 2 +- windows/configuration/wcd/wcd-universalappuninstall.md | 2 +- windows/configuration/wcd/wcd-usberrorsoemoverride.md | 2 +- windows/configuration/wcd/wcd-weakcharger.md | 2 +- windows/configuration/wcd/wcd-windowsteamsettings.md | 2 +- windows/configuration/wcd/wcd-wlan.md | 2 +- windows/configuration/wcd/wcd-workplace.md | 2 +- windows/configuration/wcd/wcd.md | 2 +- 57 files changed, 57 insertions(+), 57 deletions(-) diff --git a/windows/configuration/wcd/wcd-accounts.md b/windows/configuration/wcd/wcd-accounts.md index d3dd731cdf..7e89dfdb30 100644 --- a/windows/configuration/wcd/wcd-accounts.md +++ b/windows/configuration/wcd/wcd-accounts.md @@ -5,7 +5,7 @@ ms.prod: w10 ms.mktglfcycl: deploy ms.sitesec: library author: jdeckerMS -localizationpriority: medium +ms.localizationpriority: medium ms.author: jdecker ms.date: 08/21/2017 --- diff --git a/windows/configuration/wcd/wcd-admxingestion.md b/windows/configuration/wcd/wcd-admxingestion.md index daa6ca5eb8..52223258ad 100644 --- a/windows/configuration/wcd/wcd-admxingestion.md +++ b/windows/configuration/wcd/wcd-admxingestion.md @@ -5,7 +5,7 @@ ms.prod: w10 ms.mktglfcycl: deploy ms.sitesec: library author: jdeckerMS -localizationpriority: medium +ms.localizationpriority: medium ms.author: jdecker ms.date: 08/21/2017 --- diff --git a/windows/configuration/wcd/wcd-applicationmanagement.md b/windows/configuration/wcd/wcd-applicationmanagement.md index f032ce168c..af27cea5f0 100644 --- a/windows/configuration/wcd/wcd-applicationmanagement.md +++ b/windows/configuration/wcd/wcd-applicationmanagement.md @@ -5,7 +5,7 @@ ms.prod: w10 ms.mktglfcycl: deploy ms.sitesec: library author: jdeckerMS -localizationpriority: medium +ms.localizationpriority: medium ms.author: jdecker ms.date: 08/21/2017 --- diff --git a/windows/configuration/wcd/wcd-assignedaccess.md b/windows/configuration/wcd/wcd-assignedaccess.md index ad5d7551fb..201fc633e1 100644 --- a/windows/configuration/wcd/wcd-assignedaccess.md +++ b/windows/configuration/wcd/wcd-assignedaccess.md @@ -5,7 +5,7 @@ ms.prod: w10 ms.mktglfcycl: deploy ms.sitesec: library author: jdeckerMS -localizationpriority: medium +ms.localizationpriority: medium ms.author: jdecker ms.date: 08/21/2017 --- diff --git a/windows/configuration/wcd/wcd-automatictime.md b/windows/configuration/wcd/wcd-automatictime.md index abb8bbd179..52d9845460 100644 --- a/windows/configuration/wcd/wcd-automatictime.md +++ b/windows/configuration/wcd/wcd-automatictime.md @@ -5,7 +5,7 @@ ms.prod: w10 ms.mktglfcycl: deploy ms.sitesec: library author: jdeckerMS -localizationpriority: medium +ms.localizationpriority: medium ms.author: jdecker ms.date: 08/21/2017 --- diff --git a/windows/configuration/wcd/wcd-browser.md b/windows/configuration/wcd/wcd-browser.md index 787b6fa65b..a8af54b4f9 100644 --- a/windows/configuration/wcd/wcd-browser.md +++ b/windows/configuration/wcd/wcd-browser.md @@ -5,7 +5,7 @@ ms.prod: w10 ms.mktglfcycl: deploy ms.sitesec: library author: jdeckerMS -localizationpriority: medium +ms.localizationpriority: medium ms.author: jdecker ms.date: 08/21/2017 --- diff --git a/windows/configuration/wcd/wcd-callandmessagingenhancement.md b/windows/configuration/wcd/wcd-callandmessagingenhancement.md index bb07ccc02c..f3905fe8bc 100644 --- a/windows/configuration/wcd/wcd-callandmessagingenhancement.md +++ b/windows/configuration/wcd/wcd-callandmessagingenhancement.md @@ -5,7 +5,7 @@ ms.prod: w10 ms.mktglfcycl: deploy ms.sitesec: library author: jdeckerMS -localizationpriority: medium +ms.localizationpriority: medium ms.author: jdecker ms.date: 08/21/2017 --- diff --git a/windows/configuration/wcd/wcd-cellular.md b/windows/configuration/wcd/wcd-cellular.md index 64258bbe02..7ea42d279d 100644 --- a/windows/configuration/wcd/wcd-cellular.md +++ b/windows/configuration/wcd/wcd-cellular.md @@ -5,7 +5,7 @@ ms.prod: w10 ms.mktglfcycl: deploy ms.sitesec: library author: jdeckerMS -localizationpriority: medium +ms.localizationpriority: medium ms.author: jdecker ms.date: 08/21/2017 --- diff --git a/windows/configuration/wcd/wcd-certificates.md b/windows/configuration/wcd/wcd-certificates.md index 6347a4795d..4e414b4677 100644 --- a/windows/configuration/wcd/wcd-certificates.md +++ b/windows/configuration/wcd/wcd-certificates.md @@ -5,7 +5,7 @@ ms.prod: w10 ms.mktglfcycl: deploy ms.sitesec: library author: jdeckerMS -localizationpriority: medium +ms.localizationpriority: medium ms.author: jdecker ms.date: 08/21/2017 --- diff --git a/windows/configuration/wcd/wcd-cleanpc.md b/windows/configuration/wcd/wcd-cleanpc.md index ec1f5eaadc..fa14dead06 100644 --- a/windows/configuration/wcd/wcd-cleanpc.md +++ b/windows/configuration/wcd/wcd-cleanpc.md @@ -5,7 +5,7 @@ ms.prod: w10 ms.mktglfcycl: deploy ms.sitesec: library author: jdeckerMS -localizationpriority: medium +ms.localizationpriority: medium ms.author: jdecker ms.date: 08/21/2017 --- diff --git a/windows/configuration/wcd/wcd-connections.md b/windows/configuration/wcd/wcd-connections.md index 1ce0db8e5b..07f2fffa0f 100644 --- a/windows/configuration/wcd/wcd-connections.md +++ b/windows/configuration/wcd/wcd-connections.md @@ -5,7 +5,7 @@ ms.prod: w10 ms.mktglfcycl: deploy ms.sitesec: library author: jdeckerMS -localizationpriority: medium +ms.localizationpriority: medium ms.author: jdecker ms.date: 08/21/2017 --- diff --git a/windows/configuration/wcd/wcd-connectivityprofiles.md b/windows/configuration/wcd/wcd-connectivityprofiles.md index bb7d3366c0..2a71e900c4 100644 --- a/windows/configuration/wcd/wcd-connectivityprofiles.md +++ b/windows/configuration/wcd/wcd-connectivityprofiles.md @@ -5,7 +5,7 @@ ms.prod: w10 ms.mktglfcycl: deploy ms.sitesec: library author: jdeckerMS -localizationpriority: medium +ms.localizationpriority: medium ms.author: jdecker ms.date: 08/21/2017 --- diff --git a/windows/configuration/wcd/wcd-countryandregion.md b/windows/configuration/wcd/wcd-countryandregion.md index aea53e22de..84e1e611f1 100644 --- a/windows/configuration/wcd/wcd-countryandregion.md +++ b/windows/configuration/wcd/wcd-countryandregion.md @@ -5,7 +5,7 @@ ms.prod: w10 ms.mktglfcycl: deploy ms.sitesec: library author: jdeckerMS -localizationpriority: medium +ms.localizationpriority: medium ms.author: jdecker ms.date: 08/21/2017 --- diff --git a/windows/configuration/wcd/wcd-desktopbackgroundandcolors.md b/windows/configuration/wcd/wcd-desktopbackgroundandcolors.md index 1cf770db9b..6f954aec14 100644 --- a/windows/configuration/wcd/wcd-desktopbackgroundandcolors.md +++ b/windows/configuration/wcd/wcd-desktopbackgroundandcolors.md @@ -5,7 +5,7 @@ ms.prod: w10 ms.mktglfcycl: deploy ms.sitesec: library author: jdeckerMS -localizationpriority: medium +ms.localizationpriority: medium ms.author: jdecker ms.date: 08/21/2017 --- diff --git a/windows/configuration/wcd/wcd-developersetup.md b/windows/configuration/wcd/wcd-developersetup.md index e7c4378477..76c7f07631 100644 --- a/windows/configuration/wcd/wcd-developersetup.md +++ b/windows/configuration/wcd/wcd-developersetup.md @@ -5,7 +5,7 @@ ms.prod: w10 ms.mktglfcycl: deploy ms.sitesec: library author: jdeckerMS -localizationpriority: medium +ms.localizationpriority: medium ms.author: jdecker ms.date: 08/21/2017 --- diff --git a/windows/configuration/wcd/wcd-deviceformfactor.md b/windows/configuration/wcd/wcd-deviceformfactor.md index dc1e5cd524..c9d4434a24 100644 --- a/windows/configuration/wcd/wcd-deviceformfactor.md +++ b/windows/configuration/wcd/wcd-deviceformfactor.md @@ -5,7 +5,7 @@ ms.prod: w10 ms.mktglfcycl: deploy ms.sitesec: library author: jdeckerMS -localizationpriority: medium +ms.localizationpriority: medium ms.author: jdecker ms.date: 08/21/2017 --- diff --git a/windows/configuration/wcd/wcd-devicemanagement.md b/windows/configuration/wcd/wcd-devicemanagement.md index 9297174468..297225f5a1 100644 --- a/windows/configuration/wcd/wcd-devicemanagement.md +++ b/windows/configuration/wcd/wcd-devicemanagement.md @@ -5,7 +5,7 @@ ms.prod: w10 ms.mktglfcycl: deploy ms.sitesec: library author: jdeckerMS -localizationpriority: medium +ms.localizationpriority: medium ms.author: jdecker ms.date: 08/21/2017 --- diff --git a/windows/configuration/wcd/wcd-dmclient.md b/windows/configuration/wcd/wcd-dmclient.md index 4efec80320..27a6b9dd36 100644 --- a/windows/configuration/wcd/wcd-dmclient.md +++ b/windows/configuration/wcd/wcd-dmclient.md @@ -5,7 +5,7 @@ ms.prod: w10 ms.mktglfcycl: deploy ms.sitesec: library author: jdeckerMS -localizationpriority: medium +ms.localizationpriority: medium ms.author: jdecker ms.date: 08/21/2017 --- diff --git a/windows/configuration/wcd/wcd-editionupgrade.md b/windows/configuration/wcd/wcd-editionupgrade.md index cb2fd133b6..76e05d28ae 100644 --- a/windows/configuration/wcd/wcd-editionupgrade.md +++ b/windows/configuration/wcd/wcd-editionupgrade.md @@ -5,7 +5,7 @@ ms.prod: w10 ms.mktglfcycl: deploy ms.sitesec: library author: jdeckerMS -localizationpriority: medium +ms.localizationpriority: medium ms.author: jdecker ms.date: 08/21/2017 --- diff --git a/windows/configuration/wcd/wcd-embeddedlockdownprofiles.md b/windows/configuration/wcd/wcd-embeddedlockdownprofiles.md index 833b66a43a..2203a1cb2b 100644 --- a/windows/configuration/wcd/wcd-embeddedlockdownprofiles.md +++ b/windows/configuration/wcd/wcd-embeddedlockdownprofiles.md @@ -5,7 +5,7 @@ ms.prod: w10 ms.mktglfcycl: deploy ms.sitesec: library author: jdeckerMS -localizationpriority: medium +ms.localizationpriority: medium ms.author: jdecker ms.date: 08/21/2017 --- diff --git a/windows/configuration/wcd/wcd-firewallconfiguration.md b/windows/configuration/wcd/wcd-firewallconfiguration.md index 5e394b2f6b..df61861e90 100644 --- a/windows/configuration/wcd/wcd-firewallconfiguration.md +++ b/windows/configuration/wcd/wcd-firewallconfiguration.md @@ -5,7 +5,7 @@ ms.prod: w10 ms.mktglfcycl: deploy ms.sitesec: library author: jdeckerMS -localizationpriority: medium +ms.localizationpriority: medium ms.author: jdecker ms.date: 08/21/2017 --- diff --git a/windows/configuration/wcd/wcd-firstexperience.md b/windows/configuration/wcd/wcd-firstexperience.md index b3a53776ff..cf0f7c1983 100644 --- a/windows/configuration/wcd/wcd-firstexperience.md +++ b/windows/configuration/wcd/wcd-firstexperience.md @@ -5,7 +5,7 @@ ms.prod: w10 ms.mktglfcycl: deploy ms.sitesec: library author: jdeckerMS -localizationpriority: medium +ms.localizationpriority: medium ms.author: jdecker ms.date: 08/21/2017 --- diff --git a/windows/configuration/wcd/wcd-folders.md b/windows/configuration/wcd/wcd-folders.md index bbad0c9cb9..08eff6065d 100644 --- a/windows/configuration/wcd/wcd-folders.md +++ b/windows/configuration/wcd/wcd-folders.md @@ -5,7 +5,7 @@ ms.prod: w10 ms.mktglfcycl: deploy ms.sitesec: library author: jdeckerMS -localizationpriority: medium +ms.localizationpriority: medium ms.author: jdecker ms.date: 08/21/2017 --- diff --git a/windows/configuration/wcd/wcd-initialsetup.md b/windows/configuration/wcd/wcd-initialsetup.md index db5b9cee8b..a579fca408 100644 --- a/windows/configuration/wcd/wcd-initialsetup.md +++ b/windows/configuration/wcd/wcd-initialsetup.md @@ -5,7 +5,7 @@ ms.prod: w10 ms.mktglfcycl: deploy ms.sitesec: library author: jdeckerMS -localizationpriority: medium +ms.localizationpriority: medium ms.author: jdecker ms.date: 08/21/2017 --- diff --git a/windows/configuration/wcd/wcd-internetexplorer.md b/windows/configuration/wcd/wcd-internetexplorer.md index d1a2e56c56..e3290e6905 100644 --- a/windows/configuration/wcd/wcd-internetexplorer.md +++ b/windows/configuration/wcd/wcd-internetexplorer.md @@ -5,7 +5,7 @@ ms.prod: w10 ms.mktglfcycl: deploy ms.sitesec: library author: jdeckerMS -localizationpriority: medium +ms.localizationpriority: medium ms.author: jdecker ms.date: 08/21/2017 --- diff --git a/windows/configuration/wcd/wcd-licensing.md b/windows/configuration/wcd/wcd-licensing.md index 5b3ebb4f41..7ae7661ea8 100644 --- a/windows/configuration/wcd/wcd-licensing.md +++ b/windows/configuration/wcd/wcd-licensing.md @@ -5,7 +5,7 @@ ms.prod: w10 ms.mktglfcycl: deploy ms.sitesec: library author: jdeckerMS -localizationpriority: medium +ms.localizationpriority: medium ms.author: jdecker ms.date: 08/21/2017 --- diff --git a/windows/configuration/wcd/wcd-maps.md b/windows/configuration/wcd/wcd-maps.md index 4a1bfc4a7a..afe5f92c1c 100644 --- a/windows/configuration/wcd/wcd-maps.md +++ b/windows/configuration/wcd/wcd-maps.md @@ -5,7 +5,7 @@ ms.prod: w10 ms.mktglfcycl: deploy ms.sitesec: library author: jdeckerMS -localizationpriority: medium +ms.localizationpriority: medium ms.author: jdecker ms.date: 08/21/2017 --- diff --git a/windows/configuration/wcd/wcd-messaging.md b/windows/configuration/wcd/wcd-messaging.md index a00378d147..871e87042c 100644 --- a/windows/configuration/wcd/wcd-messaging.md +++ b/windows/configuration/wcd/wcd-messaging.md @@ -5,7 +5,7 @@ ms.prod: w10 ms.mktglfcycl: deploy ms.sitesec: library author: jdeckerMS -localizationpriority: medium +ms.localizationpriority: medium ms.author: jdecker ms.date: 08/21/2017 --- diff --git a/windows/configuration/wcd/wcd-modemconfigurations.md b/windows/configuration/wcd/wcd-modemconfigurations.md index dc45dff1ef..98bae12f8b 100644 --- a/windows/configuration/wcd/wcd-modemconfigurations.md +++ b/windows/configuration/wcd/wcd-modemconfigurations.md @@ -5,7 +5,7 @@ ms.prod: w10 ms.mktglfcycl: deploy ms.sitesec: library author: jdeckerMS -localizationpriority: medium +ms.localizationpriority: medium ms.author: jdecker ms.date: 08/21/2017 --- diff --git a/windows/configuration/wcd/wcd-multivariant.md b/windows/configuration/wcd/wcd-multivariant.md index 37a5519dfd..fa8c0d735f 100644 --- a/windows/configuration/wcd/wcd-multivariant.md +++ b/windows/configuration/wcd/wcd-multivariant.md @@ -5,7 +5,7 @@ ms.prod: w10 ms.mktglfcycl: deploy ms.sitesec: library author: jdeckerMS -localizationpriority: medium +ms.localizationpriority: medium ms.author: jdecker ms.date: 08/21/2017 --- diff --git a/windows/configuration/wcd/wcd-networkproxy.md b/windows/configuration/wcd/wcd-networkproxy.md index 7eb31bc61c..3689226767 100644 --- a/windows/configuration/wcd/wcd-networkproxy.md +++ b/windows/configuration/wcd/wcd-networkproxy.md @@ -5,7 +5,7 @@ ms.prod: w10 ms.mktglfcycl: deploy ms.sitesec: library author: jdeckerMS -localizationpriority: medium +ms.localizationpriority: medium ms.author: jdecker ms.date: 08/21/2017 --- diff --git a/windows/configuration/wcd/wcd-networkqospolicy.md b/windows/configuration/wcd/wcd-networkqospolicy.md index 5906d70cdd..be9d9f4d69 100644 --- a/windows/configuration/wcd/wcd-networkqospolicy.md +++ b/windows/configuration/wcd/wcd-networkqospolicy.md @@ -5,7 +5,7 @@ ms.prod: w10 ms.mktglfcycl: deploy ms.sitesec: library author: jdeckerMS -localizationpriority: medium +ms.localizationpriority: medium ms.author: jdecker ms.date: 08/21/2017 --- diff --git a/windows/configuration/wcd/wcd-nfc.md b/windows/configuration/wcd/wcd-nfc.md index c03217c87e..1b56de1940 100644 --- a/windows/configuration/wcd/wcd-nfc.md +++ b/windows/configuration/wcd/wcd-nfc.md @@ -5,7 +5,7 @@ ms.prod: w10 ms.mktglfcycl: deploy ms.sitesec: library author: jdeckerMS -localizationpriority: medium +ms.localizationpriority: medium ms.author: jdecker ms.date: 08/21/2017 --- diff --git a/windows/configuration/wcd/wcd-oobe.md b/windows/configuration/wcd/wcd-oobe.md index 7a72de6bb0..e609255e3d 100644 --- a/windows/configuration/wcd/wcd-oobe.md +++ b/windows/configuration/wcd/wcd-oobe.md @@ -5,7 +5,7 @@ ms.prod: w10 ms.mktglfcycl: deploy ms.sitesec: library author: jdeckerMS -localizationpriority: medium +ms.localizationpriority: medium ms.author: jdecker ms.date: 08/21/2017 --- diff --git a/windows/configuration/wcd/wcd-otherassets.md b/windows/configuration/wcd/wcd-otherassets.md index f5f33e19a2..ff79d72f5f 100644 --- a/windows/configuration/wcd/wcd-otherassets.md +++ b/windows/configuration/wcd/wcd-otherassets.md @@ -5,7 +5,7 @@ ms.prod: w10 ms.mktglfcycl: deploy ms.sitesec: library author: jdeckerMS -localizationpriority: medium +ms.localizationpriority: medium ms.author: jdecker ms.date: 08/21/2017 --- diff --git a/windows/configuration/wcd/wcd-personalization.md b/windows/configuration/wcd/wcd-personalization.md index 27f82ea825..a5aaee541d 100644 --- a/windows/configuration/wcd/wcd-personalization.md +++ b/windows/configuration/wcd/wcd-personalization.md @@ -5,7 +5,7 @@ ms.prod: w10 ms.mktglfcycl: deploy ms.sitesec: library author: jdeckerMS -localizationpriority: medium +ms.localizationpriority: medium ms.author: jdecker ms.date: 08/21/2017 --- diff --git a/windows/configuration/wcd/wcd-policies.md b/windows/configuration/wcd/wcd-policies.md index 72357237a0..f672b70b05 100644 --- a/windows/configuration/wcd/wcd-policies.md +++ b/windows/configuration/wcd/wcd-policies.md @@ -5,7 +5,7 @@ ms.prod: w10 ms.mktglfcycl: deploy ms.sitesec: library author: jdeckerMS -localizationpriority: medium +ms.localizationpriority: medium ms.author: jdecker ms.date: 08/21/2017 --- diff --git a/windows/configuration/wcd/wcd-provisioningcommands.md b/windows/configuration/wcd/wcd-provisioningcommands.md index 5ed43d8d18..7ab3bd2e35 100644 --- a/windows/configuration/wcd/wcd-provisioningcommands.md +++ b/windows/configuration/wcd/wcd-provisioningcommands.md @@ -5,7 +5,7 @@ ms.prod: w10 ms.mktglfcycl: deploy ms.sitesec: library author: jdeckerMS -localizationpriority: medium +ms.localizationpriority: medium ms.author: jdecker ms.date: 08/21/2017 --- diff --git a/windows/configuration/wcd/wcd-sharedpc.md b/windows/configuration/wcd/wcd-sharedpc.md index d771bbee7b..744e0acd11 100644 --- a/windows/configuration/wcd/wcd-sharedpc.md +++ b/windows/configuration/wcd/wcd-sharedpc.md @@ -5,7 +5,7 @@ ms.prod: w10 ms.mktglfcycl: deploy ms.sitesec: library author: jdeckerMS -localizationpriority: medium +ms.localizationpriority: medium ms.author: jdecker ms.date: 08/21/2017 --- diff --git a/windows/configuration/wcd/wcd-shell.md b/windows/configuration/wcd/wcd-shell.md index 8d7ad0b7ff..a0b581cb04 100644 --- a/windows/configuration/wcd/wcd-shell.md +++ b/windows/configuration/wcd/wcd-shell.md @@ -5,7 +5,7 @@ ms.prod: w10 ms.mktglfcycl: deploy ms.sitesec: library author: jdeckerMS -localizationpriority: medium +ms.localizationpriority: medium ms.author: jdecker ms.date: 08/21/2017 --- diff --git a/windows/configuration/wcd/wcd-smisettings.md b/windows/configuration/wcd/wcd-smisettings.md index ce6de17758..df459903c7 100644 --- a/windows/configuration/wcd/wcd-smisettings.md +++ b/windows/configuration/wcd/wcd-smisettings.md @@ -5,7 +5,7 @@ ms.prod: w10 ms.mktglfcycl: deploy ms.sitesec: library author: jdeckerMS -localizationpriority: medium +ms.localizationpriority: medium ms.author: jdecker ms.date: 08/21/2017 --- diff --git a/windows/configuration/wcd/wcd-start.md b/windows/configuration/wcd/wcd-start.md index 25fcc57075..3256dea604 100644 --- a/windows/configuration/wcd/wcd-start.md +++ b/windows/configuration/wcd/wcd-start.md @@ -5,7 +5,7 @@ ms.prod: w10 ms.mktglfcycl: deploy ms.sitesec: library author: jdeckerMS -localizationpriority: medium +ms.localizationpriority: medium ms.author: jdecker ms.date: 08/21/2017 --- diff --git a/windows/configuration/wcd/wcd-startupapp.md b/windows/configuration/wcd/wcd-startupapp.md index 06c5b20b7a..3e9d1ca9b2 100644 --- a/windows/configuration/wcd/wcd-startupapp.md +++ b/windows/configuration/wcd/wcd-startupapp.md @@ -5,7 +5,7 @@ ms.prod: w10 ms.mktglfcycl: deploy ms.sitesec: library author: jdeckerMS -localizationpriority: medium +ms.localizationpriority: medium ms.author: jdecker ms.date: 08/21/2017 --- diff --git a/windows/configuration/wcd/wcd-startupbackgroundtasks.md b/windows/configuration/wcd/wcd-startupbackgroundtasks.md index 6b0840c310..2e5c3fa161 100644 --- a/windows/configuration/wcd/wcd-startupbackgroundtasks.md +++ b/windows/configuration/wcd/wcd-startupbackgroundtasks.md @@ -5,7 +5,7 @@ ms.prod: w10 ms.mktglfcycl: deploy ms.sitesec: library author: jdeckerMS -localizationpriority: medium +ms.localizationpriority: medium ms.author: jdecker ms.date: 08/21/2017 --- diff --git a/windows/configuration/wcd/wcd-surfacehubmanagement.md b/windows/configuration/wcd/wcd-surfacehubmanagement.md index f2da4a2dd6..4a6dbb3dd3 100644 --- a/windows/configuration/wcd/wcd-surfacehubmanagement.md +++ b/windows/configuration/wcd/wcd-surfacehubmanagement.md @@ -5,7 +5,7 @@ ms.prod: w10 ms.mktglfcycl: deploy ms.sitesec: library author: jdeckerMS -localizationpriority: medium +ms.localizationpriority: medium ms.author: jdecker ms.date: 08/21/2017 --- diff --git a/windows/configuration/wcd/wcd-tabletmode.md b/windows/configuration/wcd/wcd-tabletmode.md index a8d2ea900a..5f454d89bb 100644 --- a/windows/configuration/wcd/wcd-tabletmode.md +++ b/windows/configuration/wcd/wcd-tabletmode.md @@ -5,7 +5,7 @@ ms.prod: w10 ms.mktglfcycl: deploy ms.sitesec: library author: jdeckerMS -localizationpriority: medium +ms.localizationpriority: medium ms.author: jdecker ms.date: 08/21/2017 --- diff --git a/windows/configuration/wcd/wcd-takeatest.md b/windows/configuration/wcd/wcd-takeatest.md index 75613f3b2e..c498ffd865 100644 --- a/windows/configuration/wcd/wcd-takeatest.md +++ b/windows/configuration/wcd/wcd-takeatest.md @@ -5,7 +5,7 @@ ms.prod: w10 ms.mktglfcycl: deploy ms.sitesec: library author: jdeckerMS -localizationpriority: medium +ms.localizationpriority: medium ms.author: jdecker ms.date: 08/21/2017 --- diff --git a/windows/configuration/wcd/wcd-theme.md b/windows/configuration/wcd/wcd-theme.md index 2d3e643f85..bc5710c264 100644 --- a/windows/configuration/wcd/wcd-theme.md +++ b/windows/configuration/wcd/wcd-theme.md @@ -5,7 +5,7 @@ ms.prod: w10 ms.mktglfcycl: deploy ms.sitesec: library author: jdeckerMS -localizationpriority: medium +ms.localizationpriority: medium ms.author: jdecker ms.date: 08/21/2017 --- diff --git a/windows/configuration/wcd/wcd-unifiedwritefilter.md b/windows/configuration/wcd/wcd-unifiedwritefilter.md index fe65f8413f..5ba21b01a3 100644 --- a/windows/configuration/wcd/wcd-unifiedwritefilter.md +++ b/windows/configuration/wcd/wcd-unifiedwritefilter.md @@ -5,7 +5,7 @@ ms.prod: w10 ms.mktglfcycl: deploy ms.sitesec: library author: jdeckerMS -localizationpriority: medium +ms.localizationpriority: medium ms.author: jdecker ms.date: 08/21/2017 --- diff --git a/windows/configuration/wcd/wcd-universalappinstall.md b/windows/configuration/wcd/wcd-universalappinstall.md index 6ba1b3993a..50f88c2fdc 100644 --- a/windows/configuration/wcd/wcd-universalappinstall.md +++ b/windows/configuration/wcd/wcd-universalappinstall.md @@ -5,7 +5,7 @@ ms.prod: w10 ms.mktglfcycl: deploy ms.sitesec: library author: jdeckerMS -localizationpriority: medium +ms.localizationpriority: medium ms.author: jdecker ms.date: 08/21/2017 --- diff --git a/windows/configuration/wcd/wcd-universalappuninstall.md b/windows/configuration/wcd/wcd-universalappuninstall.md index 17bbc8f15b..70cd723052 100644 --- a/windows/configuration/wcd/wcd-universalappuninstall.md +++ b/windows/configuration/wcd/wcd-universalappuninstall.md @@ -5,7 +5,7 @@ ms.prod: w10 ms.mktglfcycl: deploy ms.sitesec: library author: jdeckerMS -localizationpriority: medium +ms.localizationpriority: medium ms.author: jdecker ms.date: 08/21/2017 --- diff --git a/windows/configuration/wcd/wcd-usberrorsoemoverride.md b/windows/configuration/wcd/wcd-usberrorsoemoverride.md index 7175b5e14b..31685f534d 100644 --- a/windows/configuration/wcd/wcd-usberrorsoemoverride.md +++ b/windows/configuration/wcd/wcd-usberrorsoemoverride.md @@ -5,7 +5,7 @@ ms.prod: w10 ms.mktglfcycl: deploy ms.sitesec: library author: jdeckerMS -localizationpriority: medium +ms.localizationpriority: medium ms.author: jdecker ms.date: 08/21/2017 --- diff --git a/windows/configuration/wcd/wcd-weakcharger.md b/windows/configuration/wcd/wcd-weakcharger.md index f1316bc77a..92f8844d81 100644 --- a/windows/configuration/wcd/wcd-weakcharger.md +++ b/windows/configuration/wcd/wcd-weakcharger.md @@ -5,7 +5,7 @@ ms.prod: w10 ms.mktglfcycl: deploy ms.sitesec: library author: jdeckerMS -localizationpriority: medium +ms.localizationpriority: medium ms.author: jdecker ms.date: 08/21/2017 --- diff --git a/windows/configuration/wcd/wcd-windowsteamsettings.md b/windows/configuration/wcd/wcd-windowsteamsettings.md index b9ee438e22..26c23a84ce 100644 --- a/windows/configuration/wcd/wcd-windowsteamsettings.md +++ b/windows/configuration/wcd/wcd-windowsteamsettings.md @@ -5,7 +5,7 @@ ms.prod: w10 ms.mktglfcycl: deploy ms.sitesec: library author: jdeckerMS -localizationpriority: medium +ms.localizationpriority: medium ms.author: jdecker ms.date: 08/21/2017 --- diff --git a/windows/configuration/wcd/wcd-wlan.md b/windows/configuration/wcd/wcd-wlan.md index 6b641db70f..80bbb26cf5 100644 --- a/windows/configuration/wcd/wcd-wlan.md +++ b/windows/configuration/wcd/wcd-wlan.md @@ -5,7 +5,7 @@ ms.prod: w10 ms.mktglfcycl: deploy ms.sitesec: library author: jdeckerMS -localizationpriority: medium +ms.localizationpriority: medium ms.author: jdecker ms.date: 08/21/2017 --- diff --git a/windows/configuration/wcd/wcd-workplace.md b/windows/configuration/wcd/wcd-workplace.md index 901e30a048..8db1aa11a4 100644 --- a/windows/configuration/wcd/wcd-workplace.md +++ b/windows/configuration/wcd/wcd-workplace.md @@ -5,7 +5,7 @@ ms.prod: w10 ms.mktglfcycl: deploy ms.sitesec: library author: jdeckerMS -localizationpriority: medium +ms.localizationpriority: medium ms.author: jdecker ms.date: 08/21/2017 --- diff --git a/windows/configuration/wcd/wcd.md b/windows/configuration/wcd/wcd.md index 38f6061d9f..080f9e469f 100644 --- a/windows/configuration/wcd/wcd.md +++ b/windows/configuration/wcd/wcd.md @@ -5,7 +5,7 @@ ms.prod: w10 ms.mktglfcycl: deploy ms.sitesec: library author: jdeckerMS -localizationpriority: medium +ms.localizationpriority: medium ms.author: jdecker ms.date: 08/21/2017 --- From 1bd7d3c3cbaa80a6602a288a0036015924be7e67 Mon Sep 17 00:00:00 2001 From: Eliot Graff Date: Wed, 6 Sep 2017 16:32:33 -0700 Subject: [PATCH 19/28] Additional text on bitlocker encryption Clarifying a point brought to my attention by modern standby team. @brianlic-msft @Justinha --- .../bitlocker-device-encryption-overview-windows-10.md | 4 ++-- 1 file changed, 2 insertions(+), 2 deletions(-) diff --git a/windows/device-security/bitlocker/bitlocker-device-encryption-overview-windows-10.md b/windows/device-security/bitlocker/bitlocker-device-encryption-overview-windows-10.md index 97e9d04fb9..2fc47e4258 100644 --- a/windows/device-security/bitlocker/bitlocker-device-encryption-overview-windows-10.md +++ b/windows/device-security/bitlocker/bitlocker-device-encryption-overview-windows-10.md @@ -26,7 +26,7 @@ Table 2 lists specific data-protection concerns and how they are addressed in Wi | Windows 7 | Windows 10 | |---|---| | When BitLocker is used with a PIN to protect startup, PCs such as kiosks cannot be restarted remotely. | Modern Windows devices are increasingly protected with BitLocker Device Encryption out of the box and support SSO to seamlessly protect the BitLocker encryption keys from cold boot attacks.

