mirror of
https://github.com/MicrosoftDocs/windows-itpro-docs.git
synced 2025-06-19 04:13:41 +00:00
Merge branch 'master' into repo_sync_working_branch
This commit is contained in:
@ -172,11 +172,15 @@ If you want to disable this policy, use the following SyncML:
|
|||||||
</SyncBody>
|
</SyncBody>
|
||||||
</SyncML>
|
</SyncML>
|
||||||
```
|
```
|
||||||
|
|
||||||
|
> [!NOTE]
|
||||||
|
> Currently only used space encryption is supported when using this CSP.
|
||||||
|
|
||||||
<!--/Policy-->
|
<!--/Policy-->
|
||||||
<!--Policy-->
|
<!--Policy-->
|
||||||
<a href="" id="encryptionmethodbydrivetype"></a>**EncryptionMethodByDriveType**
|
<a href="" id="encryptionmethodbydrivetype"></a>**EncryptionMethodByDriveType**
|
||||||
<!--Description-->
|
<!--Description-->
|
||||||
Allows you to set the default encryption method for each of the different drive types: operating system drives, fixed data drives, and removable data drives. Hidden, system, and recovery partitions are skipped from encryption. This setting is a direct mapping to the Bitlocker Group Policy "Choose drive encryption method and cipher strength (Windows 10 [Version 1511] and later)".
|
Allows you to set the default encryption method for each of the different drive types: operating system drives, fixed data drives, and removable data drives. Hidden, system, and recovery partitions are skipped from encryption. This setting is a direct mapping to the BitLocker Group Policy "Choose drive encryption method and cipher strength (Windows 10 [Version 1511] and later)".
|
||||||
<!--/Description-->
|
<!--/Description-->
|
||||||
<!--SupportedValues-->
|
<!--SupportedValues-->
|
||||||
<table>
|
<table>
|
||||||
@ -204,7 +208,7 @@ ADMX Info:
|
|||||||
<ul>
|
<ul>
|
||||||
<li>GP English name: <em>Choose drive encryption method and cipher strength (Windows 10 [Version 1511] and later)</em></li>
|
<li>GP English name: <em>Choose drive encryption method and cipher strength (Windows 10 [Version 1511] and later)</em></li>
|
||||||
<li>GP name: <em>EncryptionMethodWithXts_Name</em></li>
|
<li>GP name: <em>EncryptionMethodWithXts_Name</em></li>
|
||||||
<li>GP path: <em>Windows Components/Bitlocker Drive Encryption</em></li>
|
<li>GP path: <em>Windows Components/BitLocker Drive Encryption</em></li>
|
||||||
<li>GP ADMX file name: <em>VolumeEncryption.admx</em></li>
|
<li>GP ADMX file name: <em>VolumeEncryption.admx</em></li>
|
||||||
</ul>
|
</ul>
|
||||||
<!--/ADMXMapped-->
|
<!--/ADMXMapped-->
|
||||||
@ -260,7 +264,7 @@ Data type is string. Supported operations are Add, Get, Replace, and Delete.
|
|||||||
<!--Policy-->
|
<!--Policy-->
|
||||||
<a href="" id="systemdrivesrequirestartupauthentication"></a>**SystemDrivesRequireStartupAuthentication**
|
<a href="" id="systemdrivesrequirestartupauthentication"></a>**SystemDrivesRequireStartupAuthentication**
|
||||||
<!--Description-->
|
<!--Description-->
|
||||||
This setting is a direct mapping to the Bitlocker Group Policy "Require additional authentication at startup".
|
This setting is a direct mapping to the BitLocker Group Policy "Require additional authentication at startup".
|
||||||
<!--/Description-->
|
<!--/Description-->
|
||||||
<!--SupportedSKUs-->
|
<!--SupportedSKUs-->
|
||||||
<table>
|
<table>
|
||||||
@ -289,7 +293,7 @@ ADMX Info:
|
|||||||
<ul>
|
<ul>
|
||||||
<li>GP English name: <em>Require additional authentication at startup</em></li>
|
<li>GP English name: <em>Require additional authentication at startup</em></li>
|
||||||
<li>GP name: <em>ConfigureAdvancedStartup_Name</em></li>
|
<li>GP name: <em>ConfigureAdvancedStartup_Name</em></li>
|
||||||
<li>GP path: <em>Windows Components/Bitlocker Drive Encryption/Operating System Drives</em></li>
|
<li>GP path: <em>Windows Components/BitLocker Drive Encryption/Operating System Drives</em></li>
|
||||||
<li>GP ADMX file name: <em>VolumeEncryption.admx</em></li>
|
<li>GP ADMX file name: <em>VolumeEncryption.admx</em></li>
|
||||||
</ul>
|
</ul>
|
||||||
<!--/ADMXMapped-->
|
<!--/ADMXMapped-->
|
||||||
@ -368,7 +372,7 @@ Data type is string. Supported operations are Add, Get, Replace, and Delete.
