Master Class: Intune Modern Device Management Intensive for Windows and macOS (IMDM1) – Outline

Detailed Course Outline

Tag 1: Foundation & Hybrid Identity

Microsoft 365 Tenant Setup for Desktop Management
  • Microsoft Entra ID Tenant configuration and licensing
  • Intune Service Setup and DNS-Integration
  • Integration with existing AD DS environments
Hybrid Identity mit Entra Connect
  • Password Hash Sync vs. Passthrough Authentication
  • Microsoft Entra Connect Health Monitoring
  • Seamless SSO configuration for Windows and macOS
  • Troubleshooting synchronization problems
Device Identity Strategies
  • Microsoft Entra ID Registration vs. Entra ID Domain Join
  • Hybrid Entra ID Join implementation
  • Device-based Conditional Access Policies
  • Kerberos authentication in hybrid scenarios

Day 2: Windows Management Basics

Windows Autopilot Deployment
  • Hardware Hash Import and Device Registration
  • Self-Deploying Mode and User-Driven Deployment
  • Autopilot Reset and Reprovisioning
  • Windows Autopilot device preparation (Autopilot V2)
Windows Configuration Management
  • Settings Catalog for Windows 11 specific settings
  • Security Baselines Implementation
  • Windows Update for Business Integration
  • Custom Configuration Service Provider (CSP) Policies
Application Deployment for Windows
  • MSI, Store and Win32 App Deployment
  • PowerShell Script Deployment with Intune Management Extension
  • Microsoft Store App Management
  • App Installation Monitoring and Reporting

Day 3: macOS Management & Cross-Platform Security Features

Apple Business Manager Integration
  • Apple Business Manager Account Setup
  • Apple Push Certificates Management
  • Device Enrollment Program (DEP) Konfiguration
  • Volume Purchase Program (VPP) for app licenses
macOS Enrollment and Management
  • Automated Device Enrollment (ADE) for macOS
  • User Enrollment vs. Device Enrollment Strategies
  • macOS Configuration Profiles
  • Shell Script Deployment for macOS
Cross-Platform Compliance and Security
  • Unified Compliance Policies for Windows and macOS
  • Conditional access for both platforms
  • BitLocker and FileVault Management
  • Certificate-based Authentication (SCEP/PKCS)
  • Microsoft Defender for Windows and macOS