{ "InstallContextType": { "device": "Device", "deviceContext": "Device context", "user": "User", "userContext": "User context" }, "ScheduledAction": { "Form": { "editBlockActionInfo": "One block action is required for all compliance policies.", "graceperiod": "Schedule (days after noncompliance)", "graceperiodInfo": "Specify the number of days after noncompliance after which this action should be triggered for the user's device", "subtitle": "Specify action parameters", "title": "Action parameters" }, "List": { "gracePeriodDay": "{0} day after noncompliance", "gracePeriodDays": "{0} days after noncompliance", "gracePeriodHour": "{0} hour after noncompliance", "gracePeriodHours": "{0} hours after noncompliance", "gracePeriodMinute": "{0} minute after noncompliance", "gracePeriodMinutes": "{0} minutes after noncompliance", "immediately": "Immediately", "schedule": "Schedule", "scheduleInfoBalloon": "Days after noncompliance", "subtitle": "Specify the sequence of actions on noncompliant devices", "title": "Actions" }, "Notification": { "additionalEmailLabel": "Others", "additionalRecipients": "Additional recipients (via email)", "additionalRecipientsBladeTitle": "Select additional recipients", "emailAddressPrompt": "Enter email addresses (separated by commas)", "invalidEmail": "Invalid email address", "messageTemplate": "Message template", "noneSelected": "None selected", "notSelected": "Not selected", "numSelected": "{0} selected", "selected": "Selected" }, "block": "Mark device noncompliant", "lockDevice": "Lock device (local action)", "lockDeviceWithPasscode": "Lock device (local action)", "noAction": "No action", "noActionRow": "No actions, select 'Add' to add an action", "pushNotification": "Send push notification to end user", "remoteLock": "Remotely lock the noncompliant device", "removeSourceAccessProfile": "Remove source access profile", "retire": "Add device to retire list", "wipe": "Wipe", "emailNotification": "Send email to end user" }, "RoleAssignment": { "RoleAssignmentAdmin": "Admin Groups", "RoleAssignmentAdminDesc": "Admin group users are the administrators assigned to this role", "rolesMenuTitle": "Intune roles", "RoleAssignmentScopeDesc": "Administrators in this role assignment can target policies, applications and remote tasks", "RoleAssignmentScope": "Scope Groups" }, "AppInformationTab": { "Info": { "AppStoreUrl": { "android": "Enter the link to the app listing in Google Play store. For example:", "androidLink": "https://play.google.com/store/apps/details?id=com.microsoft.office.outlook", "microsoftStore": "Enter the 'Link for Intune' URL for the app provided from the store. For more information, see {0}.", "microsoftStoreLink": "https://go.microsoft.com/fwlink/?linkid=2115228", "microsoftStoreLinkText": "Add Microsoft Store apps (legacy) to Microsoft Intune", "windows": "Enter the link to the app listing in the Microsoft Store. For example:", "windowsLink": "https://www.microsoft.com/p/microsoft-to-do-lists-tasks-reminders/9nblggh5r558" }, "appPackageFile": "A file that contains your app in a format that can be sideloaded on a device. Valid package types include: Android (.apk), iOS (.ipa), macOS (.pkg), Windows (.msi, .appx, .appxbundle, .msix, and .msixbundle).", "applicableDeviceType": "Select the device types that can install this app.", "category": "Categorize the app to make it easier for users to sort and find in Company Portal. You can choose multiple categories.", "categoryLink": "https://go.microsoft.com/fwlink/?linkid=2295954", "description": "Help your device users understand what the app is and/or what they can do in the app. This description will be visible to them in Company Portal.", "developer": "The name of the company or Individual that developed the app. This information will be visible to people signed into the admin center.", "displayVersion": "The version of the app. This information will be visible to users in the Company Portal.", "fullScreenEnabled": "If configured to yes, launches the web clip as a full-screen web app.", "ignoreManifestScope": "If configured to yes, a full screen web clip can navigate to an external web site without showing Safari UI. Otherwise, Safari UI appears when navigating away from the web clip’s URL. This key has no effect when Full screen is false.", "infoUrl": "Link people to a website or documentation that has more information about the app. The information URL will be visible to users in Company Portal.", "isFeatured": "Featured apps are prominently placed in Company Portal so that users can quickly get to them.", "learnMore": "Learn more", "logo": "Upload a logo that's associated with the app. This logo will appear next to the app throughout Company Portal.", "macOSDmgAppPackageFile": "A file that contains your app in a format that can be sideloaded on a device. Valid package type: .dmg.", "macOSPkgAppPackageFile": "A file that contains your app in a format that can be sideloaded on a device. Valid package type: .pkg.", "minOperatingSystem": "Select the earliest operating system version on which the app can be installed. If you assign the app to a device with an earlier operating system, it will not be installed.", "name": "Add a name for the app. This name will be visible in the Intune apps list and to users in the Company Portal.", "notes": "Add additional notes about the app. Notes will be visible to people signed in to the admin center.", "owner": "The name of the person in your organization who manages licensing or is the point-of-contact for this app. This name will be visible to people signed in to the admin center.", "packageId": "The app Package Identifier is the unique value that identifies the app.", "packageName": "Contact the device manufacturer to get the app's package name. Example package name: com.example.app", "preComposedIconEnabled": "If configured to yes, prevents SpringBoard from adding \"shine\" to the icon.", "privacyUrl": "Provide a link for people who want to learn more about the app's privacy settings and terms. The privacy URL will be visible to users in Company Portal.", "publisher": "The name of the developer or company that distributes the app. This information will be visible to users in Company Portal.", "selectApp": "Search the App Store for iOS store apps that you want to deploy with Intune.", "targetApplicationBundleIdentifier": "The application bundle identifier that specifies the application which opens the URL. Available in iOS 14 and later.", "useManagedBrowser": "If required, when a user opens the web app, it will open in an Intune-protected browser such as Microsoft Edge or Intune Managed Browser. This setting applies to both iOS and Android devices.", "useManagedBrowserLink": "https://go.microsoft.com/fwlink/?linkid=2299509", "win32AppPackageFile": "A file that contains your app in a format that can be sideloaded on a device. Valid package type: .intunewin.", "winGetStoreSelectApp": "Search the Microsoft Store app (new) for store apps that you want to deploy with Intune." }, "descriptionPreview": "Preview", "descriptionPreviewLabel": "Preview", "descriptionRequired": "Description is required.", "editDescription": "Edit Description", "macOSMinOperatingSystemAdditionalInfo": "The minimum operating system for uploading a .pkg file is macOS 10.14. Upload a .pkg file to select an older minimum operating system.", "markdownHelpLink": "Get help with markdown supported for descriptions.", "name": "App information", "nameForOfficeSuitApp": "App suite information" }, "ScopeTypes": { "allDevices": "All Devices", "allUsers": "All Users", "allUsersAndDevices": "All Users & All Devices", "selectedGroups": "Selected Groups" }, "ProactiveRemediations": { "Create": { "Basics": { "DescriptionMultiLineTextBox": { "label": "Description", "placeholder": "Enter a description" }, "NameTextBox": { "label": "Name", "placeholder": "Enter a name" }, "PublisherTextBox": { "label": "Publisher", "placeholder": "Enter a publisher" }, "VersionTextBox": { "label": "Version" }, "headerDescription": "Create a new custom script package from detection and remediation scripts that you’ve written." }, "ScopeTags": { "headerDescription": "Select one or more groups to assign the script package." }, "Settings": { "DetectionScriptMultiLineTextBox": { "label": "Detection script", "placeholder": "Input script text", "requiredValidationMessage": "Please enter the detection script" }, "EnforceScriptSignatureCheckOptionPicker": { "label": "Enforce script signature check" }, "LoggedOnCredentialsOptionPicker": { "label": "Run this script using the logged-on credentials" }, "RemediationScript": { "infoBox": "This script will run in detect-only mode because there is no remediation script." }, "RemediationScriptMultiLineTextBox": { "label": "Remediation script", "placeholder": "Input script text" }, "RunIn64BitPSOptionPicker": { "label": "Run script in 64-bit PowerShell" }, "ScriptMultiLineTextBox": { "base64EncodingValidationMessage": "Invalid script. One or more characters used in the script is not valid." }, "headerDescription": "Create a custom script package from scripts you've written. By default, scripts will run on assigned devices every day.", "infoBox": "This script is read-only. Some of the settings for this script might be disabled." }, "title": "Create custom script", "ScriptProperties": { "GridHeaders": { "interval": "Interval", "time": "Date and time" }, "Interval": { "day": "Repeats every day", "days": "Repeats every {0} days", "hour": "Repeats every hour", "hours": "Repeats every {0} hours", "month": "Repeats every month", "months": "Repeats every {0} months", "week": "Repeats every week", "weeks": "Repeats every {0} weeks" }, "Time": { "utc": "{0} (UTC)", "utcWithDate": "{0} (UTC) on {1}", "withDate": "{0} on {1}" } } }, "Edit": { "title": "Edit - {0}" } }, "MinimumOperatingSystem": { "Android": { "v10": "Android 10.0", "v11": "Android 11.0", "v12": "Android 12.0", "v13": "Android 13.0", "v14": "Android 14.0", "v15": "Android 15.0", "v4": "Android 4.0 (Ice Cream Sandwich)", "v403": "Android 4.0.3 (Ice Cream Sandwich)", "v41": "Android 4.1 (Jelly Bean)", "v42": "Android 4.2 (Jelly Bean)", "v43": "Android 4.3 (Jelly Bean)", "v44": "Android 4.4 (KitKat)", "v5": "Android 5.0 (Lollipop)", "v51": "Android 5.1 (Lollipop)", "v6": "Android 6.0 (Marshmallow)", "v7": "Android 7.0 (Nougat)", "v71": "Android 7.1 (Nougat)", "v8": "Android 8.0 (Oreo)", "v81": "Android 8.1 (Oreo)", "v9": "Android 9.0 (Pie)" }, "IOS": { "v10": "iOS 10.0", "v11": "iOS 11.0", "v12": "iOS 12.0", "v13": "iOS 13.0", "v14": "iOS 14.0", "v15": "iOS 15.0", "v16": "iOS 16.0", "v17": "iOS 17.0", "v8": "iOS 8.0", "v9": "iOS 9.0" }, "MacOS": { "V10": { "10": "OS X Yosemite 10.10", "11": "OS X El Capitan 10.11", "12": "macOS Sierra 10.12", "13": "macOS High Sierra 10.13", "14": "macOS Mojave 10.14", "15": "macOS Catalina 10.15", "7": "Mac OS X Lion 10.7", "8": "OS X Mountain Lion 10.8", "9": "OS X Mavericks 10.9" }, "V11": { "0": "macOS Big Sur 11.0" }, "V12": { "0": "macOS Monterey 12.0" }, "V13": { "0": "macOS Ventura 13.0" }, "V14": { "0": "macOS Sonoma 14.0" } }, "Windows": { "V10Release": { "release1607": "Windows 10 1607", "release1703": "Windows 10 1703", "release1709": "Windows 10 1709", "release1803": "Windows 10 1803", "release1809": "Windows 10 1809", "release1903": "Windows 10 1903", "release1909": "Windows 10 1909", "release2004": "Windows 10 2004", "release21H1": "Windows 10 21H1", "release21H2": "Windows 10 21H2", "release22H2": "Windows 10 22H2", "release2H20": "Windows 10 20H2" }, "V11Release": { "release21H2": "Windows 11 21H2", "release22H2": "Windows 11 22H2", "release23H2": "Windows 11 23H2" }, "v10": "Windows 10.0", "v80": "Windows 8.0", "v81": "Windows 8.1" }, "WindowsPhone": { "v80": "Windows Phone 8.0", "v81": "Windows Phone 8.1" } }, "OfficeUpdateChannel": { "current": "Current Channel", "deferred": "Semi-Annual Enterprise Channel", "firstReleaseCurrent": "Current Channel (Preview)", "firstReleaseDeferred": "Semi-Annual Enterprise Channel (Preview)", "monthlyEnterprise": "Monthly Enterprise Channel", "placeHolder": "Select one" }, "TableHeaders": { "activity": "Activity", "activityName": "Activity name", "actor": "Initiated by (actor)", "actorType": "Actor type", "app": "App", "appName": "App name", "applicationName": "Application name", "approvalType": "Approval method", "assignedGroups": "Group", "assignment": "Assignment", "assignmentStatus": "Assigned", "assignments": "Assignments", "attributeName": "Attribute name", "attributeType": "Attribute type", "bundleId": "Bundle-Id", "category": "Category", "complianceGracePeriodExpiration": "Compliance grace period expiration", "configurationType": "Profile type", "conflictingPolicy": "Conflicting Policies", "createdDate": "Created date", "currentOs": "Current OS", "date": "Date", "dateRange": "Date range", "deployed": "Deployed", "description": "Description", "device": "Device", "deviceId": "Device ID", "deviceName": "Device name", "deviceOrApplicationName": "Device or application name", "deviceReporting": "Devices reporting", "diagnosticCode": "Diagnostic Code", "diagnosticText": "Diagnostic Text", "diagnostics": "Diagnostics", "displayName": "Display name", "driversToReview": "Drivers to review", "eSIMActivationStatus": "Activation status", "eSIMCellularStatus": "Cellular status", "eSIMICCID": "ICCID", "eSIMPoolName": "Cellular subscription", "eSIMState": "eSIM state", "eSIMTokenAmount": "Total eSIM activation codes", "enabled": "Enabled", "enabledPlatforms": "Enabled Platforms", "encryptionReadiness": "Encryption Readiness", "encryptionStatus": "Encryption Status", "endTime": "End time", "enrollment": "Enrollment", "enrollmentAttempt": "Enrollment start", "eventDateTime": "Timestamp", "eventIdentifier": "Event ID", "eventLevel": "Level", "excluded": "Excluded", "failure": "Failure", "featureUpdateDeferral": "Feature Deferral", "featureUpdateVersion": "Feature Update Version", "featureUpdatesPaused": "Feature (Paused)", "featureUpdatesStatus": "Feature", "from": "From", "groups": "Groups", "groupsSelected": "Groups Selected", "installationStatus": "Installation Status", "issueId": "Issue id", "lastCheckinTime": "Last Check-in Time", "lastModified": "Last modified", "lastScanTime": "Last Scan Time", "lastSuccessfulSync": "Last Successful Sync", "lastUpdated": "Last Updated", "location": "Location", "loggedInUser": "Logged in user", "message": "Message", "model": "Model", "mtdConnector": "MTD Connector", "name": "Profile name", "oSVersion": "OS Version", "operationType": "Operation type", "os": "OS", "packageName": "Package name", "partnerName": "Partner", "partnerStatus": "Partner status", "permission": "Permission", "platform": "Platform", "policies": "Policies", "policy": "Policy", "policyType": "Policy type", "preventedUpdateDays": "Restricted days", "priority": "Priority", "profiles": "Profiles", "publicAddress": "Public address", "publisher": "Publisher", "qualityUpdateDeferral": "Quality Deferral", "qualityUpdateRelease": "Quality Update Release", "qualityUpdateVersion": "Quality Update Version", "qualityUpdatesPaused": "Quality (Paused)", "qualityUpdatesStatus": "Quality", "reason": "Reason", "resource": "Resource", "roleName": "Name", "roles": "Roles", "scopeGroups": "Scope groups", "scopeSize": "Assigned Scope Groups", "scopeTags": "Scope tags", "scriptName": "Script name", "scriptType": "Script type", "servicingOption": "Servicing channel", "setting": "Setting", "settings": "Settings", "siteName": "Site name", "source": "Source", "sourceProfile": "Source Profile", "startTime": "Start time", "state": "State", "stateDetails": "State details", "status": "Status", "subject": "Subject", "support": "Support", "supportEndDate": "Support End Date", "tPMVersion": "TPM Version", "target": "Target", "timeWindows": "Time windows", "timeZone": "Time zone", "type": "Type", "updateScheduleType": "Schedule type", "updateStatus": "Update Status", "user": "User", "userPrincipalName": "User principal name", "users": "Users", "usersExcluded": "Users excluded", "usersTargeted": "Users targeted", "value": "Value", "includedGroups": "Included Groups", "excludedGroups": "Excluded Groups", "licenseType": "License type" }, "Inputs": { "accountDomain": "Account domain", "accountDomainHint": "e.g. contosodomain", "accountDomainInfoBalloon": "Specify the user’s account domain.", "accountTypeInfoBalloon": "Specify the account type being configured based on the authentication model", "allowContactSetting": "Allow user to change contact setting", "allowContactSyncInfoBalloon": "Specify if the user is allowed to change the contact sync setting", "allowUserChange": "Allow user to change setting", "androidPackageNamePreset": "com.microsoft.word", "androidPackageNameValidation": "Please enter a package name similar to com.microsoft.word", "androidUrlValidation": "Enter a valid url similar to https://play.google.com/store/apps/details?id=com.microsoft.bing&hl=en", "appInstallContext": "App install context", "appUrlLabel": "Appstore URL", "appleUrlValidation": "Enter a valid url similar to https://www.itunes.apple.com/us/app/microsoft-excel/id586683407?mt=8", "applicableDeviceType": "Applicable device type", "assignmentActionLabel": "Mode", "authenticationMethodInfoBalloon": "Specify the authentication method for the user", "authenticationMetod": "Authentication method", "authenticationType": "Authentication type", "authenticationTypeInfoBalloon": "Specify the authentication type for the user", "availableLicenseCount": "Available licenses", "basicAuth": "Basic authentication", "biometricsInfoBalloon": "Biometrics, such