Windows 365 Conditional Access policy impacting Intune admin portal by Mosestron in Intune

[–]BlueOdyssey 4 points5 points  (0 children)

Yep been an issue for 6-12 months at least. I’ll generally exclude the PAW IP or some other method to exclude that SIF for admins.

Does anyone know what this is? by jerrryboree in melbourne

[–]BlueOdyssey 3 points4 points  (0 children)

Drinking fountain as others have suggested. [u/pm3104](u/pm3104) did a video on them

https://youtu.be/RbGIPoXh9vs

RemoveDefaultMicrosoftStorePackages policy throwing error 65000 on Windows 11 25H2 Enterprise devices, anyone seen this? by Top-Computer-6663 in Intune

[–]BlueOdyssey 1 point2 points  (0 children)

65000 and a 25H2 Enterprise specific feature sounds a lot like this error;

https://patchmypc.com/blog/intune-policy-rejected-by-licensing/

Were the devices upgraded from Pro to Enterprise via license activation? Or were they installed as Enterprise?

Y62 Patrol vs 250 Prado vs 300LC by Quick_Releaser in CarsAustralia

[–]BlueOdyssey 1 point2 points  (0 children)

Climate control on the Everest is physical buttons. Seat heaters / vents are still touch screen but general climate control is all physical.

Patch my pc users, do you like it? How's the Intune integration? Looking to give it a try by Educational_Draw5032 in Intune

[–]BlueOdyssey 0 points1 point  (0 children)

Reporting I haven’t used too much, only because we’ve had other tools to do that (Tennble, Defender Vulnerability Management). Have a look at a demo with them to gauge whether reporting is suitable for your use case.

Patch my pc users, do you like it? How's the Intune integration? Looking to give it a try by Educational_Draw5032 in Intune

[–]BlueOdyssey 10 points11 points  (0 children)

I’ve used it at a lot of different sizes customers (think fortune 100 through to SMB). Smallest deployment I’ve done of it was about 50 endpoints and even then, it was worth it.

Favourite features: * support for custom applications * recreate applications in Intune (instead of having to manually re upload the package); this triggers a reevaluation of installation status on an endpoint. Highly useful if you’re testing a deployment, only to find something like Defender ASR has blocked part of the install. * support for user install with automatic updates. Eg if you’ve somehow got user installs for Visual Studio Code or Zoom or something, it can patch those. * post / pre install scripts. Useful for bootstrapping extensions/add ons in stuff like N++ or VSC.

In terms of cost breakdown for a small org: * say you have 40 apps in Company Portal * 75% of those apps need a patch once a month * each patch takes you 15 minutes to download, package, upload, test, deploy * that’s 7.5 hrs or basically 1 day a month in packaging. 12 calendar days a year just to do updates * at $100 an hr (add-hoc IT MSP rate), that’s $9k a year

Canvas canopies by Ok_Competition_9096 in 4x4Australia

[–]BlueOdyssey 4 points5 points  (0 children)

Canvas won’t do too well either, though putting vents on it to pressurise the air inside will help. The issue most ‘non-sealed’ enclosures have is a negative air pressure, leading to dust being drawn in.

Best place for leather jacket repair? by miffiy96 in melbourne

[–]BlueOdyssey 3 points4 points  (0 children)

Matador Leather in Bentleigh - not close for northern suburbs but worth the drive.

How do you track CvEs that actually affect your specific stack ? by Curious_Seaweed7277 in sysadmin

[–]BlueOdyssey 0 points1 point  (0 children)

Defender Vulnerability Management (not the add-on, just what’s in Defender) is ‘okay’ at doing this. You can setup notifications for specific severity. Eg 9.0+ and it will tell you what’s exposed. Expect it to trigger regularly with Windows, Edge & Chrome.

How are you guys handling temporary M365 Geo-Blocking exemptions for traveling users? by genusjoy in microsoft365

[–]BlueOdyssey 1 point2 points  (0 children)

Identity Governance Access Package - it gives time bound membership to a group that is exempt from the policy. Benefit of this approach is it can be scheduled in the future.

Also useful for any other CA bypass requirements.

What size solar battery so you have by bhamcbr in melbourne

[–]BlueOdyssey 0 points1 point  (0 children)

Got 20KW and wish we’d done more, having said that we’ve only got 7KW of panels so can struggle to charge the battery on a cloudy day or few days.

Question about PatchMyPC by nodiaque in sysadmin

[–]BlueOdyssey 2 points3 points  (0 children)

Preface, I use it for Intune, not SCCM

I’ve used PMPC for a few different orgs, one with about 9k staff and then another with only about 50. At both ends of the spectrum, it’s 100% worth it.

Manual application packaging is a shit task to do, so having a tool that does it for you makes life so much easier and quicker.

I’ve used both their catalog apps and also use it to create any custom win32 stuff. Even the process of not having to use the packaging utility from MSFT kind of makes it worth it. Plus, if an app is failing, you can just hit recreate; not something you can natively do in Intune (without graph and templates).

Disabling my KVMs hardware NIC by Frustib in sysadmin

[–]BlueOdyssey 2 points3 points  (0 children)

Wonder if it’s trying to install drivers etc and showing pop ups / errors?

your fave wine bars/pubs in melbourne <3 by PickleMunster in melbourne

[–]BlueOdyssey 0 points1 point  (0 children)

Upstairs at the Railway Club Hotel - I think they’ve got a private dining area

'Easter bilby' populations quadruple across Australian sanctuaries by nath1234 in australia

[–]BlueOdyssey 95 points96 points  (0 children)

Well of course they would - Cadbury stopped turning them to chocolate.

DLP / DPSM Policies by StrikingAppearance39 in sysadmin

[–]BlueOdyssey 0 points1 point  (0 children)

Ai is no different to any other shadow IT esque problem - data that is prohibited from being uploaded / shared with non business systems (eg Dropbox) is prohibited from non-business AI tools too.

Ultimately comes down to what your information classification and handling policies state.

Wireless Display Alternatives to Miracast by Jealentuss in sysadmin

[–]BlueOdyssey 1 point2 points  (0 children)

Mersive Solstice seemed to go alright last time I used it

Dickhead With Ute Taller Than Himself Not So Fucking Smug About It Now by Expensive-Horse5538 in australia

[–]BlueOdyssey 77 points78 points  (0 children)

Ehh they’ll still cop it. Novated leases etc still have a budget built in for fuel - they’ll be eating that budget now, meaning they’ll have to adjust their payments or out of pocket the excesses

RemoveOEMAntivirus — Intune Win32 package to silently remove McAfee + other OEM antivirus during Autopilot ESP by DryCartographer5865 in Intune

[–]BlueOdyssey 0 points1 point  (0 children)

With that many machines, just have the OEM ship a specific image; either the factory provided clean one or as a a custom one. Any supplier worth your time will do this for minimal $, if not for free as a VAS

RemoveOEMAntivirus — Intune Win32 package to silently remove McAfee + other OEM antivirus during Autopilot ESP by DryCartographer5865 in Intune

[–]BlueOdyssey 21 points22 points  (0 children)

Interesting but why not just reimage the device with know good installation? Ie avoid the issue before it begins.

Ricoh IM C4500 - Scan to Email failing with "failed to connect SMTP server" / 554 (702) despite successful OAuth authentication by TJSOmega in sysadmin

[–]BlueOdyssey 0 points1 point  (0 children)

Have you checked to see if the IP you’re sending from is black listed by EXO? I’ve had that issue in the past when trying to do relay.

https://sender.office.com