Hi, for the first time in a few years now we are purchasing more MacBooks. With the new T2 chip, Fusion drives, Recovery drives, APFS. etc., imaging doesnt seem to be an option anymore. We use Pre-stage Enrollments for mobile devices but I never used it for computers but that may be the direction I want to head in.
The setup seems to be pretty straightforward. Im assuming you take them out of the box, boot them up, they get enrolled and Im back in business.
I have a couple of questions though.
Is there anyway to name the computers prior to them getting bound to AD?
Ive always enabled mobile accounts but is it necessary for lab machines that dont leave the building? I hate seeing the buildup of mobile accounts after a school year is completed.
Also, what should the Password Trust Interval (computer trust account password) be set to? Ive read different things in the past about setting it to 0 will help prevent the computers from falling off the domain. Or should it be set to the same as PCs which I believe is 30 days?
Any other advice or recommendations are appreciated. I have not kept up to date with my macOS knowledge but as I read through all the changes that have been made it seems like I cant even upload a dmg of the OS and have Deploy Studio image/install it anymore. Seems like Netboot is gone with the T2 chip and Recovery drives are not created correctly. Seems like with every new version of macOS, Apple has made deploying Macs harder.

