Menedżer konfiguracji programu System Center Obecny oddział Aktualizacja 1710.
One of the key features in the 1710 release is co-management:
Starting with the Anniversary Update (Czerwiec 2016), A Okna 10 device can be joined to on-premises Aktywny katalog (AD) and cloud-based Usługa Azure AD at the same time. Co-management takes advantage of this improvement and enables the device to be managed by both the Menedżer konfiguracji agent and Intune MDM. This allows organizations to move specific workloads of their management to the cloud – making the transition in manageable chunks. Na przykład, customers can transition device compliance checks, resource access policies, Lub Okna 10 update management from Menedżer konfiguracji to Intune while continuing to use Menedżer konfiguracji for other workloads such as software distribution and deep device security configuration.
Some of the enhancements that are available in this update:
Microsoftu 365 Adoption
- OS Deployment support for Okna 10 version 1709 – You can now upgrade to the latest Okna 10 ADK version 1709 to deploy the latest Okna 10 zbudować.
- Configure and deploy Okna Defender Application Guard policies – You can now create and deploy Okna Defender Application Guard policies to Okna 10 clients that help protect your users by opening untrusted websites in a virtualized browser.
- Improvements to policies for Okna Defender Application Control – You can now authorize software that is trusted by the Intelligent Security Graph as part of Okna Defender Application Control (previously Device Guard).
- Okna Defender Exploit Guard – You can now configure the Okna Defender Exploit Guard policy that provides intrusion prevention rules and policies that make vulnerabilities more difficult to exploit in Okna 10.
Streamlined Infrastructure
- Support for next-generation certificates – Most client-facing site roles can now use next-generation certificates (or CNG from version 3 templates).
Modern Management
- Co-management – You can now enable co-management which helps you to streamline the journey to modern management in a controlled and iterative way. Okna 10 devices can be concurrently managed by Menedżer konfiguracji and Intune as well as joined to Aktywny katalog (AD) i Azure Aktywny katalog (Usługa Azure AD). This enables a practical way for you to transition the management to Intune and Usługa Azure AD over time.
- Check compliance for co-managed devices from Centrum oprogramowania when device compliance is managed by Intune – Users can now use Centrum oprogramowania to check the compliance of their co-managed Okna 10 devices when device compliance is enforced by Intune.
Configuration Manager connected with Microsoft Intune
- Device Health Attestation assessment for compliance policies for conditional access – Use Device Health Attestation status as a compliance policy rule for conditional access to company resources.
- New compliance policy actions – You can now configure actions for compliance policies. These actions include setting a grace period for devices that are noncompliant before they lose access to company resources and creating emails to be sent to users with noncompliant devices.
- App Protection settings to block printing and contact Sync – Additional settings have been added to block printing and contact sync on applications enlightened with Intune App Protection.
- Improved VPN profile experience in Konsola menedżera konfiguracji – VPN profile settings are now filtered according to the platform. When creating new VPN profiles, each supported platform workflow contains only the settings appropriate for the platform. Existing VPN profiles are not affected.
- Mobile device management support for ARM64 devices running Okna 10 – Okna 10 MDM scenarios will be supported for ATM64 devices once these devices are available.
Customer Feedback
- Run Task Sequence step – This is a new step in the task sequence to run another task sequence, which creates a parent-child relationship between two task sequences.
- Allow up to 512×512 pixel icons for application in Centrum oprogramowania – You can now deploy apps with up to 512×512 pixels icons to display in Centrum oprogramowania.
- Centrum oprogramowania customization – You can now add enterprise branding elements and specify the visibility of tabs in Centrum oprogramowania. You can add a Software Center-specific company name, set a color theme, set a company logo, and set the visibility of tabs for client devices
- Improved descriptions for pending computer restarts – The reason for a pending computer restart is posted.
- Create and run PowerShell scripts – You can now create and run scripts with optional parameters, configure security scopes, and monitor script results.