mirror of
https://github.com/MicrosoftDocs/windows-itpro-docs.git
synced 2025-05-12 13:27:23 +00:00
Merge branch 'main' into ap-reliability-report-rem-022425
This commit is contained in:
commit
ed3c8e8dcc
@ -2,7 +2,7 @@
|
|||||||
title: Use Set up School PCs app
|
title: Use Set up School PCs app
|
||||||
description: Learn how to use the Set up School PCs app and apply the provisioning package.
|
description: Learn how to use the Set up School PCs app and apply the provisioning package.
|
||||||
ms.topic: how-to
|
ms.topic: how-to
|
||||||
ms.date: 07/09/2024
|
ms.date: 02/25/2025
|
||||||
appliesto:
|
appliesto:
|
||||||
- ✅ <a href="https://learn.microsoft.com/windows/release-health/supported-versions-windows-client" target="_blank">Windows 11</a>
|
- ✅ <a href="https://learn.microsoft.com/windows/release-health/supported-versions-windows-client" target="_blank">Windows 11</a>
|
||||||
- ✅ <a href="https://learn.microsoft.com/windows/release-health/supported-versions-windows-client" target="_blank">Windows 10</a>
|
- ✅ <a href="https://learn.microsoft.com/windows/release-health/supported-versions-windows-client" target="_blank">Windows 10</a>
|
||||||
|
@ -20,13 +20,3 @@ The following table lists the Windows editions that support Assigned Access:
|
|||||||
|IoT Enterprise LTSC|✅|
|
|IoT Enterprise LTSC|✅|
|
||||||
|Pro Education|✅|
|
|Pro Education|✅|
|
||||||
|Pro|✅|
|
|Pro|✅|
|
||||||
|
|
||||||
<!--
|
|
||||||
Assigned Access license entitlements are granted by the following licenses:
|
|
||||||
|
|
||||||
|Windows Pro/Pro Education/SE|Windows Enterprise E3|Windows Enterprise E5|Windows Education A3|Windows Education A5|
|
|
||||||
|:---:|:---:|:---:|:---:|:---:|
|
|
||||||
|Yes|Yes|Yes|Yes|Yes|
|
|
||||||
|
|
||||||
For more information about Windows licensing, see [Windows licensing overview](/windows/whats-new/windows-licensing).
|
|
||||||
-->
|
|
@ -20,14 +20,4 @@ The following table lists the Windows editions that support Shell Launcher:
|
|||||||
|IoT Enterprise LTSC|✅|
|
|IoT Enterprise LTSC|✅|
|
||||||
|Pro Education|❌|
|
|Pro Education|❌|
|
||||||
|Pro|❌|
|
|Pro|❌|
|
||||||
|
|Home|❌|
|
||||||
<!--
|
|
||||||
Shell Launcher license entitlements are granted by the following licenses:
|
|
||||||
|
|
||||||
|Windows Pro/Pro Education/SE|Windows Enterprise E3|Windows Enterprise E5|Windows Education A3|Windows Education A5|
|
|
||||||
|:---:|:---:|:---:|:---:|:---:|
|
|
||||||
|No|Yes|Yes|Yes|Yes|
|
|
||||||
|
|
||||||
For more information about Windows licensing, see [Windows licensing overview](/windows/whats-new/windows-licensing).
|
|
||||||
|
|
||||||
-->
|
|
||||||
|
@ -1,7 +1,7 @@
|
|||||||
---
|
---
|
||||||
title: Automatic MDM enrollment in the Intune admin center
|
title: Automatic MDM enrollment in the Intune admin center
|
||||||
description: Automatic MDM enrollment in the Intune admin center
|
description: Automatic MDM enrollment in the Intune admin center
|
||||||
ms.topic: conceptual
|
ms.topic: article
|
||||||
ms.date: 07/08/2024
|
ms.date: 07/08/2024
|
||||||
---
|
---
|
||||||
|
|
||||||
|
@ -1,7 +1,7 @@
|
|||||||
---
|
---
|
||||||
title: Bulk enrollment
|
title: Bulk enrollment
|
||||||
description: Bulk enrollment is an efficient way to set up an MDM server to manage a large number of devices without the need to reimage the devices.
|
description: Bulk enrollment is an efficient way to set up an MDM server to manage a large number of devices without the need to reimage the devices.
|
||||||
ms.topic: conceptual
|
ms.topic: how-to
|
||||||
ms.date: 07/08/2024
|
ms.date: 07/08/2024
|
||||||
---
|
---
|
||||||
|
|
||||||
|
@ -1,7 +1,7 @@
|
|||||||
---
|
---
|
||||||
title: Certificate authentication device enrollment
|
title: Certificate authentication device enrollment
|
||||||
description: This section provides an example of the mobile device enrollment protocol using certificate authentication policy.
|
description: This section provides an example of the mobile device enrollment protocol using certificate authentication policy.
|
||||||
ms.topic: conceptual
|
ms.topic: how-to
|
||||||
ms.date: 07/08/2024
|
ms.date: 07/08/2024
|
||||||
---
|
---
|
||||||
|
|
||||||
|
@ -1,7 +1,7 @@
|
|||||||
---
|
---
|
||||||
title: Certificate Renewal
|
title: Certificate Renewal
|
||||||
description: Learn how to find all the resources that you need to provide continuous access to client certificates.
|
description: Learn how to find all the resources that you need to provide continuous access to client certificates.
|
||||||
ms.topic: conceptual
|
ms.topic: how-to
|
||||||
ms.date: 07/08/2024
|
ms.date: 07/08/2024
|
||||||
---
|
---
|
||||||
|
|
||||||
|
@ -2,7 +2,7 @@
|
|||||||
title: Windows Tools
|
title: Windows Tools
|
||||||
description: The folders for Windows Tools and Administrative Tools are folders in the Control Panel that contain tools for system administrators and advanced users.
|
description: The folders for Windows Tools and Administrative Tools are folders in the Control Panel that contain tools for system administrators and advanced users.
|
||||||
ms.date: 07/01/2024
|
ms.date: 07/01/2024
|
||||||
ms.topic: conceptual
|
ms.topic: article
|
||||||
zone_pivot_groups: windows-versions-11-10
|
zone_pivot_groups: windows-versions-11-10
|
||||||
ms.collection:
|
ms.collection:
|
||||||
- essentials-manage
|
- essentials-manage
|
||||||
|
@ -2,7 +2,7 @@
|
|||||||
title: Windows default media removal policy
|
title: Windows default media removal policy
|
||||||
description: Manage default media removal policy in Windows.
|
description: Manage default media removal policy in Windows.
|
||||||
ms.date: 07/01/2024
|
ms.date: 07/01/2024
|
||||||
ms.topic: conceptual
|
ms.topic: how-to
|
||||||
---
|
---
|
||||||
|
|
||||||
# Manage default media removal policy
|
# Manage default media removal policy
|
||||||
|
@ -3,7 +3,7 @@ title: Connect to remote Microsoft Entra joined device
|
|||||||
description: Learn how to use Remote Desktop Connection to connect to a Microsoft Entra joined device.
|
description: Learn how to use Remote Desktop Connection to connect to a Microsoft Entra joined device.
|
||||||
ms.localizationpriority: medium
|
ms.localizationpriority: medium
|
||||||
ms.date: 07/01/2024
|
ms.date: 07/01/2024
|
||||||
ms.topic: conceptual
|
ms.topic: how-to
|
||||||
ms.collection:
|
ms.collection:
|
||||||
- highpri
|
- highpri
|
||||||
- tier2
|
- tier2
|
||||||
|
@ -2,7 +2,7 @@
|
|||||||
title: Manage Device Installation with Group Policy
|
title: Manage Device Installation with Group Policy
|
||||||
description: Find out how to manage Device Installation Restrictions with Group Policy.
|
description: Find out how to manage Device Installation Restrictions with Group Policy.
|
||||||
ms.date: 07/01/2024
|
ms.date: 07/01/2024
|
||||||
ms.topic: conceptual
|
ms.topic: how-to
|
||||||
---
|
---
|
||||||
|
|
||||||
# Manage Device Installation with Group Policy
|
# Manage Device Installation with Group Policy
|
||||||
|
@ -2,7 +2,7 @@
|
|||||||
title: Manage the Settings app with Group Policy
|
title: Manage the Settings app with Group Policy
|
||||||
description: Find out how to manage the Settings app with Group Policy so you can hide specific pages from users.
|
description: Find out how to manage the Settings app with Group Policy so you can hide specific pages from users.
|
||||||
ms.date: 07/01/2024
|
ms.date: 07/01/2024
|
||||||
ms.topic: conceptual
|
ms.topic: how-to
|
||||||
---
|
---
|
||||||
|
|
||||||
# Manage the Settings app with Group Policy
|
# Manage the Settings app with Group Policy
|
||||||
|
@ -2,7 +2,7 @@
|
|||||||
title: Create mandatory user profiles
|
title: Create mandatory user profiles
|
||||||
description: A mandatory user profile is a special type of preconfigured roaming user profile that administrators can use to specify settings for users.
|
description: A mandatory user profile is a special type of preconfigured roaming user profile that administrators can use to specify settings for users.
|
||||||
ms.date: 07/01/2024
|
ms.date: 07/01/2024
|
||||||
ms.topic: conceptual
|
ms.topic: how-to
|
||||||
---
|
---
|
||||||
|
|
||||||
# Create mandatory user profiles
|
# Create mandatory user profiles
|
||||||
|
@ -2,7 +2,7 @@
|
|||||||
title: Use Quick Assist to help users
|
title: Use Quick Assist to help users
|
||||||
description: Learn how IT Pros can use Quick Assist to help users.
|
description: Learn how IT Pros can use Quick Assist to help users.
|
||||||
ms.date: 07/01/2024
|
ms.date: 07/01/2024
|
||||||
ms.topic: conceptual
|
ms.topic: how-to
|
||||||
ms.collection:
|
ms.collection:
|
||||||
- highpri
|
- highpri
|
||||||
- tier1
|
- tier1
|
||||||
|
@ -1,7 +1,7 @@
|
|||||||
---
|
---
|
||||||
title: Windows Libraries
|
title: Windows Libraries
|
||||||
description: All about Windows Libraries, which are containers for users' content, such as Documents and Pictures.
|
description: All about Windows Libraries, which are containers for users' content, such as Documents and Pictures.
|
||||||
ms.topic: conceptual
|
ms.topic: concept-article
|
||||||
ms.date: 07/01/2024
|
ms.date: 07/01/2024
|
||||||
---
|
---
|
||||||
|
|
||||||
|
@ -2,7 +2,7 @@
|
|||||||
title: What version of Windows am I running?
|
title: What version of Windows am I running?
|
||||||
description: Discover which version of Windows you're running to determine whether or not your device is enrolled in the Long-Term Servicing Channel or General Availability Channel.
|
description: Discover which version of Windows you're running to determine whether or not your device is enrolled in the Long-Term Servicing Channel or General Availability Channel.
|
||||||
ms.date: 07/01/2024
|
ms.date: 07/01/2024
|
||||||
ms.topic: conceptual
|
ms.topic: how-to
|
||||||
---
|
---
|
||||||
|
|
||||||
# What version of Windows am I running?
|
# What version of Windows am I running?
|
||||||
|
@ -1,7 +1,7 @@
|
|||||||
---
|
---
|
||||||
title: Secured-core configuration lock
|
title: Secured-core configuration lock
|
||||||
description: A secured-core PC (SCPC) feature that prevents configuration drift from secured-core PC features caused by unintentional misconfiguration.
|
description: A secured-core PC (SCPC) feature that prevents configuration drift from secured-core PC features caused by unintentional misconfiguration.
|
||||||
ms.topic: conceptual
|
ms.topic: article
|
||||||
ms.date: 07/08/2024
|
ms.date: 07/08/2024
|
||||||
appliesto:
|
appliesto:
|
||||||
- ✅ <a href="https://learn.microsoft.com/windows/release-health/supported-versions-windows-client" target="_blank">Windows 11</a>
|
- ✅ <a href="https://learn.microsoft.com/windows/release-health/supported-versions-windows-client" target="_blank">Windows 11</a>
|
||||||
|
@ -1,7 +1,7 @@
|
|||||||
---
|
---
|
||||||
title: Mobile device management MDM for device updates
|
title: Mobile device management MDM for device updates
|
||||||
description: Windows provides several APIs to help mobile device management (MDM) solutions manage updates. Learn how to use these APIs to implement update management.