as TouchID or FaceID, can be required for users to access the app on their device. When required, biometrics are used in addition to the authentication method selected in this profile. This setting should not be enabled when Intune App Protection Policies are deployed, as the app protection policy includes access requirements prior to accessing managed data. Enabling both will result in multiple access prompts to access Outlook mobile. When set as not configured, the default app setting is set to Off. ", "bookNameLabel": "Book name", "bundleDescriptionHint": "Enter a description that describes the apps included.", "calendar": "Calendar", "categoryLabel": "Category", "categoryNameLabel": "Default name", "certProfileType": "Certificate profile type", "certificate": "Certificate", "certificates": "Certificates", "commandLineLabel": "Command-line arguments", "commandLineSizeHint": "The maximum length of the command-line arguments text is 1024 characters", "configurationSettingsFormatLabel": "Configuration settings format", "configurationSettingsLabel": "Settings format", "contactSync": "Save Contacts", "contactSyncInfoBalloon": "Saving contacts to the mobile device’s native address book allows new calls and text messages to be linked with the user’s existing Outlook contacts. When set as not configured, the default app setting is set to Off.", "contacts": "Contacts", "createdDateTime": "Created", "defaultCategoryHint": "Default categories cannot be changed", "deploySMimeCertsFromIntune": "Deploy S/MIME certificates from Intune", "descriptionGenericLabel": "Description", "descriptionHint": "Enter a description...", "descriptionLabel": "Description", "descriptionSizeHint": "The length of the description should be no longer than 10,000 characters", "developerLabel": "Developer", "developerSizeHint": "The maximum length of the developer name is 256 characters.", "disable": "Disable", "disabled": "Disabled", "displayNameLabel": "Name", "displayVersionHint": "Enter the app version", "displayVersionLabel": "App Version", "displayVersionLengthCheck": "The length of the display version should be a maximum of 130 characters", "eBookCategoryNameLabel": "Default name", "emailAccount": "Email account name", "emailAccountHint": "e.g. Corporate Email", "emailAccountInfoBalloon": "Specify the display name for the email account as it will appear to users on their devices", "emailAddressAttribute": "Email address attribute from Microsoft Entra ID", "emailAddressInfoBalloon": "Specify the email address to be used for sending and receiving mail", "emailServer": "Email Server", "emailServerHint": "e.g. mail.contoso.com", "emailServerInfoBalloon": "Specify the host name of your Exchange Server", "enable": "Enable", "enableSMime": "Enable S/MIME", "enabled": "Enabled", "encryptAllEmails": "Encrypt all emails", "encryptionCertificates": "Encryption certificates", "endUserNotifications": "End-user notifications", "enrollmentTypeLabel": "Device enrollment type", "externalRecipients": "External recipients MailTip", "externalRecipientsInfoBalloon": "The External Recipients MailTip is displayed if the sender adds a recipient that's external or adds a distribution group that contains external recipients. This MailTip informs senders if a message they're composing will leave the organization, helping them make the correct decisions about wording, tone, and content. Available only for Exchange Online accounts and on-premises accounts leveraging hybrid modern authentication. When set as not configured, the default app setting is set to On.", "focusedInbox": "Focused Inbox", "focusedInboxInfoBalloon": "Focused Inbox separates your inbox into two tabs—Focused and Other. Your most important emails are on the Focused tab while the rest remain easily accessible—but out of the way—on the Other tab. When set as not configured, the default app setting is set to On. ", "fullScreenEnabledLabel": "Full screen", "gmailNineAmountOfEmail": "Amount of email to synchronize", "gmailNineAuthenticationMethodInfoBalloon": "Select how you want users to authenticate to the email server. Use certificates to provide the most secure and seamless experience for end users. Certificate based authentication is not yet available because SCEP and PKCS certificate profiles for device owner devices are not available. ", "gmailNineCertificateUPNInfoBalloon": "The certificate must include user principal name (UPN) as a subject alternative name.", "gmailNineEmailAddressInfoBalloon": "The attribute Intune gets from Microsoft Entra ID to dynamically generate the email address that will be used by the profile e.g. MyName@contoso.com (UPN). Learn more about Microsoft Entra attributes for email profiles.", "gmailNineEmailServerInfoBalloon": "The Exchange location (URL) of the email server to which the app you specified connects to get email.", "gmailNineEmailSynchronizeInfoBalloon": "Control how much email the client will synchronize.", "gmailNineSSLInfoBalloon": "Enable SSL to help secure all communications with the email server.", "gmailNineUsernameInfoBalloon": "The attribute Intune gets from Microsoft Entra ID to dynamically generate the username that will be used by the profile e.g. MyName@contoso.com (UPN) or MyName (username). Learn more about Microsoft Entra attributes for email profiles.", "ignoreManifestScope": "Ignore manifest scope", "ignoreVersionDetection": "Ignore app version", "informationUrlLabel": "Information URL", "informationUrlSizeHint": "The maximum length of the information url is 1024 characters", "installAsManaged": "Install as managed", "installationSourceLabel": "App type", "installerTypeInfoBalloon": "The installer type of the application package.", "installerTypeLabel": "Installer Type", "isFeatured": "Show this as a featured app in the Company Portal", "isMAMEnabledToggleLabel": "Yes", "lastModifiedDateTime": "Last updated Time", "ldapUrl": "LDAP URL", "licensingType": "Supports device context assignment", "microsoft": "Microsoft", "minimumOperationSystem": "Minimum operating system", "modernAuth": "Modern authentication", "nameHint": "Enter a name", "nameLabel": "Name", "nameSizeHint": "The maximum length of the name is 512 characters.", "notConfigured": "Not configured", "notesLabel": "Notes", "notesSizeHint": "The maximum length of the notes text is 1024 characters.", "notificationType": "Notification type", "oneDay": "One Day", "oneMonth": "One Month", "oneWeek": "One Week", "outlookSMimeSettings": "Outlook S/MIME settings", "ownerLabel": "Owner", "ownerSizeHint": "The maximum length of the owner name is 256 characters.", "packageIdLabel": "Package Identifier", "packageNameLabel": "Package name", "pivCredentialNotConfigured": "You haven't selected a derived credential issuer for your tenant. You'll need to configure one before you can successfully apply this policy to devices.", "platformLabel": "Platform", "policyDescriptionLabel": "Description", "policyNameLabel": "Name", "preComposedIconEnabled": "Precomposed", "primarySMTPAddress": "Primary SMTP Address", "privacyUrlLabel": "Privacy URL", "publisherHint": "Enter a publisher name", "publisherLabel": "Publisher", "publisherSizeHint": "The length of the publisher name should be between 2 and 1024 characters (inclusive)", "require": "Require", "requireBiometrics": "Require Biometrics to access app", "sAMAccountName": "sAMAccountName", "scopeTagsRequired": "At least one scope tag is required", "searchAppLabel": "Select app", "searchAppLinkText": "Search the App Store", "searchWinGetPublicRepositoryLinkText": "Search the Windows Package Manager Community Repository", "searchWinGetStoreRepositoryLinkText": "Search the Microsoft Store app (new)", "selectAAD": "Select a Microsoft Entra attribute", "selectAppFileLabel": "Select file", "selectAppFileLinkText": "Select app package file", "selectAppFileToUpdateLabel": "Select file to update", "selectAuthMethod": "Select an authentication method", "selectAuthType": "Select an authentication type", "selectCatalogAppLabel": "Select app", "selectCatalogAppLinkText": "Search the Enterprise App Catalog", "selectCertificate": "Select a certificate", "signAllEmails": "Sign all emails", "signingCertificates": "Signing certificates", "ssl": "SSL", "suiteDescriptionLabel": "Suite Description", "suiteNameLabel": "Suite Name", "targetApplicationBundleIdentifier": "Target application bundle identifier", "targetedPlatformsLabel": "Targeted platform", "tasks": "Tasks", "threeDays": "Three Days", "totalLicenseCount": "Total licenses", "twoWeeks": "Two Weeks", "unifiedAssignmentsLabel": "Assign to:", "unlimited": "Unlimited", "urlHint": "Enter a valid url", "useManagedBrowserHint": "Android and iOS only. Learn more", "useManagedBrowserLabel": "Require a managed browser to open this link", "userPrinicipalName": "User Principal Name", "username": "Username", "usernameAttribute": "Username attribute from Microsoft Entra ID", "usernameAttributreInfoBalloon": "Specify the User Principal Name for the email profile that will be used to authenticate the account", "usernamePassword": "Username and password", "webAppUrlHint": "Enter a valid url beginning with http:// or https://", "webAppUrlLabel": "App URL", "webAppUrlSizeHint": "The maximum length of the app url is 1024 characters", "windowsUrlValidation": "Enter a valid URL similar to https://www.microsoft.com/store/p/lync/9wzdncrfhvhm", "xMLDataEntered": "XML Data Entered", "xmlFormatInvalid": "XML policy format is invalid.", "xmlTooLarge": "Input size must be less than 1 MB." }, "CoManagementAuthority": { "Confirmation": { "deleteMessage": "Affected users will be restricted by the next highest priority co-management authority page assigned or the default co-management authority page, if no other co-management authority page is assigned.", "deleteTitle": "{0} is the display name of a configured Co-management authority policy" }, "Grid": { "description": "The co-management authority page appears during initial device setup and during first user sign in. If enabled, users can see the configuration progress of assigned apps and profiles targeted to their device.", "hyperlink": "https://go.microsoft.com/fwlink/?linkid=86016", "label": "Co-management authority" }, "Header": { "description": "The co-management authority page appears during initial device setup and during first user sign in. If enabled, users can see the configuration progress of assigned apps and profiles targeted to their device." }, "Main": { "title": "Co-management Authority" }, "MessageSaved": { "body": "Co-management authority policy created." }, "Notification": { "createError": "An error occurred while creating Co-management authority policy \"{0}\"", "created": "This Co-management authority policy has not been assigned to any users.", "creating": "Creating Co-management authority policy", "creatingMessage": "Creating {0} Co-management authority policy", "deleteError": "An error occurred while deleting Co-management authority policy", "deleted": "Co-management authority policy deleted.", "deletedMessage": "{0} Co-management authority policy is deleted.", "deleting": "Deleting Co-management Authority policy", "deletingMessage": "Deleting {0} Co-management Authority policy", "fetchError": "An error occurred while displaying Co-management authority policies", "saved": "Co-management Authority saved.", "savedMessage": "{0} Co-management Authority policy successfully saved.", "saving": "Saving Co-management authority", "savingMessage": "Saving {0} Co-management authority policy" }, "Priority": { "saveError": "An error occurred while saving Co-management authority priorities", "saved": "Co-management authority priorities were successfully saved." }, "ReloadNotification": { "description": "Reload the Co-management authority policy to try again.", "title": "Reload the Co-management authority blade" }, "advancedProperty": "Advanced", "commandLineArgs": "Client installation command line arguments.", "deviceGroupOnlyMessage": "Co-management authority page profiles can only be assigned to user groups. The devices assigned won't display the co-management authority page.", "enterArgument": "Enter argument", "installAgent": "Automatically install Configuration Manager agent.", "managedDeviceOwnership": "Override co-management policy and use Intune for all workloads.", "noAssignmentMessage": "Assign Co-management authority policy to at least one group. Click Properties.", "pageDescription": "Co-management authority profiles", "pageSetting": "Co-management authority Setting", "pageTitle": "Co-management authority", "settingDescription": "The co-management settings determine who owns the workloads." }, "AzureIAMCommon": { "Recommended": "Recommended", "CountryNames": { "countryNameNR": "Nauru", "countryNameBH": "Bahrain", "countryNameZA": "South Africa", "countryNameJO": "Jordan", "countryNameSD": "Sudan", "countryNameNU": "Niue", "countryNameCZ": "Czech Republic", "countryNameLT": "Lithuania", "countryNameTK": "Tokelau", "countryNameEC": "Ecuador", "countryNameVU": "Vanuatu", "countryNameUG": "Uganda", "countryNameLI": "Liechtenstein", "countryNameHK": "Hong Kong SAR", "countryNameGH": "Ghana", "countryNameSA": "Saudi Arabia", "countryNamePG": "Papua New Guinea", "countryNameBW": "Botswana", "countryNameDG": "Diego Garcia", "countryNameIN": "India", "countryNameHN": "Honduras", "countryNameRO": "Romania", "countryNameKZ": "Kazakhstan", "countryNameLC": "Saint Lucia", "countryNameGE": "Georgia", "countryNameTT": "Trinidad and Tobago", "countryNameMP": "Northern Mariana Islands", "countryNameMV": "Maldives", "countryNameFI": "Finland", "countryNameNO": "Norway", "countryNameEE": "Estonia", "countryNameVE": "Venezuela", "countryNameUZ": "Uzbekistan", "countryNameME": "Montenegro", "countryNameTJ": "Tajikistan", "countryNameAW": "Aruba", "countryNameFR": "France", "countryNameOM": "Oman", "countryNameAO": "Angola", "countryNameIT": "Italy", "countryNameAZ": "Azerbaijan", "countryNameKG": "Kyrgyzstan", "countryNameWF": "Wallis and Futuna", "countryNameTL": "Timor-Leste", "countryNameFK": "Falkland Islands (Islas Malvinas)", "countryNameGY": "Guyana", "countryNameSS": "South Sudan", "countryNameMM": "Myanmar", "countryNameHT": "Haiti", "countryNameSY": "Syria", "countryNameMD": "Moldova", "countryNameVC": "Saint Vincent and the Grenadines", "countryNameID": "Indonesia", "countryNameRE": "Reunion", "countryNameER": "Eritrea", "countryNameMK": "North Macedonia", "countryNameTG": "Togo", "countryNamePF": "French Polynesia", "countryNameKY": "Cayman Islands", "countryNameIO": "British Indian Ocean Territory", "countryNameRU": "Russia", "countryNameMA": "Morocco", "countryNameAU": "Australia", "countryNameBO": "Bolivia", "countryNameVA": "Holy See (Vatican City State)", "countryNameVG": "Virgin Islands, British", "countryNameFM": "Micronesia", "countryNameAQ": "Antarctica", "countryNameZM": "Zambia", "countryNameBR": "Brazil", "countryNameIS": "Iceland", "countryNamePE": "Peru", "countryNameBG": "Bulgaria", "countryNamePR": "Puerto Rico", "countryNameGI": "Gibraltar", "countryNameBS": "Bahamas, The", "countryNameJE": "Jersey", "countryNameMO": "Macao SAR", "countryNameRW": "Rwanda", "countryNameAS": "American Samoa", "countryNameBQ": "Bonaire, Sint Eustatius, and Saba", "countryNameMF": "Saint Martin", "countryNameTM": "Turkmenistan", "countryNameML": "Mali", "countryNameTO": "Tonga", "countryNameNC": "New Caledonia", "countryNameAC": "Ascension Island", "countryNameBN": "Brunei", "countryNameBD": "Bangladesh", "countryNameMW": "Malawi", "countryNameGM": "Gambia", "countryNameGA": "Gabon", "countryNameCA": "Canada", "countryNameSH": "Saint Helena", "countryNameYT": "Mayotte", "countryNameMN": "Mongolia", "countryNamePA": "Panama", "countryNameCM": "Cameroon", "countryNameNE": "Niger", "countryNameCW": "Curaçao", "countryNameJP": "Japan", "countryNameCY": "Cyprus", "countryNameCD": "Democratic Republic of Congo", "countryNameTN": "Tunisia", "countryNameTR": "Türkiye", "countryNameWS": "Samoa", "countryNameSE": "Sweden", "countryNameXK": "Kosovo", "countryNameKH": "Cambodia", "countryNamePL": "Poland", "countryNameDZ": "Algeria", "countryNameLR": "Liberia", "countryNameSO": "Somalia", "countryNameDM": "Dominica", "countryNameEG": "Egypt", "countryNameGF": "French Guiana", "countryNameNZ": "New Zealand", "countryNamePS": "Palestinian Authority", "countryNameIL": "Israel", "countryNameSL": "Sierra Leone", "countryNameGR": "Greece", "countryNameNG": "Nigeria", "countryNameMR": "Mauritania", "countryNameVI": "Virgin Islands, U.S.", "countryNameGQ": "Equatorial Guinea", "countryNameMX": "Mexico", "countryNameDJ": "Djibouti", "countryNameGN": "Guinea", "countryNameCN": "China", "countryNameMZ": "Mozambique", "countryNameBV": "Bouvet Island", "countryNameNF": "Norfolk Island", "countryNameTZ": "Tanzania", "countryNameAI": "Anguilla", "countryNameGS": "South Georgia and the South Sandwich Islands", "countryNameRS": "Serbia", "countryNameCC": "Cocos (Keeling) Islands", "countryNameNA": "Namibia", "countryNameDE": "Germany", "countryNameCG": "Republic of Congo", "countryNameKW": "Kuwait", "countryNameMH": "Marshall Islands", "countryNameVN": "Vietnam", "countryNameBY": "Belarus", "countryNameMY": "Malaysia", "countryNameST": "São Tomé and Príncipe", "countryNameLS": "Lesotho", "countryNameBI": "Burundi", "countryNameTD": "Chad", "countryNameCX": "Christmas Island", "countryNameIR": "Iran", "countryNameTV": "Tuvalu", "countryNameGW": "Guinea-Bissau", "countryNameUA": "Ukraine", "countryNameCU": "Cuba", "countryNameCO": "Colombia", "countryNameNI": "Nicaragua", "countryNameHR": "Croatia", "countryNameSC": "Seychelles", "countryNameNL": "Netherlands", "countryNameUM": "US