gaz350b
Members-
Posts
439 -
Joined
-
Last visited
Content Type
Forums
News
20th
EduGeek EDIT Conference
Blogs
Everything posted by gaz350b
-
Also if your looking for the GPO ASR its in Windows components > Windows Defender Anti-Virus > Exploit Guard and not Windows components > Exploit Guard which only has 1 policy.
-
(Probably more info than you want but here goes) We have 1607, 1703 and now 1709 device collections with a query based upon Build number. Each asr has its own deployment group. We also have additional separate asr rules for defender updates etc. As for ASR’s for Windows, We have 2 asr rules for each windows 10 build, 1 for critical updates and 1 for “updates and roll ups” I think. These are then deployed to unauthenticated computers and the device collection and an early test group. The critical ASR groups have filters based upon title (%1703% for example) superseded = no and Windows 10 product group. We give 5 day plus 3 day deadline for critical updates and 4 weeks +3 days on updates.( test collection is half the time) All our desktops have maintenance windows between 7.30-8.30, 12.00-1.30pm and 3.40-6pm. In our client settings we have also given the restart notification of 2hours before its forced upon them. We have also educated users on why we force it upon them but give them the flexabilty to do some work and restart at a natural time for them (lunch breaks for example) Also becareful on where you store your deployments. We mirror our storage layout o be similar to our asr groups. Windows 10 -1703 — updates —critical updates 1709 —updates If you accidentally store a software deployment in the lower folder structures you will end up with empty folders the asr will delete files, even though sccm will report the updates as deployed at the DP. (Green pie chart) and your clients will fail to download the update!
-
A lot of my other suppliers will be happy. Had a very good relationship with them even when our account manager moved to higher ed only, he kept us as an account, probably due to us spending 100k a year with him most years his prices were never beaten. He was only our 2nd account manager over the 17 years.
-
The biggest changes you will notice are around the Windows Defender control panel, have a look at the Exploit Protection now that EMET is integrated into the OS.
-
Just done an in place upgrade on our 1st machine using our SCCM upgrade task sequence that we used for 1703(seems ok). just waiting on our Build from ISO to finish to see how that gets on.
-
I still had the trace route open from last night. At some ppint they changed the IP address their site was resolving to by 1 IP address. Within 30 mins the site was back down again. Today it’s switched to be routed through a ddos protection service. my money is on a ddos attack, which I assumed from very early on as the site would come online for short periods. A lot of us here have experienced it and sadly I suspect is the doing of one of our very own students.
-
We used to do homework tracking on our vle and I can tell you now parental and student engagement during the 1st few weeks of term would always put the server under pressure. Everyone would hit it during the 1st hour at the end of the school day. By the start of 2nd term this same traffic was being spread over 4-6 hours after the end of the school day! Parents that were logging once a week instead of every night. Add a small bug or large amounts of changes of data in a database and performance can take a dump very quickly.
-
Not surprised, we moved from Skype to teams across our team on launch.
-
IT Officer - Oakham, Rutland - £18070-£22658 - Closes 25/9/17
gaz350b replied to elsiegee40's topic in Educational IT Jobs
Feel free to send me a PM if you want any further info on this position. -
Windows 10 default pdf reader & photo viewer crash our print spooler
gaz350b replied to TwistedHelixis's topic in Windows 10
I suspect it's down to edge printing insanely large spool files. 30 page PDF on edge created a spool file over 1.5gb. This was causing our papercut queue to not display the select account pop up for papercut, as it would take 10 minutes+ to process the print job. -
[1703, cu] Successfully deploying Start Menus in Windows 10 v1703
gaz350b replied to sparkeh's topic in Windows 10
Similar to you we manage both a redirected and all users startmenu. Any pinned items that need pinning we ensure are in the all users start menu. Staff do not get a forced startmenu from group polic. they use the local machine layoutmodification.xml. We only run 3 custom start menus at the moment through the use of device collections in sccm.but plan to add more for devices such as front of class desktops and special devices such as music rooms etc. -
Had same issue today on 1 machine Are they known computers in sccm? Try deleting the computer record from sccm so it becomes an unknown computer.
-
Year of Entry or Year group naming for OU
gaz350b replied to Shadow_Walker's topic in Windows Server 2008 R2
Always been year of entry..... we took on a local primary that does it by year group, I laughed so hard at their year end process for each year group! -
Other than a reimage no fix yet. We rolled out June's updates and unless it's gone unreported we haven't had any further issues.
-
IE v Google Chrome : Teacher wants to have her cake and eat it!
gaz350b replied to kennysarmy's topic in Windows
tell her to get over it and move on -
We were unable to create/update GPO using the admin tools on machines where the modern apps were removed as the wizard that you use crashes. we can confirm this is an issue on both 1607 and 1703 when modern apps are removed (on the machine where you are managing the Group policy). I'm not sure if this also effects the application of these policies to machines themselves. We hadn't got that far as we are still using SRP.
-
See my theory thread on this. Are you removing modern Apps? @FN-GM don't you use LTSB still? Are we all removing modern apps?
-
We find that machines that update as part of our imaging process do not get effected from modern apps curruption. Which causes start menu failure as it is also a modern app. We had a small issue where we imaged 90 machines when our update service was broken and 70% of these machines because corrupt once hey recived updates. My theory is that this corruption only happens after modern apps have been removed (we do this at the end of the image process) once updated. has anyone had this Morden App/start menu corruption on machines where they have NOT removed any modern apps????? We have also found out that removing modern apps also breaks Applocker policy creation.
-
The thing is i was expecting the SQL Per core count price to be reduced like they have with the per core count on the server licence. Server lic 16 cores is similar price to the old 2 CPU licence pack. 2 SQL Core licence is the same price as 2 CPU price!!!!!!!!
-
ok found this line from SQL_Server_2016_Licensing_Guide_EN_US.pdf So it looks like we would need a min of 4 core per CPU in the physical machine? we have 2 CPU per Host :| /confused Edit: Reading on in the VM part of the document clears it up!
-
This is exactly what i was thinking. High clock rate, Low core count CPU.
-
We've just had a quote back for our SQL....... It was £800 based upon 4 CPU's now £2300 to licence 20 Cores! (we were planning on creating a resilient SQL Setup but thats out the window if we have to licence every core!) Do we have to licence all cores? or can we just licence for what we are using. Gary Stone Team Manager IT Support
-
Article: EduGeek EDIT Conference 2017 - Thursday 1st of June
gaz350b replied to Dos_Box's topic in Legacy CMS Comments
Wireless charging was pretty neat idea! -
Article: EduGeek EDIT Conference 2017 - Thursday 1st of June
gaz350b replied to Dos_Box's topic in Legacy CMS Comments
Did anyone find the avantis comment about the 32gb ssd drive (will they be making 64gb/120gb versions) very revealing about how much control Microsoft has over what devices OEMs can actually make and probably explains why I can't find cheap devices with SSD (always 500gb spinning rust) -
I know BT are phasing out 100MB bearers, quote for a 200mb/1GB was only 25% more than a 100/100mb so expect the 1GB to become standard.
