Posted in: Intune, Windows 10

Configure Controlled Folder Access in Intune

Controlled Folder Access is a Microsoft Defender Exploit Guard feature that is built in to Windows 10 Pro, Enterprise, and Windows Server 2019.  Using this feature, you can mitigate ransomware attacks by identifying protected folders and controlling which applications have access to modify the folder and its contents. It is a free, built-in way for […]

Posted in: Intune, Windows 10

Microsoft Edge for Windows 10 deployment in Intune

Or, LIVING ON THE MICROSOFT EDGE! Following up on Winston’s Edge deployment in MECM posts (Part 1 and Part 2), here is some helpful info to deploy Microsoft Edge for Windows 10 via Intune. Microsoft provides the following information to deploy the Edge browser via Intune: https://docs.microsoft.com/en-us/mem/intune/apps/apps-windows-edge THE MOST IMPORTANT DETAILS: *Requires your endpoints to […]

Posted in: All Posts, MEMCM/SCCM, Windows 10

Bitlocker with MEMCM Integration Part 2: Deploying Bitlocker

In part 1, we went through configuring PKI and enabling HTTPS mode on your primary site. This was in preparation for Bitlocker deployment to your workstations. I’m not going to go over the Helpdesk and Self Service website configurations. There’s plenty of good resources out there regarding customization (which I will link below). This post, […]

Posted in: All Posts, MEMCM/SCCM, Windows 10

Bitlocker with MEMCM Integration Part 1: Configuring the Infrastructure

Starting with Microsoft Endpoint Manager Configuration Manager 1910, Microsoft has integrated their MBAM (Microsoft Bitlocker Administration and Management) product from the MDOP (Microsoft Desktop Optimization Pack) suite into MEMCM. This is a huge step forward into presenting a single pane of glass for endpoint management. The components of the integration include a management portal, reporting […]

Posted in: All Posts, MEMCM/SCCM, Scripts/Tools, Windows 10

Quick and Dirty Scripting – Invoke Full Hardware Scan

One of the issues I have struggled with in my SCCM/MECM environment is getting devices to report back a full hardware inventory. Running the Hardware Inventory from Client Notification, as well as running it from the Right Click Tools was ineffective. I put together a little script to ensure a full inventory scan is effectively […]