-
Posts
6,750 -
Joined
Content Type
Forums
News
20th
EduGeek EDIT Conference
Blogs
Everything posted by fiza
-
We are getting a lot of requests from students doing Media for fonts they need from DaFont. Most are marked "Free for personal use". Would that cover us if we downloaded them for the students to use?
-
Already got the standard stick but just bagged one of these, nice upgrade!!
-
*bump*
-
[mdt] MDT Task Sequence generates Trojan warning on target
fiza replied to fiza's topic in O/S Deployment
Not at that point yet so can't help really. Still putting all apps into pdq -
I have implemented GPO Admin Templates>Start Menu and Taskbar>"Do not keep history of recently opened documents" and also " Remove Recent items menu from Start Menu" But I can still see frequent files in the File Explorer Menu . I don't want students to be able to see these. Screenshot is from Interwebs not my actual PC.
-
seems to be working now after a couple of reboots even though I did gpupdate
-
I am trying to use Applocker to stop students running 4Matrix. We have it installed on all workstations so staff can use it where ever they are. I have put in a deny for %PROGRAMFILES%\4Matrix\Launcher.exe and applied it to students. I can still run it logged in as a student. I have configured Applocker Executable rules and set it to Enforce rules. Where am I going wrong please? Is the Allow everyone program files rule taking precedence. I thought a deny would take precedence?
-
[mdt] MDT Task Sequence generates Trojan warning on target
fiza replied to fiza's topic in O/S Deployment
But I have been using the same 1809 reference image the past few months and its only today that the Windows Defender is picking this up. I have rebuilt the same machine many times with the same image but only having issues since yesterday. edit Don't really want to redo my reference image as at this moment in time we have a fat image. Currently working on putting all applications we need in PDQ Deploy but this is not ready to use yet. -
Been using the same MDT Task Sequence for the last few weeks, tweaking it here and there to do what I want. Now each time I run it to deploy an image it gets to 58% and the client is rebooted and logs into Windows, it should then go to downloading windows updates but instead just sits there and does nothing. On the workstation, in the System tray there is a notification from Windows Defender saying that it has blocked Trojan:Script/Cloxer.D!cl The affected item is C:ProgramData\Microsoft\Windows\Start Menu\Programs\StartUp\Litetouch.lnk Does anyone know why this is happening? My MDT Server has Sophos protection and it has not picked anything up.
-
[1903, au] Something in my mandatory profile stops UWP apps launching
fiza replied to Garacesh's topic in Windows 10
I just changed to using Local Profiles and all the Apps I want now open. If you find a solution I would be very interested. I am running 1809 so hopefully anything you find will still apply to Roaming profiles and our build. -
So I want to prevent students using Search to find MMC.exe I have put in an Applocker exe Deny Path rule and applied it to students. %WINDIR%\System32\mmc.exe Students are still able to open MMC.exe via search. Any ideas please?
-
Thanks. We have roaming profiles too. Did you come up with a solution other than not use roaming profiles?
-
Doesnt seem to want to run when I am logged in as the user the Apps do not work for. That user is a student user account. The Apps work fine when I log in as the local admin.
-
Ok so I changed the script to leave SolitaireCollection in place and now the Apps don't open but get underlined in the start menu. Any ideas please?
-
Thinking about, it was a while ago, I might have gone 2008r2 to 2012r2 to 2016. Can't remember so you may be right.
-
I have done it 2008R2 to 2016. When I did it I exported the VM on my 2008R2 HyperV host and then imported it into my 2016 HyperV host. 2019 may be different but it was quite straightforward to do on 2016.
-
Strangely it's disappeared now!
-
We have just created some new staff accounts. All the users are able to login without issue. I wanted to put all the new staff into a distribution group so that other staff could email them as a collective. We use Salamander to sync with G Suite. I noticed as I was adding a couple of them that their user accounts had a different UPN suffix ie our suffix is @DomAin.ourschool.la.sch.uk (our internal domain has always been called domain for some reason) The couple of new users are username@d+K8:U8omain.ourschool.la.sch.uk I don't know why!! Any ideas please? I have never noticed anything like this before. We have never had a secondary domain suffix.
-
When logged in as local admin the Microsoft Store and Apps work fine. When logged in with a student account the Microsoft Store does not load with message "Try that again". The Apps (3D Paint, Video, Calculator) all open and then immediately close. I can't see any GP settings that would cause this Any ideas please?
-
EduFuturists Network Manager of the Year Award: Vote now!
fiza replied to Zoom7000's topic in General Chat
My vote is in. -
@Arthur - I checked that location and there is no "LocalAccountTokenFilterPolicy" setting there!!
-
...top
-
PM Sent
-
So is this an additional ADMX file I have to download? If so then as I havent downloaded it then surely I wouldnt have the setting you mention set to 1?
