mirror of
https://github.com/MicrosoftDocs/windows-itpro-docs.git
synced 2025-05-14 06:17:22 +00:00
Merge branch 'master' of https://cpubwin.visualstudio.com/_git/it-client into URupdates
This commit is contained in:
commit
d37efcc9a3
@ -180,9 +180,3 @@ Footnote:
|
|||||||
|
|
||||||
<!--EndPolicies-->
|
<!--EndPolicies-->
|
||||||
|
|
||||||
<!--StartSurfaceHub-->
|
|
||||||
## <a href="" id="surfacehubpolicies"></a>DeviceGuard policies supported by Microsoft Surface Hub
|
|
||||||
|
|
||||||
- [DeviceGuard/AllowKernelControlFlowGuard](#deviceguard-allowkernelcontrolflowguard)
|
|
||||||
<!--EndSurfaceHub-->
|
|
||||||
|
|
||||||
|
@ -53,7 +53,7 @@ This is especially useful in helping to protect your documents and information f
|
|||||||
|
|
||||||
A notification will appear on the machine where the app attempted to make changes to a protected folder. You can [customize the notification](customize-attack-surface-reduction.md#customize-the-notification) with your company details and contact information. You can also enable the rules individually to customize what techniques the feature monitors.
|
A notification will appear on the machine where the app attempted to make changes to a protected folder. You can [customize the notification](customize-attack-surface-reduction.md#customize-the-notification) with your company details and contact information. You can also enable the rules individually to customize what techniques the feature monitors.
|
||||||
|
|
||||||
The protected folders include common system folders, and you can [add additional folders](customize-controlled-folders-exploit-guard.md#protect-additional-folders). You can also [allow or whitelist apps](customize-controlled-folders-exploit-guard.md#allow-specifc-apps-to-make-changes-to-controlled-folders) to give them access to the protected folders.
|
The protected folders include common system folders, and you can [add additional folders](customize-controlled-folders-exploit-guard.md#protect-additional-folders). You can also [allow or whitelist apps](customize-controlled-folders-exploit-guard.md#allow-specific-apps-to-make-changes-to-controlled-folders) to give them access to the protected folders.
|
||||||
|
|
||||||
As with other features of Windows Defender Exploit Guard, you can use [audit mode](audit-windows-defender-exploit-guard.md) to evaluate how Controlled folder access would impact your organization if it were enabled.
|
As with other features of Windows Defender Exploit Guard, you can use [audit mode](audit-windows-defender-exploit-guard.md) to evaluate how Controlled folder access would impact your organization if it were enabled.
|
||||||
|
|
||||||
|
@ -119,7 +119,7 @@ Use the [./Vendor/MSFT/Policy/Config/Defender/GuardedFoldersList](https://docs.m
|
|||||||
|
|
||||||
|
|
||||||
|
|
||||||
## Allow specifc apps to make changes to controlled folders
|
## Allow specific apps to make changes to controlled folders
|
||||||
|
|
||||||
You can specify if certain apps should always be considered safe and given write access to files in protected folders. Allowing apps can be useful if you're finding a particular app that you know and trust is being blocked by the Controlled folder access feature.
|
You can specify if certain apps should always be considered safe and given write access to files in protected folders. Allowing apps can be useful if you're finding a particular app that you know and trust is being blocked by the Controlled folder access feature.
|
||||||
|
|
||||||
|
Binary file not shown.
