Skip to content

Commit 3b2a2ee

Browse files
authored
Enhance macOS endpoints guide with SSO and optimization tips
Mitigate security exception - Bug 28366379: [Mac CP][Security Exception] Unreliable Entra device ID patching for MacOS can enable Conditional Access on unmanaged devices
1 parent d1a6197 commit 3b2a2ee

1 file changed

Lines changed: 2 additions & 0 deletions

File tree

intune/solutions/end-to-end-guides/macos-endpoints-get-started.md

Lines changed: 2 additions & 0 deletions
Original file line numberDiff line numberDiff line change
@@ -175,6 +175,8 @@ macOS devices with user affinity can be targeted for profiles and apps using use
175175
176176
### Step 6 - Configure initial settings and single sign-on (SSO)
177177

178+
Platform Single Sign-On (PSSO) is the most secure approach for device attestation and registration. Enforcing the use of the SSO extension during device registration is considered a best practice for a Zero Trust security strategy, ensuring strong device identity and replacing traditional registration through the Company Portal.”
179+
178180
**Optimize first run experience**
179181

180182
Using Intune, you can optimize the first run experience using built-in settings within the ADE enrollment profile. Specifically, when you create the enrollment profile, you can:

0 commit comments

Comments
 (0)