MD-101: Managing Modern Desktops
MD-101: Managing Modern Desktops are part of the requirements for the Microsoft 365 Certified: Modern Desktop Administrator Associate
Exam requirements
The official exam document are published here: https://www.microsoft.com/en-us/learning/exam-MD-101.aspx
Exam preparation
No Exam preparation video covering the exam added yet.
Books covering the exam
Exam Ref MD-101 Managing Modern Desktops, 1st Edition
- Author: Andrew Bettany, Andrew Warren
- ISBN-13: 978-0135560839
- ISBN-10: 0135560837
Pre-order on Amazon.com
Video training for the exam
Pluralsight
This course on Pluralsight are for the new MD-101 exam:
- MD-101: Microsoft Modern Desktop Administrator: Managing Microsoft Desktops
https://www.pluralsight.com/paths/certificate/microsoft-modern-desktop-administrator-managing-microsoft-desktops-md-101
These courses on Pluralsight are for the old 70-697 and 70-698 exams, but covers a lot of the exam objectives in the MD-101 exam:
- 70-698: Installing and Configuring Windows 10
https://www.pluralsight.com/paths/installing-and-configuring-windows-10-70-698 - 70-697: Configuring Windows Devices
https://www.pluralsight.com/paths/configuring-windows-devices-70-697
Microsoft Ignite
- BRK3011 – Deploying and managing Windows Information Protection
https://myignite.techcommunity.microsoft.com/sessions/64331?source=sessions - BRK2417 – What’s new in Windows Analytics: An introduction to Desktop Analytics
https://myignite.techcommunity.microsoft.com/sessions/64324
Other
- Configuring Azure Information Protection
https://www.youtube.com/watch?v=_yBg1Ti3ZMc
Online training
Open edX (free)
- Deploying the Modern Desktop
https://aka.ms/openedx-MD-101.1-about - Managing Modern Desktops and Devices
https://aka.ms/openedx-MD-101.2-about - Protecting Modern Desktops and Devices
https://aka.ms/openedx-MD-101.3-about
Instructor-led training
Microsoft Learning Partner
- Course MD-101T01-A: Deploying the Modern Desktop
https://docs.microsoft.com/en-us/learn/certifications/courses/md-101t01 - Course MD-101T02-A: Managing Modern Desktops and Devices
https://docs.microsoft.com/en-us/learn/certifications/courses/md-101t02 - Course MD-101T03-A: Protecting Modern Desktops and Devices
https://docs.microsoft.com/en-us/learn/certifications/courses/md-101t03
Exam Objectives
Deploy and update operating systems (15-20%)
- Plan and implement Windows 10 by using dynamic deployment
- Evaluate and select an appropriate deployment options
https://docs.microsoft.com/en-us/windows/deployment/windows-10-deployment-scenarios/ - Pilot deployment
https://docs.microsoft.com/en-us/windows/deployment/deploy-whats-new/ - Manage and troubleshoot provisioning packages
https://docs.microsoft.com/en-us/windows/configuration/provisioning-packages/provisioning-packages/
- Evaluate and select an appropriate deployment options
- Plan and implement Windows 10 by using Windows Autopilot
- Evaluate and select an appropriate deployment options
https://docs.microsoft.com/en-us/windows/deployment/windows-autopilot/windows-autopilot-scenarios/ - Pilot deployment
https://docs.microsoft.com/en-us/windows/deployment/windows-autopilot/demonstrate-deployment-on-vm/ - Create, validate, and assign deployment profile
https://docs.microsoft.com/en-us/windows/deployment/windows-autopilot/profiles/ - Extract device HW information to CSV file
https://docs.microsoft.com/en-us/windows/deployment/windows-autopilot/add-devices/ - Import device HW information to cloud service
https://docs.microsoft.com/en-us/intune/enrollment-autopilot/ - Troubleshoot deployment
https://docs.microsoft.com/en-us/windows/deployment/windows-autopilot/troubleshooting/
- Evaluate and select an appropriate deployment options
- Upgrade devices to Windows 10
- Identify upgrade and downgrade paths
https://docs.microsoft.com/en-us/windows/deployment/upgrade/windows-10-upgrade-paths/
https://docs.microsoft.com/en-us/windows/deployment/upgrade/windows-10-edition-upgrades/ - Manage in-place upgrades
