Troubleshooting health attestation just got easier. With the introduction of the Tpm PreAttestationHealthCheck task, Windows now generates a detailed JSON file in the MeasuredBoot folder. This file contains everything you need to understand why a device may fail compliance: TPM status, Secure Boot, BitLocker, and more, all in one place.
Houston, we have a TPM Attestation problem
This blog will be an additional blog to the TPM attestation series I wrote some time ago. In this one, I am going to take a closer look at why […]
Close Encounters of the Microsoft Azure Attestation
This blog will be about my first and second encounters with Microsoft Azure Attestation(MAA) and how this new kind of attestation will be dropped down from Intune to your device. […]
Are You There Intune? It’s Me, Health Attestation Certificate
A Compliant device, I want myself to have a working Intune enrolled compliant device!!!! Nothing more! Just a compliant device! In this blog, I will dig into the -2016345708 AKA […]
The Last TPM Attestation Script from Your Lover
This blog will discuss some TPM Attestation issues you could encounter when running Windows Autopilot for Pre-provisioned deployments and how to troubleshoot them with a shiny new PowerShell Module. 1. […]
Ready For Attestation: A True Underdog Story
This blog will explain what the “Ready for Attestation” flag truly means and show you how to ensure the device is Ready for Attestation so you won’t get the 0x81039001 […]
House of the Dragon: The Game of TPM’s
Again, I am writing a blog about TPM attestation. Why? Sometimes, even when your device doesn’t have the Intel 11 gen or it isn’t an AMD device, you could still […]
Married with System Boards’s: 976-TPM
This blog will discuss why “Things” could break with your totally TPM Protected Autopilot Azure Ad Joined device when your System board is replaced! 1. Introduction It’s all about the […]
The Last Days of Custom Compliance Policies
This blog will show you the nice wonderful addition to Intune, called the Custom Compliance Policy. This blog will be updated along the way as it’s new and this blog […]
The KB5007253 Update: The Devil Made Me Fix The TPM
This blog will show you how to ensure that you can still pre-provision your devices with Autopilot even when those fancy new devices have Intel Tiger Lake chipsets (11th gen). […]