Profiles and Warranty Settings
Windows agent policy
Section titled “Windows agent policy”This section allows administrators to configure custom policies for Windows agents deployed on end-user machines. Policies control update behavior, local settings, security hardening, and application management. Administrators can create, copy, or delete multiple profiles tailored to different device types such as servers or workstations.
Policy list
Section titled “Policy list”This table displays all existing Windows Agent Policies. Only the Default policy is included by default; the others (e.g., Server, Workstation, Workstation-Personal) were manually created as examples. Each policy shows its name, type, and available actions, such as duplicate, edit, or delete.
- Default – The only predefined configuration template available upon system installation
- Server – Example custom policy created for Windows Server environments
- Workstation – Example policy for general end-user machines
- Workstation-Personal – Example policy customized for personal-use endpoints
Use the Create button to define a new custom profile. Each profile can be uniquely configured using multiple setting tabs.
Device profile
Section titled “Device profile”This section defines granular configuration options for Windows agents assigned to user devices. Settings are grouped by device-level behaviors and OS-related policies.
Settings
Section titled “Settings”Automatically detect settings Enables automatic configuration detection for managed devices. Auto-Update Autopilot Keeps Autopilot configuration updated automatically. Drive Mapping Controls user drive mapping policies on the device. Federated Search Allows federated search folders to be pushed to the system. Low Space Alert Triggers alerts when available disk space falls below the configured threshold. Upload Max Size or Timeout Limits the size and time for data uploads from the device. Number of Days before Orphaned Sets the number of days without agent check-in before the device is marked as orphaned. RemoteApp Folder Specifies the folder name used when assigning RemoteApps to the user. Wsus Server Defines the internal WSUS server URL for Windows Updates. WSUS Target Group Target group for WSUS updates. WSUS Feature Update Group Specifies OS versions for applying feature update policies (Windows 7–11, Server 2008–2022). MAPI Profile Allows configuration of local Outlook profile type (e.g., On-Premise or Cloud). Trusted Sites Manages browser or system-level trusted zones. Warranty Info Enabled Enables collection of warranty status and related metadata. Geolocation Allows geolocation data collection (may allow user override). Telemetry Enabled Enables system telemetry reporting for diagnostics and analytics. Windows Update Settings Applies Windows Update configuration through the agent. Screen Saver Enables enforcement of screen saver behavior. Screen Saver – On resume, display logon screen Forces password entry after resuming from screen saver. Screen Saver Time Out, minutes Specifies idle time (in minutes) before screen saver activates. Sleep Timeout, when plugged in (seconds) Inactivity threshold before sleep mode triggers on AC power. Sleep Timeout, on battery power (seconds) Sleep timeout while on battery power. Display Timeout, when plugged in (seconds) Turns off display after inactivity on plugged-in devices. Display Timeout, on battery power (seconds) Controls screen timeout duration while on battery. Intune Device Ownership Enabled Marks the device as company-owned within Microsoft Intune. Auto-Enroll in Intune if member of Azure AD Automatically enrolls device in Intune if joined to Azure AD. Microsoft Defender Ensures Microsoft Defender is enabled on the system. Device Local Admin Enabled Grants the user local administrator rights on the device. Windows Disk Cleanup Runs disk cleanup utilities automatically. Third Party Patching Allows patch management for third-party (non-Microsoft) applications. Enroll in Microsoft Autopilot Registers the device with Microsoft Autopilot for provisioning. Max Upload Size, MB Specifies maximum upload file size from the device. Max Upload Timeout, seconds Sets the timeout limit for uploads from the agent. Low Space Alert, GB Defines the free space limit to trigger low space alert (in GB). RemoteApp Folder Name Custom folder label under which RemoteApps appear. Federated Search Folder Name Custom name for federated search folders applied by the policy. OS for Feature Update Group Selects OS versions targeted by WSUS feature updates. Screen Saver (dropdown) Provides a list of selectable screen saver types. Sleep Timeout (seconds) Sleep timer for devices without separation by power source. Never Disables sleep timeout if checked. Sleep Timeout, on battery power (seconds) Defines the idle time before the system enters sleep mode on battery power. Display Timeout, when plugged in (seconds) Specifies how long the screen remains on while the system is plugged in. Display Timeout, on battery power (seconds) Specifies how long the screen remains on while running on battery power. Azure IoT Hub connection string Field for providing the Azure IoT Hub connection string, if used for device management. Telemetry Storage Connection String Used to store telemetry data collected from managed devices. Telemetry Storage Container Specifies the name of the Azure Blob container used to store telemetry data. Azure Maps Account API Key API key for integrating with Azure Maps location services.
Device profile: warranty info
Section titled “Device profile: warranty info”HP API URL URL for querying HP device warranty data. HP API Key Authentication key for accessing HP warranty API services. HP API Secret Secret token used for secure access to HP warranty API.