#Microsoft BitLocker Administration and Monitoring (MBAM)
Explore tagged Tumblr posts
techdirectarchive · 1 month ago
Text
BitLocker behavior when MBAM agent is removed: No Uninstall Option in Control Panel
MBAM (Microsoft BitLocker Administration and Monitoring) is a tool that enables you (organizations) to centrally manage and monitor BitLocker Drive Encryption across Windows devices. In this article, we shall discuss “BitLocker behavior when MBAM agent is removed: Remove MBAM Agent When Uninstall Option is missing”. Please, see Get a list of installed programs locally or remotely in Windows.…
4 notes · View notes
ltdbanana · 3 years ago
Text
Microsoft desktop optimization pack windows 10
Tumblr media
Microsoft desktop optimization pack windows 10 install#
Microsoft desktop optimization pack windows 10 for windows 10#
Microsoft desktop optimization pack windows 10 software#
The Optimization Pack requires the installation of the RealTime Media Engine on the terminal device. If you have Microsoft Skype for Business running as a published application, restart it (Microsoft Skype for Business).
Microsoft desktop optimization pack windows 10 install#
Increase your PC Speed by stopping unwanted Applications and Services running in the background with Instant System Booster.ĭo you need to install the realtime optimization pack? Easily repair Registry items, clean useless Junk, defragment Registry, instantly boost PC and increase Internet Speed.
Microsoft desktop optimization pack windows 10 software#
Microsoft Desktop Optimization Pack (MDOP) can help you deploy and manage customer environments effectively, and earn the following competency: MDOP is a benefit of Windows Software Assurance for Volume Licensing customers.īy using 10 Optimizer your PC will be more Responsive, Faster and Cleaner. What does Microsoft Desktop Optimization pack ( MDOP ) do?
Microsoft desktop optimization pack windows 10 for windows 10#
“For individuals who have chosen to receive automatic updates through Windows Update, we help upgradable devices get ready for Windows 10 by downloading the files they’ll need if they decide to upgrade. However, with the launch of Windows 10, MDOP is made free for Software Assurance customers. Is the Microsoft Desktop Optimization pack for Windows 10 free? Whether an MDOP is charged as a misdemeanor or serious felony will depend upon the extent of property damage. Microsoft BitLocker Administration and Monitoring (MBAM)Ī person who willfully and maliciously damages the property of another can be charged with a crime know as malicious destruction of property, commonly known as MDOP.Microsoft Advanced Group Policy Management (AGPM).Microsoft Enterprise Desktop Virtualization (MED-V).Microsoft User Experience Virtualization (UE-V).Microsoft Application Virtualization (App-V).BitLocker offers enhanced protection against data theft or data exposure for computers that are lost or stolen. Microsoft BitLocker Administration and Monitoring (MBAM) 2.5 provides a simplified administrative interface for BitLocker Drive Encryption. Download MDOP MDOP subscribers can download the software at the Microsoft Volume Licensing website (MVLS). MDOP is available as an additional subscription for Software Assurance customers. MDOP is a suite of products that can help streamline desktop deployment, management, and support across the enterprise. Where can I download Microsoft Desktop Optimization Pack? Do you need to install the realtime optimization pack?.What can I do with Windows 10 optimizer?.What does Microsoft Desktop Optimization pack ( MDOP ) do?.Is the Microsoft Desktop Optimization pack for Windows 10 free?.Where can I download Microsoft Desktop Optimization Pack?.
Tumblr media
0 notes
htmdcommunity · 5 years ago
Text
ConfigMgr BitLocker Management Reports | SCCM
[New Post] #ConfigMgr BitLocker Management Reports | #SCCM #MEMCM #MEMPowered
Let’s understand which are the ConfigMgr BitLocker Management Reports (default) available. You can use ConfigMgr to manage BitLocker Drive Encryption (BDE) for on-premises Windows 10 clients to Active Directory. SCCM Bitlocker management provides full BitLocker lifecycle management that can replace the use of Microsoft BitLocker Administration and Monitoring (MBAM). Microsoft introduced…
Tumblr media
View On WordPress
0 notes
enterinit · 5 years ago
Text
Configuration Manager current branch 1910 KB4537079
Tumblr media
Configuration Manager current branch 1910 KB4537079.
