Oceanleaf
Oceanleaf
  • 18
  • 15 195
Windows 365 Starter Series | Part 4 | Configuration Management
Blog post: oceanleaf.ch/windows365
@NiklasTinner: NiklasTinner
Chapters
00:00 Intro
00:53 Groups & filters
02:35 Enrollment Status Page
03:35 Configuration profiles
08:04 Compliance policies
08:47 Remediation scripts
by oceanleaf.ch/
มุมมอง: 197

วีดีโอ

Windows 365 Starter Series | Part 3 | Remote Actions & Reports
มุมมอง 1565 หลายเดือนก่อน
Blog series: oceanleaf.ch/windows365/ @NiklasTinner: NiklasTinner Chapters 00:00 Intro 00:59 Cloud PC in Intune 07:03 Reports in Intune 08:09 Alerts by oceanleaf.ch/
Windows 365 Starter Series | Part 2 | Connect to Cloud PC
มุมมอง 2205 หลายเดือนก่อน
Blog series: oceanleaf.ch/windows365/ @NiklasTinner: NiklasTinner Chapters 00:00 Intro 00:22 Browser 02:42 Deploy Windows App through Intune 03:44 Windows App 05:54 Remote Desktop App by oceanleaf.ch/
Windows 365 Starter Series | Part 1 | Getting Started
มุมมอง 6326 หลายเดือนก่อน
Blog series: oceanleaf.ch/windows365/ @NiklasTinner: NiklasTinner Chapters 00:00 Intro 01:13 Prerequisites 02:18 Buy license 03:08 Assignment of license 04:28 Provisioning policy 09:05 Provisioning process by oceanleaf.ch/
Intune news H2 2023 with Jannik Reinhard | Intune Suite and Technical Takeoff highlights
มุมมอง 4377 หลายเดือนก่อน
Blog post: oceanleaf.ch/ @NiklasTinner: NiklasTinner @JannikReinhard: jannik_reinhard Written summary: niklastinner.medium.com/summarizing-microsoft-technical-takeoff-2023-80fc4e0fbdc0 Chapters 00:00 Intro 00:30 Highlights of new features 01:27 Intune Suite overview 04:05 Enterprise App Management 05:58 Microsoft Cloud PKI 08:17 Endpoint Privilege Management 10:10 Advanc...
Device Control with Intune
มุมมอง 2K7 หลายเดือนก่อน
Blog post: oceanleaf.ch/device-control-with-intune/ Official documentation: learn.microsoft.com/en-us/microsoft-365/security/defender-endpoint/device-control-removable-storage-access-control?view=o365-worldwide @NiklasTinner: NiklasTinner Chapters 00:00 Intro 02:24 Concept 04:14 Explaining setup classes 04:48 Demo 09:40 Reusable settings 11:55 Security tip: Microsoft Defender for En...
Windows 365 Technical Introduction with Morten Pedholt
มุมมอง 2098 หลายเดือนก่อน
Blog post: oceanleaf.ch/windows365-intro/ Mastering Windows 365: aka.ms/masteringwindows365 Windows 365 Community: w365community.com/ @NiklasTinner: NiklasTinner @MortenPedholt: MortenPedholt Chapters 00:00 Intro 01:36 Key benefits 03:33 How it works 04:51 How to access 07:02 W365 and AVD 08:26 Licenses 09:50 Use cases 12:19 Integration to Intune 13:23 Integration to Win...
Intune change tracking V2.0
มุมมอง 3768 หลายเดือนก่อน
Blog post: oceanleaf.ch/intune-change-tracking/ GitHub repo: github.com/thenikk/Oceanleaf/tree/main/Intune change tracking @NiklasTinner: NiklasTinner Chapters 00:00 Intro 00:50 Implementation steps 01:51 Demo 03:45 Operation demo 06:02 Working with Log Analytics Workspace Logs and KQL by oceanleaf.ch/
GPT Intune Device Troubleshooter with Jannik Reinhard
มุมมอง 7549 หลายเดือนก่อน
Blog post: jannikreinhard.com/2023/09/10/the-magic-of-the-gpt-intune-device-troubleshooter/ @NiklasTinner: NiklasTinner @JannikReinhard: jannik_reinhard Chapters 00:00 Intro 00:23 Why AI becomes more important 02:20 Understanding Large Language Models 05:52 What is the GPT Intune Device Troubleshooter 07:25 Prerequisites 08:14 How does it work? 09:58 Demo 15:59 Roadmap 1...
Windows LAPS + Intune enablement
มุมมอง 1.1K10 หลายเดือนก่อน
Blog post: oceanleaf.ch/windows-laps-guide/ @NiklasTinner: NiklasTinner Comprehensive community session on MEM series: th-cam.com/video/LzGiLCVIew8/w-d-xo.html&ab_channel=ModernEndpointManagement(OfficialGroup) Chapters 00:00 Intro 00:51 Key features 01:49 Key considerations 02:46 Architecture 03:24 Implementation steps 03:46 Enable LAPS in tenant 04:24 Endpoint Security Account Pro...
Intune + driver update management with Jannik Reinhard
มุมมอง 1.5Kปีที่แล้ว
Blog post: oceanleaf.ch/intune-driver-update-management/ @JannikReinhard: jannik_reinhard @NiklasTinner: NiklasTinner Chapters 00:00 Intro 00:30 Components 02:04 Features 03:40 Deployment strategy 04:44 Prerequisites 07:22 How it works 09:13 How to enable 11:29 Important notes 13:06 Opt-in to this new features by oceanleaf.ch/
IntuneUpdate.com presentation with Ugur Koc
มุมมอง 191ปีที่แล้ว
www.intuneupdate.com/ @UgurKoc: UgurKocDe @NiklasTinner: NiklasTinner Chapters 00:00 Intro 00:35 About IntuneUpdate.com 03:47 How the website works 08:05 Presenting the website 12:00 Behind the scenes by oceanleaf.ch/
Intune news H1 2023 with Jannik Reinhard | Intune Suite, Driver update management, Security Baseline
มุมมอง 517ปีที่แล้ว
Learn about H1 CY2023 news from Microsoft Intune in this summary video. @JannikReinhard: jannik_reinhard @NiklasTinner: NiklasTinner Chapters 00:00 Intro 00:37 Minor highlights 03:38 Intune June release (2306) 08:43 Recap news around Intune by oceanleaf.ch/
Modern Endpoint Management talk with Mattias Melkersen
มุมมอง 266ปีที่แล้ว
Blog post: oceanleaf.ch/endpoint-management-transition-to-the-cloud/ @MattiasMelkersen: MMelkersen and msendpointmgr.com/ @NiklasTinner: NiklasTinner Chapters 00:00 Intro 00:16 About Mattias 04:38 Legacy vs. Modern 08:08 Mindset 09:15 Budgeting 09:56 Hybrid 17:22 Security 22:20 More topics by oceanleaf.ch/
Intune automation overview with Jannik Reinhard
มุมมอง 484ปีที่แล้ว
@JannikReinhard: jannik_reinhard @NiklasTinner: NiklasTinner Blog posts on this topic: jannikreinhard.com/2023/04/09/how-to-start-with-azure-automation-runbook-to-automate-tasks-in-intune/ oceanleaf.ch/intune-automation-enlightenment/ oceanleaf.ch/azure-managed-identity/ oceanleaf.ch/get-started-with-graph-explorer-and-intune/ Chapters 00:00 Intro 00:20 What is Azure Aut...
Troubleshooting Intune policies and apps
มุมมอง 1.4Kปีที่แล้ว
Troubleshooting Intune policies and apps
Intune + Defender for Endpoint with Loris Ambrozzo
มุมมอง 580ปีที่แล้ว
Intune Defender for Endpoint with Loris Ambrozzo
Local admin/privilege management with Intune
มุมมอง 4.2Kปีที่แล้ว
Local admin/privilege management with Intune

