Windows ten, version 1703-also known as the Windows creators Update-is designed for today's modern IT environment with N EW features to help IT pros more easily manage, and better protect, the devices and data in their organizations. It also provides individuals with the ability to being more productive, thanks to enhancements to Windows Ink and Cortana, be Tter battery life, improved accessibility, and more control over privacy settings as well as when updates is installed. To learn more on these and other improvements, see the Windows Experience Blog.
Windows ten, version 1703 is the third feature update released for Windows 10. As with the Windows November Update (released November) and the Windows Anniversary Update (released August 201 6), it is a further expression of how we have moved to Windows as a service-and a delivery in our promise to keep improving Windows over time, utilizing the feedback we receive from you and other customers through the Windows Insider program.
What's new for IT professionals?
-
New and improved provisioning options to help you configure devices without imaging:
-
Windows Configuration Designer, formerly known as Windows Imaging and Conf Iguration Designer (ICD), is now available in the Windows store as an app. It includes several new wizards to make it easier to create provisioning packages for desktop devices, mobile de Vices, and Kiosks-as well as the option to remove pre-installed software in both the desktop and Kiosk wizards.
-
You can now create provisioning packages To bulk enroll devices in Azure Active directory (Azure AD) an D then enroll in a mobile device management (MDM) solution, if required.
-
New PowerShell cmdlets enable you to automatically install provisioning packages created using Windows Configu Ration Designer.
Mbr2gpt. EXE, a new command-line tool that enables you to convert a disk from a Master Boot Record (MBR) to a GUID Partition Table (GPT) without modifying or deleting data on the disk, helpful in automating of the conversion from BIOS to Uefi[i]. (Watch the demo for more insight.)
Windows Hello for business, which replaces passwords with Two-factor authentication, have been improved to support Organiza tions that is restricted to using AD on-premises for authentication and can ' t use cloud-based solutions like Azure AD.
New Windows Defender Advanced Threat Protection (ATP) capabilities, including the ability to create custom Threat Intellig ence Alerts, investigate a specific user account, and take immediate actions on a machine or file to contain a breach. (Watch the demo for more insight.)
Enhancements to Windows Defender Antivirus (AV) (previously known as Windows Defender), including updates to how the Block At first Sight feature can is configured and the ability to specify the level of cloud protection.
Enhanced mobile device Management (MDM) Support:
Office CSP, which enables the installation of the Microsoft Office client on a device via the Office Deployment Tool.
Enterpriseappvmanagement CSP, which enables the management of virtual applications in Windows PCs (Enterprise and Educa tion editions) and enables app-V sequenced apps to being streamed to PCs even when managed by a MDM solution.
Dynamicmanagement CSP, which enables policies to is enabled dynamically based on location, network, or time. (for example, the could disable cameras on managed devices if at-a work location.)
BitLocker CSP, which enables device encryption management (for example, you could require storage card encryption on Mobil e devices, or require encryption for OS drives on PCs).
CLEANPC CSP, which enables the removal of user-installed and pre-installed applications, with the option to persist user D Ata.
Networkproxy CSP, which enables proxy server configuration for Ethernet and Wi-Fi connections.
The ability to configure security policies through MDM this were previously only available through Group Policy. In fact, we have the enabled close to new security policies natively through MDM. (If is new to MDM on Windows ten, SE E Modern management for Windows 10.)
The MDM Migration Analysis Tool (aka MMAT), which helps your transition Windows device management from Group Policy to M DM by assessing which policies currently on use is available through MDM.
New MDM Configuration service Providers (CSPs) [II], including:
New MDM settings to turn off many items on the Start menu, including frequently used apps, switch account, and Restart/shu T Down/hibernate/sleep.
The ability to customize Start and taskbar layout in Windows ten Pro with Group Policy, and new support for customized task Bar policy deployed via MDM.
The ability to control which pages in the Settings app is the visible to users using either MDM or Group Policy via the Setti Ngs/pagevisibilitylist setting. Blocked pages won't is visible in the app and, if all pages in a category is Blocked, the category would be hidden as W Ell.
Support for mobile application Management (MAM), including integration with Windows information Protection, which provides Individuals with access to business apps on their personal Windows devices while protecting company data.
Improved manageability support on Microsoft Edge with the addition of new Group Policy and MDM settings geared towards cus Tomizing experiences, security, and privacy (e.g. Allow Address bar Drop-down list suggestions, allow Adobe Flash, Set def Ault Search engine, Keep favorites in sync between Internet Explorer and Microsoft Edge, etc.)
We have also made enhancements to Windows as a service, including:
-
More control over configuring when devices Receive feature updates and quality updates in& nbsp Windows Update for business.
-
The ability to monitor the installation progress of both quality and feature updates with update compliance.