        Network Unlock allows PCs to start automatically when connected to the internal network. | -| Users must contact the IT department to change their BitLocker PIN or password. | Modern Windows devices no longer require a PIN in the pre-boot environment to protect BitLocker encryption keys from cold boot attacks.

        Users who have standard privileges can change their BitLocker PIN or password on legacy devices that require a PIN. | + | Users must contact the IT department to change their BitLocker PIN or password. | Modern Windows devices no longer require a PIN in the pre-boot environment to protect BitLocker encryption keys from cold boot attacks.

        Users who have standard privileges can change their BitLocker PIN or password on legacy devices that require a PIN. | | When BitLocker is enabled, the provisioning process can take several hours. | BitLocker pre-provisioning, encrypting hard drives, and Used Space Only encryption allow administrators to enable BitLocker quickly on new computers. | | There is no support for using BitLocker with self-encrypting drives (SEDs). | BitLocker supports offloading encryption to encrypted hard drives. | | Administrators have to use separate tools to manage encrypted hard drives. | BitLocker supports encrypted hard drives with onboard encryption hardware built in, which allows administrators to use the familiar BitLocker administrative tools to manage them. | @@ -66,7 +66,7 @@ Beginning in Windows 8.1, Windows automatically enables BitLocker Device Encryp Unlike a standard BitLocker implementation, BitLocker Device Encryption is enabled automatically so that the device is always protected. The following list outlines how this happens: -* When a clean installation of Windows 10 is completed and the out-of-box experience is finished, the computer is prepared for first use. As part of this preparation, BitLocker Device Encryption is initialized on the operating system drive and fixed data drives on the computer with a clear key (this is the equivalent of standard BitLocker suspended state). +* When a clean installation of Windows 10 is completed and the out-of-box experience is finished, the computer is prepared for first use. As part of this preparation, BitLocker Device Encryption is initialized on the operating system drive and fixed data drives on the computer with a clear key (this is the equivalent of standard BitLocker suspended state). In this state, the drive is shown with a warning icon in Windows Explorer. The yellow warning icon is removed after the TPM protector is created and the recovery key is backed up, as explained in the following bullet points. * If the device is not domain joined, a Microsoft account that has been granted administrative privileges on the device is required. When the administrator uses a Microsoft account to sign in, the clear key is removed, a recovery key is uploaded to the online Microsoft account, and a TPM protector is created. Should a device require the recovery key, the user will be guided to use an alternate device and navigate to a recovery key access URL to retrieve the recovery key by using his or her Microsoft account credentials. * If the user uses a domain account to sign in, the clear key is not removed until the user joins the device to a domain and the recovery key is successfully backed up to Active Directory Domain Services (AD DS). You must enable the **Computer Configuration\\Administrative Templates\\Windows Components\\BitLocker Drive Encryption\\Operating System Drives** Group Policy setting, and select the **Do not enable BitLocker until recovery information is stored in AD DS for operating system drives** option. With this configuration, the recovery password is created automatically when the computer joins the domain, and then the recovery key is backed up to AD DS, the TPM protector is created, and the clear key is removed. * Similar to signing in with a domain account, the clear key is removed when the user logs on to an Azure AD account on the device. As described in the bullet point above, the recovery password is created automatically when the user authenticates to Azure AD. Then, the recovery key is backed up to Azure AD, the TPM protector is created, and the clear key is removed. From 8c6c0435a17c97186d9a6f4d8a5378614119330a Mon Sep 17 00:00:00 2001 From: John Tobin Date: Wed, 6 Sep 2017 17:12:14 -0700 Subject: [PATCH 20/28] Add procedural steps and new screenshots --- ...for-the-built-in-administrator-account.png | Bin 0 -> 8856 bytes ...-administrators-in-admin-approval-mode.png | Bin 0 -> 7738 bytes ...when-apps-try-to-make-changes-to-my-pc.png | Bin 0 -> 67709 bytes ...-for-the-built-in-administrator-account.md | 23 +++++++++++++++++- 4 files changed, 22 insertions(+), 1 deletion(-) create mode 100644 windows/device-security/security-policy-settings/images/uac-admin-approval-mode-for-the-built-in-administrator-account.png create mode 100644 windows/device-security/security-policy-settings/images/uac-behavior-of-the-elevation-prompt-for-administrators-in-admin-approval-mode.png create mode 100644 windows/device-security/security-policy-settings/images/uac-notify-me-only-when-apps-try-to-make-changes-to-my-pc.png diff --git a/windows/device-security/security-policy-settings/images/uac-admin-approval-mode-for-the-built-in-administrator-account.png b/windows/device-security/security-policy-settings/images/uac-admin-approval-mode-for-the-built-in-administrator-account.png new file mode 100644 index 0000000000000000000000000000000000000000..52acafba66e19bf6a9f23fc92a0fd130dd55b8dc GIT binary patch literal 8856 zcmdsdcT`hbn|=@##fyl5bWn$j#Eo$~QWo2(FS1@RMq6y*eW(2#xE1*h4lkShR8x+(cSDDvz zh+Qq-!B9%we4MRY=cB-89z>qU8K(D*Rbx2~tKBVJ$V_n>sZw&AU-@`9zw2lP9!$)L z7;0y4Q?g@je|8!(eXT$tv3(cuIL6{WyA(|NfBx`|@t<|Pc zm@Bza;+P5BvQP0yOg1G}j`&>%C0y9^MI)7f+MQOV?58yg_L)oBEjPm+h9 z5#au=`<3Aj&CPq5r=-2-rs!YwzJJu0F7?whu}6A?zFG7raD8EI=0IA`Pkj!4NZFnj zUkHK{RzBiXm90nau8|AT2d|N}QuEbAQWC&r)fSy{a7R{la%4o1mztUyMT14i>E!0vNMD6mxs}+GiPz+l)Me zVSRwFg+)+_-*gWaYr&A~Nc>ah3zM+90RqmsaoL2GayzqiiFQJr4&7La4VK}MyGf?k zaJAk|Ji=FrlB>d&3(kYa`@J|aWPlfGS!gOyq2egjli*_N4<{^W6i+pse@@HNwSqR|ft`-{`r_0%KR>^knmqKi zVol>pXG1h>brR(n)j2cGU3!d#R+!tqvj4pB1}PjQ57$-}OeK(Feve`}$g1ePKL7 zBm#P^vf$_Y3a1guQoDk@*Rrk!HdiM*XdA~qxHL(4@HIw&`N9T8oVc`)bcAE-UQyC&^Z@Ca*A2e#Wdhcdy zWtf%QKgFj41NY-Kl{v0h%pGI#t~Zr`&tV0OPE-{!(I2pvJ^ZA5XYHDyMJr+*7cj^m zP(c)|8PC*+O)CC=v!`G*K1o!i`%>2s8(DymDEo<+!}&X&3;f@L1Ez;Epc&&RV7Jol9?cQf#y6$hrcE~6 zBj;0ZyNMWG&3v_v7!VjpV3IOLHZz1uf{h`;h;t)5op14K%H;VP-I9SMJry?yDvdw$ zCnTRGLAOF&x$0t_YimWO`QdtvFLSC0SglNMchb`hLxx3h2;Tzin>c1yC4aEe(4d&6 zM_vz8;ACfqRIX^ajPY?QnjT}3nkRg%nK5JCyllOoczw-NCtFh^<&A!Ulr5TwxwT<8 z!_fCY!U$4G3dPEtn~1!#-ciKOJ*@Y6JlN$akE6lm%vQhi7pmGwBp+?7n)in*6-y*j zxn=T_8i7ve&?TZwf1qz%Mo$Rg@*YlD$JnoMH0P< zTDEm8ggranZzJF}mf$ws%{9+7c=&Ht*frx_3Mt;dW8np?d_K*;u3k9zU#XT za4-#?B!{q1tu`rKRH0|blQwX?h=v)>2`IaBsib z!4org6CfC`fg%0L_j!4RTun_;$5<#G(m59((q2zzCZ$fkp^LzXfA7y9pWaB)8!Dr( zYD<^%uR)^$Gwt91V($0z^LkjMr!ROhEV8G+|4sNdkvIkE5+=eJxw0ffz8`6VQ`JhBz<$uvpBg z{zll!D0ZGQ0)#%O9q28V==AH;H3^Dbyr{Xy8t`;=%%amV=6sqB`U>G_U2yJ!8Z%d#3U_= zEDAzH`G(>BLAsUe&lenu;?l(0f-;|8u`EnrjbkeNd8o5TgW9JmNA1YjCO!-2AKmUw z7C#5)30ZpB~a6vR+|)D@e0ij_E2Zn_8idJJH;EE-Hkh9(dpM0I-BDdvKJ5)Du)KfgP}ww zy(Dw#$&PRsRe3{=7ykV#ep8h_b5bN<8sg7OCHmB#vc|upj>Plsp4T-bu~8sM>A8brER3$+9_>(w#boB;y!RePCcRw9xGr-YjFdg%Q{DLRZZL-$ zHZaR`IUg3BiHMY(%g)ED*{20My5iEcgiAZo1+p; zo_4;}Bz*`vOxf~!rNyWF{!N=(&AO7$eO|LS<8wOEA+Cya^?N;T>UZJ2NVd(8(svaJ zI(ku|5&Evt`kU3<4ri46nPG*p6Hknd1qOx9S%WTQ*Uqv1p_sZ;WAXRAOY4fswdccqaNMo z744h`DoTnl8w;p`fwu+>9oDy!Hy&R`lOrzf2 zNcXsNw=?z_i;mj+?ego?GvT<1c)Am~>fE=au>!FN1w1E%dVr$G_QovIszPtnQgWu3 zSF?wK`GKtQR;1*OVMS)|=+is3uL|=W6O#N@ki8H|L9|tsL4N&gM3+9Jb88(5rLjjRf-q9rw-MT=F0O||H4jEGXElYayiEbeB%ceKi{ z1mD2uZ)+&?v1=1GeSu)X7>C7TZL78$Re9)wWLK)qhGjnej4pXlU_!!Kb9$U;PrO`} z!{8J$Jmpq_Si-~z50}bI_~%c|=?SkWPONy?7X#w~tMz@9D8d{^O>F^VEY_+(x{bZ>a;-4h*`6qWTtL$R7|Zcp!dJTWkSDl}gyVmq%=m!R$Tq&2Z> za;J@HYl#*GY-Nj^*FCSG;ni*6F zY>O~I^=%aiy?dcfzk|I=Po+hv;}Xui3a%IyMuLBD_{$JiPnjB4-?qv0x*pp}fUwBG@x!DM6#YfH~H$Vd{1Zp;xUqM>I6pxj3}42a}zp z(t5ILv}1AMb}F*wEv)#|hDZ+;c5c{SU3Rc|VmMb-&SRrHr%N>EgK8Wt#lz^dtjs6$JQF^428B3YbJF&J#-#KJ8_P9sI=7Z4vP=p zZab;;OwOaOP0Ol_PJnkw_N_S9GSiyTLt9jKB&z5X+d%YH31wr0s3wsF^(j(<-ltDi zi>e}ztrWP~xY*d3+r3Oiytst)TOz|x&KhvAwx6tD{LDTPb6AX=i@t0r1-4VG9yjvi zDcam0Dpqm9W#$YWW1$U~E78kVo=#i}O&w2;$nhE+g-fqbbm)k3YrKw$v1uzCYe;E0 zEp;Xu=i{ob8~`|DNJELzk7`~+wIP{OAz2b{h8$E+`njk{!8popAW|=Z$xGD4bKsD- zR@lRj+f=WE&wit-Mvb@k?912TtpTTI%Z)b;lv_BAjCp1;I$~gY1?IZf0;Kj2T;;Cp z{*WJY5x9d^Y2F7d)@0{Ar&4AQ({?o!(g1fd*o~TRSX#eDT2qb>9jRL2M0zTZ2J1PO z%q|Pir?kkPVI3HfE_`czS+k0-^PJF)5m&h)$JXY@F@A6y^ot2kCO%>b)=j=*>)WxL zIeWgp@#$!dgNkN?^D!1Hr-B_s3emf5E)G+VZMa^if0e%x&D5P`#ae6qiLSLJEcU_;K zQhhc@3IDCd2u~BtLkc$c;Y#w7>)X;+x^S}1qhO83l8bNH$ikZDg9SS$Yz#1^WO1NC z?zO&UWn~oGGKum%ox4-#Sz}?K3AozRE$0M{DOIb*1ne?H+}=(|>ZDI;z_|K1`ap7VBs4OLxflh%PU*Nmb{&3>vOmC{+ z+*g#!pl$a}%Vy2mziTa%zDK_442&m(D>UCISUMIas@t*~4_(1ZpB=6IbF7k!njP8b z09hF=!OK_mSEC#Y!$qZvXQPO%`?IIfaLT@9Vj35FXRlH5wKUDBa6BqK@m6d}5aIjF zx|_%{ZLQHzg~#-YWv9bTug0G(@G20sR5?+iB(m0GTR@Dleh`ABmp{BIxi$V+M%c0- ze9o0e<8UGA-zVGv*lm&zIX zQM?ss?%Z~I^N{{XvmijGlo7RRZe|k#y&BIZ?bq!gCpeUFP$Sbvtf|pXF5u%u;tb*# z+ZALKWM$nNZOphb%AA%%H3n3v@rT1P`aupfA5?M8y{8S&zL;<|^}uGmBwe&Fw03#( z?pZf$yyoi#%}N*^`UW78{>md7DRa`XxSCwuL@`6F?&LB%8hP3Dp8dh>zK6bMgo!74 zLn-*tc$tHN*)=YZ%&U=!2_arGnJgzKM+CE+42~-Z52Wl>sVIv?6AHp7E3w*V+f4h6 zi`@qdWKw%A74x21+_E@DJxkg+C7hcly;SkLCL0_Wpp*MbxW*p zX<`!{b8moCb%0#0zMcRBNAFoD`~I1knTZK}p*hBk-TRv0nGm z!-_A~ky%cU&~lITHSi3g7$C|1!UDy}Adpd5NH2E#V% z>skJX3P<3uf`?c!wDA%2)!A>nJ2=n#lrbG(Vd)YM2)qo+?Y2ju#%FC)(|D1(?Qe!< zwuJpu3<}?S7wAPNMhR3;@;B_PVu1aqC#EJwk^tuoIgCR$z))t(kpdZyUfZcS!)~k| z@YJN^tJ7KUdhSQxIr8bn!*}6dd~)Ht7k1lD_dldNhi)9iz<1Nkvu-uJ)mkX9^_%{% zYbS3sZfv(l6`{v=$=f8KH$+kMiUY{jF3k)XflC5-g5EU$j)tG{eezq~h47uCcf!WQ zIc8Lfn$1mwsTqo;awD7VF&3=~rY<3mFIdxdaS2M^B2Cl#?V9hRoZ25~)p;*{J%mH& z=a6g@ZB^#wKE1jlDAH_{T~G366MfLlfaUKvIK|-8J~b$m{SwTI@BZTHo#;Qfp_6~A zXxX&WaM^Wk8zvqd9uf9fZU=en)Sgm}4J5TrX;}vm>clsD4g3xhGrVZ>@h$`Gb}g#1$)a4V2Ts%miY(@{cC; zZ+$a9A@MJ96<+-Ev()@Aog+5V2BAKM~T)Ol%!8i4zub=cSvT0U(1E5ff#k0 zEOr-C-KO1}>3BBeq^LfsKFyMvkA3Z znhd~R^hGiY84dHi@=?rImtK)_9_^o);5ga%ix+L@_Fw4~D%zG^13m**O4@;L?#1P$ z)zztDi~9pcUldU(o-{u?(_q&)8<|Ctg+x&z&(8{Dtzdu&tPu!7n;n8{m?KL1@9R)! zcw8_epcIWpFUdqk(yVO0j(Yb;k%4Omq!5%;jlf9l)E^MG0^zu}n45+jVm3fC4jqCwh!U;OB2wDI<21fw88;^gOchky5> zkDRP1@!uu%q{SJOSgK^3au~NqQGdt`p`q{1P{7RT%p6Sb0zv8BIx~~+ub-S_Pu(vy zJ`4DcJ>4&&_Maa0t7ZN%hYSZuEuH2(iC0JJhcuU;YR+a9Q$N3Czf@5&cl9}}RqQ`m zpY`#%`kYCA4n-YbRF?l-oGM~jN$z%sNc7L7+@8Wxsx(AK+puT+3Z#(+q;l~*dQzj5 zCt$r1u?q?O5lnNQN4^$*L;;w6hoagl1ejBOn*Z)Skvv+)NMjr73k=y+zb_0%A#Py{m@4~Ksx`~`v1&c3 z=M)NMdV2chno=BEZ3pnBF5wG-zyuk59k16M@yt9DR5EIS|M0@&R}g*rwQ8`AgF5}% zDaoqN(@cP|Yyz{f8PB^SOd+L)KJEBSCLt5~TEBrv2K)(NM~|L}-R?Nuf8uOL3^POD zR{d7m+8i<_aQ|mE@H2qDMx&%IDSqPTf!+Cylz>9asppq|<4oMyiF^o$!?m=uzNJw; zZ*z*GXQoyxt7rwdwhxm3O08X_J5_Ov#eXB(|8@WVM_~Q;Q)mLe{d$bWKdHyRqyE3g zl4HfL{*(tP4&E6a&jNTnjrOnS6~p|u2UJ6?U?7?4Pp{=2qpy@}aHEc~_}{WwK<|0Q z#j@dBrT;ja`9I;&97)44#T|Y3=Kq-vQq++pZx23tcf&(D3*T!_IY_;9b&3aMAL&m( zEs}Rb@159?G6L%U18D`N!7Ok~?xQGLMqqUf2;Cim~R&PsU1U)*nzDE-;M$`moR_dgV=RtXj>zJvMvSLC8dsP`8`&z%7ACSKl}N zFfOyz=s+AI_D<1urM@htPRYE9q21D?eNkke?5=i^tLUD579<26@NAxkN#u#{H@}x$ z2=Mj|FVA0pyIA}6p9BACwx-2Pyizx1OYb)`!0gX)z4KPFDklkPR)e42<1FmDveGXi z!?)%*@iM~4RYvwoAuKXQp==-}Lf9hgQU_0Z-;sf9vec1)s5S&0Nh^e8HFL78JEOAM zT-S8pOGUs}`0h*9(T`r8r%YOH#!V_F65yO>9w+M98A|lT1}@%FRT`yws3;^@eCH+C z^9PZ4p1P2K{I2JJ=P-vGkt*;sZ&mH;j)9qH({X3+20TC+mqTxcrgD0KQ_i78Y s%W?K=%FZbBU#%FqxB?tH4;|4wrTP}0?TicrmJU)=(Nsp>d-mc#0DM%-@e6y~HPQ zX|G@5FX`T6@86-`e}Ex?JanffLptTnknTEq*+X1Byj{TVfb++%2r%>$`?@;V!w=%( z{D(K7;B==FLuLI-g*e*nhw^#5fE)p`^wY-~{~X`{=ONh18)gS_1Xy|O?T4TI>*Ow8 z_HK5JPza#>^T$|*d~9DfwS&03xH|(rbIyb^H0Gb}p%8mVz}nt(@3_Xf~9 z6YCh-(fzPTF5YgAfDhCj5rz=}t-HTJ@=aeD1r>1h2emHmrG%1!_Ql*ho%TibhqEjFZN93sY^ImQtoKfVl!>D8s?0fi!kek8QX)aNfcC<$&j|YD7Y?Xr_9dw z_6R_H@yCxJi;E@au5rA96w}877Ll;Alz=3u_urrRLtq#)GqcK-vBvXPj{!KA8m!ok zj@HElI(0cbIP}!BV!W&?GE9C>8emJ&R03?qc>{h3%mHRKdJc8R<}hXPYBAqdL$E%D z3vxg0W#v)voqLzWVIL)hw+Vj9b%o`?i=CAfNaGQ9d)gu~)2cRjZ}+U4wVcA75qIB; zCzgulszFvIm&@SE=f)8qBe%Zc!<<;hlFzo|Hp z%)pi1twnGF8Qt96O#eg=$}1kJ3*HMD+p1**yOdzjr9IhK)k;Rxo5(;H)}t6>S)pmf5>7T20Rb2d%0u1`!_; zH)qCb0;U&|$)g1`-P!8(G2F^`Id+ud$0p@jLN!pY!tqQx&m{uCpX^du?F^!i;sfz* z#pmO`+3Vd!SIu8j3|wE@2;O`Qo9I9ALLHwO_M>_T^lseAXLSnU)=|mAYS~jXJ(b#K z#}?&otJ?ha{VPiYP`!KGu9c-a_ANmwaVWadn1v9%<8uca1rMlRm*Q4HKa2hH*^qQ; z0BkCfCf4iJb}@qP8eeq?Mhv3M62LtZ6Hh8!ZV_(QRa7WEc{mz)G6&V?CJK9R0v|}U zD)VjoocM4}f%Gc%4vh@7EqhA|9lMwUA6>Ihc%;D;YEtY(b-z(|{)F&KKUJG{tGGe> zt@xPhxbTk2tg%90nJBDCZYDl+dy1sCw-F2f@%AfB^;UnpIDG?YC4v!zvN#6DPUobG z4S}hyJFIEaBf_Q+sDmp36)mcAHXkl`9C%UO;0jyg#Ear7ks4Opk_kg7^ONzIPoDx8 zFnGPT-4M};YvA+<)Jku8yDBaV5nn$g_(bXAshnXeE6yhr&W`i?DkVTX zT5B!C|2Y5JZ}%L>gpw?c9=?3OHZ!jURsB656MrqM(%QnbOaW3}MHrdE( z9#;i*S&IV5W%Zp9^amFP59Bd_-`v_6MZMhK_E$O)`h5B?aH^pc{YJGAb;Z5b>)KPR8z3ja9=I z!;HT+1-v@csqk}Tz6R@vc=mb-xgY)4;hRZc>5$N`ItpNykT`}4{=y58JB+hFGz;^; zQ(oFLi)UrJ9iQC$Z$llhvtJ9=f<~6Uz12u7u$NmPRC@IY0c5ggna-J7dfu~#c4jd# zv+7hGwl!HYEY?b;G^Jb?a$?q!*E-+Hf!4EqzZ7v8u!9mDU57^we=1C*c~t{aS=$f1 z5Pe*B2fyvEQhY_{TRM8HkzxfE(xl_Hj$%zp$&{|#RkFzESCa4WbMKeRp`67*TePXK z)6>%ki)r)_SW)u1>w_xF&D>6exj7a0#UHjd<2b5@Am_N7kd;PkQN4Xw_2}{zH~yKY z8U6@yd0^?>Yb(T`DqfvdWm(e&eJc|MSBIc0V~?Ki@EcboGV2^#{HDRn4dZRIuU$t4 zQ=3ae3SCutxv=DAV?>YgyM^5n)hpFb5I^wFn3X;1OfuxO>W|m-lGvbv6db~ICv>=5 zC@K#-H&yTG z?@^3-P}|c^VA0G&cvoupx(8m6xLVd$EJhC)wH=Rg8$`!*3z>G%6rN12@kha;0SUTu zTXQW}=%1hkK~R={dx+A21m2%4XgV&H+_XFKJ4!mWQRh=H1Q&^E$xChPFdHO2t7~rYS08vS>R&JQiUm3Wcc)#YAB27Sdtf?Siwl(t(N63K}2km8-EAhD*ySQ+Z z>lZ}$k$SmhV(Cz1!Q$Sny)g@_?B0`ZL~E8o>+4sN^uF=|cuZ z;W?`_@_S#^cFB23@Z#NpG+c|RP0(6vFbTGhD8s{;V$$5JmS6Jje7WbD+v`#Ui<0u} z^VCx^45SV@6IYot-Lq5x^RjW?dW6jFU2rg|l2Kq1Y4|frK9_O$W!yf-o2Y1-K^+|Qy^WQ zjB<{adhg!@vUG%ZW2fSwO}WsO(695VD)V38x+wSu$m)DTWXur^EM$M(=k+P$ym`26-EePE$h( zR)T6f52=;W7ZyLX>u<3XX6I}*lfiD7kwO#l<(3@%123lX2HGCx>ZQ9PmHJmcNiL}{ zmLM5Y12Q3CF}guU@sdy=+n`=8$$x;g7Ag z$6Qj5N@A?t**@^)-8oa^diCx_G$PjA(^v@B_j%yND;uYB`iP+r9d%1r(2A?IYqu-7 zT$y`v174Ab!H&6?D;xI3D1En_^~*S{Cm41w%Cn?IFG|8Fpl2;(XJ~I#!^LYHku6tL z!YE4}xa0_B-NN|vs+cVgj>kGF)$M&Y-(6%*8cI*6YAOL2@{4%p3ScG{z`_9(Z|8>H z>_+z4NzN{M;91Ywu#-`d(NY8EY+<~8!L(HW_C)p{$$1A}q~GqhZaFIJ0gGm5##|Tm z9SJ?UuJ^%L6&)TW2|x0)lq8h-t)9Ouw~- z1-U>Y4%(tbE|AS&Th9(_YGFTbK~@B++6W?w=hM-!8Z1l(qq1>IuTaKqYbW*EW5hLy z5lCq=q2$lJPZfD^d;;R+Ltx_KO*%S6w&SA-JlRoh5oU^!a?-!>%HNvB!Xf28YT?r8 z{$&@|@G(3aXmDghDtw?iLDH_&02*?v#QA{=z$lU%D|?}UE%CqoQ`^?D+GrR zX)C>s|lM z-=PL-znO2L?p!1vJT;&YgU91XfI!BB88*-FcikZpcQn%vXE=xOVN0AD24V&jm(x!+ zrgm8$>MWRn4-K0EClz9XSH3d~WJp<`VMOi>HsQ>igUIO$B*9bb{UA}(jzHJ@!j1y2 zqPpo`C76it)Vaj<|E+?GcuzDvm|dNFJFFOTEJ++$$Ua;LabW`bqWq{S43&Sc(kTr?H z8o-UhmK=xNi`I_|@^_@J`o3K>5L!;X>OZejm5`7ipb@i8Fs_a!g-h|@7rf*-@r3jw ze0XnbBGM*ks%;f}Lku|xoxy_cNAVuEJHyV%NRrA(bt&2MjNUi}Gu6C~mS*k|Wge-B zH8KK}HCB_+)$^`o#wr?bS!ug{TZf(>W$!sq`K40RQm{5?n^S+Ga<*dep0YUMBD2Na zrqkPe#~Leb#ZNWxC7%r8JJvu|i`T4T$)&UIvJAsFq#=7pwNWyZUa&V?`Yyf=R9-t$5d&ShPl}*jA2=QR;`i|Y>oe6clF$yt~c!M?bNmVv#Z0q#| z%fWD!v&*Vo;asXK^LgcCN{bDVA*jV%PV$wh&0w6oNAu0wpx81yM}=5?f@`69JL9GEfPyCE2ICKgb2@-YeX-szN;7sA$h` z-m9) z%sjp(cc*@Q!i9eU)xm2Ap=!s(EeA0JF>gfAO+eXG4!k%EOj7Bh{}wF%!^TYM$1t$y zYuDF+?6u$aLL$Xu-uPgoEoU$d6vSBzT#dhRH&o(_|H+f7h528Wulkj*iL zZ#?^9$~F{Km(@y0h{W^ymIWf4Wo_U0-O4R{GIBa_O-KasNe@OA8;Jr%R>X^#OiY41 zySl)`AKU0PR9NCV?xmfAeEHn=Y8SD@e#_owD^l5-`M`@|?#%TjMN;}hdl10M%wwV{ zylNPNyBwYlB5rb$BAXc1z-`eL3H5@Xu`bHOW$Tjf$QVcWn!~YqF>9)!^SNMH+Ax`f3Yf8SThR8sz2875}X% zNBp)qSL?zWl(U(QxW3*z6UuD8F4QGsfpuftke7`bZI~E5_n;iUUXHHaoc~5X^ppn( zDh7?n#R&+={b-4_;0x51Jb2 z5U(ys)CTb7XXI4RBJ2E#>U-x}OEjq#>gM{}q}~7;rE>0l+RV(%UBQUScS)yJX)z12 zdn0vw%e{=NADRjTuZ zbGW?@<%Ro()G#H7rGaZJH}phOy!lJP#M-t?fGn-Z$jI|^NoA%#snqHzV(RhR$}$sTb?Q|?6?_fQra-bdrU6ksA+laTP1@rn$?2GP#M#p3shIrrjn^ZxEelg^ z@uzRCk4MXot=FH17nd)QZT2?pV^w|VqcHGj6*L5+NP2&L4w6~06N9E$`V^*w{g7(_`Lj5RRlVn+DJA&Aff!%0U#%3XEFZ8k*8h zyZ&Q;eA)?dJ>9z~diH$hDAqy45!EgxTrQ_m=su`x+}UNa zgUrTq_{8_g=B>O%%XL13Ub@ldWRMbb!bI<4Jh%CL>?4h7`o$Jklr*|Sfh4|8VN@)? z-{)iAYQ$Q5HeWQhkmcupK32D~)Ob2}vRX%BC`DI=%Goe6F)K1#Z#;) zIqJhbi=Y(m<52VUk$$bDr)`r;|5RbSU%z}Y)j+6|e@*c0?}yZ|#HhdI7m*gXj=O#S z(xpp@iHVz|omQn+PI0llKkTKXlaczgTPk9u>NMe1a)5Mh_ow2h=)6^u3*>Ah+-h zX!`7H)$Hr+wmy2H!*SlpDvowZsmKJPN8`dXmJ44$@juHeHWYVb%iplqm}cxM*6;5j z%DteN^wwRka>=;q_H|U3V~aONkvsLZ(m6;bfz#6|Nf|928U#U7OgMoeIj7dNAJ_{B z&2_(q&&hcpugX&@N=>O9ZnB^g5t%qohWDw7{*Ag!40eyX>IWa*{uuKYU`=Or34{v$ zxH2b6j;Kqpcz2mgS}QbjmR=?uadEpP!bC>F;ky#|Q?uLuzUTLIs3PHNqZtxBDQ^3Z jy+u)ejssx(X_wcp{^7*>XC4BhGXSl7jQy}XwjuuoDd*Wt literal 0 HcmV?d00001 diff --git a/windows/device-security/security-policy-settings/images/uac-notify-me-only-when-apps-try-to-make-changes-to-my-pc.png b/windows/device-security/security-policy-settings/images/uac-notify-me-only-when-apps-try-to-make-changes-to-my-pc.png new file mode 100644 index 0000000000000000000000000000000000000000..2efa6877c8492eaa680fe50f72c5f1e83e51f3b2 GIT binary patch literal 67709 zcmdSB^;etE^S~QuaW77>;>F#ixVua7;O-8^o#Mrd7k76kt|7Qfafjk|)6e_z{pJ1z z_cg z?F;~*{{HuZN~S~o2ob`$NXv`EZ6d${pwY+!CH4L%64!DOc6G6^cLJ1Dj!8j8$Sx3( z7|_|o$H~jqyUHsQ;5X0ge7OC3Ug11p+v3 z(GVb?ApHA8)!xj--N*?D`0DWbuQ}5HI=6H-u`z-)bpkYX*T+G`@c+b`MoxB?cIJTY zkGo+I8Qg#0cXcuW041TzalTsUQniRzu@-ehDB|~#l^2+Hi5mLrzK<7edRyK@pyta-@yZzT^%BC>yj4WY) zS=&YdOtmH8m9fO(Nf80>paOw`ENN{7eV}=T!^mTVpNq)|pMpt)1-+Qyzs0TdiGU_N~b*T724#diUE!Uxa~vxiuuQ<2D&R%fuwzYEBtd5@V6#L||)3W14P zs(E7ps1C#rr2^E_gW2W5>^)j3*pWr(B9Z0H^r}*DCehe(Y^l>w&;bEOmSUgs48@f# z(uLV!{`84ABfQ6ip8xejyvAtiCM*W`*WxrsN!lFZq zP)O%lL>8qjieW`#iyK>{ROC+h=wZMgdu;i z#B(jv(F0kE@OLF-zG1__=iigq#RcDQXA@ndOXHC?epM31VQs3U0vz zOz6X*dz!1aBlDzc$5`m|J_lYDj+knp3}U0^kp8iZgpSO!j1);CMT{(0g0G<;bSf{0 zj620X?zF;j<7mf#AqNO(?K!=u69-_4!va!_hKrAq1bLrZ_KsaA4W!>o-%V+|_GzJ1 zr<3Fpzr3-CdnAYXq9sqCZ6;!=UB>0(U9)NnuvE}vNJ7e0T;Rb3d>Ov1kXyFxh@=O(CC3oS8mmMY}eNXe=lyfIe zCRZtOW+go{QQ?z(v)+$IQ=#VralsJ{VgS5mC4>) zC?Gm7GXs9|gorwGWvccbovhE2fHDPI8(VfhVB%5qAeGX!c<06 zk(_|lz}F9ADS`amuPezwbZChrJ!D&G#9#M}gYvd7A-1?M`=YO}&CmuWl2ektPv;LL zL@D;o%>Ke0o+m=9hT}f5cGW09S^(?(a-DsbJDu#}hRs{ioeW-FmCBRQ~^gp_upK?`7)M#f@v*3Sz zk0Z`0RijOoDSV)?vw(&H6l{SmK$~jB{4aSUDzEYihX0x-AJT1l86_KvZ?v^doC+?u zJ#76-Y_xEhePa>zDA13jd#YFCleTPWg3rp!>*}vgN8B#|n6Nh_cBSI*H(NlmG z8f6+~9pXG>!7jY3VX3NEuBvH%Hd@$s$JrefO!e7F&XkU;37Kufw$$U-L}i4cl{;c7c6 zP8!__4GneS{p#v^%}+IY)lLd8ksog)=y6-$)PxJLva+gdiwpkl!OsXEIDgc!h#RgB zxm_m30rdDc7P9=rui%`Q84!qtYse@XMtGs#5}c?g=t;+Va(Ku)3#xHFnoHQ)S`7L2 zWn-LceWlt+)Y7G6m0j3o6q-;0yctg76X*U`Z+DFo) zF&XEk!{cM0i+nm-;fap&S{AD+DXMz`>3MHxMpD`nJsPX?_ZZq>=#4kAH$~TA{`wagRw+y*i5RBIh(~D`TO^8 zu4ov#OjA1U8w-&#jS4Hvf0uTRasNm%9m_x%Dp3OPUc=O?Zqduz`}Iob)wwYr^*xpU zMU+8oY;5}YZidX^wmCGpAx|tzb3jeNuK-dyR^b3)9N{D_6f7R?MB#V)kyy~*x=U1x zFYoyQV)-CUY6UT}_zYU~fxE5#C|_S+2-%eu=a7Qk)uEvwl9%%^B^vfN3WAu<=bPp2 z?QMg{rFo5VEf5%ti5gawp}?5B4Eg1Yb>>waOLup7kd7f*ziFbWIX}wO)$Vz&c)Rrk!W_+2 zfGyZ1V+ncOPxWkVPXumP$RoGzul9Teb0+sb;^BPUnIa zeJ6m#mjA_C-QRExe3a3H;YfTO7Hfe3hljrhePL++uaD~nHO3(n((zIS4k1pvV`#p-(bt>E}ETpjddzl|@mhFYyPgg$Lw>zG$@MQ1N(a{056(~MnV`EF?U#z;X z%NK*)R~#kP)srRiK?g2%!pdc{Rt-8C9tX09!=!s<_`R)P@~=FVJvZFcKQ5Kvs6qG#L+#j zHe+o|+BX)^!BctSQQ5vXVO1{&4gUA@uc?ORn+s=tdubx;-l~F}Lmlz5=cV*6b9Re{j7$?r1|OJ5V`5?gvZz;@k)slYcWluEbk~+o?!5~D7b|u>p0*8}I-$4{ zNxZQzH5Ee-_C9Sff4n&vj3cqPvzyp);-9?YM+0m+a1+GD#>I6(teEwDrSEwUoVS

