SlideShare a Scribd company logo
1 of 55
#AllAccessIT
#AllAccessIT
Windows Autopilot
Andrew Bettany MCT, MVP
IT Masterclasses Ltd
andrew@itmasterclasses.com
#AllAccessIT#AllAccessIT
Live life without regret, believe in your potential, don’t stop!
Andrew Bettany
• IT Masterclasses Ltd – bespoke technical training
• Microsoft MVP since 2012
• Microsoft 365 User Group
• Microsoft Press Author
• Freelance Trainer / Course Author
• Microsoft Learning Regional Lead for UK
• LinkedIn & Pluralsight video author
Specialties: Microsoft 365 | Windows Client | Windows Server | Deployment
andrew@itmasterclasses.com @andrew_bettany
#AllAccessIT
Traditional Windows deployment // The old way
Build a custom image,
gathering everything else
that’s necessary to deploy
Time means money, making
this an expensive proposition
Deploy image to a new
computer, overwriting what
was originally on it
DRIVERS POLICIES
OFFICE & APPS
SETTINGS
#AllAccessIT
Modern Windows deployment // The new way
Un-box and turn on
off-the-shelf Windows PC
Device is ready
for productive use
Transform with minimal
user interaction
#AllAccessIT
Key Benefits:
No more maintenance of images and drivers
No need for IT to touch the devices
Simple process for users and IT
Integration in the device supply chain
Reset device back to a business ready state
Device lifecycle management
with Windows Autopilot &
Intune
Business ready
Break fix
RetirementManagementProcurement Deployment
#AllAccessIT
Transform device deployment with
Windows Autopilot
Trusted by IT, loved by end-users
Deliver a secure, productive experience
without ever touching the device
Be productive from the start with a
personalized out of box experience
Be productive from
the start with a
personalized out of
box experience
Deliver a secure,
productive
experience without
ever touching the
device
#AllAccessIT
OEM-optimized Windows 10
+ Software
+ Settings
+ Updates
+ Features
+ User data
Ready for productive use
The transformation
#AllAccessIT
Windows
Autopilot
deployment
Three simple steps
Register devices
Assign an Autopilot profile
to the devices
Ship the device to the user
Cloud driven
#AllAccessIT
Administering Windows Autopilot
Microsoft Store for Business
Microsoft Intune / Microsoft
365 Device Management
Partner Center
Microsoft 365 Business
#AllAccessIT
Step 1. Register devices
Step 2. Assign profile
Step 3. Deploy!
Windows Autopilot // Key Steps
#AllAccessIT
Step 1. Registering devices
#AllAccessIT
#AllAccessIT
OEM Device registration Clean images

Free

$30/PC offering
(Targeting later CY19)

