Skip to content

Commit b8271d8

Browse files
Merge pull request #18936 from MandiOhlinger/ado35568855
ADO 35568855 - Windows 10 instances in fundamentals
2 parents 5f50b55 + 8fc3b6e commit b8271d8

20 files changed

+76
-187
lines changed

.openpublishing.redirection.intune.json

Lines changed: 1 addition & 1 deletion
Original file line numberDiff line numberDiff line change
@@ -1857,7 +1857,7 @@
18571857
},
18581858
{
18591859
"source_path": "intune/intune/fundamentals/intune-legacy-pc-client.md",
1860-
"redirect_url": "/intune/intune-service/fundamentals/intune-legacy-pc-client",
1860+
"redirect_url": "/intune/intune-service/fundamentals/tutorial-walkthrough-endpoint-manager",
18611861
"redirect_document_id": false
18621862
},
18631863
{

.openpublishing.redirection.json

Lines changed: 5 additions & 1 deletion
Original file line numberDiff line numberDiff line change
@@ -1,7 +1,11 @@
11
{
22
"redirections": [
33

4-
4+
{
5+
"source_path": "intune/intune-service/fundamentals/intune-legacy-pc-client.md",
6+
"redirect_url": "/intune/intune-service/fundamentals/tutorial-walkthrough-endpoint-manager",
7+
"redirect_document_id": false
8+
},
59
{
610
"source_path": "intune/intune-service/copilot/security-copilot-surface-portal.md",
711
"redirect_url": "/surface/security-copilot-surface-management-portal",

intune/intune-service/fundamentals/china.md

Lines changed: 1 addition & 1 deletion
Original file line numberDiff line numberDiff line change
@@ -27,7 +27,7 @@ Because the China services are operated by a partner from inside China, there ar
2727
- Migrations from public clouds to sovereign clouds aren't supported. Customers interested in moving to Intune operated by 21Vianet must migrate manually.
2828
- The tenant attach feature (syncing devices to Intune without enrollment to support cloud console scenarios) isn't currently supported.
2929
- Derived Credentials aren't supported with Intune operated by 21Vianet.
30-
- Management of Windows 10 is supported by using the modern MDM channel.
30+
- Management of Windows is supported by using the modern MDM channel.
3131
- Intune operated by 21Vianet doesn't support on-premises Exchange Connector.
3232
- Windows Autopilot and Business Store features aren't currently available. As part of the 2409 Intune service release, we announced support for Windows Autopilot Device Preparation policy in Intune operated by 21Vianet in China cloud. For more information, see [(What's new in Windows Autopilot device preparation | Microsoft Learn](/autopilot/device-preparation/whats-new#windows-autopilot-device-preparation-deployment-status-report-available-in-the-monitor-tab-under-enrollment)
3333
- Intune operated by 21Vianet supports the Company Portal for Windows app. Use WinGet to download the Company portal package and dependencies and then deploy as a Line-of-Business app via Intune. [Use the WinGet tool to install and manage applications](/windows/package-manager/winget/).

intune/intune-service/fundamentals/create-custom-role.md

Lines changed: 1 addition & 1 deletion
Original file line numberDiff line numberDiff line change
@@ -221,7 +221,7 @@ The following permissions are available when creating custom roles.
221221
| Remote Help app/View screen | View screen allows the helper to view the sharer's device when Remote Help is enabled. |
222222
| Remote tasks/Bypass activation lock | Remove the Activation Lock from supervised devices without requiring the user's Apple ID and password. This may be required if a user leaves the company and returns the device; without the user's Apple ID and password, there's no way to reactivate the device. Or, you need to reassign some devices to a different department during a device refresh in your organization. You can only reassign devices that don't have Activation Lock enabled. You must also have the Managed Device Read permission to view devices in the Azure portal before initiating this remote task. |
223223
| Remote tasks/Change organizational unit | Move a Chrome Enterprise device to an existing organizational unit in your Google Workspace domain. |
224-
| Remote tasks/Clean PC| Initiate a Fresh start device action. This action removes any apps that are installed on a Windows 10 PC that is running the Creators Update. Then, it automatically updates the PC to the latest version of Windows.|
224+
| Remote tasks/Clean PC| Initiate a Fresh start device action. This action removes any apps that are installed on a Windows device. |
225225
| Remote tasks/Collect diagnostics | Collect device diagnostics |
226226
| Remote tasks/Disable lost mode| Turn off the lost mode for an iOS device. |
227227
| Remote tasks/Enable lost mode | Initiate lost mode on lost or stolen iOS devices. This mode lets you enter a message and a phone number that appears on the lock screen of the device. To use lost mode, the device must be a corporate-owned iOS device that is in supervised mode. |

