![]() ![]() Azure AD group that contains users who will log into devices that will leverage the Assigned Access policy.NOTE: It is possible to test with a VM, but works best with a physical device. Devices that are at least Windows 10 1709. ![]() Windows 10 Autopilot is configured in your Intune tenant.Configure an Enrollment Status Page in Intune.Prepare the Intune tenant for Windows 10 Autopilot.If you have not already setup Windows 10 Autopilot, below is a bulleted list (in order) to get you started on configuring Windows 10 Autopilot before jumping in on this blog: We will not cover configuring Windows 10 Autopilot in this blog. NOTE: While you can certainly deploy an Assigned Access profile to an already provisioned device that is enrolled in Intune (for the policy to apply, the user must log out and back into the device), this blog will assume you are provisioning devices with Windows 10 Autopilot. In part II of the blog, we'll configure our policy in Intune and validate our results. In this part, we'll discuss the background of our strategy, examine the docs, and build our XML. And finally, I mentioned that for those who want to take a whitelisting approach, why not consider leveraging an Assigned Access profile? This two part blog is going to explain what Assigned Access is, the use cases for it, and how to create an Assigned Access profile in Intune. I also mentioned that leveraging a whitelist approach will, more than likely, result in a ton of Allow rules in your AppLocker policy. I mentioned that when an administrator desires to take a whitelisting approach, they want to lock down the application activity on their devices. In my previous blog post, I mentioned my thoughts on the whitelisting approach to blocking application activity on devices. If you missed that post, check it out here:īlocking apps with Intune and AppLocker CSP Back again, much faster this time around! This two part blog picks up or adds to my last blog regarding creating AppLocker policies with AppLocker CSP and Intune.
0 Comments
Leave a Reply. |
AuthorWrite something about yourself. No need to be fancy, just an overview. ArchivesCategories |