MrBHall
Members-
Posts
9 -
Joined
Content Type
Forums
News
20th
EduGeek EDIT Conference
Blogs
Everything posted by MrBHall
-
Local exam user accounts not signing out correctly on shared devices
MrBHall replied to MrBHall's topic in Windows 11
Hi @NegativeKillDeath, Yes the machines do have Fast Boot enabled by default. However this issue didn't to happen when we used to have Windows 10, so I'm assuming this is a fairly new thing. Thanks. -
Hello, We've come across what I think would be a rare issue where Windows 11 thinks the local exam user is still signed in after the machine had restarted, but as soon after a few minutes has gone by, it clears itself. The exam accounts that we have are usually restricted and all of their files are stored onto a file server using Folder Redirection. As we manage the majority of our devices centrally by hybrid-joined domain, so I suspect this to be Intune related delay with policies being synced as we clearly have a Shared PC policy in place which prevents users from switching from one account to the other. These are the issues we've found so far and looked: Group Policy and Local Security Policy are set correctly (e.g. “Don’t display last signed‑in user” is enabled) Intune policies do not appear to be overriding domain policies. The issue seems machine‑based, not user‑based. We suspect this to be a Windows 11 bug affecting only local and non Microsoft 365 associated accounts, particularly as now we have them hybrid-joined to Intune as well still using local Active Directory. If anyone could reach out and confirm to me whether this is a known bug and whether there is a workaround to this, that would be greatly appreciated. Kind regards, MrBHall
-
Group Policy Issues - Shortcuts and Applications
MrBHall replied to MrBHall's topic in Windows Server 2022
Good Morning All, Just to give you a quick update that I have managed to resolve both of these issues after a few head scratching days. Firstly, it appears that the delegated permissions when trying to copy a file to its destination were incorrect, the Authenticated Users was somehow set with read access with security filtering and I think this was preventing it from copying the file. The second issue appears to resolve itself after the first issue I had encountered, so it seems to be a permission & security issue with the group policies. Thank you for reading my thread. Ben- 1 reply
-
- 2
-
-
Hello, I am struggling with quite a lot of things lately with in regards to applying the group policy for shortcuts and applications from my Windows Server 2022 domain controller. Firstly, I am having issues where I am trying to push out a *.bat file under the Files node under Computer Peferences part of the GPO. It appears that the target path can be accessed fine but it is saying that access is denied in the event logs each time I do a gpupdate - see this below. "The computer 'update.bat' preference item in the 'Software Application {Censored}' Group Policy Object did not apply because it failed with error code '0x80070005 Access is denied.' This error was suppressed." The file is needed as part of the software install that I am trying to deploy myself.So what I have done is that I have set 'SYSTEM' and 'Authenticated Users' accounts to have "Read" access to the shared UNC path and it's files and I have set permissions for this on the NAS file server (Synology), but this doesn't appear to resolve the issue.I have also tried numerous things to resolve this, including: 'sfc /scannow' command method on local machine moving the file and trying a new UNC path in new location updating RPC registry keys removing the policy, recreated a new GPO deleting the file, and recreated new batch file but kept the name As you can see I am nearly out of options here and about to ambandon ship on this one. However, the only thing I have not looked into greater detail is the Windows Defender/Firewall and possibly some settings with the DFS, SMB and NTFS. Secondly, I am trying to push out an application that is already an executable file (*.exe) by creating an shortcut to appear onto the client's desktop, and similar to the above scenario when updating the group policy, it could not find the file - see this below. The computer 'Executable App' preference item in the 'Software Group Policy {Censored}' Group Policy Object did not apply because it failed with error code '0x80070002 The system cannot find the file specified.' This error was suppressed. I have checked the UNC path which is the same as the one in the group policy and I can access this fine with no problems. So for whatever reason, it could not seem to find the file even though it is already targeted to make a shortcut. I have so far tried numerous things to resolve this, including: creating a manual shortcut of the .exe file and target that - this did not resolve it different UNC paths and server IP addresses, for example: \\server.local\app and \\192.168.x.x\app changing the shortcut from 'update' to 'create' - this did not resolve it recreating the group policy checking file permissions, SYSTEM and Authenticated Users already have access Again, I am out of options on this one and unsure what to do. If anyone could reach to me with suggestions & tips, that would be great. I look forward to hearing to all of your responses on the issues I am currently facing. Thank you, Ben.
-
Hello, I am thinking of inserting timetables into our ID Card software EasyBadge and I wondered if anyone have a way of exporting data from class timetables from a MIS system, in this case we use Bromcom. I can see EasyBadge has a external connection tool that allows it to pull data from a SQL server or Access database but I am unsure how the data would look and it could potentially cause issues. I might have to look at creating a separate timetable template and insert the text fields which would be used from the database. Could anyone suggest what I could do or does anyone have any other ideas? Many thanks, Ben
-
Can anyone help me here please. Many thanks, Ben
-
Hello, I have Windows 11 Pro connected to a domain and I have managed to configure a lock screen by adding the lock screen image via registry from a group policy which I've set. However, I'm coming to a problem that Windows Spotlight is still showing information on the lock screen even after I've disabled all of these settings in group policy. Microsoft seems to want Windows Spotlight on as default on Windows 10 Pro and not if you have Windows 10 Education for instance. So I am looking to see if there's a way of changing personalising the lock screen setting from 'Windows Spotlight' to 'Picture' using the registry. I am unable to change this now because I've set it to disable the personalise the lock screen option which is what I wanted it to do. Any help would be much appreciated. Many thanks, Ben
-
Hello, I would like to know if anyone has or uses some sort of plugin, script or Automate flow to setup real-time information that can be updated regularly by itself on our SharePoint Portal home page. I am thinking of displaying information such as date/time, weather, lessons (including lunch/break/hometime/holidays etc). Also would real-time information impact the performance of the site itself if it's continuing to fetch data from its source? Any suggestions would be welcome and feel free to ask me any more questions. Many thanks, Ben
- 1 reply
-
- information
- real time
-
(and 1 more)
Tagged with:
-
Hello,I would like to ask anyone in the EduGeek community who will have experienced this similar issue with OneDrive where it doesn't make any download progress after you double click to open up a random file from OneDrive or Teams folders within File Explorer, meaning that a file saying it's downloading 0% complete and nothing happens until you cancel it.We have two members of staff in our school who is having this problem. I have tried every step by manually unlinking & relinking their Office 365 account on OneDrive - which sometimes work for a short period of time and I have also tried resetting their OneDrive application completely, although again this works but does not resolve the problem. The last resort we would do is to clear the user's local profile from the their computer and possibly re-image it. Our system is set up to assign staff members from a particular group in Active Directory which then gives them access to their department folders in Teams and we have a Group Policy setup to do this for it. So, we suspect the cause would be due to the way we had our group policy to assign Team folders to them. If you let me know any thoughts or suggestions as to why this might be and I'll pass this onto our third line support team. Many thanks, Ben
-
- active directory
- office 365
-
(and 2 more)
Tagged with:
