Replies: 3 comments
-
|
Hey there @superko84! Thanks for the input, and indeed, this is a case of horrible double-negative wording scattered across some policies. Appreciate you flagging it! |
Beta Was this translation helpful? Give feedback.
-
|
This has been fixed as of #6 |
Beta Was this translation helpful? Give feedback.
-
|
Setting Allow All Trusted Apps - set to "Explicit Deny" - to prevent installation of non-microsoft store apps This breaks installation of .msixbundle pushed from intune via a script: |
Beta Was this translation helpful? Give feedback.
Uh oh!
There was an error while loading. Please reload this page.
Uh oh!
There was an error while loading. Please reload this page.
-
Hi James, first of all, thanks for your great work with the baselines! I am currently reviewing and implementing them. I do have two suggestions regarding Micrsoft Store baseline.
Setting Allow All Trusted Apps - set to "Explicit Deny" - to prevent installation of non-microsoft store apps
Setting Block Non Admin User Install set to "Allow" - to actually block the installation of downloaded appx packages
I tested the setting Block Non Admin User Install and its actually blocking, when set to Allow and it is not blocking when set to Block :) The wording in this case can be very misleading.
Keep up the great work! Thanks
Lubomir
Beta Was this translation helpful? Give feedback.
All reactions