https://docs.microsoft.com/en-us/windows/deployment/windows-10-deployment-scenarios#in-place-upgrade/ - Configure a Windows analytics environment
https://docs.microsoft.com/en-us/windows/deployment/update/windows-analytics-azure-portal/
https://docs.microsoft.com/en-us/windows/deployment/upgrade/upgrade-readiness-get-started/ - Perform Upgrade Readiness assessment
https://docs.microsoft.com/en-us/windows/deployment/upgrade/use-upgrade-readiness-to-manage-windows-upgrades/ - Migrate user profiles
https://docs.microsoft.com/en-us/windows/deployment/usmt/usmt-technical-reference/
- Identify upgrade and downgrade paths
- Manage updates
- Configure Windows 10 delivery optimization
https://docs.microsoft.com/en-us/windows/deployment/update/waas-delivery-optimization/ - Configure Windows Update for Business
https://docs.microsoft.com/en-us/windows/deployment/update/waas-configure-wufb/ - Deploy Windows updates
https://docs.microsoft.com/en-us/windows/deployment/update/waas-manage-updates-wufb/ - Implement feature updates
https://docs.microsoft.com/en-us/windows/deployment/update/waas-quick-start/ - Monitor Windows 10 updates
https://docs.microsoft.com/en-us/windows/deployment/update/update-compliance-monitor/
- Configure Windows 10 delivery optimization
- Manage device authentication
- Manage authentication policies
https://docs.microsoft.com/en-us/windows-server/security/windows-authentication/windows-authentication-overview/ - Manage sign-on options
https://docs.microsoft.com/en-us/windows/security/identity-protection/hello-for-business/hello-identity-verification/ - Perform Azure AD join
https://docs.microsoft.com/en-us/azure/active-directory/devices/overview#azure-ad-joined-devices
- Manage authentication policies
Manage policies and profiles (35-40%)
- Plan and implement co-management
- Implement co-management precedence
https://docs.microsoft.com/en-us/windows/client-management/mdm/policy-csp-controlpolicyconflict/ - Migrate group policy to MDM policies
https://docs.microsoft.com/en-us/sccm/core/clients/manage/co-management-switch-workloads/ - Recommend a co-management strategy
https://docs.microsoft.com/en-us/sccm/core/clients/manage/co-management-overview/
- Implement co-management precedence
- Implement conditional access and compliance policies for devices
- Implement conditional access policies
https://docs.microsoft.com/en-us/azure/active-directory/conditional-access/overview/ - Manage conditional access policies
https://docs.microsoft.com/en-us/intune/conditional-access-exchange-create/ - Plan conditional access policies
https://docs.microsoft.com/en-us/intune/create-conditional-access-intune/ - Implement device compliance policies
https://docs.microsoft.com/en-us/intune/quickstart-set-password-length-android/ - Manage device compliance policies
https://docs.microsoft.com/en-us/intune/device-compliance-get-started/ - Plan device compliance policies
https://docs.microsoft.com/en-us/intune/device-compliance-get-started/
- Implement conditional access policies
- Configure device profiles
- Implement device profiles
https://docs.microsoft.com/en-us/intune/device-profile-create/ - Manage device profiles
https://docs.microsoft.com/en-us/intune/device-profile-assign/ - Plan device profiles
https://docs.microsoft.com/en-us/intune/planning-guide-requirements/
- Implement device profiles
- Manage user profiles
- Configure user profiles
https://docs.microsoft.com/en-us/windows-server/storage/folder-redirection/folder-redirection-rup-overview/ - Configure Enterprise State Roaming in Azure AD
https://docs.microsoft.com/en-us/azure/active-directory/devices/enterprise-state-roaming-overview/ - Configure sync settings
https://docs.microsoft.com/en-us/azure/active-directory/devices/enterprise-state-roaming-windows-settings-reference/ - Implement Folder Redirection (including OneDrive)
https://docs.microsoft.com/en-us/onedrive/redirect-known-folders/
- Configure user profiles
Manage and protect devices (15-20%)
- Manage Windows Defender
- Implement and manage Windows Defender Application Guard
