Deployi Windows 10 With Autopilot in Microsoft 365 Endpoint Manager

Поділитися
Вставка
  • Опубліковано 12 лип 2024
  • In the past Windows deployment for many was the stuff of nightmares and many long nights. Now I'm delighted to say that with the cloud, it's a snip. Microsoft Endpoint Manager make the whole experience so much more pleasurable. So much so, that you might actually find time to catch up on some of those shows you've been missing on Netflix. In this episode I demo from start to finish deploying Windows 10 using the wonderful Autopilot in Endpoint Manager. Once managed, you can then control those machines with profiles, software updates and apps. Enjoy, and as alway I love your feedback and comments. Visit my website at www.Andymalone.org
  • Наука та технологія

КОМЕНТАРІ • 79

  • @qmacker
    @qmacker Рік тому

    Really, really great stuff. I needed to get the "gist" of Intune in an hour. You cut right to the chase, you're a great teacher, and you have a very affable manner. Thank you!! Subscribed!

  • @roodleynosthe3076
    @roodleynosthe3076 Рік тому

    Thank you! I appreciate the valuable content that you always bring.

  • @Dan_The_IT_Man
    @Dan_The_IT_Man Рік тому

    Really enjoying your videos on Microsoft Endpoint Management - Using them to compliment my study resources for the MD-101 exam. 👍

    • @AndyMaloneMVP
      @AndyMaloneMVP  Рік тому +1

      Thanks Dan I’m delighted to hear that and good luck with the exam. Let me know how you get on.😊👍

  • @patrick__007
    @patrick__007 Рік тому

    Thank you Andy. Very clear explaination.

  • @joselermejor
    @joselermejor 2 роки тому

    Great video !!! Go ahead with more stuff like this

    • @AndyMaloneMVP
      @AndyMaloneMVP  2 роки тому

      Thanks for your kind comment, and you’re very welcome.

  • @kevincleppe5321
    @kevincleppe5321 3 роки тому

    Fantastic! Thank you for this

    • @AndyMaloneMVP
      @AndyMaloneMVP  3 роки тому +1

      Hi Kevin, I'm delighted to hear that, and thanks for dropping by. :-)

  • @mtbright06
    @mtbright06 Рік тому

    you are an amazing teacher!

    • @AndyMaloneMVP
      @AndyMaloneMVP  Рік тому

      If you’re learning that is my goal. It means I’m doing something right 😊thanks for the kind comment.

  • @akhereinegbeniki978
    @akhereinegbeniki978 9 місяців тому

    Thanks Malone. nice!

  • @ahmedshaban2028
    @ahmedshaban2028 6 місяців тому

    great .. thank you

  • @Younes-bl5ew
    @Younes-bl5ew 3 роки тому +1

    Thanks a lot

  • @Elscorpio606
    @Elscorpio606 Рік тому

    great video

  • @kimrogernilsen2404
    @kimrogernilsen2404 Рік тому

    Great video, thank you! :) Btw, i hope you meant to say "Delete my files" at 10:27 as you said "Keep my files" :D

  • @martinschlenker6145
    @martinschlenker6145 2 роки тому

    Andy, great video ! Thanks a lot for it.
    I would like to ask you a question.
    Is it possible to turn off the need to provide a second token (mobile phone or other telephone number) during the start up ?
    I didn't found any button or other option to turn it off.....
    Thanks in advance
    Martin

    • @AndyMaloneMVP
      @AndyMaloneMVP  2 роки тому +1

      Hi Martin. Hmm thats a good question. Honestly, I don't think so.

  • @habibabdulla3122
    @habibabdulla3122 3 роки тому +1

    Amazing video, straight forward demonstration.
    1. Is there a way to get the device id for all workstations in my company?
    2. in case we are on a hybrid environment (Local AD & Azure AD) would this work ? although our users joined to the local domain?
    2. Can we automate the process of onboarding devices to autopilot?
    Many thanks.

    • @AndyMaloneMVP
      @AndyMaloneMVP  3 роки тому +5

      Delighted you enjoyed the video :-) Answers to your questions 1 - Yes get the script at powershellgallery.com 2 - On prem required System Center Endpoint configuration manager (local branch) to admin on prem machines. Intune manages in cloud devices. The current branch bit extends the capabilities of SCCEM to include intune templates to manage both.