ความคิดเห็น

  • @guillaumemigas
    @guillaumemigas 11 วันที่ผ่านมา

    Very nice video , thank you . I cannot achieve similar results . I can indeed block devices by preventing installation of drivers matching setup classes but I am unable to allow exceptions for USB devices (VID , PID , Instance path etc ... ) .

  • @unity4397
    @unity4397 2 หลายเดือนก่อน

    Awesome video, great explanation and breakdown of LAPS.

  • @shrpatil08
    @shrpatil08 3 หลายเดือนก่อน

    You should have taken it step by step and created a policy in the demo, this would have been a little more easier to know

  • @spitzer666
    @spitzer666 5 หลายเดือนก่อน

    I am planning to implement windows 365 frontline solution. we have regular W365 solution for Asia, US and EU regions already. my question is, do I need to create 3 separate provisioning policies for my Azure network connections i.e. Asia, US and EU ? if so do I need to assign groups and licenses based these regions ? or W365 is smart enough to identify shift workers ie (US during night and EU during evening and Asia during night).

    • @oceanleafnt
      @oceanleafnt 5 หลายเดือนก่อน

      Correct, there is no automatic detection of the user location combined with a provisioning policy. You need one pair per location.

  • @ToTCaMbIu
    @ToTCaMbIu 6 หลายเดือนก่อน

    What a great and detailed explanation of LAPS implementation. I've got some questions, though. 1. Should the detection script also check if the user is in the admin group? If there is a chance the user with such a name exists but is not in the admin group the script will probably fail to execute. 2. Do we need to configure any parameters when creating a user such as "User must change password at next logon" and/or "Password never expires" Thanks

    • @oceanleafnt
      @oceanleafnt 6 หลายเดือนก่อน

      1. Yes, good idea to extend the script. But in reality I never faced issues with it ;) 2. No, that is not needed.

  • @highlander1461
    @highlander1461 6 หลายเดือนก่อน

    Thanks for the video - would be even better if you demoed a blocked device that then get’s approved - not work for me so far either.

