├── .gitignore
├── .vscode
├── extensions.json
├── launch.json
├── settings.json
└── tasks.json
├── CODE_OF_CONDUCT.md
├── CONTRIBUTING.md
├── LICENSE
├── README.md
├── applications
└── samplePowershell
│ ├── Install-App.ps1
│ └── app.yaml
└── tasks
├── Build.Functions.ps1
├── Deploy.Functions.ps1
├── Deploy.Intunewin.ps1
├── Get-MSICode.ps1
├── Initialize.Environment.ps1
└── Invoke.Build.ps1
/.gitignore:
--------------------------------------------------------------------------------
1 | bin
2 | *.intunewin
3 | *.msi
4 | *.exe
5 | *.zip
--------------------------------------------------------------------------------
/.vscode/extensions.json:
--------------------------------------------------------------------------------
1 | {
2 | "recommendations": [
3 | "ms-azuretools.vscode-azurefunctions",
4 | "ms-vscode.PowerShell"
5 | ]
6 | }
7 |
--------------------------------------------------------------------------------
/.vscode/launch.json:
--------------------------------------------------------------------------------
1 | {
2 | "version": "0.2.0",
3 | "configurations": [
4 | {
5 | "name": "Attach to PowerShell Functions",
6 | "type": "PowerShell",
7 | "request": "attach",
8 | "customPipeName": "AzureFunctionsPSWorker",
9 | "runspaceId": 1,
10 | "preLaunchTask": "func: host start"
11 | }
12 | ]
13 | }
--------------------------------------------------------------------------------
/.vscode/settings.json:
--------------------------------------------------------------------------------
1 | {
2 | "azureFunctions.deploySubpath": "configuration\\Azure-Functions",
3 | "azureFunctions.projectLanguage": "PowerShell",
4 | "azureFunctions.projectRuntime": "~2",
5 | "debug.internalConsoleOptions": "neverOpen"
6 | }
--------------------------------------------------------------------------------
/.vscode/tasks.json:
--------------------------------------------------------------------------------
1 | {
2 | // See https://go.microsoft.com/fwlink/?LinkId=733558
3 | // for the documentation about the tasks.json format
4 | "version": "2.0.0",
5 | "tasks": [
6 | {
7 | "label": "Initialize Environment",
8 | "type": "shell",
9 | "command": [
10 | "./tasks/Initialize.Environment.ps1"
11 | ],
12 | "group": {
13 | "kind": "build",
14 | "isDefault": true
15 | },
16 | "presentation": {
17 | "echo": true,
18 | "reveal": "always",
19 | "focus": false,
20 | "panel": "shared",
21 | "showReuseMessage": true,
22 | "clear": false
23 | },
24 | "problemMatcher": []
25 | },
26 | {
27 | "label": "Build",
28 | "type": "shell",
29 | "command": [
30 | "./tasks/Invoke.Build.ps1 -appConfig '${file}' -buildFrom '${input:buildType}'"
31 | ],
32 | "group": {
33 | "kind": "build",
34 | "isDefault": true
35 | },
36 | "presentation": {
37 | "echo": true,
38 | "reveal": "always",
39 | "focus": false,
40 | "panel": "shared",
41 | "showReuseMessage": true,
42 | "clear": false
43 | },
44 | "problemMatcher": []
45 | },
46 | {
47 | "label": "Publish",
48 | "type": "shell",
49 | "command": [
50 | "./tasks/Deploy.Intunewin.ps1 -appConfig '${file}' -user ${input:user}"
51 | ],
52 | "group": "build",
53 | "presentation": {
54 | "echo": true,
55 | "reveal": "always",
56 | "focus": false,
57 | "panel": "shared",
58 | "showReuseMessage": true,
59 | "clear": false
60 | },
61 | "runOptions": {
62 | "reevaluateOnRerun": false
63 | },
64 | "problemMatcher": []
65 | },
66 | {
67 | "label": "Build & Publish",
68 | "type": "shell",
69 | "dependsOn": [
70 | "Build"
71 | ],
72 | "command": [
73 | "./tasks/Deploy.Intunewin.ps1 -appConfig '${file}' -user ${input:user}"
74 | ],
75 | "group": "build",
76 | "presentation": {
77 | "echo": true,
78 | "reveal": "always",
79 | "focus": false,
80 | "panel": "shared",
81 | "showReuseMessage": true,
82 | "clear": false
83 | },
84 | "runOptions": {
85 | "reevaluateOnRerun": false
86 | },
87 | "problemMatcher": []
88 | },
89 | {
90 | "label": "Get MSI Codes",
91 | "type": "shell",
92 | "command": [
93 | "./tasks/Get-MSICode.ps1 -Path '${input:MSIFile}' -Property ${input:MSIProperty}"
94 | ],
95 | "group": "build",
96 | "presentation": {
97 | "echo": true,
98 | "reveal": "always",
99 | "focus": false,
100 | "panel": "shared",
101 | "showReuseMessage": true,
102 | "clear": false
103 | },
104 | "runOptions": {
105 | "reevaluateOnRerun": false
106 | },
107 | "problemMatcher": []
108 | }
109 | ],
110 | "inputs": [
111 | {
112 | "id": "buildType",
113 | "type": "pickString",
114 | "description": "Where's the location of the install media?",
115 | "options": [
116 | "Remote",
117 | "Local"
118 | ],
119 | "default": "Local"
120 | },
121 | {
122 | "type": "promptString",
123 | "id": "user",
124 | "description": "Enter the domain admin account UPN for deployment.."
125 | },
126 | {
127 | "type": "promptString",
128 | "id": "MSIFile",
129 | "description": "Full path to the MSIFile Please"
130 | },
131 | {
132 | "id": "MSIProperty",
133 | "type": "pickString",
134 | "description": "Which MSI Property do you want returned?",
135 | "options": [
136 | "ProductCode",
137 | "ProductVersion",
138 | "ProductName",
139 | "Manufacturer",
140 | "ProductLanguage",
141 | "FullVersion"
142 | ],
143 | "default": "ProductCode"
144 | }
145 | ]
146 | }
--------------------------------------------------------------------------------
/CODE_OF_CONDUCT.md:
--------------------------------------------------------------------------------
1 | # Contributor Covenant Code of Conduct
2 |
3 | ## Our Pledge
4 |
5 | In the interest of fostering an open and welcoming environment, we as
6 | contributors and maintainers pledge to making participation in our project and
7 | our community a harassment-free experience for everyone, regardless of age, body
8 | size, disability, ethnicity, sex characteristics, gender identity and expression,
9 | level of experience, education, socio-economic status, nationality, personal
10 | appearance, race, religion, or sexual identity and orientation.
11 |
12 | ## Our Standards
13 |
14 | Examples of behavior that contributes to creating a positive environment
15 | include:
16 |
17 | * Using welcoming and inclusive language
18 | * Being respectful of differing viewpoints and experiences
19 | * Gracefully accepting constructive criticism
20 | * Focusing on what is best for the community
21 | * Showing empathy towards other community members
22 |
23 | Examples of unacceptable behavior by participants include:
24 |
25 | * The use of sexualized language or imagery and unwelcome sexual attention or
26 | advances
27 | * Trolling, insulting/derogatory comments, and personal or political attacks
28 | * Public or private harassment
29 | * Publishing others' private information, such as a physical or electronic
30 | address, without explicit permission
31 | * Other conduct which could reasonably be considered inappropriate in a
32 | professional setting
33 |
34 | ## Our Responsibilities
35 |
36 | Project maintainers are responsible for clarifying the standards of acceptable
37 | behavior and are expected to take appropriate and fair corrective action in
38 | response to any instances of unacceptable behavior.
39 |
40 | Project maintainers have the right and responsibility to remove, edit, or
41 | reject comments, commits, code, wiki edits, issues, and other contributions
42 | that are not aligned to this Code of Conduct, or to ban temporarily or
43 | permanently any contributor for other behaviors that they deem inappropriate,
44 | threatening, offensive, or harmful.
45 |
46 | ## Scope
47 |
48 | This Code of Conduct applies both within project spaces and in public spaces
49 | when an individual is representing the project or its community. Examples of
50 | representing a project or community include using an official project e-mail
51 | address, posting via an official social media account, or acting as an appointed
52 | representative at an online or offline event. Representation of a project may be
53 | further defined and clarified by project maintainers.
54 |
55 | ## Enforcement
56 |
57 | Instances of abusive, harassing, or otherwise unacceptable behavior may be
58 | reported by contacting the project team at . All
59 | complaints will be reviewed and investigated and will result in a response that
60 | is deemed necessary and appropriate to the circumstances. The project team is
61 | obligated to maintain confidentiality with regard to the reporter of an incident.
62 | Further details of specific enforcement policies may be posted separately.
63 |
64 | Project maintainers who do not follow or enforce the Code of Conduct in good
65 | faith may face temporary or permanent repercussions as determined by other
66 | members of the project's leadership.
67 |
68 | ## Attribution
69 |
70 | This Code of Conduct is adapted from the [Contributor Covenant][homepage], version 1.4,
71 | available at https://www.contributor-covenant.org/version/1/4/code-of-conduct.html
72 |
73 | [homepage]: https://www.contributor-covenant.org
74 |
75 | For answers to common questions about this code of conduct, see
76 | https://www.contributor-covenant.org/faq
77 |
--------------------------------------------------------------------------------
/CONTRIBUTING.md:
--------------------------------------------------------------------------------
1 | # Contributing to this project
2 |
3 | Contribution guidelines coming soon...
4 |
--------------------------------------------------------------------------------
/LICENSE:
--------------------------------------------------------------------------------
1 | GNU GENERAL PUBLIC LICENSE
2 | Version 3, 29 June 2007
3 |
4 | Copyright (C) 2007 Free Software Foundation, Inc.
5 | Everyone is permitted to copy and distribute verbatim copies
6 | of this license document, but changing it is not allowed.
7 |
8 | Preamble
9 |
10 | The GNU General Public License is a free, copyleft license for
11 | software and other kinds of works.
12 |
13 | The licenses for most software and other practical works are designed
14 | to take away your freedom to share and change the works. By contrast,
15 | the GNU General Public License is intended to guarantee your freedom to
16 | share and change all versions of a program--to make sure it remains free
17 | software for all its users. We, the Free Software Foundation, use the
18 | GNU General Public License for most of our software; it applies also to
19 | any other work released this way by its authors. You can apply it to
20 | your programs, too.
21 |
22 | When we speak of free software, we are referring to freedom, not
23 | price. Our General Public Licenses are designed to make sure that you
24 | have the freedom to distribute copies of free software (and charge for
25 | them if you wish), that you receive source code or can get it if you
26 | want it, that you can change the software or use pieces of it in new
27 | free programs, and that you know you can do these things.
28 |
29 | To protect your rights, we need to prevent others from denying you
30 | these rights or asking you to surrender the rights. Therefore, you have
31 | certain responsibilities if you distribute copies of the software, or if
32 | you modify it: responsibilities to respect the freedom of others.
33 |
34 | For example, if you distribute copies of such a program, whether
35 | gratis or for a fee, you must pass on to the recipients the same
36 | freedoms that you received. You must make sure that they, too, receive
37 | or can get the source code. And you must show them these terms so they
38 | know their rights.
39 |
40 | Developers that use the GNU GPL protect your rights with two steps:
41 | (1) assert copyright on the software, and (2) offer you this License
42 | giving you legal permission to copy, distribute and/or modify it.
43 |
44 | For the developers' and authors' protection, the GPL clearly explains
45 | that there is no warranty for this free software. For both users' and
46 | authors' sake, the GPL requires that modified versions be marked as
47 | changed, so that their problems will not be attributed erroneously to
48 | authors of previous versions.
49 |
50 | Some devices are designed to deny users access to install or run
51 | modified versions of the software inside them, although the manufacturer
52 | can do so. This is fundamentally incompatible with the aim of
53 | protecting users' freedom to change the software. The systematic
54 | pattern of such abuse occurs in the area of products for individuals to
55 | use, which is precisely where it is most unacceptable. Therefore, we
56 | have designed this version of the GPL to prohibit the practice for those
57 | products. If such problems arise substantially in other domains, we
58 | stand ready to extend this provision to those domains in future versions
59 | of the GPL, as needed to protect the freedom of users.
60 |
61 | Finally, every program is threatened constantly by software patents.
62 | States should not allow patents to restrict development and use of
63 | software on general-purpose computers, but in those that do, we wish to
64 | avoid the special danger that patents applied to a free program could
65 | make it effectively proprietary. To prevent this, the GPL assures that
66 | patents cannot be used to render the program non-free.
67 |
68 | The precise terms and conditions for copying, distribution and
69 | modification follow.
70 |
71 | TERMS AND CONDITIONS
72 |
73 | 0. Definitions.
74 |
75 | "This License" refers to version 3 of the GNU General Public License.
76 |
77 | "Copyright" also means copyright-like laws that apply to other kinds of
78 | works, such as semiconductor masks.
79 |
80 | "The Program" refers to any copyrightable work licensed under this
81 | License. Each licensee is addressed as "you". "Licensees" and
82 | "recipients" may be individuals or organizations.
