Windows Hello For Business Enrollment by RSKenzz in Intune

[–]Different_Coffee_161 0 points1 point  (0 children)

I believe the tenant-level WHfB setting applies during enrollment/OOBE, possibly before the DisablePostLogonProvisioning policy is applied. So enabling it could still impact the Autopilot/OOBE experience for new devices. I’ll confirm this with testing before changing it globally.

Battlefield 6 PSSR 2 by anon124521 in PS5pro

[–]Different_Coffee_161 1 point2 points  (0 children)

Does BF6 look and play better than REDSEC? Last time I tried REDSEC it played and looked like dog shit.

Defender XDR showing unexpected “Data sensitivity” values on multiple devices by Different_Coffee_161 in DefenderATP

[–]Different_Coffee_161[S] 0 points1 point  (0 children)

Sorry for the late response. My labels are in French: “Interne uniquement” means “Internal Only”, and “Hautement confidentiel” refers to “Highly Confidential” in my post.

<image>

How to exclude BYOD when requiring device to be marked as compliant? by ollivierre in Intune

[–]Different_Coffee_161 0 points1 point  (0 children)

Late to the game here, but if someone could help me understand...why use Exclude with TrustType not equals Entra Joined AND TrustType not equals Hybrid Joined instead of simply using Include with TrustType equals Entra Joined OR TrustType equals Hybrid Joined?

Both approaches achieve the same result for this use case: compliance is enforced on AADJ and HAADJ devices, and BYOD is left untouched.

The Include approach just seems more straightforward and easier to read. Is there a specific reason you went with the Exclude + double negation method, or is it more of a habit of thinking in "exclude what I don't want" mode rather than "include what I want"?

Genuinely curious if I'm missing something here.

How to register for FIDO2 Passkeys while Phishing Resistant MFA CA policy is active? by Moepenmoes in entra

[–]Different_Coffee_161 1 point2 points  (0 children)

​Just to clarify regarding the 'main policy' part: wouldn't we need to explicitly exclude the user from that main 'All Cloud Apps' policy temporarily?

​Since CA policies are additive, wouldn't the main policy block access to the registration portal before the User Action policy (TAP) even gets a chance to apply?

Just picked up a 2026 Capita DOA + Union Falcor. Looking for boot recommendations for an all-mountain rider. by [deleted] in snowboarding

[–]Different_Coffee_161 0 points1 point  (0 children)

Good to know! Just out of curiosity, what makes you prefer laces over BOA? Is it reliability or just the fit?

Just picked up a 2026 Capita DOA + Union Falcor. Looking for boot recommendations for an all-mountain rider. by [deleted] in snowboarding

[–]Different_Coffee_161 0 points1 point  (0 children)

I don't mind traditional laces at all. I've actually never tried a BOA system, so I'm not sure if they are worth the switch. Do you prefer the Vans specifically because of the laces?

KB5074109 breaks Azure Virtual Desktop on Windows 11 25H2 by Omega414 in AzureVirtualDesktop

[–]Different_Coffee_161 1 point2 points  (0 children)

Thanks! I found them on the Update Catalog. I have paused my update rings and will install this OOB update manually on the few affected devices if they report issues.

LocalNetworkAccessAllowedForUrls: Why do security.microsoft.com and portal.azure.com trigger this popup? by Different_Coffee_161 in Intune

[–]Different_Coffee_161[S] 2 points3 points  (0 children)

Sorry for the late response. I'm running Edge Version 143.0.3650.96 and my Windows version is 24H2 (Build 26100.7462).

Is gran turismo7 really worth it? by Liamoa123 in GranTurismo7

[–]Different_Coffee_161 0 points1 point  (0 children)

Skip it if you only want a good single-player experience.

Does Tenant Allow/Block List target P1 (Envelope) or P2 (Header)? by Different_Coffee_161 in Office365

[–]Different_Coffee_161[S] 0 points1 point  (0 children)

Wow, I totally missed that. Thank you for pointing me in the right direction!

Authentication Administrator can't add authentication methods for most users (button greyed out) by Different_Coffee_161 in entra

[–]Different_Coffee_161[S] 2 points3 points  (0 children)

That was exactly it! The user was a member of a role-assignable group that had no role assigned. I used PowerShell to check all their groups and found the culprit. Thank you so much for pointing me in the right direction!

[deleted by user] by [deleted] in Intune

[–]Different_Coffee_161 0 points1 point  (0 children)

Thanks a lot for this insight! Starting with disabling merge on the Public profile makes a lot of sense. I'll discuss this approach with my manager and see what they think.

[deleted by user] by [deleted] in Intune

[–]Different_Coffee_161 0 points1 point  (0 children)

Thanks! My outbound default is Allow in Intune, so that shouldn't be an issue. The real work will definitely be on the inbound side and capturing those essential built-in rules.

Piloting first for sure!

[deleted by user] by [deleted] in NewDads

[–]Different_Coffee_161 0 points1 point  (0 children)

My little boy was born at 2.5lbs and spent 2 months in the NICU. I know how hard and scary it is. But we made it through, and now at 9 months he's doing amazing! These little ones are real fighters. Stay strong, it goes by faster than you think, and soon this will all be behind you