|
|||||||
<!--Policy-->
|
<!--Policy-->
|
||||||
<a href="" id="systemdrivesminimumpinlength"></a>**SystemDrivesMinimumPINLength**
|
<a href="" id="systemdrivesminimumpinlength"></a>**SystemDrivesMinimumPINLength**
|
||||||
<!--Description-->
|
<!--Description-->
|
||||||
This setting is a direct mapping to the Bitlocker Group Policy "Configure minimum PIN length for startup".
|
This setting is a direct mapping to the BitLocker Group Policy "Configure minimum PIN length for startup".
|
||||||
<!--/Description-->
|
<!--/Description-->
|
||||||
<!--SupportedSKUs-->
|
<!--SupportedSKUs-->
|
||||||
<table>
|
<table>
|
||||||
@ -397,7 +401,7 @@ ADMX Info:
|
|||||||
<ul>
|
<ul>
|
||||||
<li>GP English name:<em>Configure minimum PIN length for startup</em></li>
|
<li>GP English name:<em>Configure minimum PIN length for startup</em></li>
|
||||||
<li>GP name: <em>MinimumPINLength_Name</em></li>
|
<li>GP name: <em>MinimumPINLength_Name</em></li>
|
||||||
<li>GP path: <em>Windows Components/Bitlocker Drive Encryption/Operating System Drives</em></li>
|
<li>GP path: <em>Windows Components/BitLocker Drive Encryption/Operating System Drives</em></li>
|
||||||
<li>GP ADMX file name: <em>VolumeEncryption.admx</em></li>
|
<li>GP ADMX file name: <em>VolumeEncryption.admx</em></li>
|
||||||
</ul>
|
</ul>
|
||||||
<!--/ADMXMapped-->
|
<!--/ADMXMapped-->
|
||||||
@ -444,7 +448,7 @@ Data type is string. Supported operations are Add, Get, Replace, and Delete.
|
|||||||
<!--Policy-->
|
<!--Policy-->
|
||||||
<a href="" id="systemdrivesrecoverymessage"></a>**SystemDrivesRecoveryMessage**
|
<a href="" id="systemdrivesrecoverymessage"></a>**SystemDrivesRecoveryMessage**
|
||||||
<!--Description-->
|
<!--Description-->
|
||||||
This setting is a direct mapping to the Bitlocker Group Policy "Configure pre-boot recovery message and URL"
|
This setting is a direct mapping to the BitLocker Group Policy "Configure pre-boot recovery message and URL"
|
||||||
(PrebootRecoveryInfo_Name).
|
(PrebootRecoveryInfo_Name).
|
||||||
<!--/Description-->
|
<!--/Description-->
|
||||||
<!--SupportedSKUs-->
|
<!--SupportedSKUs-->
|
||||||
@ -474,7 +478,7 @@ ADMX Info:
|
|||||||
<ul>
|
<ul>
|
||||||
<li>GP English name: <em>Configure pre-boot recovery message and URL</em></li>
|
<li>GP English name: <em>Configure pre-boot recovery message and URL</em></li>
|
||||||
<li>GP name: <em>PrebootRecoveryInfo_Name</em></li>
|
<li>GP name: <em>PrebootRecoveryInfo_Name</em></li>
|
||||||
<li>GP path: <em>Windows Components/Bitlocker Drive Encryption/Operating System Drives</em></li>
|
<li>GP path: <em>Windows Components/BitLocker Drive Encryption/Operating System Drives</em></li>
|
||||||
<li>GP ADMX file name: <em>VolumeEncryption.admx</em></li>
|
<li>GP ADMX file name: <em>VolumeEncryption.admx</em></li>
|
||||||
</ul>
|
</ul>
|
||||||
<!--/ADMXMapped-->
|
<!--/ADMXMapped-->
|
||||||
@ -534,7 +538,7 @@ Data type is string. Supported operations are Add, Get, Replace, and Delete.
|
|||||||
<!--Policy-->
|
<!--Policy-->
|
||||||
<a href="" id="systemdrivesrecoveryoptions"></a>**SystemDrivesRecoveryOptions**
|
<a href="" id="systemdrivesrecoveryoptions"></a>**SystemDrivesRecoveryOptions**
|
||||||
<!--Description-->
|
<!--Description-->
|
||||||
This setting is a direct mapping to the Bitlocker Group Policy "Choose how BitLocker-protected operating system drives can be recovered" (OSRecoveryUsage_Name).