Minor Outlying Islands", "countryNameIM": "Isle of Man", "countryNameFJ": "Fiji", "countryNameSR": "Suriname", "countryNameGT": "Guatemala", "countryNameSM": "San Marino", "countryNameLA": "Laos", "countryNameGB": "United Kingdom", "countryNameBB": "Barbados", "countryNameSI": "Slovenia", "countryNameAM": "Armenia", "countryNameAR": "Argentina", "countryNamePM": "Saint Pierre and Miquelon", "countryNameTF": "French Southern and Antarctic Lands", "countryNameDO": "Dominican Republic", "countryNameZW": "Zimbabwe", "countryNameMQ": "Martinique", "countryNamePT": "Portugal", "countryNameCF": "Central African Republic", "countryNameBE": "Belgium", "countryNameKM": "Comoros", "countryNameLY": "Libya", "countryNameIE": "Ireland", "countryNameKP": "North Korea", "countryNameGG": "Guernsey", "countryNameSK": "Slovakia", "countryNameTC": "Turks and Caicos Islands", "countryNameNP": "Nepal", "countryNameBF": "Burkina Faso", "countryNameYE": "Yemen", "countryNameBA": "Bosnia and Herzegovina", "countryNameGP": "Guadeloupe", "countryNameMS": "Montserrat", "countryNameCL": "Chile", "countryNameIQ": "Iraq", "countryNameSJ": "Svalbard and Jan Mayen Island", "countryNameAX": "Åland Islands", "countryNameKE": "Kenya", "countryNameGU": "Guam", "countryNameBM": "Bermuda", "countryNameFO": "Faroe Islands", "countryNameBL": "Saint Barthélemy", "countryNameLB": "Lebanon", "countryNameJM": "Jamaica", "countryNameAF": "Afghanistan", "countryNameES": "Spain", "countryNameMC": "Monaco", "countryNameSG": "Singapore", "countryNameAL": "Albania", "countryNameSN": "Senegal", "countryNameSZ": "Eswatini", "countryNameBZ": "Belize", "countryNameCI": "Côte d’Ivoire", "countryNameTW": "Taiwan", "countryNameUY": "Uruguay", "countryNameCK": "Cook Islands", "countryNameTH": "Thailand", "countryNameHM": "Heard Island and McDonald Islands", "countryNameGD": "Grenada", "countryNameUS": "United States", "countryNameAT": "Austria", "countryNameKR": "Korea, Republic of", "countryNamePK": "Pakistan", "countryNameDK": "Denmark", "countryNameSV": "El Salvador", "countryNamePW": "Palau", "countryNameET": "Ethiopia", "countryNameMG": "Madagascar", "countryNameCR": "Costa Rica", "countryNameLU": "Luxembourg", "countryNameQA": "Qatar", "countryNameBT": "Bhutan", "countryNameSB": "Solomon Islands", "countryNameAE": "United Arab Emirates", "countryNameAD": "Andorra", "countryNameCV": "Cabo Verde", "countryNameAG": "Antigua and Barbuda", "countryNameMU": "Mauritius", "countryNameHU": "Hungary", "countryNameSX": "Sint Maarten", "countryNameCH": "Switzerland", "countryNamePN": "Pitcairn Islands", "countryNameGL": "Greenland", "countryNamePH": "Philippines", "countryNameMT": "Malta", "countryNameKN": "Saint Kitts and Nevis", "countryNameLK": "Sri Lanka", "countryNameKI": "Kiribati", "countryNameBJ": "Benin", "countryNameLV": "Latvia", "countryNamePY": "Paraguay" } }, "PolicySelection": { "Grid": { "Column": { "author": "Author", "template": "Template name" }, "Row": { "ariaLabel": "row {0} of {1} column {2}" } }, "InventoryCatalog": { "subtitle": "Start from scratch and select the properties you want from the library of available inventory properties" }, "SettingsCatalog": { "subtitle": "Start from scratch and select settings you want from the library of available settings", "title": "Settings catalog" }, "SettingsCatalogReact": { "title": "Settings catalog (React, internal)" }, "Templates": { "subtitle": "Templates contain groups of settings, organized by functionality. Use a template when you don't want to build policies manually or want to configure devices to access corporate networks, such as configuring WiFi or VPN.", "title": "Templates" }, "noData": "No policy templates found" }, "PolicyType": { "EdgeSmartScreenSettings": { "description": "Microsoft Edge app recommended SmartScreen settings: Windows 10 in cloud configuration template. https://aka.ms/CloudConfigGuide" }, "EndpointDetectionandResponse": { "mDE": "Endpoint detection and response" }, "EndpointSecurityTemplate": { "aSRAppBrowserSecurity": "App and browser isolation", "aSRApplicationControl": "Application control", "aSRAttackSurfaceReduction": "Attack surface reduction rules", "aSRDeviceControl": "Device control", "aSRExploitProtection": "Exploit protection", "aSRWebProtection": "Web protection (Microsoft Edge Legacy)", "aVExclusions": "Microsoft Defender Antivirus exclusions", "antivirus": "Microsoft Defender Antivirus", "cloudPC": "Windows 365 Security Baseline", "default": "Endpoint Security", "defenderTest": "Microsoft Defender for Endpoint demo", "diskEncryption": "BitLocker", "eDR": "Endpoint detection and response", "edgeSecurityBaseline": "Microsoft Edge baseline", "edgeSecurityBaselinePreview": "Preview: Microsoft Edge baseline", "editionUpgradeConfiguration": "Edition upgrade and mode switch", "firewall": "Windows Firewall", "firewallRules": "Windows Firewall rules", "identityProtection": "Account protection", "identityProtectionPreview": "Account protection (preview)", "mDMSecurityBaseline1810": "MDM Security Baseline for Windows 10 and later for October 2018", "mDMSecurityBaseline1810Preview": "Preview: MDM Security Baseline for Windows 10 and later for October 2018", "mDMSecurityBaseline1810PreviewBeta": "Preview: MDM Security Baseline for Windows 10 for October 2018 (beta)", "mDMSecurityBaseline1906": "MDM Security Baseline for Windows 10 and later for May 2019", "mDMSecurityBaseline2004": "MDM Security Baseline for Windows 10 and later for August 2020", "mDMSecurityBaseline2101": "MDM Security Baseline for Windows 10 and later December 2020", "macOSAntivirus": "Antivirus", "macOSDiskEncryption": "FileVault", "macOSFirewall": "macOS firewall", "microsoftDefenderBaseline": "Microsoft Defender for Endpoint baseline", "office365Baseline": "Microsoft Office O365 baseline", "office365BaselinePreview": "Preview: Microsoft Office O365 baseline", "test": "Test Template", "testFirewallRulesSecurityTemplateName": "Windows Firewall rules (Test)", "testIdentityProtectionSecurityTemplateName": "Account protection (Test)", "windowsSecurityExperience": "Windows Security experience" }, "FileVault": { "macOS": "MacOS Filevault" }, "Firewall": { "mDE": "Windows Firewall" }, "FirewallRules": { "mDE": "Windows Firewall Rules" }, "IOS": { "pSSO": "Platform SSO" }, "MacOS": { "pSSO": "Platform SSO" }, "OneDriveKnownFolderMove": { "description": "OneDrive Known Folder Move settings: Windows 10 in cloud configuration template. https://aka.ms/CloudConfigGuide" }, "accountProtection": "Account Protection", "administrativeTemplates": "Administrative Templates", "androidCompliancePolicy": "Android compliance policy", "androidForWorkMigrationPolicy": "New Implementation", "aospDeviceOwnerCompliancePolicy": "Android (AOSP) compliance policy", "applicationControl": "App Control for Business", "attackSurfaceReductionRules": "Attack Surface Reduction Rules", "bitlocker": "BitLocker", "custom": "Custom", "deliveryOptimization": "Delivery Optimization", "derivedPersonalIdentityVerificationCredential": "Derived credential", "deviceControl": "Device Control", "deviceFeatures": "Device features", "deviceFirmwareConfigurationInterface": "Device Firmware Configuration Interface", "deviceLock": "Device Lock", "deviceOwner": "Fully managed, dedicated, and corporate-owned work profile", "deviceRestrictions": "Device restrictions", "deviceRestrictionsWindows10Team": "Device restrictions (Windows 10 Team)", "domainJoinPreview": "Domain Join", "editionUpgradeAndModeSwitch": "Edition upgrade and mode switch", "education": "Education", "email": "Email", "emailSamsungKnoxOnly": "Email (Samsung KNOX only)", "endpointProtection": "Endpoint protection", "expeditedCheckin": "Mobile device management configuration", "exploitProtection": "Exploit Protection", "extensions": "Extensions", "hardwareConfigurations": "BIOS Configurations and other settings", "identityProtection": "Identity protection", "iosCompliancePolicy": "iOS compliance policy", "kiosk": "Kiosk", "localUsersAndGroups": "Local user group membership", "macCompliancePolicy": "Mac compliance policy", "microsoft365AppsForEnterpriseSecurityBaseline": "Microsoft 365 Apps for Enterprise Security Baseline", "microsoftDefenderAntivirus": "Microsoft Defender Antivirus", "microsoftDefenderAntivirusexclusions": "Microsoft Defender Antivirus exclusions", "microsoftDefenderAtpWindows10Desktop": "Microsoft Defender for Endpoint (desktop devices running Windows 10 or later)", "microsoftDefenderFirewallRules": "Windows Firewall Rules", "microsoftDefenderforEndpointSecurityBaseline": "Microsoft Defender for Endpoint Security Baseline", "microsoftEdgeBaseline": "Security Baseline for Microsoft Edge", "mxProfileZebraOnly": "MX profile (Zebra only)", "networkBoundary": "Network boundary", "oemConfig": "OEMConfig", "overrideGroupPolicy": "Override Group Policy", "pkcsCertificate": "PKCS certificate", "pkcsImportedCertificate": "PKCS imported certificate", "preferenceFile": "Preference file", "presets": "Presets", "scepCertificate": "SCEP certificate", "secureAssessmentEducation": "Secure assessment (Education)", "securityBaselineForHololens2Advanced": "Advanced Security Baseline for HoloLens 2", "securityBaselineForHololens2Standard": "Standard Security Baseline for HoloLens 2", "securityBaselineForMicrosoftEdge": "Security Baseline for Microsoft Edge", "settingsCatalog": "Settings Catalog", "sharedMultiUserDevice": "Shared multi-user device", "softwareUpdates": "Software Updates", "trustedCertificate": "Trusted certificate", "unknown": "Unknown", "unsupported": "Unsupported", "vpn": "VPN", "wallpaper": "Wallpaper", "wiFi": "Wi-Fi", "wiFiImport": "Wi-Fi import", "windows10CompliancePolicy": "Windows 10/11 compliance policy", "windows10MobileCompliancePolicy": "Windows 10 mobile compliance policy", "windows10XScep": "SCEP certificate - TEST", "windows10XTrustedCertificate": "Trusted certificate - TEST", "windows10XVPN": "VPN - TEST", "windows10XWifi": "WIFI - TEST", "windows11SecurityBaseline": "Security Baseline for Windows 10 and later", "windows365SecurityBaseline": "Windows 365 Security Baseline", "windows8CompliancePolicy": "Windows 8 compliance policy", "windowsHealthMonitoring": "Windows health monitoring", "windowsInformationProtection": "Windows Information Protection", "windowsPhoneCompliancePolicy": "Windows Phone compliance policy", "windowsUpdateforBusiness": "Windows Update for Business", "wiredNetwork": "Wired network", "workProfile": "Personally-owned work profile" }, "WindowsUpdateRolloutOptions": { "gradualRollout": "Make update available gradually", "immediateStart": "Make update available as soon as possible", "startDateOnly": "Make update available on a specific date" }, "AndroidForWorkAppPermissions": { "Action": { "autoDeny": "Auto deny", "autoGrant": "Auto grant", "prompt": "Prompt" }, "Permissions": { "accessBackgroundLocation": "Location access (background)", "accessCoarseLocation": "Location access (coarse)", "accessFineLocation": "Location access (fine)", "addVoicemail": "Add voicemail", "bluetoothConnect": "Bluetooth connect", "bodySensors": "Allow body sensor data", "bodySensorsBackground": "Allow background body sensor data", "callPhone": "Make phone calls", "camera": "Camera", "getAccounts": "Get accounts", "nearbyDevices": "Nearby Devices", "nearbyWifiDevices": "Nearby Wifi Devices", "postNotifications": "Post notifications", "processOutgoingCalls": "Process outgoing calls", "readCalendar": "Calendar (read)", "readCallLog": "Call log (read)", "readContacts": "Contacts (read)", "readExternalStorage": "External storage (read)", "readMediaAudio": "Media Audio (read)", "readMediaImages": "Media Images (read)", "readMediaVideo": "Media Video (read)", "readPhoneState": "Phone state (read)", "readSMS": "SMS (read)", "receiveMMS": "MMS (receive)", "receiveSMS": "SMS (receive)", "receiveWAPPush": "WAP push messages (receive)", "recordAudio": "Record audio", "sendSMS": "SMS (send)", "useSIP": "Use SIP service", "writeCalendar": "Calendar (write)", "writeCallLog": "Call log (write)", "writeContacts": "Contacts (write)", "writeExternalStorage": "External storage (write)" }, "RemoveDialog": { "description": "Are you sure you want to remove the permission?", "title": "Remove" }, "TableHeader": { "permission": "Permission", "permissionGroup": "Permission group", "permissionName": "Permission name", "permissionState": "Permission state" }, "addButtonLabel": "+Add", "addPermissionTableDescription": "Specify permissions you want to override. If they are not chosen/specified explicitly, then the default behavior will apply.", "addPermissionsTitle": "Add permissions", "learnMoreLink": "https://go.microsoft.com/fwlink/?linkid=850320", "learnMoreText": "Learn more about Android runtime permissions", "permissionTableDescription": "Permissions granted here will override the “Default app permissions” policy for the selected apps.", "permissionsTitle": "Permissions" }, "AssignmentAction": { "exclude": "Excluded", "include": "Included", "includeAllDevicesVirtualGroup": "Included", "includeAllUsersVirtualGroup": "Included" }, "OfficeApplicationType": { "access": "Access", "bing": "Microsoft Search as default", "excel": "Excel", "groove": "OneDrive (Groove)", "lync": "Skype for Business", "oneDrive": "OneDrive Desktop", "oneNote": "OneNote", "outlook": "Outlook", "powerPoint": "PowerPoint", "publisher": "Publisher", "teams": "Teams", "word": "Word" }, "Win32Requirements": { "AdditionalRequirements": { "File": { "fileOrFolderToolTip": "The file or folder as the selected requirement.", "pathToolTip": "The complete path of the file or folder to detect.", "property": "Property", "valueToolTip": "Select a requirement value that matches the selected detection method. Date and time requirement should be entered in your local format." }, "GridColumns": { "pathOrScript": "Path/Script", "type": "Type" }, "Registry": { "keyPath": "Key path", "keyPathTooltip": "The full path of the registry entry containing the value as a requirement.", "operator": "Operator", "operatorTooltip": "Select the operator for the comparison.", "registryRequirement": "Registry key requirement", "registryRequirementTooltip": "Select the registry key requirement comparison.", "valueName": "Value name", "valueNameTooltip": "The name of the required registry value." }, "RequirementTypeOptions": { "fileType": "File", "registry": "Registry", "script": "Script" }, "Script": { "RequirementMethodOptions": { "boolean": "Boolean", "dateTime": "Date and Time", "float": "Floating Point", "integer": "Integer", "string": "String", "version": "Version" }, "duplicateName": "Script name {0} has already been used. Please enter a different name.", "enforceSignatureCheck": "Enforce script signature check", "enforceSignatureCheckTooltip": "Select ‘Yes’ to verify that the script is signed by a trusted publisher, which will allow the script to run without warnings or prompts. The script will run unblocked. Select ‘No’ (default) to run the script with end-user confirmation, but without signature verification.", "loggedOnCredentials": "Run this script using the logged on credentials", "loggedOnCredentialsTooltip": "Run script using the signed in device credentials.", "operatorTooltip": "Select the operator for the requirement comparison.", "requirementMethod": "Select output data type", "requirementMethodTooltip": "Select the data type used when determining a detection match requirement.", "scriptContent": "Script content", "scriptFile": "Script file", "scriptFileTooltip": "Select a PowerShell script that will detect the presence of the app on the client. If the app is detected, the requirement process will provide a 0 value exit code and will write a string value to STDOUT.", "scriptName": "Script name", "value": "Value", "valueTooltip": "Select a requirement value that matches the selected detection method. Date and time requirement should be entered in your local format." }, "bladeTitle": "Add a Requirement rule", "createRequirementHeader": "Create a requirement.", "header": "Configure additional requirement rules", "label": "Additional requirement rules", "noRequirementsSelectedPlaceholder": "No requirements are specified.", "requirementType": "Requirement type", "requirementTypeTooltip": "Choose the type of detection method used to determine how a requirement is validated." }, "allowedArchitectures": "Check operating system architecture", "allowedArchitecturesNoRadioButton": "No. Allow this app to be installed on all systems.", "allowedArchitecturesTooltip": "Select 'Yes' to specify the systems the app can be installed on. Select 'No' (default) to allow this app to be installed on all systems.", "allowedArchitecturesYesRadioButton": "Yes. Specify the systems the app can be installed on.", "architectures": "Operating system architecture", "architecturesTooltip": "Choose the architectures needed to install the app.", "bladeTitle": "Requirements", "diskSpace": "Disk space required (MB)", "diskSpaceTooltip": "Free disk space needed on the system drive to install the app.", "header": "Specify the requirements that devices must meet before the app is installed:", "maximumTextFieldValue": "The value must be at most {0}.", "minimumCpuSpeed": "Minimum CPU speed required (MHz)", "minimumCpuSpeedTooltip": "The minimum CPU speed required to install the app.", "minimumLogicalProcessors": "Minimum number of logical processors required", "minimumLogicalProcessorsTooltip": "The minimum number of logical processors