Skip to content

Commit 3a6c6d8

Browse files
author
Angela Fleischmann
authored
Merge pull request #7495 from MicrosoftDocs/main
Publish 04/29/2022 3:30 PM PT
2 parents 1852e4b + e994242 commit 3a6c6d8

13 files changed

Lines changed: 123 additions & 125 deletions

memdocs/intune/configuration/vpn-settings-configure.md

Lines changed: 14 additions & 11 deletions
Original file line numberDiff line numberDiff line change
@@ -7,7 +7,7 @@ keywords:
77
author: MandiOhlinger
88
ms.author: mandia
99
manager: dougeby
10-
ms.date: 01/31/2022
10+
ms.date: 04/29/2022
1111
ms.topic: how-to
1212
ms.service: microsoft-intune
1313
ms.subservice: configuration
@@ -138,21 +138,24 @@ You can create VPN profiles using the following connection types:
138138
- L2TP
139139
- Windows 10/11
140140

141-
- Microsoft Tunnel (standalone client)(preview)
142-
- iOS/iPadOS
143-
144141
- Microsoft Tunnel
145142
- Android Enterprise personally owned devices with a work profile.
146143
- Android Enterprise fully managed and corporate-owned work profile.
147-
- iOS/iPadOS – As part of a public preview, iOS/iPadOS supports a connection type of *Microsoft Tunnel (preview)*. To use this connection type, you must use the preview version of Microsoft Defender for Endpoint that supports Tunnel on this platform.
148144

145+
> [!Important]
146+
> As of June 14, 2021, both the standalone tunnel app and standalone client connection type for Android are deprecated and drop from support after October 26, 2021.
147+
148+
- Microsoft Tunnel (preview)
149+
- iOS/iPadOS
150+
149151
> [!Important]
150-
> Prior to support for using Microsoft Defender for Endpoint as the tunnel client app, Microsoft Tunnel used a standalone tunnel client app and a connection type of **Microsoft Tunnel (standalone client)**.
151-
>
152-
> For Android, as of June 14, 2021, both the standalone tunnel app and standalone client connection type are deprecated and drop from support after October 26, 2021.
153-
>
154-
> For iOS/iPadOS, the standalone client app and connection type remain in support while use of Microsoft Defender for Endpoint as the client app with the Microsoft Tunnel connection type are in public preview.
155-
> Prior to support for using Microsoft Defender for Endpoint as the tunnel client app, a standalone tunnel client app was available in preview and used a connection type of **Microsoft Tunnel (standalone client)**. As of June 14, 2021, both the standalone tunnel app and standalone client connection type are deprecated and drop from support after January 31, 2022.
152+
> On April 29, 2022, this connection type became generally available and supports Microsoft Defender for Endpoint as a tunnel client app. However, the connection type continues to reflect *preview*.
153+
154+
- Microsoft Tunnel (standalone client)(preview)
155+
- iOS/iPadOS
156+
157+
> [!Important]
158+
> Use *Microsoft Tunnel (preview)* instead. On April 29, 2022, the *Microsoft Tunnel (preview)* connection type became generally available and supports Microsoft Defender for Endpoint as a tunnel client app. By the end of June 2022, the *Microsoft Tunnel (standalone client)(preview)* connection type and the standalone tunnel client app it supports are deprecated and drop from support. Soon after the June date, this connection type will stop functioning and no longer connect to Microsoft Tunnel.
156159
157160
- NetMotion Mobility
158161
- Android Enterprise personally owned devices with a work profile

memdocs/intune/configuration/vpn-settings-ios.md

Lines changed: 11 additions & 2 deletions
Original file line numberDiff line numberDiff line change
@@ -7,7 +7,7 @@ keywords:
77
author: MandiOhlinger
88
ms.author: mandia
99
manager: dougeby
10-
ms.date: 02/24/2022
10+
ms.date: 04/29/2022
1111
ms.topic: conceptual
1212
ms.service: microsoft-intune
1313
ms.subservice: configuration
@@ -81,12 +81,21 @@ Select the VPN connection type from the following list of vendors:
8181
- **IKEv2**
8282

8383
[IKEv2 settings](#ikev2-settings) (in this article) describes the properties.
84+
8485
- **Microsoft Tunnel (standalone client)(preview)**
8586