        ;F*tJsg}YH_0YI>~4`1g$iDB>*{GQ@LL`YWa+2LNuUQi zaP#x<@UXLE#Yp7%Tn-z&KFlAuwAROVcTi;*yC&@u2j zD1>yi0Q1jNvcrFZ+?^tsZ3VfulGXcN=Zwzl@#wd;BU`I7@HC{#4)~3 zYnxkgQqt4ipwOHJdynBcWc5^3RlP!d%H6<6`{R|Cy4+mhgn~tDh*bk>$4cZQ;n3f$ z-FDuN8oboj)m^Q5pPihYy$&n-)jDkUTF*?x67k`M-Z%L_Hi?Fzc065<%BC`6zyD_R zTUlE>x9B-nRilfHrZ6N@SWadO@MfW!w3`f~#%>P`4rXLz%$I9pB8K=~CgynX zXZr|tK{Nnjy9HmLu1eGpO$ejKmacA_%fYnb6zRWUgceI2+b`JAPOC#)bT+U|!UCqr?ia7MkMY*|W*?gUDkA(% zL!(!Re$%pVU4)N~R^jK;5=*1Oh(bOEMZbB5k6BW%!SJw=P?TlT+1e+H71}Lw=FMB$ zmGq+_B>n(EdXZ+&SBYK2(%B%%@NL(I`6QSmh zcMOqRHWrX^%*=|;k%)=o_8OP%oVf|{wtK5~uxfuWcpBX}(O{MS`t_aSGa+i59;0^3 zwU>anGHj4=%8rj<75G4-O8=|2w&&Jw1i()knUoz7X}|`=5*xI-9HgiCyxJH?4esrZI@nz z9}2M=c1`w6^}}bkxGIT2d=r}now`LEc7lpuzp9r{6a}tl&iroMY?mATyJ&*nSolI5 zh9=2isamPxyHE9QCrb_1^L}PLI0GgmsAcq{6DLx8{~~~@>_-l9<=2z0XHh|>e=*Ht zKa>CcF`B7WwJUnR;QVR^iQjhNR7RMhK&`SVKIERdJ>_@*5RCTQ+po@4TMVmb zcy#FJgPPsX^y3D>>+5INUPP#p6dw>^gZL+@6Qy$|=NA_Cuf4u9rb0qSiq9G2h=Bk= z@b@4%wAkqAr+rBw+TTKsELtH&XX+o%r(&UQJ zS0Ov?_usag6A}`x_9itoG>X8M!sw8=c=<#yrz$_+#Ly4`fGi%!oCxOR*rI^JV8}34 z6&2#}*nUx^kRHp+$99|?3HMxhuf3jog5WgEwUjk9=2llv9JnFTb*=!mz7egS+&TZ5 z1GkUh`o;EOK4>4}gXgOZs%S>0rj$4{o}<_0A(2<9XAiR+SvOn>u!h1U(l$*@r}iGnSsFLah+e+>p)^& z*E5$t$;M(KvFS!7@f>Mzqz`dNzx&;>oQ;!68PGj?J~k%Wmf8LFPtEe_a(gmZ?>V%5 za2sUR(B^hx1yR)Zn-_y5_7)c0kO2AHJGj%9y==$~q$VftT;02`c|tNd=8)u&PDSJS z&*pQ#>AO2_apiw51rl7)($S5Mjv{?KtQjOeIz3%$ai;!MP*_+9S=6ScrjXnbmN>-k z&d$%Hp`xBHHH;p(2tNM>b7oYOmmklRsOBpDTkH)D4V09Wc{Fo#a}ZDL!GG%31~L4` z4LT4{FAa84RmB8YG%Ot+9y)M8L9DTOK4@8QA%o|Qg?(2?>%Ys(%xo93-4KI^EG1QO zaq&%ug|plF`T1g%&nZC7O1;H}1&_-=!v_Zk2?-y%)(tc@%^P$&^v|*dyj$Da&RUNu z`A(b3Q%6DU9TuRxUUr%+1#0+Sh?QbvX0C?B$dKr<+m!WWp(Y=)F=%dv*wcR4pxlOr z*%LSW#oC?U5ttBdb9HsquWEv*bn58r%*@^MORt9)#1GgtJ#O>_d3CHAGAE^`rlzEH zp7$at6kny8XS3iT=M-iA+pn6VePU;01JBQMF*8psFE7u}yKnY}K(uwxxMsFYvr4OG zOT%;t64N7wbX{e2LD6zs5RUBN!X1YCmwGAh;fx_q zFEp;>y#?QFi~D2La7mr{mS5EH{c}}C*HP!A*6E>rK20|sZqX_vh%5#p03gumUyTUUMPk* z20$xCp5jAD+Aw5eR90H*wVP(12eL3){%8sJFT4#Af#39m>{ARlo_`qOMfI~jPTBfh z@GHWDj;=KsCe7;D<<~cw=q~`TD+Han)rf$gJ`+Co(-HHn49-e}Mq>`~)dZvFL$eT( zT&^__6B`@36d)uxhir@o1_mbEl>UvOt_EMm^?<}Vn+#m{+_j{a-5u={p2dY4bR>=| zW)`*D9*BYLRC3%S{+FLPk?5lZ;Gt;7#j5ANf4}hmlSaOu(B+u#+mZey zd2$G@JaISJ#7#p|nT5lREKq_jOO7qXm|M&HiLh^#mKM04=-Edw272a5+m#>)r zU>b-&5F-upDb$EVU43|x@*s2jM6Wr+Ei2EC4y<=SybIS-*z{c0c&9XX*)S{F&X6_rY_wg&Q%fomNjmbn-|1ceE;J z!!PUYJX81sIfCofsc@KpKySsHXYg5@qTC38dy22|q@nZcYQ%8FP+3*xOI*h{{EJo? zoQa(M$NL*ll;h5lHfj#>)A+}CL~J>`=!v5oo>{XZ@4gA0bb9#6ykL0_VQlHXu^5LF z!NQkCd>M&-K^l~O89D7bytB4LseM+$gPf>TB1+ojCCGbTe|Q{`<@Li zXO(o!{1Q|iytiF#DiZ&Ud&Pkig~NMrR3Uq*{VCz+o$dn0XVoAub?;axwmz3+@+_`z zV)Dl<f5DR}qD9iX?uYbWu68(Bjx} z=8qa4tLfI|p;*Gv)FGKpt4p2zSe+f@cx+2&dKN7jo?Y#=i9G^+9tW)cg$GxRk%x2# zW#}5xzx@BsSE0bRQwsU!nSD!!)!t--uC2SLU`=y{rI(X0Fn3CtG`akG3Id9DzoU6$ z@r?w<6cc*?WPqS5r6W^~ERz5QDHweBOcmG3JVzaGXvIoPOStF!vBQi2il$|yKZ0Iy zAweZk*S{r)GI(+q99)afP7kA%kl5a9#X}zUC4ReIWCx)P+-j+zP~dGY76MAa{TO{* z`29OFb*Mh zyXlR^mSkyscK((s=xV!#f-^80zsd1rzzW7f015CD{%OjC>NA_TI91pEwBzuAYTu^_ zV8l?h8{4R|=5N_gqj8Em31lqV$UA;nu;_g(ZglyHm*ge~V%awja)MWdtRpSQQ>KiR zs+_4M)5FRDGNxUMJPrpP0u1rtKfqpQ8%9@$*Z#eS1!UthZHpT%EiZ-a5-l%^AA{^i zP6r5sycN7z324zfeV#=__AVI~03}mPFILPEnR*FL4V!u^^prpCax{nu@iS_nPM&i8 zb*Ueqg$Rczv6g`I>8@D)%n~Re0H+JJR~KSS*W^Mf%y)qAlYbUczSPeMPW?oP)m zD{)QUzp+S~n);iw*2-)_x4BS?y#pH+`hj&ZcUTV<%o$fQHsR+mK_|mXCxdJaW@85c zFs_WFsX3!GL^sdnocL)$ytXy#e`d&(960GlkgaDx?9kHas$_WAgm5zHgIFpFEP{+I zl;W_Xnah`2V`vJdY-ASlttwS(Ltg}w@zZxbMcVjxSwFt}^1D4#JwW|;nuDOM^~h)p z4!xorg(%O+HVe+Ob~kro;^)v5Pd~EXqtTVMzb&@D;1tqVReQx`iw8J{rkbXMB76ox zF9w8(XQ^qDILjkhgyIDe5i@d;3j#$>siCk5dq50KvPdw7v^7UkbMxe*iqv)C0udigvt_a60a_X<#e!EMZPhVimSSvL#W^&%&K;-Ma*Gy%hjS~ z>+HpiU@hab$9HY5;52^qy7J?iHW_QguROh&tD;?Jl)7A8<(E@ENaRA^)Xf{6;_KRW z(s8ga4)ppfN?Tx1TFrT?c_>bpdH61)TWp=gP&o9rdYl*QV2 z+f}YqSn2Y?TYJ!^J(q{(Bs8?0SO=dl;7NEn7r~Q*(p{4C=YMpp4|_N4(O{^--C&!O z>C3Lpd{Jfs<~J6jHSD-azA#W zKTRUIKzy8LX5cqzxS*me-P=YrmC`_|b~clX1j@FV*kJcPQyAUoHeJ&BTX9Y7OzU|* zw86KhGK@@XP4h6YJ0i}>J0tXR>5Z${k5|Wgi#8xdVce#I`9F;n9;&(6@-{oCZyB+E@ z0uC1~;h^O+7GdhVv7k`(UV@fRwI@d<;m2-A|EcdA2d;J1)wOAr^{r-QFRN3#rsq2CGgV%w?_m3+D8D$)<%+V4KZ`wn}D1$6u73z)38@U4AJ0 z+E}w2vAi0z`fALl{{hn+vV|5&-J}bO+@)h?s zMke6fWoxIS!L_e?t1JiAd6=%ZBF)6vnx;NbjP%0R+Y1e`viR(pt*>wLEDKMH9F_$b zMfZA`y+upu>~d8wV*JM9%y8kW&ns^ek#M#DQwUVMr|LCX($dS?7m~RBate#%b)V+i zMeljazWK|XWR;;>^RJGE^RbI=5Bp8m>8Kp{rA>e#2ldLFCEQ+9QL zY{rqFnZ`QZdQ9g%ARGg3V;$S;ZNZHez)CQU) z*}y~T;2aNxOH)i?+Zr^Fb8N}aQ4R_cYsYa|4BRm~hcbF9AQJ;Qhz{Irg z5F+;^ER$s#=icI$88Z#58%sxVjjL*)_GWx}DpW3MJ3#FWukT2$~;HGEsn6?~I|^F3VU<&R6OeJ=CAV~yI)N<>?@pC*}*&kGCV)-~5mlVgcUKBmOb z;c7XMVfqs`TJ5PgdZbc+}D*+VnGp_J1lDcAlQ*gE-M5_lzW)GnS{Md83mA{}+Jl-HJF z`!q9?ZB$Y;VVjArLrh$( z7t6LCU+cF)-lMuQ*KQqi&}jma5|Rz4VVucxYzMco6BI?w8Yp z@W!#_Zqt`L3EC}y$H05On`3}N|}cHms_bhtt`;o@WKvpqbM+>7ue*mm2ewc2Wd4BRl)ySr^mA zQ<($db+7S7%yBXCHkpHbB9{*0l|~U{`t2Qf8`aj8 z&3_yc39(Z!SX9@M_q|>kuLoD$9XyW8ge*jLo$%7)oi=w^W$E&)5##+i{y5UC$~W;; z^-g(xt5kCSan;!6b~rqDcI4$C7dD3`!HI+fQAO!)$iFni?G8!B zNF+VYPovN2-Rf}*6fo>|%b^X}w+szmPz+qiA$3>(>4mc+ySE(`2Y>n+coerv=jrcP zagFy;4EqeB(SyCpdh5jWO zM4f=sr93!0I&F0^O{s%QO~{t1fJ30AnD47C=7Yp^Jf09w`Z2QUC{IyytHta@{G}>-!pn%d^M7Z{n4_8m0}?7U2}lZ(tU<#Y zyzb&g?0JSGhFU8swXPjiYhV7x--XPLeIaGcNh1KazPxNcEU#eEvziU$on@vWRFxR0 zS%03eO6B5t)?ocTDKG*){7&I=y#t|74=URU=(13iy`8HNcxnZO%;9trf2$r*bpilD`b?zoO)moB6vgnue4m#t+i){} zX1c_uGN$T8B7z0Wg;don{_)H9ky*@wPZ6fW++tI-Rq?*it7n|8@ ziMU%CM=cu;H2aq?4kdO@{`Mr>Ps?zJoDb;q%lI$U2Mrx%_I?!=>@# zGaxMKp^3{(;TpFBTz&dsKGGHV@goBdW1IPz+Q?peUBAh=^K<@%Nv>Y(JPYhdRA)>GE>HO_S|Wv`*`TJ*>6Mjg|Gt_EJWX{30>2+@ePfX;=3N!d@i0j2 z@YeCrQMVWj)qU%rs+@PQX@e0EgiQxw|3xU_(K?+r@T49Dz8i!LxTuq zD6B*gl9J4mX5{Cff|a?Jo-m45k0A~k+GbDUy9NLV&B2aR13tX&wYGmx>NeX~Eo4T5 zm9U`G&@;sCF9|pRUqEJc8o0{S7c=maEvY&k^nd{U!Nq9ypd?crDY5~{q_hYReWTP> zjm7B=z3qA$@OvF$ySF7t(QxGLYs~$)PNfT<9185wFvz7V->*LWsz#Ib z!5LQOj1!Ab3-E>TsH~B%-HQ!E-DdU>8&MXIMb0&%VL=26P%-O?V!{2XP%Mzf@P`P` z=TKoR=s;<~D)>BlBj|e{ni6y(YO}g`mdN^(DakLqv|5HN@}%fKjm&cr%Nv z2!;myv)1AR(8%I;$YbcA_VE5*2l-F6BFrtuWK2C`8sX6Jcv)i}GUtbO8(}W%npavj?tcU=4tcW32 zD25|u(IPHRya7Qpm~O@2Fv8XxM2hEOQk_W`T!XLur8prIR9veg)M@ndLhi&qdaY5a(Mlv-gL8z9)^-a-S` z@UrDeidoX9K#5iwHh6dC=qGm^(Z%XTu5?LmAPnHUsrIM$CgKACc0+o)?pie~}qbU>bA%lRedr`l*rIhu}vo~@cRJ;ZJV^cd5DJ`t2DFQOyX zBfGYa)5VlUSppHj>g!bP^=PqyN5@f!P_{c?ihbps;XpbWCIUHheP0pFIp|wYw2E0i zR6@^j!S5N~1+?r?=1^?;iHRVPiLEKWy^W4p9YOr?m)iV`TvEmxrJv#7!hKX!|1bCZ z9jv3rYevr`FAftAAmzs&3s!;n7-+fbUxqu8bCMq`2om|79l06itat$3S|*0|x3s#IqP)ADva65ew8k&(_JbdZigevE57Qoioz1l2b%PIvgC6C6H2L_5Zn8YchPA zw|!UT@vFhF^yv4WA0W3ur}YotGA$s7>K%SZtNM%|7T2gfb!l<6>iFU&XrgP@f;AC6 z-t@w%w29>;Auv+*v@~bo=A~b#O*#kxCdgPjt)s+>vzM%FbZazZjhIuQGY@19W}**y z?VzKXV}Jf#@s4s-7LjR7wu!SQVLTFFrtW8p$H7Y--}ZNO zt>USlzYEk(__g9O5^Gr#R)tNG1Ru2b?cYwzQkvW(C9RSY$C*^UPJ4-PiV>cO4cXb^ z0=9%-Y?TJ5d>&>S4epO1Uh3@ZMK1A?6wgw^bc{q)vI}x^k=ZB))`9jfrjTm#> z?U3`0#qYameW`=?-WCCOCU!yh+Sfv3tHM--NqEYg*u#*{0nt@&_nXuNV-u?8XE}bG zMwYsG)K3*Djz1h}vyNK7FL?8_f2aW?i(?WJXD)d<)GP08Q5U&Ki)^pH%#O16fVb`2 z*I(0v*ztEvB+bZ(=gDJIBK1P$<4%@@^h8!R>rC3b*^USh07vyl`xZ|Ni-sjVUyXsE z-v_wR={`xe!mh0@+OO>Au?B{7Q0d2Gk?DKwg~11AVq!<;A8Tv?9bHIWHpMoMnGF;n zPk=-@ed>e`pdUHN4E)t`M+l-mVTzCDd_*$#7VI({VH)4o{7HKZfQEx663Pm{de=~1_dbYo+N*^zJA+U zQJOMLB1kxqa%X4F?B`Gi$vmE1x`yie7I)dK_S&l-K=n)m#o@dq^u6uBcaAg0DV(K| zip%;UMaeIe`0xB)SPpafNZ7k<+e5q-WPwPLiJR2!q8={Nul~|jM!nAGalrvs38rCF z-fC*Iql?H~0BaUh{0cZeO>}ITZY$Rbn~?gfAOA--CUR0%B$pDCK7uulCD#HaevmQx zjQenoaf3Hb{;y^E`d8Dk+5r5BFx|(Gw&G6fzjG@KK#>-)tbEa-avP?Pzdw}OLlkg1 zhgyHNq9&Il_f0R>r)?(2{@^8g%9F$WIQOLgdX;6Ke2DpYsi+MNn6t65tG5cC*-Ql6 z?upt8fa2TD7DbA4l6&!KDjhVJExVnVf276~Vav9UH)xm$I#&B0N|{?oSo{C|*1AmB zAd%5BF{pqdcWQ%_jX#OYQ2BD|+n;RnvXBcpk)(=q85ED(y9lGz^$CsqkVuGnYM;aF zB#1+nJ^*VTe-QK;gIyk|x(ILH>8@&-oK_@EjI>=^xZ}=+@2VwD;Q=zVDzE0@keax_ zWI3*Kt}1bw;Xc@0t644XD-N4Z8m*~c`hDI4ziU-WNJ&LN;mAsJ_;i!(O0wb%{>ULm z>-b>9J)&)wHKV}v#zI%UbwrZ4jrz7>(q&>p{OBlqZQoVj&lQe&*z8iPxW=&L=DoVyOZHXHIMPlvj+kpq+k|)YmMcuYp}gkA{oqV!4b@W2R_(7=siXb;EKgh}p{j1QnE;w= zEFu4@yte7L)w2{#{8#Rc#Wf{Chqn1A4=E+eQtvv6q7@R{Jbvr zN$sl-qoNq1(pRoI!zn0a0^Brd*RLf&6|=~eCe`$%aCSTfsY?E zT?OsTJW3mUAH@7+YPB>NnI*%D*H#4F_Vp}iMpy5@Jf}$1`MIgEm(|pH9QV$o0V-{1 zJH1O{#K`$#VHEVjW%bv=XtU+#b(&)=Q~Sd%7JCPOx0bDlEtpvYZ1i<2kQnuUEG**i zlc*hP%=>!h4_25Ha$e>l{@>X$gAl%;50wXJXynsCy3F1oZyTmGrV&X0*rud84=J~y zbxDRTG5UmuWpNG@g=N6CY=o1Z^&+unmAWYQnrb0otC-}M&ap8oXe?=rbGD`IgnnX= zdb>7%rXf#G@v{s!Rlw}hR{mgEU?QtI`W@JuiqB)aPxp{m&v3(qHw+fdRi1Evl1f-r z)u^P*kuw?p1cw1tJT@oF45g88E=8?w5wn;YH52tZm{Kv>+bEt2bF}~SY67fegmhL} zLAqkdXW9KP{&@_guWMu@z`KMdX8H)#PlD7Kf!_yyT`#lKE7y94%vJNkLiMy{(nABM z*yy3@5feWN(tYbOqiLLQbDu+)e$xw4imV|8Y6?T`rcuKkbo9*VJu-al-XR-~yYkdf zMb=3;vio)sdWmd8!iuIIIIJ)q6F_8myWKpR2WEX{8 z_Go2MsPAg@m~tb*KpVFpQN?dG=D=P{Jd_x~wv9rHPZ}%Z5&zVr@r$G2VT!TgdLnzo!Q z%Oi-60YA!9K?u{$%#I|ZPZdepubS6gZI{~PXbD)Xa0{g4w)W{hkS zD9_abqliX877B7mh*X3XBYo6Z?aWFs?7{itdw@w6YEVc|dpJHyejx^W!nibR-nbXR z@U#neYJz34e10Jmo{nOoo<3A4$QcWo?3|S;Xsz1;@{41|uJTfb^$4Hln?#UKbsr4o zbS(q)SlNhDO(ScTuI7&o$rWTWc8CWd&XS>GXD@bWYw+_nu|Wl zio7AG02|6;Rpk@WtTfCogn{us8rdvset-pFoPs9y9)qS0tko=*2=kd7BPL~*C7g!4 zZ?u~ga-0jlc~#rX+-h?ONtxQ#pB;=B>dW--+D54M>92vcC_WBPmr%+(7Vj8@oo+8?72_vE1q(jTF|Gm}Exd%stS0PFJm9-OYAju*}xfdnc3 z*Rt&}*PYjSGyY;gpw0QbbZ!ES5R0~ynZ|)4w`)?f5LA92jf{@Yt zJFM;*qDuf`sDGoMwz4kj+wK+{PMOT)U?6p=LE6?PmgRyd>d%yhV#*Z3qEbYqrD{2J zktO>2PC{iwu_K6EIP4zt^vr8ZQj#iYaXNcyfF@3npT^BVOYx6&l_kL zKCH0R(r+)`euNaC?Ma%{t=0@TB4B>muWODF1FaoyNm>ieqG9;pXf+m$s9$=fiWIgA zCoS3-|6n=|DTNd;i7MwvLv9KX+)jv!7Up*4- zEXu>QA58GSDkQZWf$L|2|7wj;Jp3*oiJ|{;zag_c-T(XIIHr{sRRXSf@Jw6J|JxJR zFSg_VN|&hBY9=doxJ72}|7+~4layz8y;=IduCGLV3rhbtUb~T2ia3@}L>Djuy?lsO zn7wZbKAe8|J$fH2*Q*%*Xk_%~*vGLPaoIF2`Yh_`9xD#(MbD9JLv0m!amdrD0QgUl z^q4LO+mcmGbOAIE+ZuNXpCZ4H?f`Y{rzf97W<@%npGqNiQpPGKvp?q z(y7BQX$U%JR64v(Bd+XR^Rx-YLr4Z_S0+@*J<`$-=ZQA+T-uN9L0G)*IV&Ypo z{n2MvryLu&y)ZIU=fGgg*p`d@0POh5bHqH$2QMPZ_nElSIIxG_dP8a&-PC*g|`pv{Tw@t&*tbU1uh#i-f$23 zL%OG1fP%jZHIUq>>GjKpLFzW>UGgBwH9^9Ha>1&54GjhyR&8Ml_D5Wzj)<|VmM2%Q zj4D+8jeUpMR*wr~&WyreOw%PiRRu2R#}jjy#i5>n?_l3BRARqZ5xv$$)4QJ2KBm{x zn4mL~?B)YodpSYh)74v@+sr+oX2*cUphtbLm!@Kql-8pDYoHekW|V1F#&>?#)4S7D z9qNAT)oCl8>_=LfIefl!d z*)3+jS0hkd#72U@lAM+uE6TT2RGV{3^_|~ytHS+(iqfED-NiLn=9+}({ACja!~y|p=$5KO`VaGC%%(61@&u>iNr*yr!>o4Hfa9RsoT z)t>vY&FXyLD{!6W_qW6_x90m&zjx9DO=3652Gj6}JC@uHg*`no2M9H$`V?hs#>@U+TU3Id#TL9H5 z8|zdX1M?>n($e6Irh!MDU#rT)eChN1b#@X`Q0h;=qrC23x$vCK~TE zo3Mjq({j_K|NNZ2FO~Lqp^k(MD*5&$xVbEay)_?~cd1PhU-7!Mfk6Rf)RO&pCu8${ z4Qyh>xFQkH!idvEQGZlBEJ4!3{WkTZ=&w>w^#=Viw*C0fVag8_#2FC^vB4pE13R*^ z4BXiJ{Ie`c1tS@nT$(N10P#PG;CnT_fB)p*f6w;EmwzYD$dsyG+Zjz?iN+!zAV8B4 zb6!lKeEHj*b~Eu=)N(rzF(wIfyi+C$_QPgL1ck2l&W2>0LNrdjm6RN!6wa#osG8s8E`8%{sr_M z*(`3pEWb8l!;sXtN=L_9AxB^}8HC+bt`pp**m!z?twUT|(jb!yIc?yPX?I~HK)v!R z9^3z`vpM}e%a8>d*_9&6gn zMioZvoCwp)h@Ro*I%DMu4*wT9$scsuOSSbw@HO#u#ciRgOIzY}DXA=k#j|N+5*y@M z=3!}h#sK@m|yxaw{@y%r$Sxde|@Q|UC0s=|HznHqb zvv4`>^fgiM5K7OxUOQcuzVx8Kx`jiX+V?IyY*W8}EIoYm<7)A-HS{6&l%>sr^3R<= z@LadfdwANp>T^ag5Y;Rs^11lT*uHvX_t%!jk!d(V375X3lAG+Q$D2}dc!yO0^ zf({ZSKo}gt;O-WJyUXCN!9BQZaF-AuxI=JvcXtc!ZfD-}70-`Tb^di%cePx-_U`T_ z_rgn_-aa_yX@pg@XnftgYs4tAJ+&&TV`1eIcsL0cIIKRHLd|D@SpdD1y);QJ>${4gK;5B=|{=VwD?J6*`$tjx7DT|*U~;j^d^2Z1hH zVae1M=47}-IDvUxMNw_#*Fkh!Yr~_>o5D_-C3kSPK=Ht-h5o>6|14$G0y-BZQ;t{Py z8N;|3+UsU5*4(7x1QEOp+s(gw-KT%G6Cr_u9W!UuS=?Ve);wH72p?_=EC*&dUY7zV zO^I)0T5gMVqra$(PD}ps-dBoN?KV80*~i99(OOx89IpF((#6xgV&(fTCzk^U^;U0J zydx%NNq=KO%ja?tnAN<dGKB(=!;oU-^i}%BY z+W~lG$JVA0?F=}s{cj%qb?BUHNOd$wD{W}9&Xj-OV3(ogWp!M0 zRI7?tcch1Ozo;qGyM&#^eUqx7X7o|9wIS~GMovuq6^U;1S#9-shT#z_;Y6AG$B&b^ zEHhREWuc3^Hx}n-R>}m8t$)j_N1@|}w7~lcx6j0B!Ma3rc%ru4d*3i2$FS{g;_zK@ zd(|~W*ZU5}&D@EvAwB~yO><3yFoXZ87;EmAhMXuN_f2Y__x)rce6Hradi6JA_k(N} z!qC8i63aOp9KN~y;Ia!Bue}dijwge8N@U^7$|3x%fpJE@LV(Ir$<>3mPP z-VceDhaJx=)qQf1uQ_f$II;Bt@f!b zq*-I!Zw!QK+QCW<47^L`*Du#uZIwFeDEmQfCCz1mvNE?i5^4f3JLN=0IQ=d zxLtSJx;movXE-jU*p!srDVgqz+L+Z&Tu!JIZgBo)QrsA?i>}g9((6lkS(xmvfH==b zhqb3&ue=Qx@2f7dOY;F3`|8fjF}~ODR1Pn5<>`&BQC3r5qAda&)O0vw4W2TzD=Kpq zM}4LbE+mbNDXpXEgHP2*P+RXV$&%Q?sx6FF7Xy2l%c}apswO69{T`K7(R|O!VkYYu zUARJrd|JIhx?Z6w4*&VJ%o$5eeOUkA46B`hAzpjss}8Hr-CZ8q?-*VzRwr6an>>%k zUN109TQ3((KYfxS2MiAzoGvl6zO1tK=rj*$LGFMYEH#09MM-zQHk8{VhpY@Mr1t0lQ@FzRcpQ=x@B;GrFU+f39(CXl2di4j791%QHtz+$!Yo&D{86RyxX*2~Nmh-hBAuDr&FxwVYx@ zs8C0s=E=iR8`O4e{pNy#5OB86^FkDA4@1knU-Z|Gy1yoyx16>%xvX5@J$rnaKN>b@ zH0UF`J#~rv%-_`O;Mj$UnJ^ZTlzvRUGF$CA}rzS!z|a%dutMxMN~Ge8NvnpA86z zy>6s}-M`ql_i^H8YRzYh-tt}FkJ;2&YYVV_*3pVCf+up}cg?oHpQml(=EY-EWSM(> zpX8JtRGb?=arSV4X;bE0a@~4)@zWQTqL$g^{J3=@uxH0KDx!Q`e%;2+H2XlGi9d3$b$h~pch*Ae zZ6wAbSw1>e_9f=>BhEQEOd53|^<&fO8RLFCEs0!!2PJ{$!%HYKGElc zV`$^ndRQj_MXG)O9cvkfiy&`hCLMXDwLYKcw@;?DHo!S0#D_Bzq!Bc^ zS9%AYrGFIg-lnpZ+4PF$Z*5!sn4+Z}ZZb2yD6L+;_I$_D`V=C-%EHgh&&19ul^offry-s^| zQ#fdM7U41ITYl%hGIe@gJ^$4)gLjeW-qGXQ8w=f*Sq^(APctJS&Z|3I0S8m`IPDej zzWn!ctq+3>J&x?H>=&a8EG=H|lqA33_O)G|KSOlTpdxu`jrBK2{El;dSuOQ6&iCDg zFqUh$t*nC{aPNgOD{Gq&SSy3f`D6wo=XgWlWv%V@J61;H z)yd4Yv;|$};JlZb{eUyTiWZ zY3S7R!D?UIc?-jjU%WF*Jlu^npLI2vEN%tv@2OmVKQNRu)_LCy=^juLsEz4HnkY(L zDtN4{GQ3PUGMCq5Aue;_H-1RT$j&*E_^Os7$Q`G-? zKhB@`ytw`=Vdwd-Vr#KdU2njaw|P*yR5$wot%5)L##yLlvrt<*3j^qnEX{K)%Qv0M zH)&&FwYQ&)I3%=n2tm_`LCyT>hDg%&xVR|kY-4dgdHAkn4*V?!@?!6z^86?y5u01_ zRVO*~Z&h7+$(c$0v;jd%iOS?+ZFL@gnhZl0`6sm;m^T)OG+nA1D|JpwyLGVMheKOI zQC!h&AVf=AWC#a&Q+ZupLEfw}VJKs3>2cbjCEX%3hC4^fh{iU@ORl*=;;qZH_2O*R zz!D?ylXzd(VGg<0{A8`IN5VR|0ZX)d8B5bwBz-UR+X0WoS4}Tl*0D~k=g~$KRd1P5heWCu;&!oY9b^_?h2cd6+LjmgYTtDWrcU*+yd?Y;l7Zj~t* zs;;5C(Sq;rEqfchxZGmuV(NjT`&pMrOKUmAlrI6b@4-IxjfGa)VX-#R>Bty)W$DZo zeOZb1_k~1NwU4d8?QUC^ykc|zbk=ik+L~LgEzJJRAWqc@(f?-eibOkTQKY?^Zszbe zrqT2I-+6IRi_;n!W>Sb~Y1)@XxWfQiiv=&Wr{ke#+iyqQYTl=H76NbpfYm1}JJHLi zl{AjasG(82WOYJb41&zPrJECHRBOQ)mYjm3*4n1l_Ih&Mc=p+o<;ewdIo#RsKowLv z$Y`MNPcp7>2X{{xc6n^zy#~Su_6d^nU+vYg?Tm;&#)*34v7R!txNoejzt~6I%B9N| zelaaKD?YaQ;($_W*{(1*1yRb+?U{&U`AI=W_nv^=y3}0buS&J^8w<;|~edz!_ zB@a2dG}_76(E*)2i$@#$k#lL;+?