From 80e789641ad9cfc2106c59ad30387e7e134094bb Mon Sep 17 00:00:00 2001 From: Salman Hossain Saif Date: Sat, 6 Aug 2022 11:20:10 +0600 Subject: [PATCH 001/240] Update minimum-password-length.md Changed capitalization and minimum password length. --- .../security-policy-settings/minimum-password-length.md | 2 +- 1 file changed, 1 insertion(+), 1 deletion(-) diff --git a/windows/security/threat-protection/security-policy-settings/minimum-password-length.md b/windows/security/threat-protection/security-policy-settings/minimum-password-length.md index 79aad414c3..7913729df3 100644 --- a/windows/security/threat-protection/security-policy-settings/minimum-password-length.md +++ b/windows/security/threat-protection/security-policy-settings/minimum-password-length.md @@ -36,7 +36,7 @@ The **Minimum password length** policy setting determines the least number of ch ### Best practices -Set Minimum password length to at least a value of 14. If the number of characters is set to 0, no password is required. In most environments, an eight-character password is recommended because it's long enough to provide adequate security and still short enough for users to easily remember. A minimum password length greater than 14 isn't supported at this time. This value will help provide adequate defense against a brute force attack. Adding complexity requirements will help reduce the possibility of a dictionary attack. For more info, see [Password must meet complexity requirements](password-must-meet-complexity-requirements.md). +Set minimum password length to at least a value of 8. If the number of characters is set to 0, no password is required. In most environments, an eight-character password is recommended because it's long enough to provide adequate security and still short enough for users to easily remember. A minimum password length greater than 14 isn't supported at this time. This value will help provide adequate defense against a brute force attack. Adding complexity requirements will help reduce the possibility of a dictionary attack. For more info, see [Password must meet complexity requirements](password-must-meet-complexity-requirements.md). Permitting short passwords reduces security because short passwords can be easily broken with tools that do dictionary or brute force attacks against the passwords. Requiring long passwords can result in mistyped passwords that might cause account lockouts and might increase the volume of Help Desk calls. From 47c3b1264a7c34f8b763c09596e39084400336f9 Mon Sep 17 00:00:00 2001 From: Guy Wild <98332688+guywi-ms@users.noreply.github.com> Date: Fri, 19 Aug 2022 12:57:41 +0300 Subject: [PATCH 002/240] Update update-compliance-v2-use.md ------- cc: @mestew --- .../deployment/update/update-compliance-v2-use.md | 12 ++++++------ 1 file changed, 6 insertions(+), 6 deletions(-) diff --git a/windows/deployment/update/update-compliance-v2-use.md b/windows/deployment/update/update-compliance-v2-use.md index 9326548d4f..7af8e03d7f 100644 --- a/windows/deployment/update/update-compliance-v2-use.md +++ b/windows/deployment/update/update-compliance-v2-use.md @@ -53,11 +53,11 @@ The data powering Update Compliance is refreshed every 24 hours, and refreshes w | UCDeviceAlert | Every event | 24-36 hours | | UCClientReadinessStatus | After Windows 11 readiness assessment |24-36 hours | -## Using Log Analytics +## Working with Azure Monitor Logs -Update Compliance is built on the Log Analytics platform that is integrated into Operations Management Suite. All data in the workspace is the direct result of a query. Understanding the tools and features at your disposal, all integrated within Azure portal, can deeply enhance your experience and complement Update Compliance. +Update Compliance is built on the Azure Monitor Logs platform. All Update Compliance-related data is collected in a Log Analytics workspace, where the data is available for querying. Understanding the Azure Monitor Logs tools and features at your disposal, all integrated within Azure portal, can deeply enhance your experience and complement Update Compliance. -See below for a few articles related to Log Analytics: -- Learn how to effectively execute custom Log Searches by referring to Microsoft Azure's excellent documentation on [querying data in Log Analytics](/azure/log-analytics/log-analytics-log-searches). -- Review the documentation on [analyzing data for use in Log Analytics](/azure/log-analytics/log-analytics-dashboards) to develop your own custom data views in Operations Management Suite or [Power BI](https://powerbi.microsoft.com/). -- [Gain an overview of alerts for Log Analytics](/azure/log-analytics/log-analytics-alerts) and learn how to use it to always stay informed about the most critical issues you care about. +See the Azure Monitor Logs articles below to learn how to: +- [Query log data effectively in Azure Monitor Logs](/azure/log-analytics/log-analytics-log-searches). +- [Create and share dashboards of data in a Log Analytics workspace](/azure/log-analytics/log-analytics-dashboards). +- [Set up alerts in Azure Monitor](/azure/log-analytics/log-analytics-alerts) to always stay informed about the critical issues you care about most. From cc37b63be7709919d56e09cc61e693416505dfae Mon Sep 17 00:00:00 2001 