required to install the app.", "minimumOperatingSystem": "Minimum operating system", "minimumOperatingSystemTooltip": "Select the minimum operating system needed to install the app.", "minumumTextFieldValue": "The value must be at least {0}.", "physicalMemory": "Physical memory required (MB)", "physicalMemoryTooltip": "Physical memory (RAM) required to install the app.", "selectorLabel": "Requirements", "validNumber": "Please enter a valid number." }, "AppResources": { "AppSettingsUx": { "assignmentFilterColumnHeader": "Filter", "assignmentFilterTypeColumnHeader": "Filter mode", "assignmentToast": "End user notifications", "assignmentTypeTableHeader": "ASSIGNMENT TYPE", "autoUpdate": "Auto-update", "deadlineTimeColumnLabel": "Installation deadline", "deliveryOptimizationPriorityHeader": "Delivery optimization priority", "groupTableHeader": "Group", "installContextLabel": "Install Context", "isRemovable": "Install as removable", "licenseTypeLabel": "License type", "modeTableHeader": "Group mode", "policySet": "Policy Set", "preventAutoAppUpdate": "Prevent automatic app updates", "preventManagedAppBackup": "Prevent iCloud app backup", "restartGracePeriodHeader": "Restart grace period", "startTimeColumnLabel": "Availability", "tracks": "Tracks", "uninstallOnRemoval": "Uninstall on device removal", "updateMode": "Update Priority", "vPN": "VPN" }, "AppType": { "aADWebApp": "AAD web app", "androidEnterpriseSystemApp": "Android Enterprise system app", "androidForWorkApp": "Managed Google Play store app", "androidLobApp": "Android line-of-business app", "androidStoreApp": "Android store app", "builtInAndroid": "Built-In Android app", "builtInApp": "Built-In app", "builtInIos": "Built-In iOS app", "iosIPadOSWebClip": "iOS/iPadOS web clip", "iosLobApp": "iOS line-of-business app", "iosStoreApp": "iOS store app", "iosVppApp": "iOS volume purchase program app", "lineOfBusinessApp": "Line-of-business app", "macOSDmgApp": "macOS app (DMG)", "macOSEdgeApp": "Microsoft Edge (macOS)", "macOSLobApp": "macOS line-of-business app", "macOSMicrosoftDefenderApp": "Microsoft Defender ATP (macOS)", "macOSOfficeSuiteApp": "macOS Office Suite", "macOSPkgApp": "macOS app (PKG)", "macOSWebClip": "macOS web clip", "macOsVppApp": "macOS volume purchase program app", "managedAndroidLobApp": "Managed Android line-of-business app", "managedAndroidStoreApp": "Managed Android store app", "managedGooglePlayApp": "Managed Google Play store app", "managedGooglePlayPrivateApp": "Managed Google Play private app", "managedGooglePlayWebApp": "Managed Google Play web link", "managedIosLobApp": "Managed iOS line-of-business app", "managedIosStoreApp": "Managed iOS store app", "microsoftStoreForBusinessApp": "Microsoft Store for Business app", "microsoftStoreForBusinessReleaseManagedApp": "Microsoft Store for Business", "officeAddIn": "Office add-in", "officeSuiteApp": "Microsoft 365 Apps (Windows 10 and later)", "sharePointApp": "SharePoint app", "teamsApp": "Teams app", "webApp": "Web link", "win32CatalogApp": "Windows catalog app (Win32)", "winGetPublicApp": "Windows Package Manager Community Repository", "winGetStoreApp": "Microsoft Store app (new)", "windowsAppXLobApp": "Windows AppX line-of-business app", "windowsClassicApp": "Windows app (Win32)", "windowsEdgeApp": "Microsoft Edge (Windows 10 and later)", "windowsMobileMsiLobApp": "Windows MSI line-of-business app", "windowsPhone81AppXBundleLobApp": "Windows Phone 8.1 AppX line-of-business app", "windowsPhone81AppXLobApp": "Windows Phone 8.1 AppX line-of-business app", "windowsPhone81StoreApp": "Windows Phone 8.1 store app", "windowsPhoneXapLobApp": "Windows Phone XAP line-of-business app", "windowsStoreApp": "Microsoft Store app (legacy)", "windowsUniversalAppXLobApp": "Windows Universal AppX line-of-business app", "windowsUniversalLobApp": "Windows Universal line-of-business app", "windowsWebApp": "Windows web link" }, "AppTypePlatform": { "android": "Android", "ios": "iOS", "macOs": "macOS", "web": "Web", "windows": "Windows" }, "AssignmentAction": { "exclude": "Excluded", "include": "Included", "includeAllDevicesVirtualGroup": "Included", "includeAllUsersVirtualGroup": "Included" }, "AssignmentToast": { "hideAll": "Hide all toast notifications", "showAll": "Show all toast notifications", "showReboot": "Show toast notifications for computer restarts" }, "AutoUpdateSupersededApps": { "enabled": "Yes", "notConfigured": "No" }, "DeliveryOptimizationPriority": { "backgroundNormal": "Background", "displayText": "Content download in {0}", "foreground": "Foreground", "header": "Delivery optimization priority" }, "DeviceRestartBehaviorOptions": { "allow": "App install may force a device restart", "basedOnReturnCode": "Determine behavior based on return codes", "force": "Intune will force a mandatory device restart", "suppress": "No specific action" }, "FilterType": { "exclude": "Exclude", "include": "Include", "none": "None" }, "InstallIntent": { "available": "Available for enrolled devices", "availableWithoutEnrollment": "Available with or without enrollment", "notApplicable": "Not applicable", "required": "Required", "uninstall": "Uninstall" }, "SettingType": { "assignmentType": "Assignment type", "deviceLicensing": "License type", "installContext": "Uninstall on device removal", "toastSettings": "End user notifications", "vpnConfiguration": "VPN" }, "UpdateMode": { "default": "Default", "postponed": "Postponed", "priority": "High Priority" } }, "Win32ReturnCodes": { "CodeTypes": { "failed": "Failed", "hardReboot": "Hard reboot", "retry": "Retry", "softReboot": "Soft reboot", "success": "Success" }, "Columns": { "codeType": "Code type", "returnCode": "Return code" }, "bladeTitle": "Return codes", "gridAriaLabel": "Return codes", "header": "Specify return codes to indicate post-installation behavior:", "onAddAnnounceMessage": "Return code added item {0} of {1}", "onDeleteSuccess": "Return code {0} deleted successfully", "returnCodeAlreadyUsedValidation": "Return code is already used.", "returnCodeMustBeIntegerValidation": "Return code should be an integer.", "returnCodeShouldBeAtLeast": "Return code should be at least {0}.", "returnCodeShouldBeAtMost": "Return code should be at most {0}.", "selectorLabel": "Return codes" }, "ApplicableDeviceType": { "iPad": "iPad", "iPhoneAndIPod": "iPhone and iPod" }, "WipPolicySettings": { "addNetworkBoundary": "Add network boundary", "addNetworkBoundaryButton": "Add network boundary...", "allowWindowsSearch": "Allow Windows Search to search encrypted corporate data and Store apps", "authoritativeIpRanges": "Enterprise IP Ranges list is authoritative (do not auto-detect)", "authoritativeProxyServers": "Enterprise Proxy Servers list is authoritative (do not auto-detect)", "boundaryType": "Boundary type", "cloudResources": "Cloud resources", "corporateIdentity": "Corporate identity", "dataRecoveryCert": "Upload a Data Recovery Agent (DRA) certificate to allow recovery of encrypted data", "editNetworkBoundary": "Edit network boundary", "enrollmentState": "Enrollment state", "iPv4Ranges": "IPv4 ranges", "iPv6Ranges": "IPv6 ranges", "internalProxyServers": "Internal proxy servers", "maxInactivityTime": "Maximum amount of time (in minutes) allowed after the device is idle that will cause the device to become PIN or password locked", "maxPasswordAttempts": "Number of authentication failures allowed before the device will be wiped", "mdmDiscoveryUrl": "MDM discovery URL", "mdmRequiredSettingsInfo": "This policy only applies to Windows 10 Anniversary Edition and higher. This policy uses Windows Information Protection (WIP) to apply protection.", "minimumPinLength": "Set the minimum number of characters required for the PIN", "name": "Name", "networkBoundariesGridEmptyText": "Any network boundaries you add will show up here", "networkBoundary": "Network boundary", "networkDomainNames": "Network domains", "neutralResources": "Neutral resources", "passportForWork": "Use Windows Hello for Business as a method for signing into Windows", "pinExpiration": "Specify the period of time (in days) that a PIN can be used before the system requires the user to change it", "pinHistory": "Specify the number of past PINs that can be associated to a user account that can’t be reused", "pinLowercaseLetters": "Configure the use of lowercase letters in the Windows Hello for Business PIN", "pinSpecialCharacters": "Configure the use of special characters in the Windows Hello for Business PIN", "pinUppercaseLetters": "Configure the use of uppercase letters in the Windows Hello for Business PIN", "protectUnderLock": "Prevent corporate data from being accessed by apps when the device is locked. Applies only to Windows 10 Mobile", "protectedDomainNames": "Protected domains", "proxyServers": "Proxy servers", "requireAppPin": "Disable app PIN when device PIN is managed", "requiredSettings": "Required settings", "requiredSettingsInfo": "Changing the scope or removing this policy will decrypt corporate data.", "revokeOnMdmHandoff": "Revoke access to protected data when the device enrolls to MDM", "revokeOnUnenroll": "Revoke encryption keys on unenroll", "rmsTemplateForEdp": "Specify the template ID to use for Azure RMS", "showWipIcon": "Show the enterprise data protection icon", "type": "Type", "useRmsForWip": "Use Azure RMS for WIP", "value": "Value", "weRequiredSettingsInfo": "This policy only applies to Windows 10 Creators Update and higher. This policy uses Windows Information Protection (WIP) and Windows MAM to apply protection.", "wipProtectionMode": "Windows Information Protection mode", "withEnrollment": "With enrollment", "withoutEnrollment": "Without enrollment" }, "NotificationMessage": { "NotificationMessageTemplatesTab": { "arabic": "Arabic", "bulgarian": "Bulgarian", "chineseSimplified": "Chinese (Simplified)", "chineseTraditional": "Chinese (Traditional)", "croatian": "Croatian", "czech": "Czech", "danish": "Danish", "dutch": "Dutch", "englishUK": "English (United Kingdom)", "englishUS": "English (United States)", "estonian": "Estonian", "finnish": "Finnish", "frenchCanada": "French (Canada)", "frenchFrance": "French (France)", "german": "German", "greek": "Greek", "hebrew": "Hebrew", "hungarian": "Hungarian", "italian": "Italian", "japanese": "Japanese", "korean": "Korean", "latvian": "Latvian", "lithuanian": "Lithuanian", "norwegian": "Norwegian, Bokmål", "polish": "Polish", "portugueseBrazil": "Portuguese (Brazil)", "portuguesePortugal": "Portuguese (Portugal)", "romanian": "Romanian", "russian": "Russian", "serbian": "Serbian", "slovak": "Slovak", "slovenian": "Slovenian", "spanishMexico": "Spanish (Mexico)", "spanishSpain": "Spanish (Spain)", "swedish": "Swedish", "thai": "Thailand", "turkish": "Turkish", "ukrainian": "Ukrainian" }, "Summary": { "placeholder": "Select a notification message from the left to preview contents." }, "companyContact": "Show contact information", "companyLogo": "Show company logo", "companyName": "Show company name", "createEditDescription": "Create or edit notification message templates.", "createMessage": "Create message", "deviceDetails": "Show device details", "deviceDetailsInfoBox": "This setting is turned off by default, as retrieving device details can cause a delay in email notifications being received.", "editImpactInfo": "Editing this notification message template will affect all policies which are using this template.", "editMessage": "Edit message", "email": "email", "emailFooterTitle": "Email Footer", "emailHeaderFooterInfo": "Email header and footer settings for email notifications rely on Customization settings within the Tenant admin node in Intune.", "emailHeaderTitle": "Email Header", "emailInfoMoreLink": "https://go.microsoft.com/fwlink/?linkid=2200912", "emailInfoMoreText": "Configure Customization settings", "formSubTitle": "Create or modify notification emails", "headerFooterSettingsTab": "Header and footer settings", "imgPreview": "Image Preview", "infotext": "Select a notification messsage. To create a new notification, please visit Notification in the Manage section of the Set Device Compliance workload.", "iwLink": "Show company portal website link", "listEmpty": "No message templates.", "listEmptySelectOnly": "No message templates. To create a new notification, please visit Notifications in the Manage section of the Set Device Compliance workload.", "listSubTitle": "List of notification message templates", "listTitle": "Notification message templates", "localizedNotificationMessageTemplates": "Localized notification message templates", "messageAssigned": "Cannot delete this message template, because it is currently being used by one or more compliance policies.", "messageCapitalized": "Notification message template", "messageLowercase": "notification message template", "missingDefaultError": "Select a default template", "notificationMessageTemplates": "Notification message templates", "rowValidationError": "At least one message template is required", "selectDescription": "Select a notification message. To create a new notification, please visit Notifications in the Manage section of the Set Device Compliance workload.", "tenantValueText": "Tenant Value", "testEmailLabel": "Send preview email", "localeLabel": "Locale", "isDefaultLocale": "Is Default" }, "WindowsEnrollment": { "DevicePreparation": { "description": "Configure devices for initial provisioning.", "title": "Device preparation" }, "EnrollmentSettings": { "description": "Configure enrollment settings such as blocking enrollment and assign to users.", "title": "Enrollment settings" }, "OSConfiguration": { "menuDescription": "Configure settings that users can use to recover Windows from a bootable flash drive.", "menuTitle": "Windows operating system recovery configuration" }, "coManagementAuthorityDesc": "Configure co-management settings for Configuration Manager integration", "coManagementAuthorityTitle": "Co-management Settings ", "deploymentProfiles": "Windows Autopilot deployment profiles", "description": "Learn about the seven different ways a Windows 10/11 PC can be enrolled into Intune by users or admins.", "descriptionLabel": "Windows enrollment methods", "enrollmentStatusPage": "Enrollment Status Page" }, "AppInfoBalloonText": { "Certificate": { "customSubjectName": "CN={{UserName}},E={{EmailAddress}},OU=EnterpriseUsers,O=Contoso Corporation,L=Redmond,ST=WA,C=US\nor\nCN={{AAD_Device_ID}},E={{EmailAddress}},OU=EnterpriseUsers,O=Contoso Corporation,L=Redmond,ST=WA,C=US", "keySize": "Select the number of bits contained in the key.", "keyUsage": "Specify the cryptographic action that is required to exchange the certificate’s public key.", "renewalThreshold": "Enter the percentage (between 1 and 99 percent) of remaining certificate lifetime that is allowed before a device can request renewal of the certificate. The recommended amount in Intune is 20%. (1-99)", "rootCert": "Choose a previously configured and assigned root CA certificate profile. The CA certificate must match the root certificate of the CA that is issuing the certificate for this profile (the one you are currently configuring).", "scepServerUrl": "Enter a URL for the NDES Server that issues certificates through SCEP (Must be HTTPS). e.g. https://contoso.com/certsrv/mscep/mscep.dll", "scepServerUrls": "Add one or more URLs for the NDES Server that issues certificates through SCEP (Must be HTTPS). e.g. https://contoso.com/certsrv/mscep/mscep.dll", "subjectAlternativeName": "Subject alternative name", "subjectNameFormat": "Subject name format", "validityPeriod": "The amount of time remaining before the certificate expires. Enter a value that is equal to or lower than the validity period shown in the certificate template. Default is set at one year." }, "appInstallContext": "This specifies the install context to be associated with this app. For dual mode apps, select the desired context for this app. For all other apps, this is pre-selected based on the package and cannot be modified.", "autoUpdateMode": "Configure the update priority for the app. Select Default to require the device to be connected to WiFi, to be charging, and not to be actively in use before updating the app. Select High Priority to update the app as soon as the developer has published the app, regardless of charge status, WiFi capability, or end user activity on the device. Select Postponed to forgo app updates for up to 90 days. High priority and postponed will only take effect on DO devices.", "configurationSettingsFormat": "Configuration settings format text", "ignoreVersionDetection": "Set this to “Yes” for apps that are automatically updated by the app developer (such as Google Chrome).", "ignoreVersionDetectionMacOSLobApp": "Select \"Yes\" for apps that are automatically updated by app developer or to only check for app bundleID before installation. Select \"No\" to check for app bundleID and version number before installation.", "installAsManagedMacOSLobApp": "This setting only applies to macOS 11 and higher. The app will be installed but not managed on macOS 10.15 and lower.", "installContextDropdown": "Select the appropriate install context. User context will install the app only for the targeted user while device context will install the app for all users on the device.", "ldapUrl": "This is the LDAP hostname where clients can get the public encryption keys for email recipients. Emails will be encrypted when a key is available. Supported formats:
Enter the protocol for a single unmanaged browser. Web content (http/s) from policy managed applications will open in any app that supports this protocol.
