VPNDnsSuffixId: The value of VPNDnsSuffix (string).VPNServerAddressId: The value of VPNServerAddress (string).VPNConnectionStatusId: Connected or Disconnected.NameId: The name of the VPN Connection.When the Group type is VPNConnection, you can use the following attributes inside DescriptorIdList: NetworkDomainId: NonDomain, Domain, or DomainAuthenticated.NetworkCategoryId: Public, Private, or DomainAuthenticated.When the Group type is Network, you can use the following attributes inside DescriptorIdList: For example, print through Remote Desktop or redirect printer. Local: A printer that connects through a Microsoft print port, but not any of the previously described types.Custom: A printer that doesn't connect through a Microsoft print port.To enforce Microsoft Print to PDF only, use the FriendlyNameId value 'Microsoft Print to PDF'. File: Microsoft Print to PDF or Microsoft XPS Document Writer.Universal: For more information about universal printers, see Set up Universal Print.Network: A printer that's accessible by network connection, making it usable by other computers that are connected to the network.For example, \print-server\\legal_printer_001. Corporate: A print queue that's shared through a Windows print server in your on-premises domain.To define a specific USB printer, use the VID_PID. You can use this value to enforce any USB printer. USB: A printer that's connected through USB port of a computer.PrinterConnectionId: Includes the following values:.0751_ matches any device with the VID value 0751._55E0 matches any device with the PID value 55E0.0751_55E0 matches that exact VID_PID pair value.To transform the Device instance path to the VID_PID format, see Standard USB Identifiers. Product ID (PID): The four-digit product code that's assigned to the device by the vendor. ![]() Vendor ID (VID): The four-digit vendor code that's assigned to the vendor by the USB committee.For example, Generic Flash Disk USB Device. FriendlyNameId: A string that's attached to the device (the same string as the Friendly name in Device Manager).When the Group type is Device, you can use the following attributes inside DescriptorIdList: List the device properties you want to use to cover in the group. For any other group you define in your Group setting, make sure explicitly mark Type, for example, Type="File". Note: Default type is Device that includes removable storage and printer. String, the name of the policy and will display on the toast based on the policy setting. ![]() ![]() You can generate the group ID through PowerShell GUID, a unique ID, represents the group and will be used in the policy. The table below lists the properties you can use in Group: Property Name Group configuration includes the following types: For example, only allow authorized users to Print access authorized printer group. Policy configuration allows you to create policy to restrict each printer group.For example, authorized USB printer group or network location group. Group configuration allows you to create group.The printer protection comprises group and policy configurations: MOCAMP: or later, you can run the command Get-MpComputerStatus in PowerShell to check the version.ĭevice control printer protection properties.PrivilegeĮnsure that the Windows devices that you need to onboard should meet the following requirements: Microsoft Defender for Endpoint Device Control Printer Protection feature enables you to audit, allow, or prevent printer with or without exclusions. If you're currently using Microsoft Defender for Endpoint Device Control Printer Protection, we recommend that you upgrade. ![]() The Group Policy management and Intune OMA-URI/Custom Policy management of this product have been released.
0 Comments
Leave a Reply. |
AuthorWrite something about yourself. No need to be fancy, just an overview. ArchivesCategories |