Intune has great features, why don’t we combine them!? In this post I’ll show you how you can require specific ASR (Attack Surface Reduction Rules)
Tag: Windows

While most people rely on Azure AD Sign-in logs, there are some additional features which are worth implementing in your tenant. One of these features

Require dynamic lock as part of your compliance policy using custom compliance policies.

Devices being managed with Endpoint Manager (Intune) can be upgraded via a Feature Update policy. The blog shows you how to upgrade to Windows 11 22H2.

A list of my most used proactive remediations for intune managed devices.

Last week I was scheduled to implement Self Service Password reset for a client. Enabling Self Service Password Reset (SSPR) is not quite difficult but

By default I always deploy devices with English operating systems. Although I’m Dutch I still prefer English as my operating system language. Some customers have

Today I’ve seen someone asking how to disable the toast notifications. Microsoft released documentation on how to configure it using a GPO. But, what if

Attack Surface Reduction rules have huge impact on endpoint security in a positive way. Last year I’ve implemented these rules in at least 10 environments