You signed in with another tab or window. Reload to refresh your session.You signed out in another tab or window. Reload to refresh your session.You switched accounts on another tab or window. Reload to refresh your session.Dismiss alert
Copy file name to clipboardExpand all lines: memdocs/autopilot/windows-autopilot-whats-new.md
+9-9Lines changed: 9 additions & 9 deletions
Display the source diff
Display the rich diff
Original file line number
Diff line number
Diff line change
@@ -8,7 +8,7 @@ author: aczechowski
8
8
ms.author: aaroncz
9
9
manager: dougeby
10
10
ms.reviewer: jubaptis
11
-
ms.date: 05/18/2022
11
+
ms.date: 08/02/2022
12
12
ms.collection:
13
13
- M365-modern-desktop
14
14
- highpri
@@ -17,14 +17,14 @@ ms.topic: article
17
17
18
18
# Windows Autopilot: What's new
19
19
20
-
_Applies to_
20
+
## Update Intune Connector for Active Directory for Hybrid Azure AD joined devices
21
+
<!-- 2209 -->
21
22
22
-
- Windows 11
23
-
- Windows 10
24
-
- Windows Holographic, version 2004
23
+
Starting in September 2022, the Intune Connector for Active Directory (ODJ connector) will require .NET Framework version 4.7.2 or later. If you're not already using .NET 4.7.2 or later, the Intune Connector may not work for Autopilot hybrid Azure AD deployments and will result in failures. When you install a new Intune Connector, don't use the connector installation package that was previously downloaded. Download a new version from the **Intune Connector for Active Directory** section of the Microsoft Endpoint Manager admin center. If you're not using the latest version, it may continue to work, but the auto-upgrade feature to provide updates to the Intune Connector won't work.
25
24
26
25
## Enroll to co-management from Windows Autopilot
27
26
<!-- 11300628 -->
27
+
<!-- 2205 -->
28
28
29
29
With the Intune 2205 release, you can configure device enrollment in Intune to enable [co-management](../configmgr/comanage/overview.md), which happens during the Autopilot process. This behavior directs the workload authority in an orchestrated manner between Configuration Manager and Intune.
30
30
@@ -33,6 +33,7 @@ If the device is targeted with an [Autopilot enrollment status page (ESP) policy
33
33
For more information, see [How to enroll to co-management with Autopilot](../configmgr/comanage/autopilot-enrollment.md).
34
34
35
35
## Improvements to the enrollment status page
36
+
<!-- 2202 -->
36
37
37
38
With the Intune 2202 release, the [enrollment status page](enrollment-status.md) has improved functionality. The application picker for selecting blocking apps has the following improvements:
38
39
@@ -47,18 +48,21 @@ With the Intune 2202 release, the [enrollment status page](enrollment-status.md)
47
48
Autopilot agility is a new feature that allows updates and bug fixes to the OOBE experience. These updates occur before device enrollment, and after the Azure Active Directory (Azure AD) sign in page. It may result in another reboot and authentication prompt to the user. This feature is rolling out to Windows 10 1909 and 2004/20H2 with August cumulative update and isn't yet available for Windows 11.
48
49
49
50
## One-time self-deployment and pre-provisioning
51
+
<!-- 2110 -->
50
52
51
53
We made a change to the Windows Autopilot self-deployment mode and pre-provisioning mode experience, adding in a step to delete the device record as part of the device reuse process. This change impacts all Windows Autopilot deployments where the Autopilot profile is set to self-deployment or pre-provisioning mode. This change only affects a device when it's reused or reset, and it attempts to redeploy.
52
54
53
55
For more information, see [Updates to the Windows Autopilot sign-in and deployment experience](https://techcommunity.microsoft.com/t5/intune-customer-success/updates-to-the-windows-autopilot-sign-in-and-deployment/ba-p/2848452)
54
56
55
57
## Update to the Windows Autopilot sign-in experience
58
+
<!-- 2110 -->
56
59
57
60
Users must enter their credentials at initial sign-in during enrollment. We no longer allow pre-population of the Azure Active Directory (Azure AD) user principal name (UPN).
58
61
59
62
For more information, see [Updates to the Windows Autopilot sign-in and deployment experience](https://techcommunity.microsoft.com/t5/intune-customer-success/updates-to-the-windows-autopilot-sign-in-and-deployment/ba-p/2848452)
60
63
61
64
## MFA changes to Windows Autopilot enrollment flow
65
+
<!-- 2109 -->
62
66
63
67
To improve the baseline security for Azure Active Directory (Azure AD), we changed Azure AD behavior for multi-factor authentication (MFA) during device registration. Previously, if a user completed MFA as part of their device registration, the MFA claim was carried over to the user state after registration was complete.
