<?xml version="1.0"?>
<feed xmlns="http://www.w3.org/2005/Atom" xml:lang="de">
	<id>https://wiki.lehmann.systems/api.php?action=feedcontributions&amp;feedformat=atom&amp;user=Rladmin</id>
	<title>lehmann.systems Wiki - Benutzerbeiträge [de]</title>
	<link rel="self" type="application/atom+xml" href="https://wiki.lehmann.systems/api.php?action=feedcontributions&amp;feedformat=atom&amp;user=Rladmin"/>
	<link rel="alternate" type="text/html" href="https://wiki.lehmann.systems/index.php?title=Spezial:Beitr%C3%A4ge/Rladmin"/>
	<updated>2026-06-02T16:20:36Z</updated>
	<subtitle>Benutzerbeiträge</subtitle>
	<generator>MediaWiki 1.31.1</generator>
	<entry>
		<id>https://wiki.lehmann.systems/index.php?title=Kategorie:MD-101&amp;diff=197</id>
		<title>Kategorie:MD-101</title>
		<link rel="alternate" type="text/html" href="https://wiki.lehmann.systems/index.php?title=Kategorie:MD-101&amp;diff=197"/>
		<updated>2019-11-08T06:54:33Z</updated>

		<summary type="html">&lt;p&gt;Rladmin: &lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;https://www.examtopics.com/exams/microsoft/md-101/view&lt;/div&gt;</summary>
		<author><name>Rladmin</name></author>
		
	</entry>
	<entry>
		<id>https://wiki.lehmann.systems/index.php?title=MD-101_Topic_2_answers&amp;diff=196</id>
		<title>MD-101 Topic 2 answers</title>
		<link rel="alternate" type="text/html" href="https://wiki.lehmann.systems/index.php?title=MD-101_Topic_2_answers&amp;diff=196"/>
		<updated>2019-11-08T06:44:06Z</updated>

		<summary type="html">&lt;p&gt;Rladmin: &lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;Requirement: Block users from browsing to suspicious websites and scan all scripts loaded into Microsoft Edge for computers are joined to Microsoft Azure Active Directory (Azure AD) and enrolled in Microsoft Intune. Device restiction settings:&lt;br /&gt;
* Windows Defender SmartScreen&lt;br /&gt;
* Windows Defender Antivirus&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
You need to configure the policy to prevent access to Exchange Online unless is connecting from a device that is hybrid Azure AD-joined.&lt;br /&gt;
* Device state &lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
Windows 8.1, Windows 10, or macOS devices; Intune profile for Hello for Business&lt;br /&gt;
* Platform type: win 10 +&lt;br /&gt;
* Profile type: Endpoint protection&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
taget Intune policies to devices based on their version of Android or iOS&lt;br /&gt;
* Device settings in Microsoft Azure Active Directory (Azure AD)&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
Windows 10 Pro to Enterprise. Config in Intune?&lt;br /&gt;
* device config profile&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
profile type for device configuration profile in Microsoft Intune with ADMX-backed policy?&lt;br /&gt;
* custom&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
configure the computers to use Delivery Optimization&lt;br /&gt;
* create an device config profile in intune&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
included in known folder redirection&lt;br /&gt;
* desktop&lt;br /&gt;
* documents&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
[[Category:MD-101]]&lt;/div&gt;</summary>
		<author><name>Rladmin</name></author>
		
	</entry>
	<entry>
		<id>https://wiki.lehmann.systems/index.php?title=MD-101_Topic_2_answers&amp;diff=195</id>
		<title>MD-101 Topic 2 answers</title>
		<link rel="alternate" type="text/html" href="https://wiki.lehmann.systems/index.php?title=MD-101_Topic_2_answers&amp;diff=195"/>
		<updated>2019-11-08T06:12:45Z</updated>

		<summary type="html">&lt;p&gt;Rladmin: &lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;Requirement: Block users from browsing to suspicious websites and scan all scripts loaded into Microsoft Edge for computers are joined to Microsoft Azure Active Directory (Azure AD) and enrolled in Microsoft Intune. Device restiction settings:&lt;br /&gt;
* Windows Defender SmartScreen&lt;br /&gt;
* Windows Defender Antivirus&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
You need to configure the policy to prevent access to Exchange Online unless is connecting from a device that is hybrid Azure AD-joined.&lt;br /&gt;
* Device state &lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
Windows 8.1, Windows 10, or macOS devices; Intune profile for Hello for Business&lt;br /&gt;
* Platform type: win 10 +&lt;br /&gt;
* Profile type: Endpoint protection&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
taget Intune policies to devices based on their version of Android or iOS&lt;br /&gt;
* Device settings in Microsoft Azure Active Directory (Azure AD)&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
Windows 10 Pro to Enterprise. Config in Intune?&lt;br /&gt;
* device config profile&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
[[Category:MD-101]]&lt;/div&gt;</summary>
		<author><name>Rladmin</name></author>
		
	</entry>
	<entry>
		<id>https://wiki.lehmann.systems/index.php?title=MD-101_Topic_2_answers&amp;diff=194</id>
		<title>MD-101 Topic 2 answers</title>
		<link rel="alternate" type="text/html" href="https://wiki.lehmann.systems/index.php?title=MD-101_Topic_2_answers&amp;diff=194"/>
		<updated>2019-11-08T05:50:42Z</updated>

		<summary type="html">&lt;p&gt;Rladmin: Die Seite wurde neu angelegt: „  Category:MD-101“&lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;&lt;br /&gt;
&lt;br /&gt;
[[Category:MD-101]]&lt;/div&gt;</summary>
		<author><name>Rladmin</name></author>
		
	</entry>
	<entry>
		<id>https://wiki.lehmann.systems/index.php?title=MD-101_Topic_1_answers&amp;diff=193</id>
		<title>MD-101 Topic 1 answers</title>
		<link rel="alternate" type="text/html" href="https://wiki.lehmann.systems/index.php?title=MD-101_Topic_1_answers&amp;diff=193"/>
		<updated>2019-11-08T05:49:51Z</updated>

		<summary type="html">&lt;p&gt;Rladmin: Rladmin verschob die Seite MD-101 answers nach MD-101 Topic 1 answers, ohne dabei eine Weiterleitung anzulegen&lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;review the serivicng status of computers which servicing channel is manged by intune:&lt;br /&gt;
* software updates -&amp;gt; Per update ring deployment state&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
User should be promted to set the system language and to accept the license aggreement for windows.&lt;br /&gt;
* - Autopilot remote reset&lt;br /&gt;
* X Autopilot user-driven deployment profile&lt;br /&gt;
* - AutoPilot self-deploying deployment profile&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
feature and quality updates have to be installed automatically during a maintenance window&lt;br /&gt;
* X From the Maintenance Scheduler settings, you configure Automatic Maintenance Random Delay&lt;br /&gt;
* - Windows Update settings, you enable Configure Automatic Updates, select 4-Auto download and schedule the install, and then enter a time.&lt;br /&gt;
* - From the Maintenance Scheduler settings, you configure Automatic Maintenance Activation Boundary.&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
redeploy previously used computer with autopilot&lt;br /&gt;
# generate csv with computer infos&lt;br /&gt;
# upload with store for business&lt;br /&gt;
# reset the computer&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
Secure Boot requirements&lt;br /&gt;
* GPT disk (not MBR disk)&lt;br /&gt;
* UEFI&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
implement hybrid Microsoft Azure Active Directory (Azure AD) and Microsoft Intune in AD doain with many computers&lt;br /&gt;
* use Windows AutoPilot deployment profile&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
Windows AutoPilot Reset effects on seting done by the user&lt;br /&gt;
* wifi connections and passphrases ratained&lt;br /&gt;
* Apps from the windows store and vpn connection removed&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
Intune action options to reset computers to the latest windows 10 enterprise&lt;br /&gt;
* fresh start action for windows 10 enterprise (latest feature update not a prerequisite)&lt;br /&gt;
* wipe action for windows 10 and 8.1 enterprise&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
enable self-service password reset in intune device config&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
prevent the video drivers from being updated automatically by using Windows Update for business&lt;br /&gt;
* - Device Installation and Restrictions settings in a Group Policy object (GPO), enable Prevent installation of devices using drivers that match these device setup classes, and then you enter the device GUID&lt;br /&gt;
* - settings app - clear Give me updates for other Microsoft products when I update Windows check box&lt;br /&gt;
* X From the Device Installation settings in a Group Policy object (GPO), you enable Specify search order for device driver source locations, and then you select Do not search Windows Update.&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
20 computers run Windows 10, are joined to Microsoft Azure Active Directory (Azure AD) and should be replaced. desktop background, the favorites, and the browsing history have to be migrated&lt;br /&gt;
* X Enterprise State Roaming&lt;br /&gt;
* - roaming user profiles&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
new computer named Computer1 that runs Windows 10 and is in a workgroup has to monitored by Log Analytics in an Azure Log Analytics workspace&lt;br /&gt;
* Install the Microsoft Monitoring Agent&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
deploy computers by MDT and WDS. ensure correct product key?&lt;br /&gt;
* an MDT task sequence&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
run a post script after a Windows 10 feature upgrade&lt;br /&gt;
* modify SetupConfig.ini on computer&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
filter Upgrade Readiness solution in Microsoft Azure for applications that can run in win 10&lt;br /&gt;
* filter column: UpgradeDecision&lt;br /&gt;
* filter value: Ready to Upgrade&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
Your company standardizes on Windows 10 Enterprise for all users.&lt;br /&gt;
Some users purchase their own computer from a retail store. The computers run Windows 10 Pro.&lt;br /&gt;
You need to recommend a solution to upgrade the computers to Windows 10 Enterprise, join the computers to Microsoft Azure Active Directory (Azure AD), and install several Microsoft Store apps. The solution must meet the following requirements:&lt;br /&gt;
* Ensure that any applications installed by the users are retained.&lt;br /&gt;
* Minimize user intervention.&lt;br /&gt;
You use Windows Configuration Designer to create a provisioning package (.ppkg) that contains customization settings. You can apply the provisioning package to a device running Windows 10.&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
Incorrect Answers:&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
A: Microsoft Deployment Toolkit (MDT) allows you to automate the deployment of Windows operating systems in your organization. It is not used to upgrade to&lt;br /&gt;
Windows 10 Enterprise.&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
B: Windows Deployment Services (WDS) is the revised version of Remote Installation Services (RIS). WDS enables the deployment of Windows operating systems. You can use it to set up new computers using network-based installations. It is not used to upgrade to Windows 10 Enterprise.&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
D: Windows Autopilot is a user-driven mode designed to minimize intervention of the IT administrator.&lt;br /&gt;
References:&lt;br /&gt;
&amp;lt;br&amp;gt;&amp;lt;br&amp;gt;&lt;br /&gt;
How many days do you have to roll back the update in Windows 10?&lt;br /&gt;
* 10 since 1607&lt;br /&gt;
* before 30&lt;br /&gt;
[[Category:MD-101]]&lt;/div&gt;</summary>
		<author><name>Rladmin</name></author>
		
	</entry>
	<entry>
		<id>https://wiki.lehmann.systems/index.php?title=MD-101_Topic_1_answers&amp;diff=192</id>
		<title>MD-101 Topic 1 answers</title>
		<link rel="alternate" type="text/html" href="https://wiki.lehmann.systems/index.php?title=MD-101_Topic_1_answers&amp;diff=192"/>
		<updated>2019-11-08T05:42:30Z</updated>

