Microsoft Intune Cookbook - Andrew Taylor - E-Book

Microsoft Intune Cookbook E-Book

Andrew Taylor

0,0
29,99 €

-100%
Sammeln Sie Punkte in unserem Gutscheinprogramm und kaufen Sie E-Books und Hörbücher mit bis zu 100% Rabatt.

Mehr erfahren.
Beschreibung

Microsoft Intune is a powerful cloud-managed mobile device management (MDM) tool that empowers you to manage your end-user device estate across various platforms. While it is an excellent platform, the initial setup and configuration can be a daunting process, and mistakes made early on can be more challenging to resolve later. This book addresses these issues by guiding you through the end-to-end configuration of an Intune environment, incorporating best practices and utilizing the latest functionalities.
In addition to setting up your environment, you’ll delve into the Microsoft Graph platform to understand the underlying mechanisms behind the web GUI. This knowledge will enable you to automate a significant portion of your daily tasks using PowerShell.
By the end of this book, you’ll have established an Intune environment that supports Windows, Apple iOS, Apple macOS, and Android devices. You’ll possess the expertise to add new configurations, policies, and applications, tailoring an environment to your specific requirements. Additionally, you’ll have the ability to troubleshoot any issues that may arise and package and deploy your company applications. Overall, this book is an excellent resource for anyone who wants to learn how to use Microsoft Intune to manage their organization's end-user devices.

Das E-Book können Sie in Legimi-Apps oder einer beliebigen App lesen, die das folgende Format unterstützen:

EPUB
MOBI

Seitenzahl: 589

Veröffentlichungsjahr: 2024

Bewertungen
0,0
0
0
0
0
0
Mehr Informationen
Mehr Informationen
Legimi prüft nicht, ob Rezensionen von Nutzern stammen, die den betreffenden Titel tatsächlich gekauft oder gelesen/gehört haben. Wir entfernen aber gefälschte Rezensionen.



Microsoft Intune Cookbook

Over 75 recipes for configuring, managing, and automating your identities, apps, and endpoint devices

Andrew Taylor

BIRMINGHAM—MUMBAI

Microsoft Intune Cookbook

Copyright © 2023 Packt Publishing

All rights reserved. No part of this book may be reproduced, stored in a retrieval system, or transmitted in any form or by any means, without the prior written permission of the publisher, except in the case of brief quotations embedded in critical articles or reviews.

Every effort has been made in the preparation of this book to ensure the accuracy of the information presented. However, the information contained in this book is sold without warranty, either express or implied. Neither the author, nor Packt Publishing or its dealers and distributors, will be held liable for any damages caused or alleged to have been caused directly or indirectly by this book.

Packt Publishing has endeavored to provide trademark information about all of the companies and products mentioned in this book by the appropriate use of capitals. However, Packt Publishing cannot guarantee the accuracy of this information.

Group Product Manager: Pavan Ramchandani

Publishing Product Manager: Prachi Rana

Book Project Manager: Ashwini Gowda

Senior Editor: Mohd Hammad

Technical Editor: Yash Bhanushali

Copy Editor: Safis Editing

Proofreader: Safis Editing

Indexer: Manju Arasan

Production Designer: Vijay Kamble

DevRel Marketing Coordinator: MaryLou De Mello

First published: December 2023

Production reference: 1221223

Published by Packt Publishing Ltd.

Grosvenor House

11 St Paul’s Square

Birmingham

B3 1RB, UK

ISBN 978-1-80512-654-6

www.packtpub.com

To my wonderful daughters, Lili and Poppy – the world is at your feet; you can do anything you want to do! This book is dedicated to you both with all of my love.

Contributors

About the author

Andrew Taylor has been working in the IT industry for over 20 years across a variety of roles and industries, always with a passion for end-user computing and automation. Now working as an EUC architect, primarily using Microsoft technologies (Intune, Windows 365, PowerShell, and Graph), he develops, creates, and deploys new technologies and environments to a variety of customers. He is also a keen blogger and shares many scripts with the community.

Living in the north-east of England with his wife and two children, Andrew is a two-time Microsoft MVP and holds many Microsoft certifications (13 at the time of writing). Outside of work and family time, he is a film fan and can often be found at the local cinema.

A special thanks to my wife, Julia, and my two daughters, Lili and Poppy, for their support and unending patience, and for putting up with me typing away at all hours of the night. Thanks also to everyone in the Intune community for showing an interest in my work.

About the reviewers

Niels Kok is a highly experienced cloud engineer with over 13 years of expertise in Microsoft Cloud products. He possesses a deep understanding of the intricacies of the Microsoft Cloud ecosystem and has a proven track record of success in delivering complex cloud solutions. Niels is an expert in scripting, with a strong background in PowerShell, Bicep, and YAML.

His expertise in these technologies enables him to write efficient, scalable, and easily maintainable scripts that automate cloud infrastructure deployments. Niels is a valuable asset to any organization seeking to leverage the power of the Microsoft Cloud to achieve their business goals.

