Skip to content

Commit c47ce7f

Browse files
author
Angela Fleischmann
authored
Merge pull request #8189 from MicrosoftDocs/main
Publish 08/03/2022 3:30 PM PT
2 parents fb2bc94 + 77a9a31 commit c47ce7f

10 files changed

Lines changed: 77 additions & 90 deletions

File tree

memdocs/autopilot/windows-autopilot-hybrid.md

Lines changed: 54 additions & 66 deletions
Large diffs are not rendered by default.

memdocs/autopilot/windows-autopilot-whats-new.md

Lines changed: 9 additions & 9 deletions
Original file line numberDiff line numberDiff line change
@@ -8,7 +8,7 @@ author: aczechowski
88
ms.author: aaroncz
99
manager: dougeby
1010
ms.reviewer: jubaptis
11-
ms.date: 05/18/2022
11+
ms.date: 08/02/2022
1212
ms.collection:
1313
- M365-modern-desktop
1414
- highpri
@@ -17,14 +17,14 @@ ms.topic: article
1717

1818
# Windows Autopilot: What's new
1919

20-
_Applies to_
20+
## Update Intune Connector for Active Directory for Hybrid Azure AD joined devices
21+
<!-- 2209 -->
2122

22-
- Windows 11
23-
- Windows 10
24-
- Windows Holographic, version 2004
23+
Starting in September 2022, the Intune Connector for Active Directory (ODJ connector) will require .NET Framework version 4.7.2 or later. If you're not already using .NET 4.7.2 or later, the Intune Connector may not work for Autopilot hybrid Azure AD deployments and will result in failures. When you install a new Intune Connector, don't use the connector installation package that was previously downloaded. Download a new version from the **Intune Connector for Active Directory** section of the Microsoft Endpoint Manager admin center. If you're not using the latest version, it may continue to work, but the auto-upgrade feature to provide updates to the Intune Connector won't work.
2524

2625
## Enroll to co-management from Windows Autopilot
2726
<!-- 11300628 -->
27+
<!-- 2205 -->
2828

2929
With the Intune 2205 release, you can configure device enrollment in Intune to enable [co-management](../configmgr/comanage/overview.md), which happens during the Autopilot process. This behavior directs the workload authority in an orchestrated manner between Configuration Manager and Intune.
3030

@@ -33,6 +33,7 @@ If the device is targeted with an [Autopilot enrollment status page (ESP) policy
3333
For more information, see [How to enroll to co-management with Autopilot](../configmgr/comanage/autopilot-enrollment.md).
3434

3535
## Improvements to the enrollment status page
36+
<!-- 2202 -->
3637

3738
With the Intune 2202 release, the [enrollment status page](enrollment-status.md) has improved functionality. The application picker for selecting blocking apps has the following improvements:
3839

@@ -47,18 +48,21 @@ With the Intune 2202 release, the [enrollment status page](enrollment-status.md)
4748
Autopilot agility is a new feature that allows updates and bug fixes to the OOBE experience. These updates occur before device enrollment, and after the Azure Active Directory (Azure AD) sign in page. It may result in another reboot and authentication prompt to the user. This feature is rolling out to Windows 10 1909 and 2004/20H2 with August cumulative update and isn't yet available for Windows 11.
4849

4950
## One-time self-deployment and pre-provisioning
51+
<!-- 2110 -->
5052

5153
We made a change to the Windows Autopilot self-deployment mode and pre-provisioning mode experience, adding in a step to delete the device record as part of the device reuse process. This change impacts all Windows Autopilot deployments where the Autopilot profile is set to self-deployment or pre-provisioning mode. This change only affects a device when it's reused or reset, and it attempts to redeploy.
5254

5355
For more information, see [Updates to the Windows Autopilot sign-in and deployment experience](https://techcommunity.microsoft.com/t5/intune-customer-success/updates-to-the-windows-autopilot-sign-in-and-deployment/ba-p/2848452)
5456

5557
## Update to the Windows Autopilot sign-in experience
58+
<!-- 2110 -->
5659