intune/intune-service/fundamentals/deployment-guide-enrollment-windows.md

Lines changed: 2 additions & 2 deletions
Original file line numberDiff line numberDiff line change
@@ -58,7 +58,7 @@ You can use this enrollment option to:
5858
| --- | --- |
5959
| You use Windows client. | ✅ <br/><br/> Configuration Manager supports Windows Server. |
6060
| You have Microsoft Entra ID P1 or P2 ||
61-
| You'll use Conditional Access (CA) on devices enrolled using [bulk enrollment](../enrollment/windows-bulk-enroll.md) with a provisioning package. | ✅ On Windows 11 and Windows 10 1803+, CA is available for Windows devices enrolled using bulk enrollment. <br/><br/> ❌ On Windows 10 1709 and older, CA isn't available for Windows devices enrolled using bulk enrollment. |
61+
| You'll use Conditional Access (CA) on devices enrolled using [bulk enrollment](../enrollment/windows-bulk-enroll.md) with a provisioning package. | ✅ On Windows, CA is available for Windows devices enrolled using bulk enrollment. |
6262
| You have remote workers. ||
6363
| Devices are personal or BYOD. | ✅ <br/><br/> ❌ If you use Group Policy, then bulk enrollment and automatic enrollment are for corporate-owned devices, not personal or BYOD. |
6464
| Devices are owned by the organization or school. ||
@@ -176,7 +176,7 @@ For more information about Windows Autopilot, go to [Windows Autopilot overview]
176176
| Devices are Microsoft Entra hybrid joined. | ✅ <br/><br/> Microsoft Entra hybrid joined devices are joined to your on-premises Active Directory, and registered with your Microsoft Entra ID. Devices in Microsoft Entra ID are available to Intune. Devices that aren't registered in Microsoft Entra ID aren't available to Intune. <br/><br/>A full Microsoft Entra joined solution might be better for your organization. For more information, go to the [Success with remote Windows Autopilot and Microsoft Entra hybrid join](https://techcommunity.microsoft.com/t5/intune-customer-success/success-with-remote-windows-autopilot-and-hybrid-azure-active/ba-p/2749353) blog.|
177177
| You have remote workers. | ✅ <br/><br/> The OEM or partner can send devices directly to your users.|
178178
| Devices are owned by the organization or school. ||
179-
| You have new or existing devices. | ✅ <br/><br/> You can update existing desktops running older Windows versions, like Windows 7, to Windows 10. This option also uses Microsoft Configuration Manager. |
179+
| You have new or existing devices. | ✅ <br/><br/> You can update existing desktops running older Windows versions. This option also uses Microsoft Configuration Manager. |
180180
| Need to enroll a few devices, or a large number of devices (bulk enrollment). ||
181181
| You have Microsoft Entra ID P1 or P2. | ✅ <br/><br/> Windows Autopilot uses Automatic enrollment. Automatic enrollment requires Microsoft Entra ID P1 or P2. |
182182
| Devices are associated with a single user. ||

intune/intune-service/fundamentals/device-lifecycle.md

Lines changed: 0 additions & 2 deletions
Original file line numberDiff line numberDiff line change
@@ -28,15 +28,13 @@ Here are the types of configuration options that are available:
2828

2929
- [**Device configuration profiles**](../configuration/device-profiles.md). These policies let you configure the features and capabilities of the devices that you manage. For example, you could require the use of a password on Android phones or disable the use of the camera on iPhones.
3030
- [**Company resource access**](../configuration/device-profiles.md). When you let your users access their work on their personal device, this can present you with challenges. For example, how do you ensure that all devices that need to access company email are configured correctly? How can you ensure that users can access the company network with a VPN connection without having to know complex settings? Intune can help to reduce this burden by automatically configuring the devices that you manage to access common company resources.
31-
- [**Windows PC management policies (with the Intune client software)**](./intune-legacy-pc-client.md). While enrolling Windows PCs with Intune gives you the most device management capabilities, Intune continues to support managing Windows PCs with the Intune client software. If you need information about some of the tasks that you can perform with PCs, start here.
3231