83 |
84 | To "modify" a work means to copy from or adapt all or part of the work
85 | in a fashion requiring copyright permission, other than the making of an
86 | exact copy. The resulting work is called a "modified version" of the
87 | earlier work or a work "based on" the earlier work.
88 |
89 | A "covered work" means either the unmodified Program or a work based
90 | on the Program.
91 |
92 | To "propagate" a work means to do anything with it that, without
93 | permission, would make you directly or secondarily liable for
94 | infringement under applicable copyright law, except executing it on a
95 | computer or modifying a private copy. Propagation includes copying,
96 | distribution (with or without modification), making available to the
97 | public, and in some countries other activities as well.
98 |
99 | To "convey" a work means any kind of propagation that enables other
100 | parties to make or receive copies. Mere interaction with a user through
101 | a computer network, with no transfer of a copy, is not conveying.
102 |
103 | An interactive user interface displays "Appropriate Legal Notices"
104 | to the extent that it includes a convenient and prominently visible
105 | feature that (1) displays an appropriate copyright notice, and (2)
106 | tells the user that there is no warranty for the work (except to the
107 | extent that warranties are provided), that licensees may convey the
108 | work under this License, and how to view a copy of this License. If
109 | the interface presents a list of user commands or options, such as a
110 | menu, a prominent item in the list meets this criterion.
111 |
112 | 1. Source Code.
113 |
114 | The "source code" for a work means the preferred form of the work
115 | for making modifications to it. "Object code" means any non-source
116 | form of a work.
117 |
118 | A "Standard Interface" means an interface that either is an official
119 | standard defined by a recognized standards body, or, in the case of
120 | interfaces specified for a particular programming language, one that
121 | is widely used among developers working in that language.
122 |
123 | The "System Libraries" of an executable work include anything, other
124 | than the work as a whole, that (a) is included in the normal form of
125 | packaging a Major Component, but which is not part of that Major
126 | Component, and (b) serves only to enable use of the work with that
127 | Major Component, or to implement a Standard Interface for which an
128 | implementation is available to the public in source code form. A
129 | "Major Component", in this context, means a major essential component
130 | (kernel, window system, and so on) of the specific operating system
131 | (if any) on which the executable work runs, or a compiler used to
132 | produce the work, or an object code interpreter used to run it.
133 |
134 | The "Corresponding Source" for a work in object code form means all
135 | the source code needed to generate, install, and (for an executable
136 | work) run the object code and to modify the work, including scripts to
137 | control those activities. However, it does not include the work's
138 | System Libraries, or general-purpose tools or generally available free
139 | programs which are used unmodified in performing those activities but
140 | which are not part of the work. For example, Corresponding Source
141 | includes interface definition files associated with source files for
142 | the work, and the source code for shared libraries and dynamically
143 | linked subprograms that the work is specifically designed to require,
144 | such as by intimate data communication or control flow between those
145 | subprograms and other parts of the work.
146 |
147 | The Corresponding Source need not include anything that users
148 | can regenerate automatically from other parts of the Corresponding
149 | Source.
150 |
151 | The Corresponding Source for a work in source code form is that
152 | same work.
153 |
154 | 2. Basic Permissions.
155 |
156 | All rights granted under this License are granted for the term of
157 | copyright on the Program, and are irrevocable provided the stated
158 | conditions are met. This License explicitly affirms your unlimited
159 | permission to run the unmodified Program. The output from running a
160 | covered work is covered by this License only if the output, given its
161 | content, constitutes a covered work. This License acknowledges your
162 | rights of fair use or other equivalent, as provided by copyright law.
163 |
164 | You may make, run and propagate covered works that you do not
165 | convey, without conditions so long as your license otherwise remains
166 | in force. You may convey covered works to others for the sole purpose
167 | of having them make modifications exclusively for you, or provide you
168 | with facilities for running those works, provided that you comply with
169 | the terms of this License in conveying all material for which you do
170 | not control copyright. Those thus making or running the covered works
171 | for you must do so exclusively on your behalf, under your direction
172 | and control, on terms that prohibit them from making any copies of
173 | your copyrighted material outside their relationship with you.
174 |
175 | Conveying under any other circumstances is permitted solely under
176 | the conditions stated below. Sublicensing is not allowed; section 10
177 | makes it unnecessary.
178 |
179 | 3. Protecting Users' Legal Rights From Anti-Circumvention Law.
180 |
181 | No covered work shall be deemed part of an effective technological
182 | measure under any applicable law fulfilling obligations under article
183 | 11 of the WIPO copyright treaty adopted on 20 December 1996, or
184 | similar laws prohibiting or restricting circumvention of such
185 | measures.
186 |
187 | When you convey a covered work, you waive any legal power to forbid
188 | circumvention of technological measures to the extent such circumvention
189 | is effected by exercising rights under this License with respect to
190 | the covered work, and you disclaim any intention to limit operation or
191 | modification of the work as a means of enforcing, against the work's
192 | users, your or third parties' legal rights to forbid circumvention of
193 | technological measures.
194 |
195 | 4. Conveying Verbatim Copies.
196 |
197 | You may convey verbatim copies of the Program's source code as you
198 | receive it, in any medium, provided that you conspicuously and
199 | appropriately publish on each copy an appropriate copyright notice;
200 | keep intact all notices stating that this License and any
201 | non-permissive terms added in accord with section 7 apply to the code;
202 | keep intact all notices of the absence of any warranty; and give all
203 | recipients a copy of this License along with the Program.
204 |
205 | You may charge any price or no price for each copy that you convey,
206 | and you may offer support or warranty protection for a fee.
207 |
208 | 5. Conveying Modified Source Versions.
209 |
210 | You may convey a work based on the Program, or the modifications to
211 | produce it from the Program, in the form of source code under the
212 | terms of section 4, provided that you also meet all of these conditions:
213 |
214 | a) The work must carry prominent notices stating that you modified
215 | it, and giving a relevant date.
216 |
217 | b) The work must carry prominent notices stating that it is
218 | released under this License and any conditions added under section
219 | 7. This requirement modifies the requirement in section 4 to
220 | "keep intact all notices".
221 |
222 | c) You must license the entire work, as a whole, under this
223 | License to anyone who comes into possession of a copy. This
224 | License will therefore apply, along with any applicable section 7
225 | additional terms, to the whole of the work, and all its parts,
226 | regardless of how they are packaged. This License gives no
227 | permission to license the work in any other way, but it does not
228 | invalidate such permission if you have separately received it.
229 |
230 | d) If the work has interactive user interfaces, each must display
231 | Appropriate Legal Notices; however, if the Program has interactive
232 | interfaces that do not display Appropriate Legal Notices, your
233 | work need not make them do so.
234 |
235 | A compilation of a covered work with other separate and independent
236 | works, which are not by their nature extensions of the covered work,
237 | and which are not combined with it such as to form a larger program,
238 | in or on a volume of a storage or distribution medium, is called an
239 | "aggregate" if the compilation and its resulting copyright are not
240 | used to limit the access or legal rights of the compilation's users
241 | beyond what the individual works permit. Inclusion of a covered work
242 | in an aggregate does not cause this License to apply to the other
243 | parts of the aggregate.
244 |
245 | 6. Conveying Non-Source Forms.
246 |
247 | You may convey a covered work in object code form under the terms
248 | of sections 4 and 5, provided that you also convey the
249 | machine-readable Corresponding Source under the terms of this License,
250 | in one of these ways:
251 |
252 | a) Convey the object code in, or embodied in, a physical product
253 | (including a physical distribution medium), accompanied by the
254 | Corresponding Source fixed on a durable physical medium
255 | customarily used for software interchange.
256 |
257 | b) Convey the object code in, or embodied in, a physical product
258 | (including a physical distribution medium), accompanied by a
259 | written offer, valid for at least three years and valid for as
260 | long as you offer spare parts or customer support for that product
261 | model, to give anyone who possesses the object code either (1) a
262 | copy of the Corresponding Source for all the software in the
263 | product that is covered by this License, on a durable physical
264 | medium customarily used for software interchange, for a price no
265 | more than your reasonable cost of physically performing this
266 | conveying of source, or (2) access to copy the
267 | Corresponding Source from a network server at no charge.
268 |
269 | c) Convey individual copies of the object code with a copy of the
270 | written offer to provide the Corresponding Source. This
271 | alternative is allowed only occasionally and noncommercially, and
272 | only if you received the object code with such an offer, in accord
273 | with subsection 6b.
274 |
275 | d) Convey the object code by offering access from a designated
276 | place (gratis or for a charge), and offer equivalent access to the
277 | Corresponding Source in the same way through the same place at no
278 | further charge. You need not require recipients to copy the
279 | Corresponding Source along with the object code. If the place to
280 | copy the object code is a network server, the Corresponding Source
281 | may be on a different server (operated by you or a third party)
282 | that supports equivalent copying facilities, provided you maintain
283 | clear directions next to the object code saying where to find the
284 | Corresponding Source. Regardless of what server hosts the
285 | Corresponding Source, you remain obligated to ensure that it is
286 | available for as long as needed to satisfy these requirements.
287 |
288 | e) Convey the object code using peer-to-peer transmission, provided
289 | you inform other peers where the object code and Corresponding
290 | Source of the work are being offered to the general public at no
291 | charge under subsection 6d.
292 |
293 | A separable portion of the object code, whose source code is excluded
294 | from the Corresponding Source as a System Library, need not be
295 | included in conveying the object code work.
296 |
297 | A "User Product" is either (1) a "consumer product", which means any
298 | tangible personal property which is normally used for personal, family,
299 | or household purposes, or (2) anything designed or sold for incorporation
300 | into a dwelling. In determining whether a product is a consumer product,
301 | doubtful cases shall be resolved in favor of coverage. For a particular
302 | product received by a particular user, "normally used" refers to a
303 | typical or common use of that class of product, regardless of the status
304 | of the particular user or of the way in which the particular user
305 | actually uses, or expects or is expected to use, the product. A product
306 | is a consumer product regardless of whether the product has substantial
307 | commercial, industrial or non-consumer uses, unless such uses represent
308 | the only significant mode of use of the product.
309 |
310 | "Installation Information" for a User Product means any methods,
311 | procedures, authorization keys, or other information required to install
312 | and execute modified versions of a covered work in that User Product from
313 | a modified version of its Corresponding Source. The information must
314 | suffice to ensure that the continued functioning of the modified object
315 | code is in no case prevented or interfered with solely because
316 | modification has been made.
317 |
318 | If you convey an object code work under this section in, or with, or
319 | specifically for use in, a User Product, and the conveying occurs as
320 | part of a transaction in which the right of possession and use of the
321 | User Product is transferred to the recipient in perpetuity or for a
322 | fixed term (regardless of how the transaction is characterized), the
323 | Corresponding Source conveyed under this section must be accompanied
324 | by the Installation Information. But this requirement does not apply
325 | if neither you nor any third party retains the ability to install
326 | modified object code on the User Product (for example, the work has
327 | been installed in ROM).
328 |
329 | The requirement to provide Installation Information does not include a
330 | requirement to continue to provide support service, warranty, or updates
331 | for a work that has been modified or installed by the recipient, or for
332 | the User Product in which it has been modified or installed. Access to a
333 | network may be denied when the modification itself materially and
334 | adversely affects the operation of the network or violates the rules and
335 | protocols for communication across the network.
336 |
337 | Corresponding Source conveyed, and Installation Information provided,
338 | in accord with this section must be in a format that is publicly
339 | documented (and with an implementation available to the public in
340 | source code form), and must require no special password or key for
341 | unpacking, reading or copying.
342 |
343 | 7. Additional Terms.
344 |
345 | "Additional permissions" are terms that supplement the terms of this
346 | License by making exceptions from one or more of its conditions.
347 | Additional permissions that are applicable to the entire Program shall
348 | be treated as though they were included in this License, to the extent
349 | that they are valid under applicable law. If additional permissions
350 | apply only to part of the Program, that part may be used separately
351 | under those permissions, but the entire Program remains governed by
352 | this License without regard to the additional permissions.
353 |
354 | When you convey a copy of a covered work, you may at your option
355 | remove any additional permissions from that copy, or from any part of
356 | it. (Additional permissions may be written to require their own
357 | removal in certain cases when you modify the work.) You may place
358 | additional permissions on material, added by you to a covered work,
359 | for which you have or can give appropriate copyright permission.
360 |
361 | Notwithstanding any other provision of this License, for material you
362 | add to a covered work, you may (if authorized by the copyright holders of
363 | that material) supplement the terms of this License with terms:
364 |
365 | a) Disclaiming warranty or limiting liability differently from the
366 | terms of sections 15 and 16 of this License; or
367 |
368 | b) Requiring preservation of specified reasonable legal notices or
369 | author attributions in that material or in the Appropriate Legal
370 | Notices displayed by works containing it; or
371 |
372 | c) Prohibiting misrepresentation of the origin of that material, or
373 | requiring that modified versions of such material be marked in
374 | reasonable ways as different from the original version; or
375 |
376 | d) Limiting the use for publicity purposes of names of licensors or
377 | authors of the material; or
378 |
379 | e) Declining to grant rights under trademark law for use of some
380 | trade names, trademarks, or service marks; or
381 |
382 | f) Requiring indemnification of licensors and authors of that
383 | material by anyone who conveys the material (or modified versions of
384 | it) with contractual assumptions of liability to the recipient, for
385 | any liability that these contractual assumptions directly impose on
386 | those licensors and authors.
