• Petter1@discuss.tchncs.de
    link
    fedilink
    English
    arrow-up
    5
    ·
    10 hours ago

    When I enroll a new device at work I have literally one day only to let it run through autopilot (hybrid setup) let all policies (GPO and MDM) trigger and install all the updates (windows and vantage (Lenovo))

    Ironically this still an improvement over the HP devices filled to the top with slop…

    But imagine giving such a device to a new coworker 😂 as MS intends you to do with autopilot (i set it up with my account and switch the primary after all updates are done)

    • yeehaw@lemmy.ca
      link
      fedilink
      English
      arrow-up
      2
      ·
      8 hours ago

      This whole thing drives me nuts. I started doing it this way with my own account then switching. But licensing is a pain because then you need to pay to have an admin account manage this. No unlicensed admin can join a device to AAD. And when you license it you have to manually change it with PowerShell. Such a pain in the ass.

      Now I just either autopilot or ship to site and tell the user to log in with their email lol. It’s slow going but saves a bunch of hassle.

      • Petter1@discuss.tchncs.de
        link
        fedilink
        English
        arrow-up
        2
        ·
        3 hours ago

        We have policy to have an admin account and a normal business premium (with enterprise windows add-on)

        So I enroll them to my main 😂 since we have a hybrid setup, I have like 50 dead objects under my account in intunne (hybrid generets a dead object beside the real one during autopilot)

        I just switch the primary user in intune

        • yeehaw@lemmy.ca
          link
          fedilink
          English
          arrow-up
          1
          ·
          2 hours ago

          Ya I’ve been considering this for some time. Just annoying. Microsoft just wants to nickel and dime us all to death lol