You signed in with another tab or window. Reload to refresh your session.You signed out in another tab or window. Reload to refresh your session.You switched accounts on another tab or window. Reload to refresh your session.Dismiss alert
Copy file name to clipboardExpand all lines: memdocs/intune/fundamentals/what-is-intune.md
+7-4Lines changed: 7 additions & 4 deletions
Display the source diff
Display the rich diff
Original file line number
Diff line number
Diff line change
@@ -7,7 +7,7 @@ keywords: what is Intune, mobile endpoint management, mobile application managem
7
7
author: MandiOhlinger
8
8
ms.author: mandia
9
9
manager: dougeby
10
-
ms.date: 09/27/2022
10
+
ms.date: 10/05/2022
11
11
ms.topic: overview
12
12
ms.service: microsoft-intune
13
13
ms.subservice: fundamentals
@@ -34,12 +34,14 @@ ms.collection:
34
34
35
35
As organizations move to support hybrid and remote workforces, they're challenged with managing the different devices that access organization resources. Employees and students need to collaborate, work from anywhere, and securely access and connect to these resources. Admins need to protect organization data, manage end user access, and support users from wherever they work.
36
36
37
-
To help with these challenges and tasks, use Microsoft Intune. Microsoft Intune is a mobile device management (MDM) and mobile application management (MAM) provider for your organization or enterprise. Intune is cloud-based and can manage your Android, iOS/iPadOS, macOS, and Windows client devices and apps using policies. It allows users to be productive from anywhere and on any device, and works well with on-premises Configuration Manager environments.
37
+
To help with these challenges and tasks, use Microsoft Intune. Microsoft Intune is a mobile device management (MDM) and mobile application management (MAM) provider for your organization or enterprise. Intune is cloud-native and can manage your Android, iOS/iPadOS, macOS, and Windows client devices and apps using policies. It allows users to be productive from anywhere and on any device, and works well with on-premises Configuration Manager environments.
38
38
39
39
Microsoft Intune is also a family of products and services that focus on endpoint management. This family includes Microsoft Intune, Configuration Manager, Windows Autopilot, and Endpoint Analytics. With these services, you get OS deployment, app and device policy management, and reporting & analytics.
40
40
41
41
This article lists some features and benefits of Microsoft Intune.
42
42
43
+
For more information on what it means to be cloud-native, go to [Learn more about cloud-native endpoints](../../solutions/cloud-native-endpoints/cloud-native-endpoints-overview.md).
44
+
43
45
> [!TIP]
44
46
> To get Intune, go to [Licenses available for Microsoft Intune](licenses.md) and [Intune 30-day trial](free-trial-sign-up.md).
45
47
@@ -272,14 +274,15 @@ When you enable SSO, users can automatically sign in to apps and services using
272
274
273
275
Specifically:
274
276
275
-
- On iOS/iPadOS and macOS devices, you can use the Microsoft Enterprise SSO plug-in to automatically sign in to apps and websites that use Azure Active Directory (AD) for authentication, including Microsoft 365 apps.
276
-
277
277
- On Windows devices, SSO is automatically built in and used to sign in to apps and websites that use Azure AD for authentication, including Microsoft 365 apps. You can also enable SSO on VPN and Wi-Fi policies.
278
278
279
+
- On iOS/iPadOS and macOS devices, you can use the Microsoft Enterprise SSO plug-in to automatically sign in to apps and websites that use Azure Active Directory (AD) for authentication, including Microsoft 365 apps.
280
+
279
281
- On Android devices, you can use the Microsoft Authentication Library (MSAL) to enable SSO to Android apps.
280
282
281
283
For more information, go to:
282
284
285
+
-[How SSO to on-premises resources works on Azure AD joined devices](/azure/active-directory/devices/azuread-join-sso)
283
286
-[Use the Microsoft Enterprise SSO plug-in on iOS/iPadOS and macOS devices in Microsoft Intune](../configuration/use-enterprise-sso-plug-in-ios-ipados-macos.md)
284
287
-[Enable cross-app SSO on Android using MSAL](/azure/active-directory/develop/msal-android-single-sign-on)
Copy file name to clipboardExpand all lines: memdocs/solutions/cloud-native-endpoints/azure-ad-joined-hybrid-azure-ad-joined.md
+3-3Lines changed: 3 additions & 3 deletions
Display the source diff
Display the rich diff
Original file line number
Diff line number
Diff line change
@@ -2,14 +2,14 @@
2
2
# required metadata
3
3
4
4
title: Join your cloud-native endpoints to Azure AD
5
-
titleSuffix: Microsoft Endpoint Manager
5
+
titleSuffix: Microsoft Intune
6
6
description: When moving to or using cloud-native endpoints, use Azure AD joined endpoints. When your endpoints are joined to Azure AD, you can use Windows Autopilot to provision or get devices ready for organization use. Learn more about the benefits to IT admins and end-users.
7
7
keywords:
8
8
author: MandiOhlinger
9
9
10
10
ms.author: mandia
11
11
manager: dougeby
12
-
ms.date: 07/13/2022
12
+
ms.date: 10/05/2022
13
13
ms.topic: conceptual
14
14
ms.service: mem
15
15
ms.subservice: fundamentals
@@ -71,7 +71,7 @@ To join Windows endpoints to Azure AD, you have some options:
71
71
-**Use a Window Provisioning Package**. For more information, go to:
72
72
73
73
-[Provisioning packages for Windows](/windows/configuration/provisioning-packages/provisioning-packages)
74
-
-[Bulk join a Windows device to Azure AD and Microsoft Endpoint Manager using a provisioning package - Microsoft Tech Community](https://techcommunity.microsoft.com/t5/intune-customer-success/bulk-join-a-windows-device-to-azure-ad-and-microsoft-endpoint/ba-p/2381400) blog post
74
+
-[Bulk join a Windows device to Azure AD and Microsoft Intune using a provisioning package - Microsoft Tech Community](https://techcommunity.microsoft.com/t5/intune-customer-success/bulk-join-a-windows-device-to-azure-ad-and-microsoft-endpoint/ba-p/2381400) blog post
Copy file name to clipboardExpand all lines: memdocs/solutions/cloud-native-endpoints/cloud-native-endpoints-known-issues.md
+3-3Lines changed: 3 additions & 3 deletions
Display the source diff
Display the rich diff
Original file line number
Diff line number
Diff line change
@@ -2,14 +2,14 @@
2
2
# required metadata
3
3
4
4
title: Common issues and resolutions with cloud-native endpoints
5
-
titleSuffix: Microsoft Endpoint Manager
5
+
titleSuffix: Microsoft Intune
6
6
description: Learn more about the known and resolutions when using cloud-native endpoints. Use user-based authentication; don't use machine authentication. Existing group policy objects might not apply. Local Administrator Password Solution (LAPS) isn't supported.
7
7
keywords:
8
8
author: MandiOhlinger
9
9
10
10
ms.author: mandia
11
11
manager: dougeby
12
-
ms.date: 06/01/2022
12
+
ms.date: 10/05/2022
13
13
ms.topic: conceptual
14
14
ms.service: mem
15
15
ms.subservice: fundamentals
@@ -128,7 +128,7 @@ It's possible some of your older policies aren't available, or don't apply to cl
128
128
129
129
**Resolution**:
130
130
131
-
- Using [Group Policy Analytics](../../intune/configuration/group-policy-analytics.md) in Endpoint Manager, you can evaluate your existing group policy objects (GPO). The analysis shows the policies that are available, and policies that aren't available.
131
+
- Using [Group Policy Analytics](../../intune/configuration/group-policy-analytics.md) in Intune, you can evaluate your existing group policy objects (GPO). The analysis shows the policies that are available, and policies that aren't available.
132
132
- In endpoint management, policies are deployed to users and groups. They aren't applied in LSDOU order. This behavior is a mind shift, so make sure your users and groups are in order.
133
133
134
134
For more specific information and guidance on policy assignment in Microsoft Intune, go to [Assign user and device profiles in Microsoft Intune](../../intune/configuration/device-profile-assign.md).
Copy file name to clipboardExpand all lines: memdocs/solutions/cloud-native-endpoints/cloud-native-endpoints-on-premises.md
+2-2Lines changed: 2 additions & 2 deletions
Display the source diff
Display the rich diff
Original file line number
Diff line number
Diff line change
@@ -2,14 +2,14 @@
2
2
# required metadata
3
3
4
4
title: Use on-premises services with cloud-native endpoints
5
-
titleSuffix: Microsoft Endpoint Manager
5
+
titleSuffix: Microsoft Intune
6
6
description: For cloud-native endpoints to access on-premises resources, such as file servers, printers, and web servers, use Windows integrated authentication (WIA) and Azure AD Connect.