8687
Applies to the Microsoft Tunnel client app.
88+
89+
> [!Important]
90+
> Use *Microsoft Tunnel (preview)* instead. On April 29, 2022, the *Microsoft Tunnel (preview)* connection type became generally available and supports Microsoft Defender for Endpoint as a tunnel client app. By the end of June 2022, the *Microsoft Tunnel (standalone client)(preview)* connection type and the standalone tunnel client app it supports are deprecated and drop from support. Soon after the June date, this connection type will stop functioning and no longer connect to Microsoft Tunnel.
91+
8792
- **Microsoft Tunnel (preview)**
8893

89-
Applies to the preview version of the Microsoft Defender for Endpoint app that includes Tunnel client functionality.
94+
Applies to the Microsoft Defender for Endpoint app that includes Tunnel client functionality.
95+
96+
> [!Important]
97+
> On April 29, 2022, this connection type became generally available and supports Microsoft Defender for Endpoint as a tunnel client app. However, the connection type continues to reflect *preview*.
98+
9099
- **Custom VPN**
91100

92101
> [!NOTE]

memdocs/intune/enrollment/windows-enrollment-status.md

Lines changed: 1 addition & 1 deletion
Original file line numberDiff line numberDiff line change
@@ -194,7 +194,7 @@ The Enrollment Status Page tracks the following device setup items:
194194
- Applications
195195
- Per machine Line-of-business (LoB) MSI apps.
196196
- LoB store apps with installation context = Device.
197-
- Offline store and LoB store apps with installation context = Device.
197+
- Offline store apps with installation context = Device.
198198
- Win32 applications (Windows 11 and Windows 10 version 1903 and later only)
199199

200200
> [!NOTE]

memdocs/intune/fundamentals/whats-new-archive.md

Lines changed: 2 additions & 2 deletions
Original file line numberDiff line numberDiff line change
@@ -1184,7 +1184,7 @@ Later, if recovery is needed, a user can always use any device to view their per
11841184

11851185
#### Improved view of security baseline details for devices<!-- 5536846 -->
11861186

1187-
Now you can drill-in to the details for a device to view the settings details for security baselines that apply to the device. The settings appear in a simple, flat list, which includes the setting category, setting name, and status. For more information, see [View Endpoint security configurations per device](../protect/security-baselines-monitor.md#view-endpoint-security-configurations-per-device).
1187+
Now you can drill-in to the details for a device to view the settings details for security baselines that apply to the device. The settings appear in a simple, flat list, which includes the setting category, setting name, and status. For more information, see [View Endpoint security configurations per device](../protect/security-baselines-monitor.md).
11881188

11891189
<!-- vvvvvvvvvvvvvvvvvvvvvv -->
11901190
### Monitor and troubleshoot
@@ -2189,7 +2189,7 @@ The following platforms support import of PFX certificates:
21892189
- Windows 10
21902190

21912191
#### View the endpoint security configuration for devices<!-- 6206460 -->
2192-
We've updated the name of the option in the Microsoft Endpoint Manager admin center, for viewing [endpoint security configurations that apply to a specific device](../protect/security-baselines-monitor.md#view-endpoint-security-configurations-per-device). This option is renamed to **Endpoint security configuration** because it shows applicable security baselines and additional policies created outside of security baselines. Previously, this option was named *Security baselines*.
2192+
We've updated the name of the option in the Microsoft Endpoint Manager admin center, for viewing [endpoint security configurations that apply to a specific device](../protect/security-baselines-monitor.md). This option is renamed to **Endpoint security configuration** because it shows applicable security baselines and additional policies created outside of security baselines. Previously, this option was named *Security baselines*.
21932193

21942194
<!-- vvvvvvvvvvvvvvvvvvvvvv -->
21952195
### Role-based access control

memdocs/intune/fundamentals/whats-new.md

Lines changed: 12 additions & 1 deletion
Original file line numberDiff line numberDiff line change
@@ -7,7 +7,7 @@ keywords:
77
author: Erikre
88
ms.author: erikre
99
manager: dougeby
10-
ms.date: 04/26/2022
10+
ms.date: 04/29/2022
1111
ms.topic: conceptual
1212
ms.service: microsoft-intune
1313
ms.subservice: fundamentals
@@ -104,6 +104,17 @@ We've added two new Setup Assistant settings that you can use with Apple Automat
104104