\n\nNote: Include only the protocol prefix. If your browser requires links of the form \"mybrowser://www.microsoft.com\", enter \"mybrowser\".
" }, "CustomDialerAppDisplayName": { "label": "Dialer App Name" }, "CustomDialerAppPackageId": { "label": "Dialer App Package ID" }, "CustomDialerAppProtocol": { "label": "Dialer App URL Scheme" }, "Cutcopypaste": { "label": "Restrict cut, copy, and paste between other apps", "tooltip": "Cut, copy, and paste data between your app and other approved apps installed on the device. Choose to block these actions completely between apps, allow these actions for use with any app, or restrict use to apps that your organization manages.
\n\nPolicy-managed apps with paste in gives you the option to accept incoming content pasted from another app. However, it blocks users from sharing content outwardly, unless sharing with a managed app.
" }, "DialerRestrictionLevel": { "iosTooltip": "Typically, when a user selects a hyperlinked phone number in an app, a dialer app will open with the phone number prepopulated and ready to call. For this setting, choose how to handle this type of content transfer when it's initiated from a policy-managed app. Additional steps may be necessary in order for this setting to take effect. First, verify that tel and telprompt have been removed from the Select apps to exempt list. Then, ensure the application is using a newer version of Intune SDK (Version 12.7.0+).", "label": "Transfer telecommunication data to", "tooltip": "Typically, when a user selects a hyperlinked phone number in an app, a dialer app will open with the phone number prepopulated and ready to call. For this setting, choose how to handle this type of content transfer when it's initiated from a policy-managed app." }, "EncryptData": { "label": "Encrypt org data", "link": "https://docs.microsoft.com/en-us/mem/intune/apps/app-protection-policy-settings-android#data-relocation-settings", "tooltip": "Select {0} to enforce encrypting org data with Intune app layer encryption.\nChoose Require to enable encryption of work or school data in this app. Intune uses a wolfSSL, 256-bit AES encryption scheme along with the Android Keystore system to securely encrypt app data. Data is encrypted synchronously during file I/O tasks. Content on the device storage is always encrypted. New files will be encrypted with 256-bit keys. Existing 128-bit encrypted files will undergo a migration attempt to 256-bit keys, but the process is not guaranteed. Files encrypted with 128-bit keys will remain readable.
\n\nThe encryption method is FIPS 140-2 compliant.
" }, "EncryptDataIos": { "tooltip1": "Choose Require to enable encryption of work or school data in this app. Intune enforces iOS/iPadOS device encryption to protect app data while the device is locked. Applications may optionally encrypt app data using Intune APP SDK encryption. Intune APP SDK uses iOS/iPadOS cryptography methods to apply 256-bit AES encryption to app data.", "tooltip2": "When you enable this setting, the user may be required to set up and use a PIN to access their device. If there's no device PIN and encryption is required, the user is prompted to set a PIN with the message \"Your organization has required you to first enable a device PIN to access this app.\"", "tooltip3": "Go to the official Apple documentation to see which iOS encryption modules are FIPS 140-2 compliant or pending FIPS 140-2 compliance." }, "EncryptDataOnEnrolledDevices": { "label": "Encrypt org data on enrolled devices", "tooltip": "Select {0} to enforce encrypting org data with Intune app layer encryption on all devices.Select one of the following options to specify how notifications for org accounts are shown for this app and any connected devices such as wearables:
\n{0}: Do not share notifications.
\n{1}: Do not share org data in notifications. If not supported by the application, notifications are blocked.
\n{2}: Share all notifications.
\nAndroid only:\n Note: This setting does not apply to all applications. For more information see {3}
\n\niOS only:\nNote: This setting does not apply to all applications. For more information see {4}
" }, "OpenLinksManagedBrowser": { "label": "Restrict web content transfer with other apps", "tooltip": "Select one of the following options to specify the apps that this app can open web content in:
\nMicrosoft Edge: Allow web content to open only in Microsoft Edge. Learn how Microsoft Edge protects your data.
\nUnmanaged browser: Allow web content to open only in the unmanaged browser defined by \"Unmanaged browser protocol\" setting
\nAny app: Allow web links in any app
" }, "OverrideBiometric": { "tooltip": "If required, depending on the timeout (minutes of inactivity), a PIN prompt will override biometric prompts. If this timeout value is not met, the biometric prompt will continue to show. This timeout value should be greater than the value specified under 'Recheck the access requirements after (minutes of inactivity)'. " }, "PinAccess": { "label": "PIN for access", "tooltip": "If required, a PIN must be used to access the policy-managed app. Users must create an access PIN the first time that they open the app from a work or school account." }, "PinLength": { "label": "Select minimum PIN length", "tooltip": "This setting specifies the minimum number of digits of a PIN." }, "PinType": { "label": "PIN type", "tooltip": "Numeric PINs are made up of all numbers. Passcodes are made up of alphanumeric characters and special characters. " }, "Printing": { "label": "Printing org data", "tooltip": "If blocked, the app cannot print protected data." }, "ProtectedMessagingRedirectAppType": { "iosTooltip": "Typically, when a user selects a hyperlinked messaging link in an app, a messaging app will open with the phone number prepopulated and ready to send. For this setting, choose how to handle this type of content transfer when it's initiated from a policy-managed app. Additional steps may be necessary in order for this setting to take effect. First, verify that sms has been removed from the Select apps to exempt list. Then, ensure the application is using a newer version of Intune SDK (Version > 19.0.0).", "label": "Transfer messaging data to", "tooltip": "Typically, when a user selects a hyperlinked messaging link in an app, a messaging app will open with the phone number prepopulated and ready to send. For this setting, choose how to handle this type of content transfer when it's initiated from a policy-managed app." }, "ReceiveData": { "label": "Receive data from other apps", "tooltip": "Select one of the following options to specify the apps that this app can receive data from:\nCreate a new resource account during enrollment. The Resource account will be added to the Resource account table right away, but won't be active until the device is enrolled, and the Surface Hub subscription is verified. Learn more about Resource Accounts
\n ", "createNewResourceTitle": "Create new resource account", "deviceNameInvalid": "Device name is in an invalid format", "deviceNameRequired": "A device name is required", "editResourceAccountLabel": "Edit", "selectExistingCommandMenu": "Select existing" }, "Device": { "ComputerName": { "validFormat": "Names must be 15 characters or less, and can contain letters (a-z, A-Z), numbers (0-9), and hyphens. Names must not contain only numbers. Names cannot include a blank space." }, "Header": { "addressableUserName": "User friendly name", "azureADDevice": "Associated Microsoft Entra device", "batch": "Group tag", "dateAssigned": "Date assigned", "deviceAccountPwd": "Device account password", "deviceAccountUpn": "Device account", "deviceDisplayName": "Device name", "deviceFriendlyName": "Device friendly name", "deviceName": "Device name", "deviceUseType": "Device-use type", "enrollmentState": "Enrollment state", "intuneDevice": "Associated Intune device", "lastContacted": "Last contacted", "make": "Manufacturer", "model": "Model", "profile": "Assigned profile", "profileStatus": "Profile status", "purchaseOrderId": "Purchase order", "resourceAccount": "Resource account", "serialNumber": "Serial number", "userPrincipalName": "User" }, "SurfaceHub": { "friendlyNameRequired": "A friendly name is required", "pwdRequired": "A password is required", "pwdValidFormat": "Unable to update the password. The value provided for the new password does not meet the lenght or complexity requirements of the domain.", "upnRequired": "A device account is required", "upnValidFormat": "Values can contain letters (a-z, A-Z), numbers (0-9), and hyphens. Values cannot include a blank space." } }, "DeviceUseType": { "meetingAndPresentation": "Meeting and presentation", "teamCollaboration": "Team collaboration" }, "Devices": { "featureDescription": "Windows Autopilot lets you customize the out-of-box experience (OOBE) for your users.", "importErrorStatus": "Some devices were not imported. Click here for more information.", "importPendingStatus": "Import in progress. Elapsed time: {0} min. This process can take up to {1} min." }, "DirectoryService": { "activeDirectoryAD": "Microsoft Entra hybrid joined", "activeDirectoryADLabel": "Microsoft Entra hybrid join with Autopilot", "azureAD": "Microsoft Entra joined", "unknownType": "Unknown Type" }, "Filter": { "enrollmentState": "State", "profile": "Profile status" }, "OOBE": { "AddressableUserName": { "validateEmpty": "User friendly name cannot be empty." }, "ApplyComputerNameTemplate": { "infoBalloon": "Create a naming template to add names to your devices during enrollment.", "label": "Apply device name template" }, "ApplyComputerNameTemplateDisabled": { "label": "For Microsoft Entra hybrid joined type of Autopilot deployment profiles, devices are named using settings specified in Domain Join configuration." }, "ComputerNameTemplate": { "emptyValue": "MyCompany-%RAND:4%", "label": "Enter a name", "noDisallowedChars": "Name must only contain alphanumeric characters, hyphens, %SERIAL%, or %RAND:x%", "serialLength": "Cannot use more than 7 characters with %SERIAL%", "validateLessThan15Chars": "Name must be 15 characters or less", "validateNoSpaces": "Computer names cannot contain spaces", "validateNotAllNumbers": "Name must also contain letters and/or hyphens", "validateNotEmpty": "Name cannot be empty", "validateOnlyOneMacro": "Name must only contain one of %SERIAL% or %RAND:x%" }, "ConfigureComputerNameTemplate": { "description": "Create a unique name for your devices. Names must be 15 characters or less, and can contain letters (a-z, A-Z), numbers (0-9), and hyphens. Names must not contain only numbers. Names cannot include a blank space. Use the %SERIAL% macro to add a hardware-specific serial number. Alternatively, use the %RAND:x% macro to add a random string of numbers, where x equals the number of digits to add." }, "EnableWhiteGlove": { "infoBalloon": "Enable pressing Windows key 5 times to run OOBE without user authentication to enroll device and provision all system-context apps and settings. User-context apps and settings will be delivered when the user signs in.", "label": "Allow pre-provisioned deployment" }, "HybridAzureADSkipConnectivityCheck": { "infoBalloon": "The Autopilot Microsoft Entra hybrid join flow will continue even if it does not establish domain controller connectivity during OOBE.", "label": "Skip AD connectivity check" }, "accountType": "User account type", "accountTypeInfo": "Specify whether users are administrators or standard users on the device. Note that this setting does not apply to Global Administrator or Company Administrator accounts. These accounts cannot be standard users because they have access to all administrative features in Microsoft Entra ID.", "configOOBEInfo": "\nConfigure the out-of-box experience for your Autopilot devices\n
", "configureDevice": "Deployment mode", "configureDeviceHintForSurfaceHub2": "Autopilot only supports self-deploying mode for Surface Hub 2. This mode doesn't associate the user with the enrolled device, so it doesn't require user credentials.", "configureDeviceHintForWindowsPC": "\n Deployment mode controls if a user needs to provide credentials in order to provision the device.\n
\n\nThe following options are automatically enabled for Autopilot devices in self-deploying mode:\n
\nTo deploy this profile to a device, you must assign the device a Resource account. Select one device at a time to assign an existing Resource account or to create a new one. Learn more about Resource Accounts
", "assignedDevicesResourceAccountStatusBarMessage": "This table only lists the Surface Hub 2 devices that have been assigned this profile.", "assigningDescription": "Updating assignments for {0}.", "assigningTitle": "Updating Autopilot profile assignments.", "autoremediationContext": "We've detected a hardware change on this device. We're trying to automatically register the new hardware. You don't need to do anything now; the status will be updated at the next check in with the result. Learn more about resetting the profile.", "autoremediationTitle": "Device {0} has a fix pending", "cannotDeleteMessage": "This profile is assigned to groups. You must unassign all groups from this profile before you can delete it.", "cannotDeleteTitle": "Cannot delete {0}", "createdDateTime": "Created", "deleteMessage": "If you delete this Autopilot profile, any devices assigned to this profile will display Unassigned.", "deleteMessageWithPolicySet": "{0} is included in one more more policy sets. If you delete {0}, you'll no longer be able to assign it via these policy sets.", "deleteTitle": "Are you sure you want to delete this profile?", "description": "Description", "deviceType": "Device type", "deviceUse": "Device use", "directoryServiceHintForSurfaceHub2": "\n Autopilot only supports Microsoft Entra Joined for Surface Hub 2 devices. Specify how devices join Active Directory (AD) in your organization.\n
\n\n Specify how devices join Active Directory (AD) in your organization:\n
\nSelect Yes to disable the app PIN when a device lock is detected on an enrolled device.