Copy file name to clipboardExpand all lines: memdocs/solutions/cloud-native-endpoints/cloud-native-endpoints-overview.md
+13-12Lines changed: 13 additions & 12 deletions
Display the source diff
Display the rich diff
Original file line number
Diff line number
Diff line change
@@ -2,14 +2,14 @@
2
2
# required metadata
3
3
4
4
title: What are cloud-native Windows endpoints
5
-
titleSuffix: Microsoft Endpoint Manager
6
-
description: Learn more about cloud-native endpoints and what they are. See a list of benefits, and the impact on end users and IT administrators. Cloud-native endpoints help with remote workers and hybrid workers, and use Microsoft Endpoint Manager to manage devices.
5
+
titleSuffix: Microsoft Intune
6
+
description: Learn more about cloud-native endpoints and what they are. See a list of benefits, and the effect on end users and IT administrators. Cloud-native endpoints help with remote workers and hybrid workers, and use Microsoft Intune to manage devices.
7
7
keywords:
8
8
author: MandiOhlinger
9
9
10
10
ms.author: mandia
11
11
manager: dougeby
12
-
ms.date: 06/01/2022
12
+
ms.date: 10/05/2022
13
13
ms.topic: conceptual
14
14
ms.service: mem
15
15
ms.subservice: fundamentals
@@ -44,13 +44,14 @@ Organizations are focusing on supporting remote and hybrid workers. With cloud-n
44
44
In this set of articles, you will:
45
45
46
46
- ✅ **Learn about cloud-native endpoints** and the benefits to organizations and end users (this article).
47
-
- ✅ **Step through a tutorial** that creates a Windows device that's cloud-native:
48
47
49
-
-[Tutorial: Get started with cloud-native Windows endpoints with Microsoft Endpoint Manager](cloud-native-windows-endpoints.md)
48
+
- ✅ **Step through a tutorial** that creates a Windows device that's cloud-native:
49
+
50
+
-[Tutorial: Get started with cloud-native Windows endpoints with Microsoft Intune](cloud-native-windows-endpoints.md)
50
51
51
52
- ✅ **Learn more about the Azure AD concepts** that are part of cloud-native endpoints, including accessing on-premises resources:
52
53
53
-
-[Azure AD joined vs. Hybrid Azure AD joined](azure-ad-joined-hybrid-azure-ad-joined.md)
54
+
-[Azure AD joined vs. Hybrid Azure AD joined](azure-ad-joined-hybrid-azure-ad-joined.md)
54
55
-[Cloud-native endpoints and on-premises resources](cloud-native-endpoints-on-premises.md)
55
56
56
57
- ✅ **Get guidance and advice** on moving your workloads and your organization to become cloud-native:
@@ -69,7 +70,7 @@ A cloud-native endpoint doesn't necessarily live exclusively in the cloud. Inste
69
70
70
71
These endpoints can be located anywhere that has internet access. They can also be physical devices or virtual machines.
71
72
72
-
From a technical perspective, cloud-native endpoints are Windows devices that are deployed using [Windows Autopilot](../../autopilot/windows-autopilot.md), joined to Azure Active Directory ([Azure AD joined](/azure/active-directory/devices/concept-azure-ad-join)), and are automatically enrolled in a Mobile Device Management (MDM) solution, like [Microsoft Endpoint Manager](../../endpoint-manager-overview.md).
73
+
From a technical perspective, cloud-native endpoints are Windows devices that are deployed using [Windows Autopilot](../../autopilot/windows-autopilot.md), joined to Azure Active Directory ([Azure AD joined](/azure/active-directory/devices/concept-azure-ad-join)), and are automatically enrolled in a Mobile Device Management (MDM) solution, like [Microsoft Intune](../../intune/fundamentals/what-is-intune.md).
73
74
74
75
A cloud-native endpoint has the following characteristics:
75
76
@@ -81,7 +82,7 @@ A cloud-native endpoint has the following characteristics:
81
82
82
83
For end users, they only need an internet connection. Their data and critical settings can be automatically preserved and restored using [Enterprise State Roaming](/azure/active-directory/devices/enterprise-state-roaming-faqs), or similar solutions. If end users experience issues during deployment or at any time, then they can reset and reprovision the device without contacting support.
83
84
84
-
Microsoft recommends customers focus on adopting cloud-native endpoints.
85
+
Microsoft recommends that organizations focus on adopting cloud-native endpoints.
85
86
86
87
## Benefits for users and IT
87
88
@@ -91,17 +92,17 @@ Cloud-native endpoints provide many benefits to end users and IT:
91
92
92
93
End users don't worry about connecting to the VPN or other networks. They sign in to devices from anywhere, and run actions, like password reset, without connecting to on-premises AD.