Issues that are fixed
The Configuration Manager console may terminate unexpectedly when viewing the properties of a third-party software updates catalog.  Local policy instances are not copied to Actual (current) policy on clients if there are no policies downloaded from the site server. Distribution Points incorrect display a failed status for deployment packages. This occurs if the Distribution Point is removed from a Distribution Point group while it is in maintenance mode. The SCCMPXE service consumes more memory than expected after updating to Configuration Manager version 1910. The Create Cloud Management Gateway Wizard only displays the first 50 Subscription ID's for a given account. Any subscriptions beyond the first 50 are not available for use in the wizard. Powershell.exe terminates unexpectedly when importing modules using the Connect via PowerShell option in the Configuration Manager console. The BitLocker drive status shows as non-compliant when the drive is encrypted. This occurs when using Microsoft BitLocker Administration and Monitoring (MBAM) policies and the policies are set to disabled or not configured. Clients within the boundaries of a secondary site repeatedly send registration requests until the secondary site server is restarted. After a client is successfully registered, a message resembling the following is recorded in the ClientIDManagerStartup.log file, indicating that the client will register again. - Client is not registered. Sending registration request for GUID:{client_GUID} ...  Personal view preferences for the Configuration Manager console are lost when connecting back to the console via a Remote Desktop session.  The following additional issue is resolved with the installation of this update rollup. KB4542722 SQL database compatibility level changes after applying Configuration Manager updates Read the full article
0 notes
cmozbe · 8 years ago
Text
Last Week on Twitter 2017-09-04 – 2017-09-10
Last Week on Twitter 2017-09-04 – 2017-09-10
Microsoft BitLocker Administration and Monitoring (MBAM v2.5) Tips https://t.co/FpTLdCqa0Y #microsoft #feedly 2017-09-04 Last Week on Twitter 2017-08-28 – 2017-09-03 https://t.co/mijqdmexjZ 2017-09-05 The Mirai Botnet: A Look Back and Ahead At What's Next, (Tue, Sep 5th) https://t.co/JFXfJN1d7e #security #feedly 2017-09-05 Morning conversation: "Leave the monkey, grab your backpack.." 2017-09-05…
View On WordPress
0 notes
techdirectarchive · 6 months ago
Text
Get MBAM BitLocker Recovery Keys from Microsoft SQL Server
Microsoft BitLocker Administration and Monitoring (MBAM) provides a simplified administrative interface that you can use to manage BitLocker Drive Encryption. Therefore, customers find this solution very useful for managing client PCs with BitLocker that are domain-joined on-premises. In this article, we shall discuss how to Get MBAM BitLocker Recovery Keys from Microsoft SQL Server. Please see…
0 notes
techdirectarchive · 8 months ago
Text
MBAM extended support ends April 2026: Find alternative solution
Microsoft will end MBAM’s extended support in April 2026, requiring organizations to find alternative solutions. Without support or updates, MBAM’s functionality will no longer meet security standards or support future-proofing efforts. Therefore, in this article, we shall be discussing other tools to replace Microsoft BitLocker Administration and Monitoring since “MBAM extended support ends…
0 notes
techdirectarchive · 3 years ago
Text
How to deploy MBAM Client to Computers as Part of a Windows Deployment
How to deploy MBAM Client to Computers as Part of a Windows Deployment
Tumblr media
View On WordPress
0 notes
techdirectarchive · 3 years ago
Text
Recovery Audit Report: How to query MBAM to display the report for BitLocker Recovery for a specified period of time
Recovery Audit Report: How to query MBAM to display the report for BitLocker Recovery for a specified period of time
MBAM reports compliance and other information about all of the computers and devices it manages. The information in this topic can be used to help understand the Microsoft BitLocker Administration and Monitoring reports for enterprise and individual computer compliance and for key recovery activity. Here are some related guides: Enterprise Compliance, Computer Compliance, and Recovery Audit…
Tumblr media
View On WordPress
0 notes
enterinit · 6 years ago
Text
Microsoft Endpoint Configuration Manager current branch Update 1910
Tumblr media