  • @massimilianogasbarro4580
    @massimilianogasbarro4580 4 місяці тому

    Thank you for your video Andy, really straight to the point. I've just a doubt, if I buy let's say 50 Laptop and the vendor got me the keys, so I add them to a group and they do not have windows installed on, how can I provide a version of windows to the laptop, with the license E5 which has also Windows enteprise? How can the laptops get the licenses and then install Windows just with the license?
    Thank you in advance for the answer!

    • @AndyMaloneMVP
      @AndyMaloneMVP  4 місяці тому

      Since this video was produced things have been updated. I would advise you to take a quick look at learn.microsoft.com and the appropriate auto pilot documentation as there is a full walk-through guide here. Best of luck and thanks again.

  • @ScozzieMan
    @ScozzieMan 3 роки тому

    Hey andy you look similar to Gary Barlow! lol good video btw

    • @AndyMaloneMVP
      @AndyMaloneMVP  3 роки тому

      You crack me up man :-D I wish I had his money!

  • @edwardnigma5820
    @edwardnigma5820 Рік тому

    Andy, is there a way for devices to domain join the on-prem AD first before the azure AD join with auto-enrollment so to have a hybrid device? For my environment, this isnt an ideal solution since we have a lot of GPOs set that need to apply and a fully azure joined device will not inherit those policies. Thanks

    • @AndyMaloneMVP
      @AndyMaloneMVP  Рік тому

      No, unfortunately not. As I said in the video a PC can only either be a D joined or Azure AD joined. It’s a simple as that I’m afraid.

  • @abhijitburman2884
    @abhijitburman2884 2 роки тому

    @Andy Malone MVP
    Does this also for the win 10 pro version.
    If an admin wants to change the wallpaper for all devices in intune who has win 10 pro, will it gonna work, if not, then what can we do?

    • @AndyMaloneMVP
      @AndyMaloneMVP  2 роки тому

      The process allows you to do an upgrade of Windows 10 pro to Windows 10 enterprise addition. Everything else will work fine

  • @richardflynn2880
    @richardflynn2880 3 роки тому +1

    Hi Andy can I ask a couple of stupid questions, whats the purpose of the dynamic group? Is it something that always needs to be setup? What happens to the device if you don't setup the group?

    • @AndyMaloneMVP
      @AndyMaloneMVP  3 роки тому +2

      Hi Richard. Dynamic groups are awesome.. you assign permissions to a group or create a Microsoft team fir let’s say students in department -= year 3. Now in users create a user, place it the department called year 3. Save as a template. Now every student will automatically be a member of the year 3 team. Dynamic groups are essentially a series of automated rules. You set the groups up once, members will come and go but the groups and what they can do persist.

    • @richardflynn2880
      @richardflynn2880 3 роки тому

      @@AndyMaloneMVP Hi Andy, thank you for the reply really appreciate it. I'll be using dynamic groups going forward 😀. Also great job on the UA-cam channel.

  • @hjoseph4327
    @hjoseph4327 2 роки тому

    Thank you for the video; the presentation is crystal clear. I have noticed you enrolled one PC; what is the procedure if you have more than one PC that you need to deploy? I saw the answer below; however, would you consider doing a video? Also, I can enroll in the PC directly or through the Microsoft portal. Can you confirm? (I am a newbie).

    • @AndyMaloneMVP
      @AndyMaloneMVP  2 роки тому +1

      The procedure are used to install VM was purely for demonstration purposes. In reality you would contact your vendor and obtain a CSV file containing machine IDs which you would then import. Alternatively if you have in-house machines you can use PowerShell. There are a number of scrips available at PowerShell gallery.com for this purpose. Thanks again and good luck.

    • @hjoseph777
      @hjoseph777 2 роки тому

      @@AndyMaloneMVP thank you Andy

  • @jeremycruz1681
    @jeremycruz1681 3 роки тому +1

    thank you for this

  • @overtechnc3462
    @overtechnc3462 3 роки тому

    Thanks a lot for this video :)
    I may not have searched well enough until now, but I can't find any resource showing how to push applications to endpoint devices. Let's say you add a new user, and the moment they first log in, some apps of your choice get installed on the computer automatically.
    Does Azure allow this ?

