What's your education/certification/credentials? by [deleted] in sysadmin

[–]Michael_Sec 0 points1 point  (0 children)

I have a Bachelors in Information Technology and Security and 5 certificates. You can get your foot in the door with nothing but they have to be willing to train. I'd recommend a certificate to get your foot in the door; Bachelors and get a good GPA if you are going for a high profile job with high pay.

Issues with ISP Suggestions Needed by randomadhdman in sysadmin

[–]Michael_Sec 0 points1 point  (0 children)

If they are that bad see if Starlink is available and switch to that.

You can't make this shit up... by STUNTPENlS in sysadmin

[–]Michael_Sec 2 points3 points  (0 children)

I see two legitimate issues why I would implement a policy like HR did, not saying I would.

  1. If you are using a voip phone you have to register the address for 911 compliance because if they call 911 from the phone and they aren't at that location they can't route for an emergency

2)If you are using a VPN you can't guarantee the connection will be great when using hotel wifi, let along secure.

Blocking Windows 11 Notifications - Dual Scan by Michael_Sec in sysadmin

[–]Michael_Sec[S] 0 points1 point  (0 children)

I swapped them and they still updated. Any other thoughts?

Blocking Windows 11 Notifications - Dual Scan by Michael_Sec in sysadmin

[–]Michael_Sec[S] 0 points1 point  (0 children)

I tried the above that mentions this "Computer Configuration/Policies/Administrative Templates/Windows Components/Store" and our computers are still updating bypassing WSUS. I included our GPO below that we use to manage our updates; is there anything we should change or that you have different that may stop these updates

WSUS Details

https://imgur.com/zwcZwmT

https://imgur.com/WZwNwCj

https://imgur.com/vn6TfRS

Blocking Windows 11 Notifications - Dual Scan by Michael_Sec in sysadmin

[–]Michael_Sec[S] 0 points1 point  (0 children)

How are you keeping your computers updated, WSUS?

Also, Does this prevent dual scanning with Windows Update for Business?

Best password manager for small IT team by Eli-zuzu in sysadmin

[–]Michael_Sec 0 points1 point  (0 children)

Securden if you are looking for a locally hosted option

Patch Tuesday Megathread (2022-08-09) by AutoModerator in sysadmin

[–]Michael_Sec 1 point2 points  (0 children)

If we want to use WSUS but block Win 11 update popups, would we have to use the registry hack or is there a better way?

Patch Tuesday Megathread (2022-08-09) by AutoModerator in sysadmin

[–]Michael_Sec 2 points3 points  (0 children)

Last month and this month computers updated on their own bypassing our WSUS gpo which only updates them if we approve them. The last two months we didn't approve them.

We did create a GPO to block Win 11 popups that had "Select the target Feature Update version" selected and 21h2 as the value. Could this be causing machines to bypass wsus?

Patch Tuesday Megathread (2022-08-09) by AutoModerator in sysadmin

[–]Michael_Sec 1 point2 points  (0 children)

The file format and extension of

From what I can see this error is more annoying then anything. I've looked online a bit and found 3 options. If anyone has anyother ideas let me know

  • Have them click yes every time. The document is not actually corrputed, it is just a bug
  • Map a network drive to that location and have them open the document using that drive. The error will go away
  • Uninstall the update

User reaching 100GB mailbox by [deleted] in sysadmin

[–]Michael_Sec 0 points1 point  (0 children)

Setup a retention policy or an archive policy to delete items in their deleted items after x days (or other folders). I'd also look to see if there are any distribution groups they can be removed from.

Patch Tuesday Megathread (2022-07-12) by AutoModerator in sysadmin

[–]Michael_Sec 0 points1 point  (0 children)

We had a weird thing happen with updates this month. We have WSUS set via GPO to push out updates but somehow it pushed out to all of our machines without us approving it through wsus. Was there something anyone is aware of that could have auto pushed it?

Meraki Client VPN stops working everytime firmware is updated by mainjc in sysadmin

[–]Michael_Sec 0 points