		<summary type="html">&lt;p&gt;Rladmin: &lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;review the serivicng status of computers which servicing channel is manged by intune:&lt;br /&gt;
* software updates -&amp;gt; Per update ring deployment state&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
User should be promted to set the system language and to accept the license aggreement for windows.&lt;br /&gt;
* - Autopilot remote reset&lt;br /&gt;
* X Autopilot user-driven deployment profile&lt;br /&gt;
* - AutoPilot self-deploying deployment profile&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
feature and quality updates have to be installed automatically during a maintenance window&lt;br /&gt;
* X From the Maintenance Scheduler settings, you configure Automatic Maintenance Random Delay&lt;br /&gt;
* - Windows Update settings, you enable Configure Automatic Updates, select 4-Auto download and schedule the install, and then enter a time.&lt;br /&gt;
* - From the Maintenance Scheduler settings, you configure Automatic Maintenance Activation Boundary.&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
redeploy previously used computer with autopilot&lt;br /&gt;
# generate csv with computer infos&lt;br /&gt;
# upload with store for business&lt;br /&gt;
# reset the computer&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
Secure Boot requirements&lt;br /&gt;
* GPT disk (not MBR disk)&lt;br /&gt;
* UEFI&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
implement hybrid Microsoft Azure Active Directory (Azure AD) and Microsoft Intune in AD doain with many computers&lt;br /&gt;
* use Windows AutoPilot deployment profile&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
Windows AutoPilot Reset effects on seting done by the user&lt;br /&gt;
* wifi connections and passphrases ratained&lt;br /&gt;
* Apps from the windows store and vpn connection removed&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
Intune action options to reset computers to the latest windows 10 enterprise&lt;br /&gt;
* fresh start action for windows 10 enterprise (latest feature update not a prerequisite)&lt;br /&gt;
* wipe action for windows 10 and 8.1 enterprise&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
enable self-service password reset in intune device config&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
prevent the video drivers from being updated automatically by using Windows Update for business&lt;br /&gt;
* - Device Installation and Restrictions settings in a Group Policy object (GPO), enable Prevent installation of devices using drivers that match these device setup classes, and then you enter the device GUID&lt;br /&gt;
* - settings app - clear Give me updates for other Microsoft products when I update Windows check box&lt;br /&gt;
* X From the Device Installation settings in a Group Policy object (GPO), you enable Specify search order for device driver source locations, and then you select Do not search Windows Update.&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
20 computers run Windows 10, are joined to Microsoft Azure Active Directory (Azure AD) and should be replaced. desktop background, the favorites, and the browsing history have to be migrated&lt;br /&gt;
* X Enterprise State Roaming&lt;br /&gt;
* - roaming user profiles&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
new computer named Computer1 that runs Windows 10 and is in a workgroup has to monitored by Log Analytics in an Azure Log Analytics workspace&lt;br /&gt;
* Install the Microsoft Monitoring Agent&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
deploy computers by MDT and WDS. ensure correct product key?&lt;br /&gt;
* an MDT task sequence&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
run a post script after a Windows 10 feature upgrade&lt;br /&gt;
* modify SetupConfig.ini on computer&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
filter Upgrade Readiness solution in Microsoft Azure for applications that can run in win 10&lt;br /&gt;
* filter column: UpgradeDecision&lt;br /&gt;
* filter value: Ready to Upgrade&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
Your company standardizes on Windows 10 Enterprise for all users.&lt;br /&gt;
Some users purchase their own computer from a retail store. The computers run Windows 10 Pro.&lt;br /&gt;
You need to recommend a solution to upgrade the computers to Windows 10 Enterprise, join the computers to Microsoft Azure Active Directory (Azure AD), and install several Microsoft Store apps. The solution must meet the following requirements:&lt;br /&gt;
* Ensure that any applications installed by the users are retained.&lt;br /&gt;
* Minimize user intervention.&lt;br /&gt;
You use Windows Configuration Designer to create a provisioning package (.ppkg) that contains customization settings. You can apply the provisioning package to a device running Windows 10.&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
Incorrect Answers:&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
A: Microsoft Deployment Toolkit (MDT) allows you to automate the deployment of Windows operating systems in your organization. It is not used to upgrade to&lt;br /&gt;
Windows 10 Enterprise.&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
B: Windows Deployment Services (WDS) is the revised version of Remote Installation Services (RIS). WDS enables the deployment of Windows operating systems. You can use it to set up new computers using network-based installations. It is not used to upgrade to Windows 10 Enterprise.&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
D: Windows Autopilot is a user-driven mode designed to minimize intervention of the IT administrator.&lt;br /&gt;
References:&lt;br /&gt;
&amp;lt;br&amp;gt;&amp;lt;br&amp;gt;&lt;br /&gt;
How many days do you have to roll back the update in Windows 10?&lt;br /&gt;
* 10 since 1607&lt;br /&gt;
* before 30&lt;br /&gt;
[[Category:MD-101]]&lt;/div&gt;</summary>
		<author><name>Rladmin</name></author>
		
	</entry>
	<entry>
		<id>https://wiki.lehmann.systems/index.php?title=MD-101_Topic_1_answers&amp;diff=191</id>
		<title>MD-101 Topic 1 answers</title>
		<link rel="alternate" type="text/html" href="https://wiki.lehmann.systems/index.php?title=MD-101_Topic_1_answers&amp;diff=191"/>
		<updated>2019-11-08T05:42:06Z</updated>

		<summary type="html">&lt;p&gt;Rladmin: &lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;review the serivicng status of computers which servicing channel is manged by intune:&lt;br /&gt;
* software updates -&amp;gt; Per update ring deployment state&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
User should be promted to set the system language and to accept the license aggreement for windows.&lt;br /&gt;
* - Autopilot remote reset&lt;br /&gt;
* X Autopilot user-driven deployment profile&lt;br /&gt;
* - AutoPilot self-deploying deployment profile&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
feature and quality updates have to be installed automatically during a maintenance window&lt;br /&gt;
* X From the Maintenance Scheduler settings, you configure Automatic Maintenance Random Delay&lt;br /&gt;
* - Windows Update settings, you enable Configure Automatic Updates, select 4-Auto download and schedule the install, and then enter a time.&lt;br /&gt;
* - From the Maintenance Scheduler settings, you configure Automatic Maintenance Activation Boundary.&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
redeploy previously used computer with autopilot&lt;br /&gt;
# generate csv with computer infos&lt;br /&gt;
# upload with store for business&lt;br /&gt;
# reset the computer&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
Secure Boot requirements&lt;br /&gt;
* GPT disk (not MBR disk)&lt;br /&gt;
* UEFI&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
implement hybrid Microsoft Azure Active Directory (Azure AD) and Microsoft Intune in AD doain with many computers&lt;br /&gt;
* use Windows AutoPilot deployment profile&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
Windows AutoPilot Reset effects on seting done by the user&lt;br /&gt;
* wifi connections and passphrases ratained&lt;br /&gt;
* Apps from the windows store and vpn connection removed&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
Intune action options to reset computers to the latest windows 10 enterprise&lt;br /&gt;
* fresh start action for windows 10 enterprise (latest feature update not a prerequisite)&lt;br /&gt;
* wipe action for windows 10 and 8.1 enterprise&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
enable self-service password reset in intune device config&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
prevent the video drivers from being updated automatically by using Windows Update for business&lt;br /&gt;
* - Device Installation and Restrictions settings in a Group Policy object (GPO), enable Prevent installation of devices using drivers that match these device setup classes, and then you enter the device GUID&lt;br /&gt;
* - settings app - clear Give me updates for other Microsoft products when I update Windows check box&lt;br /&gt;
* X From the Device Installation settings in a Group Policy object (GPO), you enable Specify search order for device driver source locations, and then you select Do not search Windows Update.&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
20 computers run Windows 10, are joined to Microsoft Azure Active Directory (Azure AD) and should be replaced. desktop background, the favorites, and the browsing history have to be migrated&lt;br /&gt;
* X Enterprise State Roaming&lt;br /&gt;
* - roaming user profiles&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
new computer named Computer1 that runs Windows 10 and is in a workgroup has to monitored by Log Analytics in an Azure Log Analytics workspace&lt;br /&gt;
* Install the Microsoft Monitoring Agent&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
deploy computers by MDT and WDS. ensure correct product key?&lt;br /&gt;
* an MDT task sequence&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
run a post script after a Windows 10 feature upgrade&lt;br /&gt;
* modify SetupConfig.ini on computer&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
filter Upgrade Readiness solution in Microsoft Azure for applications that can run in win 10&lt;br /&gt;
* filter column: UpgradeDecision&lt;br /&gt;
* filter value: Ready to Upgrade&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
Your company standardizes on Windows 10 Enterprise for all users.&lt;br /&gt;
Some users purchase their own computer from a retail store. The computers run Windows 10 Pro.&lt;br /&gt;
You need to recommend a solution to upgrade the computers to Windows 10 Enterprise, join the computers to Microsoft Azure Active Directory (Azure AD), and install several Microsoft Store apps. The solution must meet the following requirements:&lt;br /&gt;
* Ensure that any applications installed by the users are retained.&lt;br /&gt;
* Minimize user intervention.&lt;br /&gt;
You use Windows Configuration Designer to create a provisioning package (.ppkg) that contains customization settings. You can apply the provisioning package to a device running Windows 10.&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
Incorrect Answers:&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
A: Microsoft Deployment Toolkit (MDT) allows you to automate the deployment of Windows operating systems in your organization. It is not used to upgrade to&lt;br /&gt;
Windows 10 Enterprise.&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
B: Windows Deployment Services (WDS) is the revised version of Remote Installation Services (RIS). WDS enables the deployment of Windows operating systems. You can use it to set up new computers using network-based installations. It is not used to upgrade to Windows 10 Enterprise.&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
D: Windows Autopilot is a user-driven mode designed to minimize intervention of the IT administrator.&lt;br /&gt;
References:&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
How many days do you have to roll back the update in Windows 10?&lt;br /&gt;
* 10 since 1607&lt;br /&gt;
* before 30&lt;br /&gt;
[[Category:MD-101]]&lt;/div&gt;</summary>
		<author><name>Rladmin</name></author>
		
	</entry>
	<entry>
		<id>https://wiki.lehmann.systems/index.php?title=MD-101_Topic_1_answers&amp;diff=190</id>
		<title>MD-101 Topic 1 answers</title>
		<link rel="alternate" type="text/html" href="https://wiki.lehmann.systems/index.php?title=MD-101_Topic_1_answers&amp;diff=190"/>
		<updated>2019-11-08T05:40:04Z</updated>

		<summary type="html">&lt;p&gt;Rladmin: &lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;review the serivicng status of computers which servicing channel is manged by intune:&lt;br /&gt;
* software updates -&amp;gt; Per update ring deployment state&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
User should be promted to set the system language and to accept the license aggreement for windows.&lt;br /&gt;
* - Autopilot remote reset&lt;br /&gt;
* X Autopilot user-driven deployment profile&lt;br /&gt;
* - AutoPilot self-deploying deployment profile&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
feature and quality updates have to be installed automatically during a maintenance window&lt;br /&gt;
* X From the Maintenance Scheduler settings, you configure Automatic Maintenance Random Delay&lt;br /&gt;
* - Windows Update settings, you enable Configure Automatic Updates, select 4-Auto download and schedule the install, and then enter a time.&lt;br /&gt;
* - From the Maintenance Scheduler settings, you configure Automatic Maintenance Activation Boundary.&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
redeploy previously used computer with autopilot&lt;br /&gt;
# generate csv with computer infos&lt;br /&gt;
# upload with store for business&lt;br /&gt;
# reset the computer&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
Secure Boot requirements&lt;br /&gt;
* GPT disk (not MBR disk)&lt;br /&gt;
* UEFI&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
implement hybrid Microsoft Azure Active Directory (Azure AD) and Microsoft Intune in AD doain with many computers&lt;br /&gt;
* use Windows AutoPilot deployment profile&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
Windows AutoPilot Reset effects on seting done by the user&lt;br /&gt;
* wifi connections and passphrases ratained&lt;br /&gt;
* Apps from the windows store and vpn connection removed&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
Intune action options to reset computers to the latest windows 10 enterprise&lt;br /&gt;
* fresh start action for windows 10 enterprise (latest feature update not a prerequisite)&lt;br /&gt;
* wipe action for windows 10 and 8.1 enterprise&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
enable self-service password reset in intune device config&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
prevent the video drivers from being updated automatically by using Windows Update for business&lt;br /&gt;
* - Device Installation and Restrictions settings in a Group Policy object (GPO), enable Prevent installation of devices using drivers that match these device setup classes, and then you enter the device GUID&lt;br /&gt;
* - settings app - clear Give me updates for other Microsoft products when I update Windows check box&lt;br /&gt;
* X From the Device Installation settings in a Group Policy object (GPO), you enable Specify search order for device driver source locations, and then you select Do not search Windows Update.&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
20 computers run Windows 10, are joined to Microsoft Azure Active Directory (Azure AD) and should be replaced. desktop background, the favorites, and the browsing history have to be migrated&lt;br /&gt;
* X Enterprise State Roaming&lt;br /&gt;
* - roaming user profiles&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
new computer named Computer1 that runs Windows 10 and is in a workgroup has to monitored by Log Analytics in an Azure Log Analytics workspace&lt;br /&gt;
* Install the Microsoft Monitoring Agent&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
deploy computers by MDT and WDS. ensure correct product key?&lt;br /&gt;
* an MDT task sequence&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
run a post script after a Windows 10 feature upgrade&lt;br /&gt;
* modify SetupConfig.ini on computer&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
filter Upgrade Readiness solution in Microsoft Azure for applications that can run in win 10&lt;br /&gt;
* filter column: UpgradeDecision&lt;br /&gt;
* filter value: Ready to Upgrade&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
Your company standardizes on Windows 10 Enterprise for all users.&lt;br /&gt;
Some users purchase their own computer from a retail store. The computers run Windows 10 Pro.&lt;br /&gt;
You need to recommend a solution to upgrade the computers to Windows 10 Enterprise, join the computers to Microsoft Azure Active Directory (Azure AD), and install several Microsoft Store apps. The solution must meet the following requirements:&lt;br /&gt;
* Ensure that any applications installed by the users are retained.&lt;br /&gt;
* Minimize user intervention.&lt;br /&gt;
You use Windows Configuration Designer to create a provisioning package (.ppkg) that contains customization settings. You can apply the provisioning package to a device running Windows 10.&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
Incorrect Answers:&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
A: Microsoft Deployment Toolkit (MDT) allows you to automate the deployment of Windows operating systems in your organization. It is not used to upgrade to&lt;br /&gt;
Windows 10 Enterprise.&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
B: Windows Deployment Services (WDS) is the revised version of Remote Installation Services (RIS). WDS enables the deployment of Windows operating systems. You can use it to set up new computers using network-based installations. It is not used to upgrade to Windows 10 Enterprise.&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
D: Windows Autopilot is a user-driven mode designed to minimize intervention of the IT administrator.&lt;br /&gt;
References:&lt;br /&gt;
&lt;br /&gt;
[[Category:MD-101]]&lt;/div&gt;</summary>
		<author><name>Rladmin</name></author>
		
