mirror of
https://github.com/MicrosoftDocs/windows-itpro-docs.git
synced 2025-05-12 13:27:23 +00:00
table update
This commit is contained in:
parent
2866bccc4b
commit
cf77be16d2
@ -55,25 +55,54 @@ To configure federated sign-in using Microsoft Intune, use a [custom profile][ME
|
|||||||
- **Name**: enter a descriptive name for the profile
|
- **Name**: enter a descriptive name for the profile
|
||||||
- **Description**: enter a description for the profile. This setting is optional, but recommended
|
- **Description**: enter a description for the profile. This setting is optional, but recommended
|
||||||
1. Select **Next**
|
1. Select **Next**
|
||||||
1. In **Configuration settings**, select **Add** and enter the following properties, repeating the process for each row and selecting **Save**:
|
1. In **Configuration settings**, select **Add** and enter the following properties:
|
||||||
|
|
||||||
[!div class="mx-tdBreakAll"]
|
|Name|EnableWebSignInForPrimaryUser|
|
||||||
| Name | OMA-URI | Data type | Value |
|
| --- | --- |
|
||||||
|--|--|--|--|
|
| **OMA-URI** | `./Vendor/MSFT/Policy/Config/FederatedAuthentication/EnableWebSignInForPrimaryUser` |
|
||||||
| `EnableWebSignInForPrimaryUser` | `./Vendor/MSFT/Policy/Config/FederatedAuthentication/EnableWebSignInForPrimaryUser` | Integer | 1 |
|
| **Data type** | Integer |
|
||||||
| `ConfigureWebSignInAllowedUrls` | `./Vendor/MSFT/Policy/Config/Authentication/ConfigureWebSignInAllowedUrls` | String | Semicolon separated list of domains, for example: `samlidp.clever.com;clever.com;mobile-redirector.clever.com` |
|
| **Value**| 1 |
|
||||||
| `IsEducationEnvironment` | `./Vendor/MSFT/Policy/Config/Education/IsEducationEnvironment` | Integer | 1 |
|
|
||||||
| `ConfigureWebCamAccessDomainNames` | `./Vendor/MSFT/Policy/Config/Authentication/ConfigureWebCamAccessDomainNames` | String | This setting is optional, and it should be configured if you need to use the webcam during the sign-in process. Specify the list of domains that are allowed to use the webcam during the sign-in process, separated by a semicolon. For example: `clever.com` |
|
|
||||||
| `EnableSharedPCMode` | `./Vendor/MSFT/SharedPC/EnableSharedPCMode` | Boolean | False |
|
|
||||||
|
|
||||||
[!div class="mx-tdBreakAll"]
|
1. Select **Save**
|
||||||
|Name|Syntax|Mandatory for silent installation?|Description|
|
1. Select **Add** and enter the following properties:
|
||||||
|-------------|----------|---------|---------|
|
|
||||||
|Quiet|/quiet|Yes|Runs the installer, displaying no UI and no prompts.|
|
|
||||||
|NoRestart|/norestart|No|Suppresses any attempts to restart. By default, the UI will prompt before restart.|
|
|
||||||
|Help|/help|No|Provides help and quick reference. Displays the correct use of the setup command, including a list of all options and behaviors.|
|
|
||||||
|
|
||||||
|
|Name|ConfigureWebSignInAllowedUrls|
|
||||||
|
| --- | --- |
|
||||||
|
| **OMA-URI** | `./Vendor/MSFT/Policy/Config/Authentication/ConfigureWebSignInAllowedUrls` |
|
||||||
|
| **Data type** | String |
|
||||||
|
| **Value**| Semicolon separated list of domains, for example: `samlidp.clever.com;clever.com;mobile-redirector.clever.com` |
|
||||||
|
|
||||||
|
1. Select **Save**
|
||||||
|
1. Select **Add** and enter the following properties:
|
||||||
|
|
||||||
|
|Name|IsEducationEnvironment|
|
||||||
|
| --- | --- |
|
||||||
|
| **OMA-URI** | `./Vendor/MSFT/Policy/Config/Education/IsEducationEnvironment` |
|
||||||
|
| **Data type** | Integer |
|