Microsoft Endpoint Configuration Manager current branch Update 1910. NOTE: In Windows 10, when you open the Start menu, just start typing the name to find the icon. For example, config for the Configuration Manager console, and software for Software Center. CMPivot now works better together with Microsoft Defender Advanced Threat Protection (ATP) software, by linking the CMPivot output with relevant ATP details. The performance of CMPivot has been improved by offloading querying to the client to reduce network traffic and load on the servers. You now have the ability to run queries just locally on “This PC”, for WMI related data. Running on “This PC” saves the need to use the Configuration Manager infrastructure at all and returns data faster, so you can pivot and hone your query to be precisely what you want, before you consume network bandwidth resources. This aids in writing the correct query. We have added joins and more operators (+,-,*,/,%) and exposed file hashes (MD5 and SHA256) to find files masquerading as others. To make sharing queries easier, we have added a query shortcuts feature, that lets you copy & paste the query to a clipboard and send it via email to collaborators. When the collaborator clicks the link to the query, it will auto-launch CMPivot standalone and provide the same query for them to run.
Real-time management
Optimizations to the CMPivot engine We've added some significant optimizations to the CMPivot engine that allows us to push more of the processing to the ConfigMgr client. The optimizations drastically reduce the network and server CPU load needed to run CMPivot queries. With these optimizations, we can now sift through gigabytes of client data in real time. Additional CMPivot Entities and Enhancements We've added a number of new CMPivot entities and entity enhancements to aid in troubleshooting and hunting. We've included the following entities to query: Windows event logs (WinEvent)File content (FileContent)Dlls loaded by processes (ProcessModule)Azure Active Directory information (AADStatus)Endpoint protection status (EPStatus) Microsoft Connected Cache support for Intune Win32 apps When you enable Microsoft Connected Cache on your Configuration Manager distribution points, they can now serve Microsoft Intune Win32 apps to co-managed clients. NOTE: Configuration Manager current branch version 1906 included Delivery Optimization In-Network Cache (DOINC), an application installed on Windows Server that's still in development. Starting in current branch version 1910, this feature is now called Microsoft Connected Cache. When you install Connected Cache on a Configuration Manager distribution point, it offloads Delivery Optimization service traffic to local sources. Connected Cache does this behavior by efficientl caching content at the byte range level.
Desktop Analytics
Support for Desktop Analytics - This release provides support for Desktop Analytics which is now generally available. Desktop Analytics provides the insight and automation you need to efficiently get current and stay current with Windows. By integrating with Configuration Manager, Desktop Analytics adds cloud value to your on-premises infrastructure.
Site infrastructure
Reclaim SEDO lock - Starting in current branch version 1906, you could clear your lock on a task sequence. Now you can clear your lock on any object in the Configuration Manager console.Extend and Migrate on-premises Configuration Manager environment to Microsoft Azure - This new tool helps you to programmatically create Azure virtual machines (VMs) for Configuration Manager. It can install with default settings site roles like a passive site server, management points, and distribution points. Once you validate the new roles, use them as additional site systems for high availability. You can also remove the on-premises site system role and only keep the Azure VM role
Client Management
Include custom configuration baselines as part of compliance policy assessment - You can now add evaluation of custom configuration baselines as a compliance policy assessment rule. When you create or edit a configuration baseline, you have an option to Evaluate this baseline as part of compliance policy assessment. When adding or editing a compliance policy rule, you have a condition called Include configured baselines in compliance policy assessment.Enable user policy for Windows 10 Enterprise multi-session – Configuration Manager current branch version 1906 introduced support for Windows Virtual Desktop. In this release if you require user policy on these multi-session devices, and accept any potential performance impact, you can now configure a client setting to enable user policy.