|
This setting is a direct mapping to the BitLocker Group Policy "Choose how BitLocker-protected operating system drives can be recovered" (OSRecoveryUsage_Name).
|
||||||
<!--/Description-->
|
<!--/Description-->
|
||||||
<!--SupportedSKUs-->
|
<!--SupportedSKUs-->
|
||||||
<table>
|
<table>
|
||||||
@ -563,7 +567,7 @@ ADMX Info:
|
|||||||
<ul>
|
<ul>
|
||||||
<li>GP English name: <em>Choose how BitLocker-protected operating system drives can be recovered</em></li>
|
<li>GP English name: <em>Choose how BitLocker-protected operating system drives can be recovered</em></li>
|
||||||
<li>GP name: <em>OSRecoveryUsage_Name</em></li>
|
<li>GP name: <em>OSRecoveryUsage_Name</em></li>
|
||||||
<li>GP path: <em>Windows Components/Bitlocker Drive Encryption/Operating System Drives</em></li>
|
<li>GP path: <em>Windows Components/BitLocker Drive Encryption/Operating System Drives</em></li>
|
||||||
<li>GP ADMX file name: <em>VolumeEncryption.admx</em></li>
|
<li>GP ADMX file name: <em>VolumeEncryption.admx</em></li>
|
||||||
</ul>
|
</ul>
|
||||||
<!--/ADMXMapped-->
|
<!--/ADMXMapped-->
|
||||||
@ -631,7 +635,7 @@ Data type is string. Supported operations are Add, Get, Replace, and Delete.
|
|||||||
<!--Policy-->
|
<!--Policy-->
|
||||||
<a href="" id="fixeddrivesrecoveryoptions"></a>**FixedDrivesRecoveryOptions**
|
<a href="" id="fixeddrivesrecoveryoptions"></a>**FixedDrivesRecoveryOptions**
|
||||||
<!--Description-->
|
<!--Description-->
|
||||||
This setting is a direct mapping to the Bitlocker Group Policy "Choose how BitLocker-protected fixed drives can be recovered" ().
|
This setting is a direct mapping to the BitLocker Group Policy "Choose how BitLocker-protected fixed drives can be recovered" ().
|
||||||
<!--/Description-->
|
<!--/Description-->
|
||||||
<!--SupportedSKUs-->
|
<!--SupportedSKUs-->
|
||||||
<table>
|
<table>
|
||||||
@ -660,7 +664,7 @@ ADMX Info:
|
|||||||
<ul>
|
<ul>
|
||||||
<li>GP English name: <em>Choose how BitLocker-protected fixed drives can be recovered</em></li>
|
<li>GP English name: <em>Choose how BitLocker-protected fixed drives can be recovered</em></li>
|
||||||
<li>GP name: <em>FDVRecoveryUsage_Name</em></li>
|
<li>GP name: <em>FDVRecoveryUsage_Name</em></li>
|
||||||
<li>GP path: <em>Windows Components/Bitlocker Drive Encryption/Fixed Drives</em></li>
|
<li>GP path: <em>Windows Components/BitLocker Drive Encryption/Fixed Drives</em></li>
|
||||||
<li>GP ADMX file name: <em>VolumeEncryption.admx</em></li>
|
<li>GP ADMX file name: <em>VolumeEncryption.admx</em></li>
|
||||||
</ul>
|
</ul>
|
||||||
<!--/ADMXMapped-->
|
<!--/ADMXMapped-->
|
||||||
@ -737,7 +741,7 @@ Data type is string. Supported operations are Add, Get, Replace, and Delete.
|
|||||||
<!--Policy-->
|
<!--Policy-->
|
||||||
<a href="" id="fixeddrivesrequireencryption"></a>**FixedDrivesRequireEncryption**
|
<a href="" id="fixeddrivesrequireencryption"></a>**FixedDrivesRequireEncryption**
|
||||||
<!--Description-->
|
<!--Description-->
|
||||||
This setting is a direct mapping to the Bitlocker Group Policy "Deny write access to fixed drives not protected by BitLocker" (FDVDenyWriteAccess_Name).
|
This setting is a direct mapping to the BitLocker Group Policy "Deny write access to fixed drives not protected by BitLocker" (FDVDenyWriteAccess_Name).
