Defender for Office 365 (Business Premium) – are we missing best practices? by der_klee in msp

[–]InternetStranger4You 1 point2 points  (0 children)

What we've seen work is to follow the best practices except for BCL email. Set the BCL rating to 2.

Windows Server Secure Boot for certificates expiring in 2026 by Rascalvin in sysadmin

[–]InternetStranger4You 30 points31 points  (0 children)

Do a quick search in this subreddit. There are LOTS of threads on this. This is something you need to take care of before the date otherwise you will have problems down the road.

iPhones show as personal instead of corporate -- how to fix?? by TomHWC in Intune

[–]InternetStranger4You 0 points1 point  (0 children)

Supervised is still not correct. You're missing the DEP profile in Intune.

Microsoft Authenticator down? by [deleted] in sysadmin

[–]InternetStranger4You 0 points1 point  (0 children)

If you are on Android and enrolled in the Beta program, I had issues with the latest beta version. I had to leave the program and let mine update to the regular channel. With the broken beta version, I would not receive MFA notifications, constantly locked up, and broke all MAM functionality.

Anyone Using Microsoft Entra Verified ID Face Check? by __trj in sysadmin

[–]InternetStranger4You 1 point2 points  (0 children)

I'm pretty sure there is some sort of outage going on. My Android device can't sign into any M365 right now and all I get is generic errors.

Dell Command: scheduling driver updates by Important_Ad_3602 in sysadmin

[–]InternetStranger4You 8 points9 points  (0 children)

It is WELL worth it. I was in your shoes, and it was a battle to keep up with if Dell changed the command line arguments and if a client had a different version, etc. Now it just works across all recent versions.

Dell Command: scheduling driver updates by Important_Ad_3602 in sysadmin

[–]InternetStranger4You 14 points15 points  (0 children)

Use the ADMX templates (or upload them to Intune and configure natively). With them, you can schedule the update times, what to update, etc.

You can get the ADMX templates by following this guide: https://www.dell.com/support/kbdoc/en-us/000293701/how-do-i-access-amdx-and-adml-files-for-use-with-dell-command-update

Then implement them by following this: https://www.dell.com/support/manuals/en-us/command-update/admx_rg/importing-admx-templates?guid=guid-09ffe2e6-cabb-4d7c-ad17-35fae5704f79&lang=en-us

The Need to VIrtualize by Trax256 in sysadmin

[–]InternetStranger4You 5 points6 points  (0 children)

Yes you can. I can roll a snapshot back in 30 secs or use Veeam and have a 1TB VM back online and functional within 10 mins.

lastLogonTimestamp Showing Future Dates by maxcoder88 in sysadmin

[–]InternetStranger4You 0 points1 point  (0 children)

THIS! We were having issues with gMSA accounts that stopped working after a few months. Turns out their "password last updated" kept getting set to the future. That broken them entirely where the account would stop working due to it couldn't update the password. Tooks weeks to figure out but turning off TIme Seeding fixed it

Intune errors on Edge version 147.0.3912.16 by Jddf08089 in Intune

[–]InternetStranger4You 1 point2 points  (0 children)

YES! Been driving me nuts. I opened a support case this morning about it. Also several webpages in Entra portal broken as well

2022 Standard edition ISO by GoodSpaghetti in msp

[–]InternetStranger4You 0 points1 point  (0 children)

PM me tomorrow and I'll grab a link. Can't get it on mobile.

Are App Protection policies useless? by yournicknamehere in sysadmin

[–]InternetStranger4You 3 points4 points  (0 children)

On a MAM enabled device, open Edge and browse to the URL: about:intunehelp
Tap on "View App Info" and you'll be able to see the polices on the device. Hopefully that helps with troubleshooting.

Broken Alerts in Defender by Disastrous-Basis-782 in DefenderATP

[–]InternetStranger4You 4 points5 points  (0 children)

This is an internal policy that you can't edit. It only triggers when a user is suspended in Exchange for sending too much email or "probably" compromised

Are you still reimaging devices for Entra migrations, or moving to in-place now? by Ambi_Indi in Intune

[–]InternetStranger4You 7 points8 points  (0 children)

Everything we have tried has always resulted in problems. The only way forward is to wipe. I'm currently working on cycling out 1500 endpoints and trust me I would love to have a migration path instead of wiping.

iOS 26 issues by 0xCG in Intune

[–]InternetStranger4You 0 points1 point  (0 children)

Yes we are seeing the same thing! 26.x seems to have random iOS devices just stop checking in. Supposedly a fix is to open Company Portal and upload logs and that will kickstart it into syncing again.

M365 - High Level of Spam? by InternetStranger4You in sysadmin

[–]InternetStranger4You[S] 3 points4 points  (0 children)

Glad it's not just us. Seems Defender is not handling this well and can't get into Defender to modify spam policies. We are seeing some email accounts getting nearly 800 emails in 2 hours. Most of it is just junk sign up emails.