From: Angela Fleischmann Date: Tue, 6 Sep 2022 11:14:14 -0600 Subject: [PATCH 003/240] Update .openpublishing.redirection.json redirect_url may not be site relative in line 1190', fixed - Absolute with typo 'redirect_url may not be site relative in line 6820', fixed -Del md 'redirect_url may not be site relative in line 14405', fixed - Del md 'redirect_url may not be site relative in line 14410', fixed - Del md 'redirect_url may not be site relative in line 19435', fixed - Del md --- .openpublishing.redirection.json | 10 +++++----- 1 file changed, 5 insertions(+), 5 deletions(-) diff --git a/.openpublishing.redirection.json b/.openpublishing.redirection.json index afe30ff75b..14cf800f1e 100644 --- a/.openpublishing.redirection.json +++ b/.openpublishing.redirection.json @@ -1187,7 +1187,7 @@ }, { "source_path": "windows/threat-protection/windows-defender-smartscreen/windows-defender-smartscreen-available-settings.md", - "redirect_url": "hhttps://docs.microsoft.com/windows/security/threat-protection/microsoft-defender-smartscreen/microsoft-defender-smartscreen-available-settings", + "redirect_url": "/windows/security/threat-protection/microsoft-defender-smartscreen/microsoft-defender-smartscreen-available-settings", "redirect_document_id": false }, { @@ -6817,7 +6817,7 @@ }, { "source_path": "windows/manage/waas-wufb-intune.md", - "redirect_url": "/windows/deployment/update/waas-wufb-intune.md", + "redirect_url": "/windows/deployment/update/waas-wufb-intune", "redirect_document_id": false }, { @@ -14402,12 +14402,12 @@ }, { "source_path": "windows/manage/sign-up-windows-store-for-business.md", - "redirect_url": "/microsoft-store/index.md", + "redirect_url": "/microsoft-store/index", "redirect_document_id": false }, { "source_path": "store-for-business/sign-up-windows-store-for-business.md", - "redirect_url": "/microsoft-store/index.md", + "redirect_url": "/microsoft-store/index", "redirect_document_id": false }, { @@ -19432,7 +19432,7 @@ }, { "source_path": "windows/security/threat-protection/intelligence/rootkits-malware.md", - "redirect_url": "/microsoft-365/security/intelligence/rootkits-malware.md", + "redirect_url": "/microsoft-365/security/intelligence/rootkits-malware", "redirect_document_id": false }, { From 2396421384b18415bf84e01f85d324eb21c45ead Mon Sep 17 00:00:00 2001 From: Angela Fleischmann Date: Mon, 12 Sep 2022 12:11:59 -0600 Subject: [PATCH 004/240] Update .openpublishing.redirection.json --- .openpublishing.redirection.json | 2 +- 1 file changed, 1 insertion(+), 1 deletion(-) diff --git a/.openpublishing.redirection.json b/.openpublishing.redirection.json index 14cf800f1e..22d9ab9ea4 100644 --- a/.openpublishing.redirection.json +++ b/.openpublishing.redirection.json @@ -7267,7 +7267,7 @@ }, { "source_path": "windows/manage/application-development-for-windows-as-a-service.md", - "redirect_url": "https://msdn.microsoft.com/windows/uwp/get-started/application-development-for-windows-as-a-service", + "redirect_url": "windows/uwp/updates-and-versions/application-development-for-windows-as-a-service", "redirect_document_id": false }, { From dcb84bc418431aa1c1de0172e1210e91e4b65d27 Mon Sep 17 00:00:00 2001 From: Angela Fleischmann Date: Mon, 19 Sep 2022 13:32:39 -0600 Subject: [PATCH 005/240] Update .openpublishing.redirection.json --- .openpublishing.redirection.json | 2 +- 1 file changed, 1 insertion(+), 1 deletion(-) diff --git a/.openpublishing.redirection.json b/.openpublishing.redirection.json index 22d9ab9ea4..db6d1b6b08 100644 --- a/.openpublishing.redirection.json +++ b/.openpublishing.redirection.json @@ -7447,7 +7447,7 @@ }, { "source_path": "windows/plan/chromebook-migration-guide.md", - "redirect_url": "edu/windows/chromebook-migration-guide", + "redirect_url": "education/windows/chromebook-migration-guide", "redirect_document_id": false }, { From b6526db75b5ae675435bccf3e79f8adc0c837086 Mon Sep 17 00:00:00 2001 From: rekhanr <40372231+rekhanr@users.noreply.github.com> Date: Wed, 5 Oct 2022 19:09:31 -0700 Subject: [PATCH 006/240] Update windows-autopatch-changes-to-tenant.md @hathin FYI on the changes due to DCv2 rollout. I still need to update the column, that still shows the CSP as URIs vs the plain English text. @tiaraquan. --- .../windows-autopatch-changes-to-tenant.md | 56 ++++++++----------- 1 file changed, 23 insertions(+), 33 deletions(-) diff --git a/windows/deployment/windows-autopatch/references/windows-autopatch-changes-to-tenant.md b/windows/deployment/windows-autopatch/references/windows-autopatch-changes-to-tenant.md index 698612aa82..5df37b660f 100644 --- a/windows/deployment/windows-autopatch/references/windows-autopatch-changes-to-tenant.md +++ b/windows/deployment/windows-autopatch/references/windows-autopatch-changes-to-tenant.md @@ -38,8 +38,6 @@ Windows Autopatch will create Azure Active Directory groups that are required to | Modern Workplace Devices-Windows Autopatch-First | First production deployment ring for early adopters | | Modern Workplace Devices-Windows Autopatch-Fast | Fast deployment ring for quick rollout and adoption | | Modern Workplace Devices-Windows Autopatch-Broad | Final deployment ring for broad rollout into the organization | -| Modern Workplace Devices Dynamic - Windows 10 | Microsoft Managed Desktop Devices with Windows 10

