Atea ems roadshow - windows 10 management i en cloud first world

Post on 12-Apr-2017

313 views 1 download

Transcript of Atea ems roadshow - windows 10 management i en cloud first world

Windows 10 | Do great things.

How to get around Windows 10 management in a cloud only world.

Per LarsenSeniorkonsulent | per.larsen@atea.dk | m: +45 3078 1828 | f: +45 7025 2575in: http://www.linkedin.com/in/perlarsen1975 | t: @PerLarsen1975

•How to auto enroll Windows 10 into Microsoft Intune with Azure AD join (Experience with coexistence of MDM authority)•Azure AD join – what is two-step verification/Microsoft Passport

AgendaHow to get around Windows 10 management in a cloud only world.

•Microsoft Intune and MDM joined devices• Limitations• Software Deployment• What are OMA-URI, policy CSP and how to use OMA-URI for configuration.

•Windows Store for Business

AgendaHow to get around Windows 10 management in a cloud only world.

Devices | Windows 10 | Cloud

Why Azure AD Join and MDM enrollment

Exchange ActiveSync

Mobile Device Management via OMA-DM

Enterprise Management

Governance

Full Control

Device Desktop

Device Screen

The strategy

•Requirements• Azure AD Premium

• Settings in Azure AD• AzureAD Maximum number of devices per user = 20

• Intune Maximum number of devices per user = 5

How to auto enroll Windows 10 into Microsoft Intune with Azure AD join

• Intune - Custom URI settings for Windows 10 devices• Experience/AllowManualMDMUnenrollment

•How to AzureAD Join a Windows 10 device• Demo

• Experience with coexistence of MDM authority

How to auto enroll Windows 10 into Microsoft Intune with Azure AD join

Azure Active Directory Join – Windows 10 only features

Free/basic Premium

Join a device to Azure AD, Desktop SSO, Microsoft Passport for Azure AD, Administrator Bitlocker recovery

MDM auto-enrolment, Self-Service Bitlocker recovery, Additional local administrators to Windows 10 devices via Azure AD Join, Enterprise State Roaming

•What is Microsoft Passport• Microsoft Passport is set up on the user's device

• The user sets a gesture, which can be Windows Hello or a PIN

Azure AD join – what is two-step verification/Microsoft Passport

•Requirements for Microsoft Passport• Initial two-step verification during Microsoft Passport enrollment

• How to disable or configure Microsoft Passport (Intune)

Azure AD join – what is two-step verification/Microsoft Passport

How to disable or configure Microsoft Passport

Microsoft Intune and MDM joined devicesLimitations

Intune Client MDM

Software Deployment

Software Update

Endpoint Protection

Microsoft Intune and MDM joined devicesLimitations

Intune Client MDM

Inventory

Policy

What are OMA-URI, policy CSP and how to use OMA-URI for configuration.• Open Mobile Alliance Device Management (OMA DM) and OMA

Client ProvisioningPolicy CSPhttps://msdn.microsoft.com/en-us/library/windows/hardware/dn904962(v=vs.85).aspx

Custom URI settings for Windows 10 deviceshttps://technet.microsoft.com/en-us/library/mt126215.aspx

Demo

InventorySoftware

Deployment

Policy

Windows Store for Business

•Release Notes page• http://windows.microsoft.com/en-us/windows-10/update-history-windows-10

•Release Information page • http://aka.ms/win10releaseinfo

New Windows as a Service information published

Usefull links• Office 365 Portal

• https://portal.office.com

• AzureAD Portal• https://manage.windowsazure.com

• Intune Admin portal• https://manage.microsoft.com

• Intune User portal• https://portal.manage.microsoft.com

• Windows Store for Business• https://businessstore.microsoft.com

© 2015 Atea A/S. All rights reserved.This presentation is for informational purposes only. Atea A/S makes no warranties, express or implied, in this summary.

Thank you