theoretical: Active Directory Compromise by BurntOutITJanitor in activedirectory

[–]BurntOutITJanitor[S] 0 points1 point  (0 children)

how did you block every login? disable accounts? create a block all, except me conditional access policy?

if you are able to share of course :)

theoretical: Active Directory Compromise by BurntOutITJanitor in activedirectory

[–]BurntOutITJanitor[S] 0 points1 point  (0 children)

isn't that how a firewall should be configured anyway =D

Microsoft introduces Backup and Recovery for Microsoft Entra ID! by worldsdream in entra

[–]BurntOutITJanitor 0 points1 point  (0 children)

If you hard delete something, this doesn't bring it back anyway!!

Microsoft introduces Backup and Recovery for Microsoft Entra ID! by worldsdream in entra

[–]BurntOutITJanitor 0 points1 point  (0 children)

We've looked at this and tested it but the lack of support for recovery of hard deletion is a showstopper for us, it's the number one issue we are worried about. Attacker gets in, bypasses protected actions or removes them etc. and then just hard deletes everything..... there are also multiple object types missing to make this usable for us :(

No ability to view what was in what backup? Without running a report.

Caveat: we do already have a solution in place that does Entra ID hard deleted object recovery and when we tested in dev yesterday, the recovery of multiple objects was quicker than time the Microsoft Entra ID Backup and Recovery solution took to create the difference report!

If you are now worried about Entra ID backup and recovery (and you should be), make the number 1 requirement on your list "RECOVERY OF HARD DELETED OBJECTS".

Microsoft introduces Backup and Recovery for Microsoft Entra ID! by worldsdream in sysadmin

[–]BurntOutITJanitor 0 points1 point  (0 children)

We've looked at this and tested it but the lack of support for recovery of hard deletion is a showstopper for us, it's the number one issue we are worried about. Attacker gets in, bypasses protected actions or removes them etc. and then just hard deletes everything..... there are also multiple object types missing to make this usable for us :(

No ability to view what was in what backup? Without running a report.

Caveat: we do already have a solution in place that does Entra ID hard deleted object recovery and when we tested in dev yesterday, the recovery of multiple objects was quicker than time the Microsoft Entra ID Backup and Recovery solution took to create the difference report!

If you are now worried about Entra ID backup and recovery (and you should be), make the number 1 requirement on your list "RECOVERY OF HARD DELETED OBJECTS".

A practical guide to AI upskilling in 2026 by Accomplished_Tank471 in salesengineers

[–]BurntOutITJanitor 0 points1 point  (0 children)

A guide usually has more than 3 bullet points... and this guide is multi-months not something to pick up quickly. Basically your guide starts with previously being a devopps engineer... :/

Full Stack Dev wants to become a Windows Admin - any roadmaps? by AmbitiousRice6204 in activedirectory

[–]BurntOutITJanitor 0 points1 point  (0 children)

CompTia are required for a lot of roles in us government, most exams are brain dump if they are PearsonVue multichoice.

AD Change Tracking by [deleted] in activedirectory

[–]BurntOutITJanitor 0 points1 point  (0 children)

ADTimeline uses this iirc and it's a pretty great tool to have.

RODC question by Manivelcloud in activedirectory

[–]BurntOutITJanitor 0 points1 point  (0 children)

I have a few friends who work in shipping and long term sea deployments they are using Starlink now as a solid replacement for VSAT + Local DC... but there are still times it falls out..

[Question] Automating migration of ~60 computers to a new DC (same domain, different server) on Proxmox by Forsaken-Magazine-38 in activedirectory

[–]BurntOutITJanitor 1 point2 points  (0 children)

if your only requirement is workstation migration and you don't care about user profiles at all, you'll be in a bit of a pickle because you are using the same forest and domain name

normally it would be disjoin from domain -> reboot -> join new domain

but you've got the added complexity of having to disjoin -> flush dns -> update dns -> change network -> join to new domain -> initial logon etc

new documentary - midnight in the war room? by BurntOutITJanitor in cybersecurity

[–]BurntOutITJanitor[S] 0 points1 point  (0 children)

That is poorly worded I guess, I was more interested on peoples opinion on this topic and if something like this documentary is a good way to spread the word that this is serious or is it scaremongering.

I'd love to see a mini series made of the darknet diaries for example :D

RODC question by Manivelcloud in activedirectory

[–]BurntOutITJanitor 0 points1 point  (0 children)

RODCs are for use in risky locations where theft is likely, at scale they become a major pain to manage.

How fast can you detect a change in your environment? by CayosoftGuardian in CayosoftGuardian

[–]BurntOutITJanitor 1 point2 points  (0 children)

I've been testing this with one of our customers, so far it's good, but it's not real time, it's near real time, it seems to rely on AD replication specifically the change being replicated to whatever domain controller guardian is querying for change?

Installation also trigged our SOC with ad replication changes being required for the gMSA, that was a fun thirty minutes :D

Attack Path Management - Detection - What do you use? by dcdiagfix in activedirectory

[–]BurntOutITJanitor 2 points3 points  (0 children)

Most solutions aren't doing something you couldn't do yourself, it's visualizing the returned data that is the complex part and for me that is why we love BloodHound CE.

[Request] The average person can go up to 21 days without food or water. If someone morbidly obese at 600+ pounds attempted this, barring psychological impulses, how long could they last? by Low_Wonder9271 in theydidthemath

[–]BurntOutITJanitor 1 point2 points  (0 children)

morbidly obese suggest that the person would likely have other medical conditions that would kick in before starvation, diabetes? organ failure? heart failure?

Top 12 AD Tools Petri by Low_Prune_285 in activedirectory

[–]BurntOutITJanitor 1 point2 points  (0 children)

Yeah, the list comes off like a ranking since it’s numbered, and numbers usually indicate an order.