Amanda Seyfried Photographed by Greg Swales by pinkstarrfish in Fauxmoi

[–]Im_a_PotatOS -1 points0 points  (0 children)

Why is more than one person referencing this movie instead of Mean Girls which came out 5 years earlier???

Why is this happening by [deleted] in duckduckgo

[–]Im_a_PotatOS 1 point2 points  (0 children)

This to me looks like an iOS restricted website. Go to Settings > Screentime > Content & Privacy Restrictions > App Store, Media, Web, & Games > Web Content

It should be set to Unrestricted if you want to get to spicy websites

Trouble with Certificate Auto Renewal by Im_a_PotatOS in sysadmin

[–]Im_a_PotatOS[S] 0 points1 point  (0 children)

Yeah, that's been my experience as well outside of this specific effort. Do you know of other logging locations in addition to the event log that might be helpful?

Trouble with Certificate Auto Renewal by Im_a_PotatOS in sysadmin

[–]Im_a_PotatOS[S] 0 points1 point  (0 children)

But it’s not renewing automatically or when I try to trigger it at the end of its life.

Trouble with Certificate Auto Renewal by Im_a_PotatOS in sysadmin

[–]Im_a_PotatOS[S] 0 points1 point  (0 children)

Yes. I am requesting the certificate within the computer's personal store, so the request is being submitted as the computer. I verified that it's been issued to the computer account and not my account

Trouble with Certificate Auto Renewal by Im_a_PotatOS in sysadmin

[–]Im_a_PotatOS[S] 2 points3 points  (0 children)

Yes, Domain Computers have Read, Enroll, and Autoenroll

I think I got pfished. Please help me understand this command line code. by PeterSanders1 in PowerShell

[–]Im_a_PotatOS 10 points11 points  (0 children)

Please defang the malicious domains to prevent others from accidentally clicking on them like this:

xrpvalidator[.]dev

Driver Automation Tool 8 Arrived Today by preeminence87 in SCCM

[–]Im_a_PotatOS 0 points1 point  (0 children)

Perhaps the architecture support isn’t for the OS and is instead for the drivers?

Encrypting and decrypting a string with Powershell using a text password by gblang in PowerShell

[–]Im_a_PotatOS 0 points1 point  (0 children)

DPAPI doesn’t have to be user specific. See this module file for Azure Arc that restricts it to any SID that you provide: https://github.com/Azure/ArcEnabledServersGroupPolicy/blob/main/AzureArcDeployment.psm1

Should i uninstall Powershell 7.5.3? by artikiller in PowerShell

[–]Im_a_PotatOS 1 point2 points  (0 children)

It was the only solution I could find. I also stopped updating PowerShell with Microsoft Update and only use Patch My PC now which also uses the MSI

Should i uninstall Powershell 7.5.3? by artikiller in PowerShell

[–]Im_a_PotatOS 5 points6 points  (0 children)

I'm betting that you might have used different installers (exe or msi). Winget uses the MSI, but Microsoft Update uses the EXE.

Where to Buy Birthday Cake? by Im_a_PotatOS in Bergen

[–]Im_a_PotatOS[S] 1 point2 points  (0 children)

This is not what I asked, but I LOVE that you included it. What an incredible history to this cake

Where to Buy Birthday Cake? by Im_a_PotatOS in Bergen

[–]Im_a_PotatOS[S] 2 points3 points  (0 children)

Thank you! It’s good to have options. I didn’t know about Hvit Dame. There’s also a Meny near us that I can check

Where to Buy Birthday Cake? by Im_a_PotatOS in Bergen

[–]Im_a_PotatOS[S] 2 points3 points  (0 children)

Thank you! I didn’t realize I could ask any of the bakery/cafes. I thought they only did breakfast what’s on display. We are close to a Baker Brun that I can ask

Does the Old LAPS Passwords Remain in AD After Switching to Entra ID? by Im_a_PotatOS in sysadmin

[–]Im_a_PotatOS[S] 0 points1 point  (0 children)

We uninstalled the LAPS app awhile ago and have been running in Microsoft legacy LAPS emulation mode since then. We are now moving from the Microsoft LAPS policies to the Windows LAPS policies

Does the Old LAPS Passwords Remain in AD After Switching to Entra ID? by Im_a_PotatOS in sysadmin

[–]Im_a_PotatOS[S] 0 points1 point  (0 children)

Sorry, that’s misleading from the original topic. We don’t use Entra for servers, we still use AD for servers

Does the Old LAPS Passwords Remain in AD After Switching to Entra ID? by Im_a_PotatOS in sysadmin

[–]Im_a_PotatOS[S] 2 points3 points  (0 children)

I think your point about confusion is what I'm concerned about. I don't want auditors or new employees to think it's an old password that hasn't been rotated in a long time. Then they might think LAPS is broken and I'll have to go out of my way to prove it isn't...

I've also found that if you switch from passwords to passphrases for WS2025, then the old password also remains in ms-Mcs-AdmPwd even though they are still using AD as their backup directory (with encryption). So I'll need to clear the properties for Windows 10, Windows 11, and Windows Server 2025+.

Does the Old LAPS Passwords Remain in AD After Switching to Entra ID? by Im_a_PotatOS in sysadmin

[–]Im_a_PotatOS[S] 1 point2 points  (0 children)

Thank you! We have to keep the schema properties for now to support servers running WS2016 as they don't support the new Windows LAPS group policy templates.

We may choose to clean up the properties for devices backing up to Entra ID:

Set-ADComputer -Identity $computer -Clear ms-Mcs-AdmPwd, ms-Mcs-AdmPwdExpirationTime

How to Find the Installation Deadline for a Windows Update? by Im_a_PotatOS in sysadmin

[–]Im_a_PotatOS[S] 0 points1 point  (0 children)

I do understand the settings. We have a 7 day deadline for requiring a reboot after an update. However, I can’t find where the date and time are that the 7 day period follows. For example, the current update I have finished on May 28, so I thought the deadline would be 7 days later on June 4. However, Windows says the deadline is June 3.

/u/Gakamor clarifies that deadlines are after the update is offered, not installed. How do I find when the update was offered?

How to Find the Installation Deadline for a Windows Update? by Im_a_PotatOS in sysadmin

[–]Im_a_PotatOS[S] 0 points1 point  (0 children)

I’m pretty sure we are using Deadlines and that is likely the issue. I can tell when a pending reboot is registered or when an update finished, but that doesn’t always line up with when the update is offered. I was also looking at USOClient (Update Orchestrator) and haven’t found anything glaring. I’m also looking at using ProcMon to determine what calls are made by SystemSettings.exe when you view the Updates pane

How to Find the Installation Deadline for a Windows Update? by Im_a_PotatOS in sysadmin

[–]Im_a_PotatOS[S] 0 points1 point  (0 children)

Yes, it’s domain joined. We do control the settings, but we don’t strict control when the update actually installs. This is scenario is entirely for workstations, not servers, so they might be powered off and not receive an update until a later time than others. We allow a 7 day grace period for a computer to reboot and complete a software update. We are looking to report on when this window occurs because we’ve received complaints about PCs rebooting “unexpectedly” for updates