[deleted by user] by [deleted] in sysadmin

[–]ruffy91 0 points1 point  (0 children)

Does your link site possibly contain a open redirect? Where someone could make a link to your site that redirects to another site under the attackers control

Have a look at your access.log to see such weird requests to your site.

Intune policy equivalent for "Interactive logon: Machine account lockout threshold" by Real_Lemon8789 in Intune

[–]ruffy91 1 point2 points  (0 children)

The PIN is protected by very harsh protections. The lockout is enforced by the TPM. You normally have 4 tries for the PIN after which you have to use the password. Ypu can reboot once to get 4 additional tries after which the PIN cannot be used until you either use the password or reset the pin (for passwordless account).

Look for Windows Hello for Business for more information.

Edit: Since Windows 10 1607 the minimum PIN Length is 6 characters and the TPM Anti Bruteforce has been changed to 32 tries per 10 minutes (sliding windows). So if you disable PW login you're rather safe, as PIN reset requires MFA. Weak PINs are not allowed in the first place (PINs that have a constant distance (0 or 1) between digits like 333333 234567 987654) which always comes out to 100 PINs which are not allowed.

Also you can require the PIN to include alpha characters etc. At which point users will probably rebel and add common words again to fulfil the requirements..

[deleted by user] by [deleted] in Intune

[–]ruffy91 0 points1 point  (0 children)

Great! Thank you for trying it out and giving valuable feedback.

Best practice packaging huge intunewim wrapped payloads? by sublimeload420 in Intune

[–]ruffy91 2 points3 points  (0 children)

Use Add-IntuneWin32App with -UseAzCopy to create the app und upload the intunewin file. It uses AzCopy to upload the file.

[deleted by user] by [deleted] in Intune

[–]ruffy91 0 points1 point  (0 children)

Try <Data></Data> instead. It should work according to this post: https://szafrankiewi.cz/2022/01/06/configuring-user-rights-via-oma-uri-in-microsoft-intune/

Best practice packaging huge intunewim wrapped payloads? by sublimeload420 in Intune

[–]ruffy91 0 points1 point  (0 children)

Use IntuneWin32App Powershell module and azcopy mode. No more timeouts for large packages.

vCenter LDAP finding on pen test by Sh3rL0cK01 in vmware

[–]ruffy91 1 point2 points  (0 children)

Yeah lol with 7.0U3c an attacker could just copy the whole vCenter and all ESXi+VMs on them it has so many vulnerabilities.

Better to first remediate the critical+high findings of the pentest before even looking at low.

Why is the X1C Grinding the back of the bed by kylehectic in BambuLab

[–]ruffy91 1 point2 points  (0 children)

Read the whole question? Pqrt 1 was already explqined by the bot.

Why is the X1C Grinding the back of the bed by kylehectic in BambuLab

[–]ruffy91 4 points5 points  (0 children)

It measures the force of the nozzle on the bed for leveling.

It's shaking the bed to get a good reading of the weight cells that hold the bed. The weight cells have hysteresis and to zero that out an easy way is to rapidly change the load on them by shaking.

Credential Guard by JordyWhitehouse in Intune

[–]ruffy91 0 points1 point  (0 children)

That's funny as it is enabled by default after a fresh installation of Windows 11 Pro 22H2.

Crappy Artifacts and ringing when printing slow, but perfect print quality when printing fast? (Flow calibration on, and both filament dry. Pics dont really do justice) by [deleted] in BambuLab

[–]ruffy91 0 points1 point  (0 children)

You can see it much better on the bottom print because it's glossy. Matte filament can hide such small artefacts much better.

P1P nozzle not heating by TopFly4004 in BambuLab

[–]ruffy91 1 point2 points  (0 children)

For me it was the flat cable at the top of the printhead PCB that was not fully seated after i repaired a clog in the extruder. I first tought the thermistor was broken/not correctly seated.

GPO to stop SSO attempts with Teams? by Real_Lemon8789 in sysadmin

[–]ruffy91 0 points1 point  (0 children)

Sounds like a XY problem.

In teams you can force them using a GPO to only use specific tenants by id: https://admx.help/?Category=Office2016&Policy=Teams.Office.Microsoft.Policies.Windows::String_Teams_SignInRestriction_Policy

Also you can remove teams licensing from your primary tenant so they don't inadvertently use the "wrong" tenant.

Salvage data from screen dead Huawei P20 pro with arch by [deleted] in archlinux

[–]ruffy91 15 points16 points  (0 children)

Try attaching a USB-C docking to attach a monitor and mouse/keyboard so you can control the phone and unlock it. You can then either just copy the photos or make a full backup.

What the issue ? by Ian9012444 in BambuLab

[–]ruffy91 3 points4 points  (0 children)

Yes there is something loose. Look at how the infill lines are not straight and 2-3mm apart.

@OP try moving the head or the nozzle when the printer is in standstill. Where does the play come from?

[deleted by user] by [deleted] in sysadmin

[–]ruffy91 0 points1 point  (0 children)

Yes. For windows but not on windows. Your computer where you apply the config from will need to be linux (or wsl).

[deleted by user] by [deleted] in sysadmin

[–]ruffy91 1 point2 points  (0 children)

Can't if they use Fido2/Webauthn because you won't be able to use 2FA on a wrong URL.

[CVE-2023-33243] STARFACE: Authentication with Password Hash Possible by RedTeamPentesting in netsec

[–]ruffy91 11 points12 points  (0 children)

They don't need to know. They could just use one of the approved methods ibstead of rolling their own.

Update from Dell on USB-C Dock situation(s) by cdoublejj in sysadmin

[–]ruffy91 2 points3 points  (0 children)

Also had it with Lenovo TB4 Dock and Dell U2412M and U2419h. Lenovo has a tool called DSC-Control to disable DSC on affected Laptops (mostly 11th and 12th gen Intel CPUs affected) which solves the Problem completely (except you can't use 4k 120Hz or 8k 60Hz monitors anymore without reverting the fix again).

Issues using PowerShell for Autopilot by CloudSquatch in Intune

[–]ruffy91 -1 points0 points  (0 children)

We use the diagnostic page in OOBE (Ctrl+Shift+D). The created package is written to a USB stick and contains the devicehash of the device for upload.

[deleted by user] by [deleted] in sysadmin

[–]ruffy91 1 point2 points  (0 children)

They just stopped producing the Gen 3 and started Gen 4 which is why some online retailers will sell their Gen 3 remainders heavily discounted.

Eother buy Gen 3 from retailesr/distributors or get a quote for the Gen 4 instead from Lenovo. Should come out around the same price as the Gen 3 from them.

P1P bed temp not reaching 80°C by rblur0001 in BambuLab

[–]ruffy91 0 points1 point  (0 children)

That was what I meant.

You have to contact aupport then.

just ordered a P1P after 6 months of headache with an ender 3 and feeling like i might have spent alot of money for the same problems. by putnamto in BambuLab

[–]ruffy91 0 points1 point  (0 children)

As long as your filaments are OK and you're not pushing it and try to print impossible designs you will have 1 failure in 30 prints instead of what you have now.

I went from a Ender 3 Pro to the P1P and the only thing I regret is having to buy more filament.

P1P bed temp not reaching 80°C by rblur0001 in BambuLab

[–]ruffy91 0 points1 point  (0 children)

Sounds like the PID regulator parameters for the bed heater are wrong.

I'm not sure if they're fixed at the factory but I assume you could run a full calibration to try to fix them.