MikeAtTrs
Members-
Posts
11 -
Joined
-
Last visited
Content Type
Forums
News
20th
EduGeek EDIT Conference
Blogs
Everything posted by MikeAtTrs
-
Hello - I'm hoping someone can clarify for me the following situations. First of all, lets establish hardware. Basically iPad version 2s on IOS 7 (and one Ipad Mini also on IOS 7). We are a secondary school on South Coast. Now we have our iPads under the control of Meraki MDM where it has some kind of Location based tracking. Our issue is this - once the offset is put in place for our particular broadband supplier, I have all of them allocated around our school - fair enough. Now when they go home and connect to their respective broadband suppliers, the Meraki dashboard shows them to be located nowhere near where they are actually. Take, for example. a teacher who lives 5 miles from the school, which is central Southern England along the coast between Portsmouth and Brighton. Now the iPad is showing as just outside Worcester, which is around 150 miles away...all i can think of is that it has something to do with where the home broadband is based. Is this true? Secondly, I have been trying to establish a more accurate location based system in order to track the movements of our iPads and have tried using 'Find My iPhone'. It is said that it works for iPads as well - but, it is only useful if the device is 'cellular' enabled. My understanding is that, while our iPads are not cellular and are locked (as stated in a policy from Meraki) - no entry can be gained by the thief, therefore no connectivity to broadband, so no connectivity to iCloud for the purpose of location data. Whereas, if they are 'cellular', then they are actively seeking out cells for connection even while locked and so get triangulated for location purposes to iCloud - am I right in my thinking so far....? It almost means that you have to disable the screen lock, so it tricks the thief into connecting to his/her broadband and so reveal its whereabouts as it will connect to iCloud - which probably won't happen. Now the other side to this is and correct me if I'm wrong, if the screen is locked and 'Find My iPhone/iPad' is enabled on the device, therefore an Apple ID is associated with iCloud, that even if the thief has the device and does a hard reset, it will still ask for the Apple ID password, so the thief is up a blind alley, so to speak...and useless to him...but this still does not help with location tracking as it won't seek out broadband HotSpots in order to get a location fix, so again useless. Is there an app out there that can seek Open broadband HotSpots so as to 'act' a little like cellular operation? or am I pipe dreaming? What is the solution...? Or am I missing something...? A slightly confused IT Support Technician.
-
Hi ralph -your comment was over 3 years ago. Our school has just bought into it, unbeknown to me, so going by your post and mine, not alot of take up then...I can't get the teacher client laptops to connect to their server - I get the 'accessing the resource has been disallowed', but for admin, it's ok.....................Still sifting through Group Policies..... :-(
-
Thanks 'steve21' and 'TheScarfedOne' for your quick responses, it has however worked on our desktops (wired), but not on our laptop trolley - it looks like I may have to start each laptop on the wire for this to work....:-(
-
hello - we have tried to deploy Kodu but have not been successful - even creating 2 group policies, one for the framework and a second for Kodu, but nothing, not even a failure is reported....is there a catch of some sort...or is there a particular way to package it or is there a proper downloadable msi? Thanks for any input
-
Thanks Synack - have just been doing some more reading and I think I have mis-understood the 'true' line - I thought it had something to do with disabling the Digitally Signed Driver issue on 64 bit OS - oh well, something else new I have learnt today...will try the command line as suggested.
-
I have been trying to capture an image from one laptop of a batch of 36. I would like the image to have all drivers retained and software, so that I can push to the other 35 - surely this is childs play to WDS/MDT2012, but I can't seem to find the right command line for sysprep to execute. They are Win 7 64 bit. I don't want to use the '/generalize' tab, as this apparently strips the drivers. I understand that it also needs to run in order to strip other things like IDs etc. So is there a way to capture my image as-is, so I can have it ready for the other identical laptops? BTW, I wasn't able to run the basic PE install from WDS/MDT for various reasons, otherwise I would have tried the capture process to create it for me (haven't tried that yet however on any image). I've read articles regarding using 'unattend.xml', but how does that prepare the volume for capture? :-( Any thoughts...?
