Local admin/privilege management with Intune

Ғылым және технология

Blog post: oceanleaf.ch/local-admin-priv...
@NiklasTinner: / niklastinner
Azure AD Object ID To SID Converter: erikengberg.com/azure-ad-obje...
Chapters
00:00 Intro
01:44 Azure AD roles
02:14 Intune account protection policy
03:53 Endpoint Privilege Management (EPM)
06:29 Windows LAPS
by oceanleaf.ch/

Пікірлер: 6

  • @ricklucas6216
    @ricklucas62168 ай бұрын

    This was a really good video! Straight to the point and clear. You got a subscriber!

  • @nazerbor3i
    @nazerbor3i6 күн бұрын

    One thing that no one seems to cover is how to remove all current users from the local admin group. In my case i have a lot of local users in the local admin group from previous deployments and i’d like to remove them all

  • @cuneytkorkmaz8460
    @cuneytkorkmaz8460 Жыл бұрын

    Hey Niklas, thanks for the explanation, we just enabled EPM plug-in and will test in next month

  • @iliketomoveit5999
    @iliketomoveit5999 Жыл бұрын

    Hi! I'm trying to implement Intune but every user I create has admin rights even though they're created as standard user via O365. Any guide on how to fix that? thanks!

  • @oceanleafnt

    @oceanleafnt

    Жыл бұрын

    Verify in the deployment profile, that the user account type is not set to administrator. Also check the mentioned methods from the video.

  • @Danissimode

    @Danissimode

    10 ай бұрын

    Devices need to be entered into the organization using the m365 administrator account. If you create through a regular m365 account, this subsequent users of this device will have device administrator rights without being a member of the local administrators group.

Келесі