$3 option

$5/device

Free; additional offerings at $5/PC
and $8-35/PC

Free

Free
Windows Autopilot // Major OEM status
#AllAccessIT
OEMs, distributors, and resellers make the process easy:
• Automatically add new devices to Azure tenant at time of shipment
• Associate devices to customer’s purchase order for easy device
grouping
• Tag devices with a customer specified label
• Provide an preinstalled image that is ready for configuration*
For a list of those supporting Windows Autopilot supply chain
integration please visit:
https://aka.ms/WindowsAutopilot
Registering new devices
Supply chain integration
#AllAccessIT
If you have existing Windows 10 devices:
• Enable new Autopilot profile setting for all targeted devices
• Ensure the Autopilot profile is assigned to a group containing the
existing Windows 10 devices
If your existing Windows 10 devices are not yet Intune-managed:
• Enable co-management with ConfigMgr via the “Automatic enrollment
into Intune” setting. (See https://docs.microsoft.com/en-
us/sccm/core/clients/manage/co-management-overview#enable-co-management)
• Ensure all new Intune-enrolled Windows 10 devices are part of a group
with an assigned Autopilot profile
Registering existing devices
Automatically for all Intune-managed Windows 10 devices
#AllAccessIT
To register existing devices:
• Use the PowerShell script available at
https://www.powershellgallery.com/packages/Get-
WindowsAutopilotInfo
• Run for each device (requires Windows 10 1703 or higher)
• Upload resulting CSV file via Intune portal
• See https://docs.microsoft.com/en-
us/windows/deployment/windows-autopilot/add-devices#collecting-
the-hardware-id-from-existing-devices-using-powershell for more
information
Registering existing devices
Manually for existing devices
#AllAccessIT
Registering devices // Summary
Microsoft IntunePartner CenterOEM API
#AllAccessIT
Step 2. Assign profile
#AllAccessIT
Configure important details:
• Deployment mode
• Specific settings required for the deployment mode
• New! BitLocker encryption even for non-admin users
(requires Windows 10 1809)
• Out-of-box experience (OOBE) settings
• New! Hide change account options (requires Windows 10
1809)
• New! Device naming pattern, supporting variable
substitution (requires Windows 10 1809):
• %SERIAL%
• %RAND:x% (where X is the number of digits)
Creating an Autopilot profile
#AllAccessIT
If you have existing Windows 10 devices:
• An Azure AD device object is automatically created for each imported Autopilot
device
• Create one or more Azure AD groups
• Assign an Autopilot profile to the Azure AD group
• Intune will automatically assign the profile to all members of the assigned group
Options for grouping:
• Dynamic group with all Autopilot devices
• Dynamic group based on purchase order ID
• Dynamic group based on device tag (orderID)
• Manual
Assigning an Autopilot profile
Automated using groups
#AllAccessIT
Assigning a profile
#AllAccessIT
#AllAccessIT
Step 3. Deploy!
#AllAccessIT
Windows Autopilot overview
Configure
Windows
Autopilot profile
Self-servicedeploy
Device IDs
Hardware Vendor
IT Admin
Ship
Deliver direct to Employee
Employee unboxes
device, self-deploys
IntuneWindows Autopilot
Device sync
Autopilot profile sync
#AllAccessIT
Windows Autopilot // Licensing requirements
Requirements include:
• Windows 10
• Azure Active Directory (automatic MDM enrollment and company branding features)
• MDM functionality
Microsoft 365 Business subscriptions
Microsoft 365 F1 subscriptions
Microsoft 365 Academic subscriptions
Microsoft 365 Enterprise E3 or E5 subscriptions
Enterprise Mobility + Security E3 or E5 subscriptions, which include all needed Azure AD and
Intune features
Azure Active Directory Premium P1 or P2 and Intune subscriptions (or an alternative MDM
service)
#AllAccessIT
Windows Autopilot
One-time configuration tasks – pre requisites
Azure Active Directory
• Configure automatic MDM enrollment. See https://docs.microsoft.com/en-us/intune/windows-
enroll#enable-windows-10-automatic-enrollment.
• Configure company branding. See https://docs.microsoft.com/en-us/azure/active-
directory/fundamentals/customize-branding.
• Enable Windows Subscription Activation if desired
• Ensure users can join devices to Azure AD (for user-driven mode)
Intune:
• Enable the enrollment status page
• Ensure users can enroll devices in Intune
• (Optional) New! Set up enrollment restrictions so only Autopilot-registered devices can enroll
#AllAccessIT
Ensure policies, apps and settings are complete
prior to the end user gaining access to the
desktop
Confirm minimum baseline requirements
Protect data during device set up
Deliver a compliant secure device
Personalize the out of box experience
New! Unlock Windows 10 in S mode (requires Windows 10 1809)
Requirements
Windows 10, version 1803 (with May cumulative update or later)
Azure Active Directory Premium
Microsoft Intune
Windows Autopilot
Enrollment status page
#AllAccessIT
Scenarios
#AllAccessIT
AVAILABLE in 1809AVAILABLE in 1809AVAILABLE in 1809AVAILABLE
Windows Autopilot // Deployment Scenarios
User-driven mode
with Azure AD Join
Windows 10 1703
and above
Join device to Azure
AD, enroll in
Intune/MDM
Windows Autopilot
for existing devices
Windows 10 1809
and above
Windows 7 to
Windows 10
ConfigMgr task
sequence, followed
by Windows
Autopilot user-driven
mode
Self-deploying
mode
Windows 10 1809
and above
No need to provide
credentials,
automatically joins
Azure AD
User-driven mode
with Hybrid Azure
AD join
Windows 10 1809
and above
Join device to AD,
enroll in Intune/MDM
#AllAccessIT
User-driven deployment with Azure AD
#AllAccessIT
Windows Autopilot // User-driven deployment with Azure AD
Prerequisites:
Windows 10 version 1703
Azure Active Directory Premium
Microsoft Intune
Steps:
1. Device connected to internet network
2. Register device with Windows Autopilot
3. Assign Intune Autopilot Profile configured for
Azure AD join
4. Boot device
#AllAccessIT
User-driven deployment with Azure AD
#AllAccessIT
#AllAccessIT
Self-deploying mode
#AllAccessIT
Windows Autopilot // Self-deploying mode with Azure AD
Prerequisites:
Windows 10 version 1809
Azure Active Directory Premium
Microsoft Intune
Device with TPM 2.0
Steps:
1. Device connected to internet
2. Register device with Windows Autopilot
3. Assign Intune Autopilot Profile configured for
self-deploying mode
4. Boot device
VDI clients
Digital signage
Single app kiosk
Multi app kiosk Shared PC
How would you use Autopilot to deploy…
#AllAccessIT
Self-deploying mode (kiosks)
#AllAccessIT
#AllAccessIT
| Existing devices
#AllAccessIT
January 14, 2020
#AllAccessIT
Windows
Autopilot
#AllAccessIT
Windows Autopilot // Windows Autopilot for existing devices
Prerequisites:
Windows 10 version 1809
Azure Active Directory Premium
Microsoft Intune
System Center Configuration Manager
OneDrive for Business
Steps:
1. Create task sequence to deploy generic Windows 10
image with needed drivers (wipe-and-load)
2. Migrate data to OneDrive for Business (in advance)
3. Deploy task sequence to existing Windows 7 devices,
installing Windows 10 and proceeding through Windows
Autopilot user-driven process to join device to Azure AD
#AllAccessIT
Design notes
Upgrading the OS is just part of the problem
Need to migrate user data from Win7 to Win10
Unable to harvest hardware hashes in Win7
#AllAccessIT
Autopilot for existing devices
#AllAccessIT
#AllAccessIT
Roadmap
#AllAccessIT
AVAILABLE in 1903AVAILABLE in 1903AVAILABLE in 1903
Windows Autopilot // New in Windows 10 1903!
Windows Autopilot
“White Glove”
Windows 10 1903 and above
White glove partners or IT
staff can pre-provision
Windows 10 PC to be fully
configured and business-
ready for an org or user
Enrollment Status Page
enhancements
Windows 10 1903 and above
ESP tracks Intune Management
Extensions, SCCM and Office
installs
IT admin can choose what apps
block during ESP through
Intune
Cortana voiceover disabled
in OOBE
Windows 10 1903 and above
Cortana voiceover disabled by
default for Pro and above SKUs
AVAILABLE in 1903
Self-updating Autopilot
Windows 10 1903 and above
Enable new Windows Autopilot
functionality without updating
Windows.
#AllAccessIT
White Glove
#AllAccessIT
Windows Autopilot // White Glove
Windows 10 1903 and above
Partners or IT staff can pre-provision devices to be
fully configured and business-ready
#AllAccessIT
#AllAccessIT
Windows Autopilot // Resources
Docs.microsoft.com: Windows Autopilot
https://docs.microsoft.com/en-us/windows/deployment/windows-autopilot/windows-
autopilot
#AllAccessIT
Windows Autopilot // Resources
https://www.linkedin.com/learning/win
dows-autopilot-essential-training
#AllAccessIT
Windows Autopilot // Resources
#AllAccessIT
Windows Autopilot // Resources
https://www.amazon.co.uk/Exam-MD-
101-Managing-Modern-Desktops
#AllAccessIT#AllAccessIT
Thank you!
Andrew Bettany MCT, MVP
IT Masterclasses Ltd
andrew@itmasterclasses.com

More Related Content

What's hot

Windows 10 Autopilot #BITPro User Group Event
Windows 10 Autopilot #BITPro User Group EventWindows 10 Autopilot #BITPro User Group Event
Windows 10 Autopilot #BITPro User Group EventAnoop Nair
 
Windows User Group June 2016 Windows 10
Windows User Group June 2016 Windows 10 Windows User Group June 2016 Windows 10
Windows User Group June 2016 Windows 10 Andrew Bettany
 
Windows Autopilot White Glove Process
Windows Autopilot White Glove ProcessWindows Autopilot White Glove Process
Windows Autopilot White Glove ProcessJustin Lee
 
Ewug 1902 what is new in modern management
Ewug 1902   what is new in modern managementEwug 1902   what is new in modern management
Ewug 1902 what is new in modern managementPer Larsen
 
Llunitebe2018 implement modern management as like brewing a beer
Llunitebe2018 implement modern management as like brewing a beerLlunitebe2018 implement modern management as like brewing a beer
Llunitebe2018 implement modern management as like brewing a beerKenny Buntinx
 
Quickbooks Shipping Setup - TrueShip
Quickbooks Shipping Setup - TrueShipQuickbooks Shipping Setup - TrueShip
Quickbooks Shipping Setup - TrueShipTrueShip
 
Presentatie 21 mei Tergos Modern Management
Presentatie 21 mei   Tergos Modern ManagementPresentatie 21 mei   Tergos Modern Management
Presentatie 21 mei Tergos Modern ManagementGiovanni Perini
 
Windows 10 deployment training for system builders
Windows 10 deployment training for system buildersWindows 10 deployment training for system builders
Windows 10 deployment training for system buildersnorthernlightz
 