|
||||||
<!--/Description-->
|
<!--/Description-->
|
||||||
<!--SupportedSKUs-->
|
<!--SupportedSKUs-->
|
||||||
<table>
|
<table>
|
||||||
@ -766,7 +770,7 @@ ADMX Info:
|
|||||||
<ul>
|
<ul>
|
||||||
<li>GP English name: <em>Deny write access to fixed drives not protected by BitLocker</em></li>
|
<li>GP English name: <em>Deny write access to fixed drives not protected by BitLocker</em></li>
|
||||||
<li>GP name: <em>FDVDenyWriteAccess_Name</em></li>
|
<li>GP name: <em>FDVDenyWriteAccess_Name</em></li>
|
||||||
<li>GP path: <em>Windows Components/Bitlocker Drive Encryption/Fixed Drives</em></li>
|
<li>GP path: <em>Windows Components/BitLocker Drive Encryption/Fixed Drives</em></li>
|
||||||
<li>GP ADMX file name: <em>VolumeEncryption.admx</em></li>
|
<li>GP ADMX file name: <em>VolumeEncryption.admx</em></li>
|
||||||
</ul>
|
</ul>
|
||||||
<!--/ADMXMapped-->
|
<!--/ADMXMapped-->
|
||||||
@ -806,7 +810,7 @@ Data type is string. Supported operations are Add, Get, Replace, and Delete.
|
|||||||
<!--Policy-->
|
<!--Policy-->
|
||||||
<a href="" id="removabledrivesrequireencryption"></a>**RemovableDrivesRequireEncryption**
|
<a href="" id="removabledrivesrequireencryption"></a>**RemovableDrivesRequireEncryption**
|
||||||
<!--Description-->
|
<!--Description-->
|
||||||
This setting is a direct mapping to the Bitlocker Group Policy "Deny write access to removable drives not protected by BitLocker" (RDVDenyWriteAccess_Name).
|
This setting is a direct mapping to the BitLocker Group Policy "Deny write access to removable drives not protected by BitLocker" (RDVDenyWriteAccess_Name).
|
||||||
<!--/Description-->
|
<!--/Description-->
|
||||||
<!--SupportedSKUs-->
|
<!--SupportedSKUs-->
|
||||||
<table>
|
<table>
|
||||||
@ -835,7 +839,7 @@ ADMX Info:
|
|||||||
<ul>
|
<ul>
|
||||||
<li>GP English name: <em>Deny write access to removable drives not protected by BitLocker</em></li>
|
<li>GP English name: <em>Deny write access to removable drives not protected by BitLocker</em></li>
|
||||||
<li>GP name: <em>RDVDenyWriteAccess_Name</em></li>
|
<li>GP name: <em>RDVDenyWriteAccess_Name</em></li>
|
||||||
<li>GP path: <em>Windows Components/Bitlocker Drive Encryption/Removeable Drives</em></li>
|
<li>GP path: <em>Windows Components/BitLocker Drive Encryption/Removeable Drives</em></li>
|
||||||
<li>GP ADMX file name: <em>VolumeEncryption.admx</em></li>
|
<li>GP ADMX file name: <em>VolumeEncryption.admx</em></li>
|
||||||
</ul>
|
</ul>
|
||||||
<!--/ADMXMapped-->
|
<!--/ADMXMapped-->
|
||||||
|
@ -38,7 +38,9 @@ To install or upgrade to Windows 11, devices must meet the following minimum har
|
|||||||
- Internet connection: Internet connectivity is necessary to perform updates, and to download and use some features.
|
- Internet connection: Internet connectivity is necessary to perform updates, and to download and use some features.
|
||||||
- Windows 11 Home edition requires an Internet connection and a Microsoft Account to complete device setup on first use.
|
- Windows 11 Home edition requires an Internet connection and a Microsoft Account to complete device setup on first use.
|
||||||
|
|
||||||
\* There might be additional requirements over time for updates, and to enable specific features within the operating system. For more information, see [Keeping Windows 11 up-to-date](https://www.microsoft.com/windows/windows-11-specifications). Also see [Update on Windows 11 minimum system requirements](https://blogs.windows.com/windows-insider/2021/06/28/update-on-windows-11-minimum-system-requirements/).
|
\* There might be additional requirements over time for updates, and to enable specific features within the operating system. For more information, see [Windows 11 specifications](https://www.microsoft.com/windows/windows-11-specifications).
|
||||||
|
|
||||||
|
Also see [Update on Windows 11 minimum system requirements](https://blogs.windows.com/windows-insider/2021/06/28/update-on-windows-11-minimum-system-requirements/).
|
||||||
|
|
||||||
For information about tools to evaluate readiness, see [Determine eligibility](windows-11-plan.md#determine-eligibility).
|
For information about tools to evaluate readiness, see [Determine eligibility](windows-11-plan.md#determine-eligibility).
|
||||||
|
|
||||||
|
Reference in New Issue
Block a user