Application Management
Deploy Microsoft Edge, version 77 and later - The all-new Microsoft Edge is ready for business. You can now deploy Microsoft Edge, version 77 and later to your users. Admins can pick the Beta or Dev channel, along with a version of the Microsoft Edge client to deploy.Improvements to application groups – This release includes the following improvements: Users can Uninstall the app group in Software Center.You can deploy an app group to a user collection.
Operating System Deployment
Task sequence performance improvements - power plans - You can now run a task sequence with the high performance power plan. This option improves the overall speed of the task sequence.Task sequence download on demand over the internet – Starting in this release, the task sequence engine can download packages on-demand from a content-enabled CMG or a cloud distribution point. This change provides additional flexibility with your Windows 10 in-place upgrade deployments to internet-based device.Improvements to the task sequence editor You can now search in the task sequence editor. This action lets you more quickly locate steps in the task sequence.If you want to reuse the conditions from one task sequence step to another, you can now copy and paste conditions in the task sequence editor. Improvements to OSDBoot image keyboard layoutImport a single index of an OS upgrade packageOutput the results of a Run Command Line step to a variable during a task sequenceImprovements to task sequence debuggerImproved language support in task sequence Improved language support in task sequence This release adds control over language configuration during OS deployment. If you're already applying these language settings, this change can help you simplify your OS deployment task sequence. Instead of using multiple steps per language or separate scripts, use one instance per language of the built-in Apply Windows Settings step with a condition for that language. Use the Apply Windows Settings task sequence step to configure the following new settings: Input locale (default keyboard layout)System localeUI languageUI language fallbackUser locale New variable for Windows 10 in-place upgrade To address timing issues with the Window 10 in-place upgrade task sequence on high performance devices when Windows setup is complete, you can now set a new task sequence variable SetupCompletePause. When you assign a value in seconds to this variable, the Windows setup process delays that amount of time before it starts the task sequence. This timeout provides the Configuration Manager client additional time to initialize.
Protection
Bitlocker Management (MBAM) - Configuration Manager now provides the following management capabilities for BitLocker Drive Encryption: Deploy the BitLocker client to managed Windows devicesManage device encryption policesCompliance reportsAdministration and monitoring website for key recoveryA user self-service portal
Software updates
Additional options for third-party update catalogs - You now have more granular controls over synchronization of third-party updates catalogs. Starting in Configuration Manager version 1910, you can configure the synchronization schedule for each catalog independently. When using catalogs that include categorized updates, you can configure synchronization to include only specific categories of updates to avoid synchronizing the entire catalog.Use Delivery Optimization for all Windows updates - Previously, Delivery Optimization could be leveraged only for express updates. With Configuration Manager version 1910, it’s now possible to use Delivery Optimization for the distribution of all Windows Update content for clients running Windows 10 version 1709 or later.Additional software update filter for ADRs - You can now use Deployed as an update filter for your automatic deployment rules. This filter helps identify new updates that may need to be deployed to your pilot or test collections.
Office Management
Office 365 ProPlus Pilot and Health Dashboard - The Office 365 ProPlus Pilot and Health Dashboard helps you plan, pilot, and perform your Office 365 ProPlus deployment. The dashboard provides health insights for devices with Office 365 ProPlus to help identify possible issues that may affect your deployment plans.
Configuration Manager Console
View active consoles and message administrators through Console Connections – You now have the ability to message other Configuration Manager administrators through Microsoft Teams. Also, the Last Console Heartbeat column has replaced the Last Connected TimeClient diagnostics actions - You can now enable and disable verbose and debugging logging for the CCM component from the console.