5760
Users must enter their credentials at initial sign-in during enrollment. We no longer allow pre-population of the Azure Active Directory (Azure AD) user principal name (UPN).
5861

5962
For more information, see [Updates to the Windows Autopilot sign-in and deployment experience](https://techcommunity.microsoft.com/t5/intune-customer-success/updates-to-the-windows-autopilot-sign-in-and-deployment/ba-p/2848452)
6063

6164
## MFA changes to Windows Autopilot enrollment flow
65+
<!-- 2109 -->
6266

6367
To improve the baseline security for Azure Active Directory (Azure AD), we changed Azure AD behavior for multi-factor authentication (MFA) during device registration. Previously, if a user completed MFA as part of their device registration, the MFA claim was carried over to the user state after registration was complete.
6468

@@ -78,10 +82,6 @@ To enable the diagnostics page, go to the [ESP profile](../intune/enrollment/win
7882

7983
The diagnostics page is currently supported for commercial OOBE, and Autopilot user-driven mode. It's currently available on Windows 11. Windows 10 users can still collect and export diagnostic logs when this setting is enabled in Intune.
8084

81-
## Windows Autopilot for HoloLens 2
82-
83-
Windows Autopilot now enables you to configure HoloLens 2 devices. For more information, see [Windows Autopilot for HoloLens 2](/hololens/hololens2-autopilot).
84-
8585
## Next steps
8686

8787
[What's new in Microsoft Intune](../intune/fundamentals/whats-new.md)

memdocs/docfx.json

Lines changed: 3 additions & 5 deletions
Original file line numberDiff line numberDiff line change
@@ -90,17 +90,15 @@
9090
"feedback_product_url": {
9191
"configmgr/**/*.md": "https://feedbackportal.microsoft.com/feedback/forum/4669adfc-ee1b-ec11-b6e7-0022481f8472",
9292
"configmgr/**/*.yml": "https://feedbackportal.microsoft.com/feedback/forum/4669adfc-ee1b-ec11-b6e7-0022481f8472",
93-
"intune/**/*.md": "https://feedbackportal.microsoft.com/feedback/forum/ef1d6d38-fd1b-ec11-b6e7-0022481f8472"
94-
},
95-
"ms.date": {
96-
"autopilot/**/*.md": "12/16/2020"
93+
"intune/**/*.md": "https://feedbackportal.microsoft.com/feedback/forum/ef1d6d38-fd1b-ec11-b6e7-0022481f8472",
94+
"autopilot/**/*.*": "https://feedbackportal.microsoft.com/feedback/forum/ef1d6d38-fd1b-ec11-b6e7-0022481f8472"
9795
},
9896
"searchScope": {
9997
"configmgr/**/*.md": ["ConfigMgr"],
10098
"configmgr/**/*.yml": ["ConfigMgr"],
10199
"configmgr/core/**/*.md": ["ConfigMgr"],
102100
"analytics/**/*.md": ["Analytics"],
103-
"autopilot/**/*.md": ["Autopilot"]
101+
"autopilot/**/*.*": ["Autopilot"]
104102
},
105103
"featureFlags": {
106104
"*.md" : [

memdocs/intune/protect/compliance-use-custom-settings.md

Lines changed: 3 additions & 0 deletions
Original file line numberDiff line numberDiff line change
@@ -88,6 +88,9 @@ During the workflow to create a compliance policy:
8888

8989
5. Complete the compliance policy creation task and assign the policy to devices.
9090

91+
> [!NOTE]
92+
> Assignment filters are not currently supported when assigning compliance policies with custom compliance settings.
93+
9194
> [!NOTE]
9295
> When a Windows device receives a compliance policy with custom settings, it checks for the presence of [Intune Management Extensions](../apps/intune-management-extension.md). If not found, the device runs an MSI that installs the extensions, enabling the client to download and run PowerShell scripts that are part of a compliance policy, and to upload compliance results. Actions managed by the services include:
9396
>

memdocs/intune/remote-actions/custom-notifications.md

Lines changed: 3 additions & 8 deletions
Original file line numberDiff line numberDiff line change
@@ -6,7 +6,7 @@ keywords:
66
author: Smritib17
77
ms.author: smbhardwaj
88
manager: dougeby
9-
ms.date: 04/14/2021
9+
ms.date: 08/03/2022
1010
ms.topic: how-to
1111
ms.service: microsoft-intune
1212
ms.subservice: remote-actions
@@ -36,15 +36,10 @@ Custom notification messages include a short title and a message body of 500 cha
3636