|
description: Windows provides several APIs to help mobile device management (MDM) solutions manage updates. Learn how to use these APIs to implement update management.
|
||||||
ms.topic: conceptual
|
ms.topic: article
|
||||||
ms.date: 07/08/2024
|
ms.date: 07/08/2024
|
||||||
ms.collection:
|
ms.collection:
|
||||||
- highpri
|
- highpri
|
||||||
|
@ -1,7 +1,7 @@
|
|||||||
---
|
---
|
||||||
title: Disconnecting from the management infrastructure (unenrollment)
|
title: Disconnecting from the management infrastructure (unenrollment)
|
||||||
description: Disconnecting is initiated either locally by the user using a phone or remotely by the IT admin using management server.
|
description: Disconnecting is initiated either locally by the user using a phone or remotely by the IT admin using management server.
|
||||||
ms.topic: conceptual
|
ms.topic: article
|
||||||
ms.date: 07/08/2024
|
ms.date: 07/08/2024
|
||||||
---
|
---
|
||||||
|
|
||||||
|
@ -1,7 +1,7 @@
|
|||||||
---
|
---
|
||||||
title: Enable ADMX policies in MDM
|
title: Enable ADMX policies in MDM
|
||||||
description: Use this step-by-step guide to configure a selected set of Group Policy administrative templates (ADMX policies) in Mobile Device Management (MDM).
|
description: Use this step-by-step guide to configure a selected set of Group Policy administrative templates (ADMX policies) in Mobile Device Management (MDM).
|
||||||
ms.topic: conceptual
|
ms.topic: how-to
|
||||||
ms.localizationpriority: medium
|
ms.localizationpriority: medium
|
||||||
ms.date: 07/08/2024
|
ms.date: 07/08/2024
|
||||||
---
|
---
|
||||||
|
@ -1,7 +1,7 @@
|
|||||||
---
|
---
|
||||||
title: Enroll a Windows device automatically using Group Policy
|
title: Enroll a Windows device automatically using Group Policy
|
||||||
description: Learn how to use a Group Policy to trigger autoenrollment to MDM for Active Directory (AD) domain-joined devices.
|
description: Learn how to use a Group Policy to trigger autoenrollment to MDM for Active Directory (AD) domain-joined devices.
|
||||||
ms.topic: conceptual
|
ms.topic: how-to
|
||||||
ms.date: 07/08/2024
|
ms.date: 07/08/2024
|
||||||
ms.collection:
|
ms.collection:
|
||||||
- highpri
|
- highpri
|
||||||
|
@ -1,7 +1,7 @@
|
|||||||
---
|
---
|
||||||
title: Enterprise app management
|
title: Enterprise app management
|
||||||
description: This article covers one of the key mobile device management (MDM) features for managing the lifecycle of apps across Windows devices.
|
description: This article covers one of the key mobile device management (MDM) features for managing the lifecycle of apps across Windows devices.
|
||||||
ms.topic: conceptual
|
ms.topic: article
|
||||||
ms.date: 07/08/2024
|
ms.date: 07/08/2024
|
||||||
---
|
---
|
||||||
|
|
||||||
|
@ -2,7 +2,7 @@
|
|||||||
title: eSIM Enterprise Management
|
title: eSIM Enterprise Management
|
||||||
description: Learn how Mobile Device Management (MDM) Providers support the eSIM Profile Management Solution on Windows.
|
description: Learn how Mobile Device Management (MDM) Providers support the eSIM Profile Management Solution on Windows.
|
||||||
ms.localizationpriority: medium
|
ms.localizationpriority: medium
|
||||||
ms.topic: conceptual
|
ms.topic: article
|
||||||
ms.date: 07/08/2024
|
ms.date: 07/08/2024
|
||||||
---
|
---
|
||||||
|
|
||||||
|
@ -1,7 +1,7 @@
|
|||||||
---
|
---
|
||||||
title: Federated authentication device enrollment
|
title: Federated authentication device enrollment
|
||||||
description: This section provides an example of the mobile device enrollment protocol using federated authentication policy.
|
description: This section provides an example of the mobile device enrollment protocol using federated authentication policy.
|
||||||
ms.topic: conceptual
|
ms.topic: article
|
||||||
ms.date: 07/08/2024
|
ms.date: 07/08/2024
|
||||||
---
|
---
|
||||||
|
|
||||||
|
@ -1,7 +1,7 @@
|
|||||||
---
|
---
|
||||||
title: Support for Windows Information Protection (WIP) on Windows
|
title: Support for Windows Information Protection (WIP) on Windows
|
||||||
description: Learn about implementing the Windows version of Windows Information Protection (WIP), which is a lightweight solution for managing company data access and security on personal devices.
|
description: Learn about implementing the Windows version of Windows Information Protection (WIP), which is a lightweight solution for managing company data access and security on personal devices.
|
||||||
ms.topic: conceptual
|
ms.topic: how-to
|
||||||
ms.date: 07/08/2024
|
ms.date: 07/08/2024
|
||||||
---
|
---
|
||||||
|
|
||||||
|
@ -3,7 +3,7 @@ title: Manage Windows devices in your organization - transitioning to modern man
|
|||||||
description: This article offers strategies for deploying and managing Windows devices, including deploying Windows in a mixed environment.
|
description: This article offers strategies for deploying and managing Windows devices, including deploying Windows in a mixed environment.
|
||||||
ms.localizationpriority: medium
|
ms.localizationpriority: medium
|
||||||
ms.date: 07/08/2024
|
ms.date: 07/08/2024
|
||||||
ms.topic: conceptual
|
ms.topic: article
|
||||||
---
|
---
|
||||||
|
|
||||||
# Manage Windows devices in your organization - transitioning to modern management
|
# Manage Windows devices in your organization - transitioning to modern management
|
||||||
|
@ -1,7 +1,7 @@
|
|||||||
---
|
---
|
||||||
title: Collect MDM logs
|
title: Collect MDM logs
|
||||||
description: Learn how to collect MDM logs. Examining these logs can help diagnose enrollment or device management issues in Windows devices managed by an MDM server.
|
description: Learn how to collect MDM logs. Examining these logs can help diagnose enrollment or device management issues in Windows devices managed by an MDM server.
|
||||||
ms.topic: conceptual
|
ms.topic: how-to
|
||||||
ms.date: 07/08/2024
|
ms.date: 07/08/2024
|
||||||
ms.collection:
|
ms.collection:
|
||||||
- highpri
|
- highpri
|
||||||
|
@ -1,7 +1,7 @@
|
|||||||
---
|
---
|
||||||
title: MDM enrollment of Windows devices
|
title: MDM enrollment of Windows devices
|
||||||
description: Learn about mobile device management (MDM) enrollment of Windows devices to simplify access to your organization's resources.
|
description: Learn about mobile device management (MDM) enrollment of Windows devices to simplify access to your organization's resources.
|
||||||
ms.topic: conceptual
|
ms.topic: how-to
|
||||||
ms.collection:
|
ms.collection:
|
||||||
- highpri
|
- highpri
|
||||||
- tier2
|
- tier2
|
||||||
|
@ -2,7 +2,7 @@
|
|||||||
title: Mobile Device Management overview
|
title: Mobile Device Management overview
|
||||||
description: Windows provides an enterprise-level solution to mobile management, to help IT pros comply with security policies while avoiding compromise of user's privacy.
|
description: Windows provides an enterprise-level solution to mobile management, to help IT pros comply with security policies while avoiding compromise of user's privacy.
|
||||||
ms.date: 07/08/2024
|
ms.date: 07/08/2024
|
||||||
ms.topic: conceptual
|
ms.topic: article
|
||||||
ms.localizationpriority: medium
|
ms.localizationpriority: medium
|
||||||
ms.collection:
|
ms.collection:
|
||||||
- highpri
|
- highpri
|
||||||
|
@ -1,7 +1,7 @@
|
|||||||
---
|
---
|
||||||
title: Mobile device enrollment
|
title: Mobile device enrollment
|
||||||
description: Learn how mobile device enrollment verifies that only authenticated and authorized devices are managed by the enterprise.
|
description: Learn how mobile device enrollment verifies that only authenticated and authorized devices are managed by the enterprise.
|
||||||
ms.topic: conceptual
|
ms.topic: article
|
||||||
ms.date: 07/08/2024
|
ms.date: 07/08/2024
|
||||||
ms.collection:
|
ms.collection:
|
||||||
- highpri
|
- highpri
|
||||||
|
@ -1,7 +1,7 @@
|
|||||||
---
|
---
|
||||||
title: OMA DM protocol support
|
title: OMA DM protocol support
|
||||||
description: See how the OMA DM client communicates with the server over HTTPS and uses DM Sync (OMA DM v1.2) as the message payload.
|
description: See how the OMA DM client communicates with the server over HTTPS and uses DM Sync (OMA DM v1.2) as the message payload.
|
||||||
ms.topic: conceptual
|
ms.topic: article
|
||||||
ms.date: 07/08/2024
|
ms.date: 07/08/2024
|
||||||
---
|
---
|
||||||
|
|
||||||
|
@ -1,7 +1,7 @@
|
|||||||
---
|
---
|
||||||
title: On-premises authentication device enrollment
|
title: On-premises authentication device enrollment
|
||||||
description: This section provides an example of the mobile device enrollment protocol using on-premises authentication policy.
|
description: This section provides an example of the mobile device enrollment protocol using on-premises authentication policy.
|
||||||
ms.topic: conceptual
|
ms.topic: article
|
||||||
ms.date: 07/08/2024
|
ms.date: 07/08/2024
|
||||||
---
|
---
|
||||||
|
|
||||||
|
@ -1,7 +1,7 @@
|
|||||||
---
|
---
|
||||||
title: Push notification support for device management
|
title: Push notification support for device management
|
||||||
description: The DMClient CSP supports the ability to configure push-initiated device management sessions.
|
description: The DMClient CSP supports the ability to configure push-initiated device management sessions.
|
||||||
ms.topic: conceptual
|
ms.topic: how-to
|
||||||
ms.date: 07/08/2024
|
ms.date: 07/08/2024
|
||||||
---
|
---
|
||||||
|
|
||||||
|
@ -1,7 +1,7 @@
|
|||||||
---
|
---
|
||||||
title: Server requirements for using OMA DM to manage Windows devices
|
title: Server requirements for using OMA DM to manage Windows devices
|
||||||
description: Learn about the general server requirements for using OMA DM to manage Windows devices, including the supported versions of OMA DM.
|
description: Learn about the general server requirements for using OMA DM to manage Windows devices, including the supported versions of OMA DM.
|
||||||
ms.topic: conceptual
|
ms.topic: article
|
||||||
ms.date: 07/08/2024
|
ms.date: 07/08/2024
|
||||||
---
|
---
|
||||||
|
|
||||||
|
@ -1,7 +1,7 @@
|
|||||||
---
|
---
|
||||||
title: Structure of OMA DM provisioning files
|
title: Structure of OMA DM provisioning files
|
||||||
description: Learn about the structure of OMA DM provisioning files, for example how each message is composed of a header, specified by the SyncHdr element, and a message body.
|
description: Learn about the structure of OMA DM provisioning files, for example how each message is composed of a header, specified by the SyncHdr element, and a message body.
|
||||||
ms.topic: conceptual
|
ms.topic: how-to
|
||||||
ms.date: 07/08/2024
|
ms.date: 07/08/2024
|
||||||
---
|
---
|
||||||
|
|
||||||
|
@ -1,7 +1,7 @@
|
|||||||
---
|
---
|
||||||
title: Understanding ADMX policies
|
title: Understanding ADMX policies
|
||||||
description: You can use ADMX policies for Windows mobile device management (MDM) across Windows devices.
|
description: You can use ADMX policies for Windows mobile device management (MDM) across Windows devices.