Windows PowerShell MECM 1910
New cmdlets New-CMDuplicateHardwareIdGuid Use this cmdlet to add duplicate hardware identifiers by GUID. PowerShell New-CMDuplicateHardwareIdGuid -Id 24D0F753-B2E2-4D9C-B07C-099C4FC1EF3C New-CMDuplicateHardwareIdMacAddress Use this cmdlet to add duplicate hardware identifiers by MAC address. PowerShell New-CMDuplicateHardwareIdMacAddress -MacAddress 01:02:03:04:05:E0 New-CMThirdPartyUpdateCatalog Use this cmdlet to create a new third-party updates catalog. PowerShell New-CMThirdPartyUpdateCatalog -DownloadUrl $downloadUrl -PublisherName $publisher -Name $name -Description $description -SupportUrl $supportUrl -SupportContact $supportContact Get-CMThirdPartyUpdateCatalog Use this cmdlet to get a third-party updates catalog. PowerShell Get-CMThirdPartyUpdateCatalog Get-CMThirdPartyUpdateCatalog -Id $id Get-CMThirdPartyUpdateCatalog -Name $name Get-CMThirdPartyUpdateCatalog -SiteCode $siteCode Get-CMThirdPartyUpdateCatalog -IsSyncEnabled $true Get-CMThirdPartyUpdateCatalog -IsCustomCatalog $true Set-CMThirdPartyUpdateCatalog Use this cmdlet to modify a third-party updates catalog. PowerShell Set-CMThirdPartyUpdateCatalog -Name $name -NewName $newName Set-CMThirdPartyUpdateCatalog -ThirdPartyUpdateCatalog $catalog -Description $newdescription $catalog | Set-CMThirdPartyUpdateCatalog -SupportContact $newSupportContact -SupportUrl $newSupportUrl Remove-CMDuplicateHardwareIdGuid Use this cmdlet to remove duplicate hardware identifiers by GUID. PowerShell Remove-CMDuplicateHardwareIdGuid -Id 24D0F753-B2E2-4D9C-B07C-099C4FC1EF3C Remove-CMDuplicateHardwareIdGuid -InputObject $myGuid #() Remove-CMDuplicateHardwareIdMacAddress Use this cmdlet to remove duplicate hardware identifiers by MAC address. PowerShell Remove-CMDuplicateHardwareIdMacAddress -MacAddress 01:02:03:04:05:E0 Remove-CMDuplicateHardwareIdMacAddress -InputObject $myMacAddress #() Remove-CMThirdPartyUpdateCatalog Use this cmdlet to remove a third-party updates catalog. PowerShell Remove-CMThirdPartyUpdateCatalog -Id $catalog.ID -Force Remove-CMThirdPartyUpdateCatalog -Name $catalog.Name -Force Remove-CMThirdPartyUpdateCatalog -ThirdPartyUpdateCatalog $catalog -Force $catalog | Remove-CMThirdPartyUpdateCatalog -Force Removed cmdlets None Deprecated cmdlets The following cmdlets are deprecated with the end of hybrid service: Add-CMIntuneSubscriptionAdd-CMMdmEnrollmentManager (Add-CMIntuneDeviceEnrollmentManager)Export-CMWindowsEnrollmentProfileGet-CMConditionalAccessPolicy (Get-CMOnPremConditionalAccessPolicy)Get-CMCorpOwnedDeviceGet-CMDeviceActionState (Get-CMDeviceAction)Get-CMIntuneSubscriptionGet-CMIosEnrollmentProfileGet-CMMdmEnrollmentManager (Get-CMIntuneDeviceEnrollmentManager)Get-CMWindowsEnrollmentProfileGet-CMWindowsEnrollmentProfilePackageInvoke-CMDeviceAction New-CMApnsCertificateRequest New-CMConditionalAccessPolicy (New-CMOnPremConditionalAccessPolicy)New-CMDepTokenRequestNew-CMIosEnrollmentProfileNew-CMWindowsEnrollmentProfileRemove-CMConditionalAccessPolicy (Remove-CMOnPremConditionalAccessPolicy)Remove-CMCorpOwnedDeviceRemove-CMIntuneSubscriptionRemove-CMIosEnrollmentProfileRemove-CMMdmEnrollmentManager (Remove-CMIntuneDeviceEnrollmentManager)Remove-CMWindowsEnrollmentProfileRemove-CMWindowsEnrollmentProfilePackageSet-CMConditionalAccessPolicy (Set-CMOnPremConditionalAccessPolicy)Set-CMIntuneSubscriptionSet-CMIntuneSubscriptionAndroidProperty (Set-CMIntuneSubscriptionAndroidProperties)Set-CMIntuneSubscriptionAppleDepPropertySet-CMIntuneSubscriptionAppleProperty (aliases:)Set-CMIntuneSubscriptionMacOSPropertiesSet-CMIntuneSubscriptionIosPropertiesSet-CMIntuneSubscriptionMacOSPropertySet-CMIntuneSubscriptionIosPropertySet-CMIntuneSubscriptionAppleMdmPropertySet-CMIntuneSubscriptionPassportForWorkPropertySet-CMIntuneSubscriptionWindowsPhoneProperty (Set-CMIntuneSubscriptionWindowsPhoneProperties)Set-CMIntuneSubscriptionWindowsProperty (Set-CMIntuneSubscriptionWindowsProperties)Set-CMIosEnrollmentProfileSet-CMIosEnrollmentProfileAssignmentSet-CMWindowsEnrollmentProfile Read the full article
0 notes
enterinit · 6 years ago
Text
Configuration Manager Technical Preview 1909 available