Windows 10 deployment using ConfigMgr and MDT
Windows 10 deployment using ConfigMgr and MDTWindows 10 deployment using ConfigMgr and MDT
Windows 10 deployment using ConfigMgr and MDTRonni Pedersen
 
Windows Accelerate IT Pro Bootcamp: Windows ToGo (Module 3 of 8)
Windows Accelerate IT Pro Bootcamp: Windows ToGo (Module 3 of 8)Windows Accelerate IT Pro Bootcamp: Windows ToGo (Module 3 of 8)
Windows Accelerate IT Pro Bootcamp: Windows ToGo (Module 3 of 8)Intergen
 
Windows azure development setup
Windows azure development setupWindows azure development setup
Windows azure development setupparallelminder
 
How to Get the​ Fastest Possible ​Citrix Logon Times​? Optimization Tips for ...
How to Get the​ Fastest Possible ​Citrix Logon Times​? Optimization Tips for ...How to Get the​ Fastest Possible ​Citrix Logon Times​? Optimization Tips for ...
How to Get the​ Fastest Possible ​Citrix Logon Times​? Optimization Tips for ...eG Innovations
 
Everything You Ever Wanted To Know About Application Compatibility
Everything You Ever Wanted To Know About Application CompatibilityEverything You Ever Wanted To Know About Application Compatibility
Everything You Ever Wanted To Know About Application CompatibilityStephen Rose
 
In tune inaction
In tune inactionIn tune inaction
In tune inactionOlav Tvedt
 
UWM Customer Roadmap
UWM Customer RoadmapUWM Customer Roadmap
UWM Customer RoadmapIvanti
 
1 new konfigurieren und managen von schulgeraeten unter windows 10
1 new konfigurieren und managen von schulgeraeten unter windows 101 new konfigurieren und managen von schulgeraeten unter windows 10
1 new konfigurieren und managen von schulgeraeten unter windows 10Yannic Ganguillet
 
Proactive Citrix Logon Monitoring with Free Citrix Logon Simulator
Proactive Citrix Logon Monitoring with Free Citrix Logon SimulatorProactive Citrix Logon Monitoring with Free Citrix Logon Simulator
Proactive Citrix Logon Monitoring with Free Citrix Logon SimulatoreG Innovations
 
Deploying windows 10 in the Enterprise
Deploying windows 10 in the EnterpriseDeploying windows 10 in the Enterprise
Deploying windows 10 in the EnterpriseRonni Pedersen
 

What's hot (20)

Windows 10 Autopilot #BITPro User Group Event
Windows 10 Autopilot #BITPro User Group EventWindows 10 Autopilot #BITPro User Group Event
Windows 10 Autopilot #BITPro User Group Event
 
Windows User Group June 2016 Windows 10
Windows User Group June 2016 Windows 10 Windows User Group June 2016 Windows 10
Windows User Group June 2016 Windows 10
 
Windows Autopilot White Glove Process
Windows Autopilot White Glove ProcessWindows Autopilot White Glove Process
Windows Autopilot White Glove Process
 
Ewug 1902 what is new in modern management
Ewug 1902   what is new in modern managementEwug 1902   what is new in modern management
Ewug 1902 what is new in modern management
 
installaware_faq
installaware_faqinstallaware_faq
installaware_faq
 
Llunitebe2018 implement modern management as like brewing a beer
Llunitebe2018 implement modern management as like brewing a beerLlunitebe2018 implement modern management as like brewing a beer
Llunitebe2018 implement modern management as like brewing a beer
 
Quickbooks Shipping Setup - TrueShip
Quickbooks Shipping Setup - TrueShipQuickbooks Shipping Setup - TrueShip
Quickbooks Shipping Setup - TrueShip
 
Presentatie 21 mei Tergos Modern Management
Presentatie 21 mei   Tergos Modern ManagementPresentatie 21 mei   Tergos Modern Management
Presentatie 21 mei Tergos Modern Management
 
Windows 10 deployment training for system builders
Windows 10 deployment training for system buildersWindows 10 deployment training for system builders
Windows 10 deployment training for system builders
 
Windows 10 deployment using ConfigMgr and MDT
Windows 10 deployment using ConfigMgr and MDTWindows 10 deployment using ConfigMgr and MDT
Windows 10 deployment using ConfigMgr and MDT
 
Prerequisites
PrerequisitesPrerequisites
Prerequisites
 
Windows Accelerate IT Pro Bootcamp: Windows ToGo (Module 3 of 8)
Windows Accelerate IT Pro Bootcamp: Windows ToGo (Module 3 of 8)Windows Accelerate IT Pro Bootcamp: Windows ToGo (Module 3 of 8)
Windows Accelerate IT Pro Bootcamp: Windows ToGo (Module 3 of 8)
 
Windows azure development setup
Windows azure development setupWindows azure development setup
Windows azure development setup
 
How to Get the​ Fastest Possible ​Citrix Logon Times​? Optimization Tips for ...
How to Get the​ Fastest Possible ​Citrix Logon Times​? Optimization Tips for ...How to Get the​ Fastest Possible ​Citrix Logon Times​? Optimization Tips for ...
How to Get the​ Fastest Possible ​Citrix Logon Times​? Optimization Tips for ...
 
Everything You Ever Wanted To Know About Application Compatibility
Everything You Ever Wanted To Know About Application CompatibilityEverything You Ever Wanted To Know About Application Compatibility
Everything You Ever Wanted To Know About Application Compatibility
 
In tune inaction
In tune inactionIn tune inaction
In tune inaction
 
UWM Customer Roadmap
UWM Customer RoadmapUWM Customer Roadmap
UWM Customer Roadmap
 
1 new konfigurieren und managen von schulgeraeten unter windows 10
1 new konfigurieren und managen von schulgeraeten unter windows 101 new konfigurieren und managen von schulgeraeten unter windows 10
1 new konfigurieren und managen von schulgeraeten unter windows 10
 
Proactive Citrix Logon Monitoring with Free Citrix Logon Simulator
Proactive Citrix Logon Monitoring with Free Citrix Logon SimulatorProactive Citrix Logon Monitoring with Free Citrix Logon Simulator
Proactive Citrix Logon Monitoring with Free Citrix Logon Simulator
 
Deploying windows 10 in the Enterprise
Deploying windows 10 in the EnterpriseDeploying windows 10 in the Enterprise
Deploying windows 10 in the Enterprise
 

Similar to SpiceWorks All Access IT 2019 Windows Autopilot

Windows Autopilot (1).pdf
Windows Autopilot (1).pdfWindows Autopilot (1).pdf
Windows Autopilot (1).pdfabhipotdar
 
Atea ems the next level
Atea   ems the next levelAtea   ems the next level
Atea ems the next levelPer Larsen
 
