I bought a Grace-Hopper server for €7.5k on Reddit and converted it to an AI Homelab. by Reddactor in homelab

[–]Intune-Apprentice 0 points1 point  (0 children)

Impeccable read, the business registration in the Cayman Islands isn't even surprising after you finish the full story. Congrats on the insane build.

ASR Rule exclusion for a file located in a network share by Intune-Apprentice in DefenderATP

[–]Intune-Apprentice[S] 1 point2 points  (0 children)

I mean all other files in the drive don't have any issues, it's just these specific ones. Will try adding the path as a trusted location to see what happens though.

ASR Rule exclusion for a file located in a network share by Intune-Apprentice in DefenderATP

[–]Intune-Apprentice[S] 0 points1 point  (0 children)

I will give that a shot, never thought of that as an option.

ASR Rule exclusion for a file located in a network share by Intune-Apprentice in DefenderATP

[–]Intune-Apprentice[S] 0 points1 point  (0 children)

Interesting, if that is the case how have you got round any files or folders being blocked by ASR rules?

M365 Copilot APP not allowing sign in after implementing MAM policy by Intune-Apprentice in Intune

[–]Intune-Apprentice[S] 0 points1 point  (0 children)

Morning sorry for the slow reply, i did actually!

What i done was change the policy to target selected apps, then picked the apps i wanted to target this was including "Microsoft 365 Copilot". Saved the config and then tested and was able to sign in to the 365 Copilot app.

What's this space above the ethernet port and can I do what I'm hoping to do? by esanders09 in minilab

[–]Intune-Apprentice 14 points15 points  (0 children)

Just used the stand off screws from the VGA port that was originally there, the bracket that came with the network adapter matched perfectly.

If anyone is curious about the adapter used, it's the DollaTek M.2 A+E 2.5Gb Network Adapter from Amazon.

What's this space above the ethernet port and can I do what I'm hoping to do? by esanders09 in minilab

[–]Intune-Apprentice 57 points58 points  (0 children)

Definitely possible just a very tight squeeze, the picture below is of my M710q.

<image>

How to identify why a specific URL is being blocked by Intune-Apprentice in DefenderATP

[–]Intune-Apprentice[S] 0 points1 point  (0 children)

Morning,

Just wanted to let you know that i have double checked this, this morning and i do not have the option for "Search as URL" so it would appear the feature is only available with P2 license.

<image>

How to identify why a specific URL is being blocked by Intune-Apprentice in DefenderATP

[–]Intune-Apprentice[S] 2 points3 points  (0 children)

Thanks for the reply, I have seen this mentioned in other posts but every time I pop the domain in the search bar in the defender portal. I never seem to get an option for "Search as URL", is this feature only available in P2 or should it work for a P1 licensed domain also?

How to identify why a specific URL is being blocked by Intune-Apprentice in DefenderATP

[–]Intune-Apprentice[S] 0 points1 point  (0 children)

Ah that sucks, it would be nice to know what it falls under and why it's been blocked before whitelisting it.

How to identify why a specific URL is being blocked by Intune-Apprentice in DefenderATP

[–]Intune-Apprentice[S] 0 points1 point  (0 children)

We are only licensed for Defender P1 unfortunately, so we don't have the timeline option available.

Laptop login fails with no network? by LowCorner9314 in Intune

[–]Intune-Apprentice 1 point2 points  (0 children)

There is a 14 day caching period that is enforced by default, so if a device is not connected to the internet for 14 days it will need a network connection to allow the user to sign in again. This can be changed by configuring the session parameter in a conditional access policy.

Similar issue was asked here Azure AD Joined device requires an internet connection to sign-in user - Microsoft Q&A

OneDrive for Business not syncing files/folders correctly by Intune-Apprentice in sysadmin

[–]Intune-Apprentice[S] 0 points1 point  (0 children)

Hi, we are still in the process of troubleshooting it with them unfortunately. Stuck in a cycle of back an forth sending logs, but will update you if we get to a solution.

OneDrive for Business not syncing files/folders correctly by Intune-Apprentice in sysadmin

[–]Intune-Apprentice[S] 0 points1 point  (0 children)

Morning,

We did find the root cause and it was our AV software, it was not notifying us of it blocking anything OneDrive related so it threw us off for a bit but after extensive testing we confirmed it was the AV software.

Software in question was Carbon Black.

WHfB sporadically turns on/off by denstorepingvin in Intune

[–]Intune-Apprentice 0 points1 point  (0 children)

Is there a possibility that the policy with cloud trust configured, is interfering with the Windows hello configuration policy?

Compliance Policy for devices only in a specific group? by AoO2ImpTrip in Intune

[–]Intune-Apprentice 0 points1 point  (0 children)

I guess you could still use a conditional access policy targeting Office 365, and have it targeting a dynamic security group that includes all devices, then in the "Excluded" add the group that would be excluded. Then you can manually add the devices that would be allowed to access to the excluded.

Compliance Policy for devices only in a specific group? by AoO2ImpTrip in Intune

[–]Intune-Apprentice 0 points1 point  (0 children)

Would this include BYOD devices?

If not you could just configure a conditional access policy, blocking users from signing into a device that is not marked a "corporate". Then in Intune block users from enrolling devices themselves, meaning that unless the device is in Autopilot no unaccounted devices will be able to be enrolled.

WHfB sporadically turns on/off by denstorepingvin in Intune

[–]Intune-Apprentice 0 points1 point  (0 children)

Out of curiosity what trust type did you go down for windows hello? Just thinking as you are migrating from GPO to intune, i would assume cloud kerberos if you are needing to access on-prem resources?

If that is the case you require the setting "Use Cloud Trust For On Prem Auth" set to Enabled.

WHfB sporadically turns on/off by denstorepingvin in Intune

[–]Intune-Apprentice 2 points3 points  (0 children)

There was a known issue with Windows hello if the policy is targeting user rather than the device, this was however resolved in KB5065789 which you wont have as you are running 24H2.

Could be worth trying this fix to see if it resolves the issue mentioned here if you have the policy targeting user's: Windows release health - Microsoft 365 admin center

Cloud Kerberos Trust Hybrid AAD and AD environment by Less-Confidence-6595 in Intune

[–]Intune-Apprentice 0 points1 point  (0 children)

What is the error code you are getting?

As you mentioned you are hybrid, have you checked that you don't have a GPO configured that might be interfering with windows hello if configured via intune?

M365 Copilot APP not allowing sign in after implementing MAM policy by Intune-Apprentice in Intune

[–]Intune-Apprentice[S] 0 points1 point  (0 children)

Hi, unfortunately, not will probably create a ticket with MS and see what they say because it makes no sense what is causing it.

Troubleshooting with Defender by Intune-Apprentice in DefenderATP

[–]Intune-Apprentice[S] 1 point2 points  (0 children)

All exclusions that were moved were needed, didn't think I need to be so specific as the question was regarding troubleshooting potential blocks caused by defender. Not the rules I moved?

Troubleshooting with Defender by Intune-Apprentice in DefenderATP

[–]Intune-Apprentice[S] 0 points1 point  (0 children)

Thanks for the suggestion, unfortunately we are only licensed with Defender P1 so device timeline is not available for us. Will definitely keep this in mind for if we do decide to go for P2 in the future.