Jump to content

robyholmes

Members
  • Posts

    2,547
  • Joined

Everything posted by robyholmes

  1. If you have the 'Preferred Domain Name' set that causes this issue.
  2. Yer I did think about this, but I'm 99% sure we haven't push this out (We maybe should, but that's another issue). I can't see it in Intune anywhere but then the instructions above don't cover Intune MDM. So I'll have to dig a bit deeper to confirm. If we have pushed it out, it doesn't work very well as other apps do have internet access, so it's not very good if we have. Ha.
  3. Hi All, We have a number of managed iPads which are registered with Apple School Manager, with Intune as the MDM. We push out a number of apps including Outlook, Teams, OneDrive, Word, Excel and PowerPoint, plus some others. We also push out Smoothwall Browser as well. The issue we're having since returning in September, is Outlook, Teams and OneDrive are not updating, they also show a 'Couldn't connect' or 'Unable to update' type message. Word, PowerPoint and Excel seem to work fine and can open OneDrive documents saved in September etc. Other apps (BBC Sports etc) also all appear to be working fine, as is Smoothwall Browser. This issues is present when connected via our BYOD network in School (Going via the Smoothwall UTM) and via a mobile data connection (Hotspot to a phone). Smoothwall have confirmed the cloud filter can't block apps outside of the browser so on the mobile data connection, we shouldn't have any filtering taking place in Outlook, OneDrive or Teams. I can't find any policies that might be linked to this issue, so I'm at a bit of a loss as to what it might be. Especially when other apps are working. It suggests a web filter issue but we should have ruled that out with our testing. Any suggestions welcome as to what to try next, or what might be causing it. Cheers, Rob
  4. Might be worth putting up the machines motherboard make and model. See if others have machines using the same, or similar motherboard.
  5. Bit more digging on this and I think Microsoft are doing A/B testing with this. (Seen both old 'OneDrive - ' and 'First Name -' name). As it doesn't seem to be linked to: Windows 11 Version or CU Installed OneDrive Version (V140 & 149 seen) Tenancy / Organisation Be interested to know if others are seeing this, but also the old 'OneDrive - Organisation' across different users.
  6. Microsoft seem to have changed the way OneDrive (Client in Windows 11) shows a users OneDrive for Business synced folder in File Explorer. It's showing the folder as 'First name - School/Business Name'. The problem for many schools, including the one I support is it's picking the users First Name, not the display name. I can't seem to find the specific announcement / notice Microsoft have made about this. But there was one for shortcuts being renamed to this naming scheme, so I take it they have applied the same naming convention directly to OneDrive itself, not just shortcuts to other folders or libraries inside OneDrive. In that notice there is no advice on how to change this. First, are others seeing this as well? Has anyone found a workaround to remove it? I'd rather not remove all staff first names as we use that for other systems (PowerAutomate etc) I'd like if it used the Display Name, you know the one used for being...Displayed? Thanks, Rob
  7. We've just started a switch to VirginMedia, who also don't provide a ONT device. So we've ordered a WAS110 fibre module which acts as a ONT using a SFP+ port. Allowing you to use your own router (UniFi in our case). Mainly gone this route as putting the new VM Hub into modem mode looks to be impossible or very flaky at best. More information on it here. Supports more than VM. https://fttppro.co.uk/replacing-the-hub-5x-with-a-was-110-sfp-module-on-virgin-medias-xgs-pon-broadband/
  8. Maybe a bit further away but used them many times and always been a fantastic job. C-Tech Solutions: https://www.c-techsolutions.co.uk/
  9. Thanks @ZeroHour that's done it!
  10. Yes, this is what we have in place. In fact it's my thread, I'm 'Accessing my memory bank' so to say, ha. However, blocking file:// also stops the in browser PDF viewer too, which is causing problems with certain sites that need it to load content. I seem to think someone commented in the thread with an alternative method to try, I just can't remember what it was. Hence trying to load it
  11. Hi, I'm trying to get to the following thead: https://www.edugeek.net/forums/how-do-you-do/237448-block-specific-html-file-eaglercraft.html However I seem to be taken to: https://www.edugeek.net/forums/topic/197507-unifi-upgrade-6020-warnings/ My Activity, Site Search and Google Search all have the same problem as the URL seems to be redirecting itself, rather than the result having the wrong URL.
  12. No notification here either, other than the 2 agents one we had late 2024 to early 2025. Free option is still listed as well to sign up to on there website. So you'd think that would go first.
  13. We're on the A1 + EMS A3 Add-on. Just watch your storage usage (100GB on 1A compared to 1TB on A3). It works for us but Microsoft do seem to be releasing new features to A3 only, not A1.
  14. I'm just (Like right now) testing Intune MS Store deployed version of it. But I'm also thinking of making it an optional installation. What does Adobe Reader now do that Edge / Chrome can't? Not a lot I suspect. (Other than try get you to purchase Adobe subscriptions...)
  15. If you have Entra ID P1, look at App Proxy. It's not perfect on Smoothwall but works for 95% of the tasks you need to do on it. All while protecting it via an extra, layer of security.
  16. It's a pretty rough script to be fair. There's been some better examples on here recently using Group Policy or Scheduled Tasks from a share. I was going to move to one of them but we're trying to jump ship to Intune for application management now. Hence the above request.
  17. Hi All, I know the question about how do you deploy Autodesk (Fusion) 360 shows up pretty regularly on here, but I'm yet to see anyway talk about deployment via Intune specifically. So, has anyone done it? It seems installing via Intune shouldn't be to difficult, Win32 the FusionAdminInstaller.exe. However it's when it comes to updating I'm unsure how best to cover it. As ideally I don't want to supersede the application each time it wants to update. Ideally we want to control when the update is done. And as such want it to be via the FusionAdminInstaller not the program updating itself. This means we can manage bandwidth usage more carefully. Currently we're using a super simple Group Policy script to install and update 360. Which works fairly well, but error checking the installer isn't something it can do. So I'd like to move away from it ideally. Anyone doing it via Intune or SCCM (Seen as that will likely work in Intune as well)? Thanks, Rob
  18. These are currently Windows 10 local domain devices, office, classroom teacher and ICT Suite machines. So they've always been onsite AD & GP managed. So while full Entra ID & Intune controlled might be the end goal, the plan with this step moving to Windows 11 is to dip our toes in the water lets say. We do have staff laptops which are solely Intune managed. They work well but have some downfalls for more shared user use. Currently Papercut MF is my main concern with moving to cloud joined and managed. Our staff laptops are printing via Mobility Print, which works but doesn't feel 'Mass printing' ready.
  19. So update on this. I've made progress on it. Got machines to join Intune now but there are a few things to note about this. First, I'm not using Autopilot, mainly as it's designed for Device to Entra ID, with Local AD bolted on. All the advice, including from Microsoft is to not use this for local domain machines unless you have too. So I'm not. I'm still using MDT for imaging the machine, with no Intune parts setup in MDT or the TS. Group Policy is set to Automatic MDM enrolment. So once the machine has finished the MDT process, joined AD and got this GP policy, it's trying to join Intune as the MDM. However, to do this, it needs a few things, first it needs the machine to already be in Entra ID. If you sync devices by Entra ID Connection (Formally Azure AD Connect), this can up to 30 minutes (Based on default 30 minute sync) plus some Entra ID processing time. So the MDT Task Sequence has normally long finished by this point. It also needs a user who has a MDM licence who has permission to join an MDM. This is normally 'Everyone' as long as you have MDM licencing to cover all users. Once that user logs on, it will join Intune via that user, and set that user as the 'Primary User'. It doesn't count towards the device joining number (Limited to 5 devices normally). So you don't need them to be a Device Enrolment Manager. So it appears the only method of using MDT & Intune, is to give it enough time to sync and then wait for a user to login. You then need to remove that user as the Primary User, so the machine changes to 'Shared Device' mode. Which is a pain but I'm hoping some scheduled scripting might resolve this, not sure. This site has been a big help to me, mainly the 'Things that can go wrong' section at the end. https://intunestuff.com/2025/01/28/microsoft-intune-autopilot-hybrid-entra-id-azure-ad-join-the-complete-guide/ Once joined to Intune, I've got Apps set to be required and optional on machines. Based on the 'System' context for the apps installation. Mainly of these are targeting groups I had setup in my local AD which I used to use for App-V targeting. Sometimes can be slow, but sometimes quick. Not done enough testing yet to work out why this is, but it's working which means I'm now enjoying some eduhobnobs in celebration. Well, in truth I've had it working over the week, I'm still enjoying them though soo.. Hope this helps those on a similar path to me. If I find anything more of use I'll let you know, but feel free to ask questions if you want more info. Cheers, Rob
