Deploying the desktop app
IT admins can install the desktop app on managed devices so people find Langdock in the Start menu or Applications folder without installing it themselves. Use it when you want to roll Langdock out to a whole department, keep versions under IT control, or pre-approve permissions before the first launch.Which file do I need?
Windows
- Windows version: Requires 64-bit Windows 10 version 1809 or later. Automatic updates require Windows 10 version 2004 or later. On older versions, the app doesn’t update itself, so push each new release through your MDM.
- Sideloading: Langdock isn’t installed from the Microsoft Store, so Windows must allow apps from other sources. This is on by default since Windows 10 version 2004. On older versions, or if your organization turned it off, enable the
AllowAllTrustedAppspolicy, called Allow all trusted apps to install in Group Policy. - AppLocker: only if you enforce Packaged app Rules. Add a publisher rule and select Langdock on a reference device. AppLocker fills in the publisher and package name.
- Intune
- Configuration Manager (SCCM)
- Group Policy
- Other tools
Intune Win32 package (x64)
.intunewin for most Windows PCsIntune Win32 package (ARM64)
.intunewin for Windows on ARM PCsWhat's in the Intune package?
What's in the Intune package?
Add the app
.intunewin. For details, see Microsoft’s guide to Win32 apps in Intune.Fill in the app information
Set the program
Deploy.cmd Install, Uninstall command to Deploy.cmd Uninstall, and Install behavior to System. Return codes are 0 success, 3010 soft reboot, and 1 failed.Set the requirements
Set the detection rule
Detect-Langdock.ps1.Detect-Langdock.ps1. Set Run script as 32-bit process on 64-bit clients and Enforce script signature check to No.Don’t want to create the script yourself? Download the deployment kit for x64 or ARM64 and upload its Deploy.ps1 as the detection script. It checks for the kit’s version or newer.$MinVersion to the version you upload. Raise it each time you upload a new version to the same app, or add the new version as a new app with Supersedence.What's in the detection script?
What's in the detection script?
Installed when Langdock is provisioned on the device. Intune treats output plus exit code 0 as detected. Without output, Langdock counts as not installed.$MinVersion, it only prints Installed for that version or newer:Assign the app
Alternative: deploy the plain MSIX
Alternative: deploy the plain MSIX
.intunewin wrapper or a detection script, and you control versions yourself.Upload the x64 or ARM64 MSIX as a Line-of-business app. Assign it as Required to a device group and change Install Context to Device. Intune then provisions Langdock for every user.Turn off automatic updates first. Intune’s built-in detection expects the version you uploaded. Upload each new version to the app yourself.C:\Program Files\WindowsApps, and you can’t change that location.
Network requirements
The desktop app loads the same Langdock web app as your browser, so allow the same domains you allow for Langdock in the browser. It also needs:Shared devices and VDI
Each user gets their own copy of Langdock with their own sign-in and app data. Updates run per user, so different users on one device can be on different versions for a while. On non-persistent VDI, provision Langdock in the base image (golden image) your virtual desktops start from. Turn off automatic updates in the base image too. For each new Langdock version, update the base image and roll it out. Per-user app data lives in%LOCALAPPDATA%\Packages\com.langdock.desktop.msix_b9czaxkzpqt8m. Keep that folder in your profile container, or people have to sign in again in every session. Langdock hasn’t been validated on Windows multi-session hosts or Remote Desktop Session Host yet.
Microphone access
The first time Langdock uses the microphone, Windows asks “Let Langdock access your microphone?” once per user. To approve microphone access up front, configure theLetAppsAccessMicrophone policy through the Intune Settings Catalog or the Group Policy Let Windows apps access the microphone. Add the Langdock package family name to the force allow list:
Inventory and uninstall
Langdock appears under Settings > Apps, not in Programs and Features or the classic Uninstall registry key. To check which devices have it, use the kit’s detection scripts or run these commands from an elevated PowerShell:Deploy.cmd Uninstall as SYSTEM removes Langdock for all users. Remove-AppxPackage removes only the current user’s install. Windows deletes each user’s app data with the package. Policy keys you set stay in place.
macOS
Deploy the DMG (required)
macOS DMG
- Intune: add a macOS app (DMG).