&*(GKf}FBhkspI)$>1irPX=>BDwmWQ}&~Yw;Ld znT(F>{@H=A2k`+lHi_+}t0zo(OZV1K@aTTA&A|!vcjMUN@sVp+gyXdc^y zMs=>+P*mOMe(Ubxp(n)4(u;BOX^}uvxC6ilP)|n1;kY?kTU^oCr6~+9n_OH(Qxkbz zc4y`naQ3tUTiY&I6I*Ws^#KE;kWYAJ4O_@-2Zapmrmi~coZ^MbDl3hKOZj#7x_!uT zMs&^HAhDgqV?OJ2!dCezdKf|IM~x{*Cv9;V567`ZsRJy4IRm5R?2QGJR8^AIYO}di z0hNxObAQ+>UYp~w)x1Kjq3xIo^&c*!FVq%)mRn0}X_p|g^~n&3Z0es12dKB9N8-d_ zCO%@i-$HmJjQi%u_IxQXwvn=4M~#=C>uPc+^!S!|Sqlu)v18BG+>^QZt^Ckld7|Oq zOxOs|rBYm~#u%QqikO<5gMyIJ`Z0zv znJHHqH~Z=0+|)0#G}!8wgT*MDTgm%S%YF65&9K8ot()WHe@1a$HR*eAEDF3=(jsXw zskq3~WMUnoFyL2r>Zv*sQ#Y3Q{$8?py|%+8im++=_J-iOA-%1ou78KNyu5~@U{v=gjm+LD zWoe(j#O&XZxec}5nWpBzjxw1y-;4=E*0I#b)3&{nXP)|_w!`r6-@{Ru&nKI zG;|_#|9dR9v&#GK!@f06XJZ5AbjIe7Fg&e49-bOjw_3=MeT8iutTD!i3tu{r_r@TE zNadz9c|pExU8I5&tdKdd83wJLp@q>|ZxB>K%I9|Ggi9Xl^WB2?eHzRs%Rg@{408?D z%2Be2Ga<&XqM|oDzTsjXk8+tQ-|wCxVZKeVa1C_^6&4kld`eb-_-1x-(Y@^cEjKk$ zi51JWc(CO9u!Sm^ftZH{zbk`{f>~8ja&%C@HH=PVrcxBFcVO{tN@n{^EuksBPEbb4 zR8Gq31^2GyRzUM6yv>VDFt$U~%Of9Ybb~G8zfF@p>K(VSfetN}8 z_!8SYI$Bo8Ow7zCGeKunWFb4}7@iDAwQE|2A|pEOS%c;mlaFKajREDl#eYhi`Hh8( z6}NAbX4+sF-^2i|DLqOSAAgMTb{#WMe{TT;>UCgjMRQ~O-UW6-y<>gt%wvYSiqi}u zlLFh!IErwnahXgMdPI47aS%KTUkkI7iBXh0?ST|*dwZgJk>u#O%+z#MD9VnXb<W{$wdGNl$wPgk7a>N`iBEs~zvR`E*zsJo*{KgmavM&Z; zDV0eCrJBcf|BR=9Jhqt`>VtSe`pJpr8i_?|lAWqPM( zNA&D_A({}ij|9Bus;B?%o;1OR@>c5cz$r%iqEUUaW=4KSqD$qOgpczf`kM2sD*oJh zh@NjO)DhT~RR+ujui(j>Jzqw)sK#{pJ?Lsu^$7zhUWBtowu;S97pGO!bkwy~)QDL3 zJmho;Gv(IOH2|SwGH5q+JrGg;Ca34lCa)yf^yX%HZO!F%Ll}V1C2su@IF-otar?|( zNUF98q`nz0d!0%2sloBV0Q+)fMCEe<6*C(&6SLy>>H1KL+czLJER`kVmddf=ZzU;6 zF3a_~d%m{tyY_A3y)m!Td1v8^QcKb`pG5oFs;t=z8Emy(#tXmh(F9TB#2M;+d`N846bZeg5*_^yBu~lv!Zg}L>`eTdRG^qkz zufw~3xDV{7^Q*hP4q|JbkDIk-19iclo2#Ky4eD4lA)lANRTuTew9VSu@$}>uEVE^8 zhJ3X-gKQHqwOU&4agM)&;ftCU+Pr|6%fz|&_tSYUYkW>On>+gf#mx?Vvk1h*T;3Ng zSYCs}B?oUTlKYz&A8AGab8d`sq zltgH?x}W!JQJFCNdPVa!R7XWimpkOuj#wKr1HP(}4iR`tKpZ?OaWo|jZ2MkTh(6BF zH?S0pUF$?1L}jlTlDa@5hr(pE@d&lD@U%h_tzWyhT;fNyUGIb2_>*8!Jx<#!9U`-W z0hUmGo}^w=lU~(c)!|tGX#Q0!@{M~`EiVTLh=f8YUoE5i=D&fB!oY~!#+FvXV5&X4 z4x-!7f9#h0@}h^MnS!s^$JRuvCi_uyb3VL>*aMRNTS= zW$z#Mp%Zn#zOi`hGtCbwkEW+CTZ!gxuvJoN|JgF>eJ~Q2#HxFn6HNS%IteR$Z>^=O zTiJ%ErW)*A`a17nDuzQky@w7v>@G#XZDD3bk-zlG#ftvhoE$n@;O|&XDzOE@%S>l3 zXQ#8tgh1>fo6~<*G)$!Crd|+VX;zUxi<6KIAr1s|hQD=Qo8u?#Bk^dl5cEE_LK91^ z7^SXin%8`5nH{4aXWKo+3aeU;ZnpL4#bJ~))|O5h`?V^y*|{x^@mg7EzP}#oZb)e{ z!|+E_Pmq8Tp~h@7bRYSN2^yIkYfdkQgH$x8>m205V`PC^=9l@O-oFDV;35Q z+Ry~~ux+Hq+qx#{z`tRicnY|ET_ zaJ!}<54E-NkdeAFyHo70+{{uz;4OVE-R9Z3%@%>&vYB&nXWe+?XK z{9L)NE&?}KqewP}`~hK>TAEVRX9k#VsdY7f#jT7*X%9}y80-WA(iC-{6#a-YRNy_W zYyuIA7aM6y&lCxp(wuMaA`YK%AF1Z#ounMJw75bi8u?t-W;#%^j-tQQw}D)XEyDR2 z)4qM=vld0OHl}QHvV@j_{9kO@0;+D+)Wpf-vY#w$ah{dftFIYfGn!(=oqmg@(9H7PoWN?c#9I!1?*PZi}-gKh|>N-U%PX zm>mH?{k`|8{cOEP$GtCO390?bqx>^J2M*2ZeZRtMVnd{BcXg)`=f@JL|qwNQxV;w>*P3iaC zO_oUa^Pb6ch4kmK4G!lKq{OBrN+7 zX|vJL-Ur2BzkgAlejnr*4_vtaBlMhCn*hTz zv&E5*Q#G!ms;-e1KfJ25oil%a_OHc7(gL3uD@x1I&-MMuDXs|p zvcX?BX~QvO5OG}LhkpHnM#TX>+Xu_S)B|o|hZaa~dd7z4okPyS&}z4CnV<9`YTDjk$XGc$(sx`PO zs<^w=zLAlIxUcnXnkaQ^=VmVB5Osx5*cCrzjeLz<7F_{8n2=O0^*N0NEo}w-nk_5V zA|{(?sYbOSrQD; zdkM6Cnd8!(TYbOeC+qEITnYW*epr0+Tga|^dYyK zo>n%vJbai|dR($K?nrKkh$V~dqYxy+8X`^V>n*apbkGk(hI{VF#xirK z4>qp%@6n{pt3)f1ftBR7W{RDnFrbK2@!iH8t`X)OIElye!LpQ+`pFuvEh<|-M4J|7 z09@UutOUx_Ic|@&dh3t4?BSv%a`WzdG`9DtOL${}7Gz}bAv}SIJ|$34u52|K!USh) z49OGI0{|K^*Fx4fpF5HJzCDdSr!iPF7&;9vF0)5j5J*)INvvPMhao{CjCU_Guu`E` zF(@0HF{4Q1Z%;T#M;BO?udb}Afce*Lywr3u?3;0PT!A~~PZ8%}$Sz6tz}d1e=ct>c zrA63R1CvejVF}p+qkN^X(4)`q!)F{7jfv=+x?uqoIVQ1Ovl}&`)Jftg;@|&TbH*t; znq6}1bF((p=zl+nH7M_*JTQk3Lu)cCr3;ps*jVRG#N{$745Rp)L28+2h!5h{c3xGU z`We~K%Hi#`js4?J*K5m=Cv1(_oEn~E(t+MsZXkrePb>u*bp-qYJOyJBoNXGMbbh+kMn;+EuPQ7~ zmX}5xgZ}GT9R!I2hxVqDDvgtIV1VbI{P0xe^RO@-^P~V_Nt&Va7(MBWg8?8DN}u2q zD@@lpAu>#RzP=`26~`-iqP{vDsp|TI76ojGdg7Kk95sbca^nYlG@%GOX_BF;7Q2qdXV`_ti?BQ-wJjJXr3804ivQIinBv&YtUbT@-EaE14$za22KmFig%3E;uEDF zupJLel4kwuPiUgEff>T6l#GH^3Z5V$zyNxR4jf?CsBFqOB z&`Yhv)=HK~0`(!^qjFl{H$stA$LI}JAqE1O+(e+Y$3q}ECLjThD9RA29}^79ST*#X z^cA`Vd9N>RpY>YKCm6iE+Hip)984s@O5QONL_~HOEG#5-oozfxuo4Fi)!ES_`qD3e zke&vPkvambmA((BujwCSO#rMUBBh%ptYD?FMlvV}22QE_0<44Qy0?=QEsAskEk`{q zycT>XB1sbfBn{FBvCAL<4KVuEwASTcXi{+k#j$@P%=f&p;Ae%P7SR*GRG*@MBGP@h z%>qArpoH8lC%m*y?2Jz)RMIRZQng+zi+qfVe&B}nkv9AF+S$G=X|_4YR(x_&&i^W% zd)k$9bv55P9_U-RGd}!pJ+*!h8p8Ntx+AcVt*lGvc^Ei1Y8rNOcQkc7efQ)27qG+W z^O3DLZ{>ZOuD7e@gn;*cTXg@_7XqE7aTEdJ$ld|i)3X;=3d)e;uTrMirmwo`gdhwIjp+(- zqA?8Me_be4R2=@M?_YB%>%iH$R+P&zI|kr&v2sOKgK2FAGxwN!0Y07@;Gx|SV-1|K z%hdcGIxwPN&LOx@BY)t$**ul74>JNkh)FtJA1?%NN}Y^CR6dK~BmpXhhd0YA6SZ}b z*ybc65v!~+k|ag5!%6?jHpObo2O6rnXmcPeFi#yZaSdXad1Il3EgDPS#fZ0S@&uEI z4b4U-#SY=k+ZhE-Z<$Zf001$SqY-IjJh3?4h zYBl)8<}QZwBXkN%2@S@TUQ*RSn&d27E^GWVc81dKIQRD^(xy@)~)Gz_7<$Ql+q%Km`f zPN?*$qlWL z#Al>;pXDxg2X&!i#9bgQP!S2n2T>nt>m)vv3lt$LL;6;3|K+0m##g~zyR96)T?x^u zN##&@afAA;MHSes7qL+gys5VQFs)K35khueNJwMa_Oi*_RseXi>-@_tT$13a8br~O z_E)m)-dAs%FuHL0Zm)i)mdG_yn=(~oe;ASg{vvxIa9psE!H@xENz^y^{0J;=TzI7SVr=tT{6&_aeaEQVyE8d2pqCl$LqDxBK#~Pt==jw# z=3kLDweE3lpDmasIw&bw7Sl*MX3u`J9Y4NlA^vHyQ-ig)RhVt41jss_OTE26rM??) z9zjRHJDB-bXuR9;_&oBeMDp}{FKXmAlFh7k(!j-@P;+rH5nnuVYgSBcc2LO@nml)Y zM<4u3tcuUg{`tP`VTPzFoPUY*g*_c8DQ>1xz@9VwOrRz=wvSszE;nL^5srwa;M>|n z>$ZRT9p2ngL{2aNm(Qc_pE4@41+}q)JohofjH;)$R^pruC&=Ey7vf^_$Qal`DOcJw zg0vYwwo!xo)21_#_DNLa*P+_* zLUm=gwOo|GS_INZ<3C7BtC%jGtbk98=0Il?kH_jACio!`n2a;0NIU;2!Aq@CR90eA13SvSOMncRk zR6ogZu&eFA-j+3mc@G1auOeky8HP&YP>`oGlJb%OfGc5#J{v!!z9Np7_&LBeT1EH( zD*u>ZAd?cHU!vA3A0HH9$ly5?H}r7lQ0jh^WZ^1N)WgCjK!(X)Xbg^xd1H~DKsHXv z$c_dpjEU5NVm}lD@1qw6qlW?KV*m^C3sDp_*QA0Yi4LiWc(~b5Ry=VtXvz(E2mNqK z_VWKZm(($9^BVVAoVo*rjVVTcwP@Vf@Io~&z=CoBV?7bSw}KwE_u=EqIZw;TXE;U` z8A*Jjy=?RKcv&}Jy9?lVUUb~+YhqsDsTH} zhii+c4AI6{J-uSJ`IW&c%s2)of7s~k58gTo)k)5mWY?5Ro|7ic8)2QDMsuEr;hnen1aSBn&@;m?anFu8G zx58}9tNggsA31DJn_3%F@uet3rrB*%lTyE$ud%0T3f&N6XJq5b5$VS9FWT$?8UjF2 zWGH3Am@K|p_{)*aclW9Vmwc7N>E~e+wbFnB6GaAeQ?(CAHrE0Zq?>;(PUPK#?0FU; z5a-KMsloy5BXbwxKXDffxr%WI1C`r?m~cbOV>QU1d4@E47hd`|SW9g$cvrz(;H~YQ z?g@fVj-j{LcQ@F6mUEK?%{93S!=+!;W=Fnidf9>-uselGUZq=%!~mq!QW35WY-ki1 zZbrXNBV8UiMr~piO~!Jqt3D2VZb;9V8(*bcB@%V~%i%;L>p2q@tYyWI0FZ1jWjueg zi#fGv!foO;T2aN>qaqch4j4(({8$Evgc$tGNoG4=-tdLh#hl1KV;}MIW?MBdDvC;n zXl&=Jv$xB7<`+uVqzu)0>kM|h0aSW*V<%=!wX%Tgfs&uuo&HOZ4)L3AR|DpVpIMK& z-zI_ttso7I(TAzeay5$=T5a))Naxr4)3js@Y<}#ukHnTZ!?jkYzqxZ$9gyZ{kC({s zz2;)uqN-C2UXW{#25X0n;ip*}(XpqtT0$?2g9_$f?o@R@jB%2a+i?(4S|$4%hC-WE zSdE`oj;xw|_DQTlJW0~O?qa6FjDLF=CNc)!_4=ij%ZxD}-+#`QXETileV@hY|DC~lB3CblRl5TV!U|~ry zMXUQS|AGd?nLX?<=P1QeRVG*d1nW-{Lrsp>Wb*(T4G(k7+qO0SyNnX3+arWT2wJInRlp3)RI z6*<5Muxm@M`$@V_w6#zW9KYXfv^k^y@gY#SB;#|0$5Gj`@UEw}*-;Hs<#GeM(7+=5ol!Jx_*x9dmk+AAGNi!GHduG<$ zzC)`%_H-vaJGXzPv6$BKVUAKOMfXp(bZzhi%i!VjfOe^EuwKToRJxWw1q=zkY#Y-c zpSFMZ_WL)x@P)fk6=#hUofIG%N=93HrijJ;w1;3&F1s%t^pnQ2;Va_9-6sX=Tg2|J zk9oYJL% z_q0vP*kidu|K_;MZnK4sL~N%C52zySs{#YC0qvmd!`^mjn=f6?2@c$V6tJD&E0b$F zrZADL{w3v_VV=pC=0xX#tYwCo$yydWYxYj6|O}K zwW-2NkQ zseUl0r_8TY>wU$k1c2aNgG%XtHb~~?^t-90fOc(>07HU5#lQd{K>827Plj=rwkKoz zd#i{~lMkjdsL|WiU4Lb<;rr1x+D%URW;jmuXcn(O8Y8w(8dm`abRu#yB9}XBszw)D z-THNhVD<2AQH*dyu4X)7M=;^0UC-0=Lni0Y5NP9v8R)wy$zrpZNy9k-cnD$O-|+?k z2ejLJCugM>mJD>Mf2JlhjLT{4)*u~w(Xnm__T7^E#PRdp)l!R96hBTz*KvZc7bnIe zLy#Pm6+vr)<~aY&7fp2YDKfA1aSLFRPesQrfA9M&j=sxaXG5CFT!yP>|g-gsmI2Prma{9B2<) z5Ww**AN}di10zwx;AL+bEMa-P6TKWpf2i3Jr*9Q1K4{imrHDqKB8~(K`>gdQ6BaWL zhpHU@M9?;Rw7&Vj`3bU4CRdEDg+oF}(cT#^FNp{UDJ-@3v?y=t90frA z@=AEZZ7va;YOgoD__ysN>GJ`Qhs^?D#FnQ%i($(dCQAYcA~5pK&8&Nw#2x9!^o^1N z{^Ydq#Nfe9DtYusJ!=Gn2GR@(1)~h(jU2QillWpQ`2h6*fxv~YM)vW-0GR$l*9=l* z#jbW@&%MU(bF>ak@qb((LeFB-1r+{1acA;EgC0 zm9QJ(?p{9q9A(&h*t=qb$;>zNdM761WZ%`x6axddSLy>80tiwM^mPce0|3;5;B{ag zK!O)jT@pkAP*1HjQSgVlk1*eF1;}swdnE%=K4`=&4c?&e}Banry*(l0Dwb* z1GG0Qi~A14QBZ#v{{TZC4=YKX2LMTNu zfW#jF3xE+M`9dFiGrbd4RwPy)!`xQU(yKZu49ITZ^>+sWeDp#7AXr9*zf-E#TF5;* z0xjHn@3^Gg7wW?Q%U$~|xvS3woH(6()6$nSt6+$XqVonxL zZR7VT)M=lZNa=@{{c}c1X7$2pX{AH#eQwT?Zfo8pLfw5vljOFQCO)3j>-`5AT}77k z727@O_g?1QZZ+DTe&L=!{#R;b6R#zIK&6MGH#~;{+S*)P1wmMXj@d2(% zhK4CV2mbT=;I7Do%^S+TMCZrImtoyDB4-g{q4=!h^b>3oe4Hgvbl}xAFP~ zp)m0dM!g^hJHmqg zEu3P$Ut?4cR_QC0*xME2Zf|4c9xfCf2L{2|O15%-ObYyts})4uNP!?YdxAL_{#%l` zoMu*da*)|7N9w!XI6084cOM6t7yJ%ibu%3HSENYH7OzfW{#O+4`I+R8Jx{Y}r-`tM znBOXp19fCE8w`lcP0kf#w}EQwyBUNvfURl=P!=!8VmGu2EEvT0K8rw~aprI-VGF#I<{zC`kV~(4qp_S-CLr~O{$GaME4yUI? zbe=ysy}7v?A8cH$w*m%x+2&d*6#^aY_J7yL=W8UEo`s3hS2BY7!8M5EY}tx+jhzz; z!(5!b*0@FlQt&x>+VtBBQhIbQZ!D+{zA;`rZa*002!1Ul*hMf|)+sFQ+}&7z;+_>X z*G+2b2_*l?!2}tUZyKv>Tb#hdhWmN_K%V9A8qR<2_by=_&KMa z7M`zpI9IsMtk9K40+}|$rLLd8TRxK(N!$isAC_6e(o6we!_yxzeX#txK87(ok1k$3?K{|ZP!Yz6AU0BI zf-tF#bb&l3Ef=kdngV^Ox7auOkX83L7Gu`Sz1B~kH}a={ti?LpBzTqWM zcBXXaU!sJRAlE90?qT9!V`@J2oP3H)Riy5fKEC5#~Zr6s8sg0+E1}0fzWPq}YHc z{}_4XcTi17Hwle)Qbd^cYk~s3#2U zV#H3vh7r_&LyZ#*KG0d$i1{bXjzcvUFm*jNC))z0J%V0OH`50fZRUswajE(8|VQ5wS!TON@l9MBOU zi~x&5T?N?DFvE{0?FS)Icl+2QenJoe`-5QMlCc?4j7S(|I;#-n!(hI~2m@r|1mQm9 zAPT|$X=h3_7fLh+bl~Yp()fViVPwz4V#7oUB?i)bMS+Wf4Oh$*ZS*Da$NPHuNSG?& z7KWQx>qMlg5(0yP0c*OK7~V7O{nY7u5ZiwG-3t1AmwSW5)4oWx9a=oqb)+<}Dd#Wm zli+^GOC9_Ub(vRzp;3vr-^$#4Fz)nkENB;vM5Zu?pzpgJI8sUKF5xhyp^MZqsaQQT z?zAKf98tCcq}TvD2oAi;l!mOl{g*N1cmqU4f6fs`as@_5e|;`t>8KsYsZG}?%^>oy zeMi-rh3bWfDg8O8cK|qiA1D z;yY|)LegYSY&}@&Y+ip52&L;!>gb1G`2=Wb*jcHlbZ!E9@?5>$=_S{|Pjb%&5KQU3Lvk?!1dM?wA zQ$zGor)ngA#g2rshb9NLBQK=)wv-Q8Y375!yUFOOaKIShAqX2t{7N3AZYJMvr2O!! z4C<}Nva$yk;OEQWII;DGSH&v55Z|2e@JDTqzq_+)Sq=ZKG*@_Q^YM1oI&2>=9cTgT z8yS^H}Ot(};K6KFHva;{K)Ow1(0Ea1l1bP>A|FSW*@7cuD zQ}L+UD0Df1nyAG!7=L!%i5Ri?EL-wS&oTi!%@Eot9GO1^_T#yBDFPw`1Xr zRuM)SHiNR2-o29k0U;s6eg*Ke&g>kNfe`V6kYS@qsTmOGci4KkGP@Y1vEiWOUVC2^ z&Ij=;$Pay&GK4fJhj3_vv*Y}g`XE@>`9rg;m=9s|FC8~p8$l$uWxpuRWSRmf-DI$(f#rz0x$sp z$1E2n5aPqI=Z7X5At0R4_#S-k7dYsW3;|v-bREcQtyd!azYR6Ml}P{FV+!H_cL%5_ zqrn@C|L@L@7J4d(ejr3Yem-Sj&sY=6{|#d%ch)Q+F zCVw?4V$OMyOa154BXs?+RCt$`U;f9!-dt$C@+sF_a zg4Of&4O)5Em=aFvIFpvSL{&27U5&z5+ooCFHKd0A#==UqvHd={(URNpTj)o4ziNFw z@!JtCY%IE9T86-QN^3c%4C?5x&Iwu$#Nfqf>mPQOgCP3PuhPh#svYtF`p)f4lKl05p)m`0HZ&hJbYPZqGh}cH!z47N24wiI$5AU(&(Y2Lz)d$*Edj%}niCwAne{T+%(XKz=)a0QqIS;}Wih z2i+3G6>Ao+?k%!5l7=t=x3R!+{&3Yi2ZY%x#FEGNq7J4=& zCbFrDCNWW&O!$KvMHE*T(}qm|v8>l1qaYYD3T%?T#0U&Lg=8S1Bd*w2-8?l4x(xIu z`^B_}P)yh=vc$-Rd zi^k=h(L~A+V8s2$L&n^AO?LVqOplByOd=wf+RuF}^VyXIAws`-YRQS(W~%Y}?;l|* z4h_+8#^j34aUi(_-^di5Rgn^HP@ zB}K2I>p?GQ;1O8p0cLVhNx(Aj1_}#6Yo_JYwD)&ZTr6;~Vu&9Y4GG#uzySYYUPD_7 ztK%rKnNC&+2>~D!x9%~@kd3y9Fqg$B@tNY_4v+$j6Xyl_%4VMn82WQh(Y7$cF$%@|<8{ zN%|Kse`{B8v5Z>E=xXnBhxyOvc0%1QUF)dROCk2hg{-KBtRZb%WBf@g9ntNaX03j^yI3ROic3jO< zX&*~o5KK@Mg6s#xFW&Kd&d@yQ@fzsBT?oj45eQy>Y)Mn*Gzb&DARyvp3nRIf%XDZT zBbm&TFPOAwA$3xGhYvZ)H7><3X!&iyZ7z91M{p4^i5EV7*c7ToX)5r5k@_@C1qGKs&IGd!Pk{;|+WS}jGN{FlxT91y&!>9NdQ*ceqZfUOVMM_Rh z$EbgmIGtW_aVlD05gRR=K5?8P-aE6j!`qAII;QekS@hR4?%7n?Vke4}o|IxVT&@i; z&=nrpoLksIiq_JSf_!SU{ld>UGds5zUu0gWweYWZVd) zsNXt_)!^YZvbioffRmF7iF$)TEs$zpOvYIDDzhS0A;cdL!#Xy4zhHW8#ZB z1$QyW=Flhr%EY~jqG+BmW>}#`RET5;u*&ek!r=5OrTZ#S=0C66b-{kB9=j4$a)&pp z9T)vnEnk*I>T!mjWQG^J$rG*A*rgv#^Q~AtMbp0iUje4~tg@ z7lBANhDiMV8=8R-Tr3P6KX%+c;|Hg&SD~^rF=(50;&0{|$&;>>7b51Jo`LUIW~D%J zO44>C6Y@yD_VyJ*96`gbjE4xYz)S|FDh3RqV>jYLflJimPR|f&6QWZm!9xLRz^W;b zP@r4I3*)x|zg#X?9{lg#fF)lA!liyq&k)keeH9@}M|TWY)#`8jUtJMViVU=>Ay&i= zOlfeBV$WCZn9iGtkB-8QCk&V+Z`6H24N>vh_#SA32>;mg-q%VtvWzenRWAE&XiGQ% zC{-q*P>Q>2=krUaFtzR!5B;(PbmaW1J)lIWY|kM_z32p<`$q2`K!&cJb)64X!98&D z)YL5+!Xiie!E=tf$8HcMN}jMyNpS7eA@n_gasitx96Y8FD>+xB;n%2|HP=sY(5(99 z^Fj}0>J%xdcv3~c-+(nd!ym2U#fbm_1ohF?lVz}K`Jxlb7eEV-e8+7)g}lwuI}??& zQX)KH6X*o#sav@?`tC@GrWtCc8G%?!NtGg_$c>1j2Rh<247kM7KCzota%@{c$L~WeGT~Ti4MJTvgzmPyvS%X zz?Jgt$XFKI3@2UCdCBK(RtIi$wyjdfP2+(ZLNrOY?d-mhg#?WfAn5X7x7B8~oFKF)``I(E~3uaIXd*Cz{}eOK>I zu5Hc7zala$w=N$m%le+vDX!CB#`nq$-tOpiCN{R(B-9(L^OBl|{(S$!?c_G@5O(iq zq;-n_mytrMWcBI&VvL=GW`snBy@KY7+5VoKWJMmBX35oY(+L;72M}+G-#>H+!7zg~5@!-J(x$s4Zj-%Hg`CJSI3 z7dzgTG9)Be@El2F70m7(qYg?O6`?~?mm1j$8T-aG! z;;!f3Ps^?ug|qbz-us6QRU~T9J9 zy&E*)61djlqDG{7-iT~z7N7CHPc`LtRw2=c)9N@om-f23+)TAe31Ay|jMFtwNi77< z{9Sp=h*d?nJDob`)=X%jcYWMXp7f@N^jJ{txIT5SkYe5j0A@ED&!eNm)_Cvu?fkSiG%G;&I)~y(;GJ;^W2M@jlesyd07DV@mQYPXb@lFi=AA$Y8w$>S7u> zA`e1nn;_8WZ}HhyBq8)WgZ;YZ*MM)KoFZd+cg^2hZ4f(}yQxSujv4(Yn=t%t`_$bR zCPJ(puQ>egc5~(Jl$Ep_=()Kn3mDlsf9x(cv*$GLl%`qLBDbX$Ow5^XSdRC0ceVp> zOXn#N&#H0Y{(xc@e>V8gb(#qrgqZ70cqcDE3iDLZO$K!y>^DIN7vsmj?f%{ujV2_S zjOxwj90J~M!%v`_xFLmn$IZlpL6sm1a5@$a&+Fy^=RsAUyVYT>%9@{ejr!8h|7R)O z|L*L22H#X;^IMcFe}`8so%3vN_&w_0?QDcG+vpxhwaKTn=62CT;Quf-i->`7=5@(1&Hr#+RX==h zzojOV#vHHq#>4);^R_C42s+Np;pP}98mf7ef9t$|)mbZ_&e?k3oI-sAHA&-?I6oBV z>^fgh+wogOkTeF-egCNIfuFDSmFSosQ`j`k+RbAb*b>BVq#yFHboc= z7q39-v;V6%`?y`cWDmul9a+BZd>j5)^YHR0v)$a0;b}VSI$|_6D_N6&_tmN7Vc$gI zeOt0|xI6|%trU`38O6WX>%9NF*0Jycw{C=VX20+{2+@dvKbm9iPhHaRe>=;NXcwJb zu6ZcDe0{!4CxQhKLbkiV9;6v`=oOA=);I}SWh(W~5rHvTU`+q|PH*pXUYNh(p*&fLTjHzin-z>)I)X&-jUtr zZ87kpsd|tBB0Z+#$-moUryA51tgxBgJ-61ZeoVO!q%bC&6(u*P&@5oG(qeIje}gi3 z9Cct{3k+M-{A2+?2zR5#cFFhf@<5HJA}60aJI1&6p#HL3pCEV%YB;18j$C?Jn~-6! z;bLW4*ZDqUb4gIa?YjFfE*}qH>3Xr_H{u%w$Hh;a=Uq@t?;4&WI?EgQ=G=EK;f`zV zgo=5|UGE^%tx++LPwTOx=%N)ktbFMLouRQW!`m4bNm{B^76M@>o!@ z;{2UKyH#*?zTs`-ZSOf)3@(zSI2}a{O#^E$;;>q)wS`d2Bw|XlVR!0)>^m6{-=@>$ zzAAo=(Oy1f{I}H2Q%N>LVf0HaS&L5AKNjbg!m91ps_S(EW zO3?7GcM3m7oV@ivS+L4bPlm{70C7gk9^A9>Z_R17I7x&c0X_N7W57fjiq+Wc(t9#9 zQ!$yf`%8Wxkwt}mB03oyY{XG~q0NP696kwwrF{u+O|`jUlxnGLQE*)dOMolb~^<) zw#;r+A;-qm%mz!okcLS&F&P7syk$w%1@@0wTquAbIx^L$m3iYrx`ApkN_CH-a#EM! zqFghrj^B7?b1~rKO72pleFlpLXr>9eQx-)_$;-~zG+-S#j}i0UK_RNN^|j}`KKq`g zkOWP7%d5ye5QohO>QKk}~I28xreGD>B~?N{!$cZyiDL5FBXl@Rtby7XM$DDhJKV3n9>9dwMM z1jMPFFlardBSy~Y#c+`K-zF_Hl z9-+CE*rT_C z3cer3u@z0BG5|oTY(9qw`s?ziU7RR&=U3Z|9N(#+4bJ5%QjUaL#)xqCG~s&Ql|prS zyT}@7$5)70ChuT!4=~cA!an-;3jRh{42M9+GYQf=-^e!sL+c0YBY|cNE}qnP0ybwq z-mAo}cR2O$DZF2*g!oK4$G&YhlANn#p((0D1h_`U#luow$qdiB*tGa(5#^Z^26$51yp^3 z(6C|?M?~giww`Lc;~>EO%N22&mt5uL73hE712^3O?OXMC<=ZAd4?j_=0LjPSS{WYq z?C}Q~P@wc{ctombF0(P|Xk<ZQ0fxcar3IuV0L5_O z;sH}iVq+A9a1-m(D4wo+#bJV2+>P25WGWTX?{xYY=rDjhg_h&qkIvh%P4^uCL(`hC zrgZHe_g`ZkXjDn51|fnKaTXvOWh2HGnIjTUO(KEjl==dQ`&c2ZN*YVBk+KR3zaZH9 zBRcZTJdt*?Yf5dZ@kT40& zO5rZwd-<5!