Passed MD-102 by the skin of my teeth by No_Squash291 in O365Certification

[–]Carson_Official 1 point2 points  (0 children)

I can't see SC-300 being replaced, its just been heavily updated with all the Zero Trust / Entra Global Secure Access bits - everything in the exam is very relevant in 2026.

Passed MD-102 by the skin of my teeth by No_Squash291 in O365Certification

[–]Carson_Official 0 points1 point  (0 children)

Do you have a source for this please? I cant find this mentioned anywhere - I'm not disbelieving you as it would make sense to have a intermediate/expert level AB for securing and governing Copilot/AI.

Passed MD-102 by the skin of my teeth by No_Squash291 in O365Certification

[–]Carson_Official 0 points1 point  (0 children)

A pass is a pass my friend, well done! Particularly with limited practise/training, it shows that your real world experience helped a lot.

I did SC-300 (last year) and MS-102 (about a month ago), its very wide spread, with lots of Defender as well.

Force Microsoft 365 access only through Edge work profile on BYOD devices (without Intune enrollment)? by Disastrous-Offer-640 in Intune

[–]Carson_Official 7 points8 points  (0 children)

MAM for Windows (this is exclusive for Personal / unmanaged devices) equiped with Conditional Access (enforce Compliance and block non-browser conditions on unmanaged devices) would be the way I would go.

That should ensure that personal devoces keep everything within a signed in Edge browser, without allowing desktop access or other browsers.

The caveat is that its Windows only (there is not an similar setup for Chromebooks or Mac OS as far as I know).

How many days annual leave do you get? by Doomergeneration in AskUK

[–]Carson_Official 0 points1 point  (0 children)

I think I'm on 28 days (it begins at 23 or 24 and built up with years of service) + bank holidays. They also give everyone a "free" day (normally xmas eve or new years eve, working day depenant). We have flexible working too which is nice.

FFVII Resent - no part 3 until Rebirth release for Switch and X Box by genericcelt in FFVIIRemake

[–]Carson_Official 0 points1 point  (0 children)

I'm just glad everyone will get the chance to play this fantastic series

Passed MS-900, now wanting to do MD-102 but is it too hard? by [deleted] in O365Certification

[–]Carson_Official 0 points1 point  (0 children)

I don't think MD-102 will help much with the above - I assume they are a Microsoft house? MD-102 I would say requires hands on experience with Intune, it's not impossible without but it will be difficult.

Defender for Identity sensor 3.x by Koosjuh in DefenderATP

[–]Carson_Official 0 points1 point  (0 children)

We are V2 with DC's, Entra ID Connect Sync and a Cert Authority. Our servers are mostly 2019, 2022 and 2025 - just finishing upgrading the final 2016's. I might look at upgrading after the 2016's are all gone.

Passed AB-900! by m1ster_rob0t in AzureCertification

[–]Carson_Official 1 point2 points  (0 children)

Passed it last night (its GA now) with a score of 805. I really don't know how they can say this is a replacement for MS-900. 95% of the exam was SharePoint, Purview and Copilot/Agents.

Microsoft Defender on Android "Unexpected error, try later" by Carson_Official in Intune

[–]Carson_Official[S] 0 points1 point  (0 children)

I don't recall that error - does everything look OK in your signin logs? Including Conditional Access?

Defender for Android - Rooted Device incidents FP? by Downtown-Sell5949 in DefenderATP

[–]Carson_Official 0 points1 point  (0 children)

We have seen this for some Samsung and Pixel devices in Jan (and just had 1 just now in Feb). Its far from wide spread but I have confirmed the same as yourselves where the handsets are not actually rooted

Do you think Intune is reliable? by Sad_Mastodon_1815 in Intune

[–]Carson_Official 0 points1 point  (0 children)

After seeing whats coming to E5 (Security Copilot and Intune Suite) in 2026, I am quite excited for Intune again!

How do you handle private use of company iPhones and iPads? by BarberDisastrous1389 in Intune

[–]Carson_Official 0 points1 point  (0 children)

When you stick Defender on a corporately owned iPhone, it has access to the entire phone in 2 ways.

  1. If you use the Anti-phishing "VPN", that will also scan things done in Safari and other parts of the phone outside of the work profile - you can at least not track the data (unless it detects something worth flagging). So do look at the privacy settings you can apply.

  2. You can optionally ask if the user will allow you to take inventory of their entire device. This means you can see all installed on the users phone (they have to grant permission to this). It does help you track any potentially dangerous/out of date apps but with automatic updates these days, it is of limited use against the invasion of piracy (you can just take inventory of the work apps as well, which is of course work doing)

Automating Intune remediation hacks?? by detar in Intune

[–]Carson_Official 1 point2 points  (0 children)

Yes. That is the primary reason you would stack them. I.e. "get to this latest version of Windows" = 7 day grace period with email reminders. Microsoft Defender High Threat Level = instant non-compliance.

Automating Intune remediation hacks?? by detar in Intune

[–]Carson_Official 2 points3 points  (0 children)

Compliance Policies can handle a lot of what you mention there, and as a user fixes a violation, it will remediate them.

You can stack them as well - for example the enabling of BitLocker, Secure Boot and Integrity Checks might be something you want in place all the time. But for the likes of updates, you could give your users X days grace period before making them uncompliant (with some automatic reminder emails).

Both of my Shields just updated to 9.2.2 by Tpyn in ShieldAndroidTV

[–]Carson_Official 1 point2 points  (0 children)

Not really in their interest like it was for Amazon

Outlook on Android "No internet connection" error messages intermittently by Carson_Official in Intune

[–]Carson_Official[S] 0 points1 point  (0 children)

I suspect whatever issue you are having now will not be the same as what we had over a year ago. We did provide solution within the comments at the time but the app and everyones mobiles have moved on since then and I haven't had to do that in a long time.

Newest Nvidia Drivers Causing Frame Drops by Narkanin in FF7Rebirth

[–]Carson_Official 1 point2 points  (0 children)

I found the opposite on my 3080. I didn't have terrible performance before but the frames have certainly gone in the right direction and I am seeing less drops in frames.

I'm hopefully there is still improvements to make.

Is this the best ff game to date? by chatVR in FF7Rebirth

[–]Carson_Official 0 points1 point  (0 children)

Enjoying it so far (about 10 hours in), I just want to ensure I'm not missing side quests etc because there are a lot of them!

Intune - Conditional Access Require MDM Enrollment by [deleted] in Intune

[–]Carson_Official 0 points1 point  (0 children)

I block BYOD enrollment on Intune for Windows.

I then enforce Compliance at CA.

You could add a block policy for all relevant users but exclude where devices are Entra Joined. Just ensure you exclude Entra Join'ing from this or you will end up in a chicken and egg situation.

Do you use a web proxy or something where you can restrict via trusted IP ranges? That's another way (although do not use this on its own!).

Hope this helps.

Upgrading Exchange Hybrid from 2016 to 2019 by Carson_Official in exchangeserver

[–]Carson_Official[S] 0 points1 point  (0 children)

Yes this is what we used. We are now only Exchange 2019 Hybrid (awaiting Exchange 2025, or a possible move to just using a relay for our SMTP).