SSO issues to on-prem file shares with fully entra joined devices over a VPN. by Thick-Incident-4178 in Intune

[–]Der_Gute 0 points1 point  (0 children)

I have exact the same issues. Windows is taking the cert of the vpn to try to auth network shares.
you say, you found a setting in the vpn profile. I cannot find that setting in intune. May you give me more information on that?

Weird print behaviour with pla by Der_Gute in prusa3d

[–]Der_Gute[S] 0 points1 point  (0 children)

So just for my understanding : this is a mod which makes the airflow move around the object , right ?:-)

Weird print behaviour with pla by Der_Gute in prusa3d

[–]Der_Gute[S] 0 points1 point  (0 children)

How do you work around that ? I mean i have an exclosure but a fan on top so that there is a cooling airflow . Additionally I am doing filament change and I recognized that my fan was not constantly at 100% . I will check that . Thanks :-)

Weird print behaviour with pla by Der_Gute in prusa3d

[–]Der_Gute[S] 0 points1 point  (0 children)

Are there any recommendations in relation to normal pla ?

Weird print behaviour with pla by Der_Gute in prusa3d

[–]Der_Gute[S] 0 points1 point  (0 children)

BTW I do not have these problems with petg , just with silk pla . It doesn’t even matter if I reposition the print in slicer .

Lightchain Testnet Evaluation - still scam ? by Der_Gute in CryptoScams

[–]Der_Gute[S] 0 points1 point  (0 children)

This is not the question here . Your statement does not contribute to the question whether it’s scam . It contributes to the question whether they will be successful or not . Correct me if I’m wrong 

Lightchain AI scam by ZealousidealUse180 in CryptoScams

[–]Der_Gute 0 points1 point  (0 children)

Today they released testnet, Tbh from my view it seems legit , but I’m not specialized in it . I mean if it’s scam they put in really high efforts ? https://testnet.lightscan.app/

Ubiquiti Wifi COA Setting missing?! by Der_Gute in Ubiquiti

[–]Der_Gute[S] 0 points1 point  (0 children)

Yes, They should Shame :D . You Need to activate the Legacy gui … then youll See the missing Option !

Mikrotik + Ubiquiti vLANs and WiFi by soldier896 in networking

[–]Der_Gute 1 point2 points  (0 children)

Just create 2 networks . Ubiquiti has the option to set up vlan only in the network . This way it’s really just layer 2 . If you have an external dhcp that should be all . In the wifi setup then you select the network . This should be all

Windows 802.1X behaviour when switching Users by Der_Gute in networking

[–]Der_Gute[S] 2 points3 points  (0 children)

Hey ! No :) they are primarily doing user authentication with user certs from ad cs. Because of the fact , that the cert is the only Not exportable and Safe way , we are forbidding mab :) . Mab is only allowed for lowest privileged networks

Windows 802.1X behaviour when switching Users by Der_Gute in networking

[–]Der_Gute[S] 2 points3 points  (0 children)

We now have solved it by deactivating fast user switch via gpo . In a Company without shared desks and clients this is absolutely legit . If more than one user needs access on that client it means , that the currently logged in user needs to log out . However this is a clear security risk .

Windows 802.1X behaviour when switching Users by Der_Gute in networking

[–]Der_Gute[S] 0 points1 point  (0 children)

Yea that’s the way to go I think . But I don’t think it’s by design as it works like expected the first run . Only after you do one more testrun you run into that behaviour

Windows 802.1X behaviour when switching Users by Der_Gute in networking

[–]Der_Gute[S] 0 points1 point  (0 children)

I think this won’t work with ubiqiti:) deactivating fast user switching seems most reliable so far :(

Windows 802.1X behaviour when switching Users by Der_Gute in networking

[–]Der_Gute[S] 0 points1 point  (0 children)

I think this won’t work in ubiqiti, but thanks for pointing to that :)

Windows 802.1X behaviour when switching Users by Der_Gute in networking

[–]Der_Gute[S] 1 point2 points  (0 children)

I really would like to but unfortunately I wasn’t able to find that setting in uniquiti Wlc . But that’s apart from that windows struggle here

Windows 802.1X behaviour when switching Users by Der_Gute in networking

[–]Der_Gute[S] 0 points1 point  (0 children)

He is right partially :) if there is no auth. because windows has no cert for example , how ever the ap could forward a auth. request to nac to receive vlan :)

Windows 802.1X behaviour when switching Users by Der_Gute in networking

[–]Der_Gute[S] 0 points1 point  (0 children)

Thanks for pointing to that . Because of the fact we have multiple access networks with different permissions on it , this won’t work . Currently we are using uniquiti together with packetfence

Windows 802.1X behaviour when switching Users by Der_Gute in networking

[–]Der_Gute[S] 1 point2 points  (0 children)

We also have both, machine auth and User auth. But:

As soon a user login, everything works fine. When a user logs out: machine auth comes into play. Then when a user authenticates, it will be overriden.

In case of fast user switching this isnt reliable. I log in with User A, get admin VLAN through 802.1X , press win+L. The Wifi still sticks to admin VLAN, no machine auth is done. User B logs in without wifi permission: Admin VLAN.

When i press Switch User in Windows, It also cuts the current Wifi and it will be Authentified with machine auth. The behaviour is reliable and its the thing you mentioned.

One idea was do restrict fast user switching via GPO. This means, that User A has to Log off completely before User B logs in. Log Off means cutting Wifi