", "targetAllApps1": "Use this option to target your policy to apps on devices of any management state.", "targetAllApps2": "During policy conflict resolution this setting will be superseded if a user has policy targeted for a specific management state.", "touchId2": "Select {0} to require fingerprint identity instead of a PIN for app access." }, "Tap": { "pinResetAfterNumberOfDays": "Specify the number of days that must pass before the user must reset the PIN.", "previousPinBlockCount": "This setting specifies the number of previous PINs that Intune will maintain. Any new PINs must be different from those that Intune is maintaining." }, "WipPolicySettings": { "25": "", "allowWindowsSearch": "This will allow Windows Search to continue to search through encrypted data.", "authoritativeIpRanges": "Enable this setting if you want to override Windows auto-detection of IP ranges.", "authoritativeProxyServers": "Enable this setting if you want to override Windows auto-detection of proxy servers.", "checkInput": "Check input for validity", "dataRecoveryCert": "A recovery certificate is a special Encrypting File System (EFS) certificate you can use to recover encrypted files if your encryption key is lost or damaged. You need to create the recovery certificate, and specify it here. More information is here", "enterpriseCloudResources": "Specify cloud resources to be treated as corporate and be protected with Windows Information Protection policy. Multiple resources can be specified by separating individual entries with the '|' character.
If you have a proxy configured in your company, then you can specify the proxy through which traffic to cloud resources you specified will be routed.
URL[,Proxy]|URL[,Proxy]
Without proxy: contoso.sharepoint.com|contoso.visualstudio.com
With proxy: contoso.sharepoint.com,proxy.contoso.com|contoso.visualstudio.com,proxy.contoso.com
Specify the IPv4 ranges that form your corporate network. These are used in conjunction with the Enterprise Network Domain Names that you specify to define your corporate network boundary.
This setting is required to have Windows Information Protection enabled.
Multiple ranges can be specified by separating individual entries with a comma.
For example: 3.4.0.1-3.4.255.255,192.168.1.1-192.168.255.255
", "enterpriseIPv6Ranges": "Specify the IPv6 ranges that form your corporate network. These are used in conjunction with the Enterprise Network Domain Names that you specify to define your corporate network boundary.
Multiple ranges can be specified by separating individual entries with a comma.
For example: 2001:4898:dc05::-2001:4898:dc05:ffff:ffff:ffff:ffff:ffff,2a01:110::-2a01:110:7fff:ffff:ffff:ffff:ffff:ffff
", "enterpriseInternalProxyServers": "If you have a proxy configured in your company, then you can specify the proxy through which traffic to cloud resources specified in the Enterprise Cloud Resources settings are to be routed.
Multiple values can be specified by separating individual entries with a semi-colon.
For example: contoso.internalproxy1.com;contoso.internalproxy2.com
", "enterpriseNetworkDomainNames": "Specify the DNS names that form your corporate network. These are used in conjunction with the IP ranges that you specify to define your corporate network boundary. Multiple values can be specified by separating individual entries with a comma.
This setting is required to have Windows Information Protection enabled.
For example: corp.contoso.com,region.contoso.com
", "enterpriseProtectedDomainNames": "Specify the DNS names that form your corporate network. These are used in conjunction with the IP ranges that you specify to define your corporate network boundary. Multiple values can be specified by separating individual entries with a '|'.
This setting is required to have Windows Information Protection enabled.
For example: corp.contoso.com|region.contoso.com
", "enterpriseProxyServers": "If you have external facing proxies in your corporate network, specify them here. When specifying a proxy server address, you should also specify the port through which traffic should be allowed and protected through Windows Information Protection.
Note: This list must not include servers in your Enterprise Internal Proxy Server list. Multiple values can be specified by separating individual entries with a semi-colon.
For example: proxy.contoso.com:80;proxy2.contoso.com:80
", "maxInactivityTime1": "Specifies the maximum amount of time (in minutes) allowed after the device is idle that will cause the device to become PIN or password locked. Users can select any existing timeout value less than the specified maximum time in the Settings app. Note the Lumia 950 and 950XL have a maximum timeout value of 5 minutes, regardless of the value set by this policy.", "maxInactivityTime2": "0 (default) - No timeout is defined. The default of '0' is interpreted as 'No timeout is defined.'", "maxPasswordAttempts1": "This policy has different behaviors on the mobile device and desktop.", "maxPasswordAttempts2": "On a mobile device, when the user reaches the value set by this policy, then the device is wiped.", "maxPasswordAttempts3": "On a desktop, when the user reaches the value set by this policy, it is not wiped.Instead, the desktop is put on BitLocker recovery mode, which makes the data inaccessible but recoverable.If BitLocker is not enabled, then the policy cannot be enforced.", "maxPasswordAttempts4": "Prior to reaching the failed attempts limit, the user is sent to the lock screen and warned that more failed attempts will lock their computer.When the user reaches the limit, the device automatically reboots and shows the BitLocker recovery page.This page prompts the user for the BitLocker recovery key.", "maxPasswordAttempts5": "0 (default) - The device is never wiped after an incorrect PIN or password is entered.", "maxPasswordAttempts6": "Most secure value is 0 if all policy values = 0; otherwise, Min policy value is the most secure value.", "mdmDiscoveryUrl": "Specify the URL for the MDM enrollment endpoint that users who enroll to MDM will use. By default, this is specified for Intune.", "minimumPinLength1": "Integer value that sets the minimum number of characters required for the PIN. Default value is 4. The lowest number you can configure for this policy setting is 4. The largest number you can configure must be less than the number configured in the Maximum PIN length policy setting or the number 127, whichever is the lowest.", "minimumPinLength2": "If you configure this policy setting, the PIN length must be greater than or equal to this number. If you disable or do not configure this policy setting, the PIN length must be greater than or equal to 4.", "name": "The name of this network boundary", "neutralResources": "If you have authentication redirection endpoints in your company, specify those here. The locations specified here are considered to be either personal or corporate depending on the context of the connection prior to the redirection.
Multiple values can be specified by separating individual entries with a comma.
For example: sts.contoso.com,sts.contoso2.com
", "passportForWork1": "Value that sets Windows Hello for Business as a method for signing into Windows.", "passportForWork2": "Default value is true.If you set this policy to false, the user cannot provision Windows Hello for Business except on Microsoft Entra joined mobile phones where provisioning is required.", "pinExpiration": "The largest number you can configure for this policy setting is 730. The lowest number you can configure for this policy setting is 0. If this policy is set to 0, then the user’s PIN will never expire.", "pinHistory1": "The largest number you can configure for this policy setting is 50. The lowest number you can configure for this policy setting is 0. If this policy is set to 0, then storage of previous PINs is not required.", "pinHistory2": "The current PIN of the user is included in the set of PINs associated with the user account. PIN history is not preserved through a PIN reset.", "protectUnderLock": "Protects app content while the device is in a locked state.", "protectionModeBlock": "Block: Blocks enterprise data from leaving protected apps.
", "protectionModeOff": "Off: User is free to relocate data off of protected apps. No actions are logged.
", "protectionModeOverride": "Allow overrides: User is prompted when attempting to relocate data from a protected to a non-protected app. If they choose to override this prompt, the action will be logged.
", "protectionModeSilent": "Silent: User is free to relocate data off of protected apps. These actions are logged.
", "required": "Required", "revokeOnMdmHandoff": "Added in Windows 10, version 1703. This policy controls whether to revoke the WIP keys when a device upgrades from MAM to MDM. If set to “Off”, the keys will not be revoked and the user will continue to have access to protected files after upgrade. This is recommended if the MDM service is configured with the same WIP EnterpriseID as the MAM service.", "revokeOnUnenroll": "This will cause encryption keys to be revoked when a device un-enrolls from this policy.", "rmsTemplateForEdp": "TemplateID GUID to use for RMS encryption. The Azure RMS template allows the IT admin to configure the details about who has access to RMS-protected file and how long they have access.", "showWipIcon": "This will let the user know when they are acting in a corporate context, by overlaying an icon.", "useRmsForWip": "Specifies whether to allow Azure RMS encryption for WIP." }, "requireAppPin": "Select Yes to disable the app PIN when a device lock is detected on an enrolled device.
Note: Intune cannot detect device enrollment with a third-party EMM solution on iOS/iPadOS.
" }, "CustomComplianceScript": { "CustomScriptWizardTitle": { "create": "Create custom script", "edit": "Edit custom script" }, "basicInfo": "Create a new custom script package from detection and remediation scripts that you've written.", "customScriptCapitalized": "Custom script", "customScriptLowercase": "custom script", "detectionScript": "Detection script" }, "Assignment": { "AutoUpdateMode": { "default": "Default", "header": "Update Priority", "postponed": "Postponed", "priority": "High Priority" }, "AutoUpdateSupersededApps": { "label": "Auto-update", "sublabel": "If superseded app(s) have been installed by the user from Company Portal, require superseding app to be installed." }, "DeliveryOptimizationPriority": { "backgroundNormal": "Background", "displayText": "Content download in {0}", "foreground": "Foreground", "header": "Delivery optimization priority" }, "RestartGracePeriod": { "allowSnooze": "Allow user to snooze the restart notification", "countdownDialog": "Select when to display the restart countdown dialog box before the restart occurs (minutes)", "durationInMinutes": "Device restart grace period (minutes)", "snoozeDurationInMinutes": "Select the snooze duration (minutes)" }, "SoftwareInstallationTime": { "TimeZone": { "label": "Time zone", "local": "Device time zone", "utc": "UTC" }, "dateAndTimeLabel": "Date and time", "deadlineTimeColumnLabel": "Installation deadline", "deadlineTimeDatePickerErrorMessage": "Selected date must be after the available date", "deadlineTimeLabel": "App installation deadline", "defaultTime": "As soon as possible", "infoText": "This application will be available as soon as it has been deployed, unless you specify an availability time below. If this is a required application, you may specify the installation deadline.", "specificTime": "A specific date and time", "startTimeColumnLabel": "Availability", "startTimeDatePickerErrorMessage": "Selected date must be before the deadline date", "startTimeLabel": "App availability" }, "restartGracePeriodHeader": "Restart grace period", "restartGracePeriodLabel": "Device restart grace period", "summaryTitle": "End user experience" }, "WindowsManagement": { "Assignment": { "noAssignmentCustomAttributeDisplayText": "Assign custom attribute to at least one group. Go to Properties to edit assignments.", "noAssignmentDisplayText": "Assign Powershell script to at least one group. Go to Properties to edit assignments.", "noAssignmentShellScriptDisplayText": "Assign shell script to at least one group. Go to Properties to edit assignments." }, "CustomAttributes": { "customAttributeScriptDescription": "Max file size 1 MB.", "customAttributeScriptLabel": "Script", "customAttributeTypeDescription": "Select the data type of the result.", "customAttributeTypeLabel": "Data type of attribute", "dateTypeOption": "Date", "integerTypeOption": "Integer", "noAttributes": "The custom attributes you add will appear here. Add a custom attribute to get started.", "settingsTabHeader": "Attribute settings", "stringTypeOption": "String" }, "ExecutionStatus": { "Columns": { "deviceName": "Device", "lastStateUpdateDateTime": "Last Updated", "osVersion": "OS Version", "result": "Result", "runState": "Status", "userPrincipalName": "User name" }, "fail": "Failed", "notApplicable": "Not Applicable", "success": "Succeeded", "unknown": "Unknown" }, "Mac": { "blockNotifications": "Hide script notifications on devices", "executionFrequency": "Script frequency", "runMode": "Run script as signed-in user", "scriptRetry": "Max number of times to retry if script fails", "uploadFile": "Upload script", "blockNotificationToolTip": { "toolTip": "Device users won’t receive script-related messages in Notification Center while the script is running. When not configured, these messages are shown in Notification Center." }, "executionFrequencyToolTip": { "toolTip": "How often the script runs." }, "runModeToolTip": { "toolTip": "By default, the script is run as the root user. The root user can make system changes that a standard user account can't." }, "uploadFileToolTip": { "toolTip": "Max file size 1 MB." } }, "PolicyFrequency": { "days1": "Every 1 day", "hours1": "Every 1 hour", "hours12": "Every 12 hours", "hours2": "Every 2 hours", "hours3": "Every 3 hours", "hours6": "Every 6 hours", "minutes15": "Every 15 minutes", "minutes30": "Every 30 minutes", "title": "Frequency of execution", "weeks1": "Every 1 week" }, "PolicyListToolBarOption": { "linux": "Linux", "macOs": "macOS", "windows": "Windows 10 and later" }, "PolicyRetry": { "times1": "1 time", "times2": "2 times", "times3": "3 times", "title": "Number of times to retry" }, "Titles": { "editCustomAttribute": "Edit custom attribute", "editShellScript": "Edit shell script" }, "UploadFile": { "contentRequiredWarning": "Script content required", "invalidFile": "Invalid file type.", "uploadInfoBalloonContent": "Specify the PowerShell script file. File must be less than 200KB.", "uploadLabel": "Script location" }, "createButtonText": "Add", "createPowershellScriptFlowSectionName": "Add PowerShell script", "customAttributeObjectName": "Custom attribute", "editPowershellScriptFlowSectionName": "Edit PowerShell script", "enforceSignatureCheckInfoBalloonContent": "The script must be signed by a trusted publisher. This is the default.", "enforceSignatureCheckLabel": "Enforce script signature check", "executionFrequencyLabel": "Execution Frequency", "failedToSavePolicy": "Failed to save {0}", "newWMPolicyBladeSubtitle": "Windows 10 and later", "newWMPolicyBladeSubtitleMac": "macOS", "noScriptsTitle": "The scripts you add will appear here. Add a script to get started.", "powerShellScriptObjectName": "PowerShell script", "reviewButtonText": "Review + add ", "runAs64BitInfoBalloonContent": "The script will run in a 64-bit PowerShell Host for a 64-bit client architecture. By default, the script will run in a 32-bit PowerShell Host.", "runAs64BitLabel": "Run script in 64 bit PowerShell Host", "scriptContextInfoBalloonContent": "The script runs with the users’ credentials on the client computer. By default, the script runs in user context.", "scriptContextLabel": "Run this script using the logged on credentials", "scriptsettingsTabHeader": "Script settings", "settingsHeader": "Select a script to configure", "shellScriptObjectName": "Shell script", "successfullySavedPolicy": "Saved {0}" }, "ArchitectureOptions": { "arm64InstructionSet": "Install on ARM64 system", "checkBox": "Please select at least one architecture setting", "sixtyFourBit": "64-bit", "sixtyFourBitInstructionSet": "Install on x64 system", "thirtyTwoBit": "32-bit", "thirtyTwoBitInstructionSet": "Install on x86 system" }, "Countries": { "ae": "United Arab Emirates", "ag": "Antigua and Barbuda", "ai": "Anguilla", "al": "Albania", "am": "Armenia", "ao": "Angola", "ar": "Argentina", "at": "Austria", "au": "Australia", "az": "Azerbaijan", "bb": "Barbados", "be": "Belgium", "bf": "Burkina Faso", "bg": "Bulgaria", "bh": "Bahrain", "bj": "Benin", "bm": "Bermuda", "bn": "Brunei", "bo": "Bolivia", "br": "Brazil", "bs": "Bahamas", "bt": "Bhutan", "bw": "Botswana", "by": "Belarus", "bz": "Belize", "ca": "Canada", "cg": "Republic Of Congo", "ch": "Switzerland", "cl": "Chile", "cn": "China", "co": "Colombia", "cr": "Costa Rica", "cv": "Cape Verde", "cy": "Cyprus", "cz": "Czech Republic", "de": "Germany", "dk": "Denmark", "dm": "Dominica", "do": "Dominican Republic", "dz": "Algeria", "ec": "Ecuador", "ee": "Estonia", "eg": "Egypt", "es": "Spain", "fi": "Finland", "fj": "Fiji", "fm": "Federated