387 |
388 | All other non-permissive additional terms are considered "further
389 | restrictions" within the meaning of section 10. If the Program as you
390 | received it, or any part of it, contains a notice stating that it is
391 | governed by this License along with a term that is a further
392 | restriction, you may remove that term. If a license document contains
393 | a further restriction but permits relicensing or conveying under this
394 | License, you may add to a covered work material governed by the terms
395 | of that license document, provided that the further restriction does
396 | not survive such relicensing or conveying.
397 |
398 | If you add terms to a covered work in accord with this section, you
399 | must place, in the relevant source files, a statement of the
400 | additional terms that apply to those files, or a notice indicating
401 | where to find the applicable terms.
402 |
403 | Additional terms, permissive or non-permissive, may be stated in the
404 | form of a separately written license, or stated as exceptions;
405 | the above requirements apply either way.
406 |
407 | 8. Termination.
408 |
409 | You may not propagate or modify a covered work except as expressly
410 | provided under this License. Any attempt otherwise to propagate or
411 | modify it is void, and will automatically terminate your rights under
412 | this License (including any patent licenses granted under the third
413 | paragraph of section 11).
414 |
415 | However, if you cease all violation of this License, then your
416 | license from a particular copyright holder is reinstated (a)
417 | provisionally, unless and until the copyright holder explicitly and
418 | finally terminates your license, and (b) permanently, if the copyright
419 | holder fails to notify you of the violation by some reasonable means
420 | prior to 60 days after the cessation.
421 |
422 | Moreover, your license from a particular copyright holder is
423 | reinstated permanently if the copyright holder notifies you of the
424 | violation by some reasonable means, this is the first time you have
425 | received notice of violation of this License (for any work) from that
426 | copyright holder, and you cure the violation prior to 30 days after
427 | your receipt of the notice.
428 |
429 | Termination of your rights under this section does not terminate the
430 | licenses of parties who have received copies or rights from you under
431 | this License. If your rights have been terminated and not permanently
432 | reinstated, you do not qualify to receive new licenses for the same
433 | material under section 10.
434 |
435 | 9. Acceptance Not Required for Having Copies.
436 |
437 | You are not required to accept this License in order to receive or
438 | run a copy of the Program. Ancillary propagation of a covered work
439 | occurring solely as a consequence of using peer-to-peer transmission
440 | to receive a copy likewise does not require acceptance. However,
441 | nothing other than this License grants you permission to propagate or
442 | modify any covered work. These actions infringe copyright if you do
443 | not accept this License. Therefore, by modifying or propagating a
444 | covered work, you indicate your acceptance of this License to do so.
445 |
446 | 10. Automatic Licensing of Downstream Recipients.
447 |
448 | Each time you convey a covered work, the recipient automatically
449 | receives a license from the original licensors, to run, modify and
450 | propagate that work, subject to this License. You are not responsible
451 | for enforcing compliance by third parties with this License.
452 |
453 | An "entity transaction" is a transaction transferring control of an
454 | organization, or substantially all assets of one, or subdividing an
455 | organization, or merging organizations. If propagation of a covered
456 | work results from an entity transaction, each party to that
457 | transaction who receives a copy of the work also receives whatever
458 | licenses to the work the party's predecessor in interest had or could
459 | give under the previous paragraph, plus a right to possession of the
460 | Corresponding Source of the work from the predecessor in interest, if
461 | the predecessor has it or can get it with reasonable efforts.
462 |
463 | You may not impose any further restrictions on the exercise of the
464 | rights granted or affirmed under this License. For example, you may
465 | not impose a license fee, royalty, or other charge for exercise of
466 | rights granted under this License, and you may not initiate litigation
467 | (including a cross-claim or counterclaim in a lawsuit) alleging that
468 | any patent claim is infringed by making, using, selling, offering for
469 | sale, or importing the Program or any portion of it.
470 |
471 | 11. Patents.
472 |
473 | A "contributor" is a copyright holder who authorizes use under this
474 | License of the Program or a work on which the Program is based. The
475 | work thus licensed is called the contributor's "contributor version".
476 |
477 | A contributor's "essential patent claims" are all patent claims
478 | owned or controlled by the contributor, whether already acquired or
479 | hereafter acquired, that would be infringed by some manner, permitted
480 | by this License, of making, using, or selling its contributor version,
481 | but do not include claims that would be infringed only as a
482 | consequence of further modification of the contributor version. For
483 | purposes of this definition, "control" includes the right to grant
484 | patent sublicenses in a manner consistent with the requirements of
485 | this License.
486 |
487 | Each contributor grants you a non-exclusive, worldwide, royalty-free
488 | patent license under the contributor's essential patent claims, to
489 | make, use, sell, offer for sale, import and otherwise run, modify and
490 | propagate the contents of its contributor version.
491 |
492 | In the following three paragraphs, a "patent license" is any express
493 | agreement or commitment, however denominated, not to enforce a patent
494 | (such as an express permission to practice a patent or covenant not to
495 | sue for patent infringement). To "grant" such a patent license to a
496 | party means to make such an agreement or commitment not to enforce a
497 | patent against the party.
498 |
499 | If you convey a covered work, knowingly relying on a patent license,
500 | and the Corresponding Source of the work is not available for anyone
501 | to copy, free of charge and under the terms of this License, through a
502 | publicly available network server or other readily accessible means,
503 | then you must either (1) cause the Corresponding Source to be so
504 | available, or (2) arrange to deprive yourself of the benefit of the
505 | patent license for this particular work, or (3) arrange, in a manner
506 | consistent with the requirements of this License, to extend the patent
507 | license to downstream recipients. "Knowingly relying" means you have
508 | actual knowledge that, but for the patent license, your conveying the
509 | covered work in a country, or your recipient's use of the covered work
510 | in a country, would infringe one or more identifiable patents in that
511 | country that you have reason to believe are valid.
512 |
513 | If, pursuant to or in connection with a single transaction or
514 | arrangement, you convey, or propagate by procuring conveyance of, a
515 | covered work, and grant a patent license to some of the parties
516 | receiving the covered work authorizing them to use, propagate, modify
517 | or convey a specific copy of the covered work, then the patent license
518 | you grant is automatically extended to all recipients of the covered
519 | work and works based on it.
520 |
521 | A patent license is "discriminatory" if it does not include within
522 | the scope of its coverage, prohibits the exercise of, or is
523 | conditioned on the non-exercise of one or more of the rights that are
524 | specifically granted under this License. You may not convey a covered
525 | work if you are a party to an arrangement with a third party that is
526 | in the business of distributing software, under which you make payment
527 | to the third party based on the extent of your activity of conveying
528 | the work, and under which the third party grants, to any of the
529 | parties who would receive the covered work from you, a discriminatory
530 | patent license (a) in connection with copies of the covered work
531 | conveyed by you (or copies made from those copies), or (b) primarily
532 | for and in connection with specific products or compilations that
533 | contain the covered work, unless you entered into that arrangement,
534 | or that patent license was granted, prior to 28 March 2007.
535 |
536 | Nothing in this License shall be construed as excluding or limiting
537 | any implied license or other defenses to infringement that may
538 | otherwise be available to you under applicable patent law.
539 |
540 | 12. No Surrender of Others' Freedom.
541 |
542 | If conditions are imposed on you (whether by court order, agreement or
543 | otherwise) that contradict the conditions of this License, they do not
544 | excuse you from the conditions of this License. If you cannot convey a
545 | covered work so as to satisfy simultaneously your obligations under this
546 | License and any other pertinent obligations, then as a consequence you may
547 | not convey it at all. For example, if you agree to terms that obligate you
548 | to collect a royalty for further conveying from those to whom you convey
549 | the Program, the only way you could satisfy both those terms and this
550 | License would be to refrain entirely from conveying the Program.
551 |
552 | 13. Use with the GNU Affero General Public License.
553 |
554 | Notwithstanding any other provision of this License, you have
555 | permission to link or combine any covered work with a work licensed
556 | under version 3 of the GNU Affero General Public License into a single
557 | combined work, and to convey the resulting work. The terms of this
558 | License will continue to apply to the part which is the covered work,
559 | but the special requirements of the GNU Affero General Public License,
560 | section 13, concerning interaction through a network will apply to the
561 | combination as such.
562 |
563 | 14. Revised Versions of this License.
564 |
565 | The Free Software Foundation may publish revised and/or new versions of
566 | the GNU General Public License from time to time. Such new versions will
567 | be similar in spirit to the present version, but may differ in detail to
568 | address new problems or concerns.
569 |
570 | Each version is given a distinguishing version number. If the
571 | Program specifies that a certain numbered version of the GNU General
572 | Public License "or any later version" applies to it, you have the
573 | option of following the terms and conditions either of that numbered
574 | version or of any later version published by the Free Software
575 | Foundation. If the Program does not specify a version number of the
576 | GNU General Public License, you may choose any version ever published
577 | by the Free Software Foundation.
578 |
579 | If the Program specifies that a proxy can decide which future
580 | versions of the GNU General Public License can be used, that proxy's
581 | public statement of acceptance of a version permanently authorizes you
582 | to choose that version for the Program.
583 |
584 | Later license versions may give you additional or different
585 | permissions. However, no additional obligations are imposed on any
586 | author or copyright holder as a result of your choosing to follow a
587 | later version.
588 |
589 | 15. Disclaimer of Warranty.
590 |
591 | THERE IS NO WARRANTY FOR THE PROGRAM, TO THE EXTENT PERMITTED BY
592 | APPLICABLE LAW. EXCEPT WHEN OTHERWISE STATED IN WRITING THE COPYRIGHT
593 | HOLDERS AND/OR OTHER PARTIES PROVIDE THE PROGRAM "AS IS" WITHOUT WARRANTY
594 | OF ANY KIND, EITHER EXPRESSED OR IMPLIED, INCLUDING, BUT NOT LIMITED TO,
595 | THE IMPLIED WARRANTIES OF MERCHANTABILITY AND FITNESS FOR A PARTICULAR
596 | PURPOSE. THE ENTIRE RISK AS TO THE QUALITY AND PERFORMANCE OF THE PROGRAM
597 | IS WITH YOU. SHOULD THE PROGRAM PROVE DEFECTIVE, YOU ASSUME THE COST OF
598 | ALL NECESSARY SERVICING, REPAIR OR CORRECTION.
599 |
600 | 16. Limitation of Liability.
601 |
602 | IN NO EVENT UNLESS REQUIRED BY APPLICABLE LAW OR AGREED TO IN WRITING
603 | WILL ANY COPYRIGHT HOLDER, OR ANY OTHER PARTY WHO MODIFIES AND/OR CONVEYS
604 | THE PROGRAM AS PERMITTED ABOVE, BE LIABLE TO YOU FOR DAMAGES, INCLUDING ANY
605 | GENERAL, SPECIAL, INCIDENTAL OR CONSEQUENTIAL DAMAGES ARISING OUT OF THE
606 | USE OR INABILITY TO USE THE PROGRAM (INCLUDING BUT NOT LIMITED TO LOSS OF
607 | DATA OR DATA BEING RENDERED INACCURATE OR LOSSES SUSTAINED BY YOU OR THIRD
608 | PARTIES OR A FAILURE OF THE PROGRAM TO OPERATE WITH ANY OTHER PROGRAMS),
609 | EVEN IF SUCH HOLDER OR OTHER PARTY HAS BEEN ADVISED OF THE POSSIBILITY OF
610 | SUCH DAMAGES.
611 |
612 | 17. Interpretation of Sections 15 and 16.
613 |
614 | If the disclaimer of warranty and limitation of liability provided
615 | above cannot be given local legal effect according to their terms,
616 | reviewing courts shall apply local law that most closely approximates
617 | an absolute waiver of all civil liability in connection with the
618 | Program, unless a warranty or assumption of liability accompanies a
619 | copy of the Program in return for a fee.
620 |
621 | END OF TERMS AND CONDITIONS
622 |
623 | How to Apply These Terms to Your New Programs
624 |
625 | If you develop a new program, and you want it to be of the greatest
626 | possible use to the public, the best way to achieve this is to make it
627 | free software which everyone can redistribute and change under these terms.
628 |
629 | To do so, attach the following notices to the program. It is safest
630 | to attach them to the start of each source file to most effectively
631 | state the exclusion of warranty; and each file should have at least
632 | the "copyright" line and a pointer to where the full notice is found.
633 |
634 |
635 | Copyright (C)
636 |
637 | This program is free software: you can redistribute it and/or modify
638 | it under the terms of the GNU General Public License as published by
639 | the Free Software Foundation, either version 3 of the License, or
640 | (at your option) any later version.
641 |
642 | This program is distributed in the hope that it will be useful,
643 | but WITHOUT ANY WARRANTY; without even the implied warranty of
644 | MERCHANTABILITY or FITNESS FOR A PARTICULAR PURPOSE. See the
645 | GNU General Public License for more details.