	</entry>
	<entry>
		<id>https://wiki.lehmann.systems/index.php?title=MD-101_Topic_1_answers&amp;diff=189</id>
		<title>MD-101 Topic 1 answers</title>
		<link rel="alternate" type="text/html" href="https://wiki.lehmann.systems/index.php?title=MD-101_Topic_1_answers&amp;diff=189"/>
		<updated>2019-11-08T05:31:18Z</updated>

		<summary type="html">&lt;p&gt;Rladmin: &lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;review the serivicng status of computers which servicing channel is manged by intune:&lt;br /&gt;
* software updates -&amp;gt; Per update ring deployment state&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
User should be promted to set the system language and to accept the license aggreement for windows.&lt;br /&gt;
* - Autopilot remote reset&lt;br /&gt;
* X Autopilot user-driven deployment profile&lt;br /&gt;
* - AutoPilot self-deploying deployment profile&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
feature and quality updates have to be installed automatically during a maintenance window&lt;br /&gt;
* X From the Maintenance Scheduler settings, you configure Automatic Maintenance Random Delay&lt;br /&gt;
* - Windows Update settings, you enable Configure Automatic Updates, select 4-Auto download and schedule the install, and then enter a time.&lt;br /&gt;
* - From the Maintenance Scheduler settings, you configure Automatic Maintenance Activation Boundary.&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
redeploy previously used computer with autopilot&lt;br /&gt;
# generate csv with computer infos&lt;br /&gt;
# upload with store for business&lt;br /&gt;
# reset the computer&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
Secure Boot requirements&lt;br /&gt;
* GPT disk (not MBR disk)&lt;br /&gt;
* UEFI&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
implement hybrid Microsoft Azure Active Directory (Azure AD) and Microsoft Intune in AD doain with many computers&lt;br /&gt;
* use Windows AutoPilot deployment profile&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
Windows AutoPilot Reset effects on seting done by the user&lt;br /&gt;
* wifi connections and passphrases ratained&lt;br /&gt;
* Apps from the windows store and vpn connection removed&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
Intune action options to reset computers to the latest windows 10 enterprise&lt;br /&gt;
* fresh start action for windows 10 enterprise (latest feature update not a prerequisite)&lt;br /&gt;
* wipe action for windows 10 and 8.1 enterprise&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
enable self-service password reset in intune device config&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
prevent the video drivers from being updated automatically by using Windows Update for business&lt;br /&gt;
* - Device Installation and Restrictions settings in a Group Policy object (GPO), enable Prevent installation of devices using drivers that match these device setup classes, and then you enter the device GUID&lt;br /&gt;
* - settings app - clear Give me updates for other Microsoft products when I update Windows check box&lt;br /&gt;
* X From the Device Installation settings in a Group Policy object (GPO), you enable Specify search order for device driver source locations, and then you select Do not search Windows Update.&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
20 computers run Windows 10, are joined to Microsoft Azure Active Directory (Azure AD) and should be replaced. desktop background, the favorites, and the browsing history have to be migrated&lt;br /&gt;
* X Enterprise State Roaming&lt;br /&gt;
* - roaming user profiles&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
new computer named Computer1 that runs Windows 10 and is in a workgroup has to monitored by Log Analytics in an Azure Log Analytics workspace&lt;br /&gt;
* Install the Microsoft Monitoring Agent&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
deploy computers by MDT and WDS. ensure correct product key?&lt;br /&gt;
* an MDT task sequence&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
run a post script after a Windows 10 feature upgrade&lt;br /&gt;
* modify SetupConfig.ini on computer&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
filter Upgrade Readiness solution in Microsoft Azure for applications that can run in win 10&lt;br /&gt;
* filter column: UpgradeDecision&lt;br /&gt;
* filter value: Ready to Upgrade&lt;br /&gt;
&lt;br /&gt;
[[Category:MD-101]]&lt;/div&gt;</summary>
		<author><name>Rladmin</name></author>
		
	</entry>
	<entry>
		<id>https://wiki.lehmann.systems/index.php?title=MD-101_Topic_1_answers&amp;diff=188</id>
		<title>MD-101 Topic 1 answers</title>
		<link rel="alternate" type="text/html" href="https://wiki.lehmann.systems/index.php?title=MD-101_Topic_1_answers&amp;diff=188"/>
		<updated>2019-11-08T05:14:40Z</updated>

		<summary type="html">&lt;p&gt;Rladmin: &lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;review the serivicng status of computers which servicing channel is manged by intune:&lt;br /&gt;
* software updates -&amp;gt; Per update ring deployment state&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
User should be promted to set the system language and to accept the license aggreement for windows.&lt;br /&gt;
* - Autopilot remote reset&lt;br /&gt;
* X Autopilot user-driven deployment profile&lt;br /&gt;
* - AutoPilot self-deploying deployment profile&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
feature and quality updates have to be installed automatically during a maintenance window&lt;br /&gt;
* X From the Maintenance Scheduler settings, you configure Automatic Maintenance Random Delay&lt;br /&gt;
* - Windows Update settings, you enable Configure Automatic Updates, select 4-Auto download and schedule the install, and then enter a time.&lt;br /&gt;
* - From the Maintenance Scheduler settings, you configure Automatic Maintenance Activation Boundary.&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
redeploy previously used computer with autopilot&lt;br /&gt;
# generate csv with computer infos&lt;br /&gt;
# upload with store for business&lt;br /&gt;
# reset the computer&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
Secure Boot requirements&lt;br /&gt;
* GPT disk (not MBR disk)&lt;br /&gt;
* UEFI&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
implement hybrid Microsoft Azure Active Directory (Azure AD) and Microsoft Intune in AD doain with many computers&lt;br /&gt;
* use Windows AutoPilot deployment profile&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
Windows AutoPilot Reset effects on seting done by the user&lt;br /&gt;
* wifi connections and passphrases ratained&lt;br /&gt;
* Apps from the windows store and vpn connection removed&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
Intune action options to reset computers to the latest windows 10 enterprise&lt;br /&gt;
* fresh start action for windows 10 enterprise (latest feature update not a prerequisite)&lt;br /&gt;
* wipe action for windows 10 and 8.1 enterprise&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
enable self-service password reset in intune device config&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
prevent the video drivers from being updated automatically by using Windows Update for business&lt;br /&gt;
* - Device Installation and Restrictions settings in a Group Policy object (GPO), enable Prevent installation of devices using drivers that match these device setup classes, and then you enter the device GUID&lt;br /&gt;
* - settings app - clear Give me updates for other Microsoft products when I update Windows check box&lt;br /&gt;
* X From the Device Installation settings in a Group Policy object (GPO), you enable Specify search order for device driver source locations, and then you select Do not search Windows Update.&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
20 computers run Windows 10, are joined to Microsoft Azure Active Directory (Azure AD) and should be replaced. desktop background, the favorites, and the browsing history have to be migrated&lt;br /&gt;
* X Enterprise State Roaming&lt;br /&gt;
* - roaming user profiles&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
new computer named Computer1 that runs Windows 10 and is in a workgroup has to monitored by Log Analytics in an Azure Log Analytics workspace&lt;br /&gt;
* Install the Microsoft Monitoring Agent&lt;br /&gt;
&lt;br /&gt;
[[Category:MD-101]]&lt;/div&gt;</summary>
		<author><name>Rladmin</name></author>
		
	</entry>
	<entry>
		<id>https://wiki.lehmann.systems/index.php?title=MD-101_Topic_1_answers&amp;diff=187</id>
		<title>MD-101 Topic 1 answers</title>
		<link rel="alternate" type="text/html" href="https://wiki.lehmann.systems/index.php?title=MD-101_Topic_1_answers&amp;diff=187"/>
		<updated>2019-11-08T05:10:32Z</updated>

		<summary type="html">&lt;p&gt;Rladmin: &lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;review the serivicng status of computers which servicing channel is manged by intune:&lt;br /&gt;
* software updates -&amp;gt; Per update ring deployment state&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
User should be promted to set the system language and to accept the license aggreement for windows.&lt;br /&gt;
* - Autopilot remote reset&lt;br /&gt;
* X Autopilot user-driven deployment profile&lt;br /&gt;
* - AutoPilot self-deploying deployment profile&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
feature and quality updates have to be installed automatically during a maintenance window&lt;br /&gt;
* X From the Maintenance Scheduler settings, you configure Automatic Maintenance Random Delay&lt;br /&gt;
* - Windows Update settings, you enable Configure Automatic Updates, select 4-Auto download and schedule the install, and then enter a time.&lt;br /&gt;
* - From the Maintenance Scheduler settings, you configure Automatic Maintenance Activation Boundary.&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
redeploy previously used computer with autopilot&lt;br /&gt;
# generate csv with computer infos&lt;br /&gt;
# upload with store for business&lt;br /&gt;
# reset the computer&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
Secure Boot requirements&lt;br /&gt;
* GPT disk (not MBR disk)&lt;br /&gt;
* UEFI&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
implement hybrid Microsoft Azure Active Directory (Azure AD) and Microsoft Intune in AD doain with many computers&lt;br /&gt;
* use Windows AutoPilot deployment profile&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
Windows AutoPilot Reset effects on seting done by the user&lt;br /&gt;
* wifi connections and passphrases ratained&lt;br /&gt;
* Apps from the windows store and vpn connection removed&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
Intune action options to reset computers to the latest windows 10 enterprise&lt;br /&gt;
* fresh start action for windows 10 enterprise (latest feature update not a prerequisite)&lt;br /&gt;
* wipe action for windows 10 and 8.1 enterprise&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
enable self-service password reset in intune device config&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
prevent the video drivers from being updated automatically by using Windows Update for business&lt;br /&gt;
* - Device Installation and Restrictions settings in a Group Policy object (GPO), enable Prevent installation of devices using drivers that match these device setup classes, and then you enter the device GUID&lt;br /&gt;
* - settings app - clear Give me updates for other Microsoft products when I update Windows check box&lt;br /&gt;
* X From the Device Installation settings in a Group Policy object (GPO), you enable Specify search order for device driver source locations, and then you select Do not search Windows Update.&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
20 computers run Windows 10, are joined to Microsoft Azure Active Directory (Azure AD) and should be replaced. desktop background, the favorites, and the browsing history have to be migrated&lt;br /&gt;
* X Enterprise State Roaming&lt;br /&gt;
* - roaming user profiles&lt;br /&gt;
&lt;br /&gt;
[[Category:MD-101]]&lt;/div&gt;</summary>
		<author><name>Rladmin</name></author>
		
	</entry>
	<entry>
		<id>https://wiki.lehmann.systems/index.php?title=MD-101_Topic_1_answers&amp;diff=186</id>
		<title>MD-101 Topic 1 answers</title>
		<link rel="alternate" type="text/html" href="https://wiki.lehmann.systems/index.php?title=MD-101_Topic_1_answers&amp;diff=186"/>
		<updated>2019-11-08T05:01:19Z</updated>