  20. I've had Co-Management working ok with it registering the machines to Intune, but I'm trying to bypass needing that as well. I've got the Group Policy 'Automatic MDM Join' setup, but so far I've not got a machine to successfully join. However I've not had much time since my last post to mess with it. I've also avoided Autopilot so far for Local Domain Joined machines. I just use it for Entra Joined machines (Not hybrid joined). Things like staff laptops for example. My aim right now is to have MDM image a machine has it normally would, then Group Policy apply at the end of the MDT process. Machine joins the MDM (Ideally using the MDM Account which is a 'Enrolment Manager' or what ever they call it so you don't have a machine limit. At this point, the machine is Hybrid Joined to Intune, with Local Domain as it's 'Primary' control. Intune then deploys apps to the machine which is the main focus for having it in Intune right now. If I get more time to look at this in the next few weeks I'll let you know how I get on.
  21. Hi All, Currently we manage our domain joined machines from a DC server via Group Policy. We do have SCCM but it's only really being used for a couple of app installations, and monitoring anti-virus. It was never really setup to do very much at all and I don't want to invest any more time in it. With a move to Windows 11, I also need to move around from App-V which we currently use for a number of our third party apps. I've been testing using Intune to deploy apps to Windows 11 clients which were 'Co-Managed' in Intune, but sending them up from SCCM in the pilot co-management method. What I now what to do is skip the Co-Management bit and simply have Windows 11 machine appear in Intune. We're imaging by MDT still (As it works and I'm struggling to see how Autopilot works as a replacement for it). All our machines are normally Hybrid joined and synced via Azure AD Connect. I've got the 'Automatic MDM enrolment' set in Group Policy, but the machine doesn't appear in Intune. Looking in Entra ID, it's showing up, but with a registered status of 'Pending'. Although it does have a registered date on the list of devices before. The device itself when I run dsregcmd /status shows it as 'AzureADJoined' and 'DomainJoined'. But not MDM paths listed. So I'm clearly missing something here, but I'm not wondering if this is even the right path to take. As I keep finding people online saying 'Don't hybrid join and manage' or 'Use autopilot' followed by 'Don't use autopilot to local domain join'. So before I get further down this rabbit hole, am I right to keep digging? Cheers, Rob
  22. Yer that's what I've found. I've found this thread, which suggests it should be discounted, but I can't see it is: /forums/enterprise-software/240607-freshdesk-reseller.html
  23. Hi All, Would those people who purchase Freshdesk licences please let me know how you are purchasing these currently? I saw reference to them maybe being on a framework, but struggling to find which one. Or are you purchasing direct from Freshworks? Or via a reseller? How much, if any of a reduction in price are you getting by not buying directly based on the online pricing? Thanks, Rob
  24. We have used Flex Micros for many years. What we like about them is the separate monitor (As explained above, means the monitor can be retained and PC swapped. We aim for 12 years on monitor, 6 years on PC). They mount on the back of the monitor, so don't take up desk space, and the cable cover stops cables being removed and keeps things tidy. Durability wise, front USBs have been a problem in the last batch. VeryPC in the end have agreed to swap them when they fail under warranty. At first it did look like damage, but soon became clear they were weaker than they should have been. CPU fans sometimes fail, but again covered under warranty and aren't anything special to get replacement for outside of warranty. I would like VeryPC to use slightly better NVME drives, we seem to have a few issues with them, but again not much of an issue and it's easy to sort under warranty. So while this sounds like a number of issues, in relation to the amount we have and use they get, it's really not. We get them on a 5 year warranty (Return to base for students, onsite for staff) and it really doesn't cost much to do this. Which shows VeryPC are pretty confident in them as well. Going forward, I'd like to see some AMD based versions, which I'm sure are incoming. I've asked for a few years now for these, mainly as Intel have slipped back and cooling the intel chips needs more and more airflow. @VeryPC will be watching this thread, at least I hope they do as it's some really useful information from customers as to the pros and cons of devices in there range. Which is another plus point, they have a range to pick from so they should have something that suites your needs!
  25. Ahh that's better. Re-installed, for now at least. Of course they'll be a brand new app with the new forums along before long...
×
×
  • Create New...