Skip to content

Commit 93389b7

Browse files
authored
Merge pull request #6379 from MicrosoftDocs/main
12/14/2021 PM Publish
2 parents f3eea26 + 505a027 commit 93389b7

2 files changed

Lines changed: 9 additions & 7 deletions

File tree

memdocs/intune/enrollment/device-enrollment-program-enroll-ios.md

Lines changed: 1 addition & 1 deletion
Original file line numberDiff line numberDiff line change
@@ -207,7 +207,7 @@ Now that you've installed your token, you can create an enrollment profile for A
207207
- **Setup Assistant with modern authentication**: Devices running iOS/iPadOS 13.0 and later can use this method. Older iOS/iPadOS devices in this profile will fall back to using the **Setup Assistant (legacy)** process.
208208

209209
> [!NOTE]
210-
> MFA won't work for Setup Assistant with modern authentication if you're using a 3rd party MFA provider to present the MFA screen during enrollment. Only the Azure AD MFA screen works during enrollment.
210+
> MFA won't work for Setup Assistant with modern authentication if you're using a 3rd party MFA provider to present the MFA screen during enrollment. Only the Azure AD MFA screen works during enrollment. For the latest support updates about custom controls for MFA, see [Upcoming changes to Custom Controls](https://techcommunity.microsoft.com/t5/azure-active-directory-identity/upcoming-changes-to-custom-controls/ba-p/1144696).
211211
212212
This method provides the same security as Company Portal authentication but avoids the issue of leaving end users with a device they can't use until the Company Portal installs.
213213

memdocs/intune/enrollment/enrollment-restrictions-set.md

Lines changed: 8 additions & 6 deletions
Original file line numberDiff line numberDiff line change
@@ -198,20 +198,22 @@ The following filter properties are always available to use with enrollment poli
198198

199199
**Windows**
200200

201-
* osVersion
202-
* operatingSystemSKU
203-
* deviceOwnership
204-
* enrollmentProfileName
201+
* OS version
202+
* Operating System SKU
203+
* Ownership
204+
* Enrollment profile name
205205

206206
**iOS/iPadOS and macOS**
207207
* Manufacturer
208208
* Model
209-
* OS Version
210-
* Device ownership
209+
* OS version
210+
* Ownership
211211
* Enrollment profile name
212212

213213
For more information about these properties, see [device properties](../fundamentals/filters-device-properties.md#device-properties). Filters cannot be used with Android enrollment restrictions.
214214

215+
>[!NOTE]
216+
>To use filters on enrollment restriction and enrollment status assignments, you must [enable the filters public preview in your tenant](../fundamentals/filters.md#enable-filters-public-preview).
215217
216218
## Blocking personal Android devices
217219
- If you block personally owned Android device administrator devices from enrollment, personally-owned Android Enterprise work profile devices can still enroll.

0 commit comments

Comments
 (0)