  • @XwolfBane18
    @XwolfBane18 2 роки тому

    Great video , I have a question do you know what things you can try to understand why a software that was pushed through the intune fails would love for you to go through that process of troubleshooting:)

    • @AndyMaloneMVP
      @AndyMaloneMVP  2 роки тому +1

      Nice to hear from you. There are a few things that you could try. First of all I will check to see if there are any software restriction policies either at the tenant or your policy level in intune. It could also be a licensing issue, or a problem with the vendor. Have a look at the Microsoft docs page for third-party applications, there are some good articles there. This is essentially the steps that I would try to fix the problem, I hope you have luck. All the best, Andy..

    • @XwolfBane18
      @XwolfBane18 2 роки тому

      @@AndyMaloneMVP thank you very much I will take your advice and apply them . It would be great if you can maybe make a video on this subject would love to see you go through the basics of troubleshooting intune app deployment

  • @karthikbhavirishetty
    @karthikbhavirishetty 3 роки тому

    Hello Andy.. Hope your doing well... Thanks for all your teaching videos... I want labs, to practice office 365 security and EMS.. Please suggest me.. And I had tried with AZURE but they are not accepting . Could
    You please guide me.

    • @AndyMaloneMVP
      @AndyMaloneMVP  3 роки тому

      Check out the Microsoft Learn website. they have some

  • @marquisdavis9861
    @marquisdavis9861 2 роки тому +1

    Hybrid Joined & Auto Pilot. New laptop shipped to user and user logs in with AAD account which kicks off AP. How does the new system get hybrid joined?

    • @AndyMaloneMVP
      @AndyMaloneMVP  2 роки тому

      It can’t! A laptop can either be Azure AD joined which is better, or hybrid Asher AD joined. It’s essentially which system has authority to authenticate the user and the device. Unfortunately it can only be one or the other.

  • @tomchong6815
    @tomchong6815 Рік тому

    Hi Andy, Is there a easier way to uninstall unwanted app that comes with the window 10 pc thru Intune (Endpoint Manager)?

    • @AndyMaloneMVP
      @AndyMaloneMVP  Рік тому

      If it’s a managed MSI app you just delete it in Intune. It will then uninstall.

  • @harmindersingh125
    @harmindersingh125 17 днів тому

    Hi Andy, a quick question; are these steps still valid if I have to enroll existing devices to Intune. By existing, I mean lets say we have 100 users that are already being used by employees and we switched the license from E3 to E5 and now I have to Enroll those devices to intune!

    • @AndyMaloneMVP
      @AndyMaloneMVP  17 днів тому

      Yes, although the interface has been updated, everything still works and the principles remain the same. I plan to do an updated video shortly.

    • @harmindersingh125
      @harmindersingh125 16 днів тому

      @@AndyMaloneMVP thank you. I believe this can be done through GPO as well, right? and if someone doesn't see the MDM folder, then do we have to install administrative templates to the DC?

  • @superlight2897
    @superlight2897 Рік тому

    Hi Andy. I am working as an IT support agent and I came across some office that they can setup autopoilot to let the devices automatically install required softwares, I want to know how to add these required softwares from the endpoint manager page, I don't really see it includes in you vid. Can u slightly advise me ?

    • @AndyMaloneMVP
      @AndyMaloneMVP  Рік тому

      You cannot. You can only install the endpoint client here, which essentially is defender for endpoint. You can however also deployed this and other software theory in tune what devices would need to be registered in in tune. Check out the Microsoft tech community for more details.

    • @superlight2897
      @superlight2897 Рік тому

      @@AndyMaloneMVP Thank you!

  • @kartikpal156
    @kartikpal156 3 роки тому

    Great! video ) :)
    Andy, After watching your videos I thought to learn more and go with a certification. Want to know for server 2012/16 and office 365 exchange server which certification I should do? Could you suggest a video link or course where I can learn more for certification in-depth?

    • @AndyMaloneMVP
      @AndyMaloneMVP  3 роки тому +3

      Forget server based certs. They’re dead, go with the cloud :-p

    • @kartikpal156
      @kartikpal156 3 роки тому

      @@AndyMaloneMVP thanks Andy

    • @AndyMaloneMVP
      @AndyMaloneMVP  3 роки тому +1

      Like I've said before, don't waste your time on Server certs, they're dead! focus on the cloud. Microsoft 365 etc. Details here docs.microsoft.com/en-us/learn/certifications/browse/?products=m365 and good luck :-)

    • @kartikpal156
      @kartikpal156 3 роки тому +1

      @@AndyMaloneMVP thanks Andy ❤️
      I would like to inform you that I recently cleared azure ai 900 and azure dp 900 and now preparing for az 900. Thanks for all motivation and videos knowledge you share :) :)

    • @AndyMaloneMVP
      @AndyMaloneMVP  3 роки тому +1

      @@kartikpal156 Whoo hoo!! well done you!