WMUG NL Tuesday - Latest and greatest in the world of Configuration Manager
WMUG NL Tuesday - Latest and greatest in the world of Configuration ManagerWMUG NL Tuesday - Latest and greatest in the world of Configuration Manager
WMUG NL Tuesday - Latest and greatest in the world of Configuration ManagerTim De Keukelaere
 
Modern deployment with Autopilot and Azure AD
Modern deployment with Autopilot and Azure ADModern deployment with Autopilot and Azure AD
Modern deployment with Autopilot and Azure ADFabian Niesen
 
Preparing your enteprise for Hybrid AD Join and Conditional Access
Preparing your enteprise for Hybrid AD Join and Conditional AccessPreparing your enteprise for Hybrid AD Join and Conditional Access
Preparing your enteprise for Hybrid AD Join and Conditional AccessJason Condo
 
ECMDay2015 - Peter Daalmans – Master your Mac OS X Operating System with Conf...
ECMDay2015 - Peter Daalmans – Master your Mac OS X Operating System with Conf...ECMDay2015 - Peter Daalmans – Master your Mac OS X Operating System with Conf...
ECMDay2015 - Peter Daalmans – Master your Mac OS X Operating System with Conf...Kenny Buntinx
 
Go…Running Kentico CMS on Windows Azure
Go…Running Kentico CMS on Windows AzureGo…Running Kentico CMS on Windows Azure
Go…Running Kentico CMS on Windows AzureThomas Robbins
 
Sysctr Track: Managing your hybrid Mobile cloud Workforce Demystified with Sy...
Sysctr Track: Managing your hybrid Mobile cloud Workforce Demystified with Sy...Sysctr Track: Managing your hybrid Mobile cloud Workforce Demystified with Sy...
Sysctr Track: Managing your hybrid Mobile cloud Workforce Demystified with Sy...ITProceed
 
Tdswe 1810 learn how to create a secure and modern windows device
Tdswe 1810   learn how to create a secure and modern windows deviceTdswe 1810   learn how to create a secure and modern windows device
Tdswe 1810 learn how to create a secure and modern windows devicePer Larsen
 
ECMDay2015 - Nico Sienaert – Enterprise Mobility Suite – What it’s all about?
ECMDay2015 - Nico Sienaert – Enterprise Mobility Suite – What it’s all about?ECMDay2015 - Nico Sienaert – Enterprise Mobility Suite – What it’s all about?
ECMDay2015 - Nico Sienaert – Enterprise Mobility Suite – What it’s all about?Kenny Buntinx
 
May 2023 EMEA New ThousandEyes Product Features and Release Highlights.pptx
May 2023 EMEA New ThousandEyes Product Features and Release Highlights.pptxMay 2023 EMEA New ThousandEyes Product Features and Release Highlights.pptx
May 2023 EMEA New ThousandEyes Product Features and Release Highlights.pptxThousandEyes
 
ITPROCEED_WorkplaceMobility_Windows 10 in the enterprise
ITPROCEED_WorkplaceMobility_Windows 10 in the enterpriseITPROCEED_WorkplaceMobility_Windows 10 in the enterprise
ITPROCEED_WorkplaceMobility_Windows 10 in the enterpriseITProceed
 
Getting started with the Enterprise Mobility Suite (EMS)
Getting started with the Enterprise Mobility Suite (EMS)Getting started with the Enterprise Mobility Suite (EMS)
Getting started with the Enterprise Mobility Suite (EMS)Ronni Pedersen
 
Ewug.dk ems the next level
Ewug.dk  ems   the next levelEwug.dk  ems   the next level
Ewug.dk ems the next levelPer Larsen
 
Leveraging Microsoft Azure for Next Gen App Development
Leveraging Microsoft Azure for Next Gen App DevelopmentLeveraging Microsoft Azure for Next Gen App Development
Leveraging Microsoft Azure for Next Gen App DevelopmentWinWire Technologies Inc
 
ITPROCEED_WorkplaceMobility_Creating a seamless experience with ue v and wind...
ITPROCEED_WorkplaceMobility_Creating a seamless experience with ue v and wind...ITPROCEED_WorkplaceMobility_Creating a seamless experience with ue v and wind...
ITPROCEED_WorkplaceMobility_Creating a seamless experience with ue v and wind...ITProceed
 

Similar to SpiceWorks All Access IT 2019 Windows Autopilot (20)

Windows Autopilot (1).pdf
Windows Autopilot (1).pdfWindows Autopilot (1).pdf
Windows Autopilot (1).pdf
 
Atea ems the next level
Atea   ems the next levelAtea   ems the next level
Atea ems the next level
 
WMUG NL Tuesday - Latest and greatest in the world of Configuration Manager
WMUG NL Tuesday - Latest and greatest in the world of Configuration ManagerWMUG NL Tuesday - Latest and greatest in the world of Configuration Manager
WMUG NL Tuesday - Latest and greatest in the world of Configuration Manager
 
Modern deployment with Autopilot and Azure AD
Modern deployment with Autopilot and Azure ADModern deployment with Autopilot and Azure AD
Modern deployment with Autopilot and Azure AD
 
Bsm mw10
Bsm mw10Bsm mw10
Bsm mw10
 
Preparing your enteprise for Hybrid AD Join and Conditional Access
Preparing your enteprise for Hybrid AD Join and Conditional AccessPreparing your enteprise for Hybrid AD Join and Conditional Access
Preparing your enteprise for Hybrid AD Join and Conditional Access
 
ECMDay2015 - Peter Daalmans – Master your Mac OS X Operating System with Conf...
ECMDay2015 - Peter Daalmans – Master your Mac OS X Operating System with Conf...ECMDay2015 - Peter Daalmans – Master your Mac OS X Operating System with Conf...
ECMDay2015 - Peter Daalmans – Master your Mac OS X Operating System with Conf...
 
Go…Running Kentico CMS on Windows Azure
Go…Running Kentico CMS on Windows AzureGo…Running Kentico CMS on Windows Azure
Go…Running Kentico CMS on Windows Azure
 
Sysctr Track: Managing your hybrid Mobile cloud Workforce Demystified with Sy...
Sysctr Track: Managing your hybrid Mobile cloud Workforce Demystified with Sy...Sysctr Track: Managing your hybrid Mobile cloud Workforce Demystified with Sy...
Sysctr Track: Managing your hybrid Mobile cloud Workforce Demystified with Sy...
 
Tdswe 1810 learn how to create a secure and modern windows device
Tdswe 1810   learn how to create a secure and modern windows deviceTdswe 1810   learn how to create a secure and modern windows device
Tdswe 1810 learn how to create a secure and modern windows device
 
ECMDay2015 - Nico Sienaert – Enterprise Mobility Suite – What it’s all about?
ECMDay2015 - Nico Sienaert – Enterprise Mobility Suite – What it’s all about?ECMDay2015 - Nico Sienaert – Enterprise Mobility Suite – What it’s all about?
ECMDay2015 - Nico Sienaert – Enterprise Mobility Suite – What it’s all about?
 
