Archive

Archive for the ‘Active Directory’ Category

Join me at the What’s new in Windows 10 IT Innovation Series Event

Hi all,
Later this January I will help my colleague Ronni Pedersen at this Microsoft Event. If interested, please use the below links to register.

Hope to see you

 

/Jens Ole

 

What’s new in Windows 10 Enterprise: Increasing Security, Predictability, and Compatibility
Experience the most innovative and reliable Windows yet! Windows 10 brings increased stability and predictability to your organization, while minimizing risk. Attend this free one-day training event to explore new servicing, security, and management features that enable corporate data access across devices and platforms while allowing you to maintain control over those devices.

Join Microsoft MVP Ronni Pedersen and learn to:

  • Help ensure application compatibility with new and legacy LOB apps with Microsoft Edge and IE 11.
  • Implement security and identity capabilities through Microsoft Azure Active Directory, Hello/Passport, Device Guard, Enterprise Data Protection, as well as Multi-Factor Authentication.
  • Get hands-on with Windows as a Service by managing Current Branch and Long Branch scenarios.
  • Create and configure deployment and management packages using Microsoft Mobile Device Management and Microsoft Intune.

Join this IT Innovation Series event for first-hand experiences with real-word scenarios around Windows 10.

Option 1: Copenhagen, Denmark:
Date: Jan 11, 2016 (9:00 AM – 5:00 PM)
Registration: https://www.microsoftevents.com/profile/form/index.cfm?PKformID=0x627587537

Option 2: Aarhus, Denmark:
Date: Jan 12, 2016 (9:00 AM – 5:00 PM)
Registration: https://www.microsoftevents.com/profile/form/index.cfm?PKformID=0x628919320

Applying an ICD provisioning package (Part 3)

16/11/2015 2 comments

1. part – I installed Windows Imaging and Configuration Designer (ICD) tool

2. part – I created a provisioning package

In this final part I’ll apply the created provisioning package to a Windows 10 Pro client system.

 

Here I got the non domain joined machine with a non standard computer name.

The computer is running Windows 10 Pro.

image 

 

Copy the newly created provisioning package to the computer or a USB.

 

image

 

Run the Provisioning package? Yes, sure

image

 

Du you trust the creator? Yes, add it

image

 

NOTE: I removed the password in my test setup. In production you will be prompted for a password to apply the package.

 

The provisioning package is applied……

 

image

image

 

After the provisioning package is applied you’ll be signed out and the computer will restart a couple of times.

image

 

We sure did change something Smiley, der blinker

image

 

Verify that you now can login with your domain account.

image

 

After login. Cool…

image

 

The computer is now domain joined, have a standard computer name and the Windows version is now Enterprise.

image

 

Verify that the computer is in the right OU in Active Directory too and the mission is accomplished.

 

/Enjoy

The Power of Windows Imaging and Configuration Designer (Part 2)

The Windows Imaging and Configuration Designer (ICD) tool can be used to a lot of different stuff. But for now I see the biggest gain for companies to use the tool for people that buy a new computer and is not near a company location where a new computer can be deployed or if the bought computer model is not on the official hardware certification list.

This guide will change the following at a Windows 10 Pro computer.

New standard computer name

Domain joined

Get the computer staged in the right OU

Upgrade the SKU to Enterprise

Let’s get started.

Start Windows Imaging and Configuration Designer (ICD)

image

Select New provisioning package

image

Enter Project details and choose a folder.

image

Select what Windows versions can use the package. I’ll choose Common to all Windows desktop editions

image

As this is a new package, I’ll not import any package, click Finish

image

To filter out some settings, select Common IT Pro settings

image

Enter the account used to do the domain join

image

Target OU

image

Enter Computername. In the case I use a variable to get different computernames.

TESTPC%SERIAL%

image

Enter DomainName

image

Set domain join password

image

To upgrade the OS version to Windows Enterprise enter an appropriate PID.

image

Save the project

image

Click Export and select Provisioning package

image

Give the provisioning package a name and select ranking

image

You should encrypt the package, so no one can read the passwords stored inside the package or the license key.

Further more only admins/users with the password can use the provisioning package and there by join computers to the domain.

image

Save

image

Building

image

Done, Finish

image

The provisioning package is  now ready for use.

image

Next part I’ll run the package at a non domain joined Windows 10 Pro machine.

Installing new KMS key to support Windows 10 Activation

Many companies are evaluating Windows 10 Enterprise in these days and Windows 10 needs a new KMS key to activate. Follow this short blog post to get ready.

For now, activating Windows 10 via KMS require the KMS server to run:

  • Windows Server 2012
  • Windows Server 2012 R2

First you’ll have to find the correct  key on MSVLC. This can be a hard job but look for this:

image

Most of my customers are still running KMS because they are activating Windows 7 machines.

Their KMS server activates both Windows Server, Windows Clients and Office.

If you are running Windows Server 2012 or Windows Server 2012 R2, upgrading to the new KMS key is strait forward.

 

Start the “Volume Activation Tools” and choose you KMS server:

image

 

Add your existing KMS server name

image

 

Enter (or copy/paste) your new KMS Key.

image

 

Yes, I’ll uninstall the existing key and install the key one.

image

 

Activate, sure….

image

 

Activate Online

image

 

Yes, I’ll proceed.

image

 

Click Next to modify KMS configuration.

image

 

..and  Commit the changes

image

 

Hopefully it’s a success, and you can close the wizard.

image

Check from an elevated prompt, that the new KMS KEY is present and it’s licensed. Also use Event Viewer to check that all is okay.

slmgr –dlv

image

 

Simple and easy – Enjoy

IOS9: New Managing Features

As a consultant working with Azure and Microsoft Intune, is will be quite interesting to follow the Apple Event 9. September 2015.

I’m specially looking forward to see if rumors around IOS 9 are correct.

IOS9 is rumored to include:

  • Distribute Apps outside Apple Store (Business Store?)
  • Control IOS Updates
  • Convert Unmanaged Apps to Managed Apps (no longer need to uninstall/install)
  • Multi-tasking

Let us see what happens Winking smile

Speaking at SCUG.DK

 

Last Friday I had the honor to speak, once again, at the local Danish User Group SCUG.DK.

I shared a session with my colleague and MVP Ronni Pedersen, about Windows as a Service.

When companies are deploying or evaluating Windows, there are a bunch of things you should be aware of.

  • Windows 10 Licensing
  • Group Policies
  • MDOP
  • Windows 10 Activation (KMS vs ADBA)
  • IE11 / Edge
  • Enterprise mode
  • Windows 10 (Windows Defender / Endpoint Protection)
  • Default Build-in Apps
  • Default Apps and File Associations
  • Windows 10 Business Store
  • In-place Upgrade or Reimage
  • Domain joined, Azure joined

I hope the slides will be available at www.scug.dk, if not I’ll attach them here.

Azure AD Connect is GA

Today Microsoft announced the following products:

  1. Announcing the Limited Public Preview of Azure SQL Data Warehouse
  2. Azure AD Connect and Connect Health are generally available
  3. Azure Application Gateway generally available
  4. SQL Server 2016 CTP 2.1 now available
  5. Microsoft Intune Conditional Access and Mobile Application Management for the Outlook app
  6. New Microsoft Power BI Content Pack and connector generally available
  7. Key Vault is now generally available across all regions (except Australia)

Reading more here:

http://blogs.technet.com/b/stbnewsbytes/archive/2015/06/24/cloud-platform-release-announcements-for-june-24-2015.aspx?linkId=15102330