Jump to content

TwistedHelixis

Members
  • Posts

    3,401
  • Joined

  • Last visited

Everything posted by TwistedHelixis

  1. Just read the following.... Which I will look into next week.
  2. OK thanks. The thing is I am using mDNS, so should work, but also I am not trying to use the cloud option of Mobility print, which I have not enabled, which I am guessing would have issues with the Proxy, just the internal section of mobility print. Currently, I am not trying to get it to work with a proxy, but now trying to workout what needs to be disabled in the proxy for it to work, if that makes sense.
  3. Just testing out mobility print for onsite printing. We don't even need to enable the cloud printing option, just need to be able to print internally. From a Windows client, when I run the installer it errors with, Failed to retrieve printer list After playing about I just realized that if I disable the proxy settings on the Windows 11 device, the Mobility Print installer runs fine. So then I thought, I could enter the IP and name of the print server into the proxy settings on the device as an exception, but that doesn't help. This is similar to what I have entered into the proxy (user a proxy server, except for theses addresses....) ip.ip.ip.*;nameofserver* I also have 'Don't use proxy server for local addresses' ticked. I would have thought that telling the client not to go through the proxy server for the print server, would be the same as disabling proxy completely, but apparently not. Any ideas?
  4. Sorry for the delay.... In the end I moved over to Mobility Print, which lets the Chromebooks print. Have you worked out your issue yet?
  5. So, it turns out Smoothwall do a cloud based proxy / filtering system, that works with all devices. We already have a bnunch of Chromebooks, so ill start testing this out with those. |Found a few posts on Edugeek with other schools already using this.
  6. Google Terms of Service and the Additional Product Terms don't appear to cover how they process Gemini data, not that I can see in my speed reading of those pages. So then you are left with 'However, their chats won't be reviewed by human reviewers or otherwise used to improve generative AI models.' which doesn't really cover anything of importance. If they were only doing the above, then why not have all the compliance sections ticked under the additional service section. Or am I completely missing the point?
  7. But isn't the free version of Gemeni the 'Additional service' version? If so, those compliance sections are not ticked under the education tab.
  8. So, on this page, if you click on 'As an additional service' nothing is listed as complaint. https://support.google.com/a/answer/14571493?co=DASHER._Family%3DBusiness-Enterprise&product_name=UnuFlow&hl=en&co=DASHER._Family%3DBusiness-Enterprise&visit_id=638786608512339510-242624582&rd=1&src=supportwidget0&hl=en#zippy=%2Cas-an-additional-service So can a UK school still use this if its just for the staff to use, or does it breach any UK regulations?
  9. None of the EDU tools have their data used for training and modelling. I don't think this is correct, but compliance is not my job role. https://support.google.com/a/answer/14571493?co=DASHER._Family%3DEducation&product_name=UnuFlow&hl=en&visit_id=638786712373141711-312461153&rd=1&src=supportwidget0&hl=en&oco=0 I did find another page that listed even more that the free version doesn't comply with, but i cant find this now.
  10. Does the fact the free edu versions doesn't have the following make a difference if its to be used just by teachers? The free version doesn't have any of the following supported, but the paid version has these all ticked. HIPAA GDPR SOC 1 | SOC 2 | SOC 3 ISO / IEC 27001 | ISO 27017 | ISO 27018 | ISO 27701 | ISO 9001 | ISO 42001 FedRAMP High
  11. Thanks for all the replies. I have been ill, but will read through them when I'm back.
  12. Currently we have a transparent pupil proxy, so everyone in the school gets this by default, but we also have a staff proxy. Our LA run the Smoothwall filtering server, they supply us a proxy address for the staff, which is deployed from GPO under the user OU. When the staff go home, they simply open the proxy settings and disable the proxy, or double click on a script I created that turns the proxy off. When the staff log onto our domain, the GPO runs and turns the proxy back on again. We are not too far off having everything in place to be able to remove our Domain Controller. I was looking into how we can deploy our proxy settings after removing our DC and everything I have read so far doesn't seem to fit our needs. One method seems to be using a web server to host the proxy settings, but eventually we will not have any servers. Another suggests hosting the proxy config on a remote web server, but most of our staff also take their laptops home with them, so I am guessing it would still pick up and try to force the proxy settings even when they are not in school. Is there a way of getting the staff proxy setting to only apply while the device is in school, but without any web servers?
  13. Almost ready to go live and test GCPW on some staff Do either of you have any User account control policies setup in GCPW, you wouldn't mind sharing?
  14. Recently setup DMARC with p=none at a small primary school and have been uploading random reports into the MStoobox report viewer site, but should probably think about something more automated. Does anyone know of a very very cheap DMARC monitoring service, preferable free? Whats everyone else using?
  15. It is working now. Either typed it in wrong or didn't wait long enough for the policy to apply. So, does the welcome message now appear every time a user logs in Before making the above policy change the message would only appear on the users first login, but now it seems to be on every login. Is this correct?
  16. So it looks like the policy I already have should work. Ill re apply the policy and see what happens.
  17. While testing GCPW, I have noticed that all previous accounts that have logged in are displayed down the left side of the login screen. I have deployed the following policy, but it doesn't seem to be removing the accounts. ./Device/Vendor/MSFT/Policy/Config/LocalPoliciesSecurityOptions/InteractiveLogon_DoNotDisplayLastSignedInData type: IntegerValue = 1 Any ideas
  18. Google Drive does support MS Office file formats, along with Google file formats and other formats like PDF. At this school we started off using Google Drive for desktop on all our Windows devices, along with the installed version of MS Office. Everyone used all the normal Windows office software, but saved into Google drive for desktop. Then over time some realized they could access everything from the browser and stopped using the desktop version of MS office. It has been a very fluid approach and we still have a few that want to keep using MS Office.
  19. This does sound like a policy is being pushed out to those clients that is changing the client proxy settings. There are 2 levels of proxy settings. The browser level and system level. Do any proxy settings get listed in the Settings > Network > proxy pages Does the following give you any info from admin cmd netsh winhttp show proxy
  20. I have just purchased some Windows endpoint licences from Google for £4 per Windows device per year. This gives us user login to Windows devices using Google accounts, I can also push policies out to Windows devices from Google Workspace, similar to InTune. In my testing this has been working very well. We are currently using Google Fundamentals which is free. Not sure how much (if anything) this would cost in the MS ecosystem, but I can fully manage all our Windows devices from the cloud for £4 per device using Google Workspace. EDIT, should point out that all our data is already in Google ecosystem and all pupils and some staff are using Chromebooks. EDIT2, we now only have 12 Windows devices in this school, so that's £48 per year to manage them, which is a massive saving over having to buy a Windows server + licensing etc.
  21. For everyone reading this post, something else I have worked out is, you can un-enroll the device and then delete the device in Workspace and the next user signing will then become the Master user for that device. I do need to do some more testing, but it does seem like a nice quick way of switch the master user over to a different account and saves wiping the device completely if needed.
  22. Also, make sure you have added the app to your user OU, not your Chromebook device OU.
  23. Yes, I think it does. Thanks for all your help :-)
  24. What if we don't use 365, but do use Office LTSC?
×
×
  • Create New...