May 2023 EMEA New ThousandEyes Product Features and Release Highlights.pptx
May 2023 EMEA New ThousandEyes Product Features and Release Highlights.pptxMay 2023 EMEA New ThousandEyes Product Features and Release Highlights.pptx
May 2023 EMEA New ThousandEyes Product Features and Release Highlights.pptx
 
ITPROCEED_WorkplaceMobility_Windows 10 in the enterprise
ITPROCEED_WorkplaceMobility_Windows 10 in the enterpriseITPROCEED_WorkplaceMobility_Windows 10 in the enterprise
ITPROCEED_WorkplaceMobility_Windows 10 in the enterprise
 
Getting started with the Enterprise Mobility Suite (EMS)
Getting started with the Enterprise Mobility Suite (EMS)Getting started with the Enterprise Mobility Suite (EMS)
Getting started with the Enterprise Mobility Suite (EMS)
 
Windows 8.1 a closer look
Windows 8.1 a closer lookWindows 8.1 a closer look
Windows 8.1 a closer look
 
Ewug.dk ems the next level
Ewug.dk  ems   the next levelEwug.dk  ems   the next level
Ewug.dk ems the next level
 
Leveraging Microsoft Azure for Next Gen App Development
Leveraging Microsoft Azure for Next Gen App DevelopmentLeveraging Microsoft Azure for Next Gen App Development
Leveraging Microsoft Azure for Next Gen App Development
 
ITPROCEED_WorkplaceMobility_Creating a seamless experience with ue v and wind...
ITPROCEED_WorkplaceMobility_Creating a seamless experience with ue v and wind...ITPROCEED_WorkplaceMobility_Creating a seamless experience with ue v and wind...
ITPROCEED_WorkplaceMobility_Creating a seamless experience with ue v and wind...
 
Vistapresentation2
Vistapresentation2Vistapresentation2
Vistapresentation2
 
Mdm with config mgr nico
Mdm with config mgr nicoMdm with config mgr nico
Mdm with config mgr nico
 

More from Andrew Bettany

4 Modern Security - Integrated SecOps and incident response with MTP
4  Modern Security - Integrated SecOps and incident response with MTP4  Modern Security - Integrated SecOps and incident response with MTP
4 Modern Security - Integrated SecOps and incident response with MTPAndrew Bettany
 
3 Modern Security - Secure identities to reach zero trust with AAD
3   Modern Security - Secure identities to reach zero trust with AAD3   Modern Security - Secure identities to reach zero trust with AAD
3 Modern Security - Secure identities to reach zero trust with AADAndrew Bettany
 
2 Modern Security - Microsoft Information Protection
2   Modern Security - Microsoft Information Protection2   Modern Security - Microsoft Information Protection
2 Modern Security - Microsoft Information ProtectionAndrew Bettany
 
1 Modern Security - Keynote
1  Modern Security - Keynote1  Modern Security - Keynote
1 Modern Security - KeynoteAndrew Bettany
 
4 Modern Desktop - Planning a Modern Desktop Deployment
4   Modern Desktop -  Planning a Modern Desktop Deployment4   Modern Desktop -  Planning a Modern Desktop Deployment
4 Modern Desktop - Planning a Modern Desktop DeploymentAndrew Bettany
 
3 modern desktop - office 365 pro plus deployment + servicing
3   modern desktop - office 365 pro plus deployment + servicing3   modern desktop - office 365 pro plus deployment + servicing
3 modern desktop - office 365 pro plus deployment + servicingAndrew Bettany
 
1 modern desktop - shift to a modern desktop
1   modern desktop - shift to a modern desktop1   modern desktop - shift to a modern desktop
1 modern desktop - shift to a modern desktopAndrew Bettany
 
Threescore years and ten
Threescore years and tenThreescore years and ten
Threescore years and tenAndrew Bettany
 

More from Andrew Bettany (8)

4 Modern Security - Integrated SecOps and incident response with MTP
4  Modern Security - Integrated SecOps and incident response with MTP4  Modern Security - Integrated SecOps and incident response with MTP
4 Modern Security - Integrated SecOps and incident response with MTP
 
3 Modern Security - Secure identities to reach zero trust with AAD
3   Modern Security - Secure identities to reach zero trust with AAD3   Modern Security - Secure identities to reach zero trust with AAD
3 Modern Security - Secure identities to reach zero trust with AAD
 
2 Modern Security - Microsoft Information Protection
2   Modern Security - Microsoft Information Protection2   Modern Security - Microsoft Information Protection
2 Modern Security - Microsoft Information Protection
 
1 Modern Security - Keynote
1  Modern Security - Keynote1  Modern Security - Keynote
1 Modern Security - Keynote
 
4 Modern Desktop - Planning a Modern Desktop Deployment
4   Modern Desktop -  Planning a Modern Desktop Deployment4   Modern Desktop -  Planning a Modern Desktop Deployment
4 Modern Desktop - Planning a Modern Desktop Deployment
 
3 modern desktop - office 365 pro plus deployment + servicing
3   modern desktop - office 365 pro plus deployment + servicing3   modern desktop - office 365 pro plus deployment + servicing
3 modern desktop - office 365 pro plus deployment + servicing
 
1 modern desktop - shift to a modern desktop
1   modern desktop - shift to a modern desktop1   modern desktop - shift to a modern desktop
1 modern desktop - shift to a modern desktop
 
Threescore years and ten
Threescore years and tenThreescore years and ten
Threescore years and ten
 

Recently uploaded

Powerpoint exploring the locations used in television show Time Clash
Powerpoint exploring the locations used in television show Time ClashPowerpoint exploring the locations used in television show Time Clash
Powerpoint exploring the locations used in television show Time Clashcharlottematthew16
 
Automating Business Process via MuleSoft Composer | Bangalore MuleSoft Meetup...
Automating Business Process via MuleSoft Composer | Bangalore MuleSoft Meetup...Automating Business Process via MuleSoft Composer | Bangalore MuleSoft Meetup...
Automating Business Process via MuleSoft Composer | Bangalore MuleSoft Meetup...shyamraj55
 
Streamlining Python Development: A Guide to a Modern Project Setup
Streamlining Python Development: A Guide to a Modern Project SetupStreamlining Python Development: A Guide to a Modern Project Setup
Streamlining Python Development: A Guide to a Modern Project SetupFlorian Wilhelm
 
costume and set research powerpoint presentation
costume and set research powerpoint presentationcostume and set research powerpoint presentation
costume and set research powerpoint presentationphoebematthew05
 
SIP trunking in Janus @ Kamailio World 2024
SIP trunking in Janus @ Kamailio World 2024SIP trunking in Janus @ Kamailio World 2024
SIP trunking in Janus @ Kamailio World 2024Lorenzo Miniero
 
Designing IA for AI - Information Architecture Conference 2024
Designing IA for AI - Information Architecture Conference 2024Designing IA for AI - Information Architecture Conference 2024
Designing IA for AI - Information Architecture Conference 2024Enterprise Knowledge
 