646 |
647 | You should have received a copy of the GNU General Public License
648 | along with this program. If not, see .
649 |
650 | Also add information on how to contact you by electronic and paper mail.
651 |
652 | If the program does terminal interaction, make it output a short
653 | notice like this when it starts in an interactive mode:
654 |
655 | Copyright (C)
656 | This program comes with ABSOLUTELY NO WARRANTY; for details type `show w'.
657 | This is free software, and you are welcome to redistribute it
658 | under certain conditions; type `show c' for details.
659 |
660 | The hypothetical commands `show w' and `show c' should show the appropriate
661 | parts of the General Public License. Of course, your program's commands
662 | might be different; for a GUI interface, you would use an "about box".
663 |
664 | You should also get your employer (if you work as a programmer) or school,
665 | if any, to sign a "copyright disclaimer" for the program, if necessary.
666 | For more information on this, and how to apply and follow the GNU GPL, see
667 | .
668 |
669 | The GNU General Public License does not permit incorporating your program
670 | into proprietary programs. If your program is a subroutine library, you
671 | may consider it more useful to permit linking proprietary applications with
672 | the library. If this is what you want to do, use the GNU Lesser General
673 | Public License instead of this License. But first, please read
674 | .
675 |
--------------------------------------------------------------------------------
/README.md:
--------------------------------------------------------------------------------
1 | # Intune-App-Deploy
2 |
3 | A fast, reliable way to package your win32 applications and deploy them to Intune from any source - including SCCM, using Powershell & VS Code tasks!
4 |
5 | ## Whats this all about?
6 |
7 | Think of this as streamlining your application packaging workflow - If most or all of your application packaging dev work is done in VS Code, why not build and publish locally as well?!
8 |
9 | This repo can be used as a scaffold to very easily build and deploy win32 applications from any machine that you clone it to.
10 |
11 | ## OK, how do I get started?
12 |
13 | - Clone the repo to your development environment
14 | - Open the repo folder in VS Code
15 | - Start preparing your applications in the **applications folder** (One app per folder..)
16 | - Open the command palette (ctrl+shift+p // F1) and type **Run Task**
17 |
18 | ## Right, what tasks have we got?
19 |
20 | ### Initialize Environment
21 |
22 | To set up your development space (Installing PowerShell modules Yaml-Powershell & AzureAD, downloading the Win32 Content Prep Tool.), select the **Initialize Environment** task.
23 |
24 | ### Build
25 |
26 | To compile your application package into the require *.intunewin file, while in a file within the application you wish to build, select the **Build** task.
27 |
28 | ### Publish
29 |
30 | To publish your compiled application package, while in a file within the application you wish to publish, select the **Publish** task.
31 |
32 | You will be asked to enter Credentials to authenticate to your Azure Tenant - make sure you have correct permissions to access Intune.
33 |
34 | ### Build & Publish
35 |
36 | Build & publish tasks in one streamlined package - for the confident amongst us.
37 |
38 | ## How do I need to set up my applications?
39 |
40 | If you are building an application package locally, just place all your binaries / scripts within a folder inside the **applications** folder.
41 |
42 | If you are building an application from media stored remotely, make a note of the location of the media and we will put it in the..
43 |
44 |
45 | ## App.Yaml - the secret sauce.
46 |
47 | Once you are ready to build and deploy your package, create a file within the root of the folder named **app.yaml** and configure as you would in Intune / SCCM.
48 |
49 | Below is a sample to use as a reference point.
50 |
51 | ``` yaml
52 | application:
53 | appName: "NameOfApplication"
54 | publisher: "Powers-Hell"
55 | description: 'Description goes here'
56 | appUrl: "" # URL of your application package (storage blob, dropbox, whatever)
57 | appFile: "" # whats the file name inclusing extension
58 | unpack: false # true / false (if you need to unpack the remote media set to true, otherwise set to false)
59 | installFile: "InstallerGoesHere.exe" # what's the first file that will trigger the install (setup.exe, setup.msi, setup.ps1 etc)
60 | installCmdLine: "InstallerGoesHere.exe -installArgs"
61 | uninstallCmdLine: "InstallerGoesHere.exe -uninstallArgs"
62 |
63 | requirements:
64 | runAs32: false # true / false
65 | minOSArch: "v10_1809" # set this to your minimum allowed win10 build
66 |
67 | detection:
68 | detectionType: "file" # file / msi / registry - what you pick here is what detection method will be bundled into your application.
69 | file: # File or folder detection.
70 | path: "C:/path/to/application"
71 | fileOrFolderName: "filename.ext"
72 | fileDetectionType: "exists"
73 | check32BitRegOn64System: false # true / false
74 |
75 | registry: # Registry detection
76 | registryKeyPath: "HKLM:/software/path/application"
77 | registryDetectionType: "exists"
78 | check32BitRegOn64System: false # true / false
79 |
80 | msi: # MSI installation detection (application GUID)
81 | msiProductCode: "{F16BDC7C-960E-4F21-A44A-41E996D5356C}"
82 | ```
--------------------------------------------------------------------------------
/applications/samplePowershell/Install-App.ps1:
--------------------------------------------------------------------------------
1 | #region Config
2 | $appName = "Sample-App"
3 | $logFile = "$env:temp\$appName`.log"
4 | #endregion
5 | #region Logging
6 | Start-Transcript -Path $logFile -Force
7 | #endregion
8 |
9 | #region Process
10 | try {
11 | Write-Host "Let's throw a file in the temp folder and verify it's there.."
12 | Get-Date | Out-File "$env:temp\$appName`.txt" -Encoding ascii -NoNewline -Force
13 | if (Test-Path "$env:temp\$appName`.txt" -ErrorAction SilentlyContinue) {
14 | Write-Host "Found the file - as expected.."
15 | }
16 | else {
17 | Throw "Sample file not found.."
18 | }
19 | }
20 | catch {
21 | $errorMsg = $_.Exception.Message
22 | }
23 | finally {
24 | if ($errorMsg) {
25 | Write-Host $errorMsg
26 | Stop-Transcript
27 | throw $errorMsg
28 | }
29 | else {
30 | Write-Host "Script completed successfully.."
31 | Stop-Transcript
32 | }
33 | }
34 | #endregion
--------------------------------------------------------------------------------
/applications/samplePowershell/app.yaml:
--------------------------------------------------------------------------------
1 | application:
2 | appName: "SampleApp"
3 | publisher: "Powers-Hell"
4 | description: 'This sample app will simple leave a file on your computer. Very exciting'
5 | appUrl: ""
6 | appFile: ""
7 | unpack: false
8 | installFile: "Install-App.ps1"
9 | icon: "appIcon.jpg"
10 | installCmdLine: "%windir%\\sysnative\\windowspowershell\\v1.0\\powershell.exe -ExecutionPolicy bypass -file \"./Install-App.ps1\""
11 | uninstallCmdLine: "cmd.exe"
12 |
13 | requirements:
14 | runAs32: false
15 | minOSArch: "v10_1809"
16 |
17 | detection:
18 | detectionType: "file"
19 | file:
20 | path: "%temp%"
21 | fileOrFolderName: "sample-app.txt"
22 | fileDetectionType: "exists"
23 | check32BitRegOn64System: false
24 | registry:
25 | registryKeyPath: ""
26 | registryDetectionType: "exists"
27 | check32BitRegOn64System: false
28 | msi:
29 | msiProductCode: ""
--------------------------------------------------------------------------------
/tasks/Build.Functions.ps1:
--------------------------------------------------------------------------------
1 | #region Functions
2 | function Invoke-Build {
3 | param (
4 | $appConfig
5 | )
6 | $config = Get-Content $appConfig -Raw | ConvertFrom-Yaml
7 | $appRoot = Split-Path $((Get-ChildItem $appConfig).FullName) -Parent
8 | $binPath = "$appRoot\bin"
9 | try {
10 | if (!(Test-Path $binPath -ErrorAction SilentlyContinue)) {
11 | new-item $binPath -ItemType Directory -Force | Out-Null
12 | }
13 | if (Test-Path -Path $env:temp\$($config.application.appFile) -ErrorAction SilentlyContinue) {
14 | Write-Host "Found install media locally - will not download.."
15 | }
16 | else {
17 | Get-InstallMedia -url $config.application.appUrl -downloadPath "$env:temp\$($config.application.appFile)"
18 | }
19 | if ($config.application.unpack) {
20 | Expand-Archive -Path "$env:temp\$($config.application.appFile)" -DestinationPath $binPath
21 | try {
22 | Rename-Item "$binPath\$($config.application.appFile -replace '.zip')"-NewName "$($config.application.appFile.Replace(' ','_') -replace '.zip')" -ErrorAction SilentlyContinue
23 | }
24 | catch {
25 | Write-Debug "Folder naming is good - no need to rename.."
26 | }
27 | $binPath = "$binPath\$($config.application.appFile.Replace(' ','_') -replace '.zip')"
28 | }
29 | else {
30 |
31 | Move-Item -Path "$env:temp\$($config.application.appFile)" -Destination $binPath
32 | }
33 | $param = @{
34 | applicationName = $config.application.appName
35 | installFilePath = $binPath
36 | setupFile = $config.application.installFile
37 | outputDirectory = $appRoot
38 | }
39 | Push-Location $binPath
40 | New-IntunePackage @param
41 | Pop-Location
42 | }
43 | catch {
44 | Write-Warning $_.Exception.Message
45 | }
46 | }
47 | function Get-InstallMedia {
48 | param (
49 | $url,
50 | $downloadPath
51 | )
52 | try {
53 | Write-Host "Downloading Media.."
54 | Start-BitsTransfer $url -Destination $downloadPath
55 | }
56 | catch {
57 | write-host $_.exception.message
58 | }
59 | }
60 | function New-IntunePackage {
61 | param (
62 | [string]$applicationName,
63 | [Parameter(Mandatory = $true)]
64 | [ValidateScript( { Test-Path $_ })]
65 | [string]$installFilePath,
66 | [Parameter(Mandatory = $true)]
67 | [ValidateScript( { Test-Path $_ })]
68 | [System.IO.FileInfo]$setupFile,
69 | [Parameter(Mandatory = $true)]
70 | [string]$outputDirectory
71 | )
72 | try {
73 | $intunewinFileName = $setupFile.BaseName
74 | if (!(Test-Path $script:cliTool)) {
75 | throw "IntuneWinAppUtil.exe not found at expected location.."
76 | }
77 | if (!($outputDirectory)) {
78 | New-Item -Path $outputDirectory -ItemType Directory -Force | Out-Null
79 | }
80 | if (!($applicationName)) {
81 | $applicationName = "NewApplication_$(get-date -Format yyyyMMddhhmmss)"
82 | Write-Host "No application name given..`nGenerated name: $applicationName" -ForegroundColor Yellow
83 | }
84 | if (Test-Path -Path $installFilePath) {
85 | Write-Host "Creating installation media.." -ForegroundColor Yellow
86 | $proc = Start-Process -FilePath $script:cliTool -ArgumentList "-c `"$installFilePath`" -s `"$setupFile`" -o `"$outputDirectory`"" -Wait -PassThru -WindowStyle Normal
87 | if (Test-Path "$outputDirectory\$intunewinFileName.intunewin") {
88 | Get-ChildItem -Path "$outputDirectory\$intunewinFileName.intunewin" | Rename-Item -NewName "$applicationName.intunewin" -Force
89 | return $(Get-ChildItem -Path "$outputDirectory\$applicationName.intunewin")
90 | }
91 | else {
92 | throw "*.intunewin file not found where it should be. something bad happened."
