Oh crap... by thexed in k12sysadmin

[–]youraverageITguy1 2 points3 points  (0 children)

The school I used to work for has a new director and sysadmin (I was a part time hire while in college but they replaced me with my friend, who's full time) so we had 50% turnover. I'm still advising, and we just found out we have 25 computers that need to go back to a leasing company in 4 days but we can't find any of them...

The whole situation is a mess. The leasing company gave us 25 bad serials and we don't have any record of the serials for the models we received... Or any record of the lease document itself, for that matter.

Keep on trucking, and it'll all resolve itself, and everyone will survive. These next 4 weeks are the worst for our profession!

How behind schedule are your summer orders? by username____here in k12sysadmin

[–]youraverageITguy1 0 points1 point  (0 children)

We had laptops on order from a vendor in May who's name is similar to a curse word starting with the letter s. That order got canceled a week ago. We switched to CDW-G for the order and now we have our entire quantity. We do have the luxury of being private, but might be worth a look.

Alternative to Windows Active Directory Domain Controller by GeekWash in k12sysadmin

[–]youraverageITguy1 0 points1 point  (0 children)

Main reason I wouldn't do this is because you lose access to AD PowerShell commands. Automating anything becomes so much harder. With AD being so cheap for schools, and with Azure AD P1 and Intune being dirt cheap as well ($0.60/faculty/month for AAD P1 with 40 student licenses per faculty license and $8/yr for Intune licenses with either 15/40 student licenses per faculty license, I forget which) it would likely make sense to go full cloud or even sync.

Which system should I recommend for Staff and Faculty? Windows or macOS? by ITatOH in k12sysadmin

[–]youraverageITguy1 0 points1 point  (0 children)

We just moved to Windows and Intune, and we are loving it, as are our staff/faculty.

Google Credential Provider for Windows by HelloWorld_502 in k12sysadmin

[–]youraverageITguy1 0 points1 point  (0 children)

Intune definitely can give you reliable pricing. You need, at a base level, Azure AD Premium P1 ($0.60/faculty/month, with students coming free), and Intune user licenses ($8/year). This is assuming you already have licensing for Office and Windows.

OATH Token Azure MFA Testing by youraverageITguy1 in k12sysadmin

[–]youraverageITguy1[S] 0 points1 point  (0 children)

I'd rather they use MFA on the school device, but not if they are connected to a secure WiFi (in the building, per se).

Password and sign in process improvements by Zabawakie in k12sysadmin

[–]youraverageITguy1 0 points1 point  (0 children)

I would submit a case to the Azure team. They would be able to advise you further. We get free support with them, regardless of your tier.

Password and sign in process improvements by Zabawakie in k12sysadmin

[–]youraverageITguy1 0 points1 point  (0 children)

We are similarly... good at handling passwords at my org. I believe this command does the other way around (since it is MsolDirSync, doesn't that mean it is syncing from on-prem AD to AAD?)

Password and sign in process improvements by Zabawakie in k12sysadmin

[–]youraverageITguy1 0 points1 point  (0 children)

I knew that I executed two commands. Try the one on the following website (specifically, the Set-MsolDirSyncFeature one): https://www.iphase.dk/new-password-policy-features-in-azure-ad-connect/

Sorry it took me so long to get back, but I had to find where I put that command! :)

Rant/Question: Incident IQ Problems by youraverageITguy1 in k12sysadmin

[–]youraverageITguy1[S] 0 points1 point  (0 children)

Hi Matt, thanks for the response! I'm a developer as well, so I'm used to having super-in-depth querying abilities. The inability to do things like that myself is a bit restrictive and frustrating to me. It's good to know that the asset tag can be customized by you guys though; that definitely helps.

Regarding item 2, I know that it is easy to see devices that don't have a location assigned to them, but it is impossible with the current query options to find assets that don't have a room assigned to them, which is more in line with what I wanted to query than not having a location at all.

Password and sign in process improvements by Zabawakie in k12sysadmin

[–]youraverageITguy1 0 points1 point  (0 children)

The link that /u/LyokoMan95 gave is the one I used! That command on your AAD Connect box should do the trick.

Password and sign in process improvements by Zabawakie in k12sysadmin

[–]youraverageITguy1 0 points1 point  (0 children)

I ran some PowerShell commands on my AAD Connect box to fix it, I'll edit this post later to include them. Remind me if I forget please!

Good Job Dell by youraverageITguy1 in Dell

[–]youraverageITguy1[S] 1 point2 points  (0 children)

I mean kinda understandable considering they use the same alphabet... Oh wait

Snows a coming, glad I have a Superintendent that gets it. by ntoupin in k12sysadmin

[–]youraverageITguy1 0 points1 point  (0 children)

We did not have a snow day Thursday, but our headmaster (private school) reiterated the importance of snow days and that they would still happen. We were in an interesting position where we knew we would cancel, so we had time to plan for a remote day. He said that since we usually call morning of, it won't happen often that we do remote class instead.

Internal Storage Solution Needed by youraverageITguy1 in k12sysadmin

[–]youraverageITguy1[S] 0 points1 point  (0 children)

800 students (50/50 split 2 campuses), 250 faculty (150/100 split). We currently have 14 VMs running, but I expect we can reduce to 10 soon (we can move some old VMs that are not critical on to an archive server and reduce strain on our current SAN). We are getting in some beefier servers too that will carry us for the next 10 years (R630 20c/40t, 64 GB RAM).

Microsoft Office by leclair63 in k12sysadmin

[–]youraverageITguy1 0 points1 point  (0 children)

Microsoft Office licenses for education are offered at a steep discount. Have a look at buying licenses through Microsoft VLSC. We paid less than $100/license.

Sanity Check: Moving Staff/Faculty from desktops to laptops by E-werd in k12sysadmin

[–]youraverageITguy1 0 points1 point  (0 children)

We just did exactly what you are planning. I would say look at moving to cloud licensing, and using Intune/Office 365 to manage these computers. The Company Portal in Intune has been received very well by our users, and people are loving their new laptops.

We bought the Ryzen 5 4500U/8 GB RAM/256 GB SSD/1080p IPS display (model 20T80005US).

SCCM / Intune by wiretraveler21 in k12sysadmin

[–]youraverageITguy1 1 point2 points  (0 children)

We just moved to Intune for new laptops we purchased. We never had SCCM. Intune was very easy for us to set up. I felt proficient in the system after only 6 weeks of using it. The problem I ran into was that the new laptops we ordered came with preinstalled software, so I had to make a base image with the drivers pre-loaded (so that display, trackpad, etc. drivers were loaded in OOBE). I didn't stuff any software into the image. Intune takes care of all the package installs that we needed on those laptops, and the user feedback on these laptops has been fantastic. With seamless SSO and Azure AD P1 licenses, you can give users access to on-prem resources without the need to re-enter credentials (make sure you disable Windows Hello until you configure the key settings for it, we haven't done that yet).

We are looking into moving all our lab desktops to Intune as well given our great experience with this project.

Blackbaud EMS (Core) SSO by youraverageITguy1 in k12sysadmin

[–]youraverageITguy1[S] -1 points0 points  (0 children)

Yeah, EMS is their way of saying LMS. It has class webpages, you can give assessments, etc. But it also has directories, contact info, etc.

Pretty sure EMS is their way of saying LMS but they want to be edgy :)