Latest Features Available from the Windows 10 Updates That Could Be Beneficial for Students & Businesses Based Within the Milwaukee Area
Total Page:16
File Type:pdf, Size:1020Kb
Latest features available from the windows 10 updates that could be beneficial for students & businesses based within the Milwaukee area By: Jeremy Konetz | November 20, 2018 | Informative Article What are some of the benefits that the latest windows 10 updates provide to students and Milwaukee area-based businesses? Note the last three updates made available through windows 10 updates are windows 10 version 1709 (Released: January 23, 2018), windows 10 version 1803 (Released: July 6, 2018), and windows 10 version 1809 (Released: October 1, 2018). What are some of the beneficial updates provided in the Windows 10 update version 1709 released on January 23, 2018, one of the first updates Windows 10 released this year. What are the areas that this update has improved on? 1) Deployment a. Launching the autopilot application. i. Accomplished through a zero-touch experience. Example shown in figure 1. Figure 1 Resource link: https://docs.microsoft.com/en-us/windows/whats-new/whats-new-windows-10- version-1709 ii. Client or organization profile configuration can be accomplished at the vendor with the devices sent directly to them upon completion. Example shown in figure 2. Figure 2 1 Resource link: https://docs.microsoft.com/en-us/windows/whats-new/whats-new-windows-10- version-1709 b. Activation on subscription to windows 10. i. Feature allows for Windows 10 enterprise to be deployed within an organizational networks structure without applying any keys or rebooting of devices or components within an organizations operational system. See figure 3. Figure 3 1 Resource link: https://docs.microsoft.com/en-us/windows/whats-new/whats-new-windows-10- version-1709 ii. Accomplished through a list of subscribed users within an organizational network. See figure 4. Figure 4 Resource link: https://docs.microsoft.com/en-us/windows/whats-new/whats-new-windows-10- version-1709 iii. When the end user logs into their programed Windows 10 pro device, the enterprise enabled only feature will be activated as shown in figure 5 down below. Figure 5 Resource link: https://docs.microsoft.com/en-us/windows/whats-new/whats-new-windows-10- version-1709 c. Autopilot reset available in this version. i. This application allows an administrator to personal files, applications, and settings from a previous end-user. ii. Provides a customized log-in screen to secure the screen & prevent unauthorized access, but also allows for the facilitation of applying the original settings & management enrollment to the device so it can be returned to a fully operational configuration that is approved within the IT-department of an organization & ready for the next authorized user. 2) Available updates are facilitated through Windows updates for business (WUfB) & Windows insider program for business. a. The Windows updates for business (WUfB) provides additional controls that allows an organization to manage the windows insider program by means of enrollment polices. b. The windows insider program for business would allow for the facilitation of your Azure AD domains for the windows insider program to be registered. 3) Administrative update made available in this update is the MDM (Mobile device management) feature. a. The expansion in this update has allowed for devices within the Azure active directory to be registered, allowing for them to be brought together through group policy as well. See figure 6. Figure 6 Resource link: https://docs.microsoft.com/en-us/windows/whats-new/whats-new-windows-10-version-1709 b. Also allows for multiple newly configured items to be brought in. See figure 7. Figure 7 Resource link: https://docs.microsoft.com/en-us/windows/whats-new/whats-new-windows-10-version-1709 4) Application management update called mixed reality apps. a. Allows the administrator within an organization to utilized WSUS to facilitate action within the network system to take actions that enable windows mixed reality but allows for the capability for an administrator to the installation of mixed reality portal as well if they so desire. 5) Kiosk configuration updates are available. a. With this update is allows for assigned access CSP expansion that enable administrators to generate kiosks that run more than one application at one time. b. Provides for multiple application kiosks to operate utilizing the provisioning package. 