官术网_书友最值得收藏!

Summary

In this chapter, we covered the following exam topics:

  • Planning for MDM
  • Configuring MDM integration with Azure AD
  • Setting an MDM authority
  • Setting device enrollment limits for users

By properly planning for MDM, you're making sure devices accessing an organization's resources are compliant and reduce the risk of data loss. Intune has many settings for customizing the criteria for and actions in response to compliance (or lack thereof).

Configuring MDM with Azure AD allows you the ability to manage AD-registered and AD-joined devices from within Azure AD. Users are also able to automatically enroll their devices. As an administrator, you have the ability to configure a hybrid Azure AD join, which provides the ability to use group policies on devices.

MDM authorities include Intune Standalone, Intune co-management, or Office 365 MDM. Note that O365 MDM still requires Intune.

You may wish to limit the number or type of devices any one user is able to enroll. This would help ensure you don't exceed licensing limits or grant access to unsupported device types. Placing a limit also encourages users to be selective in how broadly they're accessing company resources and reduces the number of potential data loss endpoints.

In the next chapter, we'll take what we've learned here and dive in a little deeper. We'll be covering planning for device compliance, configuring device compliance policies, and creating conditional access policies.

主站蜘蛛池模板: 博湖县| 龙山县| 南部县| 五河县| 宁河县| 拜泉县| 伊宁市| 长垣县| 柘荣县| 双辽市| 米泉市| 彰武县| 荥经县| 拜泉县| 泸定县| 离岛区| 新田县| 克什克腾旗| 镇康县| 西贡区| 巴彦淖尔市| 湘阴县| 延寿县| 蒙阴县| 建始县| 纳雍县| 康定县| 集安市| 汾西县| 石门县| 郸城县| 永德县| 乐业县| 宁南县| 禄劝| 承德县| 密云县| 凌海市| 阿勒泰市| 深泽县| 屏东市|