My INSURER PTE LTD - Insurtech Innovation Award 2024
My INSURER PTE LTD - Insurtech Innovation Award 2024My INSURER PTE LTD - Insurtech Innovation Award 2024
My INSURER PTE LTD - Insurtech Innovation Award 2024The Digital Insurer
 
SAP Build Work Zone - Overview L2-L3.pptx
SAP Build Work Zone - Overview L2-L3.pptxSAP Build Work Zone - Overview L2-L3.pptx
SAP Build Work Zone - Overview L2-L3.pptxNavinnSomaal
 
Pigging Solutions in Pet Food Manufacturing
Pigging Solutions in Pet Food ManufacturingPigging Solutions in Pet Food Manufacturing
Pigging Solutions in Pet Food ManufacturingPigging Solutions
 
Advanced Test Driven-Development @ php[tek] 2024
Advanced Test Driven-Development @ php[tek] 2024Advanced Test Driven-Development @ php[tek] 2024
Advanced Test Driven-Development @ php[tek] 2024Scott Keck-Warren
 
Bun (KitWorks Team Study 노별마루 발표 2024.4.22)
Bun (KitWorks Team Study 노별마루 발표 2024.4.22)Bun (KitWorks Team Study 노별마루 발표 2024.4.22)
Bun (KitWorks Team Study 노별마루 발표 2024.4.22)Wonjun Hwang
 
CloudStudio User manual (basic edition):
CloudStudio User manual (basic edition):CloudStudio User manual (basic edition):
CloudStudio User manual (basic edition):comworks
 
Dev Dives: Streamline document processing with UiPath Studio Web
Dev Dives: Streamline document processing with UiPath Studio WebDev Dives: Streamline document processing with UiPath Studio Web
Dev Dives: Streamline document processing with UiPath Studio WebUiPathCommunity
 
Beyond Boundaries: Leveraging No-Code Solutions for Industry Innovation
Beyond Boundaries: Leveraging No-Code Solutions for Industry InnovationBeyond Boundaries: Leveraging No-Code Solutions for Industry Innovation
Beyond Boundaries: Leveraging No-Code Solutions for Industry InnovationSafe Software
 
"ML in Production",Oleksandr Bagan
"ML in Production",Oleksandr Bagan"ML in Production",Oleksandr Bagan
"ML in Production",Oleksandr BaganFwdays
 
"Federated learning: out of reach no matter how close",Oleksandr Lapshyn
"Federated learning: out of reach no matter how close",Oleksandr Lapshyn"Federated learning: out of reach no matter how close",Oleksandr Lapshyn
"Federated learning: out of reach no matter how close",Oleksandr LapshynFwdays
 
Connect Wave/ connectwave Pitch Deck Presentation
Connect Wave/ connectwave Pitch Deck PresentationConnect Wave/ connectwave Pitch Deck Presentation
Connect Wave/ connectwave Pitch Deck PresentationSlibray Presentation
 
Ensuring Technical Readiness For Copilot in Microsoft 365
Ensuring Technical Readiness For Copilot in Microsoft 365Ensuring Technical Readiness For Copilot in Microsoft 365
Ensuring Technical Readiness For Copilot in Microsoft 3652toLead Limited
 
"LLMs for Python Engineers: Advanced Data Analysis and Semantic Kernel",Oleks...
"LLMs for Python Engineers: Advanced Data Analysis and Semantic Kernel",Oleks..."LLMs for Python Engineers: Advanced Data Analysis and Semantic Kernel",Oleks...
"LLMs for Python Engineers: Advanced Data Analysis and Semantic Kernel",Oleks...Fwdays
 

Recently uploaded (20)

Powerpoint exploring the locations used in television show Time Clash
Powerpoint exploring the locations used in television show Time ClashPowerpoint exploring the locations used in television show Time Clash
Powerpoint exploring the locations used in television show Time Clash
 
Automating Business Process via MuleSoft Composer | Bangalore MuleSoft Meetup...
Automating Business Process via MuleSoft Composer | Bangalore MuleSoft Meetup...Automating Business Process via MuleSoft Composer | Bangalore MuleSoft Meetup...
Automating Business Process via MuleSoft Composer | Bangalore MuleSoft Meetup...
 
Streamlining Python Development: A Guide to a Modern Project Setup
Streamlining Python Development: A Guide to a Modern Project SetupStreamlining Python Development: A Guide to a Modern Project Setup
Streamlining Python Development: A Guide to a Modern Project Setup
 
costume and set research powerpoint presentation
costume and set research powerpoint presentationcostume and set research powerpoint presentation
costume and set research powerpoint presentation
 
Hot Sexy call girls in Panjabi Bagh 🔝 9953056974 🔝 Delhi escort Service
Hot Sexy call girls in Panjabi Bagh 🔝 9953056974 🔝 Delhi escort ServiceHot Sexy call girls in Panjabi Bagh 🔝 9953056974 🔝 Delhi escort Service
Hot Sexy call girls in Panjabi Bagh 🔝 9953056974 🔝 Delhi escort Service
 
SIP trunking in Janus @ Kamailio World 2024
SIP trunking in Janus @ Kamailio World 2024SIP trunking in Janus @ Kamailio World 2024
SIP trunking in Janus @ Kamailio World 2024
 
Designing IA for AI - Information Architecture Conference 2024
Designing IA for AI - Information Architecture Conference 2024Designing IA for AI - Information Architecture Conference 2024
Designing IA for AI - Information Architecture Conference 2024
 
My INSURER PTE LTD - Insurtech Innovation Award 2024
My INSURER PTE LTD - Insurtech Innovation Award 2024My INSURER PTE LTD - Insurtech Innovation Award 2024
My INSURER PTE LTD - Insurtech Innovation Award 2024
 
SAP Build Work Zone - Overview L2-L3.pptx
SAP Build Work Zone - Overview L2-L3.pptxSAP Build Work Zone - Overview L2-L3.pptx
SAP Build Work Zone - Overview L2-L3.pptx
 
Pigging Solutions in Pet Food Manufacturing
Pigging Solutions in Pet Food ManufacturingPigging Solutions in Pet Food Manufacturing
Pigging Solutions in Pet Food Manufacturing
 
Advanced Test Driven-Development @ php[tek] 2024
Advanced Test Driven-Development @ php[tek] 2024Advanced Test Driven-Development @ php[tek] 2024
Advanced Test Driven-Development @ php[tek] 2024
 
Bun (KitWorks Team Study 노별마루 발표 2024.4.22)
Bun (KitWorks Team Study 노별마루 발표 2024.4.22)Bun (KitWorks Team Study 노별마루 발표 2024.4.22)
Bun (KitWorks Team Study 노별마루 발표 2024.4.22)
 
CloudStudio User manual (basic edition):
CloudStudio User manual (basic edition):CloudStudio User manual (basic edition):
CloudStudio User manual (basic edition):
 
