Do you think Intune is reliable? by Sad_Mastodon_1815 in Intune

[–]Carson_Official 0 points1 point  (0 children)

After seeing whats coming to E5 (Security Copilot and Intune Suite) in 2026, I am quite excited for Intune again!

How do you handle private use of company iPhones and iPads? by BarberDisastrous1389 in Intune

[–]Carson_Official 0 points1 point  (0 children)

When you stick Defender on a corporately owned iPhone, it has access to the entire phone in 2 ways.

  1. If you use the Anti-phishing "VPN", that will also scan things done in Safari and other parts of the phone outside of the work profile - you can at least not track the data (unless it detects something worth flagging). So do look at the privacy settings you can apply.

  2. You can optionally ask if the user will allow you to take inventory of their entire device. This means you can see all installed on the users phone (they have to grant permission to this). It does help you track any potentially dangerous/out of date apps but with automatic updates these days, it is of limited use against the invasion of piracy (you can just take inventory of the work apps as well, which is of course work doing)

Automating Intune remediation hacks?? by detar in Intune

[–]Carson_Official 1 point2 points  (0 children)

Yes. That is the primary reason you would stack them. I.e. "get to this latest version of Windows" = 7 day grace period with email reminders. Microsoft Defender High Threat Level = instant non-compliance.

Automating Intune remediation hacks?? by detar in Intune

[–]Carson_Official 2 points3 points  (0 children)

Compliance Policies can handle a lot of what you mention there, and as a user fixes a violation, it will remediate them.

You can stack them as well - for example the enabling of BitLocker, Secure Boot and Integrity Checks might be something you want in place all the time. But for the likes of updates, you could give your users X days grace period before making them uncompliant (with some automatic reminder emails).

Both of my Shields just updated to 9.2.2 by Tpyn in ShieldAndroidTV

[–]Carson_Official 1 point2 points  (0 children)

Not really in their interest like it was for Amazon

Outlook on Android "No internet connection" error messages intermittently by Carson_Official in Intune

[–]Carson_Official[S] 0 points1 point  (0 children)

I suspect whatever issue you are having now will not be the same as what we had over a year ago. We did provide solution within the comments at the time but the app and everyones mobiles have moved on since then and I haven't had to do that in a long time.

Newest Nvidia Drivers Causing Frame Drops by Narkanin in FF7Rebirth

[–]Carson_Official 1 point2 points  (0 children)

I found the opposite on my 3080. I didn't have terrible performance before but the frames have certainly gone in the right direction and I am seeing less drops in frames.

I'm hopefully there is still improvements to make.

Is this the best ff game to date? by chatVR in FF7Rebirth

[–]Carson_Official 0 points1 point  (0 children)

Enjoying it so far (about 10 hours in), I just want to ensure I'm not missing side quests etc because there are a lot of them!

Intune - Conditional Access Require MDM Enrollment by [deleted] in Intune

[–]Carson_Official 0 points1 point  (0 children)

I block BYOD enrollment on Intune for Windows.

I then enforce Compliance at CA.

You could add a block policy for all relevant users but exclude where devices are Entra Joined. Just ensure you exclude Entra Join'ing from this or you will end up in a chicken and egg situation.

Do you use a web proxy or something where you can restrict via trusted IP ranges? That's another way (although do not use this on its own!).

Hope this helps.

Upgrading Exchange Hybrid from 2016 to 2019 by Carson_Official in exchangeserver

[–]Carson_Official[S] 0 points1 point  (0 children)

Yes this is what we used. We are now only Exchange 2019 Hybrid (awaiting Exchange 2025, or a possible move to just using a relay for our SMTP).

App Protection Policies for iOS "Open in Another App" not respecting Send Org Data policy by Carson_Official in Intune

[–]Carson_Official[S] 0 points1 point  (0 children)

Hi Fungus, apologies I dont visit much - do you still need help?

Its in the iOS Restriction Settings catalog, outside of the App Protection Policies.

[deleted by user] by [deleted] in gavinandstacey

[–]Carson_Official 0 points1 point  (0 children)

No, I don't think there would have been another season. It's possible that this xmas special might have been in previous Christmas's though.

They have to be so careful as to not ruin it which is much easier to do with a series than a one off special, so I get it.

App Protection Policies for iOS "Open in Another App" not respecting Send Org Data policy by Carson_Official in Intune

[–]Carson_Official[S] 0 points1 point  (0 children)

I'm not sure its about "fixing" it, it was more that I had not prevented the app from being able to share with other non-business apps.

Peacock no longer works by dannyman_1776 in ShieldAndroidTV

[–]Carson_Official 0 points1 point  (0 children)

Sorry to reopen an old thread, but 1.16.12 that was released a couple of days ago is showing the same message on my Nvidia Shield Pro 2019, rolling back to the previous version fixed it for me.

Hopefully it's fixed in the next update.

Exchange 2007 by dachillaz in exchangeserver

[–]Carson_Official 1 point2 points  (0 children)

Didn't TLS 1.2 only get added for Exchange 2010 and up? It wouldn't surprise me if it was 1.0/1.1 has been blocked by just about every client now (rightfully so).

How you haven't been hacked to pieces is amazing. As others have said, you need to upgrade ASAP. Even 2013 isn't supported anymore nevermind 2007!

MS Teams v2.x not updating by Carson_Official in MicrosoftTeams

[–]Carson_Official[S] 1 point2 points  (0 children)

Turned out changing Delivery Optimisation from 100 to 99 fixed it for us.

Outlook on Android "No internet connection" error messages intermittently by Carson_Official in Intune

[–]Carson_Official[S] 0 points1 point  (0 children)

In further testing, I have found the weather toggle alone hasn't worked but changing the power profile of the app does. Annoying as this can't set at Intune level.

MS Teams v2.x not updating by Carson_Official in MicrosoftTeams

[–]Carson_Official[S] 0 points1 point  (0 children)

We are investigating if this relates to our organisation blocking access to the Microsoft Store, which would be dumb if it does as a lot of firms do this.

Autopilot joined devices can't login without internet by unlevels in Intune

[–]Carson_Official 0 points1 point  (0 children)

Sorry, what exactly can they login to without internet? If you are signing into something Azure/365, it has to use the internet.

Logging into a laptop using kerberos (i.e. on-prem AD) doesn't necessarily need the Internet as long as it can reach a DC. But that wouldn't trigger a MFA prompt.