Book description
Design and implement a secure end-to-end desktop management solution with Microsoft Endpoint Manager
Key Features
- Learn everything you need to know about deploying and managing Windows on physical and cloud PCs
- Simplify remote working for cloud-managed cloud PCs via new service Windows 365
- Benefit from the authors' experience of managing physical endpoints and traditional virtual desktop infrastructures (VDI)
Book Description
Microsoft Modern Workplace solutions can simplify the management layer of your environment remarkably if you take the time to understand and implement them. With this book, you’ll learn everything you need to know to make the shift to Modern Workplace, running Windows 10, Windows 11, or Windows 365.
Mastering Microsoft Endpoint Manager explains various concepts in detail to give you the clarity to plan how to use Microsoft Endpoint Manager (MEM) and eliminate potential migration challenges beforehand. You'll get to grips with using new services such as Windows 365 Cloud PC, Windows Autopilot, profile management, monitoring and analytics, and Universal Print. The book will take you through the latest features and new Microsoft cloud services to help you to get to grips with the fundamentals of MEM and understand which services you can manage. Whether you are talking about physical or cloud endpoints—it’s all covered.
By the end of the book, you'll be able to set up MEM and use it to run Windows 10, Windows 11, and Windows 365 efficiently.
What you will learn
- Understand how Windows 365 Cloud PC makes the deployment of Windows in the cloud easy
- Configure advanced policy management within MEM
- Discover modern profile management and migration options for physical and cloud PCs
- Harden security with baseline settings and other security best practices
- Find troubleshooting tips and tricks for MEM, Windows 365 Cloud PC, and more
- Discover deployment best practices for physical and cloud-managed endpoints
- Keep up with the Microsoft community and discover a list of MVPs to follow
Who this book is for
If you are an IT professional, enterprise mobility administrator, architect, or consultant looking to learn about managing Windows on both physical and cloud endpoints using Microsoft Endpoint Manager, then this book is for you.
Table of contents
- Mastering Microsoft Endpoint Manager
- Foreword
- Contributors
- About the authors
- About the reviewers
- Preface
- Section 1: Understanding the Basics
-
Chapter 1: Introduction to Microsoft 365
-
An introduction to Microsoft 365
- What do the services achieve?
- Microsoft Endpoint Manager
- Azure Virtual Desktop
- AVD and Windows 365 Cloud PC – shared responsibility model 1
- AVD and Windows 365 Cloud PC – shared responsibility model 2
- Productivity Score
- OneDrive for Business (part of Microsoft 365 Apps)
- Microsoft Defender for Endpoint (formerly MDATP)
- Summary
- Questions
- Answers
- Further reading
-
An introduction to Microsoft 365
- Chapter 2: What Is Unified Endpoint Management?
- Section 2: Windows 365
- Chapter 3: Introducing Windows 365
-
Chapter 4: Deploying Windows 365
-
Technical requirements for deploying Windows 365
- Azure subscription
- Azure VNet
- Azure VNet – required related URLs and ports
- Microsoft Endpoint Manager and AVD – service URLs
- Remote Desktop Protocol requirements
- Hybrid Azure AD joined
- Purchasing and assigning cloud PC licenses via the Microsoft 365 admin center portal
- On-premises network connections
- Provisioning a cloud PC
- User settings – self-service
- Self-service capabilities – IT admin
- Azure AD – MyApps unified (workspace) portal
- Auto-subscribing users in the Remote Desktop client
- Autopilot and cloud PCs – lightweight thin client (Kiosk)
- Monitoring and analytics
- Shadow users with Quick Assist
- Windows 11
- Microsoft Managed Desktop
- Summary
- Questions
- Answers
- Further reading
-
Technical requirements for deploying Windows 365
- Section 3: Mastering Microsoft Endpoint Manager
-
Chapter 5: Requirements for Microsoft Endpoint Manager
- Endpoint scenarios
- Identity roles and privileges for Microsoft Intune
- Identity roles and privileges for a Windows 365 cloud PC
- Identity roles and privileges for Universal Print
- Licensing requirements
- Supported OSes
- Windows 11 requirements
-
Administrator licensing
- Azure AD group-based licensing
- Setting the mobile device management authority