Dev Dives: Streamline document processing with UiPath Studio Web
Dev Dives: Streamline document processing with UiPath Studio WebDev Dives: Streamline document processing with UiPath Studio Web
Dev Dives: Streamline document processing with UiPath Studio Web
 
Beyond Boundaries: Leveraging No-Code Solutions for Industry Innovation
Beyond Boundaries: Leveraging No-Code Solutions for Industry InnovationBeyond Boundaries: Leveraging No-Code Solutions for Industry Innovation
Beyond Boundaries: Leveraging No-Code Solutions for Industry Innovation
 
"ML in Production",Oleksandr Bagan
"ML in Production",Oleksandr Bagan"ML in Production",Oleksandr Bagan
"ML in Production",Oleksandr Bagan
 
"Federated learning: out of reach no matter how close",Oleksandr Lapshyn
"Federated learning: out of reach no matter how close",Oleksandr Lapshyn"Federated learning: out of reach no matter how close",Oleksandr Lapshyn
"Federated learning: out of reach no matter how close",Oleksandr Lapshyn
 
Connect Wave/ connectwave Pitch Deck Presentation
Connect Wave/ connectwave Pitch Deck PresentationConnect Wave/ connectwave Pitch Deck Presentation
Connect Wave/ connectwave Pitch Deck Presentation
 
Ensuring Technical Readiness For Copilot in Microsoft 365
Ensuring Technical Readiness For Copilot in Microsoft 365Ensuring Technical Readiness For Copilot in Microsoft 365
Ensuring Technical Readiness For Copilot in Microsoft 365
 
"LLMs for Python Engineers: Advanced Data Analysis and Semantic Kernel",Oleks...
"LLMs for Python Engineers: Advanced Data Analysis and Semantic Kernel",Oleks..."LLMs for Python Engineers: Advanced Data Analysis and Semantic Kernel",Oleks...
"LLMs for Python Engineers: Advanced Data Analysis and Semantic Kernel",Oleks...
 