|
||||||
ms.topic: conceptual
|
ms.topic: concept-article
|
||||||
ms.date: 07/08/2024
|
ms.date: 07/08/2024
|
||||||
---
|
---
|
||||||
|
|
||||||
|
@ -1,7 +1,7 @@
|
|||||||
---
|
---
|
||||||
title: Using PowerShell scripting with the WMI Bridge Provider
|
title: Using PowerShell scripting with the WMI Bridge Provider
|
||||||
description: This article covers using PowerShell Cmdlet scripts to configure per-user and per-device policy settings, and how to invoke methods through the WMI Bridge Provider.
|
description: This article covers using PowerShell Cmdlet scripts to configure per-user and per-device policy settings, and how to invoke methods through the WMI Bridge Provider.
|
||||||
ms.topic: conceptual
|
ms.topic: article
|
||||||
ms.date: 07/08/2024
|
ms.date: 07/08/2024
|
||||||
---
|
---
|
||||||
|
|
||||||
|
@ -1,7 +1,7 @@
|
|||||||
---
|
---
|
||||||
title: Win32 and Desktop Bridge app ADMX policy Ingestion
|
title: Win32 and Desktop Bridge app ADMX policy Ingestion
|
||||||
description: Ingest ADMX files and set ADMX policies for Win32 and Desktop Bridge apps.
|
description: Ingest ADMX files and set ADMX policies for Win32 and Desktop Bridge apps.
|
||||||
ms.topic: conceptual
|
ms.topic: article
|
||||||
ms.date: 07/08/2024
|
ms.date: 07/08/2024
|
||||||
---
|
---
|
||||||
|
|
||||||
|
@ -1,7 +1,7 @@
|
|||||||
---
|
---
|
||||||
title: Enterprise settings and policy management
|
title: Enterprise settings and policy management
|
||||||
description: The DMClient manages the interaction between a device and a server. Learn more about the client-server management workflow.
|
description: The DMClient manages the interaction between a device and a server. Learn more about the client-server management workflow.
|
||||||
ms.topic: conceptual
|
ms.topic: article
|
||||||
ms.date: 07/08/2024
|
ms.date: 07/08/2024
|
||||||
---
|
---
|
||||||
|
|
||||||
|
@ -1,7 +1,7 @@
|
|||||||
---
|
---
|
||||||
title: WMI providers supported in Windows
|
title: WMI providers supported in Windows
|
||||||
description: Manage settings and applications on devices that subscribe to the Mobile Device Management (MDM) service with Windows Management Infrastructure (WMI).
|
description: Manage settings and applications on devices that subscribe to the Mobile Device Management (MDM) service with Windows Management Infrastructure (WMI).
|
||||||
ms.topic: conceptual
|
ms.topic: article
|
||||||
ms.date: 07/08/2024
|
ms.date: 07/08/2024
|
||||||
---
|
---
|
||||||
|
|
||||||
|
@ -2,7 +2,7 @@
|
|||||||
title: Assigned Access policy settings
|
title: Assigned Access policy settings
|
||||||
description: Learn about the policy settings enforced on a device configured with Assigned Access.
|
description: Learn about the policy settings enforced on a device configured with Assigned Access.
|
||||||
ms.topic: reference
|
ms.topic: reference
|
||||||
ms.date: 10/31/2024
|
ms.date: 02/25/2025
|
||||||
---
|
---
|
||||||
|
|
||||||
# Assigned Access policy settings
|
# Assigned Access policy settings
|
||||||
@ -20,6 +20,7 @@ The following policy settings are applied at the device level when you deploy a
|
|||||||
|
|
||||||
| Type | Path | Name/Description |
|
| Type | Path | Name/Description |
|
||||||
|---------|----------------------------------------------------------------------------|---------------------------------------------------------------------------|
|
|---------|----------------------------------------------------------------------------|---------------------------------------------------------------------------|
|
||||||
|
| **CSP** | `./Vendor/MSFT/Policy/Config/Settings/AllowOnlineTips` | Allow Online Tips |
|
||||||
| **CSP** | `./Vendor/MSFT/Policy/Config/Experience/AllowCortana` | Disable Cortana |
|
| **CSP** | `./Vendor/MSFT/Policy/Config/Experience/AllowCortana` | Disable Cortana |
|
||||||
| **CSP** | `./Vendor/MSFT/Policy/Config/Start/AllowPinnedFolderDocuments` | Disable Start documents icon |
|
| **CSP** | `./Vendor/MSFT/Policy/Config/Start/AllowPinnedFolderDocuments` | Disable Start documents icon |
|
||||||
| **CSP** | `./Vendor/MSFT/Policy/Config/Start/AllowPinnedFolderDownloads` | Disable Start downloads icon |
|
| **CSP** | `./Vendor/MSFT/Policy/Config/Start/AllowPinnedFolderDownloads` | Disable Start downloads icon |
|
||||||
@ -45,8 +46,9 @@ The following policy settings are applied to targeted user accounts when you dep
|
|||||||
|---------|----------------------------------------------------------------------------------|-------------------------------------------------------------------|
|
|---------|----------------------------------------------------------------------------------|-------------------------------------------------------------------|
|
||||||
| **CSP** | `./User/Vendor/MSFT/Policy/Config/Start/DisableContextMenus` | Disable Context Menu for Start menu apps |
|
| **CSP** | `./User/Vendor/MSFT/Policy/Config/Start/DisableContextMenus` | Disable Context Menu for Start menu apps |
|
||||||
| **CSP** | `./User/Vendor/MSFT/Policy/Config/Start/HidePeopleBar` | Hide People Bar from appearing on taskbar |
|
| **CSP** | `./User/Vendor/MSFT/Policy/Config/Start/HidePeopleBar` | Hide People Bar from appearing on taskbar |
|
||||||
| **CSP** | `./User/Vendor/MSFT/Policy/Config/Start/HideRecentlyAddedApps` | Hide recently added apps from appearing on the Start menu |
|
|
||||||
| **CSP** | `./User/Vendor/MSFT/Policy/Config/Start/HideRecentJumplists` | Hide recent jumplists from appearing on the Start menu/taskbar |
|
| **CSP** | `./User/Vendor/MSFT/Policy/Config/Start/HideRecentJumplists` | Hide recent jumplists from appearing on the Start menu/taskbar |
|
||||||
|
| **CSP** | `./User/Vendor/MSFT/Policy/Config/Start/HideRecentlyAddedApps` | Hide recently added apps from appearing on the Start menu |
|
||||||
|
| **CSP** | User Configuration\Administrative Templates\Windows Components\Windows Copilot | Turn off Windows Copilot |
|
||||||
| **GPO** | User Configuration\Administrative Templates\Desktop | Hide and disable all items on the desktop |
|
| **GPO** | User Configuration\Administrative Templates\Desktop | Hide and disable all items on the desktop |
|
||||||
| **GPO** | User Configuration\Administrative Templates\Start Menu and Taskbar | Clear history of recently opened documents on exit |
|
| **GPO** | User Configuration\Administrative Templates\Start Menu and Taskbar | Clear history of recently opened documents on exit |
|
||||||
| **GPO** | User Configuration\Administrative Templates\Start Menu and Taskbar | Disable showing balloon notifications as toasts |
|
| **GPO** | User Configuration\Administrative Templates\Start Menu and Taskbar | Disable showing balloon notifications as toasts |
|
||||||
@ -54,7 +56,7 @@ The following policy settings are applied to targeted user accounts when you dep
|
|||||||
| **GPO** | User Configuration\Administrative Templates\Start Menu and Taskbar | Do not allow pinning programs to the Taskbar |
|
| **GPO** | User Configuration\Administrative Templates\Start Menu and Taskbar | Do not allow pinning programs to the Taskbar |
|
||||||
| **GPO** | User Configuration\Administrative Templates\Start Menu and Taskbar | Do not display or track items in Jump Lists from remote locations |
|
| **GPO** | User Configuration\Administrative Templates\Start Menu and Taskbar | Do not display or track items in Jump Lists from remote locations |
|
||||||
| **GPO** | User Configuration\Administrative Templates\Start Menu and Taskbar | Hide and disable all items on the desktop |
|
| **GPO** | User Configuration\Administrative Templates\Start Menu and Taskbar | Hide and disable all items on the desktop |
|
||||||
| **GPO** | User Configuration\Administrative Templates\Start Menu and Taskbar | Hide the Task View button |
|
| **GPO** | User Configuration\Administrative Templates\Start Menu and Taskbar | Hide the TaskView button |
|
||||||
| **GPO** | User Configuration\Administrative Templates\Start Menu and Taskbar | Lock all taskbar settings |
|
| **GPO** | User Configuration\Administrative Templates\Start Menu and Taskbar | Lock all taskbar settings |
|
||||||
| **GPO** | User Configuration\Administrative Templates\Start Menu and Taskbar | Lock the Taskbar |
|
| **GPO** | User Configuration\Administrative Templates\Start Menu and Taskbar | Lock the Taskbar |
|
||||||
| **GPO** | User Configuration\Administrative Templates\Start Menu and Taskbar | Prevent users from adding or removing toolbars |
|
| **GPO** | User Configuration\Administrative Templates\Start Menu and Taskbar | Prevent users from adding or removing toolbars |
|
||||||
@ -81,6 +83,7 @@ The following policy settings are applied to targeted user accounts when you dep
|
|||||||
| **GPO** | User Configuration\Administrative Templates\Windows Components\File Explorer | Remove *Map network drive* and *Disconnect Network Drive* |
|
| **GPO** | User Configuration\Administrative Templates\Windows Components\File Explorer | Remove *Map network drive* and *Disconnect Network Drive* |
|
||||||
| **GPO** | User Configuration\Administrative Templates\Windows Components\File Explorer | Remove File Explorer's default context menu |
|
| **GPO** | User Configuration\Administrative Templates\Windows Components\File Explorer | Remove File Explorer's default context menu |
|
||||||
| **GPO** | User Configuration\Administrative Templates\Windows Components\Windows Copilot | Turn off Windows Copilot |
|
| **GPO** | User Configuration\Administrative Templates\Windows Components\Windows Copilot | Turn off Windows Copilot |
|
||||||
|
| **GPO** | User Configuration\Administrative Templates\WindowsComponents\File Explorer | Prevent access to drives from My Computer |
|
||||||
|
|
||||||
The following policy settings are applied to the kiosk account when you configure a kiosk experience with Microsoft Edge:
|
The following policy settings are applied to the kiosk account when you configure a kiosk experience with Microsoft Edge:
|
||||||
|
|
||||||
|
@ -1,7 +1,7 @@
|
|||||||
---
|
---
|
||||||
title: How provisioning works in Windows
|
title: How provisioning works in Windows
|
||||||
description: Learn more about how provisioning package work on Windows client devices. A provisioning package (.ppkg) is a container for a collection of configuration settings.
|
description: Learn more about how provisioning package work on Windows client devices. A provisioning package (.ppkg) is a container for a collection of configuration settings.
|
||||||
ms.topic: conceptual
|
ms.topic: article
|
||||||
ms.date: 07/09/2024
|
ms.date: 07/09/2024
|
||||||
---
|
---
|
||||||
|
|
||||||
|
@ -1,7 +1,7 @@
|
|||||||
---
|
---
|
||||||
title: PowerShell cmdlets for provisioning packages in Windows
|
title: PowerShell cmdlets for provisioning packages in Windows
|
||||||
description: Learn more about the Windows PowerShell cmdlets that you can use with Provisioning packages on Windows devices.
|
description: Learn more about the Windows PowerShell cmdlets that you can use with Provisioning packages on Windows devices.
|
||||||
ms.topic: conceptual
|
ms.topic: article
|
||||||
ms.date: 07/09/2024
|
ms.date: 07/09/2024
|
||||||
---
|
---
|
||||||
|
|
||||||
|
@ -1,14 +1,16 @@
|
|||||||
---
|
---
|
||||||
title: WEDL\_AssignedAccess
|
title: WEDL_AssignedAccess
|
||||||
description: WEDL\_AssignedAccess
|
description: WEDL_AssignedAccess
|
||||||
ms.date: 05/20/2024
|
ms.date: 02/25/2025
|
||||||
ms.topic: reference
|
ms.topic: reference
|
||||||
---
|
---
|
||||||
|
|
||||||
# WEDL\_AssignedAccess
|
# WEDL_AssignedAccess
|
||||||
|
|
||||||
This Windows Management Instrumentation (WMI) provider class configures settings for assigned access.