  • @nadeembhat9450
    @nadeembhat9450 3 роки тому

    Hi sir
    I m an absolute beginner I want learn Microsoft Endpoint manager is there any way or course available I tried to search but in vain.

    • @AndyMaloneMVP
      @AndyMaloneMVP  3 роки тому +2

      docs.microsoft.com/en-us/learn/ Is a great place to get started. and here docs.microsoft.com/en-gb/learn/modules/manage-devices-by-using-microsoft-intune/ and here docs.microsoft.com/en-gb/learn/modules/introduction-to-modern-management-in-microsoft-365/ and thanks for stopping by. I've also recorded some other endpoint videos as well. Good luck :-)

    • @AndyMaloneMVP
      @AndyMaloneMVP  3 роки тому +1

      PS The official Microsoft course is MS 101

    • @nadeembhat9450
      @nadeembhat9450 3 роки тому +1

      @@AndyMaloneMVP thank you for prompt response sir....

    • @AndyMaloneMVP
      @AndyMaloneMVP  3 роки тому +1

      @@nadeembhat9450 You're welcome and good luck :-)

    • @AndyMaloneMVP
      @AndyMaloneMVP  3 роки тому

      Correction MD 101

  • @fbifido2
    @fbifido2 2 роки тому +1

    1. Can you deploy Windows 10 using Microsoft Intune ????
    2. Can you deploy a custom Windows 10 image with all my LOB application & configuration in it ???
    3. if you have shift workers, how many users can use that one device ???

    • @AndyMaloneMVP
      @AndyMaloneMVP  2 роки тому +1

      Thanks for the Qs
      1 - Absolutely! That's what it's designed for. But don't think of Intune in the traditional deployment sense. It's much easier. Modern management is the way forward here is an article that may be of interest to you. docs.microsoft.com/en-us/windows/client-management/manage-windows-10-in-your-organization-modern-management
      Think about how you want to authenticate your clients. Azure or Windows AD. Intune can do pretty much all of what the old SCCM could do in the past.
      2 - In Intune you use autopilot to create an OOBE Out of the box experience which configure users machines from the start. When the user logs on. Device, security and App configuration settings do the rest. So imaging is not required.
      3 - Autopilot self deploying is suited to kiosk and shared devices. There is no user associated with the device. User driven is suited to 1:1 scenario and you can associate a user to a device. Most of this is covered here docs.microsoft.com/en-us/mem/autopilot/windows-autopilot-scenarios
      I hope this his helps and welcome to my channel :-)

  • @beikselect
    @beikselect 2 роки тому

    Great video Andy, but this way to enroll windows device is not usable now days ! if you are working in a company with more than 1000 PC , and you want o AutoPilot or as they aid OOBE, this video will not help i think

    • @AndyMaloneMVP
      @AndyMaloneMVP  2 роки тому +1

      I’m afraid you are incorrect Sir. This method works perfectly well. All machines must be Azure AD joined and licensed. Here is a link to the current documentation docs.microsoft.com/en-us/mem/intune/enrollment/device-limit-intune-azure

    • @beikselect
      @beikselect 2 роки тому

      Thanks, Andy for your answer.
      The scanrio is :
      Company X wants to start using Intune, there are like 1000 PC's not in the office but with the users or colleagues who lives in another city, how can we deploy/enroll or autopilot these devices if we don't have them in the office?
      If you can provide me with a doc i can read i would appreciate that as i could not find any thing in google or Microsoft

  • @TheDanishBully
    @TheDanishBully 8 місяців тому

    Dear Andy
    Can people book you for private sessions?

    • @AndyMaloneMVP
      @AndyMaloneMVP  8 місяців тому

      No unfortunately not I’m afraid. However I’d you one of my Patreon platinum subscribers I offer a monthly Zoom call in which we can talk and you can ask questions😊