- Corrected certificate store name from FVENKP to FVE_NKP
- Added the requirement to reboot the clients after applying the policy
- Added the requirement for the clients to have a TPM protector
- Removed duplicate steps of adding a TPM protector (require TPM+PIN vs allow TPM+PIN)
- Fixed linking within the document