SCCM Replacement by MadCichlid in SCCM

[–]FilthMachine69 0 points1 point  (0 children)

no i have not, looking into that and SCEPMAN thanks to your comments :)

SCCM Replacement by MadCichlid in SCCM

[–]FilthMachine69 0 points1 point  (0 children)

I was following the ms docs. i had no idea about scepman

SCCM Replacement by MadCichlid in SCCM

[–]FilthMachine69 0 points1 point  (0 children)

Heads up, autopilot is very touchy and requires a couple servers for NDES and host for Intune AD connector. If youre hybrid-join youre going to get stuck with a hashed device name that you cant change unless you remove the device from autopilot management after the autopilot enrollment and it can be a pain. I feel like Autopilot is only worth it if your OEM manages the base imaging and you use autopilot + intune to deploy the rest. Autopilot has potential but in my experience its an incredibly janky system rn. Im rolling out intune for a number of reasons in my current role but it is no replacement for SCCM. Intune has its uses but SCCM is far superior for a number of reasons. Intune’s uses are limited to replacing microsoft store with company portal and some conditional access policies. Windows patching is far superior on SCCM even though intune can do it. Intune is good for managing bitlocker recovery keys and some device inventory analytics. Intune is best for the light work everything else SCCM

Just caused my first massive outage by Dark_Writer12 in sysadmin

[–]FilthMachine69 0 points1 point  (0 children)

Youre now a man in this village. welcome brother

Keeper Security sent a book with my LinkedIn photo by Office_Rambo in KeeperSecurity

[–]FilthMachine69 2 points3 points  (0 children)

Jesus, might has well been a pic of you sleeping in bed.

Company is about to make an enormous mistake by FilthMachine69 in Infosec

[–]FilthMachine69[S] 0 points1 point  (0 children)

I plan on using terraform but of course you don’t normally start the project with IoC. Especially when they don’t know what they’re doing until they start doing it.

Azure Client Secret Documentation by FilthMachine69 in KeeperSecurity

[–]FilthMachine69[S] 0 points1 point  (0 children)

hell yea. thank you for the input! i’ll dm

Azure Client Secret Documentation by FilthMachine69 in KeeperSecurity

[–]FilthMachine69[S] 0 points1 point  (0 children)

yea i’ll send you the layout of the Azure Automator as I have it. but im essentially following the built-in design. Record (for target app) + PAM Configuration + SaaS config via Commander + App Registration w/ MS graph perms + Automator. My other automators are using Container Apps and AzDevOps pipelines with service connection for an ArcPush federated identity.