DSCResources/cIntuneDeviceCompliancePolicyAndroidWorkProfile/cIntuneDeviceCompliancePolicyAndroidWorkProfile.schema.psm1
configuration cIntuneDeviceCompliancePolicyAndroidWorkProfile { param ( [Parameter()] [hashtable[]] $Items ) <# IntuneDeviceCompliancePolicyAndroidWorkProfile [String] #ResourceName { DisplayName = [string] [AccessTokens = [string[]]] [AdvancedThreatProtectionRequiredSecurityLevel = [string]{ high | low | medium | notSet | secured | unavailable }] [ApplicationId = [string]] [ApplicationSecret = [PSCredential]] [Assignments = [MSFT_DeviceManagementConfigurationPolicyAssignments[]]] [CertificateThumbprint = [string]] [Credential = [PSCredential]] [DependsOn = [string[]]] [Description = [string]] [DeviceThreatProtectionEnabled = [bool]] [DeviceThreatProtectionRequiredSecurityLevel = [string]{ high | low | medium | notSet | secured | unavailable }] [Ensure = [string]{ Absent | Present }] [ManagedIdentity = [bool]] [MinAndroidSecurityPatchLevel = [string]] [OsMaximumVersion = [string]] [OsMinimumVersion = [string]] [PasswordExpirationDays = [UInt32]] [PasswordMinimumLength = [UInt32]] [PasswordMinutesOfInactivityBeforeLock = [UInt32]] [PasswordPreviousPasswordBlockCount = [UInt32]] [PasswordRequired = [bool]] [PasswordRequiredType = [string]{ alphabetic | alphanumeric | alphanumericWithSymbols | any | deviceDefault | lowSecurityBiometric | numeric | numericComplex }] [PasswordSignInFailureCountBeforeFactoryReset = [UInt32]] [PsDscRunAsCredential = [PSCredential]] [RoleScopeTagIds = [string]] [SecurityBlockJailbrokenDevices = [bool]] [SecurityDisableUsbDebugging = [bool]] [SecurityPreventInstallAppsFromUnknownSources = [bool]] [SecurityRequireCompanyPortalAppIntegrity = [bool]] [SecurityRequiredAndroidSafetyNetEvaluationType = [string]{ basic | hardwareBacked }] [SecurityRequireGooglePlayServices = [bool]] [SecurityRequireSafetyNetAttestationBasicIntegrity = [bool]] [SecurityRequireSafetyNetAttestationCertifiedDevice = [bool]] [SecurityRequireUpToDateSecurityProviders = [bool]] [SecurityRequireVerifyApps = [bool]] [StorageRequireEncryption = [bool]] [TenantId = [string]] } #> Import-DscResource -ModuleName PSDesiredStateConfiguration Import-DscResource -ModuleName Microsoft365DSC $dscResourceName = 'IntuneDeviceCompliancePolicyAndroidWorkProfile' $param = $PSBoundParameters $param.Remove("InstanceName") $dscParameterKeys = 'DisplayName' -split ', ' foreach ($item in $Items) { if (-not $item.ContainsKey('Ensure')) { $item.Ensure = 'Present' } $keyValues = foreach ($key in $dscParameterKeys) { $item.$key } $executionName = $keyValues -join '_' $executionName = $executionName -replace "[\s()\\:*-+/{}```"']", '_' (Get-DscSplattedResource -ResourceName $dscResourceName -ExecutionName $executionName -Properties $item -NoInvoke).Invoke($item) } } |