After Width: | Height: | Size: 14 KiB |
@ -73,4 +73,9 @@ This can only be done in Group Policy.
|
|||||||
|
|
||||||
6. Open the **Hide the App and browser protection area** setting and set it to **Enabled**. Click **OK**.
|
6. Open the **Hide the App and browser protection area** setting and set it to **Enabled**. Click **OK**.
|
||||||
|
|
||||||
7. [Deploy the updated GPO as you normally do](https://msdn.microsoft.com/en-us/library/ee663280(v=vs.85).aspx).
|
7. [Deploy the updated GPO as you normally do](https://msdn.microsoft.com/en-us/library/ee663280(v=vs.85).aspx).
|
||||||
|
|
||||||
|
>[!NOTE]
|
||||||
|
>If you hide all sections then the app will show a restricted interface, as in the following screenshot:
|
||||||
|
>
|
||||||
|
>
|
@ -53,3 +53,7 @@ This can only be done in Group Policy.
|
|||||||
|
|
||||||
7. [Deploy the updated GPO as you normally do](https://msdn.microsoft.com/en-us/library/ee663280(v=vs.85).aspx).
|
7. [Deploy the updated GPO as you normally do](https://msdn.microsoft.com/en-us/library/ee663280(v=vs.85).aspx).
|
||||||
|
|
||||||
|
>[!NOTE]
|
||||||
|
>If you hide all sections then the app will show a restricted interface, as in the following screenshot:
|
||||||
|
>
|
||||||
|
>
|
@ -50,4 +50,9 @@ This can only be done in Group Policy.
|
|||||||
|
|
||||||
6. Open the **Hide the Family options area** setting and set it to **Enabled**. Click **OK**.
|
6. Open the **Hide the Family options area** setting and set it to **Enabled**. Click **OK**.
|
||||||
|
|
||||||
7. [Deploy the updated GPO as you normally do](https://msdn.microsoft.com/en-us/library/ee663280(v=vs.85).aspx).
|
7. [Deploy the updated GPO as you normally do](https://msdn.microsoft.com/en-us/library/ee663280(v=vs.85).aspx).
|
||||||
|
|
||||||
|
>[!NOTE]
|
||||||
|
>If you hide all sections then the app will show a restricted interface, as in the following screenshot:
|
||||||
|
>
|
||||||
|
>
|
@ -50,3 +50,8 @@ This can only be done in Group Policy.
|
|||||||
|
|
||||||
7. [Deploy the updated GPO as you normally do](https://msdn.microsoft.com/en-us/library/ee663280(v=vs.85).aspx).
|
7. [Deploy the updated GPO as you normally do](https://msdn.microsoft.com/en-us/library/ee663280(v=vs.85).aspx).
|
||||||
|
|
||||||
|
>[!NOTE]
|
||||||
|
>If you hide all sections then the app will show a restricted interface, as in the following screenshot:
|
||||||
|
>
|
||||||
|
>
|
||||||
|
|
||||||
|
@ -53,4 +53,9 @@ This can only be done in Group Policy.
|
|||||||
|
|
||||||
6. Open the **Hide the Virus and threat protection area** setting and set it to **Enabled**. Click **OK**.
|
6. Open the **Hide the Virus and threat protection area** setting and set it to **Enabled**. Click **OK**.
|
||||||
|
|
||||||
7. [Deploy the updated GPO as you normally do](https://msdn.microsoft.com/en-us/library/ee663280(v=vs.85).aspx).
|
7. [Deploy the updated GPO as you normally do](https://msdn.microsoft.com/en-us/library/ee663280(v=vs.85).aspx).
|
||||||
|
|
||||||
|
>[!NOTE]
|
||||||
|
>If you hide all sections then the app will show a restricted interface, as in the following screenshot:
|
||||||
|
>
|
||||||
|
>
|
@ -55,7 +55,10 @@ You can find more information about each section, including options for configur
|
|||||||
- [Family options](wdsc-family-options.md), which includes access to parental controls along with tips and information for keeping kids safe online
|
- [Family options](wdsc-family-options.md), which includes access to parental controls along with tips and information for keeping kids safe online
|
||||||
|
|
||||||
|
|
||||||
|
>[!NOTE]
|
||||||
|
>If you hide all sections then the app will show a restricted interface, as in the following screenshot:
|
||||||
|
>
|
||||||
|
>
|
||||||
|
|
||||||
|
|
||||||
|
|
||||||
|
Loading…
x
Reference in New Issue
Block a user