Challenge 11: Configure Settings for User Experience

< Previous Challenge - Home

Introduction

In this challenge you will be setting up autoenrollment into MDM for your AVD devices. You will then enhance the security of the devices by enabling MFA via conditional access policy and setting up automatic updates via Windows Update for Business. Finally, you will enable Universal Print and deliver printer config to your AVD(s) via Intune.

NOTE: Intune doesn’t currently support management of Windows 10 Enterprise multi-session. The following should be performed on single session hosts only.

Description

Success Criteria

  1. AVD devices automatically enroll into Intune
  2. MFA is required for access
  3. Windows updates are automatically installed
  4. Security requirements are enforced by device restrictions
  5. Universal Print printers are available to your users and automatically installed on devices via AAD group membership

Advanced Challenges (Optional)

  1. Sign up for a free Microsoft Defender for Endpoint trial (can take serveral days for approval) and onboard your devices to it
  2. Create additional configuration profiles within MEM to further customize the user experience
    • HINT: Think of device configurations you’ve regularly deployed through Group Policy