# Settings for Intune-managed devices (Legacy)

Starting in Windows 10, version 1703, you can import ADMX files (also called ADMX ingestion) and set those ADMX-backed policies for Win32 and Desktop Bridge apps by using Windows 10 Mobile Device Management (MDM) on desktop SKUs. The ADMX files that define policy information can be ingested to your device by using the Policy CSP URI, The ingested ADMX file is then processed into MDM policies.

![](https://2727108687-files.gitbook.io/~/files/v0/b/gitbook-legacy-files/o/assets%2F-M8zLVuKYctMIUr68_fs%2F-MeYrjRsJWyF0BXYv_u3%2F-MeZ0cFyesFnlrsO9asB%2Fprovisioning-csp-policy.png?alt=media\&token=caffa012-a4f0-4467-8bb4-b2615eb34a28)

For more in information please visit [Understanding ADMX-backed policies](https://docs.microsoft.com/en-us/windows/client-management/mdm/understanding-admx-backed-policies) and [Policy CSP](https://docs.microsoft.com/en-us/windows/client-management/mdm/policy-configuration-service-provider)&#x20;

## Ingesting KONNEKT ADMX file **and deploying policies**

In order to set the KONNEKT policies you need to ingest the admx file in a configuration profile first:

1\. Go to your **Microsoft Endpoint Manager** portal\
2\. Click on **Devices**, then in the sub-menu go to **Configuration profiles**\
3\. **Create profile:** Select Platform **Windows 10 and later,** profile type **Templates,** in search field choose **Custom,** then **Create**

![](https://2727108687-files.gitbook.io/~/files/v0/b/gitbook-legacy-files/o/assets%2F-M8zLVuKYctMIUr68_fs%2F-MeYrjRsJWyF0BXYv_u3%2F-MeZ5574lSLojZlV32k4%2F2021-07-14%2010_17_11-Window.png?alt=media\&token=e68f6d5f-a24f-4ea1-b0e0-82aabfc73da0)

4\. Now choose a **Name** for this profile, **Next**\
5\. Under **Configuration settings:**

**First you have to** ingest the admx file: **Add** new Row

Click on **Add** then in the new window:

* **Name:** choose a name, e.g. KonnektAdmxIngesting
* **OMA-URI:**&#x20;

```
./Vendor/MSFT/Policy/ConfigOperations/ADMXInstall/Konnekt/Policy/KonnektAdmx

```

* **Data type:** String
* **Value:** copy the content of this [admx file](https://docs.konnekt.io/configuration/management-options/..#admx-adml-files), then **Save**

![](https://2727108687-files.gitbook.io/~/files/v0/b/gitbook-legacy-files/o/assets%2F-M8zLVuKYctMIUr68_fs%2F-MeYrjRsJWyF0BXYv_u3%2F-MeZQmSuKrJw6r2fSwuR%2F2021-07-14%2011_10_18-Window.png?alt=media\&token=f25ce3f6-5538-4b11-ac42-547ece4ccc89)

Now add all policies you need to assign to clients from the [Available Intune Policies](#available-intune-policies).

{% hint style="info" %}
In the following picture 4 policies are added (as an example). After ingesting the admx file, you can choose the policies you need to push to your clients from the tables [Available Intune Policies](#available-intune-policies)&#x20;
{% endhint %}

![](https://2727108687-files.gitbook.io/~/files/v0/b/gitbook-legacy-files/o/assets%2F-M8zLVuKYctMIUr68_fs%2F-MeYrjRsJWyF0BXYv_u3%2F-MeZMErCQE8qCmd1EA9s%2F2021-07-14%2011_32_28-Window.png?alt=media\&token=db422924-53be-4966-b2c7-8b4d060beced)

6\. Assign the policies to groups/users, and **Next, Next, and Create**

\
After a successful Sync for assigned devices/users restart **KONNEKT** to apply the new policies.

To check that the URI's have been deployed correctly in your MDM go to **Devices -> Windows -> your Device -> Device configuration -> your configuration profile**

![](https://2727108687-files.gitbook.io/~/files/v0/b/gitbook-legacy-files/o/assets%2F-M8zLVuKYctMIUr68_fs%2F-MeYrjRsJWyF0BXYv_u3%2F-MeZWt722KsiC2l__sGm%2FPolicies.png?alt=media\&token=776714de-5223-4cc7-9249-12de65cda660)

To check configured URI's on the machine go to the following path in the Registry:

```
[HKCU or HKLM]\SOFTWARE\Policies\GlueckKanja\Konnekt
```

{% hint style="info" %}
Choose **HKCU** for user policies or **HKLM** for machine policies.
{% endhint %}

![](https://2727108687-files.gitbook.io/~/files/v0/b/gitbook-legacy-files/o/assets%2F-M8zLVuKYctMIUr68_fs%2F-MeYrjRsJWyF0BXYv_u3%2F-MeZTBBh1dn2AFstyQYU%2FKonnektRegistry.png?alt=media\&token=b3314167-964e-42f2-a92c-161e19a64ba3)

## Available Intune Policies

To deploy the following OMA-URI's in Intune MDM please [check here](#ingesting-konnekt-admx-file-and-deploying-policies)

{% hint style="danger" %}
URI's are case-sensitive!
{% endhint %}

{% hint style="info" %}
Most of the policies are applicable to version 2.0 and above
{% endhint %}

{% content-ref url="setting-for-intune-managed-devices-1/intune-gui-settings" %}
[intune-gui-settings](https://docs.konnekt.io/configuration/management-options/setting-for-intune-managed-devices-1/intune-gui-settings)
{% endcontent-ref %}

{% content-ref url="setting-for-intune-managed-devices-1/intune-mappings" %}
[intune-mappings](https://docs.konnekt.io/configuration/management-options/setting-for-intune-managed-devices-1/intune-mappings)
{% endcontent-ref %}

{% content-ref url="setting-for-intune-managed-devices-1/intune-system-settings" %}
[intune-system-settings](https://docs.konnekt.io/configuration/management-options/setting-for-intune-managed-devices-1/intune-system-settings)
{% endcontent-ref %}

{% content-ref url="setting-for-intune-managed-devices-1/intune-other-settings" %}
[intune-other-settings](https://docs.konnekt.io/configuration/management-options/setting-for-intune-managed-devices-1/intune-other-settings)
{% endcontent-ref %}