- Enabling Windows automatic enrollment
- Using Azure Virtual Desktop with Intune
- Microsoft Intune enrollment restriction for Windows
- Microsoft Intune device restrictions for Windows
- Blocking personal Windows devices
- Microsoft Intune device limit restrictions for Windows
- Customizing Intune company portal apps, the company portal website, and the Intune app
- Associating your Microsoft Store for Business account with Intune
- MEM – network URL firewall requirements
- Universal Print – required URLs
- Summary
- Questions
- Answers
- Further reading
- Chapter 6: Windows Deployment and Management
-
Chapter 7: Manager Windows Autopilot
- Technical requirements
- Windows Autopilot overview
- Uploading the hardware ID to Windows Autopilot
- Windows Autopilot for existing devices
- Windows updates during the Out-of-Box Experience (OOBE)
- Enrollment Status Page (ESP)
- Autopilot reporting and diagnostics
- Cloud configuration scenario
- Edge kiosk self-deployment scenario
- Wiping and resetting your devices
- Fresh start
- Summary
- Questions
- Answers
- Further reading
- Chapter 8: Application Management and Delivery
- Chapter 9: Understanding Policy Management
- Chapter 10: Advanced Policy Management
- Chapter 11: Office Policy Management
- Chapter 12: User Profile Management
-
Chapter 13: Identity and Security Management
- Microsoft Identity
- AAD
- Conditional Access
- Cloud apps
- Grant
- Preventing users from carrying out AAD device registration
- Self-service password reset
- AAD password protection
- Password-less authentication
- Enabling password-less authentication
- BitLocker disk encryption
- BitLocker recovery keys
- Microsoft Defender for Endpoint
- Security baselines
- Compliance policies
- Windows 365 security baselines
- Connecting to Intune – MEM integration
- Alerts and security assessments
- Summary
- Questions
- Answers
- Further reading
-
Chapter 14: Monitoring and Endpoint Analytics
- Monitoring and analytics
- Monitoring your physical and virtual cloud endpoints
- Endpoint analytics – advanced monitoring
- Top 10 impacting start up processes
- OS restart history
- Resource performance
- Insights and recommendations – score trends
- Application reliability
- Windows 365-specific metrics
- Insights and recommendations
- Customizing your baselines
- Productivity Score
- Service health
- Summary
- Questions
- Answers
- Further reading
-
Chapter 15: Universal Print
-
What is Universal Print?
- Universal Print – architecture explained
- The print connector
- Where does my printed data go?
- Printer defaults
- Universal Print – service requirements
- Network requirements
- Learning how to deploy Universal Print
- Delegating printer access – custom roles
- Connecting your existing printer to Universal Print
- Configuring Universal Print
- Assigning and deploying cloud printers with Microsoft Endpoint Manager
- Summary
- Questions
- Answers
- Further reading
-
What is Universal Print?
- Section 4: Tips and Tricks from the Field
-
Chapter 16: Troubleshooting Microsoft Endpoint Manager
- Troubleshooting MEM
- Service health and message center
- Troubleshoot blade in MEM
- Troubleshooting Windows 10 MEM enrollment
- Windows 10 device diagnostics
- Troubleshooting application delivery
- Troubleshooting Autopilot
- Windows 11 Autopilot diagnostics page
- Troubleshooting locating a Windows device
- Troubleshooting Microsoft Edge
- Summary
- Questions
- Answers
- Further reading
- Chapter 17: Troubleshooting Windows 365
- Chapter 18: Community Help
- Other Books You May Enjoy
Product information
- Title: Mastering Microsoft Endpoint Manager
- Author(s):
- Release date: October 2021
- Publisher(s): Packt Publishing
- ISBN: 9781801078993
You might also like
book
Microsoft Defender for Endpoint in Depth
Gain an in-depth understanding of Microsoft Defender 365, explore its features, and learn successful implementation strategies …
book
Exam Ref MD-102 Microsoft Endpoint Administrator
Prepare for Microsoft Exam MD-102and help demonstrate your real-world mastery of the skills and knowledge required …
book
Mastering Microsoft 365 Defender
Get to grips with Microsoft's enterprise defense suite and its capabilities, deployments, incident response, and defense …
book
Mastering Identity and Access Management with Microsoft Azure - Second Edition
Start empowering users and protecting corporate data, while managing identities and access with Microsoft Azure in …