93
94
94
-
Azure AD joined (also known as AADJ) endpoints do the initial sign-in using an internet connection. The Azure AD joined sign-in process doesn't use on-premises domain controller connectivity, and is faster than a traditional domain-based sign-in.
95
+
Azure AD joined (also known as AADJ) endpoints do the initial sign-in using an internet connection. The Azure AD joined sign-in process doesn't use an on-premises domain controller for connectivity, and is faster than a traditional domain-based sign-in.
95
96
96
97
Traditional domain joined PCs require connectivity to domain controllers for initial sign-in.
97
98
98
99
-**Deploy from anywhere**
99
100
100
-
To deploy new devices, administrators can be anywhere with an internet connection. You can provision or reset devices, and have the devices ready much quicker than traditional provisioning, possibly in minutes. The reliance on on-premises resources is reduced, which simplifies the endpoint requirements and endpoint management.
101
+
To deploy new devices, administrators can be anywhere with an internet connection. You can provision or reset devices, and have the devices ready quicker than traditional provisioning, possibly in minutes. The reliance on on-premises resources is reduced, which simplifies the endpoint requirements and endpoint management.
101
102
102
103
-**Simplified management for all platforms**
103
104
104
-
Users and administrators get a unified management experience for all platforms, including Android, iOS/iPadOS, macOS, and Windows. With Endpoint Manager, you can manage mobile and non-mobile devices and operating systems. You don't need to rely on complex group policy management.
105
+
Users and administrators get a unified management experience for all platforms, including Android, iOS/iPadOS, macOS, and Windows. With Intune, you can manage mobile and non-mobile devices and operating systems. You don't need to rely on complex group policy management.
105
106
106
107
-**Provide a secure Single-Sign-On (SSO) experience to cloud and on-premises apps**
107
108
@@ -131,7 +132,7 @@ Cloud-native endpoints provide many benefits to end users and IT:
131
132
132
133
The [High level planning guide to move to cloud-native endpoints](cloud-native-endpoints-planning-guide.md) is a good resource. It covers the following areas:
133
134
134
-
-**Plan**: In adopting cloud-native endpoints, organizations focus on several key areas:
135
+
-**Plan**: When ready to move to cloud-native endpoints, organizations focus on several key areas:
135
136
136
137
- Review your existing workloads for modernization, and determine the next steps to support cloud-native.
137
138
- Be prepared to change operational processes and procedures.
Copy file name to clipboardExpand all lines: memdocs/solutions/cloud-native-endpoints/cloud-native-endpoints-planning-guide.md
+11-11Lines changed: 11 additions & 11 deletions
Display the source diff
Display the rich diff
Original file line number
Diff line number
Diff line change
@@ -2,14 +2,14 @@
2
2
# required metadata
3
3
4
4
title: Update your workloads to support cloud-native endpoints
5
-
titleSuffix: Microsoft Endpoint Manager
6
-
description: To support hybrid and remote workers, convert or migrate your workloads to support cloud-native endpoints. This planning guide focuses on deploying apps and updates with Endpoint Manager, moving from group policy objects, and using Windows Autopilot.
5
+
titleSuffix: Microsoft Intune
6
+
description: To support hybrid and remote workers, convert or migrate your workloads to support cloud-native endpoints. This planning guide focuses on deploying apps and updates with Intune, moving from group policy objects, and using Windows Autopilot.
7
7
keywords:
8
8
author: MandiOhlinger
9
9
10
10
ms.author: mandia
11
11
manager: dougeby
12
-
ms.date: 06/01/2022
12
+
ms.date: 10/05/2022
13
13
ms.topic: conceptual
14
14
ms.service: mem
15
15
ms.subservice: fundamentals
@@ -50,15 +50,15 @@ To be successful, consider the key areas described in this article for your plan
50
50
51
51
Managing your endpoints, including cloud-native endpoints, is an important task for all organizations. With cloud-native endpoints, the management tools you use must manage the endpoints wherever they go.
52
52
53
-
If you don't currently use a mobile device management (MDM) solution, or want to move to a Microsoft solution, then look at [Microsoft Endpoint Manager](../../endpoint-manager-overview.md).
53
+
If you don't currently use a mobile device management (MDM) solution, or want to move to a Microsoft solution, then look at [What is Microsoft Intune?](../../intune/fundamentals/what-is-intune.md) and [Get started with Microsoft Intune](../../intune/fundamentals/get-started-with-intune.md).
