Jump to content

Recommended Posts

Posted

Im starting to regret moving our machines over to Windows 10 LTSB 2015. Things dont seem as stable as windows 7 and we are experiencing quite a lot of black screen of death after the user has logged on.

 

It's slow at processing logons and just seems really clunky, maybe its our hardware but during testing everything seemed fine.

Posted
Were having the black screen after logon issue too. I'm thinking it might be something to do with policy as it always does it after it's been put on the domain. Sometimes leaving it a while works, sometimes it needs rebooting.
Posted
I'm starting to regret moving our machines over to Windows 10 LTSB 2015.

Have you tried a more up-to-date version of Windows 10?

 

LTSB 2015 is over a year old so it's going to be quite buggy compared the latest Anniversary editions of Windows 10 (inc. LTSB 2016).

Posted
Have you tried a more up-to-date version of Windows 10?

 

LTSB 2015 is over a year old so it's going to be quite buggy compared the latest Anniversary editions of Windows 10 (inc. LTSB 2016).

 

Im wanting LTSB2016 but its not out yet to download, well its not on my VLSC. As soon as it's out we will be testing and deploying.

Posted

LTSB 2016 is released 1st October.

 

I found I had to use WMI filters to exclude a lot of my GPOS from Win10 and redo Win10 specific versions of them. I'm in a commercial setting though, so I'm not locking things down as hard as a school would (mainly just setting what I need).

Posted
Our logins are down to 30 secs for a new user. I'm happy with that

 

Im going to time mine tomorrow however we do run a fair few policies during user login.

Posted (edited)
Im starting to regret moving our machines over to Windows 10 LTSB 2015. Things dont seem as stable as windows 7 and we are experiencing quite a lot of black screen of death after the user has logged on.

 

It's slow at processing logons and just seems really clunky, maybe its our hardware but during testing everything seemed fine.

 

Touch wood that thanks to your input our just over 2,000 deployment of 1511 Enterprise has gone relatively smooth and survived two big Enrollment days and staff have been using it all week students have been logging into our Remote Access VDIs since 1st July.

 

The only outstanding issue I've got a week to fix is that.... The DefaultAppAssociation file from GPO refuses to run on the machines so edge is still default browser and it's took over PDFs from Acrobat DC - so spent a bit of time this afternoon during enrollment to use "Whatschanged" then I'll apply the changes into the Man Profiles. Or import into GPO.

 

We still have that issue of if someone logs off sometimes it doesn't clean the profile , now in the wild it looks like 40% of the time it doesn't do it cleanly.... So we have cheated / countered this by placing a "log off this PC" shortcut on the start menu and desktop that actually reboots the PC. (shutdown -r -t 1) And as nearly all of our estate is SSD its not that different to just logging out.

 

More than happy for you to have a nose at our GPOs mate it's the least I could do.

 

Looking at about consistent 8 second logins on i3's with SSD, about 17 seconds with non SSDs - and most of that is the silly "preparing Windows" and possibly Sophos being a pain and insisting on checking for updates on login. I think I have a KB from them about stopping It from doing that.

Edited by Asgard
Posted

Looking at about consistent 8 second logins on i3's with SSD, about 17 seconds with non SSDs - and most of that is the silly "preparing Windows" and possibly Sophos being a pain and insisting on checking for updates on login. I think I have a KB from them about stopping It from doing that.

 

Which KB is that ? Could you let us know. I can see something about delaying the update at switch on, but not on user login.

 

Thanks

 

Pete

Posted

I find enabling the policy which disables the first sign in animation really speeds up initial log in times. By about 50%.

 

Also I found I had to completely rewrite my gpos for windows 10. One schools setup completely broke win 10 once it was joined to the domain. The policies were from a 2003 xp setup still.

 

Took me about 3 days to completely rewrite a template GPO setup for pure win 10 2012 R2 network. Works beautifully now though.

 

You have to be FAR less restrictive with win 10. It just doesn't like a ton of the old lockdown settings.

Posted

We had a lot of problems with the 1511 and below versions of Windows 10, just reimaged all our machines in the school to the new Win 10 AU and they seem to be working so much better.