3737
### What the notification looks like on an iOS/iPadOS device
3838

39-
If you have the Company Portal app open on an iOS/iPadOS device, the notification resembles the following screenshot:
39+
If you have the Company Portal app open on an iOS/iPadOS device, and the device is locked, then the notification resembles the following screenshot:
4040

4141
> [!div class="mx-imgBorder"]
42-
> ![Company Portal iOS/iPadOS Test notification](./media/custom-notifications/105046-1.png)
43-
44-
If the device is locked, the notification resembles the following screenshot:
45-
46-
> [!div class="mx-imgBorder"]
47-
> ![Locked Device iOS/iPadOS Test notification](./media/custom-notifications/105046-2.png)
42+
> ![Locked Device iOS/iPadOS Custom notification](./media/custom-notifications/locked-device-custom-notif.png)
4843
4944
### What the notification looks like on an Android device
5045

Binary file not shown.
Binary file not shown.
227 KB
Loading

memdocs/intune/user-help/install-apps-cpapp-windows.md

Lines changed: 3 additions & 0 deletions
Original file line numberDiff line numberDiff line change
@@ -51,6 +51,9 @@ Install apps on your device from the Company Portal app for Windows.
5151
* **App categories**: Select this page in the navigation pane to choose apps based on type or function. Apps are sorted under categories such as **Featured**, **Education**, and **Productivity**.
5252
* **Search for apps**: A static search bar sits in the app's navigation pane. To find your available apps, search by app name or publisher.
5353

54+
>[!NOTE]
55+
>You can select and install multiple apps in bulk. From the **Apps** tab of the Company Portal for Windows, select the multi-select view button on the top right corner of the page. Then, select the checkbox next to each app and select the **Install Selected** button to start installation. All selected apps will install at the same time without requiring you to right-click each app or navigate to each app's page.
56+
5457
3. Select an app.
5558
4. On the apps details page, click **Install**. After installation is done, you'll see an **Installed** status.
5659

windows-365/enterprise/privacy-personal-data.md

Lines changed: 2 additions & 2 deletions
Original file line numberDiff line numberDiff line change
@@ -7,7 +7,7 @@ keywords:
77
author: ErikjeMS
88
ms.author: erikje
99
manager: dougeby
10-
ms.date: 08/24/2021
10+
ms.date: 08/03/2022
1111
ms.topic: conceptual
1212
ms.service: cloudpc
1313
ms.subservice:
@@ -60,7 +60,7 @@ For more information on where your data is located, see:
6060

6161
Windows 365 treats both the Cloud PC disk and the data on the VM itself as customer content.
6262

63-
When a user is removed from Windows 365, Windows 365 keeps non-alert personal data for a maximum of 90 days. In passive scenarios, data is kept for a minimum of 90 days and a maximum of 180 days. For security purposes, alert data collected by Microsoft Defender for Endpoint is stored for [180 days if the customer uses Microsoft Defender for Endpoint](/microsoft-365/security/defender-endpoint/data-storage-privacy#what-data-does-microsoft-defender-atp-collect).
63+
When a user is removed from Windows 365, Windows 365 keeps non-alert personal data for a maximum of 90 days. In passive scenarios, data is kept for a minimum of 90 days and a maximum of 180 days. To access customer data saved in a passive scenario, contact support. For security purposes, alert data collected by Microsoft Defender for Endpoint is stored for [180 days if the customer uses Microsoft Defender for Endpoint](/microsoft-365/security/defender-endpoint/data-storage-privacy#what-data-does-microsoft-defender-atp-collect).
6464

6565
For more information on data retention, see [Data retention, deletion, and destruction in Microsoft 365](/compliance/assurance/assurance-data-retention-deletion-and-destruction-overview).
6666

0 commit comments

Comments
 (0)