54
54
55
-
With Microsoft Endpoint Manager, you get the following endpoint management options:
55
+
With the Microsoft Intune family of products and services, you have the following endpoint management options:
56
56
57
57
-**[Microsoft Intune](../../intune/index.yml)**: Intune is 100% cloud-based, and uses the Endpoint Manager admin center to manage devices, manage apps on devices, create & deploy policies, review reporting data, and more.
58
58
59
59
For more information on using Intune to manage your endpoints, go to:
60
60
61
-
-[Microsoft Intune is an MDM and MAM provider for your devices](../../intune/fundamentals/what-is-intune.md)
61
+
-[Microsoft Intune securely manages identities, manages apps, and manages devices](../../intune/fundamentals/what-is-intune.md)
62
62
-[Deployment guide: Setup or move to Microsoft Intune](../../intune/fundamentals/deployment-guide-intune-setup.md)
@@ -364,7 +364,7 @@ If you use Configuration Manager, then cloud attach your environment to Microsof
364
364
365
365
When you cloud attach, you can remotely manage your client endpoints, co-manage your endpoints with Intune (cloud) and Configuration Manager (on-premises), and access the Endpoint Manager admin center.
366
366
367
-
For more specific information, go to [Cloud attach your Configuration Manager environment](../../configmgr/cloud-attach/overview.md) and [Walk through the Microsoft Endpoint Manager](../../intune/fundamentals/tutorial-walkthrough-endpoint-manager.md).
367
+
For more specific information, go to [Cloud attach your Configuration Manager environment](../../configmgr/cloud-attach/overview.md) and [Walk through the Microsoft Endpoint Manager admin center](../../intune/fundamentals/tutorial-walkthrough-endpoint-manager.md).
368
368
369
369
### ✅ Phase 4: Create an Azure AD joined proof of concept
370
370
@@ -449,19 +449,19 @@ Intune also has built-in features that can help you configure your cloud-native
449
449
450
450
If you use GPOs, then using this tool is a valuable first step.
451
451
452
-
For more information, go to [Group Policy Analytics in Endpoint Manager](../../intune/configuration/group-policy-analytics.md).
452
+
For more information, go to [Group Policy Analytics in Intune](../../intune/configuration/group-policy-analytics.md).
453
453
454
454
-**[Settings catalog](../../intune/configuration/settings-catalog.md)**: See all the settings available in Intune, and create, configure, & deploy a policy using these settings. [Tasks you can complete using the Settings Catalog in Intune](../../intune/configuration/settings-catalog-common-features.md) may also be a good resource. If you create GPOs, then the settings catalog is a natural transition to cloud-native endpoint configuration.
455
455
456
456
When combined with [Group Policy Analytics](../../intune/configuration/group-policy-analytics.md), you can deploy the policies you used on-premises to your cloud-native endpoints.
457
457
458
-
For more information, go to [Settings catalog in Endpoint Manager](../../intune/configuration/settings-catalog.md).
458
+
For more information, go to [Settings catalog in Intune](../../intune/configuration/settings-catalog.md).
459
459
460
460
-**[Administrative templates](../../intune/configuration/administrative-templates-windows.md)**: These templates are similar to the ADMX templates used on-premises, and are built in to Intune. You don't download them. These templates include many settings that control features in Microsoft Edge, Internet Explorer, Microsoft Office apps, remote desktop, OneDrive, passwords, PINs, and more.
461
461
462
462
If you use administrative templates on-premises, then using them in Intune is a natural transition.
463
463
464
-
For more information, go to [Administrative templates in Endpoint Manager](../../intune/configuration/administrative-templates-windows.md).
464
+
For more information, go to [Administrative templates in Intune](../../intune/configuration/administrative-templates-windows.md).
465
465
466
466
You can also ingest an existing set of ADMX policies for Win32 and Desktop Bridge apps. For more information, go to:
467
467
@@ -476,7 +476,7 @@ Intune also has built-in features that can help you configure your cloud-native
476
476
477
477
You can create a security baseline for Windows, Microsoft Edge, and more. If you're not sure where to start, or want the security settings recommended by security experts, then look at security baselines.
478
478
479
-
For more information, go to [Security baselines in Endpoint Manager](../../intune/protect/security-baselines.md).
479
+
For more information, go to [Security baselines in Intune](../../intune/protect/security-baselines.md).
480
480
481
481
## Use Windows Autopilot to provision new or existing Windows endpoints
0 commit comments