Jump to content


anyweb

Root Admin
  • Posts

    9163
  • Joined

  • Last visited

  • Days Won

    366

Everything posted by anyweb

  1. i'm not sure what you mean by this, this guide is about installing ConfigMgr, and doesn't necessarily cover customizing client settings...
  2. hi Peter what DO settings did you configure, I can verify in one of my labs cheers niall
  3. The current uptick in remote work is resulting in numerous organizations shifting to cloud platforms in order to manage and secure their endpoints. Tech giants like Microsoft have also come up with solutions like Endpoint Manager and hybrid System Center Configuration Manager (SCCM), which combines the features of SCCM and Microsoft Intune, to help users make the best of both worlds. However efficient SCCM is in managing endpoints, third-party application management is its handicap. With hybrid SCCM enabling users to integrate with Microsoft Intune, they should be able to patch third-party applications in Intune as well. Patch Connect Plus integrates with SCCM to solve this problem, and facilitates seamless third-party application patching with its newest feature: Intune Application Management. This blog will discuss in depth how to configure and deploy third-party applications in Microsoft Intune using Patch Connect Plus. Configuring Intune application management in Patch Connect Plus The following steps help you configure Intune application management in the Patch Connect Plus console. 1. Register a new application in Azure AD The first step is to create a client ID and a tenant ID in Azure AD. Navigate to App registrations and click + New registration. Once you have provided a suitable name and configured the account type according to your requirement, click Register, and your application will be registered with a unique client ID and tenant ID. 2. Add API permissions to the registered application The next step is to provide adequate permissions to the application created. Click + Add a permission. Under Application permissions, click DeviceManagementApps and enable DeviceManagementApps.Read.All, DeviceManagementApps.ReadWrite.All, and Group.Read.All. Once that's done, grant admin consent to approve the permission, and select Yes whenever prompted for consent. 3. Create a new client secret Navigate to the Certificates & secrets tab, and create a new client secret. Give it a suitable description, and set the client secret to Never expire. Once the client secret for Patch Connect Plus has been successfully created, copy and save the secret key to a secure location for any future use. 4. Intune configuration in the Patch Connect Plus console Copy the unique client ID and tenant ID. Navigate to Patch Connect Plus' web console > Admin> Application Mgmt Settings > Intune Configuration. There, paste the client ID, tenant ID, and the client security details, and click Save. You have successfully configured Intune application management. The next step is to deploy third-party applications. Deploying third-party applications using Microsoft Intune Let's take a look at how to deploy third-party applications in Intune using Patch Connect Plus. 1. Open the Patch Connect Plus web console > Application Management > INTUNE. Select the third-party application you wish to create. You can customize the deployment using scripts, then click Create Application. 2. The selected third-party application will appear under Client apps as shown below. 3. The next step is to assign a group under the enrolled devices for the application created. Under Properties, edit Assignments and click + Add group. Once the group is added, click Review + save. 4. Once the groups have been assigned and saved, you can find the application created listed under the Apps section in the Company Portal. Click the application and install it as shown below. You have successfully created and deployed third-party applications in Intune using Patch Connect Plus. As you can see, setting up and configuring Intune application management in Patch Connect Plus is a simple process, and requires no additional infrastructure. With Intune settings configured, you can now create and deploy third-party applications in Microsoft Intune using Patch Connect Plus. Try the 30-day free trial to get a hands-on experience of this feature and much more.
  4. are you rdp'ing to the computer you are monitoring ? if so, disconnect and let it do it's thing for a bit before reconnecting or, do you have a CD in the drive ? it won't encrypt if you do...
  5. ok well there's nothing there at all so this is not working, pm me your teamviewer details if you want me to connect and take a look
  6. and once again it's complaining that what's in FVE is not compliant, so what are the registry keys you have listed in FVE ? this path..
  7. that's the MDOPBitLockerManagent key, what's the parent FVE key? also is your configmgr client agent the correct version ? is the computer in a collection targeted with the bitlocker management policy ?
  8. Presented by Microsoft MVP Andy Syrewicze and Altaro Technical Consultant and former Microsoft Senior Technical Evangelist Symon Perriman, this live demo webinar will cover security features in the Office 365 stack that every administrator should be using including Azure AD, EMS Suite, Secure Score, Licensing for Security Features, and more! Due to current concerns over COVID-19 exploits, this webinar is a must-attend event for all users of Office/Microsoft 365. As usual, the webinar will be streamed live twice on the same day, to give as many people as possible the chance to attend live and ask their questions to the presenters.
  9. Introduction Lock down due to Covid19 is a reality now for so many people, however it’s also reminded us of keeping ourselves entertained during our free time while at home. I’m well used to keeping myself busy with work and MVP activities, but I decided to try my hand again at playing games during the weekend (it’s been years since I did), but to do so on a budget. The total cost of this build was less than 2/3rds the price of an equivalent ‘new’ gaming PC and the whole process was fun researching and putting everything together. It certainly took my mind off the doom and gloom we see in the news every day. You could easily reduce the overall price by getting a cheaper gaming card such as the RTX 1660 series with equivalent gaming results and by leaving the built-in PSU in place. I watched a bunch of videos on youtube and many vloggers recommended purchasing a Dell Optiplex 9020 MT (mini-tower) or similar and modding it to add new life. This particular vlogger stood out and I’d highly recommend you check out his videos on the subject. Here are the details of what I did in case any one is interested in doing something similar. The computer I purchased a 2014 (six year old pc !) Dell Optiplex 9020 from ebay, and the specs are below. It wasn’t the fastest i7 available on ebay, but the price was reasonable and it would ship from within Europe. The packaging and quality of this PC was amazing, it looks like it’s new. Dell Optiplex 9020 MT PC Intel Core i7-4770 3,4GHz 8GB RAM 500GB HDD 256GB SSD When it arrived I removed the included 256GB SSD (no-name cheap brand) and replaced it with a 500GB Samsung SSD 840 series I had from an older pc. I also added some more ram (4GB) to bring it up to an amazing 12GB ram. The ram on these older Optiplex’s is not cheap, but it is readily available on Ebay. I was lucky to have a 4GB ram stick available. Cost: 234GBP approx 280USD This Optiplex can run with an over clock able i7-4790K model and you can find them on Ebay also. I have not purchased one yet, that’ll come later if I feel it’s necessary. The PSU I ordered a 650 Watt Corsair CV650 power supply unit (PSU), and it fits in perfectly into the Dell and adds needed power connectors for powerful graphics cards. Cost: 699 SEK (approx 70USD) The video card Deciding on which video card to get was based on cost and size, I saw many videos about increasing the room in the mini-tower by drilling out the HDD bays, but I wanted to do minimal changes to the computer (for now). So I purchased a fairly powerful ASUS Geforce RTX 2060 Dual EVO 6GB. Based on the photos, I assumed that it would fit without modification in my Optiplex (yes I know, that’s a dangerous assumption, but read on for details about how I solved it below). Cost: 4199SEK (approx 425 USD) The adapter In order to connect the new PSU to the Dell motherboard, you’ll need an adapter cable (24 pin FEMALE to 8 pin MALE. Cost: 101SEK (approx 10USD) It looks something like this. The build Once I had everything together, I placed the Dell on a suitable surface, and opened it up. My first goal was to see if the rather large RTX 2060 card would even fit in the case, and initially it didn’t, it was just too tight and would not sit flush in the PCI slot (number 5 in the pic below). It couldn’t sit flush because something in the area of the RAM slots was stopping it from going in the whole way, so I removed it again. I didn’t give up. Close examination of the cables involved revealed that I could compromise. I removed the front panel USB connector cable (number 17 in the graphic below). Next, I replaced the standard SATA cable coming from the motherboard (number 16 in the pic above) with a left angle SATA cable (shown below) which I already had in my box of cables as it was also stopping the graphics card from fully engaging in the PCI slot. Cost 50 SEK (approx 5 USD). Next, I removed two unnecessary cables, namely number 6 (intrusion detection) and number 22 (speaker) in the pic. Both were stored away safely in case I sell this on later. Finally, I had to remove the Dell ‘easy open’ adapter to hold PCI cards in place, and instead, used proper computer screws to secure the video card and the 2 remaining slot covers. With the minor modifications above, the graphics card fits without a problem, albeit tightly, but keep in mind that you should add any additional ram first as the graphics card tight fit won’t allow you to add/remove ram once installed (you’ll need to remove it to replace RAM). There are two hard drives in this pc, one HDD and one SSD, I flipped the SSD upside down in order for the SATA cables to connect both drives easily. The result After connecting everything together I was pleasantly surprised to see it spring to life ! Look at that bling :-). Not only that, but 2 (right side) of the 4 USB connectors on the front panel of the Dell were still operational with the USB connector removed, so the minor mods above didn’t impact the functionality of the Dell negatively. Plus this setup easily powers three monitors (2x4K and one 144hz FD monitor). The video card itself is awesome and performs admirably in Time Spy tests. Yes it’s not as good as a gaming PC from 2020 but that’s to be expected on a six years old computer, and I wasn’t even over clocking. Notice how it easily beats gaming laptops from 2020, that’s pretty awesome ! The supplied drivers and software comes with GPU-Z to allow you to over clock the video card and play with it’s features, this card can go up to 2450 Mhz with this tool but I don’t know if I’ll push it that far. Gaming I fired up Doom Eternal in ULTRA mode for everything @ 144 HZ and it happily played on 1920×1080@144hz with 144fps. Impressive ! I’ll add some more game data in the coming days ? Links Dell Optiplex 9020 MT – https://www.ebay.co.uk/sch/i.html?_nkw=dell+optiplex+9020+mt+i7&_sop=12 i7-4790K – https://www.ebay.co.uk/sch/i.html?_from=R40&_trksid=m570.l1313&_nkw=Intel+Core+i7-4790K&_sacat=0 Dell Optiplex 9020 MT motherboard diagram – https://www.dell.com/support/manuals/us/en/04/optiplex-9020-desktop/opt9020mtom-v2/system-board-components?guid=guid-907a87ff-7a2a-41c7-ae26-89f61ae94d02&lang=en-us ASUS RTX 2060 video card – https://www.asus.com/Graphics-Cards/DUAL-RTX2060-6G-EVO/ 24 pin to 8 pin adapter cable – https://www.ebay.co.uk/itm/24-Pin-Female-to-DELL-Optiplex-Server-Motherboard-8-Pin-Male-Adapter-PowerC-9K/223999321959?hash=item3427666767:g:dFgAAOSwRaFcky~Z Left angle sata cable – https://www.startech.com/se/en/Cables/Drive/SATA/12in-SATA-to-Left-Angle-SATA-Serial-ATA-Cable~SATA12LA1 Recommended temps for GPUs – https://www.reddit.com/r/buildapc/comments/9lljy9/what_are_ideal_dangerous_temps_for_you_cpu_and_gpu/?ref_source=embed&ref=share 140MM multi-coloured fan – https://www.netonnet.se/art/datorkomponenter/kylning/chassiflakt/corsair-icue-ql140-rgb-140mm-pwm-single-fan/1011310.9163/ Next steps ? Next up I’ll probably add a 140MM fan like this, and mod the front of the case to allow for better airflow as described here. And if I’m still modding, how about cutting up the chassis case, adding clear plastic to show the lovely interior bits as described in this video. Please let me know your thoughts on this, and happy gaming ! cheers ! niall
  10. yup, for anyone wondering, in part 4 of my series you'll see how to do this silently, https://www.niallbrady.com/2019/11/13/want-to-learn-about-the-new-bitlocker-management-in-microsoft-endpoint-manager-configuration-manager/
  11. you could always try prestaging content on the dp, if the wan link is bad.
  12. are all packages failing to get to the dp ? or only some packages ? i'm confused about you mentioning PXe, what has that to do with packages getting to the dp, you need to fix the packages getting to the dp first and then concentrate on your other issues
  13. if it's a lab and you've had it powered off for a while try rebooting the issuingca and webserver vm's, if that doesn't help then verify you can access the webserver URL from the internet (try with your phone)
  14. yes its possible, if you are using SCCM 1910 follow my video if you are using MEM 2002 then set the corresponding settings in the wizard to have no delay
  15. thanks for the thanks Martinez, you need to do it on any site system that hosts the applicable role, as per https://docs.microsoft.com/en-us/mem/configmgr/core/plan-design/network/pki-certificate-requirements in my guide the Primary hosts the dp role so it's an all in one solution
  16. you need to provide more detail about this distribution point, was it ever working ? have you tried to reinstall the DP role on this server ? you mention 'during the reimage of the device' what do you mean by that ?
  17. hi and welcome first things first, why are you installing Configmgr with SQL remote, it's recommended to have it on the same server (primary) as configmgr is installed on, unless you like dealing with issues (such as this one) cheers niall
  18. clients will try to check for machine policy as defined in the Client Settings of your site, by default it's once per hour, how have you defined your settings ? to skip the client settings defined settings you can manually open the Configuration Manager client and trigger a Machine Policy in the Actions tab.
  19. did you look at your logs ? there are some errors in there, i've highlighted one for you
×
×
  • Create New...

Important Information

We have placed cookies on your device to help make this website better. You can adjust your cookie settings, otherwise we'll assume you're okay to continue.