|
This Windows Management Instrumentation (WMI) provider class configures settings for assigned access.
|
||||||
|
|
||||||
|
[!INCLUDE [shell-launcher](../../../includes/licensing/assigned-access.md)]
|
||||||
|
|
||||||
## Syntax
|
## Syntax
|
||||||
|
|
||||||
```powershell
|
```powershell
|
||||||
@ -129,13 +131,3 @@ if ($AssignedAccessConfig) {
|
|||||||
"Could not set up assigned access account."
|
"Could not set up assigned access account."
|
||||||
}
|
}
|
||||||
```
|
```
|
||||||
|
|
||||||
## Requirements
|
|
||||||
|
|
||||||
| Windows Edition | Supported |
|
|
||||||
|:-----------------------|:---------:|
|
|
||||||
| Windows Home | No |
|
|
||||||
| Windows Pro | No |
|
|
||||||
| Windows Enterprise | Yes |
|
|
||||||
| Windows Education | Yes |
|
|
||||||
| Windows IoT Enterprise | Yes |
|
|
||||||
|
@ -1,7 +1,7 @@
|
|||||||
---
|
---
|
||||||
title: WESL_UserSetting
|
title: WESL_UserSetting
|
||||||
description: WESL_UserSetting
|
description: WESL_UserSetting
|
||||||
ms.date: 05/02/2017
|
ms.date: 02/25/2025
|
||||||
ms.topic: reference
|
ms.topic: reference
|
||||||
---
|
---
|
||||||
|
|
||||||
@ -9,6 +9,8 @@ ms.topic: reference
|
|||||||
|
|
||||||
This class configures which application Shell Launcher starts based on the security identifier (SID) of the signed in user, and also configures the set of return codes and return actions that Shell Launcher performs when the application exits.
|
This class configures which application Shell Launcher starts based on the security identifier (SID) of the signed in user, and also configures the set of return codes and return actions that Shell Launcher performs when the application exits.
|
||||||
|
|
||||||
|
[!INCLUDE [shell-launcher](../../../includes/licensing/shell-launcher.md)]
|
||||||
|
|
||||||
## Syntax
|
## Syntax
|
||||||
|
|
||||||
```powershell
|
```powershell
|
||||||
@ -158,17 +160,3 @@ $ShellLauncherClass.RemoveCustomShell($Admins_SID)
|
|||||||
|
|
||||||
$ShellLauncherClass.RemoveCustomShell($Cashier_SID)
|
$ShellLauncherClass.RemoveCustomShell($Cashier_SID)
|
||||||
```
|
```
|
||||||
|
|
||||||
## Requirements
|
|
||||||
|
|
||||||
| Windows Edition | Supported |
|
|
||||||
|:-----------------------|:---------:|
|
|
||||||
| Windows Home | No |
|
|
||||||
| Windows Pro | No |
|
|
||||||
| Windows Enterprise | Yes |
|
|
||||||
| Windows Education | Yes |
|
|
||||||
| Windows IoT Enterprise | Yes |
|
|
||||||
|
|
||||||
## Related topics
|
|
||||||
|
|
||||||
- [Shell Launcher](index.md)
|
|
||||||
|
@ -1,7 +1,7 @@
|
|||||||
---
|
---
|
||||||
title: WESL_UserSetting.GetCustomShell
|
title: WESL_UserSetting.GetCustomShell
|
||||||
description: WESL_UserSetting.GetCustomShell
|
description: WESL_UserSetting.GetCustomShell
|
||||||
ms.date: 05/20/2024
|
ms.date: 02/25/2025
|
||||||
ms.topic: reference
|
ms.topic: reference
|
||||||
---
|
---
|
||||||
|
|
||||||
@ -9,6 +9,8 @@ ms.topic: reference
|
|||||||
|
|
||||||
This method retrieves the Shell Launcher configuration for a specific user or group, based on the security identifier (SID).
|
This method retrieves the Shell Launcher configuration for a specific user or group, based on the security identifier (SID).
|
||||||
|
|
||||||
|
[!INCLUDE [shell-launcher](../../../includes/licensing/shell-launcher.md)]
|
||||||
|
|
||||||
## Syntax
|
## Syntax
|
||||||
|
|
||||||
```powershell
|
```powershell
|
||||||
@ -60,18 +62,3 @@ Returns an HRESULT value that indicates [WMI status](/windows/win32/wmisdk/wmi-n
|
|||||||
Shell Launcher uses the *CustomReturnCodes* and *CustomReturnCodesAction* arrays to determine the system behavior when the shell application exits, based on the return value of the application.
|
Shell Launcher uses the *CustomReturnCodes* and *CustomReturnCodesAction* arrays to determine the system behavior when the shell application exits, based on the return value of the application.
|
||||||
|
|
||||||
If the return value does not exist in *CustomReturnCodes*, or if the corresponding action defined in *CustomReturnCodesAction* is not a valid value, Shell Launcher uses *DefaultAction* to determine system behavior. If *DefaultAction* is not defined, or is not a valid value, Shell Launcher restarts the shell application.
|
If the return value does not exist in *CustomReturnCodes*, or if the corresponding action defined in *CustomReturnCodesAction* is not a valid value, Shell Launcher uses *DefaultAction* to determine system behavior. If *DefaultAction* is not defined, or is not a valid value, Shell Launcher restarts the shell application.
|
||||||
|
|
||||||
## Requirements
|
|
||||||
|
|
||||||
| Windows Edition | Supported |
|
|
||||||
|:-----------------------|:---------:|
|
|
||||||
| Windows Home | No |
|
|
||||||
| Windows Pro | No |
|
|
||||||
| Windows Enterprise | Yes |
|
|
||||||
| Windows Education | Yes |
|
|
||||||
| Windows IoT Enterprise | Yes |
|
|
||||||
|
|
||||||
## Related topics
|
|
||||||
|
|
||||||
- [WESL_UserSetting](wesl-usersetting.md)
|
|
||||||
- [Shell Launcher](index.md)
|
|
||||||
|
@ -1,7 +1,7 @@
|
|||||||
---
|
---
|
||||||
title: WESL_UserSetting.GetDefaultShell
|
title: WESL_UserSetting.GetDefaultShell
|
||||||
description: WESL_UserSetting.GetDefaultShell
|
description: WESL_UserSetting.GetDefaultShell
|
||||||
ms.date: 05/20/2024
|
ms.date: 02/25/2025
|
||||||
ms.topic: reference
|
ms.topic: reference
|
||||||
---
|
---
|
||||||
|
|
||||||
@ -9,6 +9,8 @@ ms.topic: reference
|
|||||||
|
|
||||||
This method retrieves the default Shell Launcher configuration.
|
This method retrieves the default Shell Launcher configuration.
|
||||||
|
|
||||||
|
[!INCLUDE [shell-launcher](../../../includes/licensing/shell-launcher.md)]
|
||||||
|
|
||||||
## Syntax
|
## Syntax
|
||||||
|
|
||||||
```powershell
|
```powershell
|
||||||
@ -40,18 +42,3 @@ Returns an HRESULT value that indicates [WMI status](/windows/win32/wmisdk/wmi-n
|
|||||||
## Remarks
|
## Remarks
|
||||||
|
|
||||||
Shell Launcher uses the default configuration when the security identifier (SID) of the user who is currently signed in does not match any custom defined Shell Launcher configurations.
|
Shell Launcher uses the default configuration when the security identifier (SID) of the user who is currently signed in does not match any custom defined Shell Launcher configurations.
|
||||||
|
|
||||||
## Requirements
|
|
||||||
|
|
||||||
| Windows Edition | Supported |
|
|
||||||
|:-----------------------|:---------:|
|
|
||||||
| Windows Home | No |
|
|
||||||
| Windows Pro | No |
|
|
||||||
| Windows Enterprise | Yes |
|
|
||||||
| Windows Education | Yes |
|
|
||||||
| Windows IoT Enterprise | Yes |
|
|
||||||
|
|
||||||
## Related topics
|
|
||||||
|
|
||||||
- [WESL_UserSetting](wesl-usersetting.md)
|
|
||||||
- [Shell Launcher](index.md)
|
|
||||||
|
@ -1,7 +1,7 @@
|
|||||||
---
|
---
|
||||||
title: WESL_UserSetting.IsEnabled
|
title: WESL_UserSetting.IsEnabled
|
||||||
description: WESL_UserSetting.IsEnabled
|
description: WESL_UserSetting.IsEnabled
|
||||||
ms.date: 05/20/2024
|
ms.date: 02/25/2025
|
||||||
ms.topic: reference
|
ms.topic: reference
|
||||||
---
|
---
|
||||||
|
|
||||||
@ -9,6 +9,8 @@ ms.topic: reference
|
|||||||
|
|
||||||
This method retrieves a value that indicates if Shell Launcher is enabled or disabled.
|
This method retrieves a value that indicates if Shell Launcher is enabled or disabled.
|
||||||
|
|
||||||
|
[!INCLUDE [shell-launcher](../../../includes/licensing/shell-launcher.md)]
|
||||||
|
|
||||||
## Syntax
|
## Syntax
|
||||||
|
|
||||||
```powershell
|
```powershell
|
||||||
@ -24,18 +26,3 @@ This method retrieves a value that indicates if Shell Launcher is enabled or dis
|
|||||||
## Return Value
|
## Return Value
|
||||||
|
|
||||||
Returns an HRESULT value that indicates [WMI status](/windows/win32/wmisdk/wmi-non-error-constants) or a [WMI error](/windows/win32/wmisdk/wmi-error-constants).
|
Returns an HRESULT value that indicates [WMI status](/windows/win32/wmisdk/wmi-non-error-constants) or a [WMI error](/windows/win32/wmisdk/wmi-error-constants).
|
||||||
|
|
||||||
## Requirements
|
|
||||||
|
|
||||||
| Windows Edition | Supported |
|
|
||||||
|:-----------------------|:---------:|
|
|
||||||
| Windows Home | No |
|
|
||||||
| Windows Pro | No |
|
|
||||||
| Windows Enterprise | Yes |
|
|
||||||
| Windows Education | Yes |
|
|
||||||
| Windows IoT Enterprise | Yes |
|
|
||||||
|
|
||||||
## Related topics
|
|
||||||
|
|
||||||
- [WESL_UserSetting](wesl-usersetting.md)
|
|
||||||
- [Shell Launcher](index.md)
|
|
||||||
|
@ -1,7 +1,7 @@
|
|||||||
---
|
---
|
||||||
title: WESL_UserSetting.RemoveCustomShell
|
title: WESL_UserSetting.RemoveCustomShell
|
||||||
description: WESL_UserSetting.RemoveCustomShell
|
description: WESL_UserSetting.RemoveCustomShell
|
||||||
ms.date: 05/20/2024
|
ms.date: 02/25/2025
|
||||||
ms.topic: reference
|
ms.topic: reference
|
||||||
---
|
---
|
||||||
|
|
||||||
@ -9,6 +9,8 @@ ms.topic: reference
|
|||||||
|
|
||||||
This method removes a Shell Launcher configuration for a specific user or group, based on the security identifier (SID).
|
This method removes a Shell Launcher configuration for a specific user or group, based on the security identifier (SID).
|
||||||
|
|
||||||
|
[!INCLUDE [shell-launcher](../../../includes/licensing/shell-launcher.md)]
|
||||||
|
|
||||||
## Syntax
|
## Syntax
|
||||||
|
|
||||||
```powershell
|
```powershell
|
||||||
@ -28,18 +30,3 @@ Returns an HRESULT value that indicates [WMI status](/windows/win32/wmisdk/wmi-n
|
|||||||
## Remarks
|
## Remarks
|
||||||
|
|
||||||
You must restart your device for the changes to take effect.
|
You must restart your device for the changes to take effect.
