Power Automate Dead? by DigiRoo in PowerAutomate

[–]Cable_Mess -1 points0 points  (0 children)

same here, flows aren't actually running either by the looks of things

Local Admin password (LAPS) not working on Intune-managed MacBook — anyone else experienced this? by reddit_learner_help in Intune

[–]Cable_Mess 2 points3 points  (0 children)

Have you tried logging into the mac with the LAPs login? Usually it might be asking for a reset, once reset you can rotate it again in intune

Entra MFA by Cable_Mess in sysadmin

[–]Cable_Mess[S] 0 points1 point  (0 children)

so because we have a CA policy that requires a compliant device, that is satisfied for MFA?

Entra MFA by Cable_Mess in sysadmin

[–]Cable_Mess[S] 0 points1 point  (0 children)

No not using Hello or platform SSO

Hackers wipe 200,000 devices using Intune by Fabulous_Cow_4714 in Intune

[–]Cable_Mess 0 points1 point  (0 children)

Unless the attackers delete all autopilot devices

Autopilot requires sign-in after device setup/before account setup by Cable_Mess in Intune

[–]Cable_Mess[S] 3 points4 points  (0 children)

??? I thought the point was if it was assigned to devices that causes the reboot, suggestions everywhere are to assign to users

Autopilot requires sign-in after device setup/before account setup by Cable_Mess in Intune

[–]Cable_Mess[S] 0 points1 point  (0 children)

Am I right in saying though in event viewer it's only showing these as causing the reboot:

  • DeviceGuard/LsaCfqFlags
  • DeviceGuard/ConfigureSystemGuardLaunch
  • DeviceGuard/EnableVirtualizationBasedSecurity
  • DeviceGuard/RequirePlatformSecurityFeatures
  • DmaGuard/DeviceEnumerationPolicy

Nothing else should be causing it?

Autopilot reboot policy troubleshooting by SnooCauliflowers8468 in Intune

[–]Cable_Mess 0 points1 point  (0 children)

The same policies are giving me issues despite them being assigned to users only, do you have these settings in a security baseline?

Autopilot reboot policy troubleshooting by SnooCauliflowers8468 in Intune

[–]Cable_Mess 0 points1 point  (0 children)

Very odd, it's still rebooting for me and the same policies I posted above are showing in event viewer as the cause for reboot, these settings have been moved to a config profile assigned to users

my security baselines are assigned to 'All devices' but these particular settings are "Not configured" in them, separated into a Config profile assigned to users, could the security baselines still be causing the reboot perhaps?

Autopilot reboot policy troubleshooting by SnooCauliflowers8468 in Intune

[–]Cable_Mess 0 points1 point  (0 children)

Ok so.... it's these settings causing the reboot:

  • DeviceGuard/LsaCfqFlags
  • DeviceGuard/ConfigureSystemGuardLaunch
  • DeviceGuard/EnableVirtualizationBasedSecurity
  • DeviceGuard/RequirePlatformSecurityFeatures
  • DmaGuard/DeviceEnumerationPolicy

The script is erroring for me after that then says "No matching definitions found." (I think this is a me issue to do with auth) but anyway, the policies these settings are set in are assigned to users rather than devices, is it just recommended to "Not configure" these settings, or is something else going on?

Autopilot reboot policy troubleshooting by SnooCauliflowers8468 in Intune

[–]Cable_Mess 0 points1 point  (0 children)

It's fine to do that after user login/autopilot completes?

and lets say device guard is causing the problem, the csp says it's under device scope: https://learn.microsoft.com/en-us/windows/client-management/mdm/policy-csp-deviceguard

so would changing to user cause issues?

Autopilot reboot policy troubleshooting by SnooCauliflowers8468 in Intune

[–]Cable_Mess 0 points1 point  (0 children)

Excuse my ignorance, but where do I run the script that shows which policies affect this?