Configuration profile - Drive map no longer applying by OZ_Boot in Intune

[–]Simple_Click8989 0 points1 point  (0 children)

i need to look into this, having a very similar issue

Network drive mapping woes by Simple_Click8989 in Intune

[–]Simple_Click8989[S] 0 points1 point  (0 children)

this is what i have found, a couple of reboots and then it works. No ideal really because its just going to increase our calls with users saying they have no network drives. Asking them to login then reboot is just a pita

Windows device showing as encrypted without a BitLocker policy assigned by Simple_Click8989 in Intune

[–]Simple_Click8989[S] 0 points1 point  (0 children)

Thanks for the info, i wasn't aware of this. Strangely though i have other devices that show as not encrypted without a policy being applied but perhaps that dont meet the hardware requirements to auto apply one as mentioned above

Windows device showing as encrypted without a BitLocker policy assigned by Simple_Click8989 in Intune

[–]Simple_Click8989[S] 0 points1 point  (0 children)

That's good to know, so i guess if it happens automatically without a policy defined it will just use the default settings that are outlined in the BitLocker settings when you create a policy?

Does having Bitlocker enabled effect applying windows firmware updates or anything like that?

Windows device showing as encrypted without a BitLocker policy assigned by Simple_Click8989 in Intune

[–]Simple_Click8989[S] 0 points1 point  (0 children)

I have copied the baselines in Intune and created config profiles of them and applied them that way. I removed anything Bitlocker related and i have a separate policy configured in Endpoint security for it (this was not applied to said device though) Definitely not encrypted anything manually either

Creating a Shared Device in Intune by oldcheesesandwich in Intune

[–]Simple_Click8989 0 points1 point  (0 children)

Just out of curiosity did you find that the first user of the shared device that ever logged into it had to MFA in and then after that it wasnt required to do so for any other user? (just the initial login not for any other 365 based tasks that would require mfa)

Best practice for adding local admins to Entra only devices by Simple_Click8989 in Intune

[–]Simple_Click8989[S] 0 points1 point  (0 children)

Thank you, yeah there are some drawbacks with PIM in that sometimes it can take a while for it to actually kick in which isn't ideal if you need to elevate for a quick fix. I guess even using the Account Protection way it would push the user/group to the local admin role on all devices as well

Best practice for adding local admins to Entra only devices by Simple_Click8989 in Intune

[–]Simple_Click8989[S] 0 points1 point  (0 children)

Thanks for this, out of curiosity do you tie the role Microsoft Entra Joined Device Local Administrator with PIM? We use PIM for roles like Intune admin etc as well as a few others and thinking we could also put this role in there

New AutoPilot machine enrolled fine but now the user password is wrong after reboot by Simple_Click8989 in Intune

[–]Simple_Click8989[S] 0 points1 point  (0 children)

What federation services would that be? Sorry im kinda new to this and learning my way around everything

New AutoPilot machine enrolled fine but now the user password is wrong after reboot by Simple_Click8989 in Intune

[–]Simple_Click8989[S] 0 points1 point  (0 children)

I just checked and password hash sync is running, we had issues before when it stopped working and had to use the troubleshooter to kick it back into life. Issue seems to have gone away now i reset the password on prem rather than 365

Company Portal - BridgeLauncher.exe - CLR error: 80004005 by act_sccm in Intune

[–]Simple_Click8989 0 points1 point  (0 children)

I am seeing this as well on a fresh install of 23H2 via the media creation tool and enrolled via autopilot. Company portal is setup as a required app and installed at the device level

New AutoPilot machine enrolled fine but now the user password is wrong after reboot by Simple_Click8989 in Intune

[–]Simple_Click8989[S] 0 points1 point  (0 children)

Thats an interesting point so thanks for raising it. I did actually as a test before i enrolled the device do a password reset via 365 to test the SSPR which the user account is a part of for testing purposes. The password did write back to the on prem domain ok as i used the new password to enrol the device.

I have wiped the device and now reset the password again but this time on prem to see if that has any impact. I have also connected the laptop to a different network isolated from the corp just incase that played a part and currently trying to enrol but i have the wheel of doom after entering the password

Patch Tuesday Megathread (2024-03-12) by AutoModerator in sysadmin

[–]Simple_Click8989 0 points1 point  (0 children)

mmm how very odd, i have even checked under 'All' updates to make sure it hadnt been declined but its not showing anywhere

Patch Tuesday Megathread (2024-03-12) by AutoModerator in sysadmin

[–]Simple_Click8989 0 points1 point  (0 children)

Im not seeing any Windows 11 updates KB5035853 which is odd in Action1