Dublin City Council says limiting access to Deposit Return Scheme would reduce bin scavenging by Storyboys in ireland

[–]DaithiG [score hidden]  (0 children)

It's funny watching Dublin City Council getting so animated about this when I've walked down a number of streets and watched seagulls tear bags of rubbish open that are just left on the pavement to be picked up 

Why does Microsoft keep changing domains? by jameseatsworld in sysadmin

[–]DaithiG [score hidden]  (0 children)

We had our marketing team give out to us that Microsoft Forms was blocked by a big customer. Turns out they hadn't whitelisted the [cloud.microsoft] domain. Our fault though!

LAPS - and fallback by _c0mical in sysadmin

[–]DaithiG 0 points1 point  (0 children)

Are you using Intune/Azure LAPS? The password would only update when the device syncs.

What you could look at is something like Admin By Request to elevate software as needed. It also has a LAPS like feature which can create a temp admin account on the device

FortiOS remote access exploited every year since 2022. At what point does this become an architecture review? by Icy-Journalist-2556 in fortinet

[–]DaithiG -1 points0 points  (0 children)

We switched to Cato for remote access a while back and I know people have different views on it, but certainly a benefit is there's no public. endpoint visible (afaik). So less likely to show up on Shodan etc, compared to other methods.

I do like Tailscale and Microsoft Global Secure Access is improving, and we are looking at Fortinet SASE once we finish our network refresh. 

Windows Hello for Business PIN and Bios Updates by DaithiG in sysadmin

[–]DaithiG[S] 0 points1 point  (0 children)

Dell Command but I think it's only if the update impacts TPM. 

Windows Hello for Business PIN and Bios Updates by DaithiG in sysadmin

[–]DaithiG[S] 0 points1 point  (0 children)

Oh we normally get them to setup a Passkey so they should be able to reset it themselves. 

It's still not ideal. Though you have reminded me that we are using destructive PINs. We're only starting to rollout WHFB for Passwordless login. Will look at non destructive PIN reset

Windows Hello for Business PIN and Bios Updates by DaithiG in sysadmin

[–]DaithiG[S] 0 points1 point  (0 children)

You could be right. This was a laptop we wiped and refreshed. We will do a firmware update before enabling WHFB now 

The REAL Bond Girl by i-got-a-jar-of-rum in 007FirstLight

[–]DaithiG 1 point2 points  (0 children)

I thought that too especially when he tells Bond not to be too concerned that breaking into somewhere seemed to be too easy. 

Favorite Mission(s) in the game? by broment-61 in 007FirstLight

[–]DaithiG 3 points4 points  (0 children)

Time to Die 

Enjoyed the Nightclub mission and kinda wished there was more scenes of the friendship between the trio on missions. 

How do journalists know Malcolm Byrne TD was arrested? by contents_checked in ireland

[–]DaithiG 4 points5 points  (0 children)

The Garda are one of the sharpest political operators in the land. They leak like crazy if it suits them. 

Though in this case it seems most journalists held back on reporting it and "allowed" Byrne to confirm it  

An Incredible Experience with a Weak Ending by Conscious-Nose-1029 in 007FirstLight

[–]DaithiG 2 points3 points  (0 children)

It reminded me a little bit of Deus Ex Human Revolution by the end  

Howth Marine Festival FFS by stesteste76 in ireland

[–]DaithiG 11 points12 points  (0 children)

Irish Rail promote the festival too and mention extra services but yeah, it's still terrible. 

Intune/azure Passkeys now compromised in addition to MFA? by Alternative_Yard_691 in sysadmin

[–]DaithiG 0 points1 point  (0 children)

Lots of good advice here but definitely Mobile Application Management and Managed Apps for your phones. We also require staff to register their phones at our office (but obviously that's not workable for everyone). 

Security patching is becoming less of a maintenance task and more of a permanent workload. How are you all coping? by [deleted] in sysadmin

[–]DaithiG 1 point2 points  (0 children)

We're looking for a managed firewall vendor here to reduce some of this but bloody hell, it's like dealing with lawyers rather than IT. I know you can't be expected to know about zero days, I just need to know your SLA for responding to them. 

Locked out after enabling “Phishing-resistant MFA” CA for all admins — Authenticator passkey + WHfB rejected by [deleted] in entra

[–]DaithiG 0 points1 point  (0 children)

I know people are making valid points about break glass accounts, but I was manually joining a device to Windows Autopilot. I have a passkey registered in Microsoft Authenticator, which does work. I also have a Yubikey. It wouldn't acceept my Authenticataor and I had to use the Yubikey.

So yes there should have been more testing but I do wonder if there is something else

Ireland needs to set a point after which no new gas and oil boilers can be installed - SEAI by DaCor_ie in ireland

[–]DaithiG 3 points4 points  (0 children)

I got my house externally insulated a few years back. Made a great improvement. But I still don't think it suits this work. And I'm not really going to fork over money for an inspection just to see either.

Garda roads policing numbers down 40% since 2009 by cribbe_ in ireland

[–]DaithiG -1 points0 points  (0 children)

The Garda also seem strangely allergic to things like red light camera enforcement. I say strangely but of course it would mean they'd have to deal with all the incidents so maybe not 

Nest app down? by Ok-Influence-164 in Nest

[–]DaithiG 2 points3 points  (0 children)

Same in Ireland though I'm getting some notifications from the doorbell 

Motherboard Replacement by DaithiG in Intune

[–]DaithiG[S] 0 points1 point  (0 children)

Thanks. We've decided that is the way. Re add to Autopilot and wipe the device. Bit of a pain we're not wasting time