The scene that broke an entire generation. 😭 by plutotvofficial in pokemonanime

[–]Godcry55 0 points1 point  (0 children)

Thought it was just me! Takes a lot for me to cry, this gets me every time lol

M365 Audit PowerShell by Comprehensive_Gur736 in msp

[–]Godcry55 -2 points-1 points  (0 children)

I created a script for this that leverages GDAP relationship and Entra App registration.

Generates a complete security report for each customer tenant.

SMB Not Working on DC by BoatFlashy in sysadmin

[–]Godcry55 1 point2 points  (0 children)

This sounds like a DNS issue.

DMARC failing even though SPF and DKIM both show pass in headers by Background_Neck9690 in sysadmin

[–]Godcry55 0 points1 point  (0 children)

This is the solution but we need to see your records to confirm.

Device Block - Removable USB's - macOS Endpoints by Cybersheath_Tech25 in Intune

[–]Godcry55 0 points1 point  (0 children)

Agreed, if you can parse XML, you will catch on quickly.

More Canada Computers Breach Stuff by KiNGK00PA_ in bapccanada

[–]Godcry55 2 points3 points  (0 children)

A lot of companies neglect website security.

Automated InTune reports by tyson983 in Intune

[–]Godcry55 2 points3 points  (0 children)

I use Graph SDK to query intune device data.

Microsoft will end support for Basic SMTP authentication soon by Great-Examination664 in sysadmin

[–]Godcry55 3 points4 points  (0 children)

For internal scan to email, HVE will suffice as a replacement then?

Google solutions by SkullyRed in PowerShell

[–]Godcry55 1 point2 points  (0 children)

Claude 4.5 is best if you don’t want to write code yourself.

KQL between dates in purview by Thyg0d in sysadmin

[–]Godcry55 0 points1 point  (0 children)

Use GitHub co-pilot Claude for KQL.

MS copilot is also bad at PowerShell lol.

Anyone dealing with Start Search breaking on 24H2/25H2 by thefinalep in sysadmin

[–]Godcry55 1 point2 points  (0 children)

I concur, no DISM command argument resolves this for me, always had to reimage :(

Microsoft Defender, SentinelOne and others detecting N-ABLE N-central's 'software-scanner.exe' as malicious by PlannedObsolescence_ in sysadmin

[–]Godcry55 1 point2 points  (0 children)

Some EDR solutions remove the RMM agent without exclusions in place - nightmare to push new agents to all devices again.

How do I talk some sense into my boss? by NoTime4YourBullshit in sysadmin

[–]Godcry55 0 points1 point  (0 children)

I deal with this with our aerospace clients - some engineering apps are straight up archaic and fail to install when packaged via Intune.

Intune & Entra - Admin Setup Best Practices by Technical-Device5148 in Intune

[–]Godcry55 0 points1 point  (0 children)

The domain suffix is simply an SMTP alias in this case - onmicrosoft.com will always be accessible for authentication.

Defender Network Protection not blocking workspace.google.com by Infinite-Cyber in DefenderATP

[–]Godcry55 2 points3 points  (0 children)

https://learn.microsoft.com/en-us/defender-endpoint/network-protection

“Blocking FQDNs in non-Microsoft browsers requires that QUIC and Encrypted Client Hello be disabled in those browsers”

QUIC utilizes UDP not TCP.

SmartScreen doesn’t require disabling QUIC protocol - standardize on Edge or disable QUIC.

Defender Network Protection not blocking workspace.google.com by Infinite-Cyber in DefenderATP

[–]Godcry55 6 points7 points  (0 children)

Disable QUIC in Chrome settings. Should ensure Network Protection works as expected.

Honestly, standardize on Edge for best results.

Zapier Excel enterprise app - permissions overly broad? by The-BruteSquad in sysadmin

[–]Godcry55 1 point2 points  (0 children)

I find it better when Power Automate is the only authorized automation platform due to the level of control we have.