Windows 10 1809 có gì mới

In this article we describe new & updated features of interest lớn IT Pros for Windows 10, version 1809. This update also contains all features and fixes included in previous cumulative updates lớn Windows 10, version 1803.

You watching: Windows 10 1809 có gì mới

The following 3-minute video summarizes some of the new features that are available for IT Pros in this release.



Windows Autopilot self-deploying mode

Windows Autopilot self-deploying mode enables a zero touch device provisioning experience. Simply power on the device, plug it into the Ethernet, and the device is fully configured automatically by Windows Autopilot.

This self-deploying capability removes the current need lớn have an kết thúc user interact by pressing the “Next” button during the deployment process.

You can utilize Windows Autopilot self-deploying mode khổng lồ register the device to an AAD tenant, enroll in your organization’s MDM provider, & provision policies và applications, all with no user authentication or user interaction required.

To learn more about Autopilot self-deploying mode & to lớn see step-by-step instructions khổng lồ persize such a deployment, Windows Autopilot self-deploying mode.


SetupDiag version 1.4 is released. SetupDiag is a standalone diagnostic tool that can be used to lớn troubleshoot issues when a Windows 10 tăng cấp is unsuccessful.


We’ve continued lớn work on the Current threats area in Virus và threat protection, which now displays all threats that need action. You can quickly take action on threats from this screen:


With controlled folder access you can help prevent ransomware và other destructive malware from changing your personal files. In some cases, apps that you normally use might be blocked from making changes to lớn comtháng folders like DocumentsPictures. We’ve made it easier for you to add apps that were recently blocked so you can keep using your device without turning off the feature altogether.

When an phầm mềm is blocked, it will appear in a recently blocked apps các mục, which you can get khổng lồ by clicking Manage settings under the Ransomware protection heading. Cliông chồng Allow an tiện ích through Controlled folder access. After the prompt, click the + button and choose Recently blocked apps. Select any of the apps lớn add them to lớn the allowed menu. You can also browse for an phầm mềm from this page.

We added a new assessment for the Windows time service to lớn the Device performance & health section. If we detect that your device’s time is not properly synced with our time servers & the time-syncing service is disabled, we’ll provide the option for you khổng lồ turn it back on.

We’re continuing to work on how other security apps you’ve installed show up in the Windows Security ứng dụng. There’s a new page called Security providers that you can find in the Settings section of the tiện ích. Clichồng Manage providers khổng lồ see a danh sách of all the other security providers (including antivirus, firewall, và website protection) that are running on your device. Here you can easily open the providers’ apps or get more information on how lớn resolve sầu issues reported khổng lồ you through Windows Security.

This also means you’ll see more liên kết to other security apps within Windows Security. For example, if you open the Firewall & network protection section, you’ll see the firewall apps that are running on your device under each firewall type, which includes domain name, private, và public networks).


Silent enforcement on fixed drives

Through a Modern Device Management (MDM) policy, BitLocker can be enabled silently for standard Azure Active sầu Directory (AAD) joined users. In Windows 10, version 1803 automatic BitLocker encryption was enabled for standard AAD users, but this still required modern hardware that passed the Hardware Security Test Interface (HSTI). This new functionality enables BitLocker via policy even on devices that don’t pass the HSTI.

This is an update lớn the BitLocker CSP, which was introduced in Windows 10, version 1703, và leveraged by Intune & others.

This feature will soon be enabled on Olympia Corp as an optional feature.

Delivering BitLocker policy to AutoPilot devices during OOBE

You can choose which encryption algorithm to apply to lớn BitLocker encryption capable devices, rather than automatically having those devices encrypt themselves with the mặc định algorithm. This allows the encryption algorithm (và other BitLocker policies that must be applied prior to lớn encryption), khổng lồ be delivered before BitLocker encryption begins.

For example, you can choose the XTS-AES 256 encryption algorithm, and have sầu it applied to devices that would normally encrypt themselves automatically with the default XTS-AES 128 algorithm during OOBE.

To achieve sầu this:

For more information, see Setting the BitLocker encryption algorithm for Autopilot devices.

Windows Defender Application Guard Improvements

Windows Defender Application Guard (WDAG) introduced a new user interface inside Windows Security in this release. Standalone users can now install and configure their Windows Defender Application Guard settings in Windows Security without needing to lớn change registry key settings.

Additionally, users who are managed by enterprise policies will be able to lớn check their settings to see what their administrators have configured for their machines to better understvà the behavior of Windows Defender Application Guard. This new UI improves the overall experience for users while managing & checking their Windows Defender Application Guard settings. As long as devices meet the minimum requirements, these settings will appear in Windows Security. For more information, see Windows Defender Application Guard inside Windows Security App.

To try this:

Go to Windows Security & select App và browser control.

Under Isolated browsing, select Install Windows Defender Application Guard, then install và restart the device.

Select Change Application Guard settings.

Configure or kiểm tra Application Guard settings.

See the following example:





Windows Security Center

Windows Defender Security Center is now called Windows Security Center.

You can still get lớn the tiện ích in all the usual ways – simply ask Cortana lớn open Windows Security Center(WSC) or interact with the taskbar inhỏ. WSC lets you manage all your security needs, including Defender Antivirus & Windows Defender Firewall.

