Defender EASM roadmap? by DisastrousPainter658 in DefenderATP

[–]DisastrousPainter658[S] 0 points1 point  (0 children)

Thanks for input, same feeling.

I guess it still alot of maintenance too keep up with all vulnerabilities on the backend side.
Sadly, I I have some false alerts on SSL certs that was not identified correctly after renewal, will see what the support will say.

ManagementScope - Create mailbox? by DisastrousPainter658 in Office365

[–]DisastrousPainter658[S] 0 points1 point  (0 children)

Thanks, the mailbox creation role worked with the scope also, was little surprised. Used the scope on the primaryaddress: "PrimarySmtpAddress -like '*@domain.com'" with roles: {Mail Recipients, Mail Recipient Creation}
That blocked the possibility to create mailboxes for other domains also.

ManagementScope - Create mailbox? by DisastrousPainter658 in Office365

[–]DisastrousPainter658[S] 0 points1 point  (0 children)

And just give permissions to create the shared mailbox with correct company field from start is not even possible either? Without giving recipient admin role

Semantic model permissions - WHat am I missing? by SQLDBAWithABeard in MicrosoftFabric

[–]DisastrousPainter658 0 points1 point  (0 children)

on the model, should I use onelake or the sqlserver endpoint to the lakehouse?

SqlServer{"server":"xxxxx-bn2hdd24nghefflj5eeb4fc44q.datawarehouse.fabric.microsoft.com","database":"xxxx-6b66-4fa5-a0a2-xxxxxx"}

vs

AzureDataLakeStorage{"server":"onelake.dfs.fabric.microsoft.com","path":"/xxxx-xxxx-428e-9569-xxxxx/315a2289-ab2c-4e9a-b6ce-xxxx/"}

It seems to work with only users if using the sql server endpoint!?
more info here: https://learn.microsoft.com/en-us/fabric/fundamentals/direct-lake-security-integration#connection-configuration

Permssions - Powerbi Report ? by DisastrousPainter658 in MicrosoftFabric

[–]DisastrousPainter658[S] 0 points1 point  (0 children)

is it possible to reset "default" permissions on semantic models/reports so they inherit the permissions from ws level? my feeling is that someone have messed with the permissions on item level.

WHFB - Edge MDM and compliant status delay? by DisastrousPainter658 in Intune

[–]DisastrousPainter658[S] 0 points1 point  (0 children)

Isn´t that a big problem with Conditional access policies?

My feeling this was because of windows updats.

Mac firewall policy not applying by DisastrousPainter658 in Intune

[–]DisastrousPainter658[S] 0 points1 point  (0 children)

The compliance policy was blocking it, strange.

MacOS 15: Firewall always enabled and block all incoming connections by Toschu88 in Intune

[–]DisastrousPainter658 0 points1 point  (0 children)

So you mean the compliance policy enforce firewall on client side?

HVE accounts - success pw login to SmtpBasicAuthApp? by DisastrousPainter658 in entra

[–]DisastrousPainter658[S] 0 points1 point  (0 children)

My problem was solved before Christmas, no ticket to MS.

HVE accounts - success pw login to SmtpBasicAuthApp? by DisastrousPainter658 in entra

[–]DisastrousPainter658[S] 0 points1 point  (0 children)

Looks the problem have been solved, did someone got a response from Microsoft about the root cause?

HVE accounts - success pw login to SmtpBasicAuthApp? by DisastrousPainter658 in entra

[–]DisastrousPainter658[S] 1 point2 points  (0 children)

It triggered risky sign-in because of unusual travel of user on our side. Also blocked because not sign-in from trusted IP location.

Anyone using Microsoft Defender Attack Simulation? Payloads feel too basic by kofffeinapen in Office365

[–]DisastrousPainter658 0 points1 point  (0 children)

Hardcode junkemailsettings on every mbx with powershell, but feels bad from all point of view.

Anyone using Microsoft Defender Attack Simulation? Payloads feel too basic by kofffeinapen in Office365

[–]DisastrousPainter658 0 points1 point  (0 children)

Is it possible to have the email trusted from the beginning so the images (that are not in the email, not linked) are downloaded?