|
||||||
|
|
||||||
## Requirements
|
|
||||||
|
|
||||||
| Windows Edition | Supported |
|
|
||||||
|:-----------------------|:---------:|
|
|
||||||
| Windows Home | No |
|
|
||||||
| Windows Pro | No |
|
|
||||||
| Windows Enterprise | Yes |
|
|
||||||
| Windows Education | Yes |
|
|
||||||
| Windows IoT Enterprise | Yes |
|
|
||||||
|
|
||||||
## Related topics
|
|
||||||
|
|
||||||
- [WESL_UserSetting](wesl-usersetting.md)
|
|
||||||
- [Shell Launcher](index.md)
|
|
||||||
|
@ -1,7 +1,7 @@
|
|||||||
---
|
---
|
||||||
title: WESL_UserSetting.SetCustomShell
|
title: WESL_UserSetting.SetCustomShell
|
||||||
description: WESL_UserSetting.SetCustomShell
|
description: WESL_UserSetting.SetCustomShell
|
||||||
ms.date: 05/20/2024
|
ms.date: 02/25/2025
|
||||||
ms.topic: reference
|
ms.topic: reference
|
||||||
---
|
---
|
||||||
|
|
||||||
@ -9,6 +9,8 @@ ms.topic: reference
|
|||||||
|
|
||||||
This method configures Shell Launcher for a specific user or group, based on the security identifier (SID).
|
This method configures Shell Launcher for a specific user or group, based on the security identifier (SID).
|
||||||
|
|
||||||
|
[!INCLUDE [shell-launcher](../../../includes/licensing/shell-launcher.md)]
|
||||||
|
|
||||||
## Syntax
|
## Syntax
|
||||||
|
|
||||||
```powershell
|
```powershell
|
||||||
@ -60,18 +62,3 @@ Returns an HRESULT value that indicates [WMI status](/windows/win32/wmisdk/wmi-n
|
|||||||
Shell Launcher uses the *CustomReturnCodes* and *CustomReturnCodesAction* arrays to determine the system behavior when the shell application exits, based on the return value of the shell application.
|
Shell Launcher uses the *CustomReturnCodes* and *CustomReturnCodesAction* arrays to determine the system behavior when the shell application exits, based on the return value of the shell application.
|
||||||
|
|
||||||
If the return value does not exist in *CustomReturnCodes*, or if the corresponding action defined in *CustomReturnCodesAction* is not a valid value, Shell Launcher uses *DefaultAction* to determine system behavior. If *DefaultAction* is not defined, or is not a valid value, Shell Launcher restarts the shell application.
|
If the return value does not exist in *CustomReturnCodes*, or if the corresponding action defined in *CustomReturnCodesAction* is not a valid value, Shell Launcher uses *DefaultAction* to determine system behavior. If *DefaultAction* is not defined, or is not a valid value, Shell Launcher restarts the shell application.
|
||||||
|
|
||||||
## Requirements
|
|
||||||
|
|
||||||
| Windows Edition | Supported |
|
|
||||||
|:-----------------------|:---------:|
|
|
||||||
| Windows Home | No |
|
|
||||||
| Windows Pro | No |
|
|
||||||
| Windows Enterprise | Yes |
|
|
||||||
| Windows Education | Yes |
|
|
||||||
| Windows IoT Enterprise | Yes |
|
|
||||||
|
|
||||||
## Related topics
|
|
||||||
|
|
||||||
- [WESL_UserSetting](wesl-usersetting.md)
|
|
||||||
- [Shell Launcher](index.md)
|
|
||||||
|
@ -1,7 +1,7 @@
|
|||||||
---
|
---
|
||||||
title: WESL_UserSetting.SetDefaultShell
|
title: WESL_UserSetting.SetDefaultShell
|
||||||
description: WESL_UserSetting.SetDefaultShell
|
description: WESL_UserSetting.SetDefaultShell
|
||||||
ms.date: 05/20/2024
|
ms.date: 02/25/2025
|
||||||
ms.topic: reference
|
ms.topic: reference
|
||||||
---
|
---
|
||||||
|
|
||||||
@ -9,6 +9,8 @@ ms.topic: reference
|
|||||||
|
|
||||||
This method sets the default Shell Launcher configuration.
|
This method sets the default Shell Launcher configuration.
|
||||||
|
|
||||||
|
[!INCLUDE [shell-launcher](../../../includes/licensing/shell-launcher.md)]
|
||||||
|
|
||||||
## Syntax
|
## Syntax
|
||||||
|
|
||||||
```powershell
|
```powershell
|
||||||
@ -40,18 +42,3 @@ Returns an HRESULT value that indicates [WMI status](/windows/win32/wmisdk/wmi-n
|
|||||||
## Remarks
|
## Remarks
|
||||||
|
|
||||||
Shell Launcher uses the default configuration when the security identifier (SID) of the user who is currently signed in does not match any custom defined Shell Launcher configurations.
|
Shell Launcher uses the default configuration when the security identifier (SID) of the user who is currently signed in does not match any custom defined Shell Launcher configurations.
|
||||||
|
|
||||||
## Requirements
|
|
||||||
|
|
||||||
| Windows Edition | Supported |
|
|
||||||
|:-----------------------|:---------:|
|
|
||||||
| Windows Home | No |
|
|
||||||
| Windows Pro | No |
|
|
||||||
| Windows Enterprise | Yes |
|
|
||||||
| Windows Education | Yes |
|
|
||||||
| Windows IoT Enterprise | Yes |
|
|
||||||
|
|
||||||
## Related topics
|
|
||||||
|
|
||||||
- [WESL_UserSetting](wesl-usersetting.md)
|
|
||||||
- [Shell Launcher](index.md)
|
|
||||||
|
@ -1,7 +1,7 @@
|
|||||||
---
|
---
|
||||||
title: WESL_UserSetting.SetEnabled
|
title: WESL_UserSetting.SetEnabled
|
||||||
description: WESL_UserSetting.SetEnabled
|
description: WESL_UserSetting.SetEnabled
|
||||||
ms.date: 05/20/2024
|
ms.date: 02/25/2025
|
||||||
ms.topic: reference
|
ms.topic: reference
|
||||||
---
|
---
|
||||||
|
|
||||||
@ -9,6 +9,8 @@ ms.topic: reference
|
|||||||
|
|
||||||
This method enables or disables Shell Launcher.
|
This method enables or disables Shell Launcher.
|
||||||
|
|
||||||
|
[!INCLUDE [shell-launcher](../../../includes/licensing/shell-launcher.md)]
|
||||||
|
|
||||||
## Syntax
|
## Syntax
|
||||||
|
|
||||||
```powershell
|
```powershell
|
||||||
@ -30,18 +32,3 @@ Returns an HRESULT value that indicates [WMI status](/windows/win32/wmisdk/wmi-n
|
|||||||
This method enables or disables Shell Launcher by modifying the **Shell** value in the registry key `HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon`. If Unified Write Filter (UWF) is enabled, you may need to disable UWF or commit this registry key by using [UWF_RegistryFilter.CommitRegistry](../unified-write-filter/uwf-registryfiltercommitregistry.md) in order to enable or disable Shell Launcher.
|
This method enables or disables Shell Launcher by modifying the **Shell** value in the registry key `HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon`. If Unified Write Filter (UWF) is enabled, you may need to disable UWF or commit this registry key by using [UWF_RegistryFilter.CommitRegistry](../unified-write-filter/uwf-registryfiltercommitregistry.md) in order to enable or disable Shell Launcher.
|
||||||
|
|
||||||
Enabling or disabling Shell Launcher does not take effect until a user signs in.
|
Enabling or disabling Shell Launcher does not take effect until a user signs in.
|
||||||
|
|
||||||
## Requirements
|
|
||||||
|
|
||||||
| Windows Edition | Supported |
|
|
||||||
|:-----------------------|:---------:|
|
|
||||||
| Windows Home | No |
|
|
||||||
| Windows Pro | No |
|
|
||||||
| Windows Enterprise | Yes |
|
|
||||||
| Windows Education | Yes |
|
|
||||||
| Windows IoT Enterprise | Yes |
|
|
||||||
|
|
||||||
## Related topics
|
|
||||||
|
|
||||||
- [WESL_UserSetting](wesl-usersetting.md)
|
|
||||||
- [Shell Launcher](index.md)
|
|
||||||
|
@ -1,7 +1,7 @@
|
|||||||
---
|
---
|
||||||
author: paolomatarazzo
|
author: paolomatarazzo
|
||||||
ms.author: paoloma
|
ms.author: paoloma
|
||||||
ms.date: 04/10/2024
|
ms.date: 02/25/2025
|
||||||
ms.topic: include
|
ms.topic: include
|
||||||
---
|
---
|
||||||
|
|
||||||
@ -9,14 +9,8 @@ ms.topic: include
|
|||||||
|
|
||||||
With this policy setting, you can prevent the Start menu from displaying a list of recently installed applications:
|
With this policy setting, you can prevent the Start menu from displaying a list of recently installed applications:
|
||||||
|
|
||||||
- If **enabled**, the Start menu doesn't display the **Recently added** list. The corresponding option in Settings can't be configured (grayed out).
|
- If **enabled**, the Start menu doesn't display the **Recently added** list. The corresponding option in Settings can't be configured (grayed out)
|
||||||
- If **disabled** or **not configured**, the Start menu displays the **Recently added** list. The corresponding option in Settings can be configured.
|
- If **disabled** or **not configured**, the Start menu displays the **Recently added** list. The corresponding option in Settings can be configured
|
||||||
|
|
||||||
> [!IMPORTANT]
|
|
||||||
> Starting in Windows 11, version 22H2 with [KB5048685](https://support.microsoft.com/topic/4602-ea3736d3-6948-4fd7-9faf-8d732ac2ed59), the policy setting behavior changed.
|
|
||||||
>
|
|
||||||
> - If **enabled**, the corresponding option in Settings can't be configured (grayed out). The policy setting doesn't affect the display of recently installed applications in the Recommended section of the Start menu.
|
|
||||||
> - If **disabled** or **not configured**, the corresponding option in Settings can be configured.
|
|
||||||
|
|
||||||
| | Path |
|
| | Path |
|
||||||
|--|--|
|
|--|--|
|
||||||
|
@ -2,7 +2,7 @@
|
|||||||
title: Start policy settings
|
title: Start policy settings
|
||||||
description: Learn about the policy settings to configure the Windows Start menu.
|
description: Learn about the policy settings to configure the Windows Start menu.
|
||||||
ms.topic: reference
|
ms.topic: reference
|
||||||
ms.date: 07/10/2024
|
ms.date: 02/25/2025
|
||||||
appliesto:
|
appliesto:
|
||||||
zone_pivot_groups: windows-versions-11-10
|
zone_pivot_groups: windows-versions-11-10
|
||||||
---
|
---
|
||||||
|
@ -0,0 +1,23 @@
|
|||||||
|
---
|
||||||
|
author: paolomatarazzo
|
||||||
|
ms.author: paoloma
|
||||||
|
ms.date: 02/25/2025
|
||||||
|
ms.topic: include
|
||||||
|
---
|
||||||
|
|
||||||
|
### Show notification bell icon
|
||||||
|
|
||||||
|
This policy setting allows you to show the notification bell icon in the system tray:
|
||||||
|
|
||||||
|
- If you enable this policy setting, the notification icon is always displayed
|
||||||
|
- If you disable or don't configure this policy setting, the notification icon is only displayed when there's a special status (for example, when *do not disturb* is turned on)
|
||||||
|
|
||||||
|
> [!NOTE]
|
||||||
|
> A reboot is required for this policy setting to take effect.
|
||||||
|
|
||||||
|
| | Path |
|
||||||
|
|--|--|
|
||||||
|
| **CSP** |- `./User/Vendor/MSFT/Policy/Config/Start/`[AlwaysShowNotificationIcon](/windows/client-management/mdm/policy-csp-start#AlwaysShowNotificationIcon) |
|
||||||
|
| **GPO** |- **User Configuration** > **Administrative Templates** > **Start Menu and Taskbar** |
|
||||||
|
|
||||||
|
<!-- not linked yet as it's in Insider>
|
@ -0,0 +1,22 @@
|
|||||||
|
---
|
||||||
|
author: paolomatarazzo
|
||||||
|
ms.author: paoloma
|
||||||
|
ms.date: 02/25/2025
|
||||||
|
ms.topic: include
|
||||||
|
---
|
||||||
|
|
||||||
|
### Turn off abbreviated time and date format
|
||||||
|
|
||||||
|
This policy setting allows you to show the longer time and date format in the system tray:
|
||||||
|
|
||||||
|
- If you enable this policy setting, the time format will include the AM/PM time marker and the date will include the year.