Andrew Jones is a Microsoft MVP for Enterprise Mobility and has over 27 years’ experience in IT. After initially developing intranet web services for BT, he progressed his career, working across various technical teams and technologies and leading large infrastructure IT projects. For the last eight years, he has worked as a technical architect in a customer-facing consultant role, leading M365 Modern Desktop services within a Microsoft Cloud practice. During COVID, he launched himself into the technical online communities and co-founded his YouTube channel Cloud Management.Community. He also publishes Microsoft-focused blogs on his own site at Move2modern.co.uk and dedicates his time to creating a collaborative community for cloud professionals.

Jannik Reinhard is a 25-year-old senior solution architect who works in the internal IT department of the largest chemical company in the world. He is the technical lead of artificial intelligence for IT operations (AIOps) and specializes in modern device management. Jannik is a proud enterprise mobility Microsoft MVP, a contributor to the largest LinkedIn community, and owner of the largest Twitter Intune community.

In his free time, Jannik invests a lot of time in learning and trying out new things related to IT, which is not only his profession but also his hobby.

He loves to blog on jannikreinhard.com and speak at events, sharing his knowledge with others and creating innovative solutions.

Nicklas Ahlberg is a trusted security advisor employed at Onevinn AB, a leading corporate entity specializing in providing cutting-edge security solutions. His primary objective revolves around assisting organizations in seamlessly navigating the complex terrain of Intune, ensuring they obtain an optimal and highly secure user experience.

At the core of his methodology lies a strong emphasis on automation, as he firmly believes it to be a cornerstone in achieving operational excellence. Nicklas actively showcases the power of automation through his dedicated blog, located at https://rockenroll.tech.

Table of Contents

Preface

1

Getting Started with Microsoft Intune

Technical requirements

Chapter materials

Creating a tenant

Getting ready

How to do it…

Creating a user

Getting ready

How to do it…

Automating it

Assigning Entra ID roles

How to do it…

Automating it

Configuring Entra ID Device settings

How to do it…

Automating it

Configuring Entra ID ESR

How to do it…

Automating it

Creating Entra ID static groups

Getting ready

How to do it…

Automating it

Creating Entra ID dynamic groups

Getting ready

How to do it…

Creating a dynamic Office user group

Creating a dynamic Autopilot device group

Automating it

Configuring Entra ID MDM/MAM scopes

How to do it…

Automating it

2

Configuring Your New Tenant for Windows Devices

Technical requirements

Chapter materials

Configuring a Settings catalog policy

How to do it…

Automating it

There’s more…

Configuring a custom policy

Getting ready

How to do it…

Automating it

Importing and ingesting an ADMX policy

Getting ready

How to do it…

Automating it

Group policy analytics

Getting ready

How to do it…

Automating it

3

Securing Your Windows Devices with Security Policies

Technical requirements

Chapter materials

Setting up a security baseline

How to do it…

Automating it

There’s more…

Configuring an antivirus policy

How to do it…

Automating it

Configuring Windows Security Experience

How to do it…

Automating it

Configuring your BitLocker policy

How to do it…

Automating it

Configuring Windows Firewall

How to do it…

Automating it

Deploying ASR rules

Getting ready

How to do it…

Automating it

There’s more…

Enrolling in Defender for Endpoint

Getting started

How to do it…

Deploying Windows LAPS

Getting started

How to do it…

Automating it

Configuring Application Control

How to do it…

Automating it

4

Setting Up Enrollment and Updates for Windows

Technical requirements

Building your update rings – including feature and quality updates

Getting ready

How to do it…

Automating it

There’s more…

Configuring driver updates

How to do it…

Automating it

There’s more…

Enrolling and using Autopatch

Getting ready

How to do it…

Automating it

There’s more…

Configuring Windows Hello for Business

How to do it…

Automating it

Setting up Windows Autopilot Enrollment Profiles

How to do it…

Automating it

Configuring an ESP

How to do it…

Automating it

There’s more…

Enrolling a Windows device

Getting ready

How to do it…

There’s more…

5

Android Device Management

Chapter materials

Technical requirements

Setting up a managed Google Play account

How to do it…

Configuring enrollment profiles

How to do it…

Automating it

Adding a Google Play application

How to do it…

Automating it

Configuring a device restrictions policy

How to do it…

Automating it

Configuring an OEM policy

Getting ready

How to do it…

Automating it

Configuring a Wi-Fi policy

Getting ready

How to do it…

Automating it

Adding an app protection policy

How to do it…

Automating it

There’s more…

Enrolling an Android device – managed device

Getting ready

How to do it…

Enrolling an Android device – BYOD

Getting ready…

How to do it…

6

iOS Device Management

Chapter materials

Important notes

Technical requirements

Configuring a connector between Apple and Intune

Getting started

How to do it…

Configuring an Apple VPP token

Getting started

How to do it…

Automating it

Adding enrollment profile tokens

How to do it…

Automating it

Configuring iOS policies using the settings catalog

How to do it…

Automating it

Configuring iOS policies using device restrictions

How to do it…

Automating it

Deploying applications via Apple VPP

Getting started

How to do it…

Automating it

Configuring iOS update settings

How to do it…

Automating it

Configuring an app protection policy

Getting started

How to do it…

Automating it

There’s more…

Enrolling your device – corporate

Getting started

How to do it…

There’s more

Enrolling your device – BYOD

Getting started

How to do it…

7

macOS Device Management

Chapter materials

Important notes

Technical requirements

Configuring a macOS Settings catalog policy

How to do it…

Automating it

Deploying shell scripts to macOS

Getting started

How to do it…

Automating it

Configuring update policies for macOS

How to do it…

Automating it

Deploying apps to macOS

Getting started

How to do it…

Automating it

Configuring a macOS enrollment profile

Getting started

How to do it…

Automating it

Enrolling your corporate device

Getting started

How to do it…

8

Setting Up Your Compliance Policies

Technical requirements

Chapter materials

Actions for noncompliance

Configuring notification templates

How to do it…

Automating it

Deploying a Windows compliance policy

Getting started

How to do it…

Automating it

Deploying an Android compliance policy

Getting started

How to do it…

Automating it

Deploying an iOS compliance policy

Getting started

How to do it…

Automating it

Deploying a macOS compliance policy

Getting started

How to do it…

Automating it

Deploying a Linux compliance policy

Getting started

How to do it…

Automating it

Configuring and deploying a Windows custom compliance policy

Getting started

How to do it…

Using conditional access to restrict access based on compliance

Getting started

How to do it...

Automating it

9

Monitoring Your New Environment

Technical requirements

Monitoring applications

Getting ready

How to do it...

Automating it

Monitoring device configuration

Getting ready

How to do it...

Automating it

Monitoring device compliance

Getting ready

How to do it...

Automating it

Monitoring device enrollment

Getting ready

How to do it...

Automating it

Monitoring updates across platforms

Getting ready

How to do it...

Automating it

Monitoring device actions

Getting ready

How to do it...

Automating it

Reviewing audit logs

Getting ready

How to do it...

Automating it

10

Looking at Reporting

Technical requirements

Checking device management reports

Getting ready

How to do it…

Automating reports

Reviewing endpoint security reports

How to do it…

Automating the reports

Reviewing endpoint analytics reports

Getting ready

How to do it…

Automating the reports

Using Intune Data Warehouse with Power BI

How to do it…

Checking Windows updates via reporting

Getting ready

How to do it…

Expanding Windows Update reporting

Getting ready

How to do it…

Exporting diagnostics to Azure

Getting ready

How to do it…

11

Packaging Your Windows Applications

Chapter materials

Assigning applications

Technical requirements

Using the Microsoft Store integration

How to do it…

Automating it

Packaging into MSIX

Getting started

How to do it…

Packaging Win32 applications

Getting started

How to do it…

Automating it

Managing app supersedence and dependencies

Application supersedence

Dependencies

Getting started

How to do it…

Deploying Office applications

Getting started

How to do it…

Updating Office applications

Getting started

How to do it...

Automating it

Windows app protection

Getting started

How to do it…

Automating it

12

PowerShell Scripting across Intune

Technical requirements

Deploying Platform scripts

Getting started

How to do it…

Automating it

Configuring Remediations

Getting started

How to do it…

Automating it

There’s more…

Using custom detection scripts in apps

How to do it…

Automating it

Using custom requirements scripts in apps

How to do it…

Automating it

13

Tenant Administration

Technical requirements

Reviewing your connectors

Getting ready

How to do it…

Automating it

Adding filters

How to do it…

Automating it

Configuring Intune roles

How to do it…

Automating it

Using scope tags

How to do it…

Automating it

Customizing the end user experience

How to do it…

Automating it

There’s more…

Deploying organizational messages

How to do it…

Automating it

There’s more…

Setting up terms and conditions

How to do it…

Automating it

Configuring multi-admin approvals

How to do it…

Automating it

Checking your tenant version

How to do it…

Using Intune’s troubleshooting tools

How to do it…

Enrollment notifications

How to do it…

Automating it

Configuring device restrictions

How to do it…

Configuring Quiet time policies

How to do it…

Automating it

14

Looking at Intune Suite

Technical requirements

Chapter materials

Deploying and using Remote help

Getting started

How to do it…

Automating it

Learning about Microsoft Tunnel for Mobile Application Management

Getting started

How to do it…

Reviewing device anomalies

How to do it…

Automating it

Configuring Endpoint Privilege Management

How to do it…

Automating it

Future developments

Advanced Application Management

Microsoft Cloud PKI

Index

Other Books You May Enjoy