-
P.S. As I said in my previous post 18th August, thanks to all for info on the subject 'proxy settings not applying' - I would like to pass on our latest findings. After giving up with policies, we went down the 'wpad.dat' route , both in DHCP & DNS, it was still giving us grief :-( - so, more investigating and hair loss, discovered that previous proxy entries in policies we had tried different settings and they create install.ins files within the user part of the policies folder in sysvol. Although the setting is disabled and not visible, at a later time and another setting is created somewhere else - those install.ins files still remain and they seem to lurk around and cause us this problem. There is probably an explanation buried deep in some Microsoft documentation and has yet to be deciphered, but we in the real world however, need something more realistic....so, search on the 'policies' folder within 'sysvol' for '*.ins' files and then find out the policy names using the long ID number, this will tell you which policy you are expecting it to work from, then delete the other '.ins' files so they don't get in the way…now our proxy policy updates as expected. We might experiment with the wpad.dat file in dhcp again, but at a quieter moment in the school holidays, I think ;-) Hope this might help…. ;-)
-
Hello "all who have contributed" to the age old problem of Proxy settings with Group Policy. I'm with CyberNerd. Have given up with GPO. We are implementing wpad.dat, which seems the logical way to go - thanks again to all.
-
Hi all, we use Windows 2003 SP2 domain and basic Active Directory. We have recently had to change some proxy settings - trouble is, they don't seem to be applying. In the past, we have changed them by hand, because they haven't really altered through Group Policy and we haven't had time to track down the reason - I've had some time this summer break, to look deeper. I've Googled the subject, but most of the suggestions I have already tried, except I came across one article that states that the "Internet Explorer Maintenance" setting does not behave in the usual way. Apparently, one has to right-click on the "Connection" setting under the "Internet Explorer Maintenance" in the Policy and select "Reset Browser Settings". Then you right-click again to select "Preference Mode". Here are some Googled suggestions = ----------------------------------------------------------- http://forums.whirlpool.net.au/archive/1661332 "GPO's only set a setting, they dont remove old settings by default or when they are removed. In your new GPO, make sure to remove and apply the removed proxy setting." ---------------------------------------------------------- ...also this = http://www.edugeek.net/forums/windows/12813-group-policy-proxy-server-your-local-lan.html "Re: Group Policy - Proxy Server for your local LAN PC's with Windows XP Service Pack 2 applied will not apply Internet Explorer Maintenance settings if Folder Redirection settings are also applied. See Microsoft Knowledge Base article # 888254 for more information. This is article is somewhat confusing in that it states (as of the January 28, 2005 revision): After you enable the Folder Redirection policy in Windows XP Service Pack 2, the Internet Explorer Maintenance policy may not apply "You cannot set the Folder Redirection policy setting on a Microsoft Windows XP-based computer that also uses Group Policy settings to customize Microsoft Internet Explorer." In fact, the Folder Redirection settings are applied correctly, but the Internet Explorer Maintenance settings are ignored." ---------------------------------------------------------- ...also this = group policy proxy settings "That behavior is intended, by default Group Policies are only applied if you change them since MS assumes that you do not give the user the permission to change the settings, and it makes the logon process faster if you do not have to reapply GPOs. If you want to change that behavior to apply at every logon you can configure the following GPO-Setting: Computer Settings/Administrative Templates/System/Group Policy/Internet Explorer Maintenance Policy Processing There you are able to configure if the GPOs are applied via slow link, if they are applied even if they haven't changed, and if they are reapplied during background refreshes." ---------------------------------------------------------- ..also = Group Policy Proxy settings not being applied after IE8 installed - Stream Reader "I'm assuming you're talking about settings being applied through the "Internet Explorer Maintenance policy" client-side extension (CSE), and not "Administrative Template" registry settings. I've done several mass updates of IE8 at Customer sites where IE CSE settings were being applied and haven't seen the problem you're describing. I'd say that you've got a peculiar quirk there that's causing the behavior (possibly on just a subset of your machines, too). Quirks aside, you could use the "Internet Explorer Maintenance policy processing" setting in the "Group Policy" node of the "System" node of "Administrative Templates" in "Computer Configuration" to enable "Process even if the Group Policy objects have not changed". This will give you the effect of "gpupdate /force" on these clients w/ respect to IE CSE settings. This isn't the most efficient thing in the world to do (because clients will keep re-applying the IE CSE policies even if the server version hasn't changed) but, presumably, after your roll-out is complete and everything is working you could investigate turning this back off." ---------------------------------------------------------- ...end of quotes I'm not sure what I have to do then as it's not totally clear whether I have to allow the 'Reset' policy to apply over a day or so, to clear all settings from clients. Then apply the preference mode for another couple of days, not sure what for, finally filling in the new proxy settings and then apply those - there doesn't seem to be a full explanation out there. Has anyone else experienced this...? I need to leave the proxy settings available for the teachers to untick the proxy box when they need to connect to their home internet. I have also read elsewhere that using the 'wpad.dat'/'pac' file scenario might be a better way to solve my situation. Because it seems there is a lack of information out there regarding the "Internet Explorer Maintenance" user policy - perhaps even M$ don't understand it themselves........ Any pointers would be most appreciated. Thanks. Windows server 2003 SP2, using Group Policy, Exchange 2010, internal WSUS 1000 XP SP3 clients in total. Office 2007 300 staff (including teachers, who need settings changed between home and school). Folder Redirection for 'App Data', 'My Docs' etc.
-
Hi sukh, Thanks for your input, but I'm not sure about your section on the end = '-OrganizationalUnit $_."CN=Email,DC=domain,DC=com" '. Is that the column heading or the format of the column? - the OU where I'd like the contact is 'OU=ContactAccounts,OU=staff,DC=site,DC=com' or the canonicalName is 'site.com/staff/ContactAccounts'. If 'cn' is required of the OU, the properties within 'ADSI edit' are .
-
Hi, I was wondering if someone could spot what I'm doing wrong. I am trying to import Mail Contacts (users with external email addresses) into an OU in our AD. The OU exists and I have others there. On the command line, in Exchange 2010, I can type the following and it works fine : [PS] C:\etc \etc>New-MailContact -Name "Some Person" -ExternalEmailAddress spersonATaddress.co.uk -OrganizationalUnit "brcc.local/BRCC/WsgflAccounts" …and I get: [PS] C:\etc\etc>New-MailContact -Name "Some Person" -ExternalEmailAddress sperso nATaddress.co.uk -OrganizationalUnit "brcc.local/BRCC/WsgflAccounts" Name Alias RecipientType ---- ----- ------------- Some Person SomePerson MailContact I then remove this contact and try to add it through the next stage. That’s fine for one or 2, but for 200 or so, I need a bulk import. I've read numerous Google results and so I tried this: Import-CSV "c:\files\test.csv" | ForEach-Object { New-MailContact -Indentity $_.Name -ExternalEmailAddress $_.ExternalAddress -OrganizationalUnit $_.orgu } …the csv looks like this: Name,ExternalAddress,orgu Some Person,spersonATjspc.co.uk,brcc.local/BRCC/WsgflAccounts …but then I get this error: A positional parameter cannot be found that accepts argument 'Some Person'. + CategoryInfo : InvalidArgument: ( [New-MailContact], ParameterBindingException + FullyQualifiedErrorId : PositionalParameterNotFound,New-MailContact Even adding double quotes to Some Person and the OU position didn't make any difference. I have obviously missed something, but can't, for the life of me, work out what..:-( Thanks for any tips.....
