Describe endpoint modernization, management concepts, and deployment options in Microsoft 365 Flashcards

1
Q

Microsoft Intune

A

a family of products and services that offer a cloud-based unified endpoint management solution

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
2
Q

the Intune family includes:

A

Microsoft Intune service, Configuration Manager, co-management, Endpoint Analytics, Windows Autopilot and Intune admin center

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
3
Q

endpoints

A

physical devices, such as mobile devices, desktop computers, virtual machines, embedded devices, and servers that connect to and exchange information with a computer network.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
4
Q

zero trust

A

verify explicitly, use least privilege access, and assume breach

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
5
Q

Microsoft offers endpoint management solutions for

A

employees to collaborate with all different types of devices ( iOS, windows, PCs, mobile phones, etc)

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
6
Q

t or f

Microsoft Intune is a cloud-based endpoint management solution that manages user access to organizational resources and simplifies app and device management across your many devices, including mobile devices, desktop computers, and virtual endpoints.

A

true

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
7
Q

key features of Microsoft Intune

A

allows management of users and devices

streamlines app management, offering in built deployment, updates, and removal capabilities, integration with private app stores, Microsoft 365 app support, Win32 app deployment, and tools for app protection policies and data access control

automates policy deployment for apps security, device configuration, compliance, conditional access and more

company portal app provides self service features - PIN/ password resets, app install, more

real time threat response and automated redemption

endpoint management and data driven reporting, allowing admins to sign in from any device

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
8
Q

configuration manager

A

on premise management solution to manage desktops, Windows servers, and laptops that are on your network or internet based

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
9
Q

co management

A

one of the primary ways to attach your existing Configuration Manager deployment to the Microsoft 365 cloud, enhancing conditional access

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
10
Q

t or f

Conditional access allows organizations to implement policies that control and restrict access to their resources based on certain conditions and criteria.

A

true

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
11
Q

Tenant- attach

A

allows your device records to be in the cloud, enabling you to act on these devices from a cloud console

also allows you to manage endpoint security for Windows Servers and client devices

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
12
Q

Windows Autopilot

A

cloud native service that sets up and pre configures new devices, getting them ready for use

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
13
Q

t or f

you can use Windows Autopilot to reset, repurpose, and recover devices

A

true

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
14
Q

t or f

Microsoft Entra ID (formally known as Azure Active Directory or Azure AD) is is a cloud-native service that is used by Intune to manage the identities of users, devices, and groups.

A

true

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
15
Q

Intune admin center

A

one-stop web site to add users and groups, create and manage policies, and monitor your policies using report data

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
16
Q

t or f

Windows 365 and Azure Virtual Desktop (AVD) are both virtual desktop solutions known as Desktop as a service ( DaaS )

A

true

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
17
Q

an enhancement from Windows 10 to Windows 11

A

Microsoft Copilot in Windows

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
18
Q

t or f

Windows 365 is a cloud-based service that automatically creates a new type of Windows virtual machine (VM), known as Cloud PCs, for your end users.

A

true

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
19
Q

what are the two editions that Windows 365 is available in?

A

Windows 365 Business
Windows 365 Enterprise

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
20
Q

Azure Virtual Desktop (AVD)

A

is a modern and secure desktop and app virtualization solution that runs on the cloud

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
21
Q

t or f

AVD allows users to connect to a Windows running desktop in the cloud

A

true

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
22
Q

t or f

AVD gives you the ability to access your desktop and applications from virtually anywhere

A

true

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
23
Q

t or f

Azure Virtual Desktop on Surface lets you run Virtual Desktop Infrastructure (VDI) on a Surface device

A

true

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
24
Q

Windows Client

A

a comprehensive desktop operating system that allows you to work efficiently and securely

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
25
Q

WaaS - Windows as a Service

A

new way to work with Windows desktop

simplifying the deployment and servicing of Windows client computers

maintains a consistent and current Windows experience for users

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
26
Q

Release types for Windows client

A

Feature updates

Quality updates

27
Q

Feature Updates for Windows Client

A

2X a year.
add new functionality
smaller updates - which means less time to adapt to smaller changes
less disruption and effort
workload and cost impact of updating is reduced
more productive with earlier access to new features

28
Q

Quality updates for Windows Client

A

issued once a month as non security releases or combined security + non security releases

provide security and reliability fixes

29
Q

Servicing channels

A

first way to separate users into deployment groups for feature and quality updates

30
Q

What are the servicing channels?

A

Windows Insider Program

General Availability Channel

Long term servicing channel

31
Q

Windows Insider Program

A

provides organizations with the opportunity to test and provide feedback on features that will be shipped in the next feature update

New features are delivered to the Windows Insider community during the development cycle through a process called flighting.

This process will allow organizations to see exactly what Microsoft is developing and start their testing as soon as possible.

Microsoft recommends that all organizations have at least a few devices enrolled in this program

32
Q

General Availability Channel

A

update releases annually

ideal for pilot deployments and testing of feature updates.

It’s also ideal for users such as developers who need to work with the latest features.

33
Q

Long-term servicing channel

A

is designed for specialist systems and devices that don’t run Office apps such as medical equipment or ATMs.

