Hi another great and very useful video Sir, I was wondering if you able to do video on how to deploy network printer through inutne on intune manage devices. I been trying to find something like this from very long time but no luck...many thanks
Thank yo so much for comment and take time, and good question. You are the second to ask for a video regarding this. Would it be on-premis network printer? or over the cloud? over the cloud I wanted to do a video but missing hardware, a network printer or alike I can do, but that isn't so Intune/Cloud friendly, since you need to be in the office with the printer or over VPN... well printing paper you still need to be local :) I could do video about pushing on-premis video
@@IntuneVitaDoctrina Well, you can't know that but Microsoft should now.... ;) I have the application log and the CodeIntegrity log here: Applog: Product: Microsoft Device Inventory Agent -- Error 1723. There is a problem with this Windows Installer package. A DLL required for this install to complete could not be run. Contact your support personnel or package vendor. Action ConfigureEventManifestUnregister, entry: ConfigureEventManifestUnregister, library: C:\WINDOWS\Installer\MSI30E8.tmp Codelog: Code Integrity determined that a process (\Device\HarddiskVolume3\Windows\SysWOW64\msiexec.exe) attempted to load \Device\HarddiskVolume3\Windows\Installer\MSI30E8.tmp that did not meet the Enterprise signing level requirements or violated code integrity policy (Policy ID:{xxxxxxxxxxxxxx}).
I wondering if you can use the info for filtering or dynamic group, like all devices that has BIOS version X. And it would be nice to see if Secure Boot is enabled, the compliance policy is sometimes inaccurate.
agree 100% would be nice if Secure Boot is enabled or not was visible under the BIOS node. My take on Intune and groups is that Dynamic Groups are nearly worthless, I create static groups and make them dynamic by running PowerShell scripts and read MS Graph and update based on attributes, in this case Device Inventory attributes. That is my planned next long series of videos on this channel also, using API/MS Graph to do some cool stuff, but going very slowly and explain all steps easily for those who never used it.
If there any way to see this data across many devices? You can't really use it for anything proactive if you can only see the data per device. For example, I'd love to be able to identify the 50 worst batteries in my organization and get those laptops replaced.
That is an excellent question, and this feature is so new not even a month old, so I expect that to come in reporting or alike. Until then we could get what you want with help of MS Graph API calls, probably need to query all devices for this data and then sort it and take top 50 devices or alike, or generate a CSV file with all values and we do it in Excel ourselves. in 2025 I'll do a lot of MS Graph API videos, so I'll add this as an item
Oh that is very interesting. I checked 4 random DLLs in C:\Program Files\Microsoft Device Inventory Agent\InventoryService and all were signed, could you please let me know one DLL you found that was not signed?
Super Sir, Thank you :)
Thank YOU so much for taking time to watch and comment
super useful! looking forward to more great videos!!!!!
Thanks a lot for your comment and more videos are coming in January for sure, see if more in December, depends on time :)
Nice! Thank you for the info!
Thanks a lot for taking time to comment
Hi another great and very useful video Sir, I was wondering if you able to do video on how to deploy network printer through inutne on intune manage devices. I been trying to find something like this from very long time but no luck...many thanks
Thank yo so much for comment and take time, and good question. You are the second to ask for a video regarding this.
Would it be on-premis network printer? or over the cloud? over the cloud I wanted to do a video but missing hardware, a network printer or alike I can do, but that isn't so Intune/Cloud friendly, since you need to be in the office with the printer or over VPN... well printing paper you still need to be local :) I could do video about pushing on-premis video
@@IntuneVitaDoctrina Hi its on-premis network printer.
Thank you for the video. The Device Inventory Agent cannot be installed if App Control for Business (preview) is set up
Thanks for that information, I did not know that. How is this displayed, in console or it just fails because App Control blocks it?
@@IntuneVitaDoctrina
Well, you can't know that but Microsoft should now.... ;)
I have the application log and the CodeIntegrity log here:
Applog:
Product: Microsoft Device Inventory Agent -- Error 1723. There is a problem with this Windows Installer package. A DLL required for this install to complete could not be run. Contact your support personnel or package vendor. Action ConfigureEventManifestUnregister, entry: ConfigureEventManifestUnregister, library: C:\WINDOWS\Installer\MSI30E8.tmp
Codelog:
Code Integrity determined that a process (\Device\HarddiskVolume3\Windows\SysWOW64\msiexec.exe) attempted to load \Device\HarddiskVolume3\Windows\Installer\MSI30E8.tmp that did not meet the Enterprise signing level requirements or violated code integrity policy (Policy ID:{xxxxxxxxxxxxxx}).
Thanks again for sharing, it complains that temp files aren't signed, yeah that sounds normal... Microsoft have some explaining to do!
I wondering if you can use the info for filtering or dynamic group, like all devices that has BIOS version X. And it would be nice to see if Secure Boot is enabled, the compliance policy is sometimes inaccurate.
agree 100% would be nice if Secure Boot is enabled or not was visible under the BIOS node.
My take on Intune and groups is that Dynamic Groups are nearly worthless, I create static groups and make them dynamic by running PowerShell scripts and read MS Graph and update based on attributes, in this case Device Inventory attributes. That is my planned next long series of videos on this channel also, using API/MS Graph to do some cool stuff, but going very slowly and explain all steps easily for those who never used it.
If there any way to see this data across many devices? You can't really use it for anything proactive if you can only see the data per device. For example, I'd love to be able to identify the 50 worst batteries in my organization and get those laptops replaced.
That is an excellent question, and this feature is so new not even a month old, so I expect that to come in reporting or alike.
Until then we could get what you want with help of MS Graph API calls, probably need to query all devices for this data and then sort it and take top 50 devices or alike, or generate a CSV file with all values and we do it in Excel ourselves.
in 2025 I'll do a lot of MS Graph API videos, so I'll add this as an item
Since we activated Device Inventory, WDAC has been going crazy. Tons of unsigned Microsoft .dlls. :/
Oh that is very interesting. I checked 4 random DLLs in C:\Program Files\Microsoft Device Inventory Agent\InventoryService and all were signed, could you please let me know one DLL you found that was not signed?