Jump to content
EduGeek EdSec 2026 is Go! 27th Oct in Derby! Join us for a day of EdTech security focused talks, networking, and an evening social ×

BlueScreen

Members
  • Posts

    37
  • Joined

  • Last visited

Everything posted by BlueScreen

  1. Get your teachers to start using Google Meet nicknames and share those with students. Only people who are in your G-Suite domain can join a meet using the nickname. If you're syncing G-suite with a local AD domain, you can suspend an account through the G-Suite admin console and it will unlock itself during the next sync (use it to stop the disruptive students rejoining if they're kicked out). If a teacher requests we block access to a student, SLT and the HoY arrange a video or phone call with the parent of the student on the same day to have a discussion about expected behavior.
  2. Have you tried using 2 group policy shortcuts? One of which checks to see if the 64bit version is installed, if so modify the shortcut so that it points to that version, and the other GPO shortcut checks to see if the 32bit version is installed and the 64bit version is not installed in which case it modifies the shortcut to point to the 32 bit version.
  3. A day light, and slightly different from above, but without importing the details from a CSV file. Ripped from my script used to create and reset generic visitor accounts so I've not fully test the code (I had to anonymize and add the group / workstation parts). You will be prompted to enter and then confirm the password. You might need to adjust the userPrincipalNameSuffix if your internal domain is different from your external / email domain If you don't need to create a network home folder (probably not with 1:1 computers), remove or comment out the home folder and home drive lines. Remember to test first. import-module ActiveDirectory $first = 0 $last = 0 $accountPrefix = "" $logonWorkStationsPrefix = "" $cannotChangePassword = $False $ADPath = 'OU=path,OU=to,OU=Users,OU=ou,DC=example,DC=com' $emailSuffix = 'example.com' $userPrincipalNameSuffix = $emailSuffix $driveLetter = 'N' $ADGroupName = 'AD_Group' $users = @() ##### Add the accounts to the $users list. If the account doesn't exist, create it##### ##### Add or remove the 0s on the the toString line to adjust the leading 0s#### foreach ($number in $($first)..$($last)) { $number = $number.toString("00") $user = "$accountPrefix-$number" $userPrincipalName = "$user@$emailSuffix" try { $users += Get-ADUser -Identity $user -ErrorAction Stop } catch { $userDetails = @{ DisplayName = $user GivenName = $accountPrefix Name = $user userPrincipalName = $userPrincipalName Surname = $number SamAccountName = $user Path = $ADPath EmailAddress = "$user@$userPrincipalNameSuffix" LogonWorkstations = "$logonWorkStationsPrefix$number" } New-ADUser @userDetails $ADUser = Get-ADUser -Identity $user Add-ADGroupMember -Identity $ADGroupName -Members $ADUser #### Optional #Sets their home directory Get-ADUser -Identity $user -Properties HomeDirectory | Set-ADObject -replace @{HomeDirectory="\\Server\Share$\Folder\$($user.Name)\Homefolder"} Get-ADUser -Identity $user -Properties HomeDrive | Set-ADObject -replace @{HomeDrive="$driveLetter`:"} #### end optional $users += Get-ADUser -Identity $user } } ##### Get password to set the initial password of the accounts do { $Password = Read-Host "Password" -AsSecureString $Compare = Read-Host "Re-enter Password" -AsSecureString }##### Compare the two entries. The backtick ` allows the comparison to be on 2 lines, the -cne makes it case sensitive ###### while ([Runtime.InteropServices.Marshal]::PtrToStringAuto([Runtime.InteropServices.Marshal]::SecureStringToBSTR($Password))` -cne [Runtime.InteropServices.Marshal]::PtrToStringAuto([Runtime.InteropServices.Marshal]::SecureStringToBSTR($Compare))) $Compare = $null #####Set Password and optionally set Cannot change own password, and password expiry foreach($user in $users){ Get-ADUser $user | Set-ADAccountPassword -NewPassword $Password -Reset $passwordDetails = @{ ChangePasswordAtLogon = !$cannotChangePassword CannotChangePassword = $cannotChangePassword PasswordNeverExpires = $cannotChangePassword } Get-ADUser $user | Set-ADUser @passwordDetails } #######Enable the accounts foreach($user in $users){ Enable-ADAccount $user }
  4. We've just had our PPEs and our Exams department and students love the application (because it feel familiar that's one less stress for them). A couple of quick questions, Does the coversheet include Form 2 (scribe coversheet) when the spell check is enabled (JCQ, ICE 2019-20, 14.25 k)? Is it possible to have the settings as registry keys so it's easier for us to control who has access to certain features if we install the software around the school, (I find gpo controlled registry keys are easier to manage than gpo controlled files).
  5. Thanks for this. I'll be showing this to our exams officer on Monday to get their approval. A couple of points I've noticed. Setting the Default paths in the config with %HomeDrive%\Documents doesn't seem to expand the %HomeDrive%, it creates a new folder in the start in location (using a shortcut with a start in location of %HomeDrive%%HomePath%) with the folder name '%HomeDrive%'. Also does ctrl + left or right arrow work to jump to the beginning of the previous / next word? Thanks again for this.
  6. Hi, Thanks for getting back to me. This is a 70" board connected using a HDMI cable. Thanks for letting me know about the firmware update, I'll see about contacting your support team for a copy.
  7. Hi, We've recently had some new ActivPanel Touchs delivered and installed, everything is great apart from a minor issue. One of the teachers has to use a non-native resolution (1600x900 so still a 16:9 HD resolution, some software doesn't play nicely with text at higher resolution) however the image zooms in slightly which cuts off the left and bottom edges of the image. This can be rectified by going to the menu and selecting PC-Mode from the zoom setting. Just that when the user logs off the computer, and someone else logs in (or even when they log back in) the board has reset the zoom to full. Is there a way to make the board keep the zoom setting? The teacher is alright setting the zoom but as it's a shared classroom with some teachers in there once a week we want to make it a fool proof set up where the teachers don't have to keep playing around with the settings a couple of times every day. On a separate issue, we had another board installed where if you had it on standby mode when you turned on the computer, windows wouldn't register the board until you unplugged the cable and plugged it back in again (which was frustrating), so we had to change that from a HDMI connection to VGA connection. Thanks
×
×
  • Create New...