|
||||||
|
|
||||||
|
> [!NOTE]
|
||||||
|
> A reboot is required for this policy setting to take effect.
|
||||||
|
|
||||||
|
| | Path |
|
||||||
|
|--|--|
|
||||||
|
| **CSP** |- `./User/Vendor/MSFT/Policy/Config/Start/`[TurnOffAbbreviatedDateTimeFormat](/windows/client-management/mdm/policy-csp-start#TurnOffAbbreviatedDateTimeFormat) |
|
||||||
|
| **GPO** |- **User Configuration** > **Administrative Templates** > **Start Menu and Taskbar** |
|
||||||
|
|
||||||
|
<!-- not linked yet as it's in Insider>
|
@ -7,7 +7,7 @@ ms.service: windows-client
|
|||||||
ms.localizationpriority: medium
|
ms.localizationpriority: medium
|
||||||
author: frankroj
|
author: frankroj
|
||||||
ms.topic: install-set-up-deploy
|
ms.topic: install-set-up-deploy
|
||||||
ms.date: 02/13/2024
|
ms.date: 02/27/2025
|
||||||
ms.subservice: itpro-deploy
|
ms.subservice: itpro-deploy
|
||||||
appliesto:
|
appliesto:
|
||||||
- ✅ <a href="https://learn.microsoft.com/windows/release-health/supported-versions-windows-client" target="_blank">Windows 11</a>
|
- ✅ <a href="https://learn.microsoft.com/windows/release-health/supported-versions-windows-client" target="_blank">Windows 11</a>
|
||||||
|
@ -52,7 +52,7 @@ This article details the requirements and recommended specifications for using M
|
|||||||
### Additional requirements for Linux host machines
|
### Additional requirements for Linux host machines
|
||||||
|
|
||||||
- The Linux host machine must be using one of the following operating systems:
|
- The Linux host machine must be using one of the following operating systems:
|
||||||
- Ubuntu 22.04
|
- Ubuntu 22.04, 24.04
|
||||||
- Red Hat Enterprise Linux (RHEL) 8.* or 9.*
|
- Red Hat Enterprise Linux (RHEL) 8.* or 9.*
|
||||||
- If using RHEL, the default container engine (Podman) must be replaced with [Moby](https://github.com/moby/moby#readme)
|
- If using RHEL, the default container engine (Podman) must be replaced with [Moby](https://github.com/moby/moby#readme)
|
||||||
|
|
||||||
|
@ -3,7 +3,7 @@ title: Checkpoint cumulative updates and the Microsoft Update Catalog
|
|||||||
description: This article describes how to handle checkpoint cumulative updates when you use the Microsoft Update Catalog to update devices and images.
|
description: This article describes how to handle checkpoint cumulative updates when you use the Microsoft Update Catalog to update devices and images.
|
||||||
ms.service: windows-client
|
ms.service: windows-client
|
||||||
ms.subservice: itpro-updates
|
ms.subservice: itpro-updates
|
||||||
ms.topic: conceptual
|
ms.topic: article
|
||||||
ms.author: mstewart
|
ms.author: mstewart
|
||||||
author: mestew
|
author: mestew
|
||||||
manager: aaroncz
|
manager: aaroncz
|
||||||
|
@ -3,7 +3,7 @@ title: Evaluate infrastructure and tools
|
|||||||
description: Review the steps to ensure your infrastructure is ready to deploy updates to clients in your organization.
|
description: Review the steps to ensure your infrastructure is ready to deploy updates to clients in your organization.
|
||||||
ms.service: windows-client
|
ms.service: windows-client
|
||||||
ms.subservice: itpro-updates
|
ms.subservice: itpro-updates
|
||||||
ms.topic: conceptual
|
ms.topic: article
|
||||||
author: mestew
|
author: mestew
|
||||||
ms.author: mstewart
|
ms.author: mstewart
|
||||||
manager: aaroncz
|
manager: aaroncz
|
||||||
|
@ -3,7 +3,7 @@ title: Windows client updates, channels, and tools
|
|||||||
description: Brief summary of the kinds of Windows updates, the channels they're served through, and the tools for managing them
|
description: Brief summary of the kinds of Windows updates, the channels they're served through, and the tools for managing them
|
||||||
ms.service: windows-client
|
ms.service: windows-client
|
||||||
ms.subservice: itpro-updates
|
ms.subservice: itpro-updates
|
||||||
ms.topic: conceptual
|
ms.topic: article
|
||||||
author: mestew
|
author: mestew
|
||||||
ms.author: mstewart
|
ms.author: mstewart
|
||||||
manager: aaroncz
|
manager: aaroncz
|
||||||
|
@ -3,7 +3,7 @@ title: How Windows Update works
|
|||||||
description: In this article, learn about the process Windows Update uses to download and install updates on Windows client devices.
|
description: In this article, learn about the process Windows Update uses to download and install updates on Windows client devices.
|
||||||
ms.service: windows-client
|
ms.service: windows-client
|
||||||
ms.subservice: itpro-updates
|
ms.subservice: itpro-updates
|
||||||
ms.topic: conceptual
|
ms.topic: article
|
||||||
author: mestew
|
author: mestew
|
||||||
ms.author: mstewart
|
ms.author: mstewart
|
||||||
manager: aaroncz
|
manager: aaroncz
|
||||||
|
@ -3,7 +3,7 @@ title: Migrating and acquiring optional Windows content
|
|||||||
description: How to keep language resources and Features on Demand during operating system updates for your organization.
|
description: How to keep language resources and Features on Demand during operating system updates for your organization.
|
||||||
ms.service: windows-client
|
ms.service: windows-client
|
||||||
ms.subservice: itpro-updates
|
ms.subservice: itpro-updates
|
||||||
ms.topic: conceptual
|
ms.topic: article
|
||||||
author: mestew
|
author: mestew
|
||||||
ms.author: mstewart
|
ms.author: mstewart
|
||||||
manager: aaroncz
|
manager: aaroncz
|
||||||
|
@ -3,7 +3,7 @@ title: Define readiness criteria
|
|||||||
description: Identify important roles and figure out how to classify apps so you can plan and manage your deployment
|
description: Identify important roles and figure out how to classify apps so you can plan and manage your deployment
|
||||||
ms.service: windows-client
|
ms.service: windows-client
|
||||||
ms.subservice: itpro-updates
|
ms.subservice: itpro-updates
|
||||||
ms.topic: conceptual
|
ms.topic: article
|
||||||
author: mestew
|
author: mestew
|
||||||
ms.author: mstewart
|
ms.author: mstewart
|
||||||
manager: aaroncz
|
manager: aaroncz
|
||||||
|
@ -3,7 +3,7 @@ title: Define update strategy
|
|||||||
description: Example of using a calendar-based approach to achieve consistent update installation in your organization.
|
description: Example of using a calendar-based approach to achieve consistent update installation in your organization.
|
||||||
ms.service: windows-client
|
ms.service: windows-client
|
||||||
ms.subservice: itpro-updates
|
ms.subservice: itpro-updates
|
||||||
ms.topic: conceptual
|
ms.topic: article
|
||||||
author: mestew
|
author: mestew
|
||||||
ms.author: mstewart
|
ms.author: mstewart
|
||||||
manager: aaroncz
|
manager: aaroncz
|
||||||
|
@ -3,7 +3,7 @@ title: Update release cycle for Windows clients
|
|||||||
description: Learn about the release cycle for updates so Windows clients in your organization stay productive and protected.
|
description: Learn about the release cycle for updates so Windows clients in your organization stay productive and protected.
|
||||||
ms.service: windows-client
|
ms.service: windows-client
|
||||||
ms.subservice: itpro-updates
|
ms.subservice: itpro-updates
|
||||||
ms.topic: conceptual
|
ms.topic: article
|
||||||
author: mestew
|
author: mestew
|
||||||
ms.author: mstewart
|
ms.author: mstewart
|
||||||
manager: aaroncz
|
manager: aaroncz
|
||||||
|
@ -3,7 +3,7 @@ title: Safeguard holds for Windows
|
|||||||
description: What are safeguard holds? How to can you tell if a safeguard hold is in effect, and what to do about it.
|
description: What are safeguard holds? How to can you tell if a safeguard hold is in effect, and what to do about it.
|
||||||
ms.service: windows-client
|
ms.service: windows-client
|
||||||
ms.subservice: itpro-updates
|
ms.subservice: itpro-updates
|
||||||
ms.topic: conceptual
|
ms.topic: article
|
||||||
author: mestew
|
author: mestew
|
||||||
ms.author: mstewart
|
ms.author: mstewart
|
||||||
manager: aaroncz
|
manager: aaroncz
|
||||||
|
@ -3,7 +3,7 @@ title: Opt out of safeguard holds
|
|||||||
description: How to install an update in your organization even when a safeguard hold for a known issue has been applied to it.
|
description: How to install an update in your organization even when a safeguard hold for a known issue has been applied to it.
|
||||||
ms.service: windows-client
|
ms.service: windows-client
|
||||||
ms.subservice: itpro-updates
|
ms.subservice: itpro-updates
|
||||||
ms.topic: conceptual
|
ms.topic: article
|
||||||
author: mestew
|
author: mestew
|
||||||
ms.author: mstewart
|
ms.author: mstewart
|
||||||
manager: aaroncz
|
manager: aaroncz
|
||||||
|
@ -3,7 +3,7 @@ title: Servicing stack updates
|
|||||||
description: In this article, learn how servicing stack updates improve the code that installs the other updates.
|
description: In this article, learn how servicing stack updates improve the code that installs the other updates.
|
||||||
ms.service: windows-client
|
ms.service: windows-client
|
||||||
ms.subservice: itpro-updates
|
ms.subservice: itpro-updates
|
||||||
ms.topic: conceptual
|
ms.topic: article
|
||||||
author: mestew
|
author: mestew
|
||||||
ms.author: mstewart
|
ms.author: mstewart
|
||||||
manager: aaroncz
|
manager: aaroncz
|
||||||
|
@ -3,7 +3,7 @@ title: Windows 10 Update Baseline
|
|||||||
description: Use an update baseline to optimize user experience and meet monthly update goals in your organization.
|
description: Use an update baseline to optimize user experience and meet monthly update goals in your organization.
|
||||||
ms.service: windows-client
|
ms.service: windows-client
|
||||||
ms.subservice: itpro-updates
|
ms.subservice: itpro-updates
|
||||||
ms.topic: conceptual
|
ms.topic: article
|
||||||
author: mestew
|
author: mestew
|
||||||
ms.author: mstewart
|
ms.author: mstewart
|
||||||
manager: aaroncz
|
manager: aaroncz
|
||||||
|
@ -3,7 +3,7 @@ title: Policies for update compliance and user experience
|
|||||||
description: Explanation and recommendations for update compliance, activity, and user experience for your organization.
|
description: Explanation and recommendations for update compliance, activity, and user experience for your organization.