		<summary type="html">&lt;p&gt;Rladmin: &lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;review the serivicng status of computers which servicing channel is manged by intune:&lt;br /&gt;
* software updates -&amp;gt; Per update ring deployment state&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
User should be promted to set the system language and to accept the license aggreement for windows.&lt;br /&gt;
* - Autopilot remote reset&lt;br /&gt;
* X Autopilot user-driven deployment profile&lt;br /&gt;
* - AutoPilot self-deploying deployment profile&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
feature and quality updates have to be installed automatically during a maintenance window&lt;br /&gt;
* X From the Maintenance Scheduler settings, you configure Automatic Maintenance Random Delay&lt;br /&gt;
* - Windows Update settings, you enable Configure Automatic Updates, select 4-Auto download and schedule the install, and then enter a time.&lt;br /&gt;
* - From the Maintenance Scheduler settings, you configure Automatic Maintenance Activation Boundary.&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
redeploy previously used computer with autopilot&lt;br /&gt;
# generate csv with computer infos&lt;br /&gt;
# upload with store for business&lt;br /&gt;
# reset the computer&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
Secure Boot requirements&lt;br /&gt;
* GPT disk (not MBR disk)&lt;br /&gt;
* UEFI&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
implement hybrid Microsoft Azure Active Directory (Azure AD) and Microsoft Intune in AD doain with many computers&lt;br /&gt;
* use Windows AutoPilot deployment profile&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
Windows AutoPilot Reset effects on seting done by the user&lt;br /&gt;
* wifi connections and passphrases ratained&lt;br /&gt;
* Apps from the windows store and vpn connection removed&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
Intune action options to reset computers to the latest windows 10 enterprise&lt;br /&gt;
* fresh start action for windows 10 enterprise (latest feature update not a prerequisite)&lt;br /&gt;
* wipe action for windows 10 and 8.1 enterprise&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
enable self-service password reset in intune device config&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
prevent the video drivers from being updated automatically by using Windows Update for business&lt;br /&gt;
* - Device Installation and Restrictions settings in a Group Policy object (GPO), enable Prevent installation of devices using drivers that match these device setup classes, and then you enter the device GUID&lt;br /&gt;
* - settings app - clear Give me updates for other Microsoft products when I update Windows check box&lt;br /&gt;
* X From the Device Installation settings in a Group Policy object (GPO), you enable Specify search order for device driver source locations, and then you select Do not search Windows Update.&lt;br /&gt;
[[Category:MD-101]]&lt;/div&gt;</summary>
		<author><name>Rladmin</name></author>
		
	</entry>
	<entry>
		<id>https://wiki.lehmann.systems/index.php?title=MD-101_Topic_1_answers&amp;diff=185</id>
		<title>MD-101 Topic 1 answers</title>
		<link rel="alternate" type="text/html" href="https://wiki.lehmann.systems/index.php?title=MD-101_Topic_1_answers&amp;diff=185"/>
		<updated>2019-11-08T04:44:08Z</updated>

		<summary type="html">&lt;p&gt;Rladmin: &lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;review the serivicng status of computers which servicing channel is manged by intune:&lt;br /&gt;
* software updates -&amp;gt; Per update ring deployment state&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
User should be promted to set the system language and to accept the license aggreement for windows.&lt;br /&gt;
* - Autopilot remote reset&lt;br /&gt;
* X Autopilot user-driven deployment profile&lt;br /&gt;
* - AutoPilot self-deploying deployment profile&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
feature and quality updates have to be installed automatically during a maintenance window&lt;br /&gt;
* X From the Maintenance Scheduler settings, you configure Automatic Maintenance Random Delay&lt;br /&gt;
* - Windows Update settings, you enable Configure Automatic Updates, select 4-Auto download and schedule the install, and then enter a time.&lt;br /&gt;
* - From the Maintenance Scheduler settings, you configure Automatic Maintenance Activation Boundary.&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
redeploy previously used computer with autopilot&lt;br /&gt;
# generate csv with computer infos&lt;br /&gt;
# upload with store for business&lt;br /&gt;
# reset the computer&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
Secure Boot requirements&lt;br /&gt;
* GPT disk (not MBR disk)&lt;br /&gt;
* UEFI&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
implement hybrid Microsoft Azure Active Directory (Azure AD) and Microsoft Intune in AD doain with many computers&lt;br /&gt;
* use Windows AutoPilot deployment profile&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
Windows AutoPilot Reset effects on seting done by the user&lt;br /&gt;
* wifi connections and passphrases ratained&lt;br /&gt;
* Apps from the windows store and vpn connection removed&lt;br /&gt;
&lt;br /&gt;
[[Category:MD-101]]&lt;/div&gt;</summary>
		<author><name>Rladmin</name></author>
		
	</entry>
	<entry>
		<id>https://wiki.lehmann.systems/index.php?title=MD-101_Topic_1_answers&amp;diff=184</id>
		<title>MD-101 Topic 1 answers</title>
		<link rel="alternate" type="text/html" href="https://wiki.lehmann.systems/index.php?title=MD-101_Topic_1_answers&amp;diff=184"/>
		<updated>2019-11-08T04:34:25Z</updated>

		<summary type="html">&lt;p&gt;Rladmin: &lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;review the serivicng status of computers which servicing channel is manged by intune:&lt;br /&gt;
* software updates -&amp;gt; Per update ring deployment state&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
User should be promted to set the system language and to accept the license aggreement for windows.&lt;br /&gt;
* - Autopilot remote reset&lt;br /&gt;
* X Autopilot user-driven deployment profile&lt;br /&gt;
* - AutoPilot self-deploying deployment profile&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
feature and quality updates have to be installed automatically during a maintenance window&lt;br /&gt;
* X From the Maintenance Scheduler settings, you configure Automatic Maintenance Random Delay&lt;br /&gt;
* - Windows Update settings, you enable Configure Automatic Updates, select 4-Auto download and schedule the install, and then enter a time.&lt;br /&gt;
* - From the Maintenance Scheduler settings, you configure Automatic Maintenance Activation Boundary.&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
redeploy previously used computer with autopilot&lt;br /&gt;
# generate csv with computer infos&lt;br /&gt;
# upload with store for business&lt;br /&gt;
# reset the computer&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
Secure Boot requirements&lt;br /&gt;
* GPT disk (not MBR disk)&lt;br /&gt;
* UEFI&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
[[Category:MD-101]]&lt;/div&gt;</summary>
		<author><name>Rladmin</name></author>
		
	</entry>
	<entry>
		<id>https://wiki.lehmann.systems/index.php?title=MD-101_Topic_1_answers&amp;diff=183</id>
		<title>MD-101 Topic 1 answers</title>
		<link rel="alternate" type="text/html" href="https://wiki.lehmann.systems/index.php?title=MD-101_Topic_1_answers&amp;diff=183"/>
		<updated>2019-11-08T04:24:14Z</updated>

		<summary type="html">&lt;p&gt;Rladmin: &lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;review the serivicng status of computers which servicing channel is manged by intune:&lt;br /&gt;
* software updates -&amp;gt; Per update ring deployment state&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
User should be promted to set the system language and to accept the license aggreement for windows.&lt;br /&gt;
* - Autopilot remote reset&lt;br /&gt;
* X Autopilot user-driven deployment profile&lt;br /&gt;
* - AutoPilot self-deploying deployment profile&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
feature and quality updates have to be installed automatically during a maintenance window&lt;br /&gt;
* X From the Maintenance Scheduler settings, you configure Automatic Maintenance Random Delay&lt;br /&gt;
* - Windows Update settings, you enable Configure Automatic Updates, select 4-Auto download and schedule the install, and then enter a time.&lt;br /&gt;
* - From the Maintenance Scheduler settings, you configure Automatic Maintenance Activation Boundary.&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
[[Category:MD-101]]&lt;/div&gt;</summary>
		<author><name>Rladmin</name></author>
		
	</entry>
	<entry>
		<id>https://wiki.lehmann.systems/index.php?title=MD-101_Topic_1_answers&amp;diff=182</id>
		<title>MD-101 Topic 1 answers</title>
		<link rel="alternate" type="text/html" href="https://wiki.lehmann.systems/index.php?title=MD-101_Topic_1_answers&amp;diff=182"/>
		<updated>2019-11-08T04:17:03Z</updated>

		<summary type="html">&lt;p&gt;Rladmin: &lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;review the serivicng status of computers which servicing channel is manged by intune:&lt;br /&gt;
* software updates -&amp;gt; Per update ring deployment state&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
User should be promted to set the system language and to accept the license aggreement for windows.&lt;br /&gt;
* Autopilot remote (/)&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
[[Category:MD-101]]&lt;/div&gt;</summary>
		<author><name>Rladmin</name></author>
		
	</entry>
	<entry>
		<id>https://wiki.lehmann.systems/index.php?title=MD-101_Topic_1_answers&amp;diff=181</id>
		<title>MD-101 Topic 1 answers</title>
		<link rel="alternate" type="text/html" href="https://wiki.lehmann.systems/index.php?title=MD-101_Topic_1_answers&amp;diff=181"/>
		<updated>2019-11-08T04:15:01Z</updated>

		<summary type="html">&lt;p&gt;Rladmin: &lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;review the serivicng status of computers which servicing channel is manged by intune:&lt;br /&gt;
* software updates -&amp;gt; Per update ring deployment state&lt;br /&gt;
&lt;br /&gt;
Autopilot remote reset will not have the effect that the user is promted set the system language or to accept the license aggreement for windows afterward.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
[[Category:MD-101]]&lt;/div&gt;</summary>
		<author><name>Rladmin</name></author>
		
	</entry>
	<entry>
		<id>https://wiki.lehmann.systems/index.php?title=MD-101_Topic_1_answers&amp;diff=180</id>
		<title>MD-101 Topic 1 answers</title>
		<link rel="alternate" type="text/html" href="https://wiki.lehmann.systems/index.php?title=MD-101_Topic_1_answers&amp;diff=180"/>
		<updated>2019-11-08T04:07:45Z</updated>

		<summary type="html">&lt;p&gt;Rladmin: &lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;review the serivicng status of computers which servicing channel is manged by intune:&lt;br /&gt;
* software updates -&amp;gt; Per update ring deployment state&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
[[Category:MD-101]]&lt;/div&gt;</summary>
		<author><name>Rladmin</name></author>
		
	</entry>
	<entry>
		<id>https://wiki.lehmann.systems/index.php?title=MD-101_Topic_1_answers&amp;diff=179</id>
		<title>MD-101 Topic 1 answers</title>
		<link rel="alternate" type="text/html" href="https://wiki.lehmann.systems/index.php?title=MD-101_Topic_1_answers&amp;diff=179"/>
		<updated>2019-11-08T04:05:45Z</updated>

		<summary type="html">&lt;p&gt;Rladmin: Die Seite wurde neu angelegt: „  Category:MD-101“&lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;&lt;br /&gt;
&lt;br /&gt;
[[Category:MD-101]]&lt;/div&gt;</summary>
		<author><name>Rladmin</name></author>
		
	</entry>
	<entry>
		<id>https://wiki.lehmann.systems/index.php?title=MD-101-Manage_Apps_and_Data_Summary&amp;diff=178</id>
		<title>MD-101-Manage Apps and Data Summary</title>
		<link rel="alternate" type="text/html" href="https://wiki.lehmann.systems/index.php?title=MD-101-Manage_Apps_and_Data_Summary&amp;diff=178"/>
		<updated>2019-11-08T04:00:13Z</updated>

		<summary type="html">&lt;p&gt;Rladmin: &lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;* Intune&lt;br /&gt;
** Deploy different app types&lt;br /&gt;
*** Store apps&lt;br /&gt;
*** Office 365 Suite apps&lt;br /&gt;
*** Web link apps&lt;br /&gt;
*** Built-in apps&lt;br /&gt;
*** Line-of-Business apps&lt;br /&gt;
*** Win32 apps&lt;br /&gt;
** Apps configured for deployment have to be assigned to the relevant device or user groups to take effect.&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
* Microsoft Store for Business&lt;br /&gt;
** role assignments to configure which permissions the user should get&lt;br /&gt;
** enable Private Store before it can be seen and used&lt;br /&gt;
** Intune can be enabled to distribute the apps from here, if it is set up as a store management tool and the sync is active.&lt;br /&gt;
** Offline Licensing lets apps be distributed by the network infrastructure or Intune instead of the storefront.&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
* By creating a custom Office 365 Suite app it is possible to determine, which office apps will be avialble for the users.&lt;br /&gt;
* Sideload for apps possible with provisioning packages or by integration into windows-installation-image with dism&lt;br /&gt;
* Internet Explorer Enterprise Mode -&amp;gt; determine which browser for which website&lt;br /&gt;
* App protection policies to contol data in protected apps&lt;br /&gt;
* DLP policies to prevent data leakage&lt;br /&gt;
&lt;br /&gt;
[[Category:MD-101]]&lt;/div&gt;</summary>
		<author><name>Rladmin</name></author>
		
	</entry>
	<entry>
		<id>https://wiki.lehmann.systems/index.php?title=MD-101-Manage_Apps_and_Data_Summary&amp;diff=177</id>
		<title>MD-101-Manage Apps and Data Summary</title>
		<link rel="alternate" type="text/html" href="https://wiki.lehmann.systems/index.php?title=MD-101-Manage_Apps_and_Data_Summary&amp;diff=177"/>
		<updated>2019-11-08T03:38:17Z</updated>

		<summary type="html">&lt;p&gt;Rladmin: Die Seite wurde neu angelegt: „  Category:MD-101“&lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;&lt;br /&gt;
&lt;br /&gt;
[[Category:MD-101]]&lt;/div&gt;</summary>
		<author><name>Rladmin</name></author>
		