See more: Phần Mềm Đổi Đuôi - Download Total Video Converter 3

The WSC service now requires antivirus products to run as a protected process khổng lồ register. Products that have not yet implemented this will not appear in the Windows Security Center user interface, and Defender Antivi khuẩn will remain enabled side-by-side with these products.

WSC now includes the Fluent Design System elements you know and love. You’ll also notice we’ve sầu adjusted the spacing and padding around the ứng dụng. It will now dynamically form size the categories on the main page if more room is needed for extra info. We also updated the title bar so that it will use your accent color if you have sầu enabled that option in Màu sắc Settings.


Windows Defender Firewall now supports Windows Subsystem for Linux (WSL) processes

You can add specific rules for a WSL process in Windows Defender Firewall, just as you would for any Windows process. Also, Windows Defender Firewall now supports notifications for WSL processes. For example, when a Linux tool wants to allow access khổng lồ a port from the outside (like SSH or a web VPS lượt thích nginx), Windows Defender Firewall will prompt to lớn allow access just lượt thích it would for a Windows process when the port starts accepting connections. This was first introduced in Build 17627. Edge Group Policies

We introduced new group policies & Modern Device Management settings lớn manage Edge. The new policies include enabling & disabling full-screen mode, printing, favorites bar, and saving history; preventing certificate error overrides; configuring the trang chủ button & startup options; setting the New Tab page & Home button URL, & managing extensions. Learn more about the new Edge policies.

Windows Defender Credential Guard is supported by default on 10S devices that are AAD Joined

Windows Defender Credential Guard is a security service in Windows 10 built lớn protect Active sầu Directory (AD) domain name credentials so that they can"t be stolen or misused by malware on a user"s machine. It is designed to protect against well-known threats such as Pass-the-Hash và credential harvesting.

Windows Defender Credential Guard has always been an optional feature, but Windows 10-S turns this functionality on by mặc định when the machine has been Azure Active sầu Directory joined. This provides an added cấp độ of security when connecting to domain resources not normally present on 10-S devices. Please note that Windows Defender Credential Guard is available only to lớn S-Mode devices or Enterprise và Education Editions.

Windows 10 Pro S Mode requires a network connection

A network connection is now required khổng lồ mix up a new device. As a result, we removed the “skip for now” option in the network thiết đặt page in Out Of Box Experience (OOBE). Defender for Endpoint Defender for Endpoint has been enhanced with many new capabilities. For more information, see the following topics:

Cloud Clipboard

Cloud clipboard helps users copy content between devices. It also manages the clipboard history so that you can paste your old copied data. You can access it by using Windows+V. Set up Cloud clipboard:

Go khổng lồ Windows Settings và select Systems.

On the left menu, cliông xã on Clipboard.

Turn on Clipboard history.

Turn on Sync across devices. Chose whether or not lớn automatically sync copied text across your devices.

Kiosk thiết lập experience

We introduced a simplified assigned access configuration experience in Settings that allows device administrators khổng lồ easily mix up a PC as a kiosk or digital sign. A wizard experience walks you through kiosk cài đặt including creating a kiosk account that will automatically sign in when a device starts.

To use this feature, go to lớn Settings, search for assigned access, và open the Set up a kiosk page.

* Edge kiosk mode running in single-app assigned access has two kiosk types.

Digital / Interactive signage that displays a specific trang web full-screen & runs InPrivate mode.

Public browsing supports multi-tab browsing and runs InPrivate mode with minimal features available. Users cannot minimize, cthất bại, or open new Edge windows or customize them using Edge Settings. Users can clear browsing data và downloads, and restart Edge by clicking End session. Administrators can configure Edge to lớn restart after a period of inactivity.

* Edge kiosk mode running in multi-ứng dụng assigned access has two kiosk types.


The following Edge kiosk mode types cannot be mix up using the new simplified assigned access configuration wizard in Windows 10 Settings.

Public browsing supports multi-tab browsing and runs InPrivate mode with minimal features available. In this configuration, Edge can be one of many apps available. Users can cthảm bại & open multiple InPrivate mode windows.


Normal mode runs a full version of Edge, although some features may not work depending on what apps are configured in assigned access. For example, if the Store is not mix up, users cannot get books.


Learn more about Edge kiosk mode.

Registry editor improvements

We added a dropdown that displays as you type to help complete the next part of the path. You can also press Ctrl + Backspace khổng lồ delete the last word, and Ctrl + Delete khổng lồ delete the next word.


Faster sign-in to lớn a Windows 10 shared pc

Do you have shared devices deployed in your work place? Fast sign-in enables users to lớn sign in to lớn a shared Windows 10 PC in a flash!

To enable fast sign-in:

Set up a shared or guest device with Windows 10, version 1809.

Set the Policy CSPhường., và the Authentication & EnableFastFirstSignIn policies to enable fast sign-in.

Sign-in to lớn a shared PC with your account. You"ll notice the difference!


Web sign-in khổng lồ Windows 10


This is a private pnhận xét feature và therefore not meant or recommended for production purposes.

See more: Top 6 Phần Mềm Xóa Logo Video Bằng Remove Logo Now Nhanh Chóng


This is a private pĐánh Giá feature và therefore not meant or recommended for production purposes.