Intune 2505 Update: DFCI Updates, EPM Deny Rules, and Android Security
Manage episode 487195030 series 3611991
Cutting through the documentation of Microsoft Intune's 2505 service release, this deep dive delivers the critical updates and technical details you need for managing your endpoints. We focus on the facts, translating the latest changes into actionable insights for IT administrators working day-in and day-out with Intune.
Join us as we explore the evolution of Intune's device control and platform support, from firmware to the cloud.
In this episode, we cover:
- FCI Firmware Management: A detailed look at the Device Firmware Configuration Interface (DFCI), its expansion to new hardware, the critical prerequisites, and the essential steps for deployment and device retirement to avoid locking down hardware.
- Expanded Device Inventory: Learn about the newly collected inventory data for Apple and Android devices and the brand-new "SIM info" entity that reports on IMEI, carrier, and phone number for Windows cellular-connected devices.
- Endpoint Privilege Management (EPM): We unpack the new "deny" elevation rule, designed to explicitly block malicious or unwanted software from running with admin rights.
- Critical Security Updates: Understand the new compliance check to detect rooted Android Enterprise devices , and the new global exclusion profile for Defender on Linux devices managed via the MDE security settings channel.
- Enrollment & Configuration Tweaks: We also touch on quality-of-life improvements, including custom naming templates for AOSP devices and RBAC permission changes for enrollment limit policies.
#MicrosoftIntune #Intune #EndpointManagement #EPM #AndroidEnterprise #DFCI #Cybersecurity #MDM
33 episodes