	</entry>
	<entry>
		<id>https://wiki.lehmann.systems/index.php?title=MD-101-Manage_and_protect_devices_Summary&amp;diff=176</id>
		<title>MD-101-Manage and protect devices Summary</title>
		<link rel="alternate" type="text/html" href="https://wiki.lehmann.systems/index.php?title=MD-101-Manage_and_protect_devices_Summary&amp;diff=176"/>
		<updated>2019-11-08T03:28:54Z</updated>

		<summary type="html">&lt;p&gt;Rladmin: &lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;* Windows Defender features are managed through pwershell, gpos or intune&lt;br /&gt;
** Windows Defender Credential Guard requires Windows 10 Enterprise or Education and TPM and virtualization has to be enabled&lt;br /&gt;
** Windows Defender Exploit Guard&lt;br /&gt;
*** Exploit Protection&lt;br /&gt;
*** Attack Surface Reduction Rules&lt;br /&gt;
*** Network Protection&lt;br /&gt;
*** Controlled Folder Access&lt;br /&gt;
** Windows Defender Application Guard&lt;br /&gt;
*** requirements like Credential Guard&lt;br /&gt;
*** new browser windows in virtualized sandboxes&lt;br /&gt;
** Windows Defender Application Control to determine which apps are safe to run in the organization&lt;br /&gt;
** Threat Agent Status for monitoring Defender on enrolled devices&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
* Ways to enroll Windows devices&lt;br /&gt;
** Add a work or school account&lt;br /&gt;
** Enroll in MDM only (user-driven)&lt;br /&gt;
*** Android and iOS devices can be enrolled by downloading the Company Portal app from the app store and signing in with the organsation account&lt;br /&gt;
** Enroll in MDM only (Device Enrollment Manager)&lt;br /&gt;
** Azure AD Join during OOBE&lt;br /&gt;
** Azure AD Join using Windows Autopilot&lt;br /&gt;
*** Autopilot can be configured to be user-driven or self-deploying&lt;br /&gt;
** Azure AD Join using bulk enrollment&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
* Windows Analytics and Log Analytics require an Azure subscription&lt;br /&gt;
&lt;br /&gt;
[[Category:MD-101]]&lt;/div&gt;</summary>
		<author><name>Rladmin</name></author>
		
	</entry>
	<entry>
		<id>https://wiki.lehmann.systems/index.php?title=MD-101-Manage_and_protect_devices_Summary&amp;diff=175</id>
		<title>MD-101-Manage and protect devices Summary</title>
		<link rel="alternate" type="text/html" href="https://wiki.lehmann.systems/index.php?title=MD-101-Manage_and_protect_devices_Summary&amp;diff=175"/>
		<updated>2019-11-08T03:28:12Z</updated>

		<summary type="html">&lt;p&gt;Rladmin: &lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;* Windows Defender features are managed through pwershell, gpos or intune&lt;br /&gt;
** Windows Defender Credential Guard requires Windows 10 Enterprise or Education and TPM and virtualization has to be enabled&lt;br /&gt;
** Windows Defender Exploit Guard&lt;br /&gt;
*** Exploit Protection&lt;br /&gt;
*** Attack Surface Reduction Rules&lt;br /&gt;
*** Network Protection&lt;br /&gt;
*** Controlled Folder Access&lt;br /&gt;
** Windows Defender Application Guard&lt;br /&gt;
*** requirements like Credential Guard&lt;br /&gt;
*** new browser windows in virtualized sandboxes&lt;br /&gt;
** Windows Defender Application Control to determine which apps are safe to run in the organization&lt;br /&gt;
** Threat Agent Status for monitoring Defender on enrolled devices&lt;br /&gt;
* Ways to enroll Windows devices&lt;br /&gt;
** Add a work or school account&lt;br /&gt;
** Enroll in MDM only (user-driven)&lt;br /&gt;
*** Android and iOS devices can be enrolled by downloading the Company Portal app from the app store and signing in with the organsation account&lt;br /&gt;
** Enroll in MDM only (Device Enrollment Manager)&lt;br /&gt;
** Azure AD Join during OOBE&lt;br /&gt;
** Azure AD Join using Windows Autopilot&lt;br /&gt;
*** Autopilot can be configured to be user-driven or self-deploying&lt;br /&gt;
** Azure AD Join using bulk enrollment&lt;br /&gt;
* Windows Analytics and Log Analytics require an Azure subscription&lt;br /&gt;
&lt;br /&gt;
[[Category:MD-101]]&lt;/div&gt;</summary>
		<author><name>Rladmin</name></author>
		
	</entry>
	<entry>
		<id>https://wiki.lehmann.systems/index.php?title=MD-101-Manage_and_protect_devices_Summary&amp;diff=174</id>
		<title>MD-101-Manage and protect devices Summary</title>
		<link rel="alternate" type="text/html" href="https://wiki.lehmann.systems/index.php?title=MD-101-Manage_and_protect_devices_Summary&amp;diff=174"/>
		<updated>2019-11-08T03:09:39Z</updated>

		<summary type="html">&lt;p&gt;Rladmin: Die Seite wurde neu angelegt: „  Category:MD-101“&lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;&lt;br /&gt;
&lt;br /&gt;
[[Category:MD-101]]&lt;/div&gt;</summary>
		<author><name>Rladmin</name></author>
		
	</entry>
	<entry>
		<id>https://wiki.lehmann.systems/index.php?title=MD-101-Manage_Policies_and_Profiles_Summary&amp;diff=173</id>
		<title>MD-101-Manage Policies and Profiles Summary</title>
		<link rel="alternate" type="text/html" href="https://wiki.lehmann.systems/index.php?title=MD-101-Manage_Policies_and_Profiles_Summary&amp;diff=173"/>
		<updated>2019-11-08T03:07:03Z</updated>

		<summary type="html">&lt;p&gt;Rladmin: &lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;* devices can be managed joinedly in both System Center COnfiguration Manger and Microft Intune. That is called co-management.&lt;br /&gt;
* Intune can take precedence over GPOs starting 1803.&lt;br /&gt;
* MDM Migration Analysis Tools checks for GPOs that can be implemented with the MDM.&lt;br /&gt;
* Conditional access policies check conditions before access to corporate resources is granted.&lt;br /&gt;
** Conditions can be:&lt;br /&gt;
*** controlled apps &lt;br /&gt;
*** controll of device requirements like encryption of the drives, jail brake etc.&lt;br /&gt;
*** etc.&lt;br /&gt;
** Azure AD evaluates them.&lt;br /&gt;
** A test plan should be created when they are implemented.&lt;br /&gt;
* Devices will check their compliance status periodically with Intune.&lt;br /&gt;
** Intune device configuration policies -&amp;gt; device settings in the MDM&lt;br /&gt;
** Intune can deploy powershell scripts to windows devices.&lt;br /&gt;
*** This allows for the deployment of win32 applications for instance.&lt;br /&gt;
** scope tags -&amp;gt; filter intune policies to Azure AD groups&lt;br /&gt;
** custom policies with OMA-URI policies (Open Mobile Alliance Uniform Resource Identifier) possible&lt;br /&gt;
* User profiles types:&lt;br /&gt;
** Local&lt;br /&gt;
** Roaming - profile copy stored on the network (server share)&lt;br /&gt;
** Mandatory - fixed user profile, only admin can change them&lt;br /&gt;
*** set up by renaming NTuser.dat to NTuser.man for roaming profiles&lt;br /&gt;
** Super-Mandatory - mandatory profile stored on the network&lt;br /&gt;
*** set up by renaming profile folder \\server\profiles\user1.v6 -&amp;gt; \\server\profiles\user1.man.v6 for mandatory&lt;br /&gt;
** Temporary&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
[[Category:MD-101]]&lt;/div&gt;</summary>
		<author><name>Rladmin</name></author>
		
	</entry>
	<entry>
		<id>https://wiki.lehmann.systems/index.php?title=MD-101-Manage_Policies_and_Profiles_Summary&amp;diff=172</id>
		<title>MD-101-Manage Policies and Profiles Summary</title>
		<link rel="alternate" type="text/html" href="https://wiki.lehmann.systems/index.php?title=MD-101-Manage_Policies_and_Profiles_Summary&amp;diff=172"/>
		<updated>2019-11-07T18:48:33Z</updated>

		<summary type="html">&lt;p&gt;Rladmin: &lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;* devices can be managed joinedly in both System Center COnfiguration Manger and Microft Intune. That is called co-management.&lt;br /&gt;
* Intune can take precedence over GPOs starting 1803.&lt;br /&gt;
* MDM Migration Analysis Tools checks for GPOs that can be implemented with the MDM.&lt;br /&gt;
* Conditional access policies check conditions before access to corporate resources is granted.&lt;br /&gt;
** Conditions can be:&lt;br /&gt;
*** controlled apps &lt;br /&gt;
*** controll of device requirements like encryption of the drives, jail brake etc.&lt;br /&gt;
*** etc.&lt;br /&gt;
** Azure AD evaluates them.&lt;br /&gt;
** A test plan should be created when they are implemented.&lt;br /&gt;
* Devices will check their compliance status periodically with Intune.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
[[Category:MD-101]]&lt;/div&gt;</summary>
		<author><name>Rladmin</name></author>
		
	</entry>
	<entry>
		<id>https://wiki.lehmann.systems/index.php?title=MD-101-Manage_Policies_and_Profiles_Summary&amp;diff=171</id>
		<title>MD-101-Manage Policies and Profiles Summary</title>
		<link rel="alternate" type="text/html" href="https://wiki.lehmann.systems/index.php?title=MD-101-Manage_Policies_and_Profiles_Summary&amp;diff=171"/>
		<updated>2019-11-07T18:41:49Z</updated>

		<summary type="html">&lt;p&gt;Rladmin: Die Seite wurde neu angelegt: „* devices can be managed joinedly in both System Center COnfiguration Manger and Microft Intune. That is called co-management. * Intune can take precedence ove…“&lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;* devices can be managed joinedly in both System Center COnfiguration Manger and Microft Intune. That is called co-management.&lt;br /&gt;
* Intune can take precedence over GPOs starting 1803.&lt;br /&gt;
* MDM Migration Analysis Tools checks for GPOs that can be implemented with the MDM.&lt;br /&gt;
* Conditional access policies check conditions before access to corporate resources is granted.&lt;br /&gt;
** Conditions can be:&lt;br /&gt;
*** controlled apps &lt;br /&gt;
*** controll of device requirements like encryption of the drives, jail brake etc.&lt;br /&gt;
*** etc.&lt;br /&gt;
** Azure AD evaluates them.&lt;br /&gt;
** A test paln should be created when they are implemented.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
[[Category:MD-101]]&lt;/div&gt;</summary>
		<author><name>Rladmin</name></author>
		
	</entry>
	<entry>
		<id>https://wiki.lehmann.systems/index.php?title=MD-101-Dynamic_Deployment_Summary&amp;diff=170</id>
		<title>MD-101-Dynamic Deployment Summary</title>
		<link rel="alternate" type="text/html" href="https://wiki.lehmann.systems/index.php?title=MD-101-Dynamic_Deployment_Summary&amp;diff=170"/>
		<updated>2019-11-07T18:26:58Z</updated>

		<summary type="html">&lt;p&gt;Rladmin: &lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;* Dynamic provisioning aims to transform windows 10 installations. The following methods can be used to accomplish this:&lt;br /&gt;
** Azure AD&lt;br /&gt;
** Mobile Device Management&lt;br /&gt;
** provisioning packages&lt;br /&gt;
*** Provisioning packages are created using the Windows Configuration Designer.&lt;br /&gt;
** subscribtion activation&lt;br /&gt;
** Windows Autopilot&lt;br /&gt;
*** Windows Autopilot can enroll devices into MDM and customize the OOBE.&lt;br /&gt;
*** All Windows 10 editions from 1703 are licensed for Autopilot.&lt;br /&gt;
*** Autopilot requires Azure AD and an MDM.&lt;br /&gt;
*** The Windows Autopilot Enrollment Status Page allows users to see the progress during the device setup.&lt;br /&gt;
*** The registration for the Autopilot service can be done by device vendors or manually by extractiting the the hardware-id with Get-WindowsAutoPilotInfo.ps1.&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
* The following is included in '''Windows Analytics''', which is a free cloud based tool:&lt;br /&gt;
** Device Health&lt;br /&gt;
** Update Compliance&lt;br /&gt;
*** Updates in enterprises can be monitored with the settings app or Update Compliance.&lt;br /&gt;
** Upgrade Readiness&lt;br /&gt;
*** Manage the upgrade process end to end.&lt;br /&gt;
** The commercial ID has to be added to devices, so they can send telemetry data to the Windows Analytics Environment.&lt;br /&gt;
** After the requirements for the devices for Windows Ananlytics is met, it can take 48 to 72 hours before the first data and solutions will be shown.&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
* Windows or Azure AD authentication options&lt;br /&gt;
** Dynamic Lock on smartphones will lock windows pcs, when the user steps away from the device.&lt;br /&gt;
** Multifactor authentication&lt;br /&gt;
** biometrics through Windows Hello (for Business)&lt;br /&gt;
** set up to 1000 banned passwords with Azure AD Password Protection&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
* You can not downgrade from Windows 10 to Windows 8.1, 8 or 7.&lt;br /&gt;
* Windows S Mode allows users to switch the edition of Windows 10 at any time using the Windows Store.&lt;br /&gt;
* User profiles should be migrated, whenever possible.&lt;br /&gt;
* Windows Known Folder Move for One Drive automatically redirects users folders to OneDrive for Business.&lt;br /&gt;
* Enterprise State Roaming allows cloud based accounts to be synced.&lt;br /&gt;
* Delivery Optimization seems to use peer to peer for updates to reduce external bandwidth.&lt;br /&gt;
* Windows Update for Business allows the management of Non-Deferrable Updates, Quality Updates (deferrable up to 30 days) and Feature Updates (deferrable up to 365 days).&lt;br /&gt;
* Servicing channels can be implemented by GPO or Intune.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
[[Category:MD-101]]&lt;br /&gt;
[[Category:MD-101-Deploy_and_Update_OS]]&lt;br /&gt;
[[Category:MD-101-Dynamic Deployment]]&lt;/div&gt;</summary>
		<author><name>Rladmin</name></author>
		
