Posted in: Intune, Windows 10

Configure Controlled Folder Access in Intune

Controlled Folder Access is a Microsoft Defender Exploit Guard feature that is built in to Windows 10 Pro, Enterprise, and Windows Server 2019.  Using this feature, you can mitigate ransomware attacks by identifying protected folders and controlling which applications have access to modify the folder and its contents. It is a free, built-in way for […]

Posted in: Intune, Windows 10

Microsoft Edge for Windows 10 deployment in Intune

Or, LIVING ON THE MICROSOFT EDGE! Following up on Winston’s Edge deployment in MECM posts (Part 1 and Part 2), here is some helpful info to deploy Microsoft Edge for Windows 10 via Intune. Microsoft provides the following information to deploy the Edge browser via Intune: https://docs.microsoft.com/en-us/mem/intune/apps/apps-windows-edge THE MOST IMPORTANT DETAILS: *Requires your endpoints to […]

Posted in: All Posts, MEMCM/SCCM, Windows 10

Bitlocker with MEMCM Integration Part 2: Deploying Bitlocker

In part 1, we went through configuring PKI and enabling HTTPS mode on your primary site. This was in preparation for Bitlocker deployment to your workstations. I’m not going to go over the Helpdesk and Self Service website configurations. There’s plenty of good resources out there regarding customization (which I will link below). This post, […]

Posted in: All Posts, MEMCM/SCCM, Windows 10

Bitlocker with MEMCM Integration Part 1: Configuring the Infrastructure

Starting with Microsoft Endpoint Manager Configuration Manager 1910, Microsoft has integrated their MBAM (Microsoft Bitlocker Administration and Management) product from the MDOP (Microsoft Desktop Optimization Pack) suite into MEMCM. This is a huge step forward into presenting a single pane of glass for endpoint management. The components of the integration include a management portal, reporting […]

Posted in: All Posts, MEMCM/SCCM

Configure This: Create an application for Edge in MECM

I know Tyler promised I would have a Bitlocker post coming and it is! Promise. It’s just pretty involved and, in the interest of knocking out low hanging fruit, I figured I would get this post out of the way. In my lab, I’m running MECM 2002 and the development team at Microsoft couldn’t have […]

Posted in: Intune, Scripts/Tools

Configure This: BitLocker To Go Registry Key

BitLocker Drive Encryption (“BitLocker”) is Microsoft’s encryption software.  It can be used to encrypt OS and other internal drives, as well as Windows Server 2012 and later.  For encrypting removable media, BitLocker To Go is available.  BitLocker is available with Windows 10 Pro, Education and Enterprise editions. Microsoft provides the following selected documentation for BitLocker, […]

Posted in: All Posts, MEMCM/SCCM, Scripts/Tools, Windows 10

Quick and Dirty Scripting – Invoke Full Hardware Scan

One of the issues I have struggled with in my SCCM/MECM environment is getting devices to report back a full hardware inventory. Running the Hardware Inventory from Client Notification, as well as running it from the Right Click Tools was ineffective. I put together a little script to ensure a full inventory scan is effectively […]

Posted in: All Posts, Scripts/Tools

Quick and Dirty Scripting – Add Folder to Quick Access

I recently had a request to create a folder and pin it to the quick access location for a number of users. Rather than hassle creating an instruction set for the users to follow, I put together the following ‘quick and dirty script’ to accomplish the task. I put that together as a Script in […]