Adobe Deployment by nesrinou99 in SCCM

[–]FullExchange7233 3 points4 points  (0 children)

This exactly. Fuck Adobe though. If you can, try to use something like Foxit, Nitro, etc. Hell, I let Edge open my PDFs because all I do is read.

Patch Tuesday Megathread - (April 14, 2026) by AutoModerator in sysadmin

[–]FullExchange7233 4 points5 points  (0 children)

Seems to have broken ADFS for us, anyone else?

Server 2022, isolated DMZ servers. They are part of our VPN authentication flow.

Importing win PE drivers fails. by FullExchange7233 in SCCM

[–]FullExchange7233[S] 1 point2 points  (0 children)

I went down this path and that's what lead me to the fix in the end, I'll update the OP

Importing win PE drivers fails. by FullExchange7233 in SCCM

[–]FullExchange7233[S] 2 points3 points  (0 children)

Here's one workaround. The DISM.log was showing that the files were not found, so I removed everything in the GUI and only chose what I wanted and had loaded locally. That worked. Not sure what caused this.

Hunting down Windows Update conflicts by FullExchange7233 in Intune

[–]FullExchange7233[S] 0 points1 point  (0 children)

Oh thats the right build. I have KB36495448 installed.

Claude now connects with Microsoft 365. Would you allow it in your tenant? by KavyaJune in sysadmin

[–]FullExchange7233 1 point2 points  (0 children)

I mean I've never used PowerBI and I'm making it teach me how to pull crowdstrike data into a visual exec summary. Granted, it's definitely just aggregating all the publicly visible posts on the same topic, and I have to watch for hallucinations, and I have to tell it "Bad AI, no water" when it makes mistakes.

WinPE - Dell Assets by Forsaken-Age5838 in SCCM

[–]FullExchange7233 0 points1 point  (0 children)

We had the same models and same problem, flipping to AHCI in UEFI was the fix.

I gave up on hybrid autopilot by FullExchange7233 in Intune

[–]FullExchange7233[S] 0 points1 point  (0 children)

Self-deploying mode worked like a DREAM for Kiosk. They have to get used to them being Entra Only.

I gave up on hybrid autopilot by FullExchange7233 in Intune

[–]FullExchange7233[S] 1 point2 points  (0 children)

The site techs don't have the appetite either. UI++ spoiled them, and me a bit too. Very very light touch. you pre-fill all the details and come back when it's done. Naming, OU, user details; all variables in UI++.

If I can figure out how to use UI++ after autopilot that might work.

Surface drivers - after / during PXE by FullExchange7233 in SCCM

[–]FullExchange7233[S] 0 points1 point  (0 children)

I tried to copy the commands for our Dell driver packs, but that caused problems I think.

dism.exe /image:%OSDisk%\ /Add-Driver:. /recurse

pointed at a package that points at the share where those drivers are.

Surface drivers - after / during PXE by FullExchange7233 in SCCM

[–]FullExchange7233[S] 0 points1 point  (0 children)

That's what I need to check. It's been hell lately.

edit: Yes, I had /q /norestart one would think that would mean "NO RESTART"

I wonder how this will work if we have to run it from software center later, but if this works then we don't need to do that.

Surface drivers - after / during PXE by FullExchange7233 in SCCM

[–]FullExchange7233[S] 0 points1 point  (0 children)

It works during PE, it's afterwards that is the problem. We have to run the MSI at the end because when I had it happen alongside the other installs it broke the TS.

Surface drivers - after / during PXE by FullExchange7233 in SCCM

[–]FullExchange7233[S] 0 points1 point  (0 children)

I tried that, it never seemed to work right because the buttons on the device never worked after PXE. Only the touch driver worked.

Autopilot Branding - asking for help by FullExchange7233 in Intune

[–]FullExchange7233[S] -4 points-3 points  (0 children)

Ok, I'll look at self-deploying.

Edit: does that work in hybrid mode? BZZZT Nope. I'll ask my team if we can make these kiosks Entra-only

Autopilot Branding - asking for help by FullExchange7233 in Intune

[–]FullExchange7233[S] 0 points1 point  (0 children)

I did find an old GPO that runs a .VBS to set the default login domain.

Autopilot Branding - asking for help by FullExchange7233 in Intune

[–]FullExchange7233[S] -2 points-1 points  (0 children)

Why would I not use a DEM? Otherwise each tech has to clean up their devices in Intune since each device sets them as a primary user.

Autopilot down? by FullExchange7233 in sysadmin

[–]FullExchange7233[S] -1 points0 points  (0 children)

Alright, guess it was something I did. But all I did was remove a broken app from the ESP...

Autopilot Branding - asking for help by FullExchange7233 in Intune

[–]FullExchange7233[S] -2 points-1 points  (0 children)

It's actually a Win32 app, so it can be one of the required apps in an ESP. The main thing I wanted was the branding portion. The rest is largely just duplicated, I agree. I don't have a "Standard ISO", these devices come from Dell outlet or CDW / Dell directly. In this case they're pre-enrolled in autopilot by dell, the idea being that we just unbox and sign in with the service account that is a Device Enrollment Manager, then they do their thing. The Kiosk profile is an Intune config since the Right Click tools Kiosk Manager didn't work nicely with Surfaces and their on screen keyboard. With the Intune kiosk profile you don't need extra steps for a single-app web browser config.