|
||||||
ms.service: windows-client
|
ms.service: windows-client
|
||||||
ms.subservice: itpro-updates
|
ms.subservice: itpro-updates
|
||||||
ms.topic: conceptual
|
ms.topic: article
|
||||||
author: mestew
|
author: mestew
|
||||||
ms.author: mstewart
|
ms.author: mstewart
|
||||||
manager: aaroncz
|
manager: aaroncz
|
||||||
@ -94,7 +94,7 @@ options must be **Disabled** in order to take advantage of intelligent active ho
|
|||||||
If you do set active hours, we recommend setting the following policies to **Disabled** in order to increase update
|
If you do set active hours, we recommend setting the following policies to **Disabled** in order to increase update
|
||||||
velocity:
|
velocity:
|
||||||
|
|
||||||
- [Delay automatic reboot](waas-restart.md#delay-automatic-restart). While it's possible to set the system to delay restarts for users who are logged in, this setting might delay an update indefinitely if a user is always either logged in or shut down. Instead, we recommend setting the following polices to **Disabled**:
|
- [Delay automatic reboot](waas-restart.md#delay-automatic-restart). While it's possible to set the system to delay restarts for users who are logged in, this setting might delay an update indefinitely if a user is always either logged in or shut down. Instead, we recommend setting the following policies to **Disabled**:
|
||||||
- **Turn off auto-restart during active hours**
|
- **Turn off auto-restart during active hours**
|
||||||
- **No auto-restart with logged on users for scheduled automatic updates**
|
- **No auto-restart with logged on users for scheduled automatic updates**
|
||||||
|
|
||||||
@ -183,7 +183,7 @@ As administrators, you have set up and expect certain behaviors, so we expressly
|
|||||||
> expected. For example, if a device is not reacting to your MDM policy changes, check to see if a similar
|
> expected. For example, if a device is not reacting to your MDM policy changes, check to see if a similar
|
||||||
> policy is set in Group Policy with a differing value.
|
> policy is set in Group Policy with a differing value.
|
||||||
> If you find that update velocity is not as high as you expect or if some devices are slower than others, it might be
|
> If you find that update velocity is not as high as you expect or if some devices are slower than others, it might be
|
||||||
> time to clear all polices and settings and specify only the recommended update policies. See the Policy and settings reference for a consolidated list of recommended polices.
|
> time to clear all policies and settings and specify only the recommended update policies. See the Policy and settings reference for a consolidated list of recommended policies.
|
||||||
|
|
||||||
The following are policies that you might want to disable because they could decrease update velocity or there are better policies to use that might conflict:
|
The following are policies that you might want to disable because they could decrease update velocity or there are better policies to use that might conflict:
|
||||||
- **Defer Feature Updates Period in Days**. For maximum update velocity, it's best to set this to **0** (no
|
- **Defer Feature Updates Period in Days**. For maximum update velocity, it's best to set this to **0** (no
|
||||||
|
@ -3,7 +3,7 @@ title: Configure BranchCache for Windows client updates
|
|||||||
description: In this article, learn how to use BranchCache to optimize network bandwidth during update deployment.
|
description: In this article, learn how to use BranchCache to optimize network bandwidth during update deployment.
|
||||||
ms.service: windows-client
|
ms.service: windows-client
|
||||||
ms.subservice: itpro-updates
|
ms.subservice: itpro-updates
|
||||||
ms.topic: conceptual
|
ms.topic: article
|
||||||
author: mestew
|
author: mestew
|
||||||
ms.author: mstewart
|
ms.author: mstewart
|
||||||
manager: aaroncz
|
manager: aaroncz
|
||||||
|
@ -6,7 +6,7 @@ ms.service: windows-client
|
|||||||
author: mestew
|
author: mestew
|
||||||
ms.localizationpriority: medium
|
ms.localizationpriority: medium
|
||||||
ms.author: mstewart
|
ms.author: mstewart
|
||||||
ms.topic: conceptual
|
ms.topic: article
|
||||||
ms.subservice: itpro-updates
|
ms.subservice: itpro-updates
|
||||||
ms.collection:
|
ms.collection:
|
||||||
- tier1
|
- tier1
|
||||||
|
@ -3,7 +3,7 @@ title: Quick guide to Windows as a service
|
|||||||
description: In Windows 10, Microsoft has streamlined servicing to make operating system updates simpler to test, manage, and deploy.
|
description: In Windows 10, Microsoft has streamlined servicing to make operating system updates simpler to test, manage, and deploy.
|
||||||
ms.service: windows-client
|
ms.service: windows-client
|
||||||
ms.subservice: itpro-updates
|
ms.subservice: itpro-updates
|
||||||
ms.topic: conceptual
|
ms.topic: article
|
||||||
author: mestew
|
author: mestew
|
||||||
ms.author: mstewart
|
ms.author: mstewart
|
||||||
manager: aaroncz
|
manager: aaroncz
|
||||||
|
@ -4,7 +4,7 @@ manager: aaroncz
|
|||||||
description: Overview of the security for Windows Update including security for the metadata exchange and content download.
|
description: Overview of the security for Windows Update including security for the metadata exchange and content download.
|
||||||
ms.service: windows-client
|
ms.service: windows-client
|
||||||
ms.subservice: itpro-updates
|
ms.subservice: itpro-updates
|
||||||
ms.topic: conceptual
|
ms.topic: article
|
||||||
author: mestew
|
author: mestew
|
||||||
ms.author: mstewart
|
ms.author: mstewart
|
||||||
appliesto:
|
appliesto:
|
||||||
|
@ -4,7 +4,7 @@ titleSuffix: Windows Update for Business
|
|||||||
description: This article contains information on how to enforce compliance deadlines using Windows Update for Business.
|
description: This article contains information on how to enforce compliance deadlines using Windows Update for Business.
|
||||||
ms.service: windows-client
|
ms.service: windows-client
|
||||||
ms.subservice: itpro-updates
|
ms.subservice: itpro-updates
|
||||||
ms.topic: conceptual
|
ms.topic: article
|
||||||
author: mestew
|
author: mestew
|
||||||
ms.localizationpriority: medium
|
ms.localizationpriority: medium
|
||||||
ms.author: mstewart
|
ms.author: mstewart
|
||||||
|
@ -5,7 +5,7 @@ manager: aaroncz
|
|||||||
description: Microsoft admin center populates Windows Update for Business reports data into the software updates page.
|
description: Microsoft admin center populates Windows Update for Business reports data into the software updates page.
|
||||||
ms.service: windows-client
|
ms.service: windows-client
|
||||||
ms.subservice: itpro-updates
|
ms.subservice: itpro-updates
|
||||||
ms.topic: conceptual
|
ms.topic: article
|
||||||
author: mestew
|
author: mestew
|
||||||
ms.author: mstewart
|
ms.author: mstewart
|
||||||
ms.localizationpriority: medium
|
ms.localizationpriority: medium
|
||||||
|
@ -4,7 +4,7 @@ titleSuffix: Windows Update for Business reports
|
|||||||
description: How to get and use the Windows Update for Business reports configuration script to configure devices for Windows Update for Business reports.
|
description: How to get and use the Windows Update for Business reports configuration script to configure devices for Windows Update for Business reports.
|
||||||
ms.service: windows-client
|
ms.service: windows-client
|
||||||
ms.subservice: itpro-updates
|
ms.subservice: itpro-updates
|
||||||
ms.topic: conceptual
|
ms.topic: article
|
||||||
author: mestew
|
author: mestew
|
||||||
ms.author: mstewart
|
ms.author: mstewart
|
||||||
manager: aaroncz
|
manager: aaroncz
|
||||||
|
@ -4,7 +4,7 @@ titleSuffix: Windows Update for Business reports
|
|||||||
description: This article provides information about Delivery Optimization data in Windows Update for Business reports.
|
description: This article provides information about Delivery Optimization data in Windows Update for Business reports.
|
||||||
ms.service: windows-client
|
ms.service: windows-client
|
||||||
ms.subservice: itpro-updates
|
ms.subservice: itpro-updates
|
||||||
ms.topic: conceptual
|
ms.topic: article
|
||||||
author: mestew
|
author: mestew
|
||||||
ms.author: mstewart
|
ms.author: mstewart
|
||||||
manager: aaroncz
|
manager: aaroncz
|
||||||
|
@ -4,7 +4,7 @@ titleSuffix: Windows Update for Business reports
|
|||||||
description: List of prerequisites for enabling and using Windows Update for Business reports in your organization.
|
description: List of prerequisites for enabling and using Windows Update for Business reports in your organization.
|
||||||
ms.service: windows-client
|
ms.service: windows-client
|
||||||
ms.subservice: itpro-updates
|
ms.subservice: itpro-updates
|
||||||
ms.topic: conceptual
|
ms.topic: article
|
||||||
author: mestew
|
author: mestew
|
||||||
ms.author: mstewart
|
ms.author: mstewart
|
||||||
manager: aaroncz
|
manager: aaroncz
|
||||||
|
@ -6,7 +6,7 @@ ms.author: frankroj
|
|||||||
manager: aaroncz
|
manager: aaroncz
|
||||||
ms.service: windows-client
|
ms.service: windows-client
|
||||||
ms.localizationpriority: medium
|
ms.localizationpriority: medium
|
||||||
ms.date: 02/13/2024
|
ms.date: 02/27/2025
|
||||||
ms.topic: article
|
ms.topic: article
|
||||||
ms.subservice: itpro-deploy
|
ms.subservice: itpro-deploy
|
||||||
appliesto:
|
appliesto:
|
||||||
|
@ -174,15 +174,18 @@ You can add the *Device configurations* permission with one or more rights to yo
|
|||||||
|
|
||||||
### [Windows Enterprise E3+ and F3](#tab/windows-enterprise-e3-f3-intune-permissions)
|
### [Windows Enterprise E3+ and F3](#tab/windows-enterprise-e3-f3-intune-permissions)
|
||||||
|
|
||||||
|
Your account must be assigned an [Intune role-based access control](/mem/intune/fundamentals/role-based-access-control) (RBAC) role that includes the following permissions:
|
||||||
|
|
||||||
|
- **Device configurations**:
|
||||||
|
- Assign
|
||||||
|
- Create
|
||||||
|
- Delete
|
||||||
|
- View Reports
|
||||||
|
- Update
|
||||||
|
- Read
|
||||||
|
|
||||||
After you [activate Windows Autopatch features](../prepare/windows-autopatch-feature-activation.md#activate-windows-autopatch-features), use the Intune Service Administrator role to register devices, manage your update deployments, and reporting tasks.
|
After you [activate Windows Autopatch features](../prepare/windows-autopatch-feature-activation.md#activate-windows-autopatch-features), use the Intune Service Administrator role to register devices, manage your update deployments, and reporting tasks.
|
||||||
|
|
||||||
If you want to assign less-privileged user accounts to perform specific tasks in the Windows Autopatch portal, such as register devices with the service, you can add these user accounts into one of the two Microsoft Entra groups created during the [Start using Windows Autopatch](../prepare/windows-autopatch-feature-activation.md) process:
|
|
||||||
|
|
||||||
| Microsoft Entra group name | Discover devices | Modify columns | Refresh device list | Export to .CSV | Device actions |
|
|
||||||
| --- | --- | --- | --- | --- | --- |
|
|
||||||
| Modern Workplace Roles - Service Administrator | Yes | Yes | Yes | Yes | Yes |
|
|
||||||
| Modern Workplace Roles - Service Reader | No | Yes | Yes | Yes | Yes |
|
|
||||||
|
|
||||||
For more information, see [Microsoft Entra built-in roles](/entra/identity/role-based-access-control/permissions-reference) and [Role-based access control (RBAC) with Microsoft Intune](/mem/intune/fundamentals/role-based-access-control).
|
For more information, see [Microsoft Entra built-in roles](/entra/identity/role-based-access-control/permissions-reference) and [Role-based access control (RBAC) with Microsoft Intune](/mem/intune/fundamentals/role-based-access-control).
