Summary
In this chapter, you learned how to onboard and manage your macOS devices for MDE.
You now know how to onboard manually or by using Microsoft Intune. This included several of the prerequisites unique to macOS, due to Apple’s built-in security constraints around the OS. You learned that the manual option is useful for initial testing or small-scale deployments, but Microsoft Intune provides a scalable approach with the benefits of MDM. Other MDM options are available, including Jamf, but as Intune is available with Microsoft 365 E5, we focused on that.
You also now understand how to manage endpoint MDE for macOS settings. Throughout the Managing macOS protection settings section, you learned how to build the core component of MDE for macOS management: the configuration profile file. You also learned about many good practices, such as prohibiting local policy management, minimizing exclusions, enforcing PUA protection, and keeping MDE updated.
If you thought Microsoft...