Tumblr media
Configuration Manager Technical Preview 1909 available. Create an orchestration group to better control the deployment of software updates to devices. Many server administrators need to carefully manage updates for specific workloads, and automate behaviors in between. For example: As the software updates administrator, you manage all updates for your organization.You have one large collection for all servers and one large collection for all clients. You deploy all updates to these collections.The SQL administrators want to control all the software installed on the SQL servers. They want to patch five servers in a specific order. Their current process is to manually stop specific services before installing updates, and then restart the services afterwards.You create an orchestration group and add all five SQL servers. You also add pre- and post-scripts, using the PowerShell scripts provided by the SQL administrators.Without any changes to your existing deployments, the software update process is fully automated for the five SQL servers in the orchestration group. An orchestration group gives you the flexibility to update devices based on a percentage, a specific number, or an explicit order. You can also run a PowerShell script before and after the devices run the update deployment. Members of an orchestration group can be any Configuration Manager client, not just servers. The configuration of the orchestration group applies to the devices for all software update deployments to any collection that contains an orchestration group member. Other deployment behaviors still apply. For example, maintenance windows and deployment schedules. Improvements to BitLocker management - Starting in technical preview version 1905, you could use Configuration Manager to install and manage the Microsoft BitLocker Administration and Monitoring (MBAM) client. This release now adds support for integrated reports, a helpdesk portal for administration and monitoring, and a self-service portal for users. Extend and migrate an on-premises site to Microsoft Azure - This new tool helps you to programmatically create Azure virtual machines (VMs) for Configuration Manager. It can install with default settings site roles like a passive site server, management points, and distribution points. Once you validate the new roles, use them as additional site systems for high availability. You can also remove the on-premises site system role and only keep the Azure VM role. Additional CMPivot entities and enhancements - Based on user-voice feedback, we've added a number of new CMPivot entities and entity enhancements to aid in troubleshooting and hunting. We've included entities to query: Windows event logsFile contentDlls loaded by processesAzure Active Directory informationEndpoint protection status This release also includes several other enhancements to CMPivot. Task sequence download on demand over the internet - Starting in this release, the task sequence engine can download packages on-demand from a content-enabled CMG or a cloud distribution point. This change provides additional flexibility with your Windows 10 in-place upgrade deployments to internet-based devices. Improved language support in task sequence - Starting in technical preview version 1908.2, you could specify the default keyboard layout (Input locale) during OS deployment. This release adds further control over language configuration during this process. If you're already applying these language settings, this change can help you simplify your OS deployment task sequence. Instead of using multiple steps per language or separate scripts, use one instance per language of the built-in Apply Windows Settings step with a condition for that language. Use the Apply Windows Settings task sequence step to configure the following new settings: System localeUI languageUI language fallbackUser locale Support for Windows Insider - You can now service and update devices running Windows Insider Preview builds with Configuration Manager. This change means you can manage these devices without changing your normal processes or enabling Windows Update for Business. You can download feature updates and cumulative updates for Windows Insider Preview builds into Configuration Manager just like any other Windows 10 update or upgrade. Read the full article