93 | }
94 | }
95 | }
96 | catch {
97 | Write-Warning $_.exception.message
98 | }
99 | }
100 | #endregion
--------------------------------------------------------------------------------
/tasks/Deploy.Functions.ps1:
--------------------------------------------------------------------------------
1 | function Get-AuthToken {
2 | <#
3 | .SYNOPSIS
4 | This function is used to authenticate with the Graph API REST interface
5 | .DESCRIPTION
6 | The function authenticate with the Graph API Interface with the tenant name
7 | .EXAMPLE
8 | Get-AuthToken
9 | Authenticates you with the Graph API interface
10 | .NOTES
11 | NAME: Get-AuthToken
12 | #>
13 | [cmdletbinding()]
14 | param
15 | (
16 | [Parameter(Mandatory = $true, ParameterSetName="Interactive")]
17 | $user,
18 |
19 | [Parameter(Mandatory = $false)]
20 | $tenant,
21 |
22 | [Parameter(Mandatory = $false, ParameterSetName="Interactive")]
23 | [switch]$refreshSession,
24 |
25 | [Parameter(ParameterSetName="Interactive")]
26 | [switch]$adminConsent,
27 |
28 | # Silent switch
29 | [Parameter(Mandatory=$true, ParameterSetName="Silent")]
30 | [switch]$Silent,
31 |
32 | # ClientID
33 | [Parameter(Mandatory=$false)]
34 | [string]$ClientID="d1ddf0e4-d672-4dae-b554-9d5bdfd93547", # well-known Intune-App-ID
35 |
36 | # ClientSecret
37 | [Parameter(Mandatory=$true, ParameterSetName="Silent")]
38 | [SecureString]$ClientSecret
39 |
40 | )
41 | try {
42 | if (!($tenant)) {
43 | $tenant = ([mailaddress]$user).Host
44 | }
45 |
46 | if($Silent -eq $true)
47 | {
48 | $authResult=Get-MsalToken -ClientID $ClientID -ClientSecret $ClientSecret -TenantId $tenant
49 | }
50 | else
51 | {
52 | $authResult = Get-MsalToken -ClientID $ClientID -TenantId $tenant
53 | }
54 |
55 |
56 | # If the accesstoken is valid then create the authentication header
57 | if ($authResult) {
58 | # Creating header for Authorization token
59 | $authHeader = @{
60 | #'Content-Type' = 'application/json'
61 | 'Authorization' = $authResult.CreateAuthorizationHeader()
62 | 'ExpiresOn' = $authResult.ExpiresOn
63 | }
64 | return $authHeader
65 | }
66 | else {
67 | Write-Host
68 | Write-Host "Authorization Access Token is null, please re-run authentication..." -ForegroundColor Red
69 | Write-Host
70 | break
71 | }
72 | }
73 | catch {
74 | Write-Host $_.Exception.Message -f Red
75 | Write-Host $_.Exception.ItemName -f Red
76 | Write-Host
77 | break
78 | }
79 | }
80 | function Copy-Object {
81 | [cmdletbinding()]
82 | param (
83 | $object
84 | )
85 | $stream = New-Object IO.MemoryStream
86 | $formatter = New-Object Runtime.Serialization.Formatters.Binary.BinaryFormatter
87 | $formatter.Serialize($stream, $object)
88 | $stream.Position = 0
89 | $formatter.Deserialize($stream)
90 | }
91 | function Write-Headers {
92 | [cmdletbinding()]
93 | param (
94 | $authToken
95 | )
96 | foreach ($header in $authToken.GetEnumerator()) {
97 | if ($header.Name.ToLower() -eq "authorization") {
98 | continue
99 | }
100 | Write-Host -ForegroundColor Gray "$($header.Name): $($header.Value)"
101 | }
102 | }
103 | function New-GetRequest {
104 | [cmdletbinding()]
105 | param (
106 | $collectionPath
107 | )
108 | $uri = "$baseUrl$collectionPath"
109 | $request = "GET $uri"
110 | if ($logRequestUris) { Write-Host $request; }
111 | if ($logHeaders) { Write-Headers $authToken; }
112 | try {
113 | Test-AuthToken
114 | $response = Invoke-RestMethod $uri -Method Get -Headers $authToken
115 | $response
116 | }
117 | catch {
118 | Write-Host -ForegroundColor Red $request
119 | Write-Host -ForegroundColor Red $_.Exception.Message
120 | throw
121 | }
122 | }
123 | function New-PatchRequest {
124 | [cmdletbinding()]
125 | param (
126 | $collectionPath,
127 | $body
128 | )
129 | New-Request "PATCH" $collectionPath $body
130 | }
131 | function New-PostRequest {
132 | [cmdletbinding()]
133 | param (
134 | $collectionPath,
135 | $body
136 | )
137 | New-Request "POST" $collectionPath $body
138 | }
139 | function New-Request {
140 | [cmdletbinding()]
141 | param (
142 | $verb,
143 | $collectionPath,
144 | $body
145 | )
146 | $uri = "$baseUrl$collectionPath"
147 | $request = "$verb $uri"
148 | $clonedHeaders = Copy-Object $authToken
149 | #$clonedHeaders["content-length"] = $body.Length
150 | #$clonedHeaders["content-type"] = "application/json"
151 | if ($logRequestUris) { Write-Host $request; }
152 | if ($logHeaders) { Write-Headers $clonedHeaders; }
153 | if ($logContent) { Write-Host -ForegroundColor Gray $body; }
154 | try {
155 | Test-AuthToken
156 | $response = Invoke-RestMethod $uri -Method $verb -Headers $clonedHeaders -Body $body -ContentType 'application/json'
157 | $response
158 | }
159 | catch {
160 | Write-Host -ForegroundColor Red $request
161 | Write-Host -ForegroundColor Red $_.Exception.Message
162 | throw
163 | }
164 | }
165 | function Send-FileToAzureStorage {
166 | [cmdletbinding()]
167 | param (
168 | $sasUri,
169 | $filePath
170 | )
171 | try {
172 | Write-Host "Publishing $filePath to: $sasUri.."
173 | $publish = . $script:azCopy cp "$filePath" "$sasUri" --block-size-mb 4 --output-type "json"
174 | return $($publish | ConvertFrom-Json)
175 | }
176 | catch {
177 | Write-Warning $_
178 | }
179 | finally {
180 | "File upload completed.."
181 | }
182 |
183 | }
184 | #region old upload mechanism
185 | function Send-AzureStorageChunk {
186 | [cmdletbinding()]
187 | param (
188 | $sasUri,
189 | $id,
190 | $body
191 | )
192 | $uri = "$sasUri&comp=block&blockid=$id"
193 | $request = "PUT $uri"
194 | $iso = [System.Text.Encoding]::GetEncoding("iso-8859-1")
195 | $encodedBody = $iso.GetString($body)
196 | $headers = @{
197 | "x-ms-blob-type" = "BlockBlob"
198 | }
199 | if ($logRequestUris) { Write-Host $request; }
200 | if ($logHeaders) { Write-Headers $headers; }
201 | try {
202 | $response = Invoke-WebRequest $uri -Method Put -Headers $headers -Body $encodedBody -UseBasicParsing
203 | }
204 | catch {
205 | Write-Host -ForegroundColor Red $request
206 | Write-Host -ForegroundColor Red $_.Exception.Message
207 | throw
208 | }
209 | }
210 | function Complete-AzureStorageUpload {
211 | [cmdletbinding()]
212 | param (
213 | $sasUri,
214 | $ids
215 | )
216 | $uri = "$sasUri&comp=blocklist"
217 | $request = "PUT $uri"
218 | $xml = ''
219 | foreach ($id in $ids) {
220 | $xml += "$id"
221 | }
222 | $xml += ''
223 | if ($logRequestUris) { Write-Host $request; }
224 | if ($logContent) { Write-Host -ForegroundColor Gray $xml; }
225 | try {
226 | Invoke-RestMethod $uri -Method Put -Body $xml
227 | }
228 | catch {
229 | Write-Host -ForegroundColor Red $request
230 | Write-Host -ForegroundColor Red $_.Exception.Message
231 | throw
232 | }
233 | }
234 | function Send-SmallFileToAzureStorage {
235 | [cmdletbinding()]
236 | param (
237 | $sasUri,
238 | $filepath,
239 | $fileUri
240 | )
241 | try {
242 | $chunkSizeInBytes = 1024l * 1024l * $azureStorageUploadChunkSizeInMb
243 | # Start the timer for SAS URI renewal.
244 | $sasRenewalTimer = [System.Diagnostics.Stopwatch]::StartNew()
245 | # Find the file size and open the file.
246 | $fileSize = (Get-Item $filepath).length
247 | $chunks = [Math]::Ceiling($fileSize / $chunkSizeInBytes)
248 | $reader = New-Object System.IO.BinaryReader([System.IO.File]::Open($filepath, [System.IO.FileMode]::Open))
249 | $position = $reader.BaseStream.Seek(0, [System.IO.SeekOrigin]::Begin)
250 | # Upload each chunk. Check whether a SAS URI renewal is required after each chunk is uploaded and renew if needed.
251 | $ids = @()
252 | for ($chunk = 0; $chunk -lt $chunks; $chunk++) {
253 | $id = [System.Convert]::ToBase64String([System.Text.Encoding]::ASCII.GetBytes($chunk.ToString("0000")))
254 | $ids += $id
255 | $start = $chunk * $chunkSizeInBytes
256 | $length = [Math]::Min($chunkSizeInBytes, $fileSize - $start)
257 | $bytes = $reader.ReadBytes($length)
258 | $currentChunk = $chunk + 1
259 | Write-Progress -Activity "Uploading File to Azure Storage" -status "Uploading chunk $currentChunk of $chunks" `
260 | -percentComplete ($currentChunk / $chunks * 100)
261 | $uploadResponse = Send-AzureStorageChunk $sasUri $id $bytes
262 | # Renew the SAS URI if 7 minutes have elapsed since the upload started or was renewed last.
263 | if ($currentChunk -lt $chunks -and $sasRenewalTimer.ElapsedMilliseconds -ge 450000) {
264 | $renewalResponse = Update-AzureStorageUpload $fileUri
265 | $sasRenewalTimer.Restart()
266 | }
267 | }
268 | Write-Progress -Completed -Activity "Uploading File to Azure Storage"
269 | $reader.Close()
270 | }
271 | finally {
272 | if ($reader -ne $null) { $reader.Dispose(); }
273 | }
274 | # Finalize the upload.
275 | $uploadResponse = Complete-AzureStorageUpload $sasUri $ids
276 | }
277 | function Update-AzureStorageUpload {
278 | [cmdletbinding()]
279 | param (
280 | $fileUri
281 | )
282 | $renewalUri = "$fileUri/renewUpload"
283 | $actionBody = ""
284 | $rewnewUriResult = New-PostRequest $renewalUri
285 | Start-Sleep -Seconds 2
286 | #$file = Wait-ForFileProcessing $fileUri "AzureStorageUriRenewal" $script:azureStorageRenewSasUriBackOffTimeInSeconds
287 | }
288 | #endregion
289 | function Wait-ForFileProcessing {
290 | [cmdletbinding()]
291 | param (
292 | $fileUri,
293 | $stage
294 | )
295 | $attempts = 600
296 | $waitTimeInSeconds = 10
297 | $successState = "$($stage)Success"
298 | $pendingState = "$($stage)Pending"
299 | $failedState = "$($stage)Failed"
300 | $timedOutState = "$($stage)TimedOut"
301 | $file = $null
302 | while ($attempts -gt 0) {
303 | $file = New-GetRequest $fileUri
304 | if ($file.uploadState -eq $successState) {
305 | break
306 | }
307 | elseif ($file.uploadState -ne $pendingState) {
308 | Write-Host -ForegroundColor Red $_.Exception.Message
309 | throw "File upload state is not success: $($file.uploadState)"
310 | }
311 | Start-Sleep $waitTimeInSeconds
312 | $attempts--
313 | }
314 | if ($file -eq $null -or $file.uploadState -ne $successState) {
315 | throw "File request did not complete in the allotted time."