These devices typically perform a single task and don’t need frequent updates compared to other devices in the organization.

This channel receives new features every two or three years.

34
Q

Deployment rings

A

a deployment method used to separate devices into a deployment timeline.

Each “ring” comprises a group of users or devices that receive a particular update together.

35
Q

A common ring structure uses three deployment groups

A

Preview - planning and development
Limited - pilot and validation
Broad - wide deployment

36
Q

what is the purpose of the preview ring?

A

to evaluate the new features of the update

37
Q

what is the purpose of the limited ring?

A

to validate the update on representative devices across the network

38
Q

what is the purpose for Broad ring?

A

Once the devices in the limited ring have had a sufficient stabilization period, it’s time for broad deployment across the network.

39
Q

Deployment methods

A

Modern
Dynamic
Traditional

40
Q

Modern Deployment Methods

A

grasp both traditional on-premises and cloud services to deliver a streamlined, cost effective deployment experience.

  • windows autopilot
  • in place upgrade
41
Q

Windows Autopilot ( modern deployment methods)

A

allows IT professionals to customize the out-of-box experience (OOBE) for Windows PCs and provide end users with a fully configured new Windows device. Users can go through the deployment process independently, without the need to consult their IT administrator.

42
Q

In-place upgrade (modern deployment methods)

A

provides a simple, automated process that uses the Windows installation program to upgrade from an earlier version of Windows

automatically preserves all data, settings, drivers, and applications from the existing operating system version.

In-place upgrade requires the least IT effort, because there’s no need for any complex deployment infrastructure.

43
Q

Dynamic deployment methods

A

enable you to configure applications and settings for specific use cases without having to deploy a new custom organization image to the device.

Subscription activation
Azure Active Directory (Azure AD) joined with automatic mobile device management (MDM) enrollment
Provision package configuration

44
Q

Subscription activation ( Dynamic deployment methods )

A

uses a subscription to switch from one edition of Windows to another when a licensed user signs into a device.

For example, you can switch from Windows 10 Pro to Windows 10 Enterprise.

45
Q

Azure Active Directory (Azure AD) joined with automatic mobile device management (MDM) enrollment ( Dynamic deployment methods )

A

automatically joins the device to Azure AD and is configured by MDM.
The organization member just needs to provide their work or school user ID and password.

46
Q

Provisioning package configuration ( Dynamic deployment methods )

A

uses the Windows Imaging and Configuration Designer (ICD) tool. This tool is used to create provisioning packages that contain all the configuration, settings, and apps that can be applied to devices.

47
Q

Traditional deployment methods

A

use existing tools to deploy operating system images

New computer
Computer refresh
Computer replace

48
Q

New computer ( traditional deployment methods)

A

also called bare metal, is when you deploy a new device or wipe an existing device and deploy with a fresh image.

49
Q

Computer refresh (traditional deployment methods)

A

also called wipe-and-load, is when you redeploy a device by saving the user state, wiping the disk, then restoring the user state.

50
Q

Computer replace (traditional deployment methods)

A

when you replace an existing device with a new one. You save the user state on the old device and then restore it to the new device.

51
Q

t or f

Microsoft 365 Apps can be installed individually by users on their devices

A

true

52
Q

Methods available to deploy Microsoft 365 Apps

A

Deploy from a local source with Configuration Manager

Deploy from the cloud with the Office Deployment Tool (ODT)

Deploy from a local source with the Office Deployment Tool (ODT)

Self-install from the cloud

53
Q

t or f

You can control how often the users in your organization get these new features by specifying the update channel

A

true

54
Q

Microsoft also provides each update channel with two other types of updates that are released every month:

A

Security updates
Non security updates (quality updates)

55
Q

3 primary channels for Microsoft 365 Apps

A

Current channel
Monthly Enterprise Channel
Semi Annual Enterprise Channel

56
Q

t or f

not all users in your organization need to be on the same update channel

A

true

57
Q

t or f

Microsoft 365 Apps checks for updates regularly, and they’re downloaded and installed automatically

A

true

58
Q

Current channel

A

receives feature updates as soon as they’re ready, but there’s no set schedule.

receives security and non-security updates around two or three times a month

Microsoft recommends this channel because it provides users with the newest Office features as soon as they’re ready

59
Q

Monthly enterprise channel

A

1x a month on the second Tuesday of the month

can include feature, security, and non-security updates.

Microsoft recommends this channel if you want to provide your users with new Office features once a month on a predictable release schedule.

60
Q

Semi annual enterprise channel

A

receives feature updates every six months, in January and July on the second Tuesday of the month

can include feature, security, and non-security update

Microsoft recommends this channel only for those select devices in your organization where extensive testing is needed before rolling out new Office features.

61
Q

a cloud-based unified endpoint management solution that simplifies management across multiple operating systems, cloud, on-premises, mobile, desktop, and virtualized endpoints?

A

microsoft intune

62
Q

Windows 365 and Azure Virtual desktop are both what type of service?

A

desktop as a service

63
Q

What is Windows-as-a-Service?

A

windows with regular feature updates

64
Q

if your organization requires frequent feature updates for Microsoft 365 Apps on a predictable release schedule, which update channel is best?

A

Monthly enterprise channel