 

All the hardware and start menu bugs we had are gone, and logon times have been reduced dramatically.

 

We're not using LTSB though, I cleaned probably about 50% of the apps out of the normal Education AU image on the VLSC, I don't believe in deploying LTSB.

Posted
How come?

 

For me, there are two reasons:

 

1) No modern apps and no easy way to add them. Therefore, no Edge. Like it or not, this platform for provisioning apps is going to get more widespread.

 

2) Microsoft themselves say that you're not supposed to use the LTSB as a daily driver. I've found that the Education version is good enough, it doesn't have Cortana or the consumer stuff enabled by default so it's a simpler matter to strip it down to something more suitable.

Posted (edited)
Edge is in Enterprise LTSB

 

It wasn't when I last looked at it and the documentation here says that it isn't too.

 

Note that LTSB images will not contain most in-box Universal Windows Apps (for example, Microsoft Edge, Cortana, the Windows Store, the Mail and Calendar apps) because the apps or the services that they use will be frequently updated with new functionality and therefore cannot be supported on PCs running the LTSB OS

 

Has this changed?

Edited by Norphy
Posted

I went for the AU edition and am rushing to get it deployed around school.

 

I too rewrote alot of my GPs and did WMI filtering for just W10.

 

Only PC I am having issues with is my work one... which isnt on AU, the rest seem fine.

 

Oh except losing there printers sometimes.. but I think prepoluating the drivers helps.

  • 4 weeks later...
Posted
How come?

 

Because Microsoft don't recommend LTSB for daily use/workstations.

 

We're already starting to see things like Minecraft for Education only being supported on current branch/Education/whatever

Posted
Touch wood that thanks to your input our just over 2,000 deployment of 1511 Enterprise has gone relatively smooth and survived two big Enrollment days and staff have been using it all week students have been logging into our Remote Access VDIs since 1st July.

 

The only outstanding issue I've got a week to fix is that.... The DefaultAppAssociation file from GPO refuses to run on the machines so edge is still default browser and it's took over PDFs from Acrobat DC - so spent a bit of time this afternoon during enrollment to use "Whatschanged" then I'll apply the changes into the Man Profiles. Or import into GPO.

 

We still have that issue of if someone logs off sometimes it doesn't clean the profile , now in the wild it looks like 40% of the time it doesn't do it cleanly.... So we have cheated / countered this by placing a "log off this PC" shortcut on the start menu and desktop that actually reboots the PC. (shutdown -r -t 1) And as nearly all of our estate is SSD its not that different to just logging out.

 

More than happy for you to have a nose at our GPOs mate it's the least I could do.

 

Looking at about consistent 8 second logins on i3's with SSD, about 17 seconds with non SSDs - and most of that is the silly "preparing Windows" and possibly Sophos being a pain and insisting on checking for updates on login. I think I have a KB from them about stopping It from doing that.

The default app XML file though group policy only applies after 2nd login. If you using mandatory profiles it's pretty useless. You have to push out a dism command to set IE as default. Adobe Reader for PDFs.

 

Also shared mode in 1607 prevents app being copied to each users profile. It just does it if you start an app.

 

I think Windows 10 will get there it's just quite a shift in managing it.

Posted (edited)
The default app XML file though group policy only applies after 2nd login. If you using mandatory profiles it's pretty useless. You have to push out a dism command to set IE as default. Adobe Reader for PDFs.

 

Also shared mode in 1607 prevents app being copied to each users profile. It just does it if you start an app.

 

I think Windows 10 will get there it's just quite a shift in managing it.

 

Yeah we took the other approach and replaced the OEMDefaultAppAssociations.xml on all devices. That worked an absolute charm!

 

But I think that after near 10'years Mandatory profiles might of had their day here. Especially with MS baking App E-UV into Windows 10, so now a decision will be taken on what way we go

Edited by Asgard

Create an account or sign in to comment

You need to be a member in order to leave a comment

Create an account

Sign up for a new account in our community. It's easy!

Register a new account

Sign in

Already have an account? Sign in here.

Sign In Now



×
×
  • Create New...