You signed in with another tab or window. Reload to refresh your session.You signed out in another tab or window. Reload to refresh your session.You switched accounts on another tab or window. Reload to refresh your session.Dismiss alert
Copy file name to clipboardExpand all lines: memdocs/configmgr/core/plan-design/changes/whats-new-in-version-2207.md
+20-10Lines changed: 20 additions & 10 deletions
Display the source diff
Display the rich diff
Original file line number
Diff line number
Diff line change
@@ -36,7 +36,7 @@ For more information, see [Configure Azure services for use with Configuration M
36
36
37
37
You can now approve the application workflow through email. For the application approvals through email, manually add the CMG URL in the Azure Active Directory app as single page application redirect URI.
38
38
39
-
<!--For more information, see [xxxxxc](../../servers/blah.md). -->
39
+
For more information, see [Approve applications in Configuration Manager](../../../apps/deploy-use/app-approval.md#to-take-action-from-internet).
40
40
41
41
## Site infrastructure
42
42
@@ -51,7 +51,8 @@ Configuration Manager will now utilize the Windows Server 2012 R2 and Windows Se
51
51
<!--10674394-->
52
52
You can now add options via PowerShell to include and prefer cloud management gateway (CMG) management points for the default site boundary group. When a site is set up, there's a default site boundary group created for each site and all the clients are by default mapped to it until they're assigned to some custom boundary group.
53
53
54
-
<!--For more information, see [xxxxxc](../../servers/blah.md). -->
54
+
For more information, see [
55
+
Default site boundary group behavior supports cloud source selection](../../../core/servers/deploy/configure/boundary-groups.md#default-site-boundary-group-behavior-supports-cloud-source-selection).
55
56
56
57
## Client management
57
58
@@ -61,7 +62,7 @@ You can now define a **Script Execution Timeout (seconds)** when configuring cli
61
62
62
63
For more information, see the [compliance settings group of client settings](../../clients/deploy/about-client-settings.md#compliance-settings).
63
64
64
-
## Collections
65
+
<!--## Collections-->
65
66
66
67
67
68
@@ -74,28 +75,37 @@ For more information, see the [compliance settings group of client settings](../
74
75
75
76
Admins can now organize ADRs by using folders. This change allows for better categorization and management of ADRs. Folder management for ADRs is also supported with PowerShell cmdlets.
76
77
77
-
<!--For more information, see [xxxxxc](../../servers/blah.md). -->
78
+
For more information, see [Process to create a folder for automatic deployment rules](../../../sum/deploy-use/automatically-deploy-software-updates.md#process-to-add-a-new-deployment-to-an-existing-adr).
78
79
79
80
### Offset for reoccuring monthly maintenance window schedules
80
81
<!--3601127#-->
81
82
82
83
Based upon your feedback, you can now offset monthly maintenance window schedules to better align deployments with the release of monthly security updates. For example, using an offset of two days after the second Tuesday of the month, sets the maintenance window for Thursday.
83
84
84
-
<!--For more information, see [xxxxxc](../../servers/blah.md). -->
85
-
86
-
## OS deployment
85
+
For more information, see [How to use maintenance windows in Configuration Manager](../../../core/clients/manage/collections/use-maintenance-windows.md).
87
86
87
+
<!--## OS deployment-->
88
88
89
89
90
+
## Protection
90
91
92
+
### Improvements to Configuration Manager policies for Microsoft Defender Application Guard
93
+
<!-- 14059872 -->
91
94
92
-
<!--## Protection-->
95
+
1. Windows Defender Application Guard has been renamed to Microsoft Defender Application Guard in the Configuration Manager console.
96
+
1. The **General** settings page allows you to enable for isolated Windows environments and enable for Microsoft Edge and isolated Windows environments.
97
+
1. The **Application Behavior** settings page allows you to enable or disable cameras and microphones, along with certificate matching the thumbprints to the isolated container.
98
+
1. The following items were removed:
99
+
- The Enterprise sites can load non-enterprise content, such as third-party plug-ins setting under the **Host interaction** page.
100
+
- The file trust criteria policy in the **File Management** page.
101
+
102
+
For more information, see [Create and deploy Microsoft Defender Application Guard policy](../../../protect/deploy-use/create-deploy-application-guard-policy.md#create-a-policy-and-to-browse-the-available-settings).
0 commit comments