mirror of
https://github.com/MicrosoftDocs/windows-itpro-docs.git
synced 2025-05-12 13:27:23 +00:00
Update for ADMX Ingestion Refresh
Added Chormium Edge regkey to whitelist Added KB info to support Refresh
This commit is contained in:
parent
430caad8b9
commit
b869201fde
@ -23,7 +23,13 @@ ms.date: 06/26/2017
|
|||||||
|
|
||||||
## <a href="" id="overview"></a>Overview
|
## <a href="" id="overview"></a>Overview
|
||||||
|
|
||||||
Starting in Windows 10, version 1703, you can import ADMX files (also called ADMX ingestion) and set those ADMX-backed policies for Win32 and Desktop Bridge apps by using Windows 10 Mobile Device Management (MDM) on desktop SKUs. The ADMX files that define policy information can be ingested to your device by using the Policy CSP URI, `./Device/Vendor/MSFT/Policy/ConfigOperations/ADMXInstall`. The ingested ADMX file is then processed into MDM policies.
|
Starting in Windows 10, version 1703, you can import ADMX files (also called ADMX ingestion) and set those ADMX-backed policies for Win32 and Desktop Bridge apps by using Windows 10 Mobile Device Management (MDM) on desktop SKUs. The ADMX files that define policy information can be ingested to your device by using the Policy CSP URI, `./Device/Vendor/MSFT/Policy/ConfigOperations/ADMXInstall`. The ingested ADMX file is then processed into MDM policies.
|
||||||
|
|
||||||
|
NOTE: Starting from the following Windows 10 version Replace command is supported
|
||||||
|
- Windows 10, version 1903 with KB4512941 and KB4517211 installed
|
||||||
|
- Windows 10, version 1809 with KB4512534 and KB installed
|
||||||
|
- Windows 10, version 1803 with KB4512509 and KB installed
|
||||||
|
- Windows 10, version 1709 with KB4516071 and KB installed
|
||||||
|
|
||||||
When the ADMX policies are imported, the registry keys to which each policy is written are checked so that known system registry keys, or registry keys that are used by existing inbox policies or system components, are not overwritten. This precaution helps to avoid security concerns over opening the entire registry. Currently, the ingested policies are not allowed to write to locations within the **System**, **Software\Microsoft**, and **Software\Policies\Microsoft** keys, except for the following locations:
|
When the ADMX policies are imported, the registry keys to which each policy is written are checked so that known system registry keys, or registry keys that are used by existing inbox policies or system components, are not overwritten. This precaution helps to avoid security concerns over opening the entire registry. Currently, the ingested policies are not allowed to write to locations within the **System**, **Software\Microsoft**, and **Software\Policies\Microsoft** keys, except for the following locations:
|
||||||
|
|
||||||
@ -46,6 +52,8 @@ When the ADMX policies are imported, the registry keys to which each policy is w
|
|||||||
- software\microsoft\exchange\
|
- software\microsoft\exchange\
|
||||||
- software\policies\microsoft\vba\security\
|
- software\policies\microsoft\vba\security\
|
||||||
- software\microsoft\onedrive
|
- software\microsoft\onedrive
|
||||||
|
- software\Microsoft\Edge
|
||||||
|
- Software\Microsoft\EdgeUpdate\
|
||||||
|
|
||||||
## <a href="" id="ingesting-an-app-admx-file"></a>Ingesting an app ADMX file
|
## <a href="" id="ingesting-an-app-admx-file"></a>Ingesting an app ADMX file
|
||||||
|
|
||||||
|
Loading…
x
Reference in New Issue
Block a user