Summary
In this chapter, we covered what administration and remote management are and their importance for your Windows environment. We started with an overview of device administration and the different ways in which Windows devices can connect and register to your domain. We then learned how to enforce compliance and configured settings on your devices using MDM with Configuration Manager and Intune.
Next, we walked through building a Windows 10 security baseline using the Microsoft Security Compliance Toolkit. We discussed using the Policy Analyzer tool to compare settings and created a GPO from the recommended baseline and assigned it to an Active Directory OU. Then, we learned how to take existing GPOs and convert them into Configuration Manager Configuration Items to both remediate noncompliant settings or use monitor mode for reporting purposes. Finally, we reviewed remote management and provided details on how to deploy Azure Security Center JIT access and Azure Bastion...