64
68
@@ -78,10 +82,6 @@ To enable the diagnostics page, go to the [ESP profile](../intune/enrollment/win
78
82
79
83
The diagnostics page is currently supported for commercial OOBE, and Autopilot user-driven mode. It's currently available on Windows 11. Windows 10 users can still collect and export diagnostic logs when this setting is enabled in Intune.
80
84
81
-
## Windows Autopilot for HoloLens 2
82
-
83
-
Windows Autopilot now enables you to configure HoloLens 2 devices. For more information, see [Windows Autopilot for HoloLens 2](/hololens/hololens2-autopilot).
84
-
85
85
## Next steps
86
86
87
87
[What's new in Microsoft Intune](../intune/fundamentals/whats-new.md)
Copy file name to clipboardExpand all lines: memdocs/intune/protect/compliance-use-custom-settings.md
+3Lines changed: 3 additions & 0 deletions
Display the source diff
Display the rich diff
Original file line number
Diff line number
Diff line change
@@ -88,6 +88,9 @@ During the workflow to create a compliance policy:
88
88
89
89
5. Complete the compliance policy creation task and assign the policy to devices.
90
90
91
+
> [!NOTE]
92
+
> Assignment filters are not currently supported when assigning compliance policies with custom compliance settings.
93
+
91
94
> [!NOTE]
92
95
> When a Windows device receives a compliance policy with custom settings, it checks for the presence of [Intune Management Extensions](../apps/intune-management-extension.md). If not found, the device runs an MSI that installs the extensions, enabling the client to download and run PowerShell scripts that are part of a compliance policy, and to upload compliance results. Actions managed by the services include:
Copy file name to clipboardExpand all lines: memdocs/intune/user-help/install-apps-cpapp-windows.md
+3Lines changed: 3 additions & 0 deletions
Display the source diff
Display the rich diff
Original file line number
Diff line number
Diff line change
@@ -51,6 +51,9 @@ Install apps on your device from the Company Portal app for Windows.
51
51
***App categories**: Select this page in the navigation pane to choose apps based on type or function. Apps are sorted under categories such as **Featured**, **Education**, and **Productivity**.
52
52
***Search for apps**: A static search bar sits in the app's navigation pane. To find your available apps, search by app name or publisher.
53
53
54
+
>[!NOTE]
55
+
>You can select and install multiple apps in bulk. From the **Apps** tab of the Company Portal for Windows, select the multi-select view button on the top right corner of the page. Then, select the checkbox next to each app and select the **Install Selected** button to start installation. All selected apps will install at the same time without requiring you to right-click each app or navigate to each app's page.
56
+
54
57
3. Select an app.
55
58
4. On the apps details page, click **Install**. After installation is done, you'll see an **Installed** status.
Copy file name to clipboardExpand all lines: windows-365/enterprise/privacy-personal-data.md
+2-2Lines changed: 2 additions & 2 deletions
Display the source diff
Display the rich diff
Original file line number
Diff line number
Diff line change
@@ -7,7 +7,7 @@ keywords:
7
7
author: ErikjeMS
8
8
ms.author: erikje
9
9
manager: dougeby
10
-
ms.date: 08/24/2021
10
+
ms.date: 08/03/2022
11
11
ms.topic: conceptual
12
12
ms.service: cloudpc
13
13
ms.subservice:
@@ -60,7 +60,7 @@ For more information on where your data is located, see:
60
60
61
61
Windows 365 treats both the Cloud PC disk and the data on the VM itself as customer content.
62
62
63
-
When a user is removed from Windows 365, Windows 365 keeps non-alert personal data for a maximum of 90 days. In passive scenarios, data is kept for a minimum of 90 days and a maximum of 180 days. For security purposes, alert data collected by Microsoft Defender for Endpoint is stored for [180 days if the customer uses Microsoft Defender for Endpoint](/microsoft-365/security/defender-endpoint/data-storage-privacy#what-data-does-microsoft-defender-atp-collect).
63
+
When a user is removed from Windows 365, Windows 365 keeps non-alert personal data for a maximum of 90 days. In passive scenarios, data is kept for a minimum of 90 days and a maximum of 180 days. To access customer data saved in a passive scenario, contact support. For security purposes, alert data collected by Microsoft Defender for Endpoint is stored for [180 days if the customer uses Microsoft Defender for Endpoint](/microsoft-365/security/defender-endpoint/data-storage-privacy#what-data-does-microsoft-defender-atp-collect).
64
64
65
65
For more information on data retention, see [Data retention, deletion, and destruction in Microsoft 365](/compliance/assurance/assurance-data-retention-deletion-and-destruction-overview).
0 commit comments