3332
## Protect
3433

3534
In the modern IT world, protecting devices from unauthorized access is one of the most important tasks that you perform. In addition to the items in the **Configure** step of the device lifecycle, Intune provides these capabilities that help protect devices you manage from unauthorized access or malicious attacks:
3635

3736
- [**Multi-factor authentication**](../enrollment/multi-factor-authentication.md). Adding an extra layer of authentication to user sign-ins can help make devices even more secure. Many devices support multi-factor authentication that requires a second level of authentication, such as a phone call or text message, before users can gain access.
3837
- [**Windows Hello for Business settings**](../protect/windows-hello.md). Windows Hello for Business is an alternative sign-in method that lets users use a *gesture*—such as a fingerprint or Windows Hello—to sign in without needing a password.
39-
- [**Policies to protect Windows PCs (with the Intune client software)**](./intune-legacy-pc-client.md). When you manage Windows PCs by using the Intune client software, policies are available that let you control settings for Endpoint Protection, software updates, and Windows Firewall on PCs that you manage.
4038

4139
## Retire
4240

intune/intune-service/fundamentals/filters-device-properties.md

Lines changed: 9 additions & 3 deletions
Original file line numberDiff line numberDiff line change
@@ -5,7 +5,7 @@ author: MandiOhlinger
55
ms.author: mandia
66
ms.date: 03/06/2025
77
ms.topic: reference
8-
ms.reviewer: gokarthi
8+
ms.reviewer: mattcall
99
ms.collection:
1010
- M365-identity-device-management
1111
---
@@ -27,6 +27,10 @@ This article describes the different [managed device properties](#managed-device
2727

2828
[!INCLUDE [android_device_administrator_support](../includes/android-device-administrator-support.md)]
2929

30+
## Before you begin
31+
32+
- [!INCLUDE [windows-10-support](../includes/windows-10-support.md)]
33+
3034
## Managed device properties
3135

3236
You can use the following device properties in your managed device filter rules:
@@ -286,8 +290,10 @@ You can use the following device properties in your managed device filter rules:
286290

287291
- Windows
288292

289-
> [!TIP]
290-
> In Windows PowerShell, use the `Get-WmiObject -Class Win32_OperatingSystem |select operatingsystemSKU` command on a Windows device to return the SKU number.
293+
> [!NOTE]
294+
>
295+
> - In Windows PowerShell, use the `Get-WmiObject -Class Win32_OperatingSystem |select operatingsystemSKU` command on a Windows device to return the SKU number.
296+
> - [!INCLUDE [windows-10-support](../includes/windows-10-support.md)]
291297
292298
## Managed app properties
293299

intune/intune-service/fundamentals/filters-performance-recommendations.md

Lines changed: 1 addition & 1 deletion
Original file line numberDiff line numberDiff line change
@@ -5,7 +5,7 @@ author: MandiOhlinger
55
ms.author: mandia
66
ms.date: 12/11/2024
77
ms.topic: article
8-
ms.reviewer: gokarthi
8+
ms.reviewer: mattcall
99
ms.collection:
1010
- M365-identity-device-management
1111
---

intune/intune-service/fundamentals/filters-reports-troubleshoot.md

Lines changed: 1 addition & 1 deletion
Original file line numberDiff line numberDiff line change
@@ -5,7 +5,7 @@ author: MandiOhlinger
55
ms.author: mandia
66
ms.date: 11/20/2024
77
ms.topic: how-to
8-
ms.reviewer: gokarthi, abalwan
8+
ms.reviewer: mattcall, abalwan
99
ms.collection:
1010
- M365-identity-device-management
1111
---

intune/intune-service/fundamentals/filters-supported-workloads.md

Lines changed: 1 addition & 1 deletion
Original file line numberDiff line numberDiff line change
@@ -5,7 +5,7 @@ author: MandiOhlinger
55
ms.author: mandia
66
ms.date: 07/28/2025
77
ms.topic: reference
8-
ms.reviewer: gokarthi
8+
ms.reviewer: mattcall
99
ms.collection:
1010
- M365-identity-device-management
1111
---

0 commit comments

Comments
 (0)