https://docs.microsoft.com/en-us/windows/security/threat-protection/windows-defender-application-guard/wd-app-guard-overview/ - Implement and manage Windows Defender Credential Guard
https://docs.microsoft.com/en-us/windows/security/identity-protection/credential-guard/credential-guard/ - Implement and manage Windows Defender Exploit Guard
https://docs.microsoft.com/en-us/windows/security/threat-protection/windows-defender-exploit-guard/windows-defender-exploit-guard - Implement Windows Defender Advanced Threat Protection
https://docs.microsoft.com/en-us/windows/security/threat-protection/windows-defender-atp/evaluate-atp/ - Integrate Windows Defender Application Control
https://docs.microsoft.com/en-us/windows/security/threat-protection/windows-defender-application-control/windows-defender-application-control-design-guide/ - Manage Windows Defender Antivirus
https://docs.microsoft.com/en-us/windows/security/threat-protection/windows-defender-antivirus/deploy-manage-report-windows-defender-antivirus/
- Implement and manage Windows Defender Application Guard
- Manage Intune device enrollment and inventory
- Configure enrollment settings
https://docs.microsoft.com/en-us/intune/quickstart-enroll-windows-device/ - Configure Intune automatic enrollment
https://docs.microsoft.com/en-us/intune/quickstart-setup-auto-enrollment/ - Enable device enrollment
https://docs.microsoft.com/en-us/intune/enrollment-options/ - Enroll non-Windows devices
https://docs.microsoft.com/en-us/intune/device-enrollment/ - Enroll Windows devices
https://docs.microsoft.com/en-us/intune/windows-enroll/ - Generate custom device inventory reports
https://docs.microsoft.com/en-us/intune/reports-nav-create-intune-reports/ - Review device inventory
https://docs.microsoft.com/en-us/intune/device-inventory/
- Configure enrollment settings
- Monitor devices
- Monitor device health (e.g., log analytics, Windows Analytics, or other cloud-based tools)
https://docs.microsoft.com/en-us/windows/deployment/update/device-health-monitor/ - Monitor device security
https://docs.microsoft.com/en-us/intune/advanced-threat-protection/
- Monitor device health (e.g., log analytics, Windows Analytics, or other cloud-based tools)
Manage apps and data (25-30%)
- Deploy and update applications
- Assign apps to groups
https://docs.microsoft.com/en-us/intune/apps-deploy - Deploy apps by using Intune
https://docs.microsoft.com/en-us/intune/apps-windows-10-app-deploy/ - Deploy apps by using Microsoft Store for Business
https://docs.microsoft.com/en-us/microsoft-store/distribute-apps-to-your-employees-microsoft-store-for-business/ - Deploy O365 ProPlus
https://docs.microsoft.com/en-us/DeployOffice/deployment-guide-for-office-365-proplus/ - Enable sideloading of apps into images
https://docs.microsoft.com/en-us/windows-hardware/manufacture/desktop/sideload-apps-with-dism-s14/ - Gather Office readiness data
https://docs.microsoft.com/en-us/deployoffice/use-the-readiness-toolkit-to-assess-application-compatibility-for-office-365-pro/ - Configure IE Enterprise mode
https://docs.microsoft.com/en-us/internet-explorer/ie11-deploy-guide/turn-on-enterprise-mode-and-use-a-site-list/ - Configure and implement assigned access or public devices
https://docs.microsoft.com/en-us/windows/configuration/kiosk-prepare/
- Assign apps to groups
- Implement Mobile Application Management (MAM)
- Implement MAM policies
https://docs.microsoft.com/en-us/intune/app-protection-policy/ - Manage MAM policies
https://docs.microsoft.com/en-us/intune/app-protection-policies/ - Plan MAM
https://docs.microsoft.com/en-us/intune/planning-guide-requirements/ - Configure Windows Information Protection
https://docs.microsoft.com/en-us/intune/windows-information-protection-configure/ - Implement Azure Information Protection templates
https://docs.microsoft.com/en-us/azure/information-protection/configure-policy-templates/ - Securing data by using Intune
https://docs.microsoft.com/en-us/intune/device-protect/
- Implement MAM policies