316 | }
317 | $file
318 | }
319 | function Get-Win32AppBody {
320 | param
321 | (
322 | [parameter(Mandatory = $true, ParameterSetName = "MSI", Position = 1)]
323 | [Switch]$MSI,
324 |
325 | [parameter(Mandatory = $true, ParameterSetName = "EXE", Position = 1)]
326 | [Switch]$EXE,
327 |
328 | [Parameter(Mandatory = $false, ParameterSetName = "PWSH", Position = 1)]
329 | [switch]$PowerShell,
330 |
331 | [parameter(Mandatory = $true)]
332 | [ValidateNotNullOrEmpty()]
333 | [string]$displayName,
334 |
335 | [parameter(Mandatory = $true)]
336 | [ValidateNotNullOrEmpty()]
337 | [string]$publisher,
338 |
339 | [parameter(Mandatory = $true)]
340 | [ValidateNotNullOrEmpty()]
341 | [string]$description,
342 |
343 | [parameter(Mandatory = $true)]
344 | [ValidateNotNullOrEmpty()]
345 | [string]$filename,
346 |
347 | [parameter(Mandatory = $false)]
348 | [ValidateSet('system', 'user')]
349 | $installExperience = "system",
350 |
351 | [parameter(Mandatory = $true)]
352 | [ValidateNotNullOrEmpty()]
353 | $setupFileName,
354 |
355 | [parameter(Mandatory = $true)]
356 | [ValidateNotNullOrEmpty()]
357 | $minOSarch,
358 |
359 | [parameter(Mandatory = $true)]
360 | [ValidateNotNullOrEmpty()]
361 | $runAs32,
362 |
363 | [parameter(Mandatory = $false)]
364 | [ValidateNotNullOrEmpty()]
365 | $largeIcon,
366 |
367 | [parameter(Mandatory = $true, ParameterSetName = "PWSH")]
368 | [parameter(Mandatory = $true, ParameterSetName = "EXE")]
369 | [ValidateNotNullOrEmpty()]
370 | $uninstallCommandLine,
371 |
372 | [parameter(Mandatory = $true, ParameterSetName = "EXE")]
373 | [ValidateNotNullOrEmpty()]
374 | $installCommandLine,
375 |
376 | [parameter(Mandatory = $true, ParameterSetName = "MSI")]
377 | [ValidateNotNullOrEmpty()]
378 | $msiPackageType,
379 |
380 | [parameter(Mandatory = $true, ParameterSetName = "MSI")]
381 | [ValidateNotNullOrEmpty()]
382 | $msiProductCode,
383 |
384 | [parameter(Mandatory = $false, ParameterSetName = "MSI")]
385 | $msiProductName,
386 |
387 | [parameter(Mandatory = $true, ParameterSetName = "MSI")]
388 | [ValidateNotNullOrEmpty()]
389 | $msiProductVersion,
390 |
391 | [parameter(Mandatory = $false, ParameterSetName = "MSI")]
392 | $msiPublisher,
393 |
394 | [parameter(Mandatory = $true, ParameterSetName = "MSI")]
395 | [ValidateNotNullOrEmpty()]
396 | $msiRequiresReboot,
397 |
398 | [parameter(Mandatory = $true, ParameterSetName = "MSI")]
399 | [ValidateNotNullOrEmpty()]
400 | $msiUpgradeCode
401 | )
402 | $body = @{ "@odata.type" = "#microsoft.graph.win32LobApp" }
403 | if ($largeIcon) {
404 | $body.largeIcon = @{
405 | "type" = "image/jpeg"
406 | "value" = $largeIcon
407 | }
408 | }
409 | if ($msi) {
410 | $body.applicableArchitectures = "x64,x86"
411 | $body.description = $description
412 | $body.developer = ""
413 | $body.displayName = $displayName
414 | $body.fileName = $filename
415 | $body.installCommandLine = "msiexec /i `"$SetupFileName`""
416 | $body.installExperience = @{"runAsAccount" = "$installExperience" }
417 | $body.informationUrl = $null
418 | $body.isFeatured = $false
419 | $body.minimumSupportedOperatingSystem = @{$minOSArch = $true }
420 | $body.msiInformation = @{
421 | "packageType" = "$msiPackageType"
422 | "productCode" = "$msiProductCode"
423 | "productName" = "$msiProductName"
424 | "productVersion" = "$msiProductVersion"
425 | "publisher" = "$msiPublisher"
426 | "requiresReboot" = "$msiRequiresReboot"
427 | "upgradeCode" = "$msiUpgradeCode"
428 | }
429 | $body.notes = ""
430 | $body.owner = ""
431 | $body.privacyInformationUrl = $null
432 | $body.publisher = $publisher
433 | $body.runAs32bit = if ($runAs32) { $true } else { $false }
434 | $body.setupFilePath = $SetupFileName
435 | $body.uninstallCommandLine = "msiexec /x `"$msiProductCode`""
436 | }
437 | elseif ($EXE) {
438 | $body.description = $description
439 | $body.developer = ""
440 | $body.displayName = $displayName
441 | $body.fileName = $filename
442 | $body.installCommandLine = "$installCommandLine"
443 | $body.installExperience = @{"runAsAccount" = "$installExperience" }
444 | $body.informationUrl = $null
445 | $body.isFeatured = $false
446 | $body.minimumSupportedOperatingSystem = @{$minOSArch = $true }
447 | $body.msiInformation = $null
448 | $body.notes = ""
449 | $body.owner = ""
450 | $body.privacyInformationUrl = $null
451 | $body.publisher = $publisher
452 | $body.runAs32bit = if ($runAs32) { $true } else { $false }
453 | $body.setupFilePath = $SetupFileName
454 | $body.uninstallCommandLine = "$uninstallCommandLine"
455 | }
456 | elseif ($PowerShell) {
457 | $body.description = $description
458 | $body.developer = ""
459 | $body.displayName = $displayName
460 | $body.fileName = $filename
461 | $body.installCommandLine = "Powershell.exe -executionPolicy bypass -file './$SetupFileName'"
462 | $body.installExperience = @{"runAsAccount" = "$installExperience" }
463 | $body.informationUrl = $null
464 | $body.isFeatured = $false
465 | $body.minimumSupportedOperatingSystem = @{$minOSArch = $true }
466 | $body.msiInformation = $null
467 | $body.notes = ""
468 | $body.owner = ""
469 | $body.privacyInformationUrl = $null
470 | $body.publisher = $publisher
471 | $body.runAs32bit = if ($runAs32) { $true } else { $false }
472 | $body.setupFilePath = $SetupFileName
473 | $body.uninstallCommandLine = "$uninstallCommandLine"
474 | }
475 | return $body
476 | }
477 | function Get-AppFileBody {
478 | [cmdletbinding()]
479 | param (
480 | $name,
481 | $size,
482 | $sizeEncrypted,
483 | $manifest
484 | )
485 | $body = @{ "@odata.type" = "#microsoft.graph.mobileAppContentFile" }
486 | $body.name = $name
487 | $body.size = $size
488 | $body.sizeEncrypted = $sizeEncrypted
489 | $body.manifest = $manifest
490 | $body.isDependency = $false
491 | $body
492 | }
493 | function Get-AppCommitBody {
494 | [cmdletbinding()]
495 | param(
496 | $contentVersionId,
497 | $LobType
498 | )
499 | $body = @{ "@odata.type" = "#$LobType" }
500 | $body.committedContentVersion = $contentVersionId
501 | $body
502 | }
503 | function Test-SourceFile {
504 | param
505 | (
506 | [parameter(Mandatory = $true)]
507 | [ValidateNotNullOrEmpty()]
508 | $sourceFile
509 | )
510 | try {
511 | if (!(Test-Path "$sourceFile")) {
512 | Write-Host
513 | Write-Host "Source File '$sourceFile' doesn't exist..." -ForegroundColor Red
514 | throw
515 | }
516 | }
517 | catch {
518 | Write-Host -ForegroundColor Red $_.Exception.Message
519 | Write-Host
520 | break
521 | }
522 | }
523 | function New-DetectionRule {
524 | [cmdletbinding()]
525 | param
526 | (
527 | [parameter(Mandatory = $true, ParameterSetName = "PowerShell", Position = 1)]
528 | [Switch]$PowerShell,
529 | [parameter(Mandatory = $true, ParameterSetName = "MSI", Position = 1)]
530 | [Switch]$msi,
531 | [parameter(Mandatory = $true, ParameterSetName = "File", Position = 1)]
532 | [Switch]$File,
533 | [parameter(Mandatory = $true, ParameterSetName = "Registry", Position = 1)]
534 | [Switch]$Registry,
535 | [parameter(Mandatory = $true, ParameterSetName = "PowerShell")]
536 | [ValidateNotNullOrEmpty()]
537 | [String]$ScriptFile,
538 | [parameter(Mandatory = $true, ParameterSetName = "PowerShell")]
539 | [ValidateNotNullOrEmpty()]
540 | $enforceSignatureCheck,
541 | [parameter(Mandatory = $true, ParameterSetName = "PowerShell")]
542 | [ValidateNotNullOrEmpty()]
543 | $runAs32Bit,
544 | [parameter(Mandatory = $true, ParameterSetName = "MSI")]
545 | [ValidateNotNullOrEmpty()]
546 | [String]$msiProductCode,
547 | [parameter(Mandatory = $true, ParameterSetName = "File")]
548 | [ValidateNotNullOrEmpty()]
549 | [String]$Path,
550 | [parameter(Mandatory = $true, ParameterSetName = "File")]
551 | [ValidateNotNullOrEmpty()]
552 | [string]$FileOrFolderName,
553 | [parameter(Mandatory = $true, ParameterSetName = "File")]
554 | [ValidateSet("notConfigured", "exists", "modifiedDate", "createdDate", "version", "sizeInMB")]
555 | [string]$FileDetectionType,
556 | [parameter(Mandatory = $false, ParameterSetName = "File")]
557 | $FileDetectionValue = $null,
558 | [parameter(Mandatory = $true, ParameterSetName = "File")]
559 | [ValidateSet("True", "False")]
560 | [string]$check32BitOn64System = "False",
561 | [parameter(Mandatory = $true, ParameterSetName = "Registry")]
562 | [ValidateNotNullOrEmpty()]
563 | [String]$RegistryKeyPath,
564 | [parameter(Mandatory = $true, ParameterSetName = "Registry")]
565 | [ValidateSet("notConfigured", "exists", "doesNotExist", "string", "integer", "version")]
566 | [string]$RegistryDetectionType,
567 | [parameter(Mandatory = $false, ParameterSetName = "Registry")]
568 | [ValidateNotNullOrEmpty()]
569 | [String]$RegistryValue,
570 | [parameter(Mandatory = $true, ParameterSetName = "Registry")]
571 | [ValidateSet("True", "False")]
572 | [string]$check32BitRegOn64System = "False"
573 | )
574 | if ($PowerShell) {
575 | if (!(Test-Path "$ScriptFile")) {
576 | Write-Host
577 | Write-Host "Could not find file '$ScriptFile'..." -ForegroundColor Red
578 | Write-Host "Script can't continue..." -ForegroundColor Red
579 | Write-Host
580 | break
581 | }
582 | $ScriptContent = [System.Convert]::ToBase64String([System.IO.File]::ReadAllBytes("$ScriptFile"))
583 | $DR = @{ "@odata.type" = "#microsoft.graph.win32LobAppPowerShellScriptDetection" }
584 | $DR.enforceSignatureCheck = $false
585 | $DR.runAs32Bit = $false
586 | $DR.scriptContent = "$ScriptContent"
587 | }
588 | elseif ($msi) {
589 | $DR = @{ "@odata.type" = "#microsoft.graph.win32LobAppProductCodeDetection" }
590 | $DR.productVersionOperator = "notConfigured"
591 | $DR.productCode = "$msiProductCode"
592 | $DR.productVersion = $null
593 | }
594 | elseif ($File) {
595 | $DR = @{ "@odata.type" = "#microsoft.graph.win32LobAppFileSystemDetection" }
596 | $DR.check32BitOn64System = "$check32BitOn64System"
597 | $DR.detectionType = "$FileDetectionType"
598 | $DR.detectionValue = $FileDetectionValue
599 | $DR.fileOrFolderName = "$FileOrFolderName"
600 | $DR.operator = "notConfigured"
601 | $DR.path = "$Path"
602 | }
603 | elseif ($Registry) {
604 | $DR = @{ "@odata.type" = "#microsoft.graph.win32LobAppRegistryDetection" }
605 | $DR.check32BitOn64System = "$check32BitRegOn64System"
606 | $DR.detectionType = "$RegistryDetectionType"
607 | $DR.detectionValue = ""
608 | $DR.keyPath = "$RegistryKeyPath"
609 | $DR.operator = "notConfigured"
610 | $DR.valueName = "$RegistryValue"
611 | }
612 | return $DR
613 | }
614 | function Get-DefaultReturnCodes {
615 | $returnCodes = @(
616 | @{
617 | "returnCode" = 0
618 | "type" = "success"
619 | },
620 | @{
621 | "returnCode" = 1707
622 | "type" = "success"
623 | },
624 | @{
625 | "returnCode" = 3010
626 | "type" = "softReboot"
627 | },
628 | @{
629 | "returnCode" = 1641
630 | "type" = "hardReboot"
631 | },
632 | @{
633 | "returnCode" = 1618
634 | "type" = "retry"
635 | }
636 | )
637 | return $returnCodes
638 | }
639 | function New-ReturnCode {
640 | param
641 | (
642 | [parameter(Mandatory = $true)]
643 | [int]$returnCode,
644 | [parameter(Mandatory = $true)]
645 | [ValidateSet('success', 'softReboot', 'hardReboot', 'retry')]
646 | $type
647 | )
648 | @{
649 | "returnCode" = $returnCode
650 | "type" = "$type"
651 | }
652 | }
653 | function Get-IntuneWinXML {
654 | param
655 | (
656 | [Parameter(Mandatory = $true)]
657 | $sourceFile,
658 | [Parameter(Mandatory = $true)]
659 | $fileName,
660 | [Parameter(Mandatory = $false)]
