STAGING This is not the live site
Windows Endpoint Provisioning | centrexIT Knowledge Center
Loading...
centrexIT
Knowledge Center

Gatto Pope and Walwick Windows Endpoint Provisioning

KB00008017
Cory Walton Work Instruction 1 min
Publishedv2
  • Default naming schema: GPW-(serial number)

  • Create “localuser” account with the credentials in 1Password.

  • Windows 11 APPROVED

  • Domain: gpwcpas.local

  • VPN:

  • Immy.bot Configuration: Configured, Ready to Deploy to skip Out-Of-Box-Experience+Software and localuser configuration. Ref: KB00038353

  • Grant domain users local admin rights

  • The device has been joined to GPW’s domain, gpwcpas.local

  • The device has been renamed GPW-SerialNumber

  • The user is signed in with Domain credentials

  • Umbrella module configured with OrgInfo.json

  • The device Bitlocker key has been backed up to the AzureAD account

  • The user’s Office apps, Outlook, Teams, and OneDrive are signed in

  • OneDrive Backup is enabled for Desktop, Documents, and Pictures

  • Default Apps Set: Mail: Outlook, Browser: Chrome:, PDF: Adobe Reader

  • Apps and Utilities loaded onto the device: per client WI

  • GPW printers added per WI (Add printers from //DC04)

  • N-Able Windows Agent Take Control Tested

  • Device and drivers have been updated (Windows Update, Lenovo Vantage/System Update)

  • Perform Mic and Camera check with a Teams test call, with the user’s permission

  • Perform quality checks against the manager’s request and the provisioning Work instruction

  • Coordinate pickup or drop-off with the client

  • IMPORTANT: Add RDP Links to the desktop and TEST

  • NOTE: Links for FS and Test get updated annually. Admin cloud DOES NOT. Attached for ease of use but links may get updated.

  • Links can be found here:

  • \\gpwnas\Software\GPW Cloud\FSLogix Cloud/20XX\

  • \\gpwnas\Software\GPW Cloud\T Cloud\20xx\

  • \\gpwnas\Software\GPW Cloud\ (for Admin Cloud Links)

  • Create “localuser” account with the credentials within the 1Password.

  • Rename device

  • Setup the VPN and connect with admin creds

  • Navigate to Control panel>Search for Domain

Description

Description

  • Rename the Device, and add it to gpwcpas.local Domain with the Domain Admin credentials

Description

  • Restart the device

  • Activate the GPW_VPN

Description

  • Switch user accounts

Description

  • Sign in with their domain credentials.

Description

  • Once you are signed into the user account, launch task manager as admin

  • Switch to the signed-in user’s tab, right-click on localuser, and select Sign off.

Description

  • You can now launch the VPN and sign in with the user’s credentials

  • Sign in to the VPN before attempting Microsoft 365 app sign-ins.

  • Sign in to Outlook, pin it to the taskbar

Description

  • When presented with this screen, uncheck the box that “Allows this organization to manage my device” as it tends to cause authentication issues with TPM.

Description

  • Set up Teams, and perform a test call to ensure the camera and mic work and that no network authentication message pops up during the user’s first meeting.

Description

  • Setup OneDrive from the taskbar shortcut

Description

  • Enable Backup for Desktop, Documents, and Picture Backup within OneDrive

  • Clean up the taskbar and Start menu bloat

  • Grant domain users local admin rights.

  • Enroll the device with the Company portal during user setup

  • Enable Backup for Desktop, Documents, and Picture Backup within OneDrive

  • Set App defaults within Settings

  • Uninstall bloatware

  • Clean up the taskbar and Start menu bloat

  • Remove Widgets, CoPilot, Shrink the Search menu

  • Pinned apps: File Explorer, Google Chrome, Outlook, Teams

  • Set system sleep times 15-30-30-1Hr.

Work with Nadia to confirm device readiness

Section titled “Work with Nadia to confirm device readiness”

Preferred Desktop layout and taskbar shortcuts:

Section titled “Preferred Desktop layout and taskbar shortcuts:”