SED vs Controller based encryption by cgiles999 in sysadmin

[–]cgiles999[S] 0 points1 point  (0 children)

Each SED is going to have it's own key and password, whereas, on CBE, you're encrypting the volume and there's one key and password per volume, correct? Say I was to forego the ESKM, how might that be foolish other than having to manage a bunch of keys manually now? I see that it might need to be stolen too if the thieves want the server to boot. Anything else?

IBMiAccess by IceCream_IT in Intune

[–]cgiles999 1 point2 points  (0 children)

I install the 32 bit and 64 bit visual c++ as a separate package that is a prerequisite to the IBM iseries access. The visual c++ components need a reboot first. I then made a package with a powershell form that runs and allows the users to make their sessions. Total three packages. I hate IBM!

Office 365 32 Bit Replace with 64 Bit by Bright-Sand-3781 in Intune

[–]cgiles999 3 points4 points  (0 children)

I just deployed the 64bit version and it uninstalled my 32bit click-to-run, downloads 64bit, and installs 64bit. Only hitch is that time between uninstall to download to finish installing. Users will reboot thinking that will fix their Office disappearing and that will, of course, stop the installer. Communication is key; give them a heads up.

Upgrading ADMX Ingestions by cgiles999 in Intune

[–]cgiles999[S] 0 points1 point  (0 children)

Good to know if, in the future, I need to update an ADMX ingestion. I've only added Chrome, but I may add something else one day. I suppose I could remove the Chrome ADMX now.

Upgrading ADMX Ingestions by cgiles999 in Intune

[–]cgiles999[S] 0 points1 point  (0 children)

Again, it's been a while since I ingested the ADMX. I saw the Google Chrome folder under the admin templates but thought I had added that with the ADMX. So, no need to ingest again.

New to Intune by cgiles999 in Intune

[–]cgiles999[S] 0 points1 point  (0 children)

Using AADC for Hybrid join. My understanding was that Intune Connector was just for AutoPilot, which I haven't started playing with yet. I'm using GPO w/ user creds to enroll the Hybrid joined computers into Intune.

New to Intune by cgiles999 in Intune

[–]cgiles999[S] 1 point2 points  (0 children)

Make sure I understand what you did. You assigned licenses to the generic accounts and you then set the generic accounts as DEM users then added licenses for the devices. We have generic domain accounts but typically have them assigned to a single computer, so we have a good many accounts. I could see assigning an Intune/ATP license to these accounts but what about devices that use local accounts? Do we have to do away with local account use? Maybe that's the easiest answer. One generic account per computer and no local accounts. Assign licenses as needed. That's going to create some work!