	</entry>
	<entry>
		<id>https://wiki.lehmann.systems/index.php?title=MD-101-Dynamic_Deployment_Summary&amp;diff=169</id>
		<title>MD-101-Dynamic Deployment Summary</title>
		<link rel="alternate" type="text/html" href="https://wiki.lehmann.systems/index.php?title=MD-101-Dynamic_Deployment_Summary&amp;diff=169"/>
		<updated>2019-11-07T18:25:31Z</updated>

		<summary type="html">&lt;p&gt;Rladmin: &lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;* Dynamic provisioning aims to transform windows 10 installations. The following methods can be used to accomplish this:&lt;br /&gt;
** Azure AD&lt;br /&gt;
** Mobile Device Management&lt;br /&gt;
** provisioning packages&lt;br /&gt;
*** Provisioning packages are created using the Windows Configuration Designer.&lt;br /&gt;
** subscribtion activation&lt;br /&gt;
** Windows Autopilot&lt;br /&gt;
*** Windows Autopilot can enroll devices into MDM and customize the OOBE.&lt;br /&gt;
*** All Windows 10 editions from 1703 are licensed for Autopilot.&lt;br /&gt;
*** Autopilot requires Azure AD and an MDM.&lt;br /&gt;
*** The Windows Autopilot Enrollment Status Page allows users to see the progress during the device setup.&lt;br /&gt;
*** The registration for the Autopilot service can be done by device vendors or manually by extractiting the the hardware-id with Get-WindowsAutoPilotInfo.ps1.&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
* The following is included in '''Windows Analytics''', which is a free cloud based tool:&lt;br /&gt;
** Device Health&lt;br /&gt;
** Update Compliance&lt;br /&gt;
*** Updates in enterprises can be monitored with the settings app or Update Compliance.&lt;br /&gt;
** Upgrade Readiness&lt;br /&gt;
*** Manage the upgrade process end to end.&lt;br /&gt;
** The commercial ID has to be added to devices, so they can send telemetry data to the Windows Analytics Environment.&lt;br /&gt;
** After the requirements for the devices for Windows Ananlytics is met, it can take 48 to 72 hours before the first data and solutions will be shown.&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
* Windows or Azure AD authentication options&lt;br /&gt;
** Dynamic Lock on smartphones will lock windows pcs, when the user steps away from the device.&lt;br /&gt;
** Multifactor authentication&lt;br /&gt;
** biometrics through Windows Hello (for Business)&lt;br /&gt;
** set up to 1000 banned passwords with Azure AD Password Protection&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
* You can not downgrade from Windows 10 to Windows 8.1, 8 or 7.&lt;br /&gt;
* '''Windows S Mode''' allows users to switch the edition of Windows 10 at any time using the Windows Store.&lt;br /&gt;
* User profiles should be migrated, whenever possible.&lt;br /&gt;
* Windows Known Folder Move for One Drive automatically redirects users folders to OneDrive for Business.&lt;br /&gt;
* Enterprise State Roaming allows cloud based accounts to be synced.&lt;br /&gt;
* Delivery Optimization seems to use peer to peer for updates to reduce external bandwidth.&lt;br /&gt;
* Windows Update for Business allows the management of Non-Deferrable Updates, Quality Updates (deferrable up to 30 days) and Feature Updates (deferrable up to 365 days).&lt;br /&gt;
* Servicing channels can be implemented by GPO or Intune.&lt;br /&gt;
** Updates in enterprises can be monitored with the settings app or Update Compliance.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
[[Category:MD-101]]&lt;br /&gt;
[[Category:MD-101-Deploy_and_Update_OS]]&lt;br /&gt;
[[Category:MD-101-Dynamic Deployment]]&lt;/div&gt;</summary>
		<author><name>Rladmin</name></author>
		
	</entry>
	<entry>
		<id>https://wiki.lehmann.systems/index.php?title=MD-101-Dynamic_Deployment_Summary&amp;diff=168</id>
		<title>MD-101-Dynamic Deployment Summary</title>
		<link rel="alternate" type="text/html" href="https://wiki.lehmann.systems/index.php?title=MD-101-Dynamic_Deployment_Summary&amp;diff=168"/>
		<updated>2019-11-07T18:14:53Z</updated>

		<summary type="html">&lt;p&gt;Rladmin: &lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;* Dynamic provisioniing aims to transform windows 10 installations. The following methods can be used to accomplish this:&lt;br /&gt;
** Azure AD&lt;br /&gt;
** Mobile Device Management&lt;br /&gt;
** provisioning packages&lt;br /&gt;
*** Provisioning packages are created using the Windows Configuration Designer.&lt;br /&gt;
** subscribtion activation&lt;br /&gt;
** Windows Autopilot&lt;br /&gt;
*** Windows Autopilot can enroll devices into MDM and customize the OOBE.&lt;br /&gt;
*** All Windows 10 editions from 1703 are licensed for Autopilot.&lt;br /&gt;
*** Autopilot requires Azure AD and an MDM.&lt;br /&gt;
*** The Windows Autopilot Enrollment Status Page allows users to see the progress during the device setup.&lt;br /&gt;
*** The registration for the Autopilot service can be done by device vendors or manually by extractiting the the hardware-id with Get-WindowsAutoPilotInfo.ps1.&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
* The following is included in '''Windows Analytics''', which is a free cloud based tool:&lt;br /&gt;
** Device Health&lt;br /&gt;
** Update Compliance&lt;br /&gt;
** Upgrade Readiness&lt;br /&gt;
*** Manage the upgrade process end to end.&lt;br /&gt;
** The commercial ID has to be added to devices, so they can send telemetry data to the Windows Analytics Environment.&lt;br /&gt;
** After the requirements for the devices for Windows Ananlytics is met, it can take 48 to 72 hours before the first data and solutions will be shown.&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
* You can not downgrade from Windows 10 to Windows 8.1, 8 or 7.&lt;br /&gt;
* '''Windows S Mode''' allows users to switch the edition of Windows 10 at any time using the Windows Store.&lt;br /&gt;
* User profiles should be migrated, whenever possible.&lt;br /&gt;
* Windows Known Folder Move for One Drive automatically redirects users folders to OneDrive for Business.&lt;br /&gt;
* Enterprise State Roaming allows cloud based accounts to be synced.&lt;br /&gt;
* Delivery Optimization seems to use peer to peer for updates to reduce external bandwidth.&lt;br /&gt;
* Windows Update for Business allows the management of Non-Deferrable Updates, Quality Updates (deferrable up to 30 days) and Feature Updates (deferrable up to 365 days).&lt;br /&gt;
* Servicing channels can be implemented by GPO or Intune.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
[[Category:MD-101]]&lt;br /&gt;
[[Category:MD-101-Deploy_and_Update_OS]]&lt;br /&gt;
[[Category:MD-101-Dynamic Deployment]]&lt;/div&gt;</summary>
		<author><name>Rladmin</name></author>
		
	</entry>
	<entry>
		<id>https://wiki.lehmann.systems/index.php?title=MD-101-Dynamic_Deployment_Summary&amp;diff=167</id>
		<title>MD-101-Dynamic Deployment Summary</title>
		<link rel="alternate" type="text/html" href="https://wiki.lehmann.systems/index.php?title=MD-101-Dynamic_Deployment_Summary&amp;diff=167"/>
		<updated>2019-11-07T18:01:52Z</updated>

		<summary type="html">&lt;p&gt;Rladmin: &lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;* Dynamic provisioniing aims to transform windows 10 installations. The following methods can be used to accomplish this:&lt;br /&gt;
** Azure AD&lt;br /&gt;
** Mobile Device Management&lt;br /&gt;
** provisioning packages&lt;br /&gt;
*** Provisioning packages are created using the Windows Configuration Designer.&lt;br /&gt;
** subscribtion activation&lt;br /&gt;
** Windows Autopilot&lt;br /&gt;
*** Windows Autopilot can enroll devices into MDM and customize the OOBE.&lt;br /&gt;
*** All Windows 10 editions from 1703 are licensed for Autopilot.&lt;br /&gt;
*** Autopilot requires Azure AD and an MDM.&lt;br /&gt;
*** The Windows Autopilot Enrollment Status Page allows users to see the progress during the device setup.&lt;br /&gt;
*** The registration for the Autopilot service can be done by device vendors or manually by extractiting the the hardware-id with Get-WindowsAutoPilotInfo.ps1.&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
* The following is included in '''Windows Analytics''', which is a free cloud based tool:&lt;br /&gt;
** Device Health&lt;br /&gt;
** Update Compliance&lt;br /&gt;
** Upgrade Readiness&lt;br /&gt;
*** Manage the upgrade process end to end.&lt;br /&gt;
** The commercial ID has to be added to devices, so they can send telemetry data to the Windows Analytics Environment.&lt;br /&gt;
** After the requirements for the devices for Windows Ananlytics is met, it can take 48 to 72 hours before the first data and solutions will be shown.&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
* You can not downgrade from Windows 10 to Windows 8.1, 8 or 7.&lt;br /&gt;
* '''Windows S Mode''' allows users to switch the edition of Windows 10 at any time using the Windows Store.&lt;br /&gt;
* User profiles should be migrated, whenever possible.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
[[Category:MD-101]]&lt;br /&gt;
[[Category:MD-101-Deploy_and_Update_OS]]&lt;br /&gt;
[[Category:MD-101-Dynamic Deployment]]&lt;/div&gt;</summary>
		<author><name>Rladmin</name></author>
		
	</entry>
	<entry>
		<id>https://wiki.lehmann.systems/index.php?title=MD-101-Dynamic_Deployment_Summary&amp;diff=166</id>
		<title>MD-101-Dynamic Deployment Summary</title>
		<link rel="alternate" type="text/html" href="https://wiki.lehmann.systems/index.php?title=MD-101-Dynamic_Deployment_Summary&amp;diff=166"/>
		<updated>2019-11-07T18:01:20Z</updated>

		<summary type="html">&lt;p&gt;Rladmin: &lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;* Dynamic provisioniing aims to transform windows 10 installations. The following methods can be used to accomplish this:&lt;br /&gt;
** Azure AD&lt;br /&gt;
** Mobile Device Management&lt;br /&gt;
** provisioning packages&lt;br /&gt;
*** Provisioning packages are created using the Windows Configuration Designer.&lt;br /&gt;
** subscribtion activation&lt;br /&gt;
** Windows Autopilot&lt;br /&gt;
*** Windows Autopilot can enroll devices into MDM and customize the OOBE.&lt;br /&gt;
*** All Windows 10 editions from 1703 are licensed for Autopilot.&lt;br /&gt;
*** Autopilot requires Azure AD and an MDM.&lt;br /&gt;
*** The Windows Autopilot Enrollment Status Page allows users to see the progress during the device setup.&lt;br /&gt;
*** The registration for the Autopilot service can be done by device vendors or manually by extractiting the the hardware-id with Get-WindowsAutoPilotInfo.ps1.&lt;br /&gt;
* The following is included in '''Windows Analytics''', which is a free cloud based tool:&lt;br /&gt;
** Device Health&lt;br /&gt;
** Update Compliance&lt;br /&gt;
** Upgrade Readiness&lt;br /&gt;
*** Manage the upgrade process end to end.&lt;br /&gt;
** The commercial ID has to be added to devices, so they can send telemetry data to the Windows Analytics Environment.&lt;br /&gt;
** After the requirements for the devices for Windows Ananlytics is met, it can take 48 to 72 hours before the first data and solutions will be shown.&lt;br /&gt;
* You can not downgrade from Windows 10 to Windows 8.1, 8 or 7.&lt;br /&gt;
* '''Windows S Mode''' allows users to switch the edition of Windows 10 at any time using the Windows Store.&lt;br /&gt;
* User profiles should be migrated, whenever possible.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
[[Category:MD-101]]&lt;br /&gt;
[[Category:MD-101-Deploy_and_Update_OS]]&lt;br /&gt;
[[Category:MD-101-Dynamic Deployment]]&lt;/div&gt;</summary>
		<author><name>Rladmin</name></author>
		