|
||||||
|
|
||||||
> [!TIP]
|
> [!TIP]
|
||||||
|
@ -7,7 +7,7 @@ author: frankroj
|
|||||||
ms.service: windows-client
|
ms.service: windows-client
|
||||||
ms.localizationpriority: medium
|
ms.localizationpriority: medium
|
||||||
ms.topic: install-set-up-deploy
|
ms.topic: install-set-up-deploy
|
||||||
ms.date: 02/13/2024
|
ms.date: 02/27/2025
|
||||||
ms.subservice: itpro-deploy
|
ms.subservice: itpro-deploy
|
||||||
appliesto:
|
appliesto:
|
||||||
- ✅ <a href="https://learn.microsoft.com/windows/release-health/supported-versions-windows-client" target="_blank">Windows 11</a>
|
- ✅ <a href="https://learn.microsoft.com/windows/release-health/supported-versions-windows-client" target="_blank">Windows 11</a>
|
||||||
|
@ -7,7 +7,7 @@ author: frankroj
|
|||||||
ms.author: frankroj
|
ms.author: frankroj
|
||||||
manager: aaroncz
|
manager: aaroncz
|
||||||
ms.topic: how-to
|
ms.topic: how-to
|
||||||
ms.date: 03/28/2024
|
ms.date: 02/27/2025
|
||||||
ms.subservice: itpro-deploy
|
ms.subservice: itpro-deploy
|
||||||
zone_pivot_groups: windows-versions-11-10
|
zone_pivot_groups: windows-versions-11-10
|
||||||
appliesto:
|
appliesto:
|
||||||
|
@ -3,7 +3,7 @@ title: Designing, creating, managing, and troubleshooting App Control for Busine
|
|||||||
description: How to design, create, manage, and troubleshoot your App Control AppId Tagging policies
|
description: How to design, create, manage, and troubleshoot your App Control AppId Tagging policies
|
||||||
ms.localizationpriority: medium
|
ms.localizationpriority: medium
|
||||||
ms.date: 09/11/2024
|
ms.date: 09/11/2024
|
||||||
ms.topic: conceptual
|
ms.topic: article
|
||||||
---
|
---
|
||||||
|
|
||||||
# App Control Application ID (AppId) Tagging guide
|
# App Control Application ID (AppId) Tagging guide
|
||||||
|
@ -3,7 +3,7 @@ title: Create your App Control for Business AppId Tagging Policies
|
|||||||
description: Create your App Control for Business AppId tagging policies for Windows devices.
|
description: Create your App Control for Business AppId tagging policies for Windows devices.
|
||||||
ms.localizationpriority: medium
|
ms.localizationpriority: medium
|
||||||
ms.date: 09/23/2024
|
ms.date: 09/23/2024
|
||||||
ms.topic: conceptual
|
ms.topic: how-to
|
||||||
---
|
---
|
||||||
|
|
||||||
# Creating your App Control AppId Tagging Policies
|
# Creating your App Control AppId Tagging Policies
|
||||||
@ -21,7 +21,7 @@ You can use the App Control for Business Wizard and the PowerShell commands to c
|
|||||||
:::image type="content" alt-text="Configuring the policy base and template." source="../images/appid-appcontrol-wizard-1.png" lightbox="../images/appid-appcontrol-wizard-1.png":::
|
:::image type="content" alt-text="Configuring the policy base and template." source="../images/appid-appcontrol-wizard-1.png" lightbox="../images/appid-appcontrol-wizard-1.png":::
|
||||||
|
|
||||||
> [!NOTE]
|
> [!NOTE]
|
||||||
> If your AppId Tagging Policy does build off the base templates or does not allow Windows in-box processes, you will notice significant performance regressions, especially during boot. For this reason, it is strongly recommended to build off the base templates. For more information on the issue, see the [AppId Tagging Known Issue](../operations/known-issues.md#slow-boot-and-performance-with-custom-policies).
|
> If your AppId Tagging Policy does not build off the base templates or does not allow Windows in-box processes, you will notice significant performance regressions, especially during boot. For this reason, it is strongly recommended to build off the base templates. For more information on the issue, see the [AppId Tagging Known Issue](../operations/known-issues.md#slow-boot-and-performance-with-custom-policies).
|
||||||
|
|
||||||
2. Set the following rule-options using the Wizard toggles:
|
2. Set the following rule-options using the Wizard toggles:
|
||||||
|
|
||||||
|
@ -3,7 +3,7 @@ title: App Control and AppLocker Overview
|
|||||||
description: Compare Windows application control technologies.
|
description: Compare Windows application control technologies.
|
||||||
ms.localizationpriority: medium
|
ms.localizationpriority: medium
|
||||||
ms.date: 09/11/2024
|
ms.date: 09/11/2024
|
||||||
ms.topic: conceptual
|
ms.topic: concept-article
|
||||||
---
|
---
|
||||||
|
|
||||||
# App Control for Business and AppLocker Overview
|
# App Control for Business and AppLocker Overview
|
||||||
|
@ -2,7 +2,7 @@
|
|||||||
title: Add rules for packaged apps to existing AppLocker rule-set
|
title: Add rules for packaged apps to existing AppLocker rule-set
|
||||||
description: This article for IT professionals describes how to update your existing AppLocker policies for packaged apps using the Remote Server Administration Toolkit (RSAT).
|
description: This article for IT professionals describes how to update your existing AppLocker policies for packaged apps using the Remote Server Administration Toolkit (RSAT).
|
||||||
ms.localizationpriority: medium
|
ms.localizationpriority: medium
|
||||||
ms.topic: conceptual
|
ms.topic: article
|
||||||
ms.date: 09/11/2024
|
ms.date: 09/11/2024
|
||||||
---
|
---
|
||||||
|
|
||||||
|
@ -2,7 +2,7 @@
|
|||||||
title: Administer AppLocker
|
title: Administer AppLocker
|
||||||
description: This article for IT professionals provides links to specific procedures to use when administering AppLocker policies.
|
description: This article for IT professionals provides links to specific procedures to use when administering AppLocker policies.
|
||||||
ms.localizationpriority: medium
|
ms.localizationpriority: medium
|
||||||
ms.topic: conceptual
|
ms.topic: how-to
|
||||||
ms.date: 09/11/2024
|
ms.date: 09/11/2024
|
||||||
---
|
---
|
||||||
|
|
||||||
|
@ -2,7 +2,7 @@
|
|||||||
title: AppLocker architecture and components
|
title: AppLocker architecture and components
|
||||||
description: This article for IT professional describes AppLocker’s basic architecture and its major components.
|
description: This article for IT professional describes AppLocker’s basic architecture and its major components.
|
||||||
ms.localizationpriority: medium
|
ms.localizationpriority: medium
|
||||||
ms.topic: conceptual
|
ms.topic: article
|
||||||
ms.date: 09/11/2024
|
ms.date: 09/11/2024
|
||||||
---
|
---
|
||||||
|
|
||||||
|
@ -2,7 +2,7 @@
|
|||||||
title: AppLocker functions
|
title: AppLocker functions
|
||||||
description: This article for the IT professional lists the functions and security levels for AppLocker.
|
description: This article for the IT professional lists the functions and security levels for AppLocker.
|
||||||
ms.localizationpriority: medium
|
ms.localizationpriority: medium
|
||||||
ms.topic: conceptual
|
ms.topic: article
|
||||||
ms.date: 09/11/2024
|
ms.date: 09/11/2024
|
||||||
---
|
---
|
||||||
|
|
||||||
|
@ -4,7 +4,7 @@ description: This article provides a description of AppLocker and can help you d
|
|||||||
ms.collection:
|
ms.collection:
|
||||||
- tier3
|
- tier3
|
||||||
- must-keep
|
- must-keep
|
||||||
ms.topic: conceptual
|
ms.topic: article
|
||||||
ms.localizationpriority: medium
|
ms.localizationpriority: medium
|
||||||
ms.date: 09/11/2024
|
ms.date: 09/11/2024
|
||||||
---
|
---
|
||||||
|
@ -2,7 +2,7 @@
|
|||||||
title: AppLocker design guide
|
title: AppLocker design guide
|
||||||
description: This article for the IT professional introduces the design and planning steps required to deploy application control policies by using AppLocker.
|
description: This article for the IT professional introduces the design and planning steps required to deploy application control policies by using AppLocker.
|
||||||
ms.localizationpriority: medium
|
ms.localizationpriority: medium
|
||||||
ms.topic: conceptual
|
ms.topic: article
|
||||||
ms.date: 09/11/2024
|
ms.date: 09/11/2024
|
||||||
---
|
---
|
||||||
|
|
||||||
|
@ -2,7 +2,7 @@
|
|||||||
title: AppLocker policy use scenarios
|
title: AppLocker policy use scenarios
|
||||||
description: This article for the IT professional lists the various application control scenarios in which AppLocker policies can be effectively implemented.
|
description: This article for the IT professional lists the various application control scenarios in which AppLocker policies can be effectively implemented.
|
||||||
ms.localizationpriority: medium
|
ms.localizationpriority: medium
|
||||||
ms.topic: conceptual
|
ms.topic: article
|
||||||
ms.date: 09/11/2024
|
ms.date: 09/11/2024
|
||||||
---
|
---
|
||||||
|
|
||||||
|
@ -2,7 +2,7 @@
|
|||||||
title: AppLocker processes and interactions
|
title: AppLocker processes and interactions
|
||||||
description: This article for the IT professional describes the process dependencies and interactions when AppLocker evaluates and enforces rules.
|
description: This article for the IT professional describes the process dependencies and interactions when AppLocker evaluates and enforces rules.
|
||||||
ms.localizationpriority: medium
|
ms.localizationpriority: medium
|
||||||
ms.topic: conceptual
|
ms.topic: article
|
||||||
ms.date: 09/11/2024
|
ms.date: 09/11/2024
|
||||||
---
|
---
|
||||||
|
|
||||||
|
@ -2,7 +2,7 @@
|
|||||||
title: Configure an AppLocker policy for audit only
|
title: Configure an AppLocker policy for audit only
|
||||||
description: This article for IT professionals describes how to set AppLocker policies to Audit only within your IT environment by using AppLocker.
|
description: This article for IT professionals describes how to set AppLocker policies to Audit only within your IT environment by using AppLocker.
|
||||||
ms.localizationpriority: medium
|
ms.localizationpriority: medium
|
||||||
ms.topic: conceptual
|
ms.topic: how-to
|
||||||
ms.date: 09/11/2024
|
ms.date: 09/11/2024
|
||||||
---
|
---
|
||||||
|
|
||||||
|
@ -2,7 +2,7 @@
|
|||||||
title: Configure an AppLocker policy for enforce rules
|
title: Configure an AppLocker policy for enforce rules
|
||||||
description: This article for IT professionals describes the steps to enable the AppLocker policy enforcement setting.
|
description: This article for IT professionals describes the steps to enable the AppLocker policy enforcement setting.
|
||||||
ms.localizationpriority: medium
|
ms.localizationpriority: medium
|
||||||
ms.topic: conceptual
|
ms.topic: how-to
|
||||||
ms.date: 09/11/2024
|
ms.date: 09/11/2024
|
||||||
---
|
---
|
||||||
|
|
||||||
|
@ -2,7 +2,7 @@
|
|||||||
title: Add exceptions for an AppLocker rule
|
title: Add exceptions for an AppLocker rule
|
||||||
description: This article for IT professionals describes the steps to specify which apps can or can't run as exceptions to an AppLocker rule.
|
description: This article for IT professionals describes the steps to specify which apps can or can't run as exceptions to an AppLocker rule.
|
||||||
ms.localizationpriority: medium
|
ms.localizationpriority: medium
|
||||||
ms.topic: conceptual
|
ms.topic: how-to
|
||||||
ms.date: 09/11/2024
|
ms.date: 09/11/2024
|
||||||
---
|
---
|
||||||
|
|
||||||
|
@ -2,7 +2,7 @@
|
|||||||
title: Configure the AppLocker reference device
|
title: Configure the AppLocker reference device
|
||||||
description: This article for the IT professional describes the steps to create an AppLocker policy platform structure on a reference computer.
|
description: This article for the IT professional describes the steps to create an AppLocker policy platform structure on a reference computer.
|
||||||
ms.localizationpriority: medium
|
ms.localizationpriority: medium
|
||||||
ms.topic: conceptual
|
ms.topic: how-to
|
||||||
ms.date: 09/11/2024
|
ms.date: 09/11/2024
|
||||||
---
|
---
|
||||||
|
|
||||||
|
@ -2,7 +2,7 @@
|
|||||||
title: Configure the Application Identity service
|
title: Configure the Application Identity service
|
||||||
description: This article for IT professionals shows how to configure the Application Identity service to start automatically or manually.
|
description: This article for IT professionals shows how to configure the Application Identity service to start automatically or manually.
|
||||||
ms.localizationpriority: medium
|
ms.localizationpriority: medium
|
||||||
ms.topic: conceptual
|
ms.topic: how-to
|
||||||
ms.date: 09/11/2024
|
ms.date: 09/11/2024
|
||||||
---
|
---
|
||||||
|
|
||||||
|
Some files were not shown because too many files have changed in this diff Show More
Loading…
x
Reference in New Issue
Block a user