Event banner
Unpacking endpoint management: ask Danny & Steve anything
Event details
Looking for tips and tricks to help you optimize and simplify the way you manage your endpoints? Come to this live Q&A session!
Danny Guillory and Steve Thomas are bring their "Unpacking endpoint management" web series to Tech Community and answering your questions live about device configuration and management. Co-management, tenant attach, the cloud management gateway questions? Bring them! Blockers or struggles? Bring them!
Submit your questions during this live hour--or submit questions early (by posting a Comment below) and catch up when it's convenient for you.
82 Comments
- jjgreinCopper ContributorWhat controls are expected for managing MS Store app self service purchases?
- David_SwensonIron ContributorCan we also have official guidance on how to deploy apps using WinGet in Endpoint Manager?
- Joe_Lurie
Microsoft
We posted a blog about this just this morning! https://aka.ms/Windows/MSFB_Evolution.- pfennigdCopper ContributorWith respect to the new WSfB, will that still require Azure to take advantage of it in conjunction with a UEM solution?
- Heather_Poulsen
Community Manager
Welcome to the Unpacking endpoint management Ask Microsoft Anything (AMA)! This live hour gives you the opportunity to ask questions and provide feedback to the engineering and product teams building Windows. Introduce yourself by replying to this thread. Post each question in the Comment on this event… box above.
- Andy1Q7Copper ContributorWe often have problems with machines that have not been patched for a long time and will come on and want to do autopilot (shelfware). I manage to script Windows Updates but its a pain.... will we see there features that update windows drivers and firmware during autopilot? for Office I can not use the build in functionality because the office ODT tool on those machines is ancient and causes office to fail. They only way to fix this is to make a win32 intunewin with the current odt. Will intune learn to update the windows build in odt at some point?
- David_Guyer
Microsoft
Andy, the idea to have drivers and firmware updated during Autopilot is some great feedback. We appreciate your feedback and can consider this.
- trebelowBrass Contributor
1. When will the long announced integration of ConfigMgr in Autopilot Deployment be available?
2. will this be fixed with windows 11?
"When you're deploying Win32 apps, consider using the https://docs.microsoft.com/en-us/mem/intune/apps/intune-management-extension approach exclusively, particularly when you have a multiple-file Win32 app installer. If you mix the installation of Win32 apps and line-of-business apps during AutoPilot enrollment, the app installation might fail. The Intune management extension is installed automatically when a PowerShell script or Win32 app is assigned to the user or device."
- Jason_Sandys
Microsoft
Hi trebelow, for #1, I'm assuming that you mean the feature set announced by Rob York at Ignite that enables a device to be directly co-managed during Autopilot. If so, this is an on-going effort but we have nothing to announce about its availability at this time. Do keep in mind though this feature set is only for AADJ scenarios.
For #2, this is a deeper challenge that isn't really specific to Autopilot. Can you expand on why this is a blocker or pain-point for you?
- trebelowBrass ContributorFor the end-user experience, we would like to install all applications (Win32 Apps, LOB and Office) via Whiteglove. This is not possible / reliable today. This is the reason why we have to install Office in the user part, which leads to further problems as additional Win32 apps are also assigned to the user.
- rejohnsonIron ContributorYoutube is refusing to connect?
- AnnaChuSilver ContributorThe live stream is now working - thank you for your patience!
- Heather_Poulsen
Community Manager
We're troubleshooting the issue with the live stream. In the meantime, please feel free to post your questions and comments. Our experts are still here to assist! - ChrisWilliamsBrass ContributorSame, and the other event for What change sin Win11 and what doesn't no audio.
- David_SwensonIron ContributorHi Everyone! I was hoping you can give guidance on how to configure the Windows 11 Start Menu via Endpoint Manager? Many of our clients have come to rely on the way we setup our Tile Groups in Windows 10. Thanks!
- David_Guyer
Microsoft
More information about configuring and managing Windows 11 will be becoming available, keep watching our announcements and documentation.
- pfennigdCopper ContributorModern Management has been a journey that we embarked on since Windows 10 was introduced into our environment, but the release of new CSPs to replace GPOs has stagnated (ADMX-backed policies are helpful but shouldn't be considered the final solution) and there have even been a handful that were replaced with new ones that require Azure AD. With Windows 11, will there be a renewed commitment to make new CSPs available on a more regular basis and will they allow for usage without Azure AD?
- Jason_Sandys
Microsoft
Hi pfennigd, there is no plan to fully replace all ADMXs with CSPs. Why don't you consider them as a "final solution"?
Also, can you please cite some examples of policies that require AAD? Also, what do you mean by AAD? Do you mean an AAD joined Windows device?
- pfennigdCopper ContributorWe aren’t necessarily looking to see all ADMXs replaced with CSPs but we’ve been interested in whether the native CSPs will continue to be expanded. It was the CSP associated with WUfB that we had heard was going to require an Azure subscription.
- SeMeDeIron Contributor
Beside of Peter van der Woude great article here https://www.petervanderwoude.nl/post/windows-10-mdm-policy-refresh/ back from 2019 (sorry, don't know Peters name here in tech community) I wasn't able to find any clear information about which policies are pushing directly.
Like Peter mentioned there are some kind of profile types known for this behaviour.
I identified on myself, that SCEP behaves like this.But espacilly nowadays we have Settings Catalog, Administrative Templates and of course several types of policy templates and it would be very helpful to have a clearer view of what setting is pushing (and which not).
- SeMeDeIron ContributorHey everybody, I already tried on Ignite to get a clearer view in which windows release/version settings in "Settings Catalog" are supported. But wasn't able to get a clear answer, beside the statement "only latest insider build is supported". Altough I tried to find the correct/smoothest way to say Microsoft, this setting would be very helpful, please integrate it in the next release. Does anybody have further infos or a right way to "vote" for relevant settings?
- Jason_Sandys
Microsoft
Hi SeMeDe, The Settings Catalog itself is fully supported for all supported versions of Windows. Some of the settings currently shown in the Settings Catalog though are only currently applicable to Windows Insider Preview versions of Windows. This is because those settings directly correspond to built-in Windows 10 ADMX-based settings that are not yet allowed on other versions of Windows 10. The plan is to allow these ADMX-based settings sometime in the second half of this calendar year. See The latest in Group Policy settings parity in Mobile Device Management - Microsoft Tech Community for more details and the official announcement for this.