- Jamf Pro and Kandji: upload the DMG as a custom app that installs
Langdock.appto/Applications.
Add a configuration profile (optional)
disableAutoUpdates to true in the com.langdock.desktop domain. Langdock then stops all update checks and downloads, and you deploy each new version.Deliver the setting through your MDM: Application & Custom Settings in Jamf Pro, a preference file in Intune, or a custom profile in Kandji. A user’s own defaults write is ignored. The setting applies after Langdock restarts./Applications is owned by root, so standard users can’t update it without admin rights. On those Macs, set disableAutoUpdates and push each update yourself.Sample configuration profile (Langdock.mobileconfig)
Sample configuration profile (Langdock.mobileconfig)
Automatic updates
The desktop app updates itself by default. To ship each version through your MDM instead, turn automatic updates off with thedisableAutoUpdates policy. Pick one owner before you deploy, so the updater and your MDM don’t work against each other. See Manage desktop app updates.
Troubleshooting
0x87D1041C: Intune reports the app as not detected after installation
0x87D1041C: Intune reports the app as not detected after installation
.ps1 file and set Run script as 32-bit process on 64-bit clients to No.0x80073CFF or 0x80073D01: Windows blocks the install by policy
0x80073CFF or 0x80073D01: Windows blocks the install by policy
0x80073D06 or 0x80073CF3: a newer version is already installed
0x80073D06 or 0x80073CF3: a newer version is already installed
0x80073D02: the package is in use
0x80073D02: the package is in use
Deploy.cmd Uninstall closes Langdock first. For updates you deploy yourself, ask people to quit Langdock and retry.0x800B0109 or 0x800B010A: the signature isn't trusted
0x800B0109 or 0x800B010A: the signature isn't trusted
Exit code 1 from Deploy.cmd
Exit code 1 from Deploy.cmd
Deploy.cmd instead of calling Deploy.ps1 directly.Intune shows Installed, but people don't see Langdock
Intune shows Installed, but people don't see Langdock
AppLocker blocks Langdock or the scripts
AppLocker blocks Langdock or the scripts
Packaged app-Deployment, Packaged app-Execution, and MSI and Script for blocks.Intune doesn't pick up the app
Intune doesn't pick up the app
Where are the logs?
Where are the logs?
- Intune:
C:\ProgramData\Microsoft\IntuneManagementExtension\Logs, mainlyAppWorkload.logandIntuneManagementExtension.log. - Package installs: Event Viewer under Applications and Services Logs > Microsoft > Windows > AppXDeployment-Server > Microsoft-Windows-AppXDeploymentServer/Operational.
- Langdock app:
main.login%LOCALAPPDATA%\Packages\com.langdock.desktop.msix_b9czaxkzpqt8m\LocalCache\Roaming\com.langdock.desktop.msix\logsfor each user.
FAQ
Is there an MSI installer?
Is there an MSI installer?
Get-AppxProvisionedPackage instead of MSI-based detection.Is Langdock in the Microsoft Store?
Is Langdock in the Microsoft Store?
How do I deploy with ACMP, baramundi, or Matrix42 Empirum?
How do I deploy with ACMP, baramundi, or Matrix42 Empirum?
Add-AppxProvisionedPackage or Deploy.cmd Install as SYSTEM, the same way you run other install commands in your tool. For Empirum, follow the Matrix42 Empirum steps in the Other tools tab under Windows. For ACMP, copy the extracted kit to the client with a Client Command and run Deploy.cmd Install in the system context.Do people need admin rights?
Do people need admin rights?
Can I pre-approve the microphone prompt?
Can I pre-approve the microphone prompt?
Do I have to package every update?
Do I have to package every update?
What happens to the personal Langdock Setup.exe install?
What happens to the personal Langdock Setup.exe install?
Does this work for dedicated deployments?
Does this work for dedicated deployments?
app.langdock.com. Desktop apps for dedicated deployments aren’t available yet.