Comment by bigfatkitten
7 hours ago
I manage both, alongside macOS. There are heaps of things that are trivial to do on a Windows or macOS desktop fleet that are a headache on Linux.
macOS is the easiest endpoint platform to manage. Apple’s MDM capabilities are amazing, and don’t leave me wanting for much at all other than application control, but there are plenty of commercial apps to do this.
Windows (in an Active Directory environment) is pretty good, but Group Policy has grown unwieldy over the decades. Policies can conflict in strange ways, and Microsoft has no made no effort to keep their policy language consistent. Sometimes ‘enabled’ means a feature is enabled, other times it means it is disabled, and vice versa.
Deploying hardware-bound machine certificates for 802.1x, VPN etc to Windows or macOS is extremely easy. Takes 10 minutes to set up.
On Linux, this is a very significant engineering effort that would take months, assuming you happen to have people with the skills on your payroll at all.
No comments yet
Contribute on Hacker News ↗