6) Windows analytical updates in the areas of upgraded readiness, updated compliance, and device health. a. Accomplished through Microsoft operations management suite. See figure 8. Figure 8 Resource link: https://docs.microsoft.com/en-us/windows/whats-new/whats-new-windows-10-version-1709 b. The upgraded readiness app allows for the assessment of application & driver compatibility issues that may arise. i. This application provides for better app coverage, allows for post health upgrade reports, and provides a means for enhanced reporting filtering capabilities. See figure 9. Figure 9 Resource link: https://docs.microsoft.com/en-us/windows/whats-new/whats-new-windows-10- version-1709 c. Upgraded compliance allows for new capacity to monitor the windows defender protection status, allows for comparison with peers in the industry, and maximization of band width for deploying updates that are available. See figure 10. Figure 10 Resource link: https://docs.microsoft.com/en-us/windows/whats-new/whats-new-windows-10-version-1709 d. With the device health application this update will allow the end user to have a tool at there disposal that provides a premium analytical tool that helps provide information regarding devices & drivers within an operating system that crash frequently & may need to fixer or replaced. See figure 11 for example. Figure 11 Resource link: https://docs.microsoft.com/en-us/windows/whats-new/whats-new-windows-10-version- 1709 7) With update came some security upgrades for instance windows defender device guard, defender ATP, exploit guard, information protection, Windows hello, bit locker, application guard, and security baselines. Note with this upgrade the security labeling changed from Windows security features to Windows defender security. a. Defender ATP provides an analytical tool that provides very powerful analytical tools, a security stack integration, and a centralized means to provide for enhanced management of detection, prevention, investigation, response, and management of security issues within a network operating system. See figure 12. Figure 12 Resource link: https://docs.microsoft.com/en-us/windows/whats-new/whats-new-windows-10-version-1709 b. Application guard provides a means for which the user can harden a favorite entry point for which hackers tend to break into a computer system by isolating the malware other security threats that are posed to data, applications, and infrastructure contained within that device. See figure 13. Figure 13 Resource Link: https://docs.microsoft.com/en-us/windows/whats-new/whats-new-windows-10-version- 1709 c. Exploit guard provides for intrusion protection means to mitigate the risk of an attack & exploitation of the surface within applications. See figure 14. Figure 14 Resource Link: https://docs.microsoft.com/en-us/windows/whats-new/whats-new-windows-10-version- 1709 d. The information protection feature has been designed to work in connection with Microsoft office & the Azure information protection. See figure 15. Figure 15 Resource link: https://docs.microsoft.com/en-us/windows/whats-new/whats-new-windows-10-version- 1709 e. The windows hello feature provides for an enhanced lock experience, however, if the user wants to unlock a device at another location it utilizes a multiple factor, as well as a proximity signal to unlock the device so it can be used. See figure 16. Figure 16 Resource link: https://docs.microsoft.com/en-us/windows/whats-new/whats-new-windows-10-version-1709 f. Device guard provides for integrity code configurable capabilities. i. Has been renamed within the Windows 10 operating system as the Windows defender application control. ii. Provides for the ability to distinguish between of a stand-alone item within a system verses a control execution of a command within application. g. Bit locker pin protocol has been changed form a 6 to a 4, however, has a default of a 6. h. Security baselines for this update have been changed in this update to reflect the recommended configuration settings and provide an explanation of their impact of the device’s security. i. Security baselines also provide for an impact on the security within an operating system. What are some of the benefits provided to us in the windows version 1803 released July 6, 2018, note this the second update Windows 10 released this year. In what areas has this update improved upon? 1) Deployment: a. In autopilot we have available to us the modern life cycle management service, which is powered by the cloud service that allows us to have a zero-touch experience upon logging in. See figure 17 for an example. Figure 17 Resource link: https://docs.microsoft.com/en-us/windows/whats-new/whats-new-windows-10- version-1803 i. With Intune we can lock the device providing an out of the box experience until device policies & settings are establish for that device, allowing time for the end user to get to their desktop, and upon arrival can the device can be secured & proper configuration can be established. Example down below in figure 18. Figure 18 Resource link: https://docs.microsoft.com/en-us/windows/whats-new/whats-new- windows-10-version-1803 b. S mode is now available with this update. i. Available to end users in Home, pro pc, and commercial settings. ii. Allows for applications within the windows operating system to be evaluated by Microsoft to determine compatibility & performance. iii. Enhanced performance through quick startups, but also makes sure it stays that way. iv. Provides for more choice & flexibility for end users by for example allowing them a choice of where they can save their file in whatever location they want, v.