-
Express Update support for Configuration Manager, in addition-to-current express support for Windows Update, Windows Update for business and WSUS.
And that ' s not all. There is even more features in Windows, version 1703 This we think you'll love:
Registry Editor (REGEDT32. EXE) now has a address bar, keyboard shortcuts, and abbreviations, such as HKCU (for HKEY_CURRENT_USER) and HKLM (for HKE Y_local_machine).
Windows Subsystem for Linux (WSL), which allows users to run native, unmodified Linux command-line tools directly on Windo WS, without virtual machines.
Command Prompt have been replaced with PowerShell on the Quick Link (win+x) menu by default.
Streamlined Virtual private network (VPN) makes it possible to easily activate a connection from the Network fly-out menu.
-
Hyper-V improvements, including:
-
"Quick Create," a new option to the Create virtual machines in Hyper-V.
-
Checkpoint and Save for nested hyper-V
-
Hyper-V instances'll now remember your zoom level for the next session.
-
You can now override the scaling in Hyper-V virtual machines.
-
You can now resize Hyper-V windows in enhanced session mode.
-
Networking Improvements (NAT)
-
Developer-centric memory management
New display options, including:
You can now let Windows reduce the blue light emitted from the screens with night light.
HIGH-DPI scaling improvements for desktop applications.
A new setting in Properties for programs that would enable improved high-dpi rendering.
Windows would now better handle desktop icons if changes to the device's setup (like removing a screen) is made.
After upgrading to Windows, v1703 In-box apps (were uninstalled by the user won ' t automatically reinstall as part O F the Feature Update installation process. (Apps de-provisioned by IT administrators would still be reinstalled, this is expected to be addressed in a future Feature Update)
Windows can now use the Dynamic Lock to lock your PC when you leave it, with Windows Hello.
Setting up Windows Hello now provides visual guidance which tracks your face in real time.
Today ' s release of Windows, version 1703 is initially considered the current Branch (CB) and would become current Branch For Business (CBB) in about four months from today. For a list of Windows ten versions by servicing option, see our Windows Release Information page. For more information about Windows servicing-including guidance on what to assign devices to different servicing branche s and how to manage updates using Windows Update for business, WSUS, or Configuration manager-see Update Windows Ten in the Enterprise and Quick Guide to Windows as a service, to get hands-on experience with windows as a service in a virtual Mac Hine environment, with no additional software or setup required, try the Deploy and manage Windows as a service virtual LA B.
For a summary of the features so were removed or deprecated in Windows ten, version 1703, see the Microsoft knowledge Bas E.
How, when, can I obtain Windows, version 1703?
Windows Ten, version 1703 is available for download today from the MSDN subscriptions Center (for Visual studio/msdn SUBSCR Ibers).
You can download a free 90-day evaluation of Windows Enterprise, version 1703 from the TechNet evaluation Center.
If you had already deployed windows, you can get the Windows ten, version 1703 update starting Tuesday, April 11th from Windows Update or Windows Update for business.
If you have already deployed Windows Ten and use Windows Server Update Services (WSUS) and/or System Center Configuration M Anager servicing plans, you can also get the Windows ten, version 1703 update on April 11th.
Individuals that want to initiate the update manually today, instead of waiting for April 11th, can do so via update assis Tant or the Media Creation TOOL[III].
Windows Ten, version 1703 'll be available for download from the Volume Licensing Service Center (for Volume License custo MERS) on May 1st.
We have also updated the Windows Assessment and development Kit (Windows ADK). To download of Windows ADK for Windows, version 1703, visit the Hardware Dev Center.
What if I haven ' t yet deployed Windows Ten in my organization?
If you haven ' t yet deployed Windows ten in your organization, download the updated Windows Enterprise Evaluation to test Windows, version 1703 free for. I also encourage advantage of the following resources:
Upgrade readiness, part of Windows Analytics, are a free service that helps you streamline and accelerate the Windows Upgra De process by identifying compatibility issues the can block an upgrade and proactively suggesting fixes.
Windows Virtual labs, hands-on labs, let's try out Windows Setup, deployment, and management scenarios with no Setup or additional software required.
Windows Deployment and Management Lab Kit, a pre-configured virtual lab environment and step-by-step lab guides to help You review and test a in-place upgrade as well as traditional deployment methods.
Where can I provide feedback on Windows 10?
To provide feedback on what we can improve the features and functionality of Windows moving forward, and to get access to E Arly Preview builds, join the Windows Insider program.
If you would like to ask questions, learn on best practices, share ideas, or engage in discussions about Windows wit H Microsoft Engineers and product experts, as well as your peers, join the brand new Windows Tech Community.
This article from "3 Teeth Network jockey!" blog, declined reprint!
What's the purpose for IT Pro in Windows creators Update