661 | [switch]$removeItem
662 | )
663 | Test-SourceFile "$sourceFile"
664 | $Directory = [System.IO.Path]::GetDirectoryName("$sourceFile")
665 | Add-Type -Assembly System.IO.Compression.FileSystem
666 | $zip = [IO.Compression.ZipFile]::OpenRead("$sourceFile")
667 | $zip.Entries | Where-Object { $_.Name -like "$filename" } | ForEach-Object {
668 | [System.IO.Compression.ZipFileExtensions]::ExtractToFile($_, "$Directory\$filename", $true)
669 | }
670 | $zip.Dispose()
671 | [xml]$IntuneWinXML = Get-Content "$Directory\$filename"
672 | if ($removeItem) {
673 | Remove-Item "$Directory\$filename"
674 | }
675 | return $IntuneWinXML
676 | }
677 | function Get-IntuneWinFile {
678 | param
679 | (
680 | [Parameter(Mandatory = $true)]
681 | $sourceFile,
682 |
683 | [Parameter(Mandatory = $true)]
684 | $fileName,
685 |
686 | [Parameter(Mandatory = $false)]
687 | [string]$Folder = "win32"
688 | )
689 | $Directory = [System.IO.Path]::GetDirectoryName("$sourceFile")
690 | if (!(Test-Path "$Directory\$folder")) {
691 | New-Item -ItemType Directory -Path "$Directory" -Name "$folder" | Out-Null
692 | }
693 | Add-Type -Assembly System.IO.Compression.FileSystem
694 | $zip = [IO.Compression.ZipFile]::OpenRead("$sourceFile")
695 | $zip.Entries | Where-Object { $_.Name -like "$filename" } | ForEach-Object {
696 | [System.IO.Compression.ZipFileExtensions]::ExtractToFile($_, "$Directory\$folder\$filename", $true)
697 | }
698 | $zip.Dispose()
699 | return "$Directory\$folder\$filename"
700 | }
701 | function Publish-Win32Lob {
702 | <#
703 | .SYNOPSIS
704 | This function is used to upload a Win32 Application to the Intune Service
705 | .DESCRIPTION
706 | This function is used to upload a Win32 Application to the Intune Service
707 | .EXAMPLE
708 | Upload-Win32Lob "C:\Packages\package.intunewin" -publisher "Microsoft" -description "Package"
709 | This example uses all parameters required to add an intunewin File into the Intune Service
710 | .NOTES
711 | NAME: Upload-Win32LOB
712 | #>
713 | [cmdletbinding()]
714 | param
715 | (
716 | [parameter(Mandatory = $true, Position = 1)]
717 | [ValidateNotNullOrEmpty()]
718 | [string]$sourceFile,
719 |
720 | [parameter(Mandatory = $false)]
721 | [ValidateNotNullOrEmpty()]
722 | [string]$displayName,
723 |
724 | [parameter(Mandatory = $true, Position = 2)]
725 | [ValidateNotNullOrEmpty()]
726 | [string]$publisher,
727 |
728 | [parameter(Mandatory = $true, Position = 3)]
729 | [ValidateNotNullOrEmpty()]
730 | [string]$description,
731 |
732 | [parameter(Mandatory = $false, Position = 4)]
733 | [ValidateNotNullOrEmpty()]
734 | [string]$largeIcon,
735 |
736 | [parameter(Mandatory = $true, Position = 5)]
737 | [ValidateNotNullOrEmpty()]
738 | $detectionRules,
739 |
740 | [parameter(Mandatory = $true, Position = 6)]
741 | [ValidateNotNullOrEmpty()]
742 | $returnCodes,
743 |
744 | [parameter(Mandatory = $false, Position = 7)]
745 | [ValidateNotNullOrEmpty()]
746 | [string]$installCmdLine,
747 |
748 | [parameter(Mandatory = $false, Position = 8)]
749 | [ValidateNotNullOrEmpty()]
750 | [string]$uninstallCmdLine,
751 |
752 | [parameter(Mandatory = $false, Position = 9)]
753 | [ValidateNotNullOrEmpty()]
754 | [string]$minOSArch,
755 |
756 | [parameter(Mandatory = $false, Position = 10)]
757 | [ValidateNotNullOrEmpty()]
758 | [string]$runAs32,
759 |
760 | [parameter(Mandatory = $false, Position = 11)]
761 | [ValidateSet('system', 'user')]
762 | $installExperience = "system"
763 | )
764 | try {
765 | $LOBType = "microsoft.graph.win32LobApp"
766 | Write-Host "Testing if SourceFile '$sourceFile' Path is valid..." -ForegroundColor Yellow
767 | Test-SourceFile "$sourceFile"
768 | $Win32Path = "$sourceFile"
769 | Write-Host
770 | Write-Host "Creating JSON data to pass to the service..." -ForegroundColor Yellow
771 | # Funciton to read Win32LOB file
772 | $DetectionXML = Get-IntuneWinXML "$sourceFile" -fileName "detection.xml" -removeItem
773 | [int]$cSize = $DetectionXML.ApplicationInfo.UnencryptedContentSize
774 | # If displayName input don't use Name from detection.xml file
775 | if ($displayName) { $DisplayName = $displayName }
776 | else { $DisplayName = $DetectionXML.ApplicationInfo.Name }
777 | $FileName = $DetectionXML.ApplicationInfo.FileName
778 | $SetupFileName = $DetectionXML.ApplicationInfo.SetupFile
779 | $Ext = [System.IO.Path]::GetExtension($SetupFileName)
780 | if ((($Ext).contains("msi") -or ($Ext).contains("Msi")) -and (!$installCmdLine -or !$uninstallCmdLine)) {
781 | # MSI
782 | $msiExecutionContext = $DetectionXML.ApplicationInfo.MsiInfo.MsiExecutionContext
783 | $msiPackageType = "DualPurpose"
784 | if ($msiExecutionContext -eq "System") { $msiPackageType = "PerMachine" }
785 | elseif ($msiExecutionContext -eq "User") { $msiPackageType = "PerUser" }
786 | $msiProductCode = $DetectionXML.ApplicationInfo.MsiInfo.MsiProductCode
787 | $msiProductVersion = $DetectionXML.ApplicationInfo.MsiInfo.MsiProductVersion
788 | $msiPublisher = $DetectionXML.ApplicationInfo.MsiInfo.MsiPublisher
789 | $msiRequiresReboot = $DetectionXML.ApplicationInfo.MsiInfo.MsiRequiresReboot
790 | $msiUpgradeCode = $DetectionXML.ApplicationInfo.MsiInfo.MsiUpgradeCode
791 | if ($msiRequiresReboot -eq "false") { $msiRequiresReboot = $false }
792 | elseif ($msiRequiresReboot -eq "true") { $msiRequiresReboot = $true }
793 | $mobileAppParams = @{
794 | MSI = $true
795 | displayName = "$DisplayName"
796 | publisher = "$publisher"
797 | description = $description
798 | filename = $FileName
799 | SetupFileName = "$SetupFileName"
800 | installExperience = $installExperience
801 | minOSArch = $minOSArch
802 | runAs32 = $runAs32
803 | MsiPackageType = $msiPackageType
804 | MsiProductCode = $msiProductCode
805 | MsiProductName = $displayName
806 | MsiProductVersion = $msiProductVersion
807 | MsiPublisher = $msiPublisher
808 | MsiRequiresReboot = $msiRequiresReboot
809 | MsiUpgradeCode = $msiUpgradeCode
810 | }
811 | if ($largeIcon) {
812 | $mobileAppParams.largeIcon = $largeIcon
813 | }
814 | $mobileAppBody = Get-Win32AppBody @mobileAppParams
815 | }
816 | else {
817 | $mobileAppParams = @{
818 | EXE = $true
819 | displayName = $displayName
820 | publisher = $publisher
821 | description = $description
822 | filename = $fileName
823 | setupFileName = $SetupFileName
824 | installCommandLine = $installCmdLine
825 | installExperience = $installExperience
826 | uninstallCommandLine = $uninstallCmdLine
827 | minOSArch = $minOSArch
828 | runAs32 = $runAs32
829 | }
830 | if ($largeIcon) {
831 | $mobileAppParams.largeIcon = $largeIcon
832 | }
833 | $mobileAppBody = Get-Win32AppBody @mobileAppParams
834 | }
835 | if ($DetectionRules.'@odata.type' -contains "#microsoft.graph.win32LobAppPowerShellScriptDetection" -and @($DetectionRules).'@odata.type'.Count -gt 1) {
836 | Write-Host
837 | Write-Warning "A Detection Rule can either be 'Manually configure detection rules' or 'Use a custom detection script'"
838 | Write-Warning "It can't include both..."
839 | Write-Host
840 | break
841 | }
842 | else {
843 | $mobileAppBody | Add-Member -MemberType NoteProperty -Name 'detectionRules' -Value $detectionRules
844 | }
845 | #ReturnCodes
846 | if ($returnCodes) {
847 | $mobileAppBody | Add-Member -MemberType NoteProperty -Name 'returnCodes' -Value @($returnCodes)
848 | }
849 | else {
850 | Write-Host
851 | Write-Warning "Intunewin file requires ReturnCodes to be specified"
852 | Write-Warning "If you want to use the default ReturnCode run 'Get-DefaultReturnCodes'"
853 | Write-Host
854 | break
855 | }
856 | Write-Host
857 | Write-Host "Creating application in Intune..." -ForegroundColor Yellow
858 | $mobileApp = New-PostRequest "mobileApps" ($mobileAppBody | ConvertTo-Json)
859 | # Get the content version for the new app (this will always be 1 until the new app is committed).
860 | Write-Host
861 | Write-Host "Creating Content Version in the service for the application..." -ForegroundColor Yellow
862 | $appId = $mobileApp.id
863 | $contentVersionUri = "mobileApps/$appId/$LOBType/contentVersions"
864 | $contentVersion = New-PostRequest $contentVersionUri "{}"
865 | # Encrypt file and Get File Information
866 | Write-Host
867 | Write-Host "Getting Encryption Information for '$sourceFile'..." -ForegroundColor Yellow
868 | $encryptionInfo = @{ }
869 | $encryptionInfo.encryptionKey = $DetectionXML.ApplicationInfo.EncryptionInfo.EncryptionKey
870 | $encryptionInfo.macKey = $DetectionXML.ApplicationInfo.EncryptionInfo.macKey
871 | $encryptionInfo.initializationVector = $DetectionXML.ApplicationInfo.EncryptionInfo.initializationVector
872 | $encryptionInfo.mac = $DetectionXML.ApplicationInfo.EncryptionInfo.mac
873 | $encryptionInfo.profileIdentifier = "ProfileVersion1"
874 | $encryptionInfo.fileDigest = $DetectionXML.ApplicationInfo.EncryptionInfo.fileDigest
875 | $encryptionInfo.fileDigestAlgorithm = $DetectionXML.ApplicationInfo.EncryptionInfo.fileDigestAlgorithm
876 | $fileEncryptionInfo = @{ }
877 | $fileEncryptionInfo.fileEncryptionInfo = $encryptionInfo
878 | # Extracting encrypted file
879 | $IntuneWinFile = Get-IntuneWinFile "$sourceFile" -fileName "$filename"
880 | [int64]$Size = $DetectionXML.ApplicationInfo.UnencryptedContentSize
881 | $EncrySize = (Get-Item "$IntuneWinFile").Length
882 | # Create a new file for the app.
883 | Write-Host
884 | Write-Host "Creating a new file entry in Azure for the upload..." -ForegroundColor Yellow
885 | $contentVersionId = $contentVersion.id
886 | $fileBody = Get-AppFileBody "$FileName" $Size $EncrySize $null
887 | $filesUri = "mobileApps/$appId/$LOBType/contentVersions/$contentVersionId/files"
888 | $file = New-PostRequest $filesUri ($fileBody | ConvertTo-Json)
889 | # Wait for the service to process the new file request.
890 | Write-Host
891 | Write-Host "Waiting for the file entry URI to be created..." -ForegroundColor Yellow
892 | $fileId = $file.id
893 | $fileUri = "mobileApps/$appId/$LOBType/contentVersions/$contentVersionId/files/$fileId"
894 | $file = Wait-ForFileProcessing $fileUri "AzureStorageUriRequest"
895 | # Upload the content to Azure Storage.
896 | Write-Host
897 | Write-Host "Uploading file to Azure Storage..." -f Yellow
898 | $sasUri = $file.azureStorageUri
899 | if ($cSize -lt 9.1mb) {
900 | Write-Host "Small Intunewin package detected.." -ForegroundColor Yellow
901 | Send-SmallFileToAzureStorage $sasUri "$IntuneWinFile" $fileUri
902 | }
903 | else {
904 | Write-Host "Large Intunewin package detected.." -ForegroundColor Yellow
905 | Send-FileToAzureStorage -sasUri $sasUri -filePath "$IntuneWinFile"
906 | }
907 | # Need to Add removal of IntuneWin file
908 | Remove-Item "$(Split-Path $IntuneWinFile -Parent)" -Recurse -Force
909 | #Remove-Item "$IntuneWinFile" -Force
910 | # Commit the file.
911 | Start-Sleep -Seconds 5
912 | Write-Host
913 | Write-Host "Committing the file into Azure Storage..." -ForegroundColor Yellow
914 | $commitFileUri = "mobileApps/$appId/$LOBType/contentVersions/$contentVersionId/files/$fileId/commit"
915 | New-PostRequest $commitFileUri ($fileEncryptionInfo | ConvertTo-Json)
916 | # Wait for the service to process the commit file request.
917 | Write-Host
918 | Write-Host "Waiting for the service to process the commit file request..." -ForegroundColor Yellow
919 | $file = Wait-ForFileProcessing $fileUri "CommitFile"
920 | # Commit the app.
