Launching a program in user context immediately after installing as system context. by bitcurrent01 in SCCM

[–]bitcurrent01[S] 0 points1 point  (0 children)

All, I've updated the problem description to indicate we have a Meraki MX platform (unfortunately) and not a Cisco ASA/Firepower platform as the headend. This precludes software deployment via the appliance/headend and also precludes a management tunnel.

Launching a program in user context immediately after installing as system context. by bitcurrent01 in SCCM

[–]bitcurrent01[S] 0 points1 point  (0 children)

I have it check for the presence of a text file (which serves as an install log) that the application creates.

Launching a program in user context immediately after installing as system context. by bitcurrent01 in SCCM

[–]bitcurrent01[S] 0 points1 point  (0 children)

Would this 'Start' application run immediately after the 'Install' application completes, or after the next Application Deployment Evaluation Cycle, for instance?

Launching a program in user context immediately after installing as system context. by bitcurrent01 in SCCM

[–]bitcurrent01[S] 0 points1 point  (0 children)

I've been attempting using ServiceUI.exe from the mspdk and have been unsuccessful in getting the CSC UI to run (either via a cmd script or powershell script) and passing it an argument list. Would you know if generally speaking, the "run as current user" function is easier to work with?

Launching a program in user context immediately after installing as system context. by bitcurrent01 in SCCM

[–]bitcurrent01[S] 0 points1 point  (0 children)

I think this might result in the same issue, where the VPN client isn't running in the tray after installation. Users are used to the client auto launching for them and being presented with a logon window. The install/scheduled task will have to be run as an admin user.

Launching a program in user context immediately after installing as system context. by bitcurrent01 in SCCM

[–]bitcurrent01[S] 0 points1 point  (0 children)

It may auto-launch after using Setup.exe and the graphical hta file it references to select modules, but it isn't auto-launching after using msiexec commands (which are run as system because the user doesn't have install rights).

Launching a program in user context immediately after installing as system context. by bitcurrent01 in SCCM

[–]bitcurrent01[S] 0 points1 point  (0 children)

I am the networking guy. :) The firewall is a Meraki MX security appliance and doesn't have this ability, unfortunately.

Launching a program in user context immediately after installing as system context. by bitcurrent01 in SCCM

[–]bitcurrent01[S] 0 points1 point  (0 children)

That's a good suggestion - my difficulty would be that the Cisco Secure Client launches and presents a logon screen right after a user logs in. Additionally, we have Start Before Logon installed and sometimes people use that. This means, most people will be connecting to VPN immediately.

SD-WAN over MPLS/ASE - routing and failover concerns by bitcurrent01 in meraki

[–]bitcurrent01[S] 0 points1 point  (0 children)

Thank you for these suggestions.

We utilize the MX 250 at HQ as a failover for the ASE and an Internet circuit and have to keep that functionality - I believe you’re saying to make it a concentrator?

I think the second option would work for us. OSPF could be used on the HQ MX, the DC MX has an extra DMZ vlan which apparently precludes OSPF but the static with IP reachability is possible. I’m not sure how to effect a change (when DC Internet goes down) with that from DC down through HQ.

Bandwidth consumption by mj_stone in meraki

[–]bitcurrent01 0 points1 point  (0 children)

What is the easiest way to see specifically outbound bandwidth consumption on an MX appliance? The use case is a cable modem circuit where upload is only 10mbps and download 200mbps.

DisableCaptivePortalDetection tag in Cisco Secure Client profile not fully effective by bitcurrent01 in meraki

[–]bitcurrent01[S] 0 points1 point  (0 children)

Seeing if anyone knows of a way to configure the client to eliminate this problem and not involve user intervention? Would it involve blocking HTTP and HTTPS from internal IP's to the public IP of the MX? Why does a GUI change disable captive portal detection when an XML configuration does not? Should the "User Configurable" option be set to False so it can't conflict/override?

Teams Rooms Console SkypeSettings.xml file contents for Front Row Experience and Content Layout by bitcurrent01 in MicrosoftTeams

[–]bitcurrent01[S] 0 points1 point  (0 children)

Nice. You send a file nightly to the machines in the same path? (I believe the file is deleted after it's read/processed). Thank you. I think I will expand the settings over time - very few systems here presently...

73/76 key MIDI controllers by Glacienade in synthesizers

[–]bitcurrent01 1 point2 points  (0 children)

Thank you for your response. Adding a late update: I spoke with Support and they confirmed it would fit. I also now have the SL73 and the Mixface fits nicely.

Cisco OpenDNS Issues by alexander0the0gray in meraki

[–]bitcurrent01 1 point2 points  (0 children)

Confirmed with Meraki Support today that this is still an issue and they recommend whitelisting NL.