MD-101-Manage Policies and Profiles Summary

  • devices can be managed joinedly in both System Center COnfiguration Manger and Microft Intune. That is called co-management.
  • Intune can take precedence over GPOs starting 1803.
  • MDM Migration Analysis Tools checks for GPOs that can be implemented with the MDM.
  • Conditional access policies check conditions before access to corporate resources is granted.
    • Conditions can be:
      • controlled apps
      • controll of device requirements like encryption of the drives, jail brake etc.
      • etc.
    • Azure AD evaluates them.
    • A test plan should be created when they are implemented.
  • Devices will check their compliance status periodically with Intune.