States Of Micronesia", "fr": "France", "gb": "United Kingdom", "gd": "Grenada", "gh": "Ghana", "gm": "Gambia", "gr": "Greece", "gt": "Guatemala", "gw": "Guinea-Bissau", "gy": "Guyana", "hk": "Hong Kong", "hn": "Honduras", "hr": "Croatia", "hu": "Hungary", "id": "Indonesia", "ie": "Ireland", "il": "Israel", "in": "India", "is": "Iceland", "it": "Italy", "jm": "Jamaica", "jo": "Jordan", "jp": "Japan", "ke": "Kenya", "kg": "Kyrgyzstan", "kh": "Cambodia", "kn": "St. Kitts and Nevis", "kr": "Republic Of Korea", "kw": "Kuwait", "ky": "Cayman Islands", "kz": "Kazakstan", "la": "Lao People’s Democratic Republic", "lb": "Lebanon", "lc": "St. Lucia", "lk": "Sri Lanka", "lr": "Liberia", "lt": "Lithuania", "lu": "Luxembourg", "lv": "Latvia", "md": "Republic Of Moldova", "mg": "Madagascar", "mk": "North Macedonia", "ml": "Mali", "mn": "Mongolia", "mo": "Macau", "mr": "Mauritania", "ms": "Montserrat", "mt": "Malta", "mu": "Mauritius", "mw": "Malawi", "mx": "Mexico", "my": "Malaysia", "mz": "Mozambique", "na": "Namibia", "ne": "Niger", "ng": "Nigeria", "ni": "Nicaragua", "nl": "Netherlands", "no": "Norway", "np": "Nepal", "nz": "New Zealand", "om": "Oman", "pa": "Panama", "pe": "Peru", "pg": "Papua New Guinea", "ph": "Philippines", "pk": "Pakistan", "pl": "Poland", "pt": "Portugal", "pw": "Palau", "py": "Paraguay", "qa": "Qatar", "ro": "Romania", "ru": "Russia", "sa": "Saudi Arabia", "sb": "Solomon Islands", "sc": "Seychelles", "se": "Sweden", "sg": "Singapore", "si": "Slovenia", "sk": "Slovakia", "sl": "Sierra Leone", "sn": "Senegal", "sr": "Suriname", "st": "Sao Tome and Principe", "sv": "El Salvador", "sz": "Swaziland", "tc": "Turks and Caicos", "td": "Chad", "th": "Thailand", "tj": "Tajikistan", "tm": "Turkmenistan", "tn": "Tunisia", "tr": "Turkey", "tt": "Trinidad and Tobago", "tw": "Taiwan", "tz": "Tanzania", "ua": "Ukraine", "ug": "Uganda", "us": "United States", "uy": "Uruguay", "uz": "Uzbekistan", "vc": "St. Vincent and The Grenadines", "ve": "Venezuela", "vg": "British Virgin Islands", "vn": "Vietnam", "ye": "Yemen", "za": "South Africa", "zw": "Zimbabwe" }, "SettingDetails": { "CustomOMA": { "noDCv2Allow": "This setting is not configurable via OMA-URI, as it is available in the settings catalog. Please navigate to the settings catalog to configure this setting." }, "CustomPolicyConfigurationProfile": { "uploadControlPlaceHolderText": "Select a configuration profile file" }, "ProfileDescription": { "androidDeviceOwnerDerivedCredentialAppAuthenticationConfiguration": "Set up a derived credential to enable certificate-based authentication in your org. This profile is for fully managed, dedicated, and corporate-owned work profile devices.", "androidDeviceOwnerGeneral": "Enable or disable device features, run apps on dedicated devices, control security, and more. This profile is for fully managed, dedicated, and corporate-owned work profile devices.", "androidDeviceOwnerImportedPFX": "Set up an imported public key pair (PKCS) certificate to enable S/MIME email encryption in your email profiles. This profile is for fully managed, dedicated, and corporate-owned work profile devices.", "androidDeviceOwnerPKCS": "Set up a public key pair (PKCS) certificate to enable certificate-based authentication in your org. This profile is for fully managed, dedicated, and corporate-owned work profile devices.", "androidDeviceOwnerSCEP": "Set up a Simple Certificate Enrollment Protocol (SCEP) certificate to enable certificate-based authentication in your org. This profile is for fully managed, dedicated, and corporate-owned work profile devices.", "androidDeviceOwnerTrustedCertificate": "Import the trusted root certificate from your Certification Authority and assign it to devices that use SCEP and PCKS certificates to authenticate with your org's resources. This profile is for fully managed, dedicated, and corporate-owned work profile devices.", "androidDeviceOwnerVpn": "Create and configure a VPN connection to your org's network. This profile is for fully managed, dedicated, and corporate-owned work profile devices.", "androidDeviceOwnerWiFi": "Set up a Wi-Fi network for people to access. This profile is for fully managed, dedicated, and corporate-owned work profile devices.", "aospDeviceOwnerDevice": "Enable or disable device features, control security, and more.", "complianceAndroidDeviceOwner": "This policy is for fully managed, dedicated, and corporate-owned work profile devices.", "derivedCredentials": "Set up a derived credential to enable certificate-based authentication in your org.", "email": "Configure an email server, SSL communication, and other built-in email settings.", "iosCustom": "The custom configuration template allows IT admins to assign settings that aren't built into Intune yet. For iOS and iPadOS devices, you can import a .mobileconfig file that you created using Apple Configurator 2 or Profile Manager.", "iosDeviceFeatures": "Device features control various aspects of the iOS/iPadOS device as a whole, such as the wallpaper, the dock layout, AirPrint settings, and web content filters.", "iosGeneral": "Device restrictions control security, hardware, data sharing, and more settings on the devices. For example, create a device restriction profile that manages access to the App store or restricts certain apps from being installed on the device.", "macCustom": "The custom configuration template allows IT admins to assign settings that aren't built into Intune yet. For macOS devices, you can import a .mobileconfig file that you created using Profile Manager or a different tool.", "macCustomPreferences": "Configure a preference file that uses the standard property list (.plist) format to define preferences for apps and the device.", "macDeviceFeatures": "Device features control various aspects of the macOS device as a whole, such as what items launch at login, the view of the login window, and AirPrint settings.", "macEndpointProtection": "Endpoint protection settings control security on macOS devices such as FileVault 2 encryption, Gatekeeper, and the Firewall.", "macExtensions": "Configuration of the extensions that are allowed to load on the device, and blocked from loading on the device.", "macGeneral": "Device restrictions control security, hardware, data sharing, and more settings on the devices. For example, create a device restriction profile that requires a device to have a password or manages what the device can sync from iCloud.", "pKCS": "Set up a public key pair (PKCS) certificate to enable certificate-based authentication in your org.", "pKCSImport": "Set up an imported public key pair (PKCS) certificate to enable S/MIME email encryption in your email profiles.", "sCEP": "Set up a Simple Certificate Enrollment Protocol (SCEP) certificate to enable certificate-based authentication in your org.", "trustedRoot": "Import the trusted root certificate from your Certification Authority and assign it to devices that use SCEP and PCKS certificates to authenticate with your org's resources.", "vPN": "Create and configure a VPN connection to your org's network.", "wifi": "Set up a Wi-Fi network for people to access.", "wifiImport": "Import and assign a Wi-Fi configuration profile that was previously exported to a file.", "windows10Atp": "With Intune, you can use this device configuration profile to manage Microsoft Defender for Endpoint onboarding and offboarding on Windows devices.If you defer software updates, newly released updates won't become visible to users until after the deferral period (which you'll configure in the next settings). Deferring software updates doesn't impact scheduled updates.
OS-related updates can be deferred on devices running macOS 10.13 or later; non OS-related updates (such as Safari updates) can be deferred on devices running macOS 11 or later.
", "updateDelayPolicyName": "Defer software updates", "updateEveryWeek": "Every week", "updateFirstWeekOfMonth": "First week of the month", "updateFourthWeekOfMonth": "Fourth week of the month", "updateNotificationLevelDescription": "Specifies what Windows Update notifications users see.", "updateNotificationLevelName": "Change notification update level", "updateSecondWeekOfMonth": "Second week of the month", "updateSettingsName": "Update settings", "updateThirdWeekOfMonth": "Third week of the month", "updatesClassificationName": "Minimum classification of updates to install automatically", "upperIPv4AddressName": "Upper IPv4 address", "upperPortName": "Upper port", "url": "URL", "urlPathHashOption": "Hash", "usbTypeAPortName": "USB type A", "usbTypeCPortName": "USB Type C", "useDeadlineSettingsDescription": "Allows user to use deadline settings", "useDeadlineSettingsName": "Use deadline settings", "useInternalSubnetName": "Use IPv4/IPv6 internal subnet attributes", "useOAuth": "OAuth", "useOAuthDescription": "Specifies whether the connection should use OAuth for authentication.", "usePACName": "Use (PAC)", "useWindows10ForcedUpdates": "Force restart apps on update failure", "useWindows10ForcedUpdatesTooltip": "To ensure apps are always up-to-date, use this setting to configure a recurring or one time date to restart apps whose update failed due to the app being in use.", "userAccountControlDescription": "How is user notified about device changes (recommend Always notify).", "userAccountControlName": "User Account Control", "userApprovedAndAutomatedDeviceEnrollmentHeaderDescriptionMac": "These settings work for devices that were enrolled in Intune with user approval, and for devices enrolled using Apple School Manager or Apple Business Manager with automated device enrollment (formerly DEP). This includes all supervised devices.", "userApprovedAndAutomatedDeviceEnrollmentHeaderNameMac": "User approved and automated device enrollment", "userAuthentication": "User authentication", "userCanConfigure": "User can configure", "userControlOption": "User in control", "userCustomDomainDescription": "The value Intune uses for the user domain name that will be used by this profile e.g. contoso.com or contoso.", "userCustomDomainName": "Custom domain name to use", "userCustomDomainNameExample": "e.g. contoso.com", "userDefined": "User defined", "userDomainAADAttributeDescription": "The attribute Intune gets from Microsoft Entra ID to dynamically generate the user domain name that will be used by this profile e.g. contoso.com (full domain name) or contoso (NetBIOS name).", "userDomainAADAttributeLinkText": "Learn more about Microsoft Entra attributes for email profiles.", "userDomainAADAttributeName": "User domain name attribute from Microsoft Entra ID", "userExperienceSettingsName": "User experience settings", "userNameOption": "User name", "userNameTypeDescription": " The attribute Intune gets from Microsoft Entra ID to dynamically generate the username that will be used by this profile e.g. MyName@contoso.com (UPN) or MyName (username).", "userNameTypeLinkText": "Learn more about Microsoft Entra attributes for Email profiles.", "userNameTypeName": "Username attribute from Microsoft Entra ID", "userPauseAccessDescription": "An option in Windows Update that, when enabled, lets device users pause updates for a certain number of days.", "userPauseAccessName": "Option to pause Windows updates", "userPrincipalNameOption": "User principal name", "userRightsAccessCredentialManagerAsTrustedCallerDesc": "This user right is used by Credential Manager during Backup/Restore. Users' saved credentials might be compromised if this privilege is given to other entities. ", "userRightsAccessCredentialManagerAsTrustedCallerName": "Access Credential Manager as trusted caller", "userRightsActAsPartOfTheOperatingSystemDesc": "This user right allows a process to impersonate any user without authentication. ", "userRightsActAsPartOfTheOperatingSystemName": "Act As Part Of The OS", "userRightsAddSidBladeTitle": "Other local users or groups", "userRightsAddSidBladeTitleName": "Add local users or groups by SID", "userRightsAddSidTableDescriptionDesc": "Admin’s description of this local user or group.", "userRightsAddSidTableDescriptionName": "Description", "userRightsAddSidTableNameDesc": "The name of this local user or group.", "userRightsAddSidTableNameName": "Name", "userRightsAddSidTableSidDesc": "The security identifier of this local user or group (e.g. *S-1-5-32-544).", "userRightsAddSidTableSidName": "SID", "userRightsAdministratorsName": "Administrators", "userRightsAllowAccessFromNetworkDesc": "This user right determines which users and groups are allowed to connect to the computer over the network. ", "userRightsAllowAccessFromNetworkName": "Allow Access From Network", "userRightsAllowLocalLogOnDesc": "This user right determines which users can log on to the computer.", "userRightsAllowLocalLogOnName": "Allow local log on", "userRightsAuthenticatedUsersName": "Authenticated users", "userRightsBackupFilesAndDirectoriesDesc": "This user right determines which users can bypass file, directory, registry, and other persistent objects permissions when backing up files and directories.", "userRightsBackupFilesAndDirectoriesName": "Backup files and directories", "userRightsBlockAccessFromNetworkDesc": "This user right determines which users are prevented from accessing a computer over the network.", "userRightsBlockAccessFromNetworkName": "Deny Access From Network", "userRightsChangeSystemTimeDesc": "This user right determines which users and groups can change the time and date on the internal clock of the computer.", "userRightsChangeSystemTimeName": "Change the system time", "userRightsCreateGlobalObjectsDesc": "This security setting determines whether users can create global objects that are available to all sessions. Users who can create global objects could affect processes that run under other users' sessions, which could lead to application failure or data corruption.", "userRightsCreateGlobalObjectsName": "Create global objects", "userRightsCreatePageFileDesc": "This user right determines which users and groups can call an internal API to create and change the size of a page file.", "userRightsCreatePageFileName": "Create pagefile", "userRightsCreatePermanentSharedObjectsDesc": "This user right determines which accounts can be used by processes to create a directory object using the object manager.", "userRightsCreatePermanentSharedObjectsName": "Create permanent shared objects", "userRightsCreateSymbolicLinksDesc": "This user right determines if the user can create a symbolic link from the computer to which they are logged on.", "userRightsCreateSymbolicLinksName": "Create symbolic links", "userRightsCreateTokenDesc": "This user right determines which users/groups can be used by processes to create a token that can then be used to get access to any local resources when the process uses an internal API to create an access token.", "userRightsCreateTokenName": "Create tokens", "userRightsDebugProgramsDesc": "This user right determines which users can attach a debugger to any process or to the kernel.", "userRightsDebugProgramsName": "Debug programs", "userRightsDelegationDesc": "This user right determines which users can set the Trusted for Delegation setting on a user or computer object.", "userRightsDelegationName": "Enable delegation", "userRightsDenyLocalLogOnDesc": "This security setting determines which service accounts are prevented from registering a process as a service.", "userRightsDenyLocalLogOnName": "Deny local log on name", "userRightsDescriptionExample": "(BUILTIN\\Event Log Readers)", "userRightsGenerateSecurityAuditsDesc": "This user right determines which accounts can be used by a process to add entries to the security log. The security log is used to trace unauthorized system access.", "userRightsGenerateSecurityAuditsName": "Generate security audits", "userRightsGuestsName": "Guests", "userRightsImpersonateClientDesc": "Assigning this user right to a user allows programs running on behalf of that user to impersonate a client. Requiring this user right for this kind of impersonation prevents an unauthorized user from convincing a client to connect to a service that they have created and then impersonating that client, which can elevate the unauthorized user's permissions to administrative or system levels.", "userRightsImpersonateClientName": "Impersonate a client", "userRightsIncreaseSchedulingPriorityDesc": "This user right determines which accounts can use a process with Write Property access to another process to increase the execution priority assigned to the other process", "userRightsIncreaseSchedulingPriorityName": "Increase scheduling priority", "userRightsLoadUnloadDriversDesc": "This user right determines which users can dynamically load and unload device drivers or other code in to kernel mode.", "userRightsLoadUnloadDriversName": "Load and unload device drivers", "userRightsLocalAccountAndMemberOfAdministratorsGroupName": "Local account and member of Administrators group", "userRightsLocalAccountName": "Local account", "userRightsLocalServicesName": "Local services", "userRightsLockMemoryDesc": "This user right determines which accounts can use a process to keep data in physical memory, which prevents the system from paging