Windows 10 Enterprise and Security Features

  

Computer Store News: Microsoft's latest Windows is not just a change in the user interface. In the security, manageability and application stores of the system, Microsoft will also bring new changes. Recently, the technology website ZDNet has analyzed and introduced these underlying functions. Last week, Microsoft introduced the new features in Windows 10 that would be of interest to business users through an official blog, but these introductions are very vague.

Microsoft last week offered two Windows 10 previews, the Technology Preview and the Enterprise Technology Preview. The latter includes some enterprise-defined SKU features, such as Windows To Go, DirectAccess, BranchCache, and AppLocker, which are not available in another version. Although none of these features appear in the current preview, Microsoft should gradually add them in future upgrades.

Oliver Niehus, Microsoft's chief application development manager for Windows and security, previously published an article on Windows 10 security, privacy, and management features on his MSDN blog, but quickly removed it. However, the content is still known to the outside world.

Niehus said that Microsoft has worked hard on the security features of Windows 10. In this release, they turned Azure Active Directory into: “First Class Citizenship”, which allows users to log in to their devices using Azure AD identity, enjoying the same benefits as using MSA (Microsoft Account), such as the app store. Access, settings, sync and dynamic tiles. Enterprises can still use their existing Active Directory without a Microsoft account. Windows 10 will also have the "next generation of user credentials", which is like a password replacement that can bring a single sign-on anywhere. “Threshold (Windows 10) puts data protection into the natural stream and integrates data protection at the platform level. ” Niehus wrote. It supports per-application VPNs, which allows specific applications to use VPN connections. Administrators can limit remote access to specific applications and/or specific port/IP addresses. For example, an IT department can allow IT access through a VPN, but limit it to a specific port or IP address. For example, the IT department can let applications in the Enterprise Data Protection list access the VPN. This feature is supported by existing Inbox VPN clients or Windows Store VPN clients (Windows 8.1 and Windows Phone 8.1).

Microsoft officials said that Windows, Windows Phone and Xbox One will have a unified app store in the future. Niehus revealed that the app store will also see a series of adjustments and upgrades.

“The new Windows Store supports not only the Modern app. It will also join desktop applications and other types of digital content. We'll offer a variety of ways to pay for apps, and add an organization store to the public Windows store to organize common public apps and the specific business applications employees need. ”

Microsoft is also developing new volume-buying features that enable enterprises to implement volume purchases, deployments, and management of applications. In this way, the application license can be reclaimed and reused after the employee leaves the company. Microsoft will support the use of Azure Active Directory accounts to obtain organizational applications, while Microsoft accounts are used to obtain private applications. Microsoft will also continue to allow users to go to the sideload application, or use the new mobile device management controls to deploy applications from the app store.

Businesses can also use mobile device management (MDM) services such as Intune. The latter will communicate with bulk purchases to allow the Windows Store to perform heavy operations, such as installing apps and getting authorization for users.

Speaking of MDM, Microsoft will also bring MDM capabilities to desktops and laptops through Windows 10. In addition, Microsoft will allow third-party MDM services to manage VPN-based remote access for Windows and Windows Phone. Any VPN service provider can create a remote access application,

In addition to the above, Windows 10 has some enterprise features that Niehus did not mention, including the Quick Update feature and System Center Management Plan. Wait.

Copyright © Windows knowledge All Rights Reserved