	</entry>
	<entry>
		<id>https://wiki.lehmann.systems/index.php?title=MD-101-Dynamic_Deployment_Summary&amp;diff=165</id>
		<title>MD-101-Dynamic Deployment Summary</title>
		<link rel="alternate" type="text/html" href="https://wiki.lehmann.systems/index.php?title=MD-101-Dynamic_Deployment_Summary&amp;diff=165"/>
		<updated>2019-11-07T17:39:59Z</updated>

		<summary type="html">&lt;p&gt;Rladmin: Die Seite wurde neu angelegt: „* Dynamic provisioniing aims to transform windows 10 installations. The following methods can be used to accomplish this: ** Azure AD ** Mobile Device Manageme…“&lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;* Dynamic provisioniing aims to transform windows 10 installations. The following methods can be used to accomplish this:&lt;br /&gt;
** Azure AD&lt;br /&gt;
** Mobile Device Management&lt;br /&gt;
** provisioning packages&lt;br /&gt;
*** Provisioning packages are created using the Windows Configuration Designer.&lt;br /&gt;
** subscribtion activation&lt;br /&gt;
** Windows Autopilot&lt;br /&gt;
* Device Health, Update Compliance and Upgrade Readiness is included in Windows Analytics, which is a free cloud based tool.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
[[Category:MD-101]]&lt;br /&gt;
[[Category:MD-101-Deploy_and_Update_OS]]&lt;br /&gt;
[[Category:MD-101-Dynamic Deployment]]&lt;/div&gt;</summary>
		<author><name>Rladmin</name></author>
		
	</entry>
	<entry>
		<id>https://wiki.lehmann.systems/index.php?title=Provisioning_Packages&amp;diff=164</id>
		<title>Provisioning Packages</title>
		<link rel="alternate" type="text/html" href="https://wiki.lehmann.systems/index.php?title=Provisioning_Packages&amp;diff=164"/>
		<updated>2019-09-23T11:19:10Z</updated>

		<summary type="html">&lt;p&gt;Rladmin: &lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;... created using the Windows Configuration Designer. Can be used to send one or more config to apps and settings on a device.&amp;lt;br&amp;gt;&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
There are some similarities between Provisioning Packages and GPOs in their handling.&amp;lt;br&amp;gt;&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
Amongst other things, PPs can perform the following functions:&lt;br /&gt;
* Configure the computer name and user accounts.&lt;br /&gt;
* Add the computer to a domain.&lt;br /&gt;
* Upgrade the Windows 10 version. (i.e. Home to Enterprise)&lt;br /&gt;
* Configure the user interface.&lt;br /&gt;
* Add additional files or install apps.&lt;br /&gt;
* Remove installed software.&lt;br /&gt;
* Configure network connectivity settings.&lt;br /&gt;
* Install certificates.&lt;br /&gt;
* Implement security settings.&lt;br /&gt;
* Reset Windows 10.&lt;br /&gt;
* Run Powershell scripts.&amp;lt;br&amp;gt;&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
Further infos: https://docs.microsoft.com/en-us/windows/configuration/provisioning-packages/provisioning-packages&lt;br /&gt;
[[Category:MD-101]]&lt;br /&gt;
[[Category:MD-101-Deploy_and_Update_OS]]&lt;br /&gt;
[[Category:MD-101-Dynamic Deployment]]&lt;/div&gt;</summary>
		<author><name>Rladmin</name></author>
		
	</entry>
	<entry>
		<id>https://wiki.lehmann.systems/index.php?title=Provisioning_Packages&amp;diff=163</id>
		<title>Provisioning Packages</title>
		<link rel="alternate" type="text/html" href="https://wiki.lehmann.systems/index.php?title=Provisioning_Packages&amp;diff=163"/>
		<updated>2019-09-23T11:17:39Z</updated>

		<summary type="html">&lt;p&gt;Rladmin: &lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;... created using the Windows Configuration Designer. Can be used to send one or more config to apps and settings on a device.&amp;lt;br&amp;gt;&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
There are some similarities between Provisioning Packages and GPOs in their handling.&amp;lt;br&amp;gt;&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
Amognst other things, PPs can perform the following functions:&lt;br /&gt;
* Configure the computer name and user accounts.&lt;br /&gt;
* Add the computer to a domain.&lt;br /&gt;
* Upgrade the Windows 10 version. (i.e. Home to Enterprise)&lt;br /&gt;
* Configure the user interface.&lt;br /&gt;
* Add additional files or install apps.&lt;br /&gt;
* Remove installed software.&lt;br /&gt;
* Configure network connectivity settings.&lt;br /&gt;
* Install certificates.&lt;br /&gt;
* Implement security settings.&lt;br /&gt;
* Reset Windows 10.&lt;br /&gt;
* Run Powershell scripts.&amp;lt;br&amp;gt;&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
Further infos: https://docs.microsoft.com/en-us/windows/configuration/provisioning-packages/provisioning-packages&lt;br /&gt;
[[Category:MD-101]]&lt;br /&gt;
[[Category:MD-101-Deploy_and_Update_OS]]&lt;br /&gt;
[[Category:MD-101-Dynamic Deployment]]&lt;/div&gt;</summary>
		<author><name>Rladmin</name></author>
		
	</entry>
	<entry>
		<id>https://wiki.lehmann.systems/index.php?title=Provisioning_Packages&amp;diff=162</id>
		<title>Provisioning Packages</title>
		<link rel="alternate" type="text/html" href="https://wiki.lehmann.systems/index.php?title=Provisioning_Packages&amp;diff=162"/>
		<updated>2019-09-23T11:11:07Z</updated>

		<summary type="html">&lt;p&gt;Rladmin: &lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;... created using the Windows Configuration Designer. Can be used to send one or more config to apps and settings on a device.&amp;lt;br&amp;gt;&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
There are some similarities between Provisioning Packages and GPOs in their handling.&amp;lt;br&amp;gt;&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
Amognst other things, PPs can perform the following functions:&lt;br /&gt;
* Configure the computer name and user accounts.&lt;br /&gt;
* Add the computer to a domain.&lt;br /&gt;
* Upgrade the Windows 10 version. (i.e. Home to Enterprise)&lt;br /&gt;
* Configure the user interface.&lt;br /&gt;
* Add additional files or install apps.&lt;br /&gt;
* Remove installed software.&lt;br /&gt;
* Configure network connectivity settings.&lt;br /&gt;
* Install certificates.&lt;br /&gt;
* Implement security settings.&lt;br /&gt;
* Reset Windows 10.&lt;br /&gt;
* Run Powershell scripts.&lt;br /&gt;
&lt;br /&gt;
[[Category:MD-101]]&lt;br /&gt;
[[Category:MD-101-Deploy_and_Update_OS]]&lt;br /&gt;
[[Category:MD-101-Dynamic Deployment]]&lt;/div&gt;</summary>
		<author><name>Rladmin</name></author>
		
	</entry>
	<entry>
		<id>https://wiki.lehmann.systems/index.php?title=Provisioning_Packages&amp;diff=161</id>
		<title>Provisioning Packages</title>
		<link rel="alternate" type="text/html" href="https://wiki.lehmann.systems/index.php?title=Provisioning_Packages&amp;diff=161"/>
		<updated>2019-09-23T10:50:09Z</updated>

		<summary type="html">&lt;p&gt;Rladmin: Die Seite wurde neu angelegt: „... created using the Windows Configuration Designer. Can be used to send one or more config to apps and settings on a device.&amp;lt;br&amp;gt; Category:MD-101 Catego…“&lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;... created using the Windows Configuration Designer. Can be used to send one or more config to apps and settings on a device.&amp;lt;br&amp;gt;&lt;br /&gt;
[[Category:MD-101]]&lt;br /&gt;
[[Category:MD-101-Deploy_and_Update_OS]]&lt;br /&gt;
[[Category:MD-101-Dynamic Deployment]]&lt;/div&gt;</summary>
		<author><name>Rladmin</name></author>
		
	</entry>
	<entry>
		<id>https://wiki.lehmann.systems/index.php?title=Kategorie:MD-101-Dynamic_Deployment&amp;diff=160</id>
		<title>Kategorie:MD-101-Dynamic Deployment</title>
		<link rel="alternate" type="text/html" href="https://wiki.lehmann.systems/index.php?title=Kategorie:MD-101-Dynamic_Deployment&amp;diff=160"/>
		<updated>2019-09-23T10:46:32Z</updated>

		<summary type="html">&lt;p&gt;Rladmin: Die Seite wurde neu angelegt: „ Category:MD-101 Category:MD-101-Deploy_and_Update_OS“&lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;&lt;br /&gt;
[[Category:MD-101]]&lt;br /&gt;
[[Category:MD-101-Deploy_and_Update_OS]]&lt;/div&gt;</summary>
		<author><name>Rladmin</name></author>
		
	</entry>
	<entry>
		<id>https://wiki.lehmann.systems/index.php?title=Kategorie:MD-101-Deploy_and_Update_OS&amp;diff=159</id>
		<title>Kategorie:MD-101-Deploy and Update OS</title>
		<link rel="alternate" type="text/html" href="https://wiki.lehmann.systems/index.php?title=Kategorie:MD-101-Deploy_and_Update_OS&amp;diff=159"/>
		<updated>2019-09-23T10:43:20Z</updated>

		<summary type="html">&lt;p&gt;Rladmin: Die Seite wurde neu angelegt: „Category:MD-101“&lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;[[Category:MD-101]]&lt;/div&gt;</summary>
		<author><name>Rladmin</name></author>
		
	</entry>
	<entry>
		<id>https://wiki.lehmann.systems/index.php?title=Hauptseite&amp;diff=158</id>
		<title>Hauptseite</title>
		<link rel="alternate" type="text/html" href="https://wiki.lehmann.systems/index.php?title=Hauptseite&amp;diff=158"/>
		<updated>2019-09-23T10:40:25Z</updated>

		<summary type="html">&lt;p&gt;Rladmin: &lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;= Installieren und Konfigurieren von Windows 10 =&lt;br /&gt;
Dieses Wiki ist für mich als Gedankenstütze und Notizblock für die Vorbereitung auf meine Microsoft-Zertifizierung 70-698 gedacht. &amp;lt;br&amp;gt;&lt;br /&gt;
Es ist wenn überhaupt nur bedingt für den Gebrauch anderer geeignet. &amp;lt;br&amp;gt;&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
Da 70-698 von MD-100 abgelöst wurde, ist das Ziel also jetzt MD-100.&amp;lt;br&amp;gt;&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
In [[:Kategorie:70-698]] sammel ich die für mich interessanten Infos.&amp;lt;br&amp;gt;&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
Mit der bestandenen Prüfung MD-100 ist das neue Ziel [[:Kategorie:MD-101|MD-101]].&lt;/div&gt;</summary>
		<author><name>Rladmin</name></author>
		
	</entry>
	<entry>
		<id>https://wiki.lehmann.systems/index.php?title=Hauptseite&amp;diff=157</id>
		<title>Hauptseite</title>
		<link rel="alternate" type="text/html" href="https://wiki.lehmann.systems/index.php?title=Hauptseite&amp;diff=157"/>
		<updated>2019-09-23T10:40:00Z</updated>

		<summary type="html">&lt;p&gt;Rladmin: &lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;= Installieren und Konfigurieren von Windows 10 =&lt;br /&gt;
Dieses Wiki ist für mich als Gedankenstütze und Notizblock für die Vorbereitung auf meine Microsoft-Zertifizierung 70-698 gedacht. &amp;lt;br&amp;gt;&lt;br /&gt;
Es ist wenn überhaupt nur bedingt für den Gebrauch anderer geeignet. &amp;lt;br&amp;gt;&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
Da 70-698 von MD-100 abgelöst wurde, ist das Ziel also jetzt MD-100.&amp;lt;br&amp;gt;&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
In [[:Kategorie:70-698]] sammel ich die für mich interessanten Infos.&amp;lt;br&amp;gt;&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
Mit der bestandenen Prüfung MD-100 ist das neue Ziel [[MD-101|:Kategorie:MD-101]].&lt;/div&gt;</summary>
		<author><name>Rladmin</name></author>
		
	</entry>
	<entry>
		<id>https://wiki.lehmann.systems/index.php?title=Hauptseite&amp;diff=156</id>
		<title>Hauptseite</title>
		<link rel="alternate" type="text/html" href="https://wiki.lehmann.systems/index.php?title=Hauptseite&amp;diff=156"/>
		<updated>2019-09-23T10:39:20Z</updated>