{XW`({#O)l)0ZB%KXaEKmTi3vqR>TeD%6T7;Q#?qv|XpY4i6tsJ>%1_ z1@;$#g*O$_jlFrvyLps(1>%Jb!5Mtic9)9YDGu=<|LPR}M-j^sbyDgX}W4YpZ81j$mJ@}Tl?iAREPH>47|p$B!Lb;sR~Fi03jv029+u({iT?u z>!3dJgAhv@6RCwvl_lfbw^aB)EQ)PQCBXi-F zS+t}~JD8A!IAz$U8esX(47}E47eZq13cgSjSRI zbR-CNP>3^cXSl*4uvzUUy6!ALPB8yq4#_&%K`(9FxgHdcY4Fp<@1 zxEbYvH^j)Bi>NRcVbQ*w~4Vt$XyRAF_0f8`>3lKNhcvIoh7J&cCMvE@A6 zhvn%=9=PYJjFXlak1zg6P64iMvvU4zv%P`R-qldz;*-V6-%v@{+NE2}d?g%w15WSz zid#%73Dm<0ba%hE!#M~lr>ElbSV?N?v1$35RN_6B$T8SCl)gS%DK4?EX;NODE_Ls! z=cW^#v70#q|s93}0jy9EL zF?`s`wA+p{_`kV04zST?nOMq;{s`<5@cITZJi{w2`OBY$rgz2H{3UsrBg@p`W2Zir z{#WaB$oqIEXT%Ot)Z@sQ-x*L7e-H)@EWh245!n8$ArJk@;?jbz=_*TNe4jKlVCER3 z+wYPfeTldJio<<>%n=PhSi?FAi%CUv<*yGH2joQVbv(P~cJ7^RV#(O_vU4cEsI~BO zm54hw`3}zrE&+z575bft%9C#62WN68@0|cf5C#%x*cSj?gate>4&qATA@3jUHy*o`YU9;gALn=DW3#99B`yYNbAuwM6zu@KIpv89~i0fGU z!J>Z0e>iDoJl7&~f(P`>Mg8)fu;7ou#4P1%yeaHH|3|)gvzFr^sj8Q9vnNQ%$i-#F zh?yvTaF;6Jq89>qoK)h8Qa-8=MgEuzLK);|KMW4&tn?l|1GQrNzkBLog`9!UrLQ}N zo=g!q;D_>ct-ytX*9U>9SH)Xj2!GY%RG0(J2U;2|K+v)D*4m8;t-J0$e&noBrejt; zKR8nwXCYOy&dW;FzCp-~tV>at_$Bx!DiZw1$j6WO+`}>P6u+xbD2@F$=ORDTUI3Bg z@nXe%*v`Ok%9q|68UrS2X@0+^zZBJ90oyrCdnB3$2It3o7AF##QWtt#p8wtli^kzZ z_#0@2pQW5XW?~V@_;Y^{ggM@G=$0T1FnAxGa_AMyhIHYAl8w)Sjf)B*e|%B%`@y6< z8pJ4`&XUJG?Sf3eCeU!oKPDbvvhUk{(CAgH_EA9T$zQTFK$sfx(?f$#76r24YzrUlEL`8L24btCq{$!Dmv!|mfWA5u z(x!X{1CLrsY@k?f>$T+%11XAf2q+>8h_kRv|B@<7{3OXj8d2Vlx&UhV3`{kJ4$*#d zuvP;=^NO(G_DE8N8)QfKKzu=?R?^jp1SPKkvU#l1{64&5lC7(x9|O}LP$jAaX}4yl zwGq;{voOy`(_XbL>qsVSK1(to_JSOmlQ4lr(6&9tE|8czWyOYJ^k-i882)?<#yQVA zw-2Bw8ij!O@rF9ZO?3`p%u@H;3q{WR0Zs85`G>Di=H!e2U1ZK%KyA0tCyUCw3>2_) z_f`>j0&K3U!^<3BM~mW9aXdeiz&{_@QEErxqVD+qPcH(V<`(&T)D%d*U(j`$aP6GS zqf#yqiQ`(SZS&_b84ytHynCY?ZtIvZUFMng z1p*xi?nfrP2K=_8Q#c5$@~d1YLFw1tUU9>tXTwgtXjeJDy%K){z@F)Kapb z&U}dSjE@dAZ}b=ZrT0st`-9iegqf!!hZ*Km*K;IZki5P*sCA$`Gi<^<>d7aI&dN!= zH&mkJUy>6elTk@VhIPgFF6|_)gS#uW)U!M;wOy^%olSOu8e*mBD7ZB-hmi=rO@yV9 zi~ArWMWeVK_=kr5x!8 z6>oFBd=6brwG>!sO8nj{*KB6q-R|%ErCo(sR@i?#zXo;*|MxbypJn0R@w#44VQJv8a5^K_YEbm`up%=LJlMfm^^1KYK}`>kDq zrK$5@KL^9;_o6h&HJsWyD8D-8kEuvdtE|`e@o&ZFZ#OEJ&lUn5Mx74?>|lq!=C_nxx%e0ri|6AY4rR~e1G@UMw-dgScAJh8SrnII3o zI7}Fx(zhn~mhsVpdh;mo@lK{O`qAOoZ8l8M<(jGcVpytNt{wsA?eG3#Dp+9KKUw(& zE~T)*%u3KD*fYmjuJwM1OG2Hyqtjla9sEMap8BXs|WuNphb>0fd$XM*Lwd( ziOQ$D9D{YmfXj`?)u|KtY97fUhV_2~p}U$N&<@&-@3Sw=!Ci2}Yhju8VJw%qkWrs@ zL8{Qc7bfs>Z%2hU{9r4v@*Vo|jTH`wX}?Lq>s2Y_AW|BYWN*%)+r7Wea;>QQ%~dB~ z4%Lducxn}{m|Dk+0uP_q>rh1CeRf$L!&(vm7_P4nEn_`Jm|D%Mw)G*P()}pkdcB-v zAucF6vTdz7uAIaOUHMh=V{Xf5dtvZT?b%^#8jKYd&2m*nT2_*detZhb&&RfDwQO4} zf^Uzne(9(`k*?cy^##UZctu7@>Ma;_Gcc-0)0=NE)K(7!i)Ls;7=5H3Z8o3~s*!J-m!*&*Ia z0zLKr`4OX?7A-OYq_1GTq)s9(wzA5!7SYK!d-e`UV4Or`Fl17alJP{6@%u`I+sau} z&}SH{ZQh;-9hx?NvVOfzGVyBskJ6HP2ntd)sr)V8C?ry$ChPpw8%yUdPs+-usPQCf z)+h&>Iu<(1Epk{aETHH&VSQ>8-AGiTMm?`IH5;|l*{k<-cikjWWK0Bn29j7dDj-6} zR9QJjnw0XVF(s0x5Co+>5-B(!H?hS#ZUKJE$B-dT$x%W z$=Kvl+*laZjxbLwj%~zU>$1DKP?=25?5o>{j$J;6e-uGOzYexE_?;*GE;xg;%N2l1 ziD|0K`}WDA+rtTngTrxIDQcp8m~>#J*w%dV_h)AqL!)e42XCx2LL3ar$IJ?g1tgY= zlA9YQUEVWeIom3>k?JWL`~fT^pU_Fr@Hpzw5n4U(!pcUq{D@pQi(B?az13b(zlB7m zkWfNqdKM)I-6^QU5!W-=I4l0V$kHL^-w%ULdc9w0^o)Rd3&GHd?$!Z)H# zFiaBiZ8BYe6deC&7bIY=Llqq(7wINRa$g#Tj|GW=TX!R!;}Hv)HhIOqw(E2weesdz zbg4Qh7IR7>Un&vD;=6xL=GhuGG~Uk*4js}9;K!w-^vbr8Dy_ho1H%lu90}q|O)n0| zMAWLH8k?tO2%&IJ({&^)wLGRKp30XisO4r9+&I(?Iu_>E8PZki6X?!FV>6;?a@rYL z;-N!d^{Z39Uf0~tk(GZhq)EGqxhKldP#iQ*p-+t~xd{nw$@GLXCoLb?mW&P4km6-~ zc~A>#J?*Y#-h$T&{!#XAyWZE|7F;?ck(WqHR zCh}52E($&PDhn<7?N1g=CAELnkdY1`vy}fSJbR|ix$lfR@O9iK3KuR_v~l5%hCuc)5fRZ>$3eDHLj5_K`_srT0mzJ8mkFc1}%^kV~ z!Tf7)tE~xp*f%mW<;E$?1!>`nxLl)eVWX4AS3zAOMAu6Utzg8n1mIhq&YN=6mCg7kp| z`4!N{v9rywtJ0XuAfU9b$&Hq$i7$yp9RkrlHVPqxCKh0nQ*aP^dhTy;ZyD@%UN7g(-rnBTPVs;8n=d>_3Z*kx{2@2p zuLmu*_}5UMrxUI=V`QT7=wf;#Ee3Jc%5-d(m1T?acYCVjifz%#5F#gO$HEuqD<#~s zDjmu8(Fani4M5kTf!dRTjVL$XQ2*{KD%ag@1=yJKk8%H^>9RvCsDEW5Pu5$-vopow1Uwl6Roq(y##YUKR zns~x+QSXtGQ`1r`mBlEuzo2cZxSn-3-%HwcjQOY(iA96;K&)3Gw{JKQ)V%apuB0vf zfB}DP%9e4h#8*ww=Oux~>#T7<^_~poV?S%cs#P*yU{UmUxeOuVwu*^symOs3ii1qb zgyDW32AA$!$x8r_bBmRO6#f|(hb(O^uMmBIztAX0Tx+#bs>F@^FDCbXXh}&GFC!zT zB<_#kerMB9!XkFe=nCJy160QBwD?aJ@J!}}%J|ihU?|bN3o71YH2oyXb@Q~?XwV71 zlX8{$!CX`nG}-Xn&j`c;p1(JrQ zCI#B5ni4R;)P;(_?_nocJ(%M|>*7s+4DSE#BlsV^B7 zTvR-xzW{alZTj1CXzbFtm(6mBQ86v;hD-$; z>-o#elC?tMl7%yNo&CoGjpf+G z&8MKt&1_^$hsp}hRYuXG$pi+oYS>r6sWOom7e>yEni#n#LWukC&|=l!JpVTe;9+sYQJxm_H*>}#{YeSbBb z;7R!@_c^A}h)W!n7z=P(*K2uoF_L)#l==D9FulnmJvgcT5qas$H@mp?qqcTuA}!tg zI(azT^Zu$a^k;-QMhd&d;;L9Pe~q4 znsKb6#sW=NP>iYgTqI~u_3>o5%h%>-(VeKuKpoueu<)l{Ky`N;CAGB|Ru;Bjc?@QY zq`c~mu=`#0w6bG-1qhei4%LDg_JE$W{Df$Ww%8=cIQ8 zSi$dQ-?mB623z*%*5G=G8SeV%LCI^ZEp2T)5zg1qeqCtJZtLXK68@3fb5vRh3<_=ixH)r< zt(MF#@vZJ>XjEVf%6f~rI;5}etS$8aQ>zBeO>W0msXw{yO<>U7GUFka(w$q4uc;GK zRUIE6e|NgveYd2;JH6#Nj8|A#sKJs%2@4=9a7sf9*#2wCW$fwv$-+HH76&zEg+a-~ zM_$@GP$&hfy^>|WNYqX|J-38#{3K11+>0tF2P^=hM7C@GfbnvYAZ5=oRWGDePJ zbUIR+?JzjY+55}{o@}i0*b1iBgOTlI8%ZcvIeLXKlBpaG3_M{hkvdvCU;U+#+*eau zNZ;S#Zd62`+ESV(2eo<-3=l{ujh38OxBJ?_D&gSPWyDKGMX!>Rm3xf*iYgKl@aNYA zRTiq9vemBg9Vr07Hhi$3_hLQOE*J0F47^db5hKf^Nlz-cfe#(DNc;}8K$cCf2+OL8 zje7iQXWN_km5IBOi+i18Gd|TgD=xVRm8Wum@c;ojMIl1$N~F242=0@`9%v#qGICO! za&`_D#V9+O6rIxSRjFu1qZOy2jon#Q#RHYHd2%E>HZnA!hqsMQ`h2n<4F`$z)^;v&%SUl;`>49kqqn>p;6Q)7?-RCMK7-Oj>5@PpyLSCkuM|k*J$h zm1cs%vpsxqbaT2f1xajK`Dm*n)Ij+R8RHQ-h3F`wYvuCQ2e_iB*WUT_#$xfSJ{=jr zymvz&IdjDKB=UTzokhI6OFNfI?N(F!+s3DJqY zJKgv3MNlzG;1<(@s*d;lZkis?eY8{`3!F0wF&V_X&*M>V#1{!`D3iUsJoG?;{clXH zG9iIzV$QDz0YXen`}i%I23zMA#hb{Sp$Ng8F<`2U+Yc+}*RQz%q{&~BWVQxF= z%q;WHZS7~R%tR?kaE8tf->ExM3E5lkB2fwvB{9lyt5oPGixO_9 zqO$&T;No+MWxiDTtOOA4(7aewT$H?kJay#f4f^m&yYK6QHj%AmLupZ2?@-3xes67= zZ?XIZ*CsdGM2&Wp%ZNC_EM!Rag{iLwB~`EC@6oe6i&My1%1-T{ib4jzcQ|8=T9H7{ zf(H!&o>;;tS{5YY+U}moudd{IJ@-pRF?G)*WVR>)N+D<6|IaMZchiDmpqB08@WXQ4 z0nH()bf~=giduTh{=a`mqU9mSU5ZLtEZYagCes034K?iq?^B#4bWuGA5FP$D&oI0M z@Q`1XAOPE#MT(U612`dHeg;rRNEcpr({$+4D@aP#Xje)fEN+hd{P*5f)D}xL|G&K1 zYEj#Bvi($Q>q++FlOuVhQmk{(a13tw`45nLZ#MUXt@*~orMDX8Qn`(dWlsB*EBref zWPm6vuSv987CSRDAD?y*SlqqrU-H?%@g10KEURV-T3mI>;Zndpc<*~vH)GjN#RB>MKmgp!#b ziaXvLSxCn5vPeunk&F90X9mut!A$(P8Qr6h*SB`vM%IG)PK5}N247|27CNNMR52xk z;?6p0>3b?vx;^?OF;g@lxoot#)AgsdrlNx}9=ojium72kje(-cuSCO^zQoiVYNyKD z|K*DEaoI6`O-)PvQY02M1*cEJ6Gbo9UO)i=_OcojoRZfoI7zHVv3vP=aqG~M(a2~Zu@&%a zk8ZCbQcEi0wFz|A5+(rmz`5Nj zZS#-oo5272Koe@lPLfEfaYrXUC^R(OLO9A9iDL>2OaQ^wL$!W0JjQ&R>*sm&d7M*A&1Cg=7MMdou@=-&u2g{{ipf z2LFWYsc9=4j0@xvEmARw+S)6Us#K@yM<#S~nE@J;fkGEO0ML(lXrmM^SBn2Ny|W7{ zAS&MWp(hBjmc{O!U7octF+2P#*(ps`n8`1it0r^2vx%&ahlNAl{Lp*{FIUIxE8D>~ zM3|v1mmIKs|7jOLogSK8|5`5KrkKwDZr~uDJvN0nt@T81)EAjC;XD7LzmEC+J65h3 zB{$OkzE>s041O4a%CVZ$EZgRm0Pm8U^>Q!v-Ll`){wrytL*B#3O8e!%mY5g)N0wrH zhQFbkJUyEklF|j(i;-kn@pK$oF{l*x-U%;7>ko&%3G1Am2^sjqb#z+Ei&o)zqT$BK zk$-vqD*oF1ISBr@t9a_|i)y`^q@&i|8*eN=OnZ;z6nOgftXDCa`Sr6eoJilUDc(U|V zRnL@Zqe5*j=6_&ykDn~!xAo*_M+)W!cAO(s{PF3l$HhtB&hbcKEadHH4u5!L*2$9i zR$6$G)Aq)N=@JZD_HUj9spFsI?- z;M_d<0R0eQHDXwa1U6B`EA(}LE!qHN5HGymo-`iBPwah;b~13zcT=v!9{b4K5YN}U zx+!pNxYkYe?q>*mZ|;eG7JRq|PSotE)oV?Uchl2Zv$#)-Fa2ROFy>iZ`?dMJNAH%| z2vw#rSQ;NqJuGz@bngFUeXF7tE$VATto3q)A)c&7=_d_V6xyvCf-CRgxlUgHs3Zew zz#>mwCr))r2Irm@SG53>HEv^iSV7$h$Dx%=j=P-rRs4-pDUi=mXqmt4FW2d}D^Bowb1zB;k_(|(1cL(2-m8(^q zuA5G-Nge&IACg^r(_NsJC;!vsFtu9_m95#37AG(Zr{kpfsegOacl2+NzfeRJRq6o3iAhR(I_jCyRN;vLTKoR})ZF#=Js+oErt5k;kC`EP1|ayINPSv?IqmgW z!N1MzTw5!-n3yq1dU1JiGIk5$(=OiTx89Oy!#J;bL~^FPF40I-qH(!h{t>+I5WKv+ zRI1aM$S%9~GvfQdUJc`WpY7rfqstT6Z`@BLlk3cOWME9(nm)7h-K-Dgza{gYc6F}7 zjyp$=Q(M}r$%%PZRFqIoVN*vGXby)qhLyp-Hof6wd*wF2+tAqZK`nK6q7+j*eE`y-@d$s_Rq@+l({NPkbA@N&p>otnksW z!G*{MpKivbtt}E4*KfD4SB6WE-0wbFw5^4PKTMqh559%U38z|N4yey@e)K}&*P@Sf z>n?AtZSwM3mv`>`yyVk#U61qdB9RD3a%x4WWlT%~*7;oP)qw%J7(u4u$cYOIV#Rjd zWL^5)3TY+#coH3`4w(XdRrX5>{!`8q+3_@>oaz zb@}6sp*@+_fLtf&E;5Dhs=r+(D-X-T-_?#aSy|3FH8g(8RCR+D%Op50O350gMNdCc zlx$XB)*MM3o-AR)vaHB-E|l_M>f@bY@!bEMLg1rV4&mGDle>LMA2tOj3TGsad&N;ub=aNJXNRa-e32g zs{6C6_oh}4=GuGBImZ}NbY)k(ZWjSTld;=uT7vgd^@a@cdN;=nKe?YO%NTAIeYUFj z7E;2D0V+wlc@0j;NJ`oeuCmgsb~P0CE$uFvUxqI5ax%s!ve+Mu2ObeDxTZvgl7Fyn zCQas-lA-=lcN_iEO_JDHEuIB{qDnT;`9#s$SWr@5zq)$Y2WCNEM@P!8PI$)RD2m~z zGIU^PL!?)`Qg3)1&lqbist_RxSnw{5ttIxhwYA!e(fh7~&@an;S7gY*PoCn;XLyy& zFH^nGAW3Fz_g=_67#70c(7?;)jl&`n`y*nTe~545FF*+7X(orv0_e28(0{s={Fv7( z4xv~__obW>I2ZEjS9ydxlQexN3y=g^lzP*CGJB~r^#h%AFoaL25^}@y$-MBiS~tZH zRWimP@q>NDwx2@A(_yC=K7+f%{y5@iIRVmx!>9?!4;N|AgTLgEtl|=%$ki#6c7+%a&^HqHV zx6HuphL_U6Pk&W@fq?MmZRL9egebNk_}l4MiD1b~1O$VRdjCkg{^xF4#nw%1f;-(H z%pi^ERodW-qn5!xV1?Pw9`Z6U2K=+e`XBhj7j`iC0#|T5bkqJ>BE9N6Fa68J^~=9zzd*J=3&=5ZkyvHmR=0AJz-YVkH@Y`?`q?P0t3t86M+ zzHC!ZMCUNPfxdQdvGE{izW+ZGD-oPrqHUCY1Ue(C2+$fjEOJxE}L!f zDMQu}E2WS=zh3POjOQJdW4jY9Ipg*6wtR`uP9C7jCx97hc)2%KtWy413gJ5PDN{&H zO!R^^EkBeZGQC1Zu$dAp$*B7fB(#6_jD^f!IS21VqZbG(@4e&UN8A5b{_p=Sx;UkF zHjm)a$#yoME|-7eO{3m{LO+Ef54#E;gPK$k$rQu~cFyoCR@B?o=#?YZafJW;*Eg$n z&Io0;Mc~LVampCe2{LvyWKgy3>Uy8oKY zPbLqO4pG@bxpRKbRqG`V+ch*HB1Cxv0qdz`VlDZ{PwVz&@sHTh{$xhscOuD8@_CGX z42<-6Xgq<<3?aGVXHL9lnUvvGF zlD;si!yT3k?x%uyjWhJHPRgj~WLrf0!!nHmiVT#5t7pkp2e`k~UX%4Wte;MQ6LS@o|@c)QqNdy_d^9dR{Jve)h-hT zt(Juc&#W?ucH}n-j>3%mx(*+*lQT4M;<`sUEA`Q}5N93^l50|H54oI3D7L;}yxA(v?SvKdxpM`;E|*MHq8V+3z+rITQycFA zo2t{q!~2mjWLn^F?O6Hfe~MWgMOz3~aG5Xx{0~<99WSEyCgpjavDg5jH39T`n|ZB7 zlXv0)o$_cyfS@;W$9oHoMNcfLV{hdSK(KJ(ccF^-$1a!KNtPZCCx}Q{s43AtcHHtG3a7%(oF1^Ctt-@AMq!zd`cznLulYH5$v76tZ!+*EK z=!0d@1Ua^!XQtO+KbnQ6G%IQOo1;;96W>KRd_3NhK~v$6CeJp<8Gu><@Ntv_)^Jy4 zgaB(JyF`(#ORV+Pt$$AovD6%as~^BRPwkoazukZCXFlB&-xaE&KVxBO`N|=HfoXAi zlDDrR1Q%~GjoDZPQ7(;>uSCl5(%#JOu&}aBA2P3i>2-Kv>i>-iCn7g~(!|ANykce= zxZ|523F{RGPV9wv&=H1P7RI{q|9@>D7$zk*mk@kl4LtLDZ=n#@?ah)Y&y zSVZKdVNe=rM!LoqEf8C{EE`LO<-^Fd?taRgqo^PrF&PFLsOlDFa0fVtULLI=Q#p1&8i@(QBWvMROietT(o#Vo9&|-0 zu*46Zm)rjG9S(?ZkFSX9Viw6uPY zFrixQ6A?m}+A|XkOjOC{8>Zyx#PKrJ2UXZLk|*O>gSO|4QKEa59@mTa-yd8%_%Xcp z;*2s3OQ!cge?{$GpYFHY%_t(3_(cuxj2_WdG3RqS5=HcDMF*ne)Ua;FOu}Lxi*?Fd zl$NVCX$->QI`^J6Q&8|~tTkVqliPVkoFWs2r=?-At;v!igEc>)bNup6X$UX;M4#_@ zGatKyunS}q+JrfB9M-UKIS~_@Ar6UWZcfxj^Ud# zv+YuulsFU~2G-Wu+qXRi3e*=z3pA`wsnp`98$faD7QH;uAE9l0ZtUjLkIz{ASl7Qb zQAjym61exp`#{2zaW^;E)YO2_&n}YaVyW)1(>};hCNSHP)+2rVuvdg@xXmJ0YK{|s zpvgKO9!qa(7T`8(G@aQeH}XV7}XIC77e}wepI9;ozvaWgRxHbTYi)^&sXx z?|Z)ailGcXSh~QpYDDY&P~3`&=W-x)IQP-}xFmvTw%OC%paWe;LvxF)8=JTG@Ny;) z>*4fxm~qs?-7d#tEJWdHrMS(#MaPl;Nxh)2IK%Tie#SXN>eO4U&TA8jXS{*btGb*# zL9YcV9nTtx1`$fnRF>{v)%xdwmY;IU6GX3g?_$Hd*v+}Q4N6l~4k?GV7^LB6p8xPW z5uF{PdLfTHpHxnap{|cMV=Bt;+3R8@3;PN`G7!9nKJ;bZuf{g%c z9tK7;pfM#{mw%mw6f08*`KrA38y^T#@=r$uTr31#y2_`m_NRS?p1#}N4ljG^0s5nj zpUm|Kb9I9wdN=Z54<}=W_q{5aOAfzz@;!soR5G?>sEK8gcdX_gr;lRO#SU{Kz0SGi z?(Dtp7HzddWRY!d1~ad_j_FUGEZuLn_tnKkX|W=0Xz4J$QH7WZnzZL*%<7N5c?KyX zt>>%lC1^&DiR>qbsHw4Uh8eW?74c{I_TtfZU+sS?1RW@eiz_k{a=Uch+jY~pKX4J0 zK4T%6^g4h}e@KP`2;2<%iYA3b`cj|eoQ{^(f-sqqg4FNx06L9mY-9FrCKPQ`GzRy0 z@pL}4&Gk~|bO;z~ZV6d-zww{B0>GzYcXZ)h9k^LP6dw};=-oFWA1}n0HPpy6XHR-- zb9z%CPuJqGVHR0y=+rnr@1)lsu6dVYUfG5x znVD5PQ*m>R( zICu-0WmjB^sL?&>(}mYfof+GHSImZ8rO&tK)aaWy6gZ36GN{=l| zrUsHmJYzBDVK#VGdwQDH%0kIK)tlOOdp*$E9qb%&_35I{ISnU9S>U3(Yi2VXU)_0S zC;AX_Ygt9;eqR}AgvAMddpo&#o)|Z8*}IdGju=^u+#@bmgA#HHw>raf4h)!&Jm7-b zIUIXW98BM}J%r=st6dvta>xiFRc>Qqgryzq6D8rlgF!ltfbDE^e2m<)&TAW4q)bn6 zvdB|B`K4WRagAxaGMo8sNPJyM>v{$r7_kIv|KrOU-n2-;1bHdZ=ygsbW?$3{R6W#e zY#EMZ+pBRZ^03d~K@!LW{CLPR`K8}l)e(|2(}QvldEp#x%C=6r{%)C)GqHna}11?7GLOqfa$IAMwZwXP`>vXkyoHuwE7+6MUtd5BNe&OhFu` zFt+71r@AqF1tl#lsRmDT52ca~cYg;6k7cW2Xn&AHA|BYu0^Fr`O`n<8MDQ2k&`@p< zYiN2-IG(?EKcx3{6U$*5Q>?8v+r5DlhqP@cd=$<<%BmP1ulaMF_j`0fmO+6!@`m#VD2W`{ z4sV2Pv%sz0q}nAgM9n)!b$_~?INJC1&C0&H6Mi;+3PMQaMAXre)MFp@zyrR@k?Sne zSIk;KCE&ND+LMTdJr;lld&>-MpwJud#gsR7i_XVO9K)F!Jj2DZgbPjk7k_6B)UiBn zlyS|uW*4Cj7c$!>o~?XTwA8*QemE&b@4~i|q?CXY@R^?u!?_fz!C3{|Od#*%#)L7T z=uGg2-FCp@8;o zM#=G|B&qcldT;z7_l$+xk#?1VZo>>VPnGj_M=T)lDszV@EVe5D(-12wP(DtE`Ew}T z77-?1={Jk3Jc(4O*ak9+mH&bEely^uy4}h}))q7;ko%UDJTGJM=U4uW9gAHaP|4xO zZg8$x{#HCFb&y2$c43}Jj*Ww0cOQ?v`_KFv^MvW-(&N_3W0B6aZv!9Wrs$g=pn-&% zY;}Ko(1m39V#7rB3#-L?Q&A3hxGhp^+~qA>QwvjycKzftCN9IoWCVYTkedR5fC)xq z0D!j93b&|;D#eO%f>Eu+8FD17Wi(c_zqP#pPl1t#8NaZdKl1wF973ztPyC9_rpA-` z)ffR{rg{z)`3=!%7(LHeRGCA@I#vxpl{2Kc`VX(PO4CabVb0={^JggoH#5tO5FT5T zLG$AbTuF2xiK3f6C~U-}CbTS79w#@YXrFsbCS$iTMSdbgvXl@@@%GaJr~Cc&st3dk zQ9mrzb(l-MqogOpcYoRv%BRdi25m+sXk({@m=20l`a>oEa>RYQHg~-{TX&3)@a?@J?0XeMr5^+-vZfO2G@v^w`JpYFkoa+};XobzNxT5cO=m%6vRK z%pO>1JH0EmZZo$beW+-B#^L}z@cn3%OXH|Bl}JldXL{ZMR`4w&DXnLh0cDmlCW8u%{z2QkDhUA9U1WE=B?(`nbaIx(xU5%hzGx|SjN4exfc{Y=VM zv`WT3(UX=F7Jb9R7$}@glG|MT-1-qFP}eV+Q=QB0ay3q*qblGm*5z&Nb<3e)DTAyu zf-FJbr0wQ$2rfHa^asi_&3${uVq%-&bYQg%OZ%bxsi8}Sb9)PN)Ka-PsHlCmvFUGt z5^-&oKjj}`0e8$Jr;2Bpf>PI{V{uxkurMQB&HI`xQ1y z5u`X}ted*P59TyJD5fG8@m{S?xX)N9_X!s2Kiyt3SRLT>r`I)Bl3^3|T{azxdM7ue zdN!=ilmoZ;nj2@6A7F3YasIZnB&Q2^a^R{WVC^ux1OU7A^&3r@h3K-ekzR8i(WDap z3=5BlNCD%#_aCV|hr5neU3O=-F7isf58{{^h<){k6DA>m4OiSx z=!brIbtGrqJJd~)!_-B1#wC)1PlPKQa&zO!J~pv9jmMJrUEWbkGJ+7t#Pl#sL0TRt zoV=V6=1|89D^m6{)B?1Nq35jT5`%;ZWrM|g$7{d;rKUyiiXGbfb7DpU=JN3jP0qj$ zRmh*&M@3(){8D)<^o^JW>RM#EDmnRY&Q6x4;d7G*;?k4aroi3eH2YI2Pou6*fcc`}8DpN{Zs#Girue6L^NpM2> z^4nwAQ8rb33U~B^ZRG5?e^YST^Le|svEUF{9HS_jSNthrg%B51X0gx{tg==HhL{h8 zXfhiH;NqqJ;0)zh!JJa{5*OErb8&z4$^KPfj3z&fd7@@&q{k|iP8caI6)rX|Qp_AcINy><3NN7kCpY63!{CZbOvO4&Iu(&3FZ&*``Cu@W z?Q6{KN+IJcFW+}8VflEMd4TIgcY8aaU|o=1w1{iz_ULu*R-EHBr^Rw^XIE@CNHE}H zE`4X?Gdj#b&v2UV;eRn{;_Nn)WOTmqU&MlxZk~tG&a1$?!l!WkII}pbib`3{&bms z^m$5J(=%~`_`|&_O_yG*kn2XT`b{}u5>Hb(v%v3XENG6iukLALaLu5PTZ0-4hsA_0 zE|&+*<~OBDdmg(CPdC`G4P(u6j<+4 z-Ser_aHCSg(`KPWuWdd4!2{s?iu4s-A$qxQ!p&|`%1REcIi8eHVpF6FDmgzBE>kfU zy$<7H%7~Is(n^s|&Aj?UX3O->E``8#hCGnAB(L@jN{fvN8FLF zRt^@d;Lc~$MK-^RAvKQ_0fS+fh^qZsP@2wCEG`s!(Bn_tvj^OPn_SyU7Y zP;bU1Y-d;>>dD3(uEi^#T$5zsL!PckdBqBC4%=^tHPPa7;&?`7$i=R&@dWO+z1$v` zrnBrz$BXhwEX5;hu8?7@huW}-Wqh;!T?;Nykt3sJhF7Lnoj`vUL7V$k4M&8SfGy0Q zdk*Sw(4CxRqGwl8W6XSs6aNiiCB`nU7_BjExmLSgt!3 z=hC8fFZp`o+J!Ysy0tfN5Nq^X1mV)nS{r}eovL*&nI9@W0bZyK1vrER$BcxVpC4y% zXBPXNjb$epqh{7*@YrGbG1Q~c%TWxA)2d)M{gOwn7yoi*$$ecWbGmZ-hnIVHP3e?E zje%|H{!UYB%KA|}OrWtyT?