Hello ,
Following the activation of the administrator deactivation GPO (local admin).
MDT is stuck on the first reboot () !!!
Deploying to an OU where the Disable Local Administrator GPO does not apply
===> solves the problem.
But unfortunately this creates a new problem (manual move to desired OU)
The web services solution is not very practical or secure and honestly the scripts are very complicated)
We integrate the PCs into the domain on the WinPE (connection via a domain admin account and choice of the OU configured on CustomSetting.ini)
I wanted to know if there is a way to keep the mode of operation the same and to make sure that this GPO only applies if and only if the PC restarts after the deployment is complete.
But also that it (GPO) applies on old PCs of the same OR if there is the CSE (LAPS) to install
Knowing that the laps can also be installed on MDT and by GPO! !!!
I know the situation is a bit complicated, I hope I have explained the problem well.
Note: LAPS manages another account created during the installation of the LAPS client via the command