0 notes
enterinit · 6 years ago
Text
System Center Configuration Manager Technical Preview 1905 available
Tumblr media
System Center Configuration Manager Technical Preview 1905 available. Now you can create a group of applications that you can send to a user or device collection as a single deployment. The metadata you specify about the app group is seen in Software Center as a single entity. You can order the apps in the group so that the client installs them in a specific order. This preview release also includes: Improvements to Configuration Manager console - Based on customer feedback at the Midwest Management Summit (MMS) 2019, this release includes improvements to the Configuration Manager console.BitLocker Management – You can now use Configuration Manager to install and manage the Microsoft BitLocker Administration and Monitoring (MBAM) client.OneTrace log viewer - OneTrace is a new log viewer. It works similarly to CMTrace, and includes improvements such as a tabbed view, dockable windows and improved search capabilities.Retry the install of pre-approved applications - You can now retry the installation of an application that you previously approved for a user or device.Install applications for a device - From the Configuration Manager console, you can now install applications to a device in real time. This feature can help reduce the need for separate collections for every application.Improvements to Community Hub – The Community Hub now supports task sequences, applications and configuration items and also manages updates to shared objects.More frequent countdown notifications for restarts - End users will now be reminded more frequently of a pending restart with intermittent countdown notifications.Improvements to Software Center tab customizations - You can now add up to five custom tabs in Software Center. You can also edit the order in which these tabs appear in Software Center.Task Sequence as an app model deployment type – You can now install complex applications using task sequences via the application model. Add a deployment type to an app that's a task sequence, either to install or uninstall the app.Task Sequence Debugger - The task sequence debugger is a new troubleshooting tool. You deploy a task sequence in debug mode to a collection of one device. It lets you step through the task sequence in a controlled manner to aid troubleshooting and investigation.Improved control over WSUS maintenance - You now have more granular control over the WSUS maintenance tasks that Configuration Manager runs to maintain healthy software update points. In addition to declining expired updates in WSUS, Configuration Manager can now remove obsolete updates from the WSUS database.View SMBIOS GUID Column in device lists – You now have the option to add a column containing device SMBIOS values to Device and Device collection nodes.Windows Defender Application Guard file trust criteria – There is a new policy setting that enables users to trust files that normally open in Windows Defender Application Guard (WDAG). Upon successful completion, the files will open on the host instead of in WDAG.Delivery Optimization download data in client data sources dashboard – The Client data sources dashboard now includes Delivery Optimization data. This dashboard helps you understand from where clients are getting content in your environment.Synchronize collection membership results to Azure Active Directory groups - You can now enable the synchronization of collection memberships to an Azure Active Directory (Azure AD) group. This synchronization allows you to use your existing on premises grouping rules in the cloud.Configure client cache minimum retention period - You can now specify the minimum time for the Configuration Manager client to keep cached content. This client setting controls how long the client stores content in the cache before deleting it. Read the full article
0 notes