		<summary type="html">&lt;p&gt;Rladmin: &lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;= Installieren und Konfigurieren von Windows 10 =&lt;br /&gt;
Dieses Wiki ist für mich als Gedankenstütze und Notizblock für die Vorbereitung auf meine Microsoft-Zertifizierung 70-698 gedacht. &amp;lt;br&amp;gt;&lt;br /&gt;
Es ist wenn überhaupt nur bedingt für den Gebrauch anderer geeignet. &amp;lt;br&amp;gt;&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
Da 70-698 von MD-100 abgelöst wurde, ist das Ziel also jetzt MD-100.&amp;lt;br&amp;gt;&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
In [[:Kategorie:70-698]] sammel ich die für mich interessanten Infos.&amp;lt;br&amp;gt;&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
Mit der bestandenen Prüfung MD-100 ist das neue Ziel [[:Kategorie:MD-101]].&lt;/div&gt;</summary>
		<author><name>Rladmin</name></author>
		
	</entry>
	<entry>
		<id>https://wiki.lehmann.systems/index.php?title=Hauptseite&amp;diff=155</id>
		<title>Hauptseite</title>
		<link rel="alternate" type="text/html" href="https://wiki.lehmann.systems/index.php?title=Hauptseite&amp;diff=155"/>
		<updated>2019-09-23T10:39:06Z</updated>

		<summary type="html">&lt;p&gt;Rladmin: &lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;= Installieren und Konfigurieren von Windows 10 =&lt;br /&gt;
Dieses Wiki ist für mich als Gedankenstütze und Notizblock für die Vorbereitung auf meine Microsoft-Zertifizierung 70-698 gedacht. &amp;lt;br&amp;gt;&lt;br /&gt;
Es ist wenn überhaupt nur bedingt für den Gebrauch anderer geeignet. &amp;lt;br&amp;gt;&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
Da 70-698 von MD-100 abgelöst wurde, ist das Ziel also jetzt MD-100.&amp;lt;br&amp;gt;&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
In [[:Kategorie:70-698]] sammel ich die für mich interessanten Infos.&amp;lt;br&amp;gt;&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
Mit der bestandenen Prüfung MD-100 ist das neue Ziel [[:Kategorie:70-698]].&lt;/div&gt;</summary>
		<author><name>Rladmin</name></author>
		
	</entry>
	<entry>
		<id>https://wiki.lehmann.systems/index.php?title=Kategorie:MD-101&amp;diff=154</id>
		<title>Kategorie:MD-101</title>
		<link rel="alternate" type="text/html" href="https://wiki.lehmann.systems/index.php?title=Kategorie:MD-101&amp;diff=154"/>
		<updated>2019-09-23T10:37:40Z</updated>

		<summary type="html">&lt;p&gt;Rladmin: Leere Seite erstellt&lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;&lt;/div&gt;</summary>
		<author><name>Rladmin</name></author>
		
	</entry>
	<entry>
		<id>https://wiki.lehmann.systems/index.php?title=Hauptseite&amp;diff=153</id>
		<title>Hauptseite</title>
		<link rel="alternate" type="text/html" href="https://wiki.lehmann.systems/index.php?title=Hauptseite&amp;diff=153"/>
		<updated>2019-04-25T06:18:37Z</updated>

		<summary type="html">&lt;p&gt;Rladmin: &lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;= Installieren und Konfigurieren von Windows 10 =&lt;br /&gt;
Dieses Wiki ist für mich als Gedankenstütze und Notizblock für die Vorbereitung auf meine Microsoft-Zertifizierung 70-698 gedacht. &amp;lt;br&amp;gt;&lt;br /&gt;
Es ist wenn überhaupt nur bedingt für den Gebrauch anderer geeignet. &amp;lt;br&amp;gt;&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
Da 70-698 von MD-100 abgelöst wurde, ist das Ziel also jetzt MD-100.&amp;lt;br&amp;gt;&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
In [[:Kategorie:70-698]] sammel ich die für mich interessanten Infos.&lt;/div&gt;</summary>
		<author><name>Rladmin</name></author>
		
	</entry>
	<entry>
		<id>https://wiki.lehmann.systems/index.php?title=Hauptseite&amp;diff=152</id>
		<title>Hauptseite</title>
		<link rel="alternate" type="text/html" href="https://wiki.lehmann.systems/index.php?title=Hauptseite&amp;diff=152"/>
		<updated>2019-04-25T06:18:05Z</updated>

		<summary type="html">&lt;p&gt;Rladmin: &lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;= Installieren und Konfigurieren von Windows 10 =&lt;br /&gt;
Dieses Wiki ist für mich als Gedankenstütze und Notizblock für die Vorbereitung auf meine Microsoft-Zertifizierung 70-698 gedacht. &amp;lt;br&amp;gt;&lt;br /&gt;
Da 70-698 von MD-100 abgelöst wurde, ist das Ziel also jetzt MD-100.&amp;lt;br&amp;gt;&lt;br /&gt;
Es ist wenn überhaupt nur bedingt für den Gebrauch anderer geeignet. &amp;lt;br&amp;gt;&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
In [[:Kategorie:70-698]] sammel ich die für mich interessanten Infos.&lt;/div&gt;</summary>
		<author><name>Rladmin</name></author>
		
	</entry>
	<entry>
		<id>https://wiki.lehmann.systems/index.php?title=Tools_zur_Treiber%C3%BCberpr%C3%BCfung&amp;diff=151</id>
		<title>Tools zur Treiberüberprüfung</title>
		<link rel="alternate" type="text/html" href="https://wiki.lehmann.systems/index.php?title=Tools_zur_Treiber%C3%BCberpr%C3%BCfung&amp;diff=151"/>
		<updated>2019-03-03T10:53:00Z</updated>

		<summary type="html">&lt;p&gt;Rladmin: &lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;'''sigverif.exe'''&amp;lt;br&amp;gt;&amp;lt;br&amp;gt;&lt;br /&gt;
... überprüft ob die installierten Treiber signiert sind. Das Tool kann mit Standard-Benutzer-Berechtigungen ausgeführt werden. Die Ergebnisse werden in der Datei SIGVERIF.TXT gespeichert. Der Speicherort sollte %System-Root% sein, war aber in meinem Test C:\Users\Public\Documents.&amp;lt;br&amp;gt;&amp;lt;br&amp;gt;&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
'''verifier.exe'''&amp;lt;br&amp;gt;&amp;lt;br&amp;gt;&lt;br /&gt;
Der Treiberüberprüfungs-Manager bietet mehr Möglichkeiten, muss aber mit Administrator-Berechtigung ausgeführt werden. Die Verwendung erfolgt in zwei Schritten:&lt;br /&gt;
# Zuerst führt man das Tool aus und legt in den Einstellungen fest welche Treiber überprüft werden sollen.&lt;br /&gt;
# Anschließend kann man nach einem Neustart mit der Option ''Informationen über verifizierte Treiber anzeigen'' die gesammelten Informationen.&lt;br /&gt;
[https://www.youtube.com/watch?v=vrrfsjhGMn4 Youtube Tutorial verifier.exe]&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
[[Kategorie:70-698]]&lt;br /&gt;
[[Kategorie:Windows Implementierung]]&lt;br /&gt;
[[Kategorie:Windows Geräte und Treiber]]&lt;/div&gt;</summary>
		<author><name>Rladmin</name></author>
		
	</entry>
	<entry>
		<id>https://wiki.lehmann.systems/index.php?title=Tools_zur_Treiber%C3%BCberpr%C3%BCfung&amp;diff=150</id>
		<title>Tools zur Treiberüberprüfung</title>
		<link rel="alternate" type="text/html" href="https://wiki.lehmann.systems/index.php?title=Tools_zur_Treiber%C3%BCberpr%C3%BCfung&amp;diff=150"/>
		<updated>2019-03-03T10:03:56Z</updated>

		<summary type="html">&lt;p&gt;Rladmin: Die Seite wurde neu angelegt: „ Kategorie:70-698 Kategorie:Windows Implementierung Kategorie:Windows Geräte und Treiber“&lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;&lt;br /&gt;
[[Kategorie:70-698]]&lt;br /&gt;
[[Kategorie:Windows Implementierung]]&lt;br /&gt;
[[Kategorie:Windows Geräte und Treiber]]&lt;/div&gt;</summary>
		<author><name>Rladmin</name></author>
		
	</entry>
	<entry>
		<id>https://wiki.lehmann.systems/index.php?title=Allgemeines_zu_Ger%C3%A4ten_und_Treibern&amp;diff=149</id>
		<title>Allgemeines zu Geräten und Treibern</title>
		<link rel="alternate" type="text/html" href="https://wiki.lehmann.systems/index.php?title=Allgemeines_zu_Ger%C3%A4ten_und_Treibern&amp;diff=149"/>
		<updated>2019-03-03T09:56:33Z</updated>

		<summary type="html">&lt;p&gt;Rladmin: &lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;Treiber werden bei Windows 10 durch ausgeprägte Plug-And-Play-Funktionen hauptsächlich aus dem lokalen Speicher oder Windows Update bezogen. Falls dort kein passender Treiber gefunden wird oder es zu Problemen mit dem Gerät kommt, kann man einen Treiber via Gerätemanager manuell installieren. Falls ein über Windows Update installierter Treiber Probleme macht, muss man diesen ggf. via ''Update und Sicherheit &amp;gt; Windows Update &amp;gt; Updateverlauf &amp;gt; Updates deinstallieren'' entfernen.&amp;lt;br&amp;gt;&amp;lt;br&amp;gt;&lt;br /&gt;
Standardmäßig werden Trieber von Windows Update nicht über getaktete Verbindungen heruntergeladen. Das kann man aber auch via ''Geräte &amp;gt; Drucker &amp;amp; Scanner &amp;gt; Download über getaktete Verbindungen'' aktivieren.&amp;lt;br&amp;gt;&amp;lt;br&amp;gt;&lt;br /&gt;
Falls es bei der Deinstallation von Treibern Probleme gibt, kann man zur Not die Treiber manuell mit PnPUtil.exe löschen:&amp;lt;br&amp;gt;&lt;br /&gt;
&amp;lt;code&amp;gt;pnputil.exe -a -d &amp;lt;Pfad_zum_Treiber&amp;gt;\&amp;lt;Treibername&amp;gt;.inf&amp;lt;/code&amp;gt;&amp;lt;br&amp;gt;&amp;lt;br&amp;gt;&lt;br /&gt;
Die automatische Installation von Treibern auf einem System kann man verhindern via ''Systemsteuerung &amp;gt; Geräte und Drucker &amp;gt; [ Computername ] &amp;gt; Geräteinstallationseinstellungen''.&amp;lt;br&amp;gt;&amp;lt;br&amp;gt;&lt;br /&gt;
Falls nur ein Treiber oder Windows-Update deaktiviert werden soll geht das mit dem Problembehandlungstool &amp;quot;''Show or hide updates''&amp;quot;: https://support.microsoft.com/kb/3073930&lt;br /&gt;
[[Kategorie:70-698]]&lt;br /&gt;
[[Kategorie:Windows Implementierung]]&lt;br /&gt;
[[Kategorie:Windows Geräte und Treiber]]&lt;/div&gt;</summary>
		<author><name>Rladmin</name></author>
		
	</entry>
	<entry>
		<id>https://wiki.lehmann.systems/index.php?title=Erweiterter_Start&amp;diff=148</id>
		<title>Erweiterter Start</title>
		<link rel="alternate" type="text/html" href="https://wiki.lehmann.systems/index.php?title=Erweiterter_Start&amp;diff=148"/>
		<updated>2019-03-03T09:51:11Z</updated>

		<summary type="html">&lt;p&gt;Rladmin: Die Seite wurde neu angelegt: „Über den erweiterten Start kann man bspw. den abgesicherten Modus starten oder das Erzwingen der Treibersignatur deaktivieren.&amp;lt;br&amp;gt; Es gibt zwei Möglichkeiten…“&lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;Über den erweiterten Start kann man bspw. den abgesicherten Modus starten oder das Erzwingen der Treibersignatur deaktivieren.&amp;lt;br&amp;gt;&lt;br /&gt;
Es gibt zwei Möglichkeiten diesen aufzurufen:&lt;br /&gt;
* Einstellungen &amp;gt; Update und Sicherheit &amp;gt; Wiederherstellung &amp;gt; Erweiterter Start &amp;gt; Jetzt neu starten&lt;br /&gt;
* Start &amp;gt; (Umschalttaste) + Click auf Neustarten&lt;br /&gt;
&lt;br /&gt;
[[Kategorie:70-698]]&lt;br /&gt;
[[Kategorie:Windows Implementierung]]&lt;br /&gt;
[[Kategorie:Windows Geräte und Treiber]]&lt;/div&gt;</summary>
		<author><name>Rladmin</name></author>
		
	</entry>
</feed>