Windows

Handling Unmanaged Windows Devices – Using Windows MAM with Intune

All organizations differ in how they want to secure (or not secure) their data. Inevitably, the weakest points in an organization’s defense are the end users and endpoints. Allowing any device access to corporate resources is generally not a good practice. It’s much easier to control access from company-owned hardware since we can ensure our […]

Handling Unmanaged Windows Devices – Using Windows MAM with Intune Read More »

Resolving Sysprep error – “app was installed for a user, but not provisioned for all users”

 I recently ran into an issue with a client when trying to capture a new AVD image. When trying to sysprep the VM before image capture, we were receiving the below error – “Sysprep was not able to validate your Windows Installation. Review the log file at %WINDIR%\System32\Sysprep\Panther\setupact.log”    The above error on its own is

Resolving Sysprep error – “app was installed for a user, but not provisioned for all users” Read More »

Deploy Custom Backgrounds to New Teams with Remediations

With the New Teams app being GA, organizations will eventually move from “Teams Classic” to the “New Teams” app. There are several reasons to make the switch, the biggest reason likely being the performance benefits. As I’ve been testing the new teams, I realized that custom backgrounds that were manually added, or added via remediations,

Deploy Custom Backgrounds to New Teams with Remediations Read More »

Keep Teams Machine-Wide-Installer Updated on AVD (or other VDI) with Intune Remediations 

You may or may not know that there is a specific way to install Teams when using a VDI solution. AVD is what I end up working with in almost every situation, so this article is catered to AVD. However, this solution can be used for any VDI solution that uses the Teams machine-wide installer.

Keep Teams Machine-Wide-Installer Updated on AVD (or other VDI) with Intune Remediations  Read More »

Removing Windows Hello (WHfB) as a sign-in method when it’s already configured on devices

I’ll start this post by saying I do not endorse disabling Windows Hello for Business. There are big benefits to using WHfB, and I recommend using it. But, different organizations have different desires. So, this post will describe how to remove Windows Hello as an authentication method on workstations. To clarify – how to remove

Removing Windows Hello (WHfB) as a sign-in method when it’s already configured on devices Read More »

Hybrid Device Join – What Happens Behind the Scenes

I recently had a situation I hadn’t encountered before while moving a client to Hybrid Device Join + Intune (or Entra ID Join, HAADJ, EIDJ, or whatever you want to call it these days). This involved both firewall settings and configuration manager blocking device registration (see Ben’s post here for more on that Co-management Series

Hybrid Device Join – What Happens Behind the Scenes Read More »