105105
### Device security
106106

107+
### Microsoft Defender for Endpoint as the Tunnel client app for iOS is now Generally Available<!-- 9849514 -->
108+
109+
Use of Microsoft Defender for Endpoint that supports [Microsoft Tunnel](../protect/microsoft-tunnel-overview.md) on iOS/iPadOS is now out of preview and is generally available. With general availability, a new version of the Defender for Endpoint app for iOS is available from the App store to download and deploy. If you’ve been using the preview version as your Tunnel client app for iOS, we recommend you upgrade to the latest Defender for Endpoint app for iOS soon to gain the benefits of the latest updates and fixes.
110+
111+
For now, even with the general availability of Defender as the tunnel client app, the VPN profile connection type you'll use remains named **Microsoft Tunnel (preview)**. The connection type will be renamed in a future update to **Microsoft Tunnel**.
112+
113+
With this release, by the end of June both the standalone Tunnel client app and the preview version of Defender for Endpoint as the Tunnel client app for iOS will be deprecated and be dropped from support. Soon after that deprecation, the standalone Tunnel client app will no longer function and will no longer support opening connections to Microsoft Tunnel.
114+
115+
If you're still using the standalone tunnel app for iOS, plan to [migrate to the Microsoft Defender for Endpoint app](../protect/microsoft-tunnel-migrate-app.md) before support for the standalone app ends and it’s support to connect to Tunnel no longer functions.
116+
117+
107118
#### Attack surface reduction rules profile<!-- 8858871 -->
108119
The **Attack Surface Reduction Rules (ConfigMgr)** profile for tenant attached devices is now in public preview. For more information, see [Tenant attach: Create and deploy attack surface reduction policies](../../configmgr/tenant-attach/deploy-asr-policy.md#bkmk_asr).
109120

memdocs/intune/protect/endpoint-security-manage-devices.md

Lines changed: 7 additions & 8 deletions
Original file line numberDiff line numberDiff line change
@@ -7,7 +7,7 @@ keywords:
77
author: brenduns
88
ms.author: brenduns
99
manager: dougeby
10-
ms.date: 04/16/2021
10+
ms.date: 04/29/2022
1111
ms.topic: conceptual
1212
ms.service: microsoft-intune
1313
ms.subservice: protect
@@ -47,7 +47,7 @@ The initial *All devices* view displays your devices and includes key informatio
4747
- When the device last checked in
4848
- And more
4949

50-
![All device view in the admin center](./media/endpoint-security-manage-devices/all-device-view.png)
50+
:::image type="content" source="./media/endpoint-security-manage-devices/all-device-view.png" alt-text="The all device view in the admin center." lightbox="./media/endpoint-security-manage-devices/all-device-view.png":::
5151

5252
While viewing device details, you can select a device to drill-in for more information.
5353

@@ -85,14 +85,13 @@ Consider the following fields:
8585

8686
## Review a devices policy
8787

88-
While viewing the list of devices, you can select a device to drill-in for more information about it by opening that device’s *Overview* page.
89-
90-
From the Overview page of a device, you can then select **Endpoint security configuration** to view the endpoint security policies that apply to that device. Policy details are available for devices managed by MDM and Intune.
88+
To view information about the device configuration policies that apply to a device that's managed by MDM and Intune, you can view the [**Device configuration report**](../fundamentals/reports.md#device-configuration-report-operational). Both *endpoint security* and *security baseline* policies are device configuration policies.
9189

90+
To view the report, select a device and then select **Device configuration**, which is found below the *Monitor* category.
91+
9292
![View endpoint security policy details](./media/endpoint-security-manage-devices/view-policy-details.png)
9393

94-
Devices that are managed by Configuration Manager don’t display policy details. To view additional information for these devices, use the Configuration Manager console.
95-
94+
Devices that are managed by Configuration Manager don’t display policy details in the report. To view additional information for these devices, use the Configuration Manager console.
9695
## Remote actions for devices
9796

9897
Remote actions are actions you can start or apply to a device from the Microsoft Endpoint Manager admin center. When you view details for a device, you can access remote actions that apply to the device.
@@ -142,4 +141,4 @@ Options you manage for devices don’t take effect until the device checks in wi
142141

143142
## Next steps
144143

145-
[Manage endpoint security in Intune](../protect/endpoint-security.md)
144+
[Manage endpoint security in Intune](../protect/endpoint-security.md)
13.3 KB
Loading

0 commit comments

Comments
 (0)