Files
windows-itpro-docs/windows/security/information-protection/personal-data-encryption/configure-pde-in-intune.md
2023-03-13 15:37:43 -04:00

1.5 KiB

title, description, author, ms.author, ms.reviewer, manager, ms.topic, ms.prod, ms.technology, ms.localizationpriority, ms.date
title description author ms.author ms.reviewer manager ms.topic ms.prod ms.technology ms.localizationpriority ms.date
Configure Personal Data Encryption (PDE) in Intune Configuring and enabling Personal Data Encryption (PDE) required and recommended policies in Intune frankroj frankroj rhonnegowda aaroncz how-to windows-client itpro-security medium 03/13/2023

Configure Personal Data Encryption (PDE) policies in Intune

The various required and recommended policies needed for Personal Data Encryption (PDE) can be configured in Intune. The following links for both required and recommended policies contain step by step instructions on how to configure these policies in Intune.

Required prerequisites

  1. Enable Personal Data Encryption (PDE)

  2. Disable Winlogon automatic restart sign-on (ARSO)

Security hardening recommendations

  1. Disable kernel-mode crash dumps and live dumps

  2. Disable Windows Error Reporting (WER)/user-mode crash dumps

  3. Disable hibernation

  4. Disable allowing users to select when a password is required when resuming from connected standby

See also