Hello Sir, your tutorials are so much informative that I love to spend time on your tutorial videos and always get a chance to learn something new or advance. I have a request sir if you could please create some deep dive tutorials on Intune firewall and antivirus policies.
@foch412 жыл бұрын
After I setup Disc Encryption policy and its pushed out to all devices, will it automatically enable on all new devices added later?
@avithb31993 жыл бұрын
I have not started watching this video. But I am sure it would be good. After so long, we can learn in depth about bitlocker.1. Thank you so much.
@gaganpreetkaurdeol5816 Жыл бұрын
I am not getting pre boot pin during provisioning, how I can troubleshoot this issue.
@borjagomezvillar2982 Жыл бұрын
Awesome one more time, thanks for sharing your knowledge. I have a three short questions if I can ask you. First: I undertand the group you are assigning the policies is a device group and that is the recommended assignment for Bitlocker policies. Second: you mentioned that with a compliance and without policy, the notification for the user appears and the user can follow the wizard to encrypt the device, will this make the BitLocker policy fail if you deploy it or consider success because the device is already encrypted? Finally: when the user is standard the policy can fail if we do not choose the righ setting for standard users. Will it be enough to change the policy and perform a sync or do we need to enroll it again. Thank you so kmuch for this great tutorial, the picture is my mind is much clear now. Happy Sunday.
@everythingaboutintune1713 Жыл бұрын
1- Yes i have assigned the policy to the device group so that no matter which user is attributed to the device, the device ends up getting encrypted and is secured.!(However this is not compulsory and the policy can be assigned to a user as well) 2- If the device is already encrypted(before the policy came down to the device)- the policy won't show as failed. 3- If the policy setting was not correct, and the admin made changes the old policy settings from the portal- The policy will be redeployed automatically from Intune. So the admin doesn't need to deploy a fresh policy/user doesn't need to reenroll his device.. Running sync at the device will make the policy come down faster(however even if we don't run sync, Intune will deploy the policy which has been changed automatically) Hope this helps!
@borjagomezvillar2982 Жыл бұрын
@@everythingaboutintune1713 thanks a lot for your time
@vjayasekharnaidu Жыл бұрын
excellent video in my environment, we too configure the same profile its works fine. But few of the desktop/machines' BitLocker recovery key is not available. may I know , how to get the report that which are the machine's BitLocker recovery key is not available? Also is there any script to get/generate a recovery key through Intune/AAD?
@mohitvarshney20312 жыл бұрын
Hi @everythingaboutintune Could you pls tell us why we see multiple recovery keys for single device in intune and azure portal as well
@sanjeev.bhardwaj10 ай бұрын
Hi all, There are two options available to encrypt drives: Option 01. under Endpoint Security > Disk Encryption and Option 02. through device configuration profiles. The requirements include saving the key to Azure AD and AD, with the need for silent encryption without a user interface. My question is, Q1. for SILENT BITLOCKER ENCRYPTION, which method should we choose, Option 01 or Option 02? Q2. If we create a profile only under Endpoint Security > Disk Encryption, will the encryption work? Q3. Or do we need to define BitLocker configuration in Endpoint Security, and use the same settings in the profile under device configuration? Q4. And same group assignment for profile created in option 1 and option 2.?
@zhiyongliu74153 жыл бұрын
nice to see you again, this is a giant episode.
@santhoshudkar62942 жыл бұрын
I am fully confused..TPM is required or not? for BL Drive encryption, TPM is not mandatory, but MS documentation says TPM is mandatory. someone please clarify here?
@everythingaboutintune17132 жыл бұрын
As clearly explained in the video- For Bitlocker Device Encryption TPM is mandatory(it has been clearly documented in our docs) | And for Bitlocker Drive encryption TPM is NOT mandatory(this as well is clearly documented in our docs).
@santhoshudkar62942 жыл бұрын
@@everythingaboutintune1713 Thank you Saurav. Can you please share me the link to your documentation (Presention slides) if you have created any?
@mohammadrafikshaikh67483 жыл бұрын
Very informative and helpful for new bitlocker implementation... Thank you.
@zoheirel12633 жыл бұрын
Hi, Thank you for your course. Can i have some recommandations from you if you are available ? Have a good day
@AshuMishra0073 жыл бұрын
Thousand feet overview in 7hours😉
@seanjavan3 жыл бұрын
Great detail session, very informative.
@jaysonlee40913 жыл бұрын
You all probably dont give a shit but does any of you know of a method to get back into an instagram account? I somehow forgot my login password. I love any help you can offer me
@milojuan49693 жыл бұрын
@Jayson Lee Instablaster :)
@jaysonlee40913 жыл бұрын
@Milo Juan i really appreciate your reply. I found the site on google and I'm trying it out atm. Takes a while so I will get back to you later when my account password hopefully is recovered.
@jaysonlee40913 жыл бұрын
@Milo Juan it worked and I actually got access to my account again. Im so happy! Thanks so much, you saved my ass!
@milojuan49693 жыл бұрын
@Jayson Lee Glad I could help xD
@maheshs76023 жыл бұрын
Hats off Saurabh sir you are intune Wikipedia
@danceforlife-triptiray6263 жыл бұрын
Thankyou for being so so knowledgeable....super duper....
@jigyasugulati3 жыл бұрын
happy to see you back!
@Be_only_alone3 жыл бұрын
Superb Content. MS Champ.
@oliviafridman45073 жыл бұрын
Thank you for this great series ! Is there a way to stop / disable bitlocker on a computer that has been encrypted by a configuration profile ? (now that profile has been deleted and the settings seems to be tattooed, i want to remove them)
@everythingaboutintune17133 жыл бұрын
Unfortunately there is only 1 option via Intune… we’ll have to push a PS script to decrypt the device.