the data to virtual memory on disk.", "userRightsLockMemoryName": "Lock pages in memory", "userRightsManageAuditingAndSecurityLogsDesc": "This user right determines which users can specify object access auditing options for individual resources, such as files, Active Directory objects, and registry keys.", "userRightsManageAuditingAndSecurityLogsName": "Manage auditing and security log", "userRightsManageVolumesDesc": "This user right determines which users and groups can run maintenance tasks on a volume, such as remote defragmentation.", "userRightsManageVolumesName": "Perform volume maintenance tasks", "userRightsModifyFirmwareEnvironmentDesc": "This user right determines who can modify firmware environment values.", "userRightsModifyFirmwareEnvironmentName": "Modify firmware environment values", "userRightsModifyObjectLabelsDesc": "This user right determines which user accounts can modify the integrity label of objects, such as files, registry keys, or processes owned by other users.", "userRightsModifyObjectLabelsName": "Modify an object label", "userRightsNameExample": "Event Log Readers", "userRightsNetworkServicesName": "Network services", "userRightsProfileSingleProcessDesc": "This user right determines which users can use performance monitoring tools to monitor the performance of system processes.", "userRightsProfileSingleProcessName": "Profile single process", "userRightsRemoteDesktopServicesLogOnDesc": "This user right determines which users and groups are prohibited from logging on as a Remote Desktop Services client.", "userRightsRemoteDesktopServicesLogOnName": "Deny log on through Remote Desktop Services", "userRightsRemoteDesktopUsersName": "Remote desktop users", "userRightsRemoteShutdownDesc": "This user right determines which users are allowed to shut down a computer from a remote location on the network. Misuse of this user right can result in a denial of service.", "userRightsRemoteShutdownName": "Remote shutdown", "userRightsRestoreDataDesc": "This user right determines which users can bypass file, directory, registry, and other persistent objects permissions when restoring backed up files and directories, and determines which users can set any valid security principal as the owner of an object.", "userRightsRestoreDataName": "Restore files and directories", "userRightsServicesName": "Services", "userRightsSidDesc": "User or Group Sid", "userRightsSidExample": "*S-1-5-21-2146773085", "userRightsSidName": "SIDs", "userRightsTakeOwnershipDesc": "This user right determines which users can take ownership of any securable object in the system, including Active Directory objects, files and folders, printers, registry keys, processes, and threads.", "userRightsTakeOwnershipName": "Take ownership of files or objects", "userRightsUsersName": "Users", "userToggleEnabledName": "User to disable VPN configuration", "userToggleEnabledToolTip": "Unless allowed, users can’t turn off always-on VPN. The default value for this setting is the most secure option.", "userWindowsUpdateScanAccessDescription": "A button in Windows Update that, when enabled, lets device users check the update service for updates.", "userWindowsUpdateScanAccessName": "Option to check for Windows updates", "usernameAndPasswordOption": "Username and password", "usernameFormat": "Username format:", "usernameFormatDescription": "Username format example - abcd{{WifiMacAddress}}", "utcMinusEightOption": "UTC-8", "utcMinusElevenOption": "UTC-11", "utcMinusFiveOption": "UTC-5", "utcMinusFourOption": "UTC-4", "utcMinusNineOption": "UTC-9", "utcMinusNineThirtyOption": "UTC-9:30", "utcMinusOneOption": "UTC-1", "utcMinusSevenOption": "UTC-7", "utcMinusSixOption": "UTC-6", "utcMinusTenOption": "UTC-10", "utcMinusThreeOption": "UTC-3", "utcMinusThreeThirtyOption": "UTC-3:30", "utcMinusTwelveOption": "UTC-12", "utcMinusTwoOption": "UTC-2", "utcPlusEightFourtyFiveOption": "UTC+8:45", "utcPlusEightOption": "UTC+8", "utcPlusEightThirtyOption": "UTC+8:30", "utcPlusElevenOption": "UTC+11", "utcPlusFiveFourtyFiveOption": "UTC+5:45", "utcPlusFiveOption": "UTC+5", "utcPlusFiveThirtyOption": "UTC+5:30", "utcPlusFourOption": "UTC+4", "utcPlusFourThirtyOption": "UTC+4:30", "utcPlusFourteenOption": "UTC+14", "utcPlusNineOption": "UTC+9", "utcPlusOneOption": "UTC+1", "utcPlusSevenOption": "UTC+7", "utcPlusSixOption": "UTC+6", "utcPlusSixThirtyOption": "UTC+6:30", "utcPlusTenOption": "UTC+10", "utcPlusTenThirtyOption": "UTC+10:30", "utcPlusThirteenOption": "UTC+13", "utcPlusThreeOption": "UTC+3", "utcPlusThreeThirtyOption": "UTC+3:30", "utcPlusTwelveFourtyFiveOption": "UTC+12:45", "utcPlusTwelveOption": "UTC+12", "utcPlusTwoOption": "UTC+2", "utcZeroOption": "UTC±00", "vPNAddressExample": "10.0.0.3, vpn.contoso.com", "vPNAppsDescription": "When at least one app is selected, the VPN connection will be limited to the apps in the list.", "vPNAppsName": "Select apps that would be allowed to use this VPN connection", "vPNAuthMethodDescription": "Select how you want users to authenticate to the VPN server. Using certificate-based authentication provides enhanced capabilities such as zero-touch experience, on-demand VPN, and per-app VPN.", "vPNCitrixData": "Citrix data", "vPNCitrixDataDescription": "Enter key and value pairs for the Citrix VPN attributes.", "vPNConditionTypeColumnName": "Restrict to", "vPNConditionTypeName": "I want to restrict to", "vPNConnectionExample": "Contoso VPN", "vPNCustomData": "Attributes for custom VPN", "vPNCustomDataDescription": "Enter key and value pairs for the custom VPN attributes.", "vPNCustomKeyExample": "SingleSignOn", "vPNCustomValueExample": "True", "vPNDnsAutoTriggerDescription": "Automatically connect to the VPN when the device connects to this domain", "vPNDnsAutoTriggerName": "Automatically Connect", "vPNDnsPersistentDescription": "Keep this rule active even when the VPN is not connected: Select Enable to keep this rule in the Name Resolution Policy table (NRPT) until the rule is manually removed from the device, even after the VPN is disconnected. By default, NRPT rules in the VPN profile are removed from the device when the VPN is disconnected.", "vPNDnsPersistentName": "Persistent", "vPNEAPXMLDescription": "Enter the extensible authentication protocol (EAP) configuration in XML format. ", "vPNEAPXMLHelpLinkDescription": "Learn more about creating an EAP configuration for your VPN profile.", "vPNFQDNExample": "vpn.contoso.com", "vPNIKEv2RemoteIdentifierDescription": "Specify the address of the IKEv2 server. This is usually the same value used in the IP address or FQDN field under Base VPN. The address must be a FQDN, UserFQDN, network address, or ASN1DN.", "vPNIKEv2RemoteIdentifierName": "Remote identifier", "vPNIdentifier": "VPN identifier", "vPNIdentifierExample": "e.g. com.cisco.anyconnect.applevpn.plugin", "vPNNetMotionMobilityCustomData": "Attributes for NetMotion Mobility VPN", "vPNNetMotionMobilityCustomDataDescription": "Enter key and value pairs for the NetMotion Mobility VPN attributes.", "vPNPerAppDescription": "When users start using the selected apps, traffic will automatically route through the VPN connection if the connection is configured to be Always On or if the connection has been manually started by the user.", "vPNPolicyAddressDescription": "Proxy server address (fully-qualified host, or IP address).", "vPNPolicyAddressName": "Address", "vPNPolicyAssociatedAppsDescription": "Apps added here will automatically start this VPN connection.", "vPNPolicyAssociatedAppsName": "Associated Apps", "vPNPolicyAssociatedDomainsUrlsDescription": "Associated domains require additional setup outside of this VPN profile. Learn more.Notes:
\nNotes:
\nLow
\nMedium
\nHigh
\nGet the Microsoft Edge app for your users on iOS or Android so they can browse seamlessly across their corporate devices! Edge lets users cut through the clutter of the web with built-in features that help them consolidate, arrange and manage work content. Users of iOS and Android devices who sign-in with their corporate Microsoft Entra accounts in the Edge application will find their browser pre-loaded with workplace Favorites and website filters you define.
If you have blocked users from enrolling either iOS or Android devices, this scenario will not enable enrollment, and the users will need to install Edge for themselves.
", "edgeGSIntroPrereqHTML": "We'll ask you about the workplace favorites your users need, and the filters you require for web browsing. Make sure you complete the following tasks before you continue:
\nI need to add my own line-of-business app
", "guidedTemplate2": "We’ll ask you which protection level you would like to deploy to your users. For more information, see Data protection framework with app protection policies. ", "guidediOSLabel": "iOS app protection", "healthCheck": "Health Checks", "helpAndSupport": "Help and support", "hideOverrides": "Hide Overrides", "highDataProtectionGuidedString": "High data protection – expand upon the settings defined in enhanced data protection by introducing more complex access requirements settings (e.g., disables simple PIN), data protection settings (for example, disabling third-party keyboards).", "iOSAppEncryptionStatus": "iOS device independent encryption is enabled for compatible applications. The App protection policy setting \"Encrypt Org Data\" must be configured to \"Require\" to enforce encryption.", "iOSPlatformLabel": "iOS/iPadOS", "importedApps": "Imported apps", "include": "Include", "includedPolicyManagedApps": "Included policy-managed apps", "instanceDisplayName": "Instance display name", "introduction": "Introduction", "intuneAppProtection": "Intune App Protection", "intuneAppProtectionHasMergedIntoMobileApps": "Intune App Protection has merged into the Intune mobile apps experience", "intuneAppProtectionLegacy": "Intune App Protection (Legacy)", "intuneManagedDevices": "Intune managed devices", "invalidBundleId": "Valid characters are: alphanumeric, '-' and '.'", "invalidPackageId": "Valid characters are: alphanumeric, '_' and '.'", "invalidTokenUsageError": "Invalid token", "ios": "iOS/iPadOS", "iosAndroidMacPlatformLabel": "iOS, Android, Mac", "iosAndroidPlatformLabel": "iOS, Android", "isMamEnabled": "Is MAM enabled?", "itemsCount": "{0} items", "jailbrokenRootedDevices": "Jailbroken/rooted devices", "knoxConditionalLaunchSettingBlockWhenSettingIsSupported": "Block access on supported devices", "lastModifiedDate": "Last Modified Date", "lastReportedDate": "Last reported date", "lastSync": "Last sync", "lastSyncGmt": "Last sync (GMT)", "learnMoreAboutMamAndWipHere": "Learn more about MAM and WIP here.", "learnMoreAboutWip": "Learn more about app protection policies in Windows 10 and later", "learnMoreAboutWipHere": "Learn more about WIP here", "legacy": "Legacy", "loadMore": "Load more", "localStorage": "Local Storage", "mAMShortTitle": "Intune MAM", "mAMSummaryBladeTitle": "App protection status", "macOS": "MacOS", "macPlatformLabel": "Mac", "mamGSTitle": "Protect Microsoft Office mobile apps (preview)", "manage": "Manage", "manageUsers": "Manage Users", "managedAppCRUDpermission": "Managed Apps Create,Read,Assign,Delete Permission", "managedAppsOptionText": "Managed apps", "managedAppsWithOSSharing": "Policy managed apps with OS sharing", "managedAppsWithOpenInSharing": "Policy managed apps with Open-In/Share filtering", "managedUniversalLinks": "Managed universal links", "managementType": "Management type", "maxMinValidation": "Maximum OS version has to be lower than the Minimum OS version, when the action is the same.", "maxOsVersion": "Max OS version", "maxPinAttempts": "Max PIN attempts", "maximumAllowedDeviceThreatLevel": "Max allowed device threat level", "maximumCompanyPortalVersionAge": "Max Company Portal version age (days)", "mdm": "MDM", "mdmDeviceId": "MDM Device ID", "mdmWipInvalidVersionSettings": "One or more apps have invalid minimum/maximum version definitions.If advanced data protection controls are enforced, users will not be able to share work or school content with personal apps or personal accounts and will be required to use Microsoft Edge.
", "userIsBlocked": "This user is blocked by user-level wipe.", "userIsLicensedIntune": "User is licensed for Microsoft Intune.", "userIsLicensedO365": "User is licensed for Office 365.", "userIsNotLicensedIntune": "User is not licensed for Microsoft Intune. Click here to learn more.", "userIsNotLicensedIntuneNoLink": "User is not licensed for Microsoft Intune. Click here to learn more.", "userIsNotLicensedO365": "User is not licensed for Office 365. Click here to learn more.", "userIsNotLicensedO365NoLink": "User is not licensed for Office 365. Click here to learn more.", "userLevelWipe": "User-Level Wipe", "userLicensingUnknownIntune": "Unable to determine if a Microsoft Intune license is assigned to this user. Click here to learn more.", "userLicensingUnknownIntuneNoLink": "Unable to determine if a Microsoft Intune license is assigned to this user. Click here to learn more.", "userLicensingUnknownO365": "Unable to determine if an Office 365 license is assigned to this user. Click here to learn more.", "userLicensingUnknownO365NoLink": "Unable to determine if an Office 365 license is assigned to this user. Click here to learn more.", "userName": "User name", "userNotFound": "User not found", "userNotLicensed": "This user is not licensed for Microsoft Intune.", "userNotTargetedForAppPolicies": "This user is not targeted for any app policies", "userPrincipalName": "User principal name", "userReport": "User report", "userSelectorDisplayText": "{0} selected", "userSelectorLabel": "User", "userStatusesTableGroupingDropdownLabel": "Table grouping", "userStatusesTableGroupingDropdownTooltip": "Select a column to aggregate data by", "users": "Users", "usersCheckedInTitle": "Users checked in", "usersThatIDontInclude": "What happens to the users that I don't include?", "usersWithLicense": "Assigned and licensed", "usersWithPotentiallyHarmfulApps": "Users with potentially harmful apps", "usersWithoutLicense": "Assigned and not licensed", "validationResult": "Validation result", "valueColumnHeader": "Value", "valueMustNotContainCharsError": "Value must not contain the following characters: {0}", "versionValidationExample": "Format: [Major].[Minor] or [Major].[Minor].[Build].[Revision]
Example: 1.5 or 1.5.50.101
", "versionValidationWith2To5Segments": "Format: [Major].[Minor] or [Major].[Minor].[Build] or [Major].[Minor].[Build].[Revision]. For iOS, [Major].[Minor].[Build].[Revision].[RapidSecurityResponse] is also supported.
Note: Apps will not perform wipes for RapidSecurityResponse violations, only block or warn is supported.
Example: 1.5 or 1.5.50 or 1.5.50.101 or (for iOS) 1.5.50.101.a
", "versionValidationWithDateFormat": "Must be a valid date format (YYYY-MM-DD).", "warn": "Warn", "warning": "Warning", "weMovedToANewLocation": "We moved to a new location", "windows10AppProtectionPolicy": "Windows 10 and later app protection policy", "windows10PlatformLabel": "Windows 10 and later", "windows10x": "Windows 10X", "windows8": "Windows 8.1 and later", "windowsInformationProtectionPlatformLabel": "Windows Information Protection", "windowsPhone": "Windows Phone 8.1", "windowsPlatformLabel": "Windows", "windowsProtectionReport": "Windows protection report", "wipAddAppsSubtitle": "Add recommended Microsoft apps, or manually add store or desktop apps to be allowed in this policy.", "wipAllowIndexingTitle": "Allow Windows Search Indexer to search encrypted items", "wipAllowIndexingTooltip": "Allows or disallows the indexing of items. This switch is for the Windows Search Indexer, which controls whether it will index items that are encrypted, such as the Windows Information Protection (WIP) protected files.", "wipAllowedAppsInfo": "These are the apps that must adhere to this policy.", "wipAppLockerFileUploadInfoBaloonText": "Allowed files are AppLocker files, which are XML.", "wipAppLockerFileUploadInfoText": "Please specify the file path to the file you want to import.", "wipCorpIdentityTooltip": "This field should contain only the primary domain. Any additional domains are to be added as 'Protected domains' under the 'Network perimeter' in the 'Advanced settings' tab.", "wipDesktopApps": "Desktop apps", "wipExemptAppsInfo": "These apps are exempt from this policy, and can freely access corporate data.", "wipLearnMore": "Learn more about WIP", "wipLearningTitle": "App learning report for Windows Information Protection", "wipMaxVersion": "Max Version", "wipMinVersion": "Min Version", "wipNoAppsSelected": "No apps selected.", "wipPolicyAddAps": "Add apps", "wipPolicyExemptAppsTitle": "Exempt apps", "wipPolicyImportApps": "Import apps", "wipPolicyProtectedAppsTitle": "Protected apps", "wipPotocolsWarningMessage": "Caution: modifying these settings changes how Intune blocks or allows data transfer to other applications. Do not modify these settings unless you understand the potential for data leaks. You can learn more here.", "wipPotocolsWarningMessageIos": "Caution: modifying these settings changes how Intune blocks or allows data transfer to other applications. Do not modify these settings unless you understand the potential for data leaks. You can learn more here.