SpiceWorks All Access IT 2019 Windows Autopilot

  • 1. #AllAccessIT #AllAccessIT Windows Autopilot Andrew Bettany MCT, MVP IT Masterclasses Ltd andrew@itmasterclasses.com
  • 2. #AllAccessIT#AllAccessIT Live life without regret, believe in your potential, don’t stop! Andrew Bettany • IT Masterclasses Ltd – bespoke technical training • Microsoft MVP since 2012 • Microsoft 365 User Group • Microsoft Press Author • Freelance Trainer / Course Author • Microsoft Learning Regional Lead for UK • LinkedIn & Pluralsight video author Specialties: Microsoft 365 | Windows Client | Windows Server | Deployment andrew@itmasterclasses.com @andrew_bettany
  • 3. #AllAccessIT Traditional Windows deployment // The old way Build a custom image, gathering everything else that’s necessary to deploy Time means money, making this an expensive proposition Deploy image to a new computer, overwriting what was originally on it DRIVERS POLICIES OFFICE & APPS SETTINGS
  • 4. #AllAccessIT Modern Windows deployment // The new way Un-box and turn on off-the-shelf Windows PC Device is ready for productive use Transform with minimal user interaction
  • 5. #AllAccessIT Key Benefits: No more maintenance of images and drivers No need for IT to touch the devices Simple process for users and IT Integration in the device supply chain Reset device back to a business ready state Device lifecycle management with Windows Autopilot & Intune Business ready Break fix RetirementManagementProcurement Deployment
  • 6. #AllAccessIT Transform device deployment with Windows Autopilot Trusted by IT, loved by end-users Deliver a secure, productive experience without ever touching the device Be productive from the start with a personalized out of box experience Be productive from the start with a personalized out of box experience Deliver a secure, productive experience without ever touching the device
  • 7. #AllAccessIT OEM-optimized Windows 10 + Software + Settings + Updates + Features + User data Ready for productive use The transformation
  • 8. #AllAccessIT Windows Autopilot deployment Three simple steps Register devices Assign an Autopilot profile to the devices Ship the device to the user Cloud driven
  • 9. #AllAccessIT Administering Windows Autopilot Microsoft Store for Business Microsoft Intune / Microsoft 365 Device Management Partner Center Microsoft 365 Business
  • 10. #AllAccessIT Step 1. Register devices Step 2. Assign profile Step 3. Deploy! Windows Autopilot // Key Steps
  • 13. #AllAccessIT OEM Device registration Clean images  Free  $30/PC offering (Targeting later CY19)  $3 option  $5/device  Free; additional offerings at $5/PC and $8-35/PC  Free  Free Windows Autopilot // Major OEM status
  • 14. #AllAccessIT OEMs, distributors, and resellers make the process easy: • Automatically add new devices to Azure tenant at time of shipment • Associate devices to customer’s purchase order for easy device grouping • Tag devices with a customer specified label • Provide an preinstalled image that is ready for configuration* For a list of those supporting Windows Autopilot supply chain integration please visit: https://aka.ms/WindowsAutopilot Registering new devices Supply chain integration
  • 15. #AllAccessIT If you have existing Windows 10 devices: • Enable new Autopilot profile setting for all targeted devices • Ensure the Autopilot profile is assigned to a group containing the existing Windows 10 devices If your existing Windows 10 devices are not yet Intune-managed: • Enable co-management with ConfigMgr via the “Automatic enrollment into Intune” setting. (See https://docs.microsoft.com/en- us/sccm/core/clients/manage/co-management-overview#enable-co-management) • Ensure all new Intune-enrolled Windows 10 devices are part of a group with an assigned Autopilot profile Registering existing devices Automatically for all Intune-managed Windows 10 devices
  • 16. #AllAccessIT To register existing devices: • Use the PowerShell script available at https://www.powershellgallery.com/packages/Get- WindowsAutopilotInfo • Run for each device (requires Windows 10 1703 or higher) • Upload resulting CSV file via Intune portal • See https://docs.microsoft.com/en- us/windows/deployment/windows-autopilot/add-devices#collecting- the-hardware-id-from-existing-devices-using-powershell for more information Registering existing devices Manually for existing devices
  • 17. #AllAccessIT Registering devices // Summary Microsoft IntunePartner CenterOEM API
  • 19. #AllAccessIT Configure important details: • Deployment mode • Specific settings required for the deployment mode • New! BitLocker encryption even for non-admin users (requires Windows 10 1809) • Out-of-box experience (OOBE) settings • New! Hide change account options (requires Windows 10 1809) • New! Device naming pattern, supporting variable substitution (requires Windows 10 1809): • %SERIAL% • %RAND:x% (where X is the number of digits) Creating an Autopilot profile
  • 20. #AllAccessIT If you have existing Windows 10 devices: • An Azure AD device object is automatically created for each imported Autopilot device • Create one or more Azure AD groups • Assign an Autopilot profile to the Azure AD group • Intune will automatically assign the profile to all members of the assigned group Options for grouping: • Dynamic group with all Autopilot devices • Dynamic group based on purchase order ID • Dynamic group based on device tag (orderID) • Manual Assigning an Autopilot profile Automated using groups
  • 24. #AllAccessIT Windows Autopilot overview Configure Windows Autopilot profile Self-servicedeploy Device IDs Hardware Vendor IT Admin Ship Deliver direct to Employee Employee unboxes device, self-deploys IntuneWindows Autopilot Device sync Autopilot profile sync
  • 25. #AllAccessIT Windows Autopilot // Licensing requirements Requirements include: • Windows 10 • Azure Active Directory (automatic MDM enrollment and company branding features) • MDM functionality Microsoft 365 Business subscriptions Microsoft 365 F1 subscriptions Microsoft 365 Academic subscriptions Microsoft 365 Enterprise E3 or E5 subscriptions Enterprise Mobility + Security E3 or E5 subscriptions, which include all needed Azure AD and Intune features Azure Active Directory Premium P1 or P2 and Intune subscriptions (or an alternative MDM service)
  • 26. #AllAccessIT Windows Autopilot One-time configuration tasks – pre requisites Azure Active Directory • Configure automatic MDM enrollment. See https://docs.microsoft.com/en-us/intune/windows- enroll#enable-windows-10-automatic-enrollment. • Configure company branding. See https://docs.microsoft.com/en-us/azure/active- directory/fundamentals/customize-branding. • Enable Windows Subscription Activation if desired • Ensure users can join devices to Azure AD (for user-driven mode) Intune: • Enable the enrollment status page • Ensure users can enroll devices in Intune • (Optional) New! Set up enrollment restrictions so only Autopilot-registered devices can enroll
  • 27. #AllAccessIT Ensure policies, apps and settings are complete prior to the end user gaining access to the desktop Confirm minimum baseline requirements Protect data during device set up Deliver a compliant secure device Personalize the out of box experience New! Unlock Windows 10 in S mode (requires Windows 10 1809) Requirements Windows 10, version 1803 (with May cumulative update or later) Azure Active Directory Premium Microsoft Intune Windows Autopilot Enrollment status page
  • 29. #AllAccessIT AVAILABLE in 1809AVAILABLE in 1809AVAILABLE in 1809AVAILABLE Windows Autopilot // Deployment Scenarios User-driven mode with Azure AD Join Windows 10 1703 and above Join device to Azure AD, enroll in Intune/MDM Windows Autopilot for existing devices Windows 10 1809 and above Windows 7 to Windows 10 ConfigMgr task sequence, followed by Windows Autopilot user-driven mode Self-deploying mode Windows 10 1809 and above No need to provide credentials, automatically joins Azure AD User-driven mode with Hybrid Azure AD join Windows 10 1809 and above Join device to AD, enroll in Intune/MDM
  • 31. #AllAccessIT Windows Autopilot // User-driven deployment with Azure AD Prerequisites: Windows 10 version 1703 Azure Active Directory Premium Microsoft Intune Steps: 1. Device connected to internet network 2. Register device with Windows Autopilot 3. Assign Intune Autopilot Profile configured for Azure AD join 4. Boot device
  • 35. #AllAccessIT Windows Autopilot // Self-deploying mode with Azure AD Prerequisites: Windows 10 version 1809 Azure Active Directory Premium Microsoft Intune Device with TPM 2.0 Steps: 1. Device connected to internet 2. Register device with Windows Autopilot 3. Assign Intune Autopilot Profile configured for self-deploying mode 4. Boot device
  • 36. VDI clients Digital signage Single app kiosk Multi app kiosk Shared PC How would you use Autopilot to deploy…
  • 42. #AllAccessIT Windows Autopilot // Windows Autopilot for existing devices Prerequisites: Windows 10 version 1809 Azure Active Directory Premium Microsoft Intune System Center Configuration Manager OneDrive for Business Steps: 1. Create task sequence to deploy generic Windows 10 image with needed drivers (wipe-and-load) 2. Migrate data to OneDrive for Business (in advance) 3. Deploy task sequence to existing Windows 7 devices, installing Windows 10 and proceeding through Windows Autopilot user-driven process to join device to Azure AD
  • 43. #AllAccessIT Design notes Upgrading the OS is just part of the problem Need to migrate user data from Win7 to Win10 Unable to harvest hardware hashes in Win7
  • 47. #AllAccessIT AVAILABLE in 1903AVAILABLE in 1903AVAILABLE in 1903 Windows Autopilot // New in Windows 10 1903! Windows Autopilot “White Glove” Windows 10 1903 and above White glove partners or IT staff can pre-provision Windows 10 PC to be fully configured and business- ready for an org or user Enrollment Status Page enhancements Windows 10 1903 and above ESP tracks Intune Management Extensions, SCCM and Office installs IT admin can choose what apps block during ESP through Intune Cortana voiceover disabled in OOBE Windows 10 1903 and above Cortana voiceover disabled by default for Pro and above SKUs AVAILABLE in 1903 Self-updating Autopilot Windows 10 1903 and above Enable new Windows Autopilot functionality without updating Windows.
  • 49. #AllAccessIT Windows Autopilot // White Glove Windows 10 1903 and above Partners or IT staff can pre-provision devices to be fully configured and business-ready
  • 51. #AllAccessIT Windows Autopilot // Resources Docs.microsoft.com: Windows Autopilot https://docs.microsoft.com/en-us/windows/deployment/windows-autopilot/windows- autopilot
  • 52. #AllAccessIT Windows Autopilot // Resources https://www.linkedin.com/learning/win dows-autopilot-essential-training
  • 54. #AllAccessIT Windows Autopilot // Resources https://www.amazon.co.uk/Exam-MD- 101-Managing-Modern-Desktops
  • 55. #AllAccessIT#AllAccessIT Thank you! Andrew Bettany MCT, MVP IT Masterclasses Ltd andrew@itmasterclasses.com

Editor's Notes

  1. 6 years MVP (Windows) 2012-2018 Windows User Group IT Masterclasses Ltd – bespoke technical training Author of MS Press Windows 10 Exam Ref books Freelance Trainer Microsoft Learning Regional Lead for UK With the GDPR deadline fast approaching, this session highlights how both Microsoft 365 and Office 365, allows businesses to take a holistic approach to user, device and data security. In this tech talk, Andrew Bettany, Microsoft MVP, will discuss how you can demonstrate GDPR compliance whilst bringing value and security to your business and customers. Andrew will demonstrate high impact compliance tools including Azure Information Protection, Cloud App Security and Security and Compliance.
  2. 6
  3. 3:00
  4. 2:00
  5. 14
  6. 15
  7. 16
  8. 19
  9. 20
  10. 4:00
  11. 1:13
  12. 4:00
  13. 4:00
  14. 4:00
  15. 4:00
  16. 4:00
  17. 4:00