Group Rule:

  • `(device.devicePhysicalIds -any _ -startsWith \"[OrderID]:Microsoft365Managed_\")`
  • `(device.deviceOSVersion -notStartsWith \"10.0.22000\")`

Exclusions:
  • Modern Workplace - Telemetry Settings for Windows 11
| -| Modern Workplace Devices Dynamic - Windows 11 | Microsoft Managed Desktop Devices with Windows 11

Group Rule:

  • `(device.devicePhysicalIds -any _ -startsWith \"[OrderID]:Microsoft365Managed_\")`
  • `(device.deviceOSVersion -startsWith \"10.0.22000\")`

Exclusions:
  • Modern Workplace - Telemetry Settings for Windows 10
| | Modern Workplace Roles - Service Administrator | All users granted access to Modern Workplace Service Administrator Role | | Modern Workplace Roles - Service Reader | All users granted access to Modern Workplace Service Reader Role | | Windows Autopatch Device Registration | Group for automatic device registration for Windows Autopatch | @@ -59,19 +57,15 @@ Windows Autopatch creates an enterprise application in your tenant. This enterpr ## Device configuration policies -- Modern Workplace - Set MDM to Win Over GPO -- Modern Workplace - Telemetry Settings for Windows 10 -- Modern Workplace - Telemetry Settings for Windows 11 -- Modern Workplace-Window Update Detection Frequency -- Modern Workplace - Data Collection +- Windows Autopatch - Set MDM to Win Over GPO +- Windows Autopatch - Data Collection +- Windows Autopatch-Window Update Detection Frequency -| Policy name | Policy description | OMA | Value | +| Policy name | Policy description | Properties | Value | | ----- | ----- | ----- | ----- | -| Modern Workplace - Set MDM to Win Over GPO | Sets mobile device management (MDM) to win over GPO

Assigned to:

  • Modern Workplace Devices-Windows Autopatch-Test
  • Modern Workplace Devices-Windows Autopatch-First
  • Modern Workplace Devices-Windows Autopatch-Fast
  • Modern Workplace Devices-Windows Autopatch-Broad
| | | -| Modern Workplace - Telemetry Settings for Windows 10 | Telemetry settings for Windows 10

Assigned to:

  • Modern Workplace Devices-Windows Autopatch-Test
  • Modern Workplace Devices-Windows Autopatch-First
  • Modern Workplace Devices-Windows Autopatch-Fast
  • Modern Workplace Devices-Windows Autopatch-Broad
|[./Device/Vendor/MSFT/Policy/Config/System/AllowTelemetry](/windows/client-management/mdm/policy-csp-system#system-allowtelemetry) | 2 | -| Modern Workplace - Telemetry Settings for Windows 11 | Telemetry settings for Windows 11

Assigned to:

  • Modern Workplace Devices-Windows Autopatch-Test
  • Modern Workplace Devices-Windows Autopatch-First
  • Modern Workplace Devices-Windows Autopatch-Fast
  • Modern Workplace Devices-Windows Autopatch-Broad
|
  • [./Device/Vendor/MSFT/Policy/Config/System/AllowTelemetry ](/windows/client-management/mdm/policy-csp-system#system-allowtelemetry)
  • [./Device/Vendor/MSFT/Policy/Config/System/LimitEnhancedDiagnosticDataWindowsAnalytics](/windows/client-management/mdm/policy-csp-system#system-limitenhanceddiagnosticdatawindowsanalytics)
  • [./Device/Vendor/MSFT/Policy/Config/System/LimitDumpCollection](/windows/client-management/mdm/policy-csp-system#system-limitdumpcollection)
  • [./Device/Vendor/MSFT/Policy/Config/System/LimitDiagnosticLogCollection](/windows/client-management/mdm/policy-csp-system#system-limitdiagnosticlogcollection)
|