||||||
|
| **Value**| 1 |
|
||||||
|
|
||||||
|
1. Select **Save**
|
||||||
|
1. Select **Add** and enter the following properties:
|
||||||
|
|
||||||
|
|||
|
||||||
|
| --- | --- |
|
||||||
|
| **Name** |ConfigureWebCamAccessDomainNames|
|
||||||
|
| **OMA-URI** | `./Vendor/MSFT/Policy/Config/Authentication/ConfigureWebCamAccessDomainNames` |
|
||||||
|
| **Data type** | String |
|
||||||
|
| **Value**| This setting is optional, and it should be configured if you need to use the webcam during the sign-in process. Specify the list of domains that are allowed to use the webcam during the sign-in process, separated by a semicolon. For example: `clever.com` |
|
||||||
|
|
||||||
|
1. Select **Save**
|
||||||
|
1. Select **Add** and enter the following properties:
|
||||||
|
|
||||||
|
|||
|
||||||
|
| --- | --- |
|
||||||
|
| **Name** |EnableSharedPCMode|
|
||||||
|
| **OMA-URI** | `./Vendor/MSFT/SharedPC/EnableSharedPCMode` |
|
||||||
|
| **Data type** | Boolean |
|
||||||
|
| **Value** | False |
|
||||||
|
|
||||||
:::image type="content" source="images/edu-federated-authentication-settings.png" alt-text="Custom policy showing the settings to be configured to enable federated sign-in" lightbox="images/edu-federated-authentication-settings.png" border="true":::
|
:::image type="content" source="images/edu-federated-authentication-settings.png" alt-text="Custom policy showing the settings to be configured to enable federated sign-in" lightbox="images/edu-federated-authentication-settings.png" border="true":::
|
||||||
|
|
||||||
1. Select **Review + Save**
|
1. Select **Review + Save**
|
||||||
1. Select **Next**
|
1. Select **Next**
|
||||||
1. In **Scope tags**, assign any applicable tags (optional)
|
1. In **Scope tags**, assign any applicable tags (optional)
|
||||||
@ -82,7 +111,6 @@ To configure federated sign-in using Microsoft Intune, use a [custom profile][ME
|
|||||||
1. Select **Next**
|
1. Select **Next**
|
||||||
1. In **Applicability Rules**, select **Next**
|
1. In **Applicability Rules**, select **Next**
|
||||||
1. In **Review + create**, review your settings and select **Create**
|
1. In **Review + create**, review your settings and select **Create**
|
||||||
|
|
||||||
## How to use federated sign-in
|
## How to use federated sign-in
|
||||||
|
|
||||||
Once the devices are configured, a new sign-in experience becomes available.
|
Once the devices are configured, a new sign-in experience becomes available.
|
||||||
@ -100,6 +128,7 @@ Once the devices are configured, a new sign-in experience becomes available.
|
|||||||
- The user can exit the federated sign-in flow by pressing <kbd>Ctrl</kbd>+<kbd>Alt</kbd>+<kbd>Delete</kbd> to get back to the standard Windows sign-in screen
|
- The user can exit the federated sign-in flow by pressing <kbd>Ctrl</kbd>+<kbd>Alt</kbd>+<kbd>Delete</kbd> to get back to the standard Windows sign-in screen
|
||||||
- Select the *Other User* button, and the standard username/password credentials are available to log into the device
|
- Select the *Other User* button, and the standard username/password credentials are available to log into the device
|
||||||
|
|
||||||
|
|
||||||
[MEM-1]: /mem/intune/configuration/custom-settings-configure
|
[MEM-1]: /mem/intune/configuration/custom-settings-configure
|
||||||
|
|
||||||
[AZ-1]: /azure/active-directory/hybrid/how-to-connect-fed-saml-idp
|
[AZ-1]: /azure/active-directory/hybrid/how-to-connect-fed-saml-idp
|
||||||
|
Loading…
x
Reference in New Issue
Block a user