    • @oceanleafnt
      @oceanleafnt 6 หลายเดือนก่อน

      Remember that the reusable settings are still in preview. I can confirm, that blocking class GUID works perfectly fine.

  • @sandervandenbrom8955
    @sandervandenbrom8955 6 หลายเดือนก่อน

    Thank you for the great video. I'm having a terrible time with device control. How can I block all USB sticks for user A on a shared device and allow a specific USB stick for user B? Is this possible?

    • @oceanleafnt
      @oceanleafnt 6 หลายเดือนก่อน

      Include / exclude groups should work. But user based policies is always a bit of a struggle in terms of timing and reliability.

  • @TiNmyJ
    @TiNmyJ 7 หลายเดือนก่อน

    Great Video. I was looking to create a policy to Block All USB Storage excluding a list o devices. This will help

  • @ricklucas6216
    @ricklucas6216 8 หลายเดือนก่อน

    This was a really good video! Straight to the point and clear. You got a subscriber!

  • @hcuk403
    @hcuk403 9 หลายเดือนก่อน

    Thanks for your work on this! we have deployed this to our environment. After clicking on login, then signing into an account with the correct permissions, the login window closes but it doesnt actually log in.

  • @CGRealStudios
    @CGRealStudios 9 หลายเดือนก่อน

    Seems a little useless as all the questions asked to the program can easily be answered by looking at the Intune portal

    • @oceanleafnt
      @oceanleafnt 9 หลายเดือนก่อน

      So you think GPT and LLM are useless and you don't use them?

  • @dipteshbose
    @dipteshbose 9 หลายเดือนก่อน

    Awesome

  • @MrMarcLaflamme
    @MrMarcLaflamme 10 หลายเดือนก่อน

    Hi Nicklas. Do you have any suggestions for those who aren't licensed for Remediation scripts? Also, have you run through the migration from legacy to modern scenario yet?

    • @oceanleafnt
      @oceanleafnt 10 หลายเดือนก่อน

      You could use a configuration profile, e.g. here: cloudinfra.net/how-to-create-a-local-admin-account-using-intune/ but that is sometimes a little unreliable. If you are interested in the migration scenario, consider my blog post oceanleaf.ch/windows-laps-guide/ or watch my comprehensive video guide here: th-cam.com/video/LzGiLCVIew8/w-d-xo.html&ab

    • @MrMarcLaflamme
      @MrMarcLaflamme 10 หลายเดือนก่อน

      @@oceanleafnt excellent thanks!

  • @MrMarcLaflamme
    @MrMarcLaflamme ปีที่แล้ว

    Had no idea that firmware updates didn't require the BIOS to be unlocked. Does this mean if the BIOS/UEFI had password set to enter it doesn't require that? We started rolling out systems a while back with password locked BIOS but it ended up being more of a hassle than anything. Would love to have these systems receive BIOS updates seamlessly now.

    • @oceanleafnt
      @oceanleafnt ปีที่แล้ว

      It's an official statement by Microsoft: learn.microsoft.com/en-us/mem/intune/protect/windows-driver-updates-overview#what-about-drivers-that-update-a-bios-that-is-password-locked-how-does-this-work

    • @MrMarcLaflamme
      @MrMarcLaflamme ปีที่แล้ว

      @@oceanleafnt thanks for pointing this out. That’s my fault for reading the posts too fast!

  • @mattiasmelkersenkalvag7466
    @mattiasmelkersenkalvag7466 ปีที่แล้ว

    Thanks Niklas for making this interview. Liked the script you made for us to move through in our conversation. Well done

  • @cuneytkorkmaz8460
    @cuneytkorkmaz8460 ปีที่แล้ว

    Hey Niklas, thanks for the explanation, we just enabled EPM plug-in and will test in next month

  • @iliketomoveit5999
    @iliketomoveit5999 ปีที่แล้ว

    Hi! I'm trying to implement Intune but every user I create has admin rights even though they're created as standard user via O365. Any guide on how to fix that? thanks!

    • @oceanleafnt
      @oceanleafnt ปีที่แล้ว

      Verify in the deployment profile, that the user account type is not set to administrator. Also check the mentioned methods from the video.

    • @Danissimode
      @Danissimode 9 หลายเดือนก่อน

      Devices need to be entered into the organization using the m365 administrator account. If you create through a regular m365 account, this subsequent users of this device will have device administrator rights without being a member of the local administrators group.