921 | Write-Host
922 | Write-Host "Committing the file into Azure Storage..." -ForegroundColor Yellow
923 | $commitAppUri = "mobileApps/$appId"
924 | $commitAppBody = Get-AppCommitBody $contentVersionId $LOBType
925 | New-PatchRequest $commitAppUri ($commitAppBody | ConvertTo-Json)
926 | Write-Host "Sleeping for $sleep seconds to allow patch completion..." -f Magenta
927 | Start-Sleep $sleep
928 | Write-Host
929 | }
930 | catch {
931 | Write-Host ""
932 | Write-Host -ForegroundColor Red "Aborting with exception: $($_.Exception.ToString())"
933 | }
934 | }
935 | function Test-AuthToken {
936 | param (
937 | $user,
938 | $tenant
939 | )
940 | # Checking if authToken exists before running authentication
941 | if ($global:authToken) {
942 | # Setting DateTime to Universal time to work in all timezones
943 | $DateTime = (Get-Date).ToUniversalTime()
944 | # If the authToken exists checking when it expires
945 | $TokenExpires = ($authToken.ExpiresOn.datetime - $DateTime).Minutes
946 | if ($TokenExpires -le 0) {
947 | Write-Host "Authentication Token expired" $TokenExpires "minutes ago" -ForegroundColor Yellow
948 | Write-Host
949 | # Defining Azure AD tenant name, this is the name of your Azure Active Directory (do not use the verified domain name)
950 | if ($tenant) {
951 | $global:authToken = Get-AuthToken -User $script:user -Tenant $script:tenant
952 | }
953 | else {
954 | $global:authToken = Get-AuthToken -User $script:user
955 | }
956 | }
957 | }
958 | else {
959 | # Getting the authorization token
960 | if ($tenant) {
961 | $global:authToken = Get-AuthToken -User $script:user -Tenant $script:tenant
962 | }
963 | else {
964 | $global:authToken = Get-AuthToken -User $script:user
965 | }
966 | }
967 | }
--------------------------------------------------------------------------------
/tasks/Deploy.Intunewin.ps1:
--------------------------------------------------------------------------------
1 | param (
2 | $appConfig,
3 | $user,
4 | $tenant
5 | )
6 | #region load the functions
7 | . $PSScriptRoot\deploy.functions.ps1
8 | #endregion
9 | #region Config
10 | $script:baseUrl = "https://graph.microsoft.com/beta/deviceAppManagement/"
11 | $script:logRequestUris = $true;
12 | $script:logHeaders = $false;
13 | $script:logContent = $true;
14 | $script:azureStorageUploadChunkSizeInMb = 6l;
15 | $script:sleep = 30
16 | $script:user = $user
17 | if ($tenant) {
18 | $script:tenant = $tenant
19 | }
20 | $script:azCopy = (Get-ChildItem "$PSScriptRoot\bin\azcopy_windows_amd64_*\azCopy.exe").FullName
21 | $config = Get-Content $appConfig -raw | ConvertFrom-Yaml
22 | $appRoot = Split-Path $appConfig -Parent
23 | #endregion
24 | #region ascii fun
25 | $p = 'CiBfX19fX18gIF9fICBfXyAgIF9fX19fXyAgIF9fICAgICAgIF9fICAgX19fX19fICAgX18gIF9fICAgIAovXCAgPT0gXC9cIFwvXCBcIC9cICA9PSBcIC9cIFwgICAgIC9cIFwgL1wgIF9fX1wgL1wgXF9cIFwgICAKXCBcICBfLS9cIFwgXF9cIFxcIFwgIF9fPCBcIFwgXF9fX19cIFwgXFwgXF9fXyAgXFwgXCAgX18gXCAgCiBcIFxfXCAgIFwgXF9fX19fXFwgXF9fX19fXFwgXF9fX19fXFwgXF9cXC9cX19fX19cXCBcX1wgXF9cIAogIFwvXy8gICAgXC9fX19fXy8gXC9fX19fXy8gXC9fX19fXy8gXC9fLyBcL19fX19fLyBcL18vXC9fLyAKICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgCg=='
26 | Write-Host $([system.text.encoding]::UTF8.GetString([system.convert]::FromBase64String($p)))
27 | #endregion
28 | #region prep authentication and source file..
29 | if ($tenant) {
30 | Test-AuthToken -user $script:user -tenant $script:tenant
31 | }
32 | else {
33 | Test-AuthToken -user $script:user
34 | }
35 | $sourceFile = "$appRoot\$($config.application.appName)`.intunewin"
36 | #endregion
37 |
38 | #region set up the detection method
39 | switch ($config.detection.detectionType) {
40 | "file" {
41 | $dtParam = @{
42 | file = $true
43 | Path = $config.detection.file.path
44 | FileOrFolderName = $config.detection.file.fileOrFolderName
45 | FileDetectionType = $config.detection.file.fileDetectionType
46 | check32BitOn64System = $config.detection.file.check32BitRegOn64System
47 | }
48 | break
49 | }
50 | "registry" {
51 | $dtParam = @{
52 | registry = $true
53 | registryKeyPath = $config.detection.registry.registryKeyPath
54 | registryDetectionType = $config.detection.registry.registryDetectionType
55 | check32BitRegOn64System = $config.detection.registry.check32BitRegOn64System
56 | }
57 | break
58 | }
59 | "msi" {
60 | $dtParam = @{
61 | msi = $true
62 | msiProductCode = $config.detection.msi.msiProductCode
63 | }
64 | break
65 | }
66 | default {
67 | throw "incorrect detection type.."
68 | break
69 | }
70 | }
71 | $DetectionRule = New-DetectionRule @dtParam
72 | $ReturnCodes = Get-DefaultReturnCodes
73 | #endregion
74 |
75 | #region Publish package
76 | $publishParam = @{
77 | sourceFile = $sourceFile
78 | displayName = $config.application.appName
79 | publisher = $config.application.publisher
80 | description = $config.application.description
81 | minOSArch = $config.requirements.minOSArch
82 | runAs32 = $config.requirements.runAs32
83 | detectionRules = @($DetectionRule)
84 | returnCodes = $ReturnCodes
85 | installCmdLine = $config.application.installCmdLine
86 | uninstallCmdLine = $config.application.uninstallCmdLine
87 | installExperience = "system"
88 | }
89 | if ($config.application.icon) {
90 | $publishParam.largeIcon = [convert]::ToBase64String(([System.IO.File]::ReadAllBytes("$appRoot\$($config.application.icon)")))
91 | }
92 | Publish-Win32Lob @publishParam
93 | #endregionn
--------------------------------------------------------------------------------
/tasks/Get-MSICode.ps1:
--------------------------------------------------------------------------------
1 | param(
2 | [parameter(Mandatory=$true)]
3 | [ValidateNotNullOrEmpty()]
4 | [System.IO.FileInfo]$Path,
5 |
6 | [parameter(Mandatory=$true)]
7 | [ValidateNotNullOrEmpty()]
8 | [ValidateSet("ProductCode", "ProductVersion", "ProductName", "Manufacturer", "ProductLanguage", "FullVersion")]
9 | [string]$Property
10 | )
11 | Process {
12 | try {
13 | # Read property from MSI database
14 | $WindowsInstaller = New-Object -ComObject WindowsInstaller.Installer
15 | $MSIDatabase = $WindowsInstaller.GetType().InvokeMember("OpenDatabase", "InvokeMethod", $null, $WindowsInstaller, @($Path.FullName, 0))
16 | $Query = "SELECT Value FROM Property WHERE Property = '$($Property)'"
17 | $View = $MSIDatabase.GetType().InvokeMember("OpenView", "InvokeMethod", $null, $MSIDatabase, ($Query))
18 | $View.GetType().InvokeMember("Execute", "InvokeMethod", $null, $View, $null)
19 | $Record = $View.GetType().InvokeMember("Fetch", "InvokeMethod", $null, $View, $null)
20 | $Value = $Record.GetType().InvokeMember("StringData", "GetProperty", $null, $Record, 1)
21 |
22 | # Commit database and close view
23 | $MSIDatabase.GetType().InvokeMember("Commit", "InvokeMethod", $null, $MSIDatabase, $null)
24 | $View.GetType().InvokeMember("Close", "InvokeMethod", $null, $View, $null)
25 | $MSIDatabase = $null
26 | $View = $null
27 |
28 | # Return the value
29 | Set-Clipboard $Value
30 | return "$Value copied to clipboard"
31 | }
32 | catch {
33 | Write-Warning -Message $_.Exception.Message ; break
34 | }
35 | }
36 | End {
37 | # Run garbage collection and release ComObject
38 | [System.Runtime.Interopservices.Marshal]::ReleaseComObject($WindowsInstaller) | Out-Null
39 | [System.GC]::Collect()
40 | }
--------------------------------------------------------------------------------
/tasks/Initialize.Environment.ps1:
--------------------------------------------------------------------------------
1 | #region Config
2 | $modules = @(
3 | "Powershell-Yaml",
4 | "AzureAD"
5 | )
6 | $win32CliUri = "https://github.com/microsoft/Microsoft-Win32-Content-Prep-Tool/raw/master/IntuneWinAppUtil.exe"
7 | $azCopyUri = "https://aka.ms/downloadazcopy-v10-windows"
8 | $binPath = "$PSScriptRoot\bin"
9 | #endregion
10 | #region Functions
11 | function Get-PreReq {
12 | [cmdletbinding()]
13 | param (
14 | [parameter(Mandatory = $true)]
15 | [System.Uri]$uri,
16 |
17 | [parameter(Mandatory = $true)]
18 | [string]$fileName,
19 |
20 | [parameter(Mandatory = $true)]
21 | [System.IO.FileInfo]$outputPath,
22 |
23 | [parameter(Mandatory = $false)]
24 | [switch]$extract
25 | )
26 | try {
27 | if (!(Test-Path -Path "$outputPath\$fileName" -ErrorAction SilentlyContinue)) {
28 | Start-BitsTransfer $uri -Destination "$outputPath\$fileName"
29 | if (!(Test-Path -Path "$outputPath\$fileName" -ErrorAction SilentlyContinue)) {
30 | throw "Couldn't find media after download.."
31 | }
32 | else {
33 | if ($extract) {
34 | Expand-Archive -Path "$outputPath\$fileName" -DestinationPath $outputPath -Force
35 | Remove-Item -Path "$outputPath\$fileName" -Force | Out-Null
36 | }
37 | }
38 | }
39 | }
40 | catch {
41 | Write-Warning $_.exception.message
42 | }
43 | }
44 | #endregion
45 | #region Install missing modules
46 | try {
47 | foreach ($m in $modules) {
48 | if (!(get-module "$m*" -ListAvailable)) {
49 | Write-Host "Installing $m module to currentUser.."
50 | Install-Module -Name $m -Scope CurrentUser -Force
51 | }
52 | }
53 | #endregion
54 | #region Verify bin path
55 | if (!(Test-Path $binPath -ErrorAction SilentlyContinue)) {
56 | New-Item $binPath -ItemType Directory -Force | out-null
57 | }
58 | #endregion
59 | #region Install pre-reqs
60 | Get-PreReq -uri $win32CliUri -fileName $(split-path $win32CliUri -Leaf) -outputPath "$PSScriptRoot\bin"
61 | Get-PreReq -uri $azCopyUri -fileName "azCopy.zip" -outputPath "$PSSCriptRoot\bin" -extract
62 | #endregion
63 | }
64 | catch {
65 | $errorMsg = $_.exception.message
66 | }
67 | finally {
68 | if ($errorMsg) {
69 | Write-Warning $errorMsg
70 | throw $errorMsg
71 | }
72 | else {
73 | Write-Host "Environment configured successfully!"
74 | }
75 | }
76 |
--------------------------------------------------------------------------------
/tasks/Invoke.Build.ps1:
--------------------------------------------------------------------------------
1 | param (
2 | [Parameter(Mandatory = $true)]
3 | [ValidateScript( { Test-Path $_ })]
4 | [System.IO.FileInfo]$appConfig,
5 |
6 | [Parameter(Mandatory = $false)]
7 | [ValidateSet('Remote', 'Local')]
8 | $buildFrom = "Local"
9 | )
10 | #region load functions
11 | $script:cliTool = "$PSScriptRoot\bin\IntuneWinAppUtil.exe"
12 | . $PSScriptRoot\build.functions.ps1
13 | #endregion
14 | #region ascii fun
15 | $b = "IF9fX19fXyAgIF9fICBfXyAgIF9fICAgX18gICAgICAgX19fX18gICAKL1wgID09IFwgL1wgXC9cIFwgL1wgXCAvXCBcICAgICAvXCAgX18tLiAKXCBcICBfXzwgXCBcIFxfXCBcXCBcIFxcIFwgXF9fX19cIFwgXC9cIFwKIFwgXF9fX19fXFwgXF9fX19fXFwgXF9cXCBcX19fX19cXCBcX19fXy0KICBcL19fX19fLyBcL19fX19fLyBcL18vIFwvX19fX18vIFwvX19fXy8K"
16 | Write-Host $([system.text.encoding]::UTF8.GetString([system.convert]::FromBase64String($b)))
17 | #endregion
18 | switch ($buildFrom) {
19 | "Remote" {
20 | #region remote build
21 | if (Test-Path $appConfig -ErrorAction SilentlyContinue) {
22 | Invoke-Build $appConfig
23 | }
24 | break
25 | #endregion
26 | }
27 | "Local" {
28 | #region local build
29 | if (Test-Path $appConfig -ErrorAction SilentlyContinue) {
30 | $appRoot = Split-Path $appConfig -Parent
31 | $config = get-content $appConfig -raw | ConvertFrom-Yaml
32 | $param = @{
33 | applicationName = $config.application.appName
34 | installFilePath = $appRoot
35 | setupFile = $config.application.installFile
36 | outputDirectory = $appRoot
37 | }
38 | Push-Location $appRoot
39 | New-IntunePackage @param
40 | Pop-Location
41 | }
42 | break
43 | #endregion
44 | }
45 | "default" {
46 | throw "This aint it chief.."
47 | }
48 | }
--------------------------------------------------------------------------------