With the publication of the latest updates for Windows 11, including Moment 4 and Windows 11 23H2, Microsoft has added a number of advanced features to its latest operating system. This time we focus on what’s new Windows 11 intended mainly for those who use the operating system professionally and corporately.
Windows 11 is still little used in the field business: companies, as is known, prefer to focus on more stable and reliable operating systems, which can count on a solid tradition of updates gradually released over time. So here it is Windows 10supported until at least mid-October 2025, still remains an important point of reference for professionals and businesses today.
What’s new in Windows 11 for professionals and businesses
The release of the second feature update of the history of Windows 11 (23H2) represents a decent milestone for Microsoft. Windows 11 installations are below expectations, for various reasons and for some mistakes that we believe the Redmond company has made. For example, it is premature for us to prevent theWindows 11 installation (at least on paper), for those who do not have a system equipped with at least a processor Intel Kaby Lake eighth generation (number “8” as a prefix in the model code) or a CPU AMD Ryzen 2000.
There are many processors from previous generations that have no difficulty, especially if supported by at least 4 GB of RAM, in loading and managing Windows 11.
In any case, a good part of what’s new in Windows 11 for professionals and companies we will also see them confirmed in future versions of the operating system. So it’s worth starting to dig into the “folds” of Windows 11 to find out which useful features will be exploitable in a business context.
Passwordless Windows 11 login experience
With recent releases of Windows 11, it becomes possible to set the policy EnablePasswordlessExperience per prevent the use of the password as an authentication system in the logon screen. Using Windows 11 without a password implies the need for users to use other tools such as access by entering the PIN, fingerprint recognition, facial features and so on.
To activate the passwordless access mode However, in Windows 11 it is essential that each system is managed with a centralized approach using MDM software (Mobile Device Management) come Microsoft Intune.
Another new feature is operating system-level support for passkeys, which are useful for accessing web services such as Microsoft 365. When a user logs in to an online service, their device generates a new key pair. The private key is stored securely on the user’s device, while the public key is registered on the service side, in the cloud.
To authenticate, the device must prove that it possesses the private key by passing a “challenge”. The private keys they can only be used after being unlocked via biometric methods or PIN.
Finally, with Windows 11 it becomes possible to perform theWeb authentication using the Microsoft Authenticator application or leveraging a federated SAML P-Identity.
Password management with Windows LAPS
Windows LAPS (Local Administrator Password Solution) is a Windows feature that automatically manages and performs password changes for local administrator accounts connected to a domain. The password they are randomly set and stored in Active Directory (AD) protected by ACLs, so that only eligible users can read them or request their reset.
Using a tool like Windows LAPS you can manage passwords, configure security policies, access reports on password rotation. To implement and configure LAPS, you can use i security criteria of Intune, which replaces the use of legacy Microsoft LAPS.
Among the new features added in Windows 11, LAPS allows the password encryption in Active Directory, automatic reset after a defined period of time and DSRM account management.
DSRM (Directory Services Restore Mode) is a special mode in which a Windows Server domain controller can be started to allow Active Directory recovery in the event of a serious problem or corruption of stored data. DSRM account management is a critical part of administering Windows domain controllers to help address disaster situations and data loss.
Automatic system configuration recovery
The OMA-DM SyncML protocol introduced in Windows 11 23H2 allows you to restore a desired configuration of the system at regular intervals, preventing computers from deviating from it. The functionality, called Config Refreshcan also be enabled in this case via MDM systems such as Intune.
After activation of Config Refreshthe policy pre-established are automatically applied on endpoint every 90 minutes. However, it is possible to reduce the interval up to 30 minutes.
The configuration decided by the IT administrator can be maintained and restored on a regular basis without requiring continuous interaction or control of the devices by Intune. This approach simplifies the management of a large number of Windows systems.
What’s new in the File Explorer interface and features
As already widely anticipated in these pages, File Explorer gain the chance to open others compressed file formats including RAR and 7-Zip, alongside the classic Zip archives.
Five years after introducing a preview ofcard interface Of File Explorerthe same functionality finally becomes available to all Windows 11 users.
Il Task Manager Windows 11 also now includes the ability to apply filters on running processes so as to identify those of interest at a glance. Furthermore, it offers the possibility to change the theme and therefore the colors of the window.
Lastly, Copilot for Microsoft 365 is not yet available in Europe due to the ongoing adaptation to current regulations.