-
Posts
4,144 -
Joined
-
Last visited
Content Type
Forums
News
20th
EduGeek EDIT Conference
Blogs
Everything posted by Sheridan
-
I set it to block all apps and extensions apart from the one I allow - but I didn't think Docs etc were in the web store, as they are Chrome apps?
-
I'me just experimenting with some chromebooks and admin in our G Suite domain. I've got one provisioned and its showing in the console as recently checked in. Now I haven't done a lot of config, but once a user has logged in I was expecting to see their core apps (Mail,drive,docs etc) in the 'All apps' section, or the taskbar but all they see is Chrome. Once in chrome the apps grid opens their apps for them, but I though they would also appear on the Chrome main page? I've looked into the admin section and tried to use Pinned apps, but the Domain Apps list is empty - have I got this the wrong way around? Its just a trial at the moment so I'm not sure whether I'm doing this the right way!
-
Hm that still shows nothing for me, what permissions did you have to check/change?
-
I've added a few apps to our W10 start menu tiles using the xml file on a network share. So far I've learned how inconsistent it can be, but one link I just can't get working is the one to Windows explorer (to either open a path like H: or simply just open at all) The lines in my xml file are: Is that the same method everyone else is using? The group doesn't appear at all.
-
I'm having some success with this method, but not 100% - its still taking two logins sometimes for the printers to appear and there doesn't appear to be a pattern to it. It really is about time MS got the basics working in this OS.
-
The last time I had issues with high cpu and memory usage I disabled the Windows firewall and it dropped right down. I never actually found what caused it and the PCs were reimaged in the end.
-
Thanks for the info folks, I'm building a set of two GPOS (staff only printers and shared) so that should minimise the delay as much as possible. I haven't noticed anything as yet with about 15 printers!
-
Adding them as a user GPP and targeting them to the Computer OU seems to be working so far. I'm now looking at a possible GPO where quite a lot of printers are in as GPPs (even though only 1 or two will be applied, depending on the computer logged into) Has anyone using user GPPs and targeting noticed any impact on login speeds - presumably scanning the list of printers and applying the relevant ones will have some overhead?
-
I didn't think it would be possible, I understand why as the two MDM's would be conflicting with each other when it came to Apps and licenses
-
I'm at a point now where I'll have to ditch meraki MDM - it works fine but once you hit the 100 device limit they then charge for 100+whatever extra license you want, making them very expsensive. So on to Mosyle we go! The problem is, I'm aiming to add new devices to Mosyle, and gradually migrate old devices from Meraki - but you can't assign the VPP token to more than one MDM as they both want to take ownership, I suppose I understand the principle behind it, but has anyone done this and found a way around it? I can't move all the meraki devices over in one go as they will take some time to get hold of. I didn't want to setup a new VPP account if I could avoid it, and I'm pretty sure apple won't allow that anyway.
-
I’ll give that a go. We want printers deployed based on the room they’re in which is a fairly common requirement. Works fine in W7 but fairly broken in 10. It’s a bit overkill having to put all of my printers GPOs on the users OUs and targeting them to the PC OUs but everything about W10 is a workaround at the moment.
-
What is it with W10 and printing, does any part of it actually work! Now I've noticed the shared printer server printers we've deployed using GPP (i.e specify the printer IP and the server name \\server\printer) simply print direct to the printer and bypass the server - missing any quotas or restrictions. And the old deployed printers policy no longer works in Windows 10 - so how on earth are you supposed to deploy a shared printer to a PC and not a user! We need to continue using this to make sure people are printing to the printers in their room - but it looks like this is broken as well.
-
We've been having this problem since well before the meltdown updates - on all of the versions of 10. We did suspect CSM at first but its doing it on machines that have had it removed and have never had it installed. We use Sophos AV here, can't see any evidence pointing to that - it can hang 20-30 minute after logging in with no apparent reason, its not just on login for us.
-
I haven't tried this yet as its so random - different users on different PCs at different times! Sometimes they can be working for a while and the start menu dies, or it fails almost as soon as they're logged in. Like many aspects of W10 I'm firefighting rather than being able to find solutions! If I had a PC that regularly failed I could try the troubleshooter but its not as clear cut as that. We use redirected Start Menus but don't customise the tiles (it doesn't work reliably anyway)
-
All local profiles here, and always have been. Never actually used roaming profiles!
-
Anyone else still having random failures of the start menu? We still have them here - where the start button doesn't work and the taskbar is unresponsive. Desktop icons can still be clicked and running applications still work. The usual fix is sign out and back in or sometimes tapping the Windows key several times wakes things up. We removed CSM a while ago in case this was causing the issue (I had my doubts and it does look like CSM wasn't the culprit) and this is happening on various hardware, from 1607 to 1709 versions as well. Users are getting fairly peeved with this bug as well.
-
After much searching it appears that PM stores it in this folder: /private/var/db/ConfigurationProfiles/Store/ConfigProfiles.binary Deleting that and my user profiles have now gone!
-
I did a much more basic version of that - it works but I'm still struggling to find where the local profile is coming from, it must be cached somewhere I haven't looked!
-
I actually deleted the default user profile and copied it over from a 'template' user - so that all users get a very basic profile. The profile these users are getting matches exactly was dished out by the now dead profile manager!
-
Ok this is an odd one I wonder if anyone can explain. Having experimented with profile manager (and binned it cos its complete jank) I've flattened the server and removed the profiles from the relevant macs. I've also deleted the local (mobile) profiles of the test accounts (including the home folder) and basically removed any trace of the PM that were applied. However, logging in using one of those accounts bring the fully configured desktop that was created using PM - despite that server no longer existing and the local users account having been deleted! So where the heck is it finding the settings from, do apple hold them on their servers as well? We don't use the AD home folder so its not there (and I've checked there and only Windows folders exist) So now I have no PM, and its still applying profiles to the accounts I used to test it - the damn thing didn't work properly but now I can't get rid of it, very odd and makes me wonder what apple are pulling over on their servers? Or do users profiles exists somewhere else apart from \Users ?
-
The server running PM can see everyone in the groups (in the server app anyway) and PM was reading the groups OK last week. It just reads partial membership now. I know there a 1000 limit on ad searches, which I don't think is a good idea to change - I wonder if PM does one 'complete' search or a search by group (no group has more than about 250 members)
-
I'm not sure why I'm still bothering with this bug ridden mess, but I thought I had this working to a reasonable degree - users were getting profiles mapped on their AD group membership. However today my users stopped getting profiles (well, some of them) . When I check the group membership in Profile Manager, some of the groups only show some of the members (and those are the one that get their profiles) but others are missing. Oddly, in the Server app, the groups show their full AD membership, its just through the PM web interface that they are incomplete. They were OK last week but not any more! Is PM really that flakey or have I missed out something here?
-
I think I probably already know the answer to this, but is there any way to copy a profile manager Settings profile for a group? Or, does anyone know where these profiles are stored on the server so I can grab a copy? I'm just trying to backup or replicate a profile to save some time!
-
It just seems to be this one mac at the moment, and one user. Its as if the AD settings (we used to use) are being retained for that one user. Dsconfigad shows the correct configuration as far as I can see (i.e Force home to startup, Create mobile account are set to Enabled) I haven't tried another mac as this is the new base image we're testing. We are trying to use profile manager as well but other users in the same group are getting the expected results.
-
This is really weird - the Directory utility is set to force local profiles, yet for this one user it always uses the AD home folder! I've deleted the user many times, but their profile is recreated every time on their AD home folder! All other users are creating their profiles locally, which is correct. And I thought Windows 10 was buggy ;-)
