Tag: sccm

Configure Bitlocker during deployment

Set X256 AES Encryption Cipher reg add “HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\FVE” -t REG_DWORD -v EncryptionMethodWithXtsFdv -d 7 -f Set Full Disk Encryption reg add “HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\FVE” -t REG_DWORD -v OSEncryptionType -d 1 -f Set Bitlocker PIN manage-bde -add C: -TPMAndPIN 123456 Enable Bitlocker manage-bde -on C: -rp




Basic Unattend for SCCM

The below xml is a very basic unattend file for SCCM OS deployments. It solves the issue where ‘Just a moment…’ covers the deployment status window so you can’t see the progress of the deployment. <?xml version=”1.0″ encoding=”utf-8″?> <unattend xmlns=”urn:schemas-microsoft-com:unattend”> <settings pass=”oobeSystem”> <component name=”Microsoft-Windows-Shell-Setup” processorArchitecture=”amd64″ publicKeyToken=”31bf3856ad364e35″ language=”neutral” versionScope=”nonSxS” xmlns:wcm=”http://schemas.microsoft.com/WMIConfig/2002/State”> <OOBE> <HideEULAPage>true</HideEULAPage> <ProtectYourPC>1</ProtectYourPC> <HideLocalAccountScreen>true</HideLocalAccountScreen> <HideOnlineAccountScreens>true</HideOnlineAccountScreens> <HideWirelessSetupInOOBE>true</HideWirelessSetupInOOBE>…




Unlock a Locked Object in SCCM Configuration Manager

Open the Config Mgr console and select “Connect via Windows Powershell” Run the below command in the Powershell session. Unlock-CMObject -InputObject $(Get-CMApplication -Name “<Application Name>”)   Tip: Get the application name from the console, using what’s in the column “name”