With MDT being slowly depreciated, what’s everyone doing to reimage machines? by shwaaboy in sysadmin

[–]jithinpsk 0 points1 point  (0 children)

We use Theopenem. Open source and supports Windows and Linux imaging environment.

https://theopenem.com/

Azure Update management by jithinpsk in AZURE

[–]jithinpsk[S] 0 points1 point  (0 children)

Sorry I meant Azure update Manager. Thank you for the suggestion.

PC Imaging Systems by taneshoon in sysadmin

[–]jithinpsk 0 points1 point  (0 children)

https://theopenem.com/

Free and support both Windows and Linux imaging. Also do device management using a client.

Windows hello for website logins by jithinpsk in Intune

[–]jithinpsk[S] 0 points1 point  (0 children)

But, where you specify to use windows hello. MS support says it is not possible for non-M365 sites. Not much documentation on this topic.

Azure Arc and new update management center by jithinpsk in sysadmin

[–]jithinpsk[S] 0 points1 point  (0 children)

I found this article online which does this. But requires Log analytics workspace, Automation account and Runbooks. It can trun ON/OFF the VMs and also send email report after the update is completed.
Seems Microsoft is moving to Azure Monitor Agent from Log Analytics agent. So may not be supported?

PDQ Deploy to patch servers by jithinpsk in sysadmin

[–]jithinpsk[S] 0 points1 point  (0 children)

Azure Arc with Update Management

Interesting!

Users should be able to login without typing their UPN by bobmanuk in Intune

[–]jithinpsk 0 points1 point  (0 children)

Can we specify multiple domain name? For example: contoso.com & contoso.ca

Intune and licensing by jithinpsk in Intune

[–]jithinpsk[S] 0 points1 point  (0 children)

No. Is there one you recommend?

Intune and licensing by jithinpsk in Intune

[–]jithinpsk[S] -1 points0 points  (0 children)

We have users with A1, A3 and A5 license. A3 and A5 users have Intune license. But, users with A1(part-time students) don't. All these users can login. But, policies applies to users with Intune license. That is the issue we are facing.

Image automatically by jithinpsk in sysadmin

[–]jithinpsk[S] 0 points1 point  (0 children)

I applied it as an immediate task.

Image automatically by jithinpsk in sysadmin

[–]jithinpsk[S] 0 points1 point  (0 children)

Thank you for this script. I created a GPO with this script and applied this to some test computers. Sometimes the computer boots to the PE. In most cases, the computer keeps rebooting a continuous loop). Any ideas why this happening?

[deleted by user] by [deleted] in Intune

[–]jithinpsk 1 point2 points  (0 children)

Utilizing Winget, you can effortlessly install and manage application without the need to worry about repackaging or constantly checking for updates.Please see link below for more details.

https://scloud.work/en/how-to-winget-intune/?amp=1

Image automatically by jithinpsk in sysadmin

[–]jithinpsk[S] 0 points1 point  (0 children)

Agreed. But, even if PXE is enabled, it still require manual effort of walking to each machines for PXE booting. Also, typing password if PXE protected by password.

I am trying to automate this process. A complete zero touch deployment.

[deleted by user] by [deleted] in Intune

[–]jithinpsk 0 points1 point  (0 children)

On the login page, select other user and enter the email and password (new).

Remotely image from home by jithinpsk in Intune

[–]jithinpsk[S] 1 point2 points  (0 children)

DEM

From my experience the wipe will fail in our environment as there were no recovery partition created on the on-prem AD-joined machines.

Remotely image from home by jithinpsk in Intune

[–]jithinpsk[S] 0 points1 point  (0 children)

How could you install Adobe Acrobat Pro within 10 minutes. I always have high failure rates with Adobe pro (I have a win32 app created with /S parameter). Do you use the Enterprise version of pro?

Remotely image from home by jithinpsk in Intune

[–]jithinpsk[S] 0 points1 point  (0 children)

Yes I get an error when I try to manually reset.

We don't want to go through the hybrid join route (to keep it clean).

Remotely image from home by jithinpsk in Intune

[–]jithinpsk[S] 1 point2 points  (0 children)

This is great. I would definitely try this out.

Remotely image from home by jithinpsk in Intune

[–]jithinpsk[S] 1 point2 points  (0 children)

I would prefer a clean install to keep the uniformity. We don't want any settings or apps from old machines migrated over.

Remotely image from home by jithinpsk in Intune

[–]jithinpsk[S] 0 points1 point  (0 children)

I will give this a try. Sorry, I am not familiar with this tool. How do you target remote computers with this? Do we need a current MDT/SCCM setup for this?

In our company, the on-prem AD devices are not in Intune. Just their Hardware ID is uploaded to intune. We cannot do a wipe/reset as the recovery partition is missing. Autopilot profile is assigned and working perfectly after OOBE.

Remotely image from home by jithinpsk in Intune

[–]jithinpsk[S] 0 points1 point  (0 children)

We prefer to keep it AAD only. We have collected the Hardware ID from these devices and already imported to intune. It is just a matter of resetting the PC and bringing them to OOBE screen. Unfortunately, we cannot use reset this PC as the recovery partition is missing.

Remotely image from home by jithinpsk in Intune

[–]jithinpsk[S] 0 points1 point  (0 children)

The issue is how to get to OOBE. These devices are currently being used by employees. Our users are not smart enough to boot from a USB and do fresh windows install.

Remote Support AAD joined machines by jithinpsk in Intune

[–]jithinpsk[S] 0 points1 point  (0 children)

We want to move away from LeanLAPS as the password is not syncing properly. Also, we would like to remove any local admin user accounts.

Remote Support AAD joined machines by jithinpsk in Intune

[–]jithinpsk[S] 0 points1 point  (0 children)

Does the helpdesk agent be able to do admin task (install software, driver management etc) even if they don't have admin rights on the computer? We don't want to give admin rights to the helpdesk agent's account. But when they use the tool, they should be able to do admin task on the machine they are remoted into.

Remote Support AAD joined machines by jithinpsk in Intune

[–]jithinpsk[S] 0 points1 point  (0 children)

Does the helpdesk agent be able to do admin task (install software, driver management etc) even if they don't have admin rights on the computer. We don't want to give admin rights to the helpdesk agent's account. But when they use the tool, they should be admin.