+Yv@<7nYvC+dSwU5#jQIBlHp}>;I^ZaNmNR9KZmTgAm zgRt9-H4pBzy)k{0A*hse8q{3lPphrEjU{Kfl=*&obkg?Kzq1w6Q+Z}RjFjGueCs=y zyN8Qz&^OPmnsoyPiO#OXWS_QFjAPtQHdEXZ6C?@lpsKJDL2|F&(z@l8#3XFw$h5`V z5%Y3OXT{={m0*8pe~Web@>E)pYQ^mpkZlZ1zYm=!tOb^}-erhlc*=OZ)O15Fw(-x# zH+JMKjmf2co0Hb_EqDE)i6b3Xj`P9!H9P-J=J8kvx%~~8<5B+(+Hii}FngLlN<(hg zHe;jr&}j9PEjmGmskU{wvpO?VJB#JDFFshRY^7Jd*%zTamSA4IuLTR$aa3Ns??Wr@ z{%jUO!28FIQ&W?Xw$^mXi;(&n8hL)1;Co!HzO{P?dotQ{>w$C3|MTn|Jgtv+=waP! zgiey=%Np#R6|a{zK@~Ki8g`!NTM4x$E8rVZcE09g4)aI|-saP-3};dK7&?CgV!I~uaa7JKE9;}8{Xudb3Pwk3YkqDG1M zlWPfUx>#Y5^+Tsdrc1VM*VAp)NAyPxLa(6d`&&x$)Fy~@5}mytnizFf*bgC41WQ47 zE{k5kwuyy}frX6>Td8+ZDpB)#0;q>sJg9CmQ*nM`X@&$4M2z*#t!(TW3&~GJJW(n5 zOat3_u+jzlYOTUlA}Me$B4sBRSd&}-k#rgK7qn8i?Q|%x)bt&7Npy+@7th@H%0y8t zF}b5c~U;zjjL^O`oFL#CYJL{qKq@$D}Qc>j_J z2!z4S-9hI@YWz)Bit=%A6eu%X)`awG+S;D-618!0a4J>l!kD@kk-O@*Gu&E-;62kk znF$A)LCx#Q5uG-7ZpQtDz_g>-_k#ri!|5s-T6?xGXN&%9tSjd(L8JTYln#m`2QY)Xvs?GJ7A_x(*TEj(03VL(SYkj)OO!{}UHHbyRJ~ z8@D=OPN3OSSW>_p8nyg zuC26aPpL{VXX*!4oIjyXkBkoX1qjao(haLG`V8vw6~n|8m~;G+8nbgJQe;`(82_z<_bCN8 zcBVvmSc*@W^b|9+*qTVE_|mUC;ztwo5agvMC+^ zgwm>O9V@EKv9UReqOH420qGjSc8yc(zoiCK_n}w(e|}DnpS3FT0mReZ_#4LUkm?_n zrswQ(PD}=qmRs>N9WcX-_edX2@d7`+MB>dc+oUgsRybqEm3TDcR- ziW=QU_k-KDv3?|tmr4%%Ec7~~Zs9P_v-7V=f??b8lg9A;;Z>*`<2K#@-y@}TdR)^D zn|FV+8IB&q>X<1 zVus5(eDCq`PLj-peTFjXOCHPCkjC9AnwG*5MXlYmGt(LROhw#_c}p(xkMUWbDD*9z zWKR;~rx-Lx_f#}F1wXoC?b9YWF=I*4oZWnpKdopZ2MyTVtW%mLARVaCrf(-Fuh)4z(0;o&t61Foh&lvfbs_ySb@kA;3!Lz6IcCFOvRQVj;yz z&rVR8nF#7~+vpCKN&62rMbw^i>vkoKDYCS$QZG3!^Tb3YH>h+2z`JjAIK||YpRvd$ z^Khq0#7U8LiQY!i1s4@jtiH}L2J14CgrIrFKVY=RF&90x)iyB}H`j^BDk9muRAU@C@0 zyc?Y1d)(|?WV~2!z{i-Azr1ii4F=o#lHFbL-NZiKPHn|X9>A4=^=r1f4)cu22jcey z8xkh>IWg2;wDg%r<+w z`c8grHEY#xXQ1Eq6l@j5p5JZX7?UEyR6b(`Ch-+s7rEMmPZSWNz)TJ^2T!H1+p8fl zO&N%(C`7x^3FrRMZk1j`(mk#0ShbNkc^!J@ehQ7Xeq1X&?Oiw^cUF;wTZ0$m3|m`+ z>grAsc(7);V=I%UHqnpbHBmbe0tvVP)meDkG~GA)g#Kp0QvNJu4haOe&c7#VuL=23p86d zjy0?&3TQMH>kp;qc)>^`H=K#AxhrAUNIHMA?fki>SvWrv@_FXAr1G?SbOrFMVeMJn zO^>(lcspy)5tMtL)Zz^^-*0*r!ih5aU zIV@cd^Hi=x8Al$n`8)M%F?s1;x@=cwkh)!I zxOIa#M$65frZm#gORRJS+er`~P)x_wxb?^OFv4#LlTkYzViSFy% zQci>rQXqfoB6OIkl}tc{NRz|rEXb9-qS!M6-u^OqEn;iB=0bxDDVKwd%^%W^Fh|nRH<3GohDxcZi&;}6 ztwH-gX}3?e-!5VH@1fi-Il(7XDQl`6j)v_Yf5QxU#)7WAgzne7p9sHb(Vh;89!2GR zQZdM!-hFmU`02Q%0#s7Msy{^A)WQg7F&a(PP|?;@`k|&xSaFuNl&PVhtc;KRWor{S znmO@9ej|!Aw7fc-WQGEXUG8^9^PjA;+Qv#6fn{S1E+M2<5#x&A*;&jC8@2O%4H$-b z)k1be+e zDEk>SRqSixcw0I$xCEE7UgIade*6Cbsq?>)`~L5+O&5kRn4Yot-;-6vcQ=pVyukJv z9~Qv*Gi5Yy+_a04>MguY59gJ}iUcbR%x)gRMF;Iuk+EdK>zqPS|L|e4LiDi<;P)E5 zW1oe8{GXtZ{x^EQP7+{9>5FvpqCVwV2!7VM}w`ZUw zhhVCqBkA)ps9Gw|g$(}lJ9Y3!&+&=<;2hMg%_BI8wjDSGFK<{>z}L}7_`e_ncWxfR zFUkX_(v>Bp2qN8NFTAJDi$fDa(j976azm%a0IkJvJsv#W(oL`efoya#x2IcIC`eIlx_D!~i9j1M82anD#3&Q{xf7{D zwL|RPYA_eQ+~Xkd(R~JzZQ|fiT~!r}N)ke%uOj~NqBjX_>izw9QBg=!ZP7M~@{7Oi zvH#AoT9KwqV`a~ba1N)~7Z_H9-q2k0^@ za)gC`w!kN*AYJO}{W)|!#+>jJoi8&H23g;A;6_D4^0BEoNZ8=~2IooX!L!YO0$GJG z!>(>7$jhS&xTPw^lg|YHiWJjlp6uXkd{_2L{7MuN-=O4IA87gw3wV^4exRslIMCnnPMCHxEwKU5S~VTkZa&3;v?bbtEL zjf$kWOLzRxMMB$g8jE(6{-~14s(b-*^mEDJYq-Qr2Lnh%ZZ;(M3yb*U#?O&x1_u9# zCb;O~7RB@zU`5%4{m}km2%Q81cxIf+`en%BC-3X=aX`#uP)Bs`BUcB-Nm}=Zz!cd> z_a(O$Rt78cw2R5lbLNAlnTn%luTHxN;6q^WIhzH3FWp=_4u&v?p@T@#2(g2^0b|kV zNR5W_z#4dUmx@xYREUC)8P_;_*fe^?u)Bx_zOsxwY`w5kAJGI;=J92g48}K2l#uo6 z1@)8XJyLxZ@aX@xBn(wbhBP)PC9VCOSFSwaLo*g4oZP;0{$qeiSTcXUA!N0kMz0Fp zAN^x|;oC7&?Wi{T?ky$qjHP~vVv(#!YEKyJ@y#Xee&mH1y|T(>3=d(eaf8bK{O#hE zL;u;ranUaHV(mO|94==tcGQ=cQ5tSGp-uNh)c0E#Rbvj+fLW@;u2x5aj_5RPCeoeh zik;sFbRZEAu>yLL;JW9i!gqQTtaFq5-y0%%zjH<8_@S3r+z&+$m)Be;E>{~^W&H+M zIli@F6M_@-(_Trz8;;~WtA`@SB5V#)?@0Z2MYe<5K?IYQ7)Yxwb7mLET2E`C;%M=8 ze1Aq6S)Q@5^OC*Ti6Ge5sk%GTh{Cn7lnb30!C(FZT9!1Pv#jyw>SjfD+GUPMh1=!) zu~}W;*LKm>;H}uW3X~EdO^dD$PTKvbP8P9UkY&JJBuiEd+(077CvS|AGIof?GAtI| zqMnFz5Ss$QN3X+)BV*bA>s^+Cvf#Z$`mHw^XbgbCkn@T0W`xXl? z_M7072Mow4N}%^5jgrUo8ic7)S;s4gUmbJt?Wvw$a}c(+DnzKfi_WhjIIuxX=^Y1w zIi7iZ(Z73SN^7$UYvfy9UK5PqFcbR_m!NKAiawpEYW7$n(z&@#*KHz7;ctaOPp9eG z^=^1msu;`B+{`FU-O?!#h{ov}QCv}`^-qpD%3SkP#W>BtcEpj0w#*8h!}pDF&g1=i@OY*^NMqJ%223lva8|Z;NxV_6;~t06;O~S*0Q3J8x(>4 z;Q@_0!HV3A(_L*hN!-9HrWl>kT6VNL2MT6Ysb0AfaAAcFw}H%7E`mv8YCVjrA8FgX zo*X|Ca!ph|^l&WmGp5Drtc<6mYP_d^dy1rMNvV&u8gnr>_Q3EDIr)s=C`6`aDtsNk1BnFeuZMyZ zu+JDt?&oSTpZ5snqRX9!J%Pt4-@`bRxM!>OU82iKTykTFTC*rd>*_Q(J^w98$4XE; z0?4edCGK4AmJeC3KLc-0Jjk--$d{MbS2nWN<>r#@*cJBoubMEg(-f3Zf4t!(EXIta zOsaF*4TlLl`aWHSH*IeWN{X@pq~5{Ei7ND};Tz+I72rHeC!J90;%IPjL%>6{s!!ZT zg~a3_~?ORq`e0~ z*kbk9^GvzNz3s-$XgBaCS8_H^m{tlgZJvzEmwx%?i!ISWubZvdCpxELhN@`49vw1& zi2ChqQ97IKzk5X5!>(6JWQmcDJbDAIFfJholFd|{#L<#ndo!Cr`9#Xz)>@P`p!H+w z$22Q%vIJP|Yaco|ADvp113T}c>kpQW*nOSXH5T7HE9IzJ@-WR8E7DoU3OdVQM(rz7 zi$uL+?B|v{v6%oYE3oT(5M&f1_eI@TXPycDjV}dmwGd<}?iGMsx!ce&b#ckuQB{b%b4}NFZX!<)$&g|5U z8g{<2(@&#zZw~IoxqB%n;YuBNjeUdj=)5*eK?r&2OS3;P?*(XQV=M$l z5?WF@vNetU>5A_;E?WJ*r14v;i)KZF3(Jcd$wpI9#6ezjVf#k$n>)r%1e~s5jY_QH zl(q`yC{t^0*9(LFpXx|&UvViLS2PxV{ki^e-F{zCK}xak3o#is@)_?F*Rn_a-+xMP z*=}wuJb`}JtQEfqNL3K76=uicAFs;a8g1h~xugzvdU(d?eL{N4fTXaW47JpN2EnaW zBAXy_Y4B#uvg;tA^`{_3PEvp%5^1wRv?K*PA)%aIOc&OB)xwPaf&f!AAujm@F4E+% zeUU!{+e#=xTaxOOk*(2$5>j}rYCo`|_+18Ahs(;!#>U3(@9*vDwEM8v$%}!E`ueM< zA}R0K6BiDvPY18f!OvL0>EncooT0;}iPWS+tke*BDVbO%vDa#tg`bJ=Qin`phBq%= z4Yb1pNMj}A>*lpknq-2xYDzEhZSb*B0^bpbhlkG$0WAL0)s=@IX%v{{nlbe@3%WD+ zY4F65GgPpKsi=n^_96&GJ02sFKh}J}q_5;!3dxp;VXFBWgc|-CN`Q>9`C*9FfjoT- zd5%INMgpJ(1a?Ym=Pyqx0a=i4?nR|BGjbhBJZ^tm?IqY;bS+GIU`iDh8jgc^kT#m^ zxdxEgV&#<-?Owlc!DsrYHR0H`LI0A44Q_)6TuUx2Oz92I@X-?>ZUj>mWq+ooEazQi#^Aq*C5*C-cw2hgr`roMIR~2RsxV=gA+ck}L@l zM$)>gHrRp;ax=!F9_p}hxt!a z$o0dR*d2Y-?U8AusCC6CVjq8hz!!I*&oL+Rj4U(tLmiN}FB)Nh$m>xR#@W@ri%4>% zc!=)&6d(xwbZx)eegkA|b%iHOD}#Zbd;6MWX3E$r67hIc7XJO~%B5>Qg%ZO-&^Ll! z>^vn@KXW6T6GXq_P3M0UfV|@AXEoAY8%dkSva0iz3V4cxkm;uw7uJs) zrUp-HzTs02o;8&B!}H=_qwT@j61z3EsPJ5Q<)p1<*L)~awIrEh~YNhVjIl=uq$mEG)ZP z35%;V{<444kfwi2ir#(^6(l3==KOj_J;u!%twtMRbjUWxVDqyOZg{bs5rT4_cXF~7 zYO%6N7})uhYB7mIN((B$7S)gG D5i=v< literal 0 HcmV?d00001 diff --git a/windows/device-security/security-policy-settings/user-account-control-admin-approval-mode-for-the-built-in-administrator-account.md b/windows/device-security/security-policy-settings/user-account-control-admin-approval-mode-for-the-built-in-administrator-account.md index e0e41611ad..a298ded405 100644 --- a/windows/device-security/security-policy-settings/user-account-control-admin-approval-mode-for-the-built-in-administrator-account.md +++ b/windows/device-security/security-policy-settings/user-account-control-admin-approval-mode-for-the-built-in-administrator-account.md @@ -53,6 +53,27 @@ The following table lists the actual and effective default values for this polic | Member Server Effective Default Settings | Disabled| | Client Computer Effective Default Settings | Disabled|   + +## To enable Admin Approval Mode +If you wish to use Admin Approval Mode with an active built-in administrator account, follow these steps: + +1. In the search box, type gpedit.exe. +2. From the Local Group Policy editor, navigate to **Computer Configuration** > **Windows Settings** > **Security Settings** > **Local Policies** > **Security Options**. + + ![User Account Control: Admin Approval Mode for the built-in administrator account](images/uac-admin-approval-mode-for-the-built-in-administrator-account.png) + +3. Double-click the policy **UAC-Admin-Approval-Mode-for-the-Built-in-Administrator-account**. +4. On the **Local Security Setting** tab, make sure that the **Enabled** radio button is selected and then click OK. +5. Configure the local security setting **UAC-Behavior-of-the-elevation-prompt-for-administrators-in-Admin-Approval-Mode** by setting it to **Prompt for consent on the secure desktop** and then click OK. + + ![User Account Control: behavior of the elevation prompt for administrators in Admin Approval Mode](images/uac-behavior-of-the-elevation-prompt-for-administrators-in-admin-approval-mode.png) + +As an alternative way to carry out step 5, you can also type "UAC" in the search box, and then from the User Account Control Settings dialog box, set the slider control to **Notify me only when apps try to make changes to my computer (default)**. + +![User Account Control notify me only when apps try to make changes to my pc](images/uac-notify-me-only-when-apps-try-to-make-changes-to-my-pc.png) + +6. To activate the new setting, log out and then log in again. + ## Policy management This section describes features and tools that are available to help you manage this policy. @@ -67,7 +88,7 @@ This section describes how an attacker might exploit a feature or its configurat ### Vulnerability -One of the risks of the User Account Control (UAC) feature is that it is intended to mitigate malicious software running under elevated credentials without the user or administrator being aware of its activity. An attack vector for malicious programs is to discover the password of the administrator account because that user account was created for all installations of the Windows. To address this risk, the built-in administrator account is disabled in computers running at least Windows Vista. In computers running at least Windows Server 2008, the administrator account is enabled, and the password must be changed the first time the Administrator logs on. In a default installation of a computer running at least Windows Vista, accounts with administrative control over the computer are initially set up in one of two ways: + An attack vector for malicious programs is to discover the password of the administrator account because that user account was created for all installations of Windows. To address this risk, the built-in administrator account is disabled in computers running at least Windows Vista. In computers running at least Windows Server 2008, the administrator account is enabled, and the password must be changed the first time the Administrator logs on. In a default installation of a computer running at least Windows Vista, accounts with administrative control over the computer are initially set up in one of two ways: - If the computer is not joined to a domain, the first user account you create has the equivalent permissions as a local administrator. - If the computer is joined to a domain, no local administrator accounts are created. The enterprise or domain administrator must log on to the computer and create a local administrator account if one is warranted. From a36ff99ce02710aa158b8577cec71f165ba3c950 Mon Sep 17 00:00:00 2001 From: Jeanie Decker Date: Thu, 7 Sep 2017 15:26:50 +0000 Subject: [PATCH 21/28] Merged PR 3068: Add support topics for Surface Hub and Surface --- devices/surface-hub/TOC.md | 1 + .../surface-hub/change-history-surface-hub.md | 6 ++ devices/surface-hub/index.md | 1 + .../support-solutions-surface-hub.md | 50 +++++++++++++++ .../surface-hub/troubleshoot-surface-hub.md | 2 - devices/surface/TOC.md | 1 + devices/surface/change-history-for-surface.md | 6 ++ devices/surface/index.md | 1 + devices/surface/support-solutions-surface.md | 64 +++++++++++++++++++ 9 files changed, 130 insertions(+), 2 deletions(-) create mode 100644 devices/surface-hub/support-solutions-surface-hub.md create mode 100644 devices/surface/support-solutions-surface.md diff --git a/devices/surface-hub/TOC.md b/devices/surface-hub/TOC.md index 74d61c7720..82f4db6262 100644 --- a/devices/surface-hub/TOC.md +++ b/devices/surface-hub/TOC.md @@ -40,6 +40,7 @@ ### [Using a room control system](use-room-control-system-with-surface-hub.md) ## [PowerShell for Surface Hub](appendix-a-powershell-scripts-for-surface-hub.md) ## [How Surface Hub addresses Wi-Fi Direct security issues](surface-hub-wifi-direct.md) +## [Top support solutions for Surface Hub](support-solutions-surface-hub.md) ## [Troubleshoot Microsoft Surface Hub](troubleshoot-surface-hub.md) ## [Troubleshoot Miracast on Surface Hub](miracast-troubleshooting.md) ## [Useful downloads for Surface Hub administrators](surface-hub-downloads.md) diff --git a/devices/surface-hub/change-history-surface-hub.md b/devices/surface-hub/change-history-surface-hub.md index 6fc60ccb51..fc50a8188d 100644 --- a/devices/surface-hub/change-history-surface-hub.md +++ b/devices/surface-hub/change-history-surface-hub.md @@ -16,6 +16,12 @@ ms.localizationpriority: medium This topic lists new and updated topics in the [Surface Hub Admin Guide]( surface-hub-administrators-guide.md). +## September 2017 + +New or changed topic | Description +--- | --- +[Top support solutions for Surface Hub](support-solutions-surface-hub.md) | New + ## August 2017 diff --git a/devices/surface-hub/index.md b/devices/surface-hub/index.md index ab8cbc200f..cdde9fd95e 100644 --- a/devices/surface-hub/index.md +++ b/devices/surface-hub/index.md @@ -44,6 +44,7 @@ In some ways, adding your new Surface Hub is just like adding any other Microsof | [Manage Microsoft Surface Hub](manage-surface-hub.md) | How to manage your Surface Hub after finishing the first-run program. | | [PowerShell for Surface Hub](appendix-a-powershell-scripts-for-surface-hub.md) | | [How Surface Hub addresses Wi-Fi Direct security issues](surface-hub-wifi-direct.md) | This topic provides guidance on Wi-Fi Direct security risks, how the Surface Hub has addressed those risks, and how Surface Hub administrators can configure the device for the highest level of security. | PowerShell scripts to help set up and manage your Surface Hub. | +| [Top support solutions for Surface Hub](support-solutions-surface-hub.md) | These are the top Microsoft Support solutions for common issues experienced using Surface Hub. | | [Troubleshoot Microsoft Surface Hub](troubleshoot-surface-hub.md) | Troubleshoot common problems, including setup issues, Exchange ActiveSync errors. | | [Troubleshoot Miracast on Surface Hub](miracast-troubleshooting.md) | Learn how to resolve Miracast issues. | | [Useful downloads for Surface Hub administrators](surface-hub-downloads.md) | This topic provides links to useful Surface Hub documents, such as product datasheets, the site readiness guide, and user's guide. | diff --git a/devices/surface-hub/support-solutions-surface-hub.md b/devices/surface-hub/support-solutions-surface-hub.md new file mode 100644 index 0000000000..f5416c8b0d --- /dev/null +++ b/devices/surface-hub/support-solutions-surface-hub.md @@ -0,0 +1,50 @@ +--- +title: Top support solutions for Microsoft Surface Hub +description: Find top solutions for common issues using Surface Hub. +ms.assetid: CF58F74D-8077-48C3-981E-FCFDCA34B34A +keywords: Troubleshoot common problems, setup issues +ms.prod: w10 +ms.mktglfcycl: support +ms.sitesec: library +ms.pagetype: surfacehub +author: jdeckerms +ms.author: jdecker +ms.date: 09/07/2017 +ms.localizationpriority: medium +--- + +# Top support solutions for Microsoft Surface Hub + +Microsoft regularly releases both updates and solutions for Surface Hub. To ensure your devices can receive future updates, including security updates, it's important to keep your Surface Hub devices updated. For a complete listing of the update history, see [Surface Hub update history](https://www.microsoft.com/surface/support/surface-hub/surface-hub-update-history) and [Known issues and additional information about Microsoft Surface Hub](https://support.microsoft.com/help/4025643). + + +These are the top Microsoft Support solutions for common issues experienced when using Surface Hub. + +## Setup and install issues + +- [Setup troubleshooting](troubleshoot-surface-hub.md#setup-troubleshooting) +- [Exchange ActiveSync errors](troubleshoot-surface-hub.md#exchange-activesync-errors) + +## Miracast issues + +- [Troubleshoot Miracast on Surface Hub](miracast-troubleshooting.md) + +## Download updates issues + +- [Surface Hub can't download updates from Windows Update](https://support.microsoft.com/help/3191418/surface-hub-can-t-download-updates-from-windows-update) + +## Connect app issues + +- [The Connect app in Surface Hub exits unexpectedly](https://support.microsoft.com/help/3157417/the-connect-app-in-surface-hub-exits-unexpectedly) + + + +  + + +  + + + + + diff --git a/devices/surface-hub/troubleshoot-surface-hub.md b/devices/surface-hub/troubleshoot-surface-hub.md index 46b82e72e3..8fb31f0492 100644 --- a/devices/surface-hub/troubleshoot-surface-hub.md +++ b/devices/surface-hub/troubleshoot-surface-hub.md @@ -20,8 +20,6 @@ Troubleshoot common problems, including setup issues, Exchange ActiveSync errors Common issues are listed in the following table, along with causes and possible fixes. The [Setup troubleshooting](#setup-troubleshooting) section contains a listing of on-device problems, along with several types of issues that may be encountered during the first-run experience. The [Exchange ActiveSync errors](#exchange-activesync-errors) section lists common errors the device may encounter when trying to synchronize with an Microsoft Exchange ActiveSync server. -- [Setup troubleshooting](#setup-troubleshooting) -- [Exchange ActiveSync errors](#exchange-activesync-errors) ## Setup troubleshooting diff --git a/devices/surface/TOC.md b/devices/surface/TOC.md index 192f88b5e0..45393cc7e9 100644 --- a/devices/surface/TOC.md +++ b/devices/surface/TOC.md @@ -26,6 +26,7 @@ ### [Use System Center Configuration Manager to manage devices with SEMM](use-system-center-configuration-manager-to-manage-devices-with-semm.md) ## [Surface Diagnostic Toolkit](surface-diagnostic-toolkit.md) ## [Surface Data Eraser](microsoft-surface-data-eraser.md) +## [Top support solutions for Surface devices](support-solutions-surface.md) ## [Change history for Surface documentation](change-history-for-surface.md) diff --git a/devices/surface/change-history-for-surface.md b/devices/surface/change-history-for-surface.md index 33992b2d0a..04cd11e9f1 100644 --- a/devices/surface/change-history-for-surface.md +++ b/devices/surface/change-history-for-surface.md @@ -11,6 +11,12 @@ author: jdeckerms This topic lists new and updated topics in the Surface documentation library. +## September 2017 + +New or changed topic | Description +--- | --- +[Top support solutions for Surface devices](support-solutions-surface.md) | New + ## June 2017 |New or changed topic | Description | diff --git a/devices/surface/index.md b/devices/surface/index.md index 65fba37343..eeecfa1314 100644 --- a/devices/surface/index.md +++ b/devices/surface/index.md @@ -30,6 +30,7 @@ For more information on planning for, deploying, and managing Surface devices in | [Surface Enterprise Management Mode](surface-enterprise-management-mode.md) | See how this feature of Surface devices with Surface UEFI allows you to secure and manage firmware settings within your organization. | | [Surface Diagnostic Toolkit](surface-diagnostic-toolkit.md) | Find out how you can use the Microsoft Surface Diagnostic Toolkit to test the hardware of your Surface device. | | [Surface Data Eraser](microsoft-surface-data-eraser.md) | Find out how the Microsoft Surface Data Eraser tool can help you securely wipe data from your Surface devices. | +| [Top support solutions for Surface devices](support-solutions-surface.md) | These are the top Microsoft Support solutions for common issues experienced using Surface devices in an enterprise. | | [Change history for Surface documentation](change-history-for-surface.md) | This topic lists new and updated topics in the Surface documentation library. | diff --git a/devices/surface/support-solutions-surface.md b/devices/surface/support-solutions-surface.md new file mode 100644 index 0000000000..b283d9f42c --- /dev/null +++ b/devices/surface/support-solutions-surface.md @@ -0,0 +1,64 @@ +--- +title: Top support solutions for Surface devices +description: Find top solutions for common issues using Surface devices in the enterprise. +ms.assetid: CF58F74D-8077-48C3-981E-FCFDCA34B34A +keywords: Troubleshoot common problems, setup issues +ms.prod: w10 +ms.mktglfcycl: support +ms.sitesec: library +ms.pagetype: surfacehub +author: jdeckerms +ms.author: jdecker +ms.date: 09/07/2017 +ms.localizationpriority: medium +--- + +# Top support solutions Microsoft Surface Hub + +Microsoft regularly releases both updates and solutions for Surface devices. To ensure your devices can receive future updates, including security updates, it's important to keep your Surface devices updated. For a complete listing of the update history, see [Surface update history](https://www.microsoft.com/surface/support/install-update-activate/surface-update-history) and [Install Surface and Windows updates](https://www.microsoft.com/surface/support/performance-and-maintenance/install-software-updates-for-surface?os=windows-10&=undefined). + + +These are the top Microsoft Support solutions for common issues experienced when using Surface devices in an enterprise. + +## Screen cracked or scratched issues + +- [Cracked screen and physical damage](https://www.microsoft.com/surface/support/warranty-service-and-recovery/surface-is-damaged) + + +##Device cover or keyboard issues + +- [Troubleshoot your Surface Type Cover or keyboard](https://www.microsoft.com/surface/support/hardware-and-drivers/troubleshoot-surface-keyboards) +- [Troubleshoot problems with Surface Keyboard, Surface Ergonomic Keyboard, and Microsoft Modern Keyboard with Fingerprint ID](https://www.microsoft.com/surface/support/touch-mouse-and-search/surface-keyboard-troubleshooting) +- [Set up Microsoft Modern Keyboard with Fingerprint ID](https://www.microsoft.com/surface/support/touch-mouse-and-search/microsoft-modern-keyboard-fingerprintid-set-up) +- [Enabling Surface Laptop keyboard during MDT deployment](https://blogs.technet.microsoft.com/askcore/2017/08/18/enabling-surface-laptop-keyboard-during-mdt-deployment/) + + +## Device won't wake from sleep or hibernation issues + +- [Surface won’t turn on or wake from sleep](https://www.microsoft.com/surface/support/warranty-service-and-recovery/surface-wont-turn-on-or-wake-from-sleep?os=windows-10&=undefined) +- [Surface Pro 4 or Surface Book doesn't hibernate in Windows 10](https://support.microsoft.com/help/3122682) +- [Surface Pro 3 doesn't hibernate after four hours in connected standby](https://support.microsoft.com/help/2998588/surface-pro-3-doesn-t-hibernate-after-four-hours-in-connected-standby) +- [Surface Pro 3 Hibernation Doesn’t Occur on Enterprise Install](https://blogs.technet.microsoft.com/askcore/2014/11/05/surface-pro-3-hibernation-doesnt-occur-on-enterprise-install/) + + +## Other common issues + +- [Trouble installing Surface updates](https://www.microsoft.com/surface/support/performance-and-maintenance/troubleshoot-updates?os=windows-10&=undefined) +- [Troubleshooting common Surface Pro 3 issues post-deployment](http://blogs.technet.com/b/askcore/archive/2015/03/19/troubleshooting-common-surface-pro-3-issues-post-deployment.aspx) +- [Surface Pro 3 hibernation doesn't occur on enterprise install](https://blogs.technet.microsoft.com/askcore/2014/11/05/surface-pro-3-hibernation-doesnt-occur-on-enterprise-install/) +- [Reusing the same NIC for multiple PXE initiated deployments in System Center Configuration Manger OSD](https://blogs.technet.microsoft.com/system_center_configuration_manager_operating_system_deployment_support_blog/2015/08/27/reusing-the-same-nic-for-multiple-pxe-initiated-deployments-in-system-center-configuration-manger-osd) +- [Troubleshoot docking stations for Surface Pro and Surface 3](https://www.microsoft.com/surface/support/hardware-and-drivers/troubleshoot-docking-station?os=windows-8.1-update-1&=undefined) +- [What to do if Surface is running slower](https://www.microsoft.com/surface/support/performance-and-maintenance/what-to-do-if-surface-is-running-slower?os=windows-10&=undefined) + + + + +  + + +  + + + + + From e88d76b08837b05e4a026a8376e95c026480b9ed Mon Sep 17 00:00:00 2001 From: Jeanie Decker Date: Thu, 7 Sep 2017 17:18:50 +0000 Subject: [PATCH 22/28] Merged PR 3070: Add author --- devices/surface-hub/support-solutions-surface-hub.md | 2 +- devices/surface/support-solutions-surface.md | 2 +- 2 files changed, 2 insertions(+), 2 deletions(-) diff --git a/devices/surface-hub/support-solutions-surface-hub.md b/devices/surface-hub/support-solutions-surface-hub.md index f5416c8b0d..f6eeed64e8 100644 --- a/devices/surface-hub/support-solutions-surface-hub.md +++ b/devices/surface-hub/support-solutions-surface-hub.md @@ -7,7 +7,7 @@ ms.prod: w10 ms.mktglfcycl: support ms.sitesec: library ms.pagetype: surfacehub -author: jdeckerms +author: kaushika-msft ms.author: jdecker ms.date: 09/07/2017 ms.localizationpriority: medium diff --git a/devices/surface/support-solutions-surface.md b/devices/surface/support-solutions-surface.md index b283d9f42c..3227aa969e 100644 --- a/devices/surface/support-solutions-surface.md +++ b/devices/surface/support-solutions-surface.md @@ -7,7 +7,7 @@ ms.prod: w10 ms.mktglfcycl: support ms.sitesec: library ms.pagetype: surfacehub -author: jdeckerms +author: kaushika-msft ms.author: jdecker ms.date: 09/07/2017 ms.localizationpriority: medium From 80692de5c5a4817f74e2f27a195dc203c37294b5 Mon Sep 17 00:00:00 2001 From: John Tobin Date: Thu, 7 Sep 2017 11:17:04 -0700 Subject: [PATCH 23/28] Restore missing table divider to fix proper display of default values. --- ...levation-prompt-for-administrators-in-admin-approval-mode.md | 2 +- 1 file changed, 1 insertion(+), 1 deletion(-) diff --git a/windows/device-security/security-policy-settings/user-account-control-behavior-of-the-elevation-prompt-for-administrators-in-admin-approval-mode.md b/windows/device-security/security-policy-settings/user-account-control-behavior-of-the-elevation-prompt-for-administrators-in-admin-approval-mode.md index cbc598ba9f..160a34bfa4 100644 --- a/windows/device-security/security-policy-settings/user-account-control-behavior-of-the-elevation-prompt-for-administrators-in-admin-approval-mode.md +++ b/windows/device-security/security-policy-settings/user-account-control-behavior-of-the-elevation-prompt-for-administrators-in-admin-approval-mode.md @@ -58,7 +58,7 @@ Computer Configuration\\Windows Settings\\Security Settings\\Local Policies\\Sec ### Default values -| Server type or GPO Default value | +| Server type or GPO | Default value | | - | - | | Default Domain Policy | Not defined| | Default Domain Controller Policy | Not defined | From a30a7e5c00021ca027bbb7245ed37194db466a66 Mon Sep 17 00:00:00 2001 From: Elizabeth Ross Date: Thu, 7 Sep 2017 21:07:43 +0000 Subject: [PATCH 24/28] Merged PR 3080: Adding a new FAQ for Microsoft Edge --- browsers/edge/Index.md | 1 + browsers/edge/TOC.md | 1 + browsers/edge/microsoft-edge-faq.md | 83 +++++++++++++++++++++++++++++ 3 files changed, 85 insertions(+) create mode 100644 browsers/edge/microsoft-edge-faq.md diff --git a/browsers/edge/Index.md b/browsers/edge/Index.md index 4188a5ce94..77890240cb 100644 --- a/browsers/edge/Index.md +++ b/browsers/edge/Index.md @@ -37,6 +37,7 @@ Microsoft Edge lets you stay up-to-date through the Windows Store and to manage | [Available policies for Microsoft Edge](available-policies.md) |Microsoft Edge works with Group Policy and Microsoft Intune to help you manage your organization's computer settings.

        Group Policy objects (GPO's) can include registry-based Administrative Template policy settings, security settings, software deployment information, scripts, folder redirection, and preferences. By using Group Policy and Intune, you can set up a policy setting once, and then copy that setting onto many computers. For example, you can set up multiple security settings in a GPO that's linked to a domain, and then apply all of those settings to every computer in the domain. | | [Use Enterprise Mode to improve compatibility](emie-to-improve-compatibility.md) |If you have specific web sites and apps that you know have compatibility problems with Microsoft Edge, you can use the Enterprise Mode site list so that the web sites will automatically open using Internet Explorer 11. Additionally, if you know that your intranet sites aren't going to work properly with Microsoft Edge, you can set all intranet sites to automatically open using IE11.

        Using Enterprise Mode means that you can continue to use Microsoft Edge as your default browser, while also ensuring that your apps continue working on IE11. | | [Security enhancements for Microsoft Edge](security-enhancements-microsoft-edge.md) |Microsoft Edge is designed with significant security improvements over existing browsers, helping to defend people from increasingly sophisticated and prevalent web-based attacks against Windows. | +|[Microsoft Edge Frequently Asked Questions (FAQs)](microsoft-edge-faq.md)|Answering frequently asked questions about Microsoft Edge features, integration, support, and potential problems. ## Interoperability goals and enterprise guidance diff --git a/browsers/edge/TOC.md b/browsers/edge/TOC.md index fb5ad0c6f2..9a9115a9ac 100644 --- a/browsers/edge/TOC.md +++ b/browsers/edge/TOC.md @@ -5,4 +5,5 @@ ##[Available policies for Microsoft Edge](available-policies.md) ##[Use Enterprise Mode to improve compatibility](emie-to-improve-compatibility.md) ##[Security enhancements for Microsoft Edge](security-enhancements-microsoft-edge.md) +##[Microsoft Edge Frequently Asked Questions (FAQs)](microsoft-edge-faq.md) diff --git a/browsers/edge/microsoft-edge-faq.md b/browsers/edge/microsoft-edge-faq.md new file mode 100644 index 0000000000..f24235f60d --- /dev/null +++ b/browsers/edge/microsoft-edge-faq.md @@ -0,0 +1,83 @@ +--- +title: Microsoft Edge - Frequently Asked Questions (FAQs) for IT Pros (Microsoft Edge for IT Pros) +description: Answering frequently asked questions about Microsoft Edge features, integration, support, and potential problems. +author: eross-msft +ms.author: lizross +ms.prod: edge +ms.mktglfcycl: general +ms.sitesec: library +ms.localizationpriority: high +--- + +# Microsoft Edge - Frequently Asked Questions (FAQs) for IT Pros + +**Applies to:** + +- Windows 10 +- Windows 10 Mobile + +**Q: What is the difference between Microsoft Edge and Internet Explorer 11? How do I know which one to use?** + +**A:** Microsoft Edge is the default browser for all Windows 10 devices. It is built to be highly compatible with the modern web. For some enterprise web apps and a small set of sites on the web that were built to work with older technologies like ActiveX, [you can use Enterprise Mode](https://docs.microsoft.com/en-us/microsoft-edge/deploy/emie-to-improve-compatibility) to automatically send users to Internet Explorer 11 for those sites. + +For more information on how Internet Explorer and Microsoft Edge can work together to support your legacy web apps, while still defaulting to the higher bar for security and modern experiences enabled by Microsoft Edge, see [Legacy apps in the enterprise](https://blogs.windows.com/msedgedev/2017/04/07/legacy-web-apps-enterprise/#RAbtRvJSYFaKu2BI.97). + +**Q: Does Microsoft Edge work with Enterprise Mode?** + +**A:** [Enterprise Mode](https://docs.microsoft.com/en-us/internet-explorer/ie11-deploy-guide/enterprise-mode-overview-for-ie11) offers better backward compatibility and enables customers to run many legacy web applications. Microsoft Edge and Internet Explorer can be configured to use the same Enterprise Mode Site List, switching seamlessly between browsers to support both modern and legacy web apps. For guidance and additional resources, please visit the [Microsoft Edge IT Center](https://technet.microsoft.com/en-us/microsoft-edge). + + +**Q: I have Windows 10, but I don’t seem to have Microsoft Edge. Why?** + +**A:** Long-Term Servicing Branch (LTSB) versions of Windows, including Windows Server 2016, don't include Microsoft Edge or many other Universal Windows Platform (UWP) apps. These apps and their services are frequently updated with new functionality and can't be supported on systems running LTSB operating systems. For customers who require the LTSB for specialized devices, we recommend using Internet Explorer 11. + +**Q: How do I get the latest Canary/Beta/Preview version of Microsoft Edge?** + +**A:** You can access the latest preview version of Microsoft Edge by updating to the latest Windows 10 preview via the [Windows Insider Program](https://insider.windows.com/). To run the preview version of Microsoft Edge on a stable version of Windows 10 (or any other OS), you can download a [Virtual Machine](https://developer.microsoft.com/en-us/microsoft-edge/tools/vms/windows/) that we provide or use the upcoming RemoteEdge service. + +**Q: How do I customize Microsoft Edge and related settings for my organization?** + +**A:** You can use Group Policy or Microsoft Intune to manage settings related to Microsoft Edge, such as security settings, folder redirection, and preferences. See [Group Policy and Mobile Device Management (MDM) settings for Microsoft Edge](https://docs.microsoft.com/en-us/microsoft-edge/deploy/available-policies) for a list of available policies for Microsoft Edge. + +**Q: Is Adobe Flash supported in Microsoft Edge?** + +**A:** Currently, Adobe Flash is supported as a built-in feature of Microsoft Edge on devices running the desktop version of Windows 10. In July 2017, Adobe announced that Flash will no longer be supported after 2020. We will phase out Flash from Microsoft Edge and Internet Explorer, culminating in the removal of Flash from Windows entirely by the end of 2020. This process began already for Microsoft Edge with [Click-to-Run for Flash](https://blogs.windows.com/msedgedev/2016/12/14/edge-flash-click-run/) in the Windows 10 Creators Update. + +For more information about the phasing out of Flash, read the [End of an Era – Next Steps for Adobe Flash](https://blogs.windows.com/msedgedev/2017/07/25/flash-on-windows-timeline/#85ZBy7aiVlDQHebO.97) blog post. + +**Q: Does Microsoft Edge support ActiveX controls or BHOs like Silverlight or Java?** + +**A:** No, ActiveX controls and BHOs such as Silverlight or Java are not supported in Microsoft Edge. The need for ActiveX controls has been significantly reduced by modern web standards, which are more interoperable across browsers. We are working on plans for an extension model based on the modern web platform in Microsoft Edge. We look forward to sharing more details on these plans soon. Not supporting legacy controls in Microsoft Edge provides many benefits including better interoperability with other modern browsers, as well as increased performance, security, and reliability. + +**Q: How often will Microsoft Edge be updated?** + +**A:** In Windows 10, we are delivering Windows as a service, updated on a cadence driven by quality and the availability of new features. Microsoft Edge security updates are released every two to four weeks, and the bigger feature updates are currently pushed out with the Windows 10 releases on a semi-annual cadence. + +**Q: How can I provide feedback on Microsoft Edge?** + +**A:** Microsoft Edge is an evergreen browser and we will continue to evolve both the web platform and the user interface with regular updates. To send feedback on user experience, or on broken or malicious sites, you can use the **Send Feedback** option under the ellipses icon (**...**) in the Microsoft Edge toolbar. You can also provide feedback through the [Microsoft Edge Dev Twitter](https://twitter.com/MSEdgeDev) account. + +**Q: Will Internet Explorer 11 continue to receive updates?** + +**A:** We will continue to deliver security updates to Internet Explorer 11 through its supported lifespan. To ensure consistent behavior across Windows versions, we will evaluate Internet Explorer 11 bugs for servicing on a case by case basis. The latest features and platform updates will only be available in Microsoft Edge. + +**Q: I loaded a web page and Microsoft Edge sent me to Internet Explorer - what happened?** + +**A:** In some cases, Internet Explorer loads automatically for sites that still rely on legacy technologies such as ActiveX. For more information, read [Legacy web apps in the enterprise](https://blogs.windows.com/msedgedev/2017/04/07/legacy-web-apps-enterprise/#uHpbs94kAaVsU1qB.97). + +**Q: Why is Do Not Track (DNT) off by default in Microsoft Edge?** + +**A:** When Microsoft first set the Do Not Track setting to “On” by default in Internet Explorer 10, industry standards had not yet been established. We are now making this default change as the World Wide Web Consortium (W3C) formalizes industry standards to recommend that default settings allow customers to actively indicate whether they want to enable DNT. As a result, DNT will not be enabled by default in upcoming versions of Microsoft’s browsers, but we will provide customers with clear information on how to turn this feature on in the browser settings should you wish to do so. + +**Q: How do I find out what version of Microsoft Edge I have?** + +**A:** Open Microsoft Edge. In the upper right corner click the ellipses icon (**…**), and then click **Settings**. Look in the **About this app** section to find your version. + +**Q: What is Microsoft EdgeHTML?** + +**A:** Microsoft EdgeHTML is the new web rendering engine that powers the Microsoft Edge web browser and Windows 10 web app platform, and that helps web developers build and maintain a consistent site across all modern browsers. The Microsoft EdgeHTML engine also helps to defend against hacking through support for the W3C standard for [Content Security Policy (CSP)](https://developer.microsoft.com/microsoft-edge/platform/documentation/dev-guide/security/content-Security-Policy), which can help web developers defend their sites against cross-site scripting attacks, and support for the [HTTP Strict Transport Security (HSTS)](https://developer.microsoft.com/microsoft-edge/platform/documentation/dev-guide/security/HSTS/) security feature (IETF-standard compliant), which helps ensure that connections to important sites, such as to your bank, are always secured. + +**Q: Will Windows 7 or Windows 8.1 users get Microsoft Edge or the new Microsoft EdgeHTML rendering engine?** + +**A:** Microsoft Edge has been designed and built to showcase Windows 10 features like Cortana, and is built on top of the Universal Windows Platform. Although we don’t have any plans to bring Microsoft Edge to Windows 7 or Windows 8.1 at this time, you can test Microsoft Edge with older versions of Internet Explorer using [free virtual machines](https://developer.microsoft.com/en-us/microsoft-edge/tools/vms/). + From 58e1fc0c9bbe4b21baea40e58b080ed1280d38d8 Mon Sep 17 00:00:00 2001 From: Greg Lindsay Date: Fri, 8 Sep 2017 15:34:50 +0000 Subject: [PATCH 25/28] Merged PR 3045: Update subscription activation to include Azure gallery VMs Update subscription activation to include Azure gallery VMs --- .../deployment/vda-subscription-activation.md | 37 ++++++++++++++++++- 1 file changed, 35 insertions(+), 2 deletions(-) diff --git a/windows/deployment/vda-subscription-activation.md b/windows/deployment/vda-subscription-activation.md index a6f560cc33..fc38a3df22 100644 --- a/windows/deployment/vda-subscription-activation.md +++ b/windows/deployment/vda-subscription-activation.md @@ -7,7 +7,7 @@ ms.mktglfcycl: deploy localizationpriority: high ms.sitesec: library ms.pagetype: mdt -ms.date: 08/23/2017 +ms.date: 09/05/2017 author: greg-lindsay --- @@ -15,6 +15,11 @@ author: greg-lindsay This document describes how to configure virtual machines (VMs) to enable [Windows 10 Subscription Activation](windows-10-enterprise-subscription-activation.md) in a Windows Virtual Desktop Access (VDA) scenario. Windows VDA is a device or user-based licensing mechanism for managing access to virtual desktops. +Deployment instructions are provided for the following scenarios: +1. [Active Directory-joined VMs](#active-directory-joined-vms) +2. [Azure Active Directory-joined VMs](#azure-active-directory-joined-vms) +3. [Azure Gallery VMs](#azure-gallery-vms) + ## Requirements - VMs must be running Windows 10 Pro, version 1703 (also known as the Creator's Update) or later. @@ -64,7 +69,35 @@ For Azure AD-joined VMs, follow the same instructions (above) as for [Active Dir - In step 9, during setup with Windows Configuration Designer, under **Name**, type a name for the project that indicates it is not for Active Directory joined VMs, such as **Desktop Bulk Enrollment Token Pro GVLK**. - In step 12, during setup with Windows Configuration Designer, on the Account Management page, instead of enrolling in Active Directory, choose **Enroll in Azure AD**, click **Get Bulk Token**, sign in and add the bulk token using your organization's credentials. - In step 17, when entering the PackagePath, use the project name you entered in step 9 (ex: **Desktop Bulk Enrollment Token Pro GVLK.ppkg**) -- When attempting to access the VM using remote desktop, you will need to create a custom RDP settings file as described below. +- When attempting to access the VM using remote desktop, you will need to create a custom RDP settings file as described below in [Create custom RDP settings for Azure](#create-custom-rpd-settings-for-azure). + +## Azure Gallery VMs + +1. (Optional) To disable network level authentication, type the following at an elevated command prompt: + + ``` + REG ADD "HKLM\SYSTEM\CurrentControlSet\Control\Terminal Server\WinStations\RDP-Tcp" /v UserAuthentication /t REG_DWORD /d 0 /f + ``` + +2. At an elevated command prompt, type **sysdm.cpl** and press ENTER. +3. On the Remote tab, choose **Allow remote connections to this computer** and then click **Select Users**. +4. Click **Add**, type **Authenticated users**, and then click **OK** three times. +(https://docs.microsoft.com/azure/virtual-machines/windows/prepare-for-upload-vhd-image#steps-to-generalize-a-vhd). +5. [Install Windows Configuration Designer](/windows/configuration/provisioning-packages/provisioning-install-icd). +6. Open Windows Configuration Designer and click **Provison desktop services**. +7. Under **Name**, type **Desktop Bulk Enrollment Token Pro GVLK**, click **Finish**, and then on the **Set up device** page enter a device name. + - Note: You can use a different project name, but this name is also used with dism.exe in a subsequent step. +8. Under **Enter product key** type the Pro GVLK key: **W269N-WFGWX-YVC9B-4J6C9-T83GX**. +9. On the Set up network page, choose **Off**. +10. On the Account Management page, choose **Enroll in Azure AD**, click **Get Bulk Token**, sign in, and add the bulk token using your organizations credentials. +11. On the Add applications page, add applications if desired. This step is optional. +12. On the Add certificates page, add certificates if desired. This step is optional. +13. On the Finish page, click **Create**. +14. Copy the .ppkg file to the remote Virtual machine. Double click to initiate the provisioning package install. This will reboot the system. + +- When attempting to access the VM using remote desktop, you will need to create a custom RDP settings file as described [below](#create-custom-rpd-settings-for-azure). + +## Create custom RDP settings for Azure To create custom RDP settings for Azure: From 79b6cd381edd27c82c3292cef2bae2000b71caa3 Mon Sep 17 00:00:00 2001 From: Jeanie Decker Date: Fri, 8 Sep 2017 15:43:21 +0000 Subject: [PATCH 26/28] Merged PR 3089: Fix typo --- windows/configuration/wcd/wcd-connections.md | 2 +- 1 file changed, 1 insertion(+), 1 deletion(-) diff --git a/windows/configuration/wcd/wcd-connections.md b/windows/configuration/wcd/wcd-connections.md index 07f2fffa0f..98fdd61592 100644 --- a/windows/configuration/wcd/wcd-connections.md +++ b/windows/configuration/wcd/wcd-connections.md @@ -12,7 +12,7 @@ ms.date: 08/21/2017 # Connections (Windows Configuration Designer reference) -Use to configure settings related to variou types of phone connections. +Use to configure settings related to various types of phone connections. ## Applies to From 85f9c3b32f28ccef714d2804a42ab97dfcc7693a Mon Sep 17 00:00:00 2001 From: Liza Poggemeyer Date: Fri, 8 Sep 2017 17:07:45 +0000 Subject: [PATCH 27/28] Merged PR 3093: New troubleshooting landing page new troubleshooting landing page --- .../windows-10-support-solutions.md | 62 +++++++++++++++++++ windows/hub/TOC.md | 3 +- 2 files changed, 64 insertions(+), 1 deletion(-) create mode 100644 windows/client-management/windows-10-support-solutions.md diff --git a/windows/client-management/windows-10-support-solutions.md b/windows/client-management/windows-10-support-solutions.md new file mode 100644 index 0000000000..03b15f9859 --- /dev/null +++ b/windows/client-management/windows-10-support-solutions.md @@ -0,0 +1,62 @@ +--- +title: Top support solutions for Windows 10 +description: Get links to solutions for Windows 10 issues +ms.prod: w10 +ms.mktglfcycl: manage +ms.sitesec: library +ms.author: elizapo +author: kaushika-msft +ms.localizationpriority: high +--- +# Top support solutions for Windows 10 + +Microsoft regularly releases both updates and solutions for Windows 10. To ensure your computers can receive future updates, including security updates, it's important to keep them updated. Check out the following links for a complete list of released updates: + +- [Windows 10 Version 1703 update history](https://support.microsoft.com/help/4018124/) +- [Windows 10 Version 1607 update history](https://support.microsoft.com/help/4000825/) +- [Windows 10 Version 1511 update history](https://support.microsoft.com/help/4000824/) + + +These are the top Microsoft Support solutions for the most common issues experienced when using Windows 10 in an enterprise or IT pro environment. The links below include links to KB articles, updates, and library articles. + +## Solutions related to installing Windows updates or hotfixes +- [Understanding the Windowsupdate.log file for advanced users](https://support.microsoft.com/help/4035760/understanding-the-windowsupdate-log-file-for-advanced-users) +- [You can't install updates on a Windows-based computer](https://support.microsoft.com/help/2509997/you-can-t-install-updates-on-a-windows-based-computer) +- [Get-WindowsUpdateLog](https://technet.microsoft.com/itpro/powershell/windows/windowsupdate/get-windowsupdatelog) +- [How to read the Windowsupdate.log file](https://support.microsoft.com/help/902093/how-to-read-the-windowsupdate-log-file) +- [Can't download updates from Windows Update from behind a firewall or proxy server](https://support.microsoft.com/help/3084568/can-t-download-updates-from-windows-update-from-behind-a-firewall-or-p) +- [Computer staged from a SysPrepped image doesn't receive WSUS updates](https://support.microsoft.com/help/4010909/computer-staged-from-a-sysprepped-image-doesn-t-receive-wsus-updates) +- [Servicing stack update for Windows 10 Version 1703: June 13, 2017](https://support.microsoft.com/help/4022405/servicingstackupdateforwindows10version1703june13-2017) +- [Servicing stack update for Windows 10 Version 1607 and Windows Server 2016: March 14, 2017](https://support.microsoft.com/help/4013418/servicing-stack-update-for-windows-10-version-1607-and-windows-server) + +## Solutions related to Bugchecks or Stop Errors +- [Troubleshooting Stop error problems for IT Pros](https://support.microsoft.com/help/3106831/troubleshooting-stop-error-problems-for-it-pros) +- [How to use Windows Recovery Environment (WinRE) to troubleshoot common startup issues](https://support.microsoft.com/help/4026030/how-to-use-windows-recovery-environment-winre-to-troubleshoot-common-s) +- [How to troubleshoot Windows-based computer freeze issues](https://support.microsoft.com/help/3118553/how-to-troubleshoot-windows-based-computer-freeze-issues) +- [Understanding Bugchecks](https://blogs.technet.microsoft.com/askperf/2007/12/18/understanding-bugchecks/) +- [Understanding Crash Dump Files](https://blogs.technet.microsoft.com/askperf/2008/01/08/understanding-crash-dump-files/) + +## Solutions related to installing or upgrading Windows +- [Resolve Windows 10 upgrade errors : Technical information for IT Pros](/windows/deployment/upgrade/resolve-windows-10-upgrade-errors) +- [Windows OOBE fails when you start a new Windows-based computer for the first time](https://support.microsoft.com/help/4020048/windows-oobe-fails-when-you-start-a-new-windows-based-computer-for-the) +- ["0xc1800118" error when you push Windows 10 Version 1607 by using WSUS](https://support.microsoft.com/help/3194588/-0xc1800118-error-when-you-push-windows-10-version-1607-by-using-wsus) +- [0xC1900101 error when Windows 10 upgrade fails after the second system restart'(https://support.microsoft.com/help/3208485/0xc1900101-error-when-windows-10-upgrade-fails-after-the-second-system) +- [Updates fix in-place upgrade to Windows 10 version 1607 problem](https://support.microsoft.com/help/4020149/updates-fix-in-place-upgrade-to-windows-10-version-1607-problem) +- [OOBE update for Windows 10 Version 1703: May 9, 2017](https://support.microsoft.com/help/4020008) +- [OOBE update for Windows 10 Version 1607: May 30, 2017](https://support.microsoft.com/help/4022632) +- [OOBE update for Windows 10 Version 1511: May 30, 2017](https://support.microsoft.com/help/4022633) + +## Solutions related to configuring or managing the Start menu +- [Manage Windows 10 Start and taskbar layout](/windows/configuration/windows-10-start-layout-options-and-policies) +- [Customize and export Start layout](/windows/configuration/customize-and-export-start-layout) +- [Changes to Group Policy settings for Windows 10 Start](/windows/configuration/changes-to-start-policies-in-windows-10) +- [Preinstalled system applications and Start menu may not work when you upgrade to Windows 10, Version 1511](https://support.microsoft.com/help/3152599) +- [Start menu shortcuts aren't immediately accessible in Windows Server 2016](https://support.microsoft.com/help/3198613) +- [Troubleshoot problems opening the Start menu or Cortana](https://support.microsoft.com/help/12385/windows-10-troubleshoot-problems-opening-start-menu-cortana) +- [Modern apps are blocked by security software when you start the applications on Windows 10 Version 1607](https://support.microsoft.com/help/4016973/modern-apps-are-blocked-by-security-software-when-you-start-the-applic) + +## Solutions related to wireless networking and 802.1X authentication + +- [Windows 10 devices can't connect to an 802.1X environment](http://support.microsoft.com/kb/3121002) +- [Windows 10 wireless connection displays "Limited" status](http://support.microsoft.com/kb/3114149) +- [Computer that has VPN software installed can't detect wireless network after upgrading to Windows 10](http://support.microsoft.com/kb/3084164) diff --git a/windows/hub/TOC.md b/windows/hub/TOC.md index 8ed1a52f71..56c4ddc65a 100644 --- a/windows/hub/TOC.md +++ b/windows/hub/TOC.md @@ -6,4 +6,5 @@ ## [Application management](/windows/application-management) ## [Access protection](/windows/access-protection) ## [Device security](/windows/device-security) -## [Threat protection](/windows/threat-protection) \ No newline at end of file +## [Threat protection](/windows/threat-protection) +## [Troubleshooting](/windows/client-management/windows-10-support-solutions) \ No newline at end of file From beae1210ad5b3b1b2f011000d40b14105c5f2bbc Mon Sep 17 00:00:00 2001 From: Jeanie Decker Date: Fri, 8 Sep 2017 17:55:01 +0000 Subject: [PATCH 28/28] Merged PR 3096: Fix typo --- devices/surface/support-solutions-surface.md | 2 +- 1 file changed, 1 insertion(+), 1 deletion(-) diff --git a/devices/surface/support-solutions-surface.md b/devices/surface/support-solutions-surface.md index 3227aa969e..432c5dfe34 100644 --- a/devices/surface/support-solutions-surface.md +++ b/devices/surface/support-solutions-surface.md @@ -13,7 +13,7 @@ ms.date: 09/07/2017 ms.localizationpriority: medium --- -# Top support solutions Microsoft Surface Hub +# Top support solutions for Surface devices Microsoft regularly releases both updates and solutions for Surface devices. To ensure your devices can receive future updates, including security updates, it's important to keep your Surface devices updated. For a complete listing of the update history, see [Surface update history](https://www.microsoft.com/surface/support/install-update-activate/surface-update-history) and [Install Surface and Windows updates](https://www.microsoft.com/surface/support/performance-and-maintenance/install-software-updates-for-surface?os=windows-10&=undefined).

        Internal error codes
        Error code Message displayed Possible reason for error

        To troubleshoot this event:

          -
        1. Try to restart the service.
            +
          • Try to restart the service:
            • For antimalware, antivirus and spyware, at an elevated command prompt, type net stop msmpsvc, and then type net start msmpsvc to restart the antimalware engine.
            • For the Network Inspection System, at an elevated command prompt, type net start nissrv, and then type net start nissrv to restart the Network Inspection System engine by using the NiSSRV.exe file.
          • -
          • If it fails in the same way, look up the error code by accessing the Microsoft Support Site and entering the error number in the Search box, and contact Microsoft Technical Support.
          • -
        -

        -
        -

        User action:

        -
        -

        The Windows Defender AV client engine stopped due to an unexpected error.

        -

        To troubleshoot this event: -

        1. Run the scan again.
        2. -
        3. If it fails in the same way, go to the Microsoft Support site, enter the error number in the Search box to look for the error code.
        4. -
        5. Contact Microsoft Technical Support. -
        6. +
        7. If it fails in the same way, look up the error code by accessing the Microsoft Support Site and entering the error number in the Search box, and contact Microsoft Technical Support.