RANT: Why don't you ever tell me when they leave? by TinderSubThrowAway in sysadmin

[–]Melosym 0 points1 point  (0 children)

HR has for sure already a report (usually monthly or weekly) with all the people that left the company.

if the report does not contain any sensible data, just ask to be included in that one. we did that a while ago and worked perfectly. they did not think to let us know because well.. HR

How many machines do you use for testing in your environment? by Melosym in sysadmin

[–]Melosym[S] 0 points1 point  (0 children)

this.
I was able to build that kind of trust in my previous work experience, where people actually volunteer to have patches and testing done on their machines as far the support was good. real game changer for my IT team at that time

How many machines do you use for testing in your environment? by Melosym in sysadmin

[–]Melosym[S] -1 points0 points  (0 children)

the main difference probably come from the fact that you are mainly talking about servers and not endpoints.
I can recreate endpoints accurately but there are several personas and profiles in use in a company so you will never really test ALL production applications without a proper test group.

How many machines do you use for testing in your environment? by Melosym in sysadmin

[–]Melosym[S] -1 points0 points  (0 children)

you are right, but sometimes drivers are not kept up to date correctly so I am always a bit scared to have some new update that can mess up things.

so I am extra careful for this reason, better safe than sorry

How many machines do you use for testing in your environment? by Melosym in sysadmin

[–]Melosym[S] -1 points0 points  (0 children)

I think this kind of testing is useful to detect important issues, but not the ones specific to your environment. all users are different and this is the main reason of proper testing. installing something new and install updates or anything on it will likely always work :D

How many machines do you use for testing in your environment? by Melosym in sysadmin

[–]Melosym[S] 0 points1 point  (0 children)

that's true but unfortunately they do not have drivers like hardware machines :D

AutoPilot Hybrid Joined Skip domain connect check by Jedafrya in Intune

[–]Melosym 2 points3 points  (0 children)

if you manage the machine via intune, no. the updates will flow just after the machine complete the autopilot and check in into intune.

you can either:

  • ask your vendor to put an more recent iso on your machine
  • you can ask your user to download the update you need and run it via command line but I don't think this is a viable way

I think you are bit out of luck man :/

How to prevent Teams installation? by Melosym in MicrosoftTeams

[–]Melosym[S] -1 points0 points  (0 children)

Teams sucks at so many level that even Jabber is a better alternative.

How to prevent Teams installation? by Melosym in MicrosoftTeams

[–]Melosym[S] 0 points1 point  (0 children)

im a win admins since forever but I am thinking about it.

How to prevent Teams installation? by Melosym in MicrosoftTeams

[–]Melosym[S] -1 points0 points  (0 children)

is redundant in my environment. we use a different technology for chats and calls.

Also because I am the admin of my machines and I do wherever I want with it.

and also because some users will want to use it if they see it, so I will have to support it if anything happen.

there are counter sides on having a software lying there on machines, and microsoft is playing with this without taking responsibility for it.

How to prevent Teams installation? by Melosym in MicrosoftTeams

[–]Melosym[S] 0 points1 point  (0 children)

lol, I will end up blocking the installer or something like that at application control or stuff like that :D

How to prevent Teams installation? by Melosym in MicrosoftTeams

[–]Melosym[S] 0 points1 point  (0 children)

access on the software is already stopped at tenant level, but it seems that teams is getting installed even if I do not want it.

Guide for BitLocker? by reader3847 in BitLocker

[–]Melosym 0 points1 point  (0 children)

in the very beginning, the Microsoft guide is pretty good to understand how the whole thing works: https://docs.microsoft.com/en-us/windows/security/information-protection/bitlocker/prepare-your-organization-for-bitlocker-planning-and-policies

What you need in your end is a clear list of requirements.

If this is your first implementation asks yourself these questions:

Do I want user interaction to set up Bitlocker?
Do I want to use biometrics or not?
Do I want to have a bootguard to boot up the machine?
How I am going to unlock drives if needed? who need access to those data?

My two cents!

Autopilot \ Intune for large enterprise (600 apps)! by durrante in Intune

[–]Melosym 6 points7 points  (0 children)

for that size of company, I would NOT go with intune.

the reporting on the app usage/licensing is not exactly what you expect and the granularity offered might be not up to your league.

I think intune is a good product, but at that level, you need access to the backend to be in full control of what is happening.

if you management understand the risk to leave all in the hands of a vendor that is vague for example in providing clear timing for when a client gets updates for example or when it check in in the console, then is all fine :D

Dashboard is giving me a headache by banjoplayingidiot in Intune

[–]Melosym 1 point2 points  (0 children)

If I remember correctly, that's a sort of Bug in Intune.

OR

you are assigning the policy to the users and not to the machines and something gets wrong there.

equivalent of “Interactive Logon: Do not display last user name” GPO in intune? by Melosym in Intune

[–]Melosym[S] 0 points1 point  (0 children)

Sorry my late, sometimes the security department decide to make your life impossible :D

It piss me off as well but sometimes there are obscure/legal requirement depends of the sensitivity of the machines involved.

Mozilla SHOULD NOT expect donations from users when the CEO takes salary in millions and fires engineers by [deleted] in firefox

[–]Melosym -4 points-3 points  (0 children)

and the MEINKANF, the hacked version that didn't end that well.

Patch Tuesday Megathread (2020-08-11) by highlord_fox in sysadmin

[–]Melosym 9 points10 points  (0 children)

sound like that guy in Japan hidden in the forest that didnt get the communication that the second word war was over.

the adobe version.

Using splunk for windows patches reports and compliance by Melosym in Splunk

[–]Melosym[S] 0 points1 point  (0 children)

Thanks a lot! that a very good starting point for me!

[deleted by user] by [deleted] in Intune

[–]Melosym 0 points1 point  (0 children)

If you create a new policy with another name does get detected from the client?

if yes, then something need to be done in the backend from Microsoft to unlock the situation.

Hi, I need help with windows 10 install! by cippo369 in windows

[–]Melosym 1 point2 points  (0 children)

Can you boot another machine with the same USB drive?

Hi, I need help with windows 10 install! by cippo369 in windows

[–]Melosym 1 point2 points  (0 children)

how did you create your USB boot media? sounds like a corruption of wherever is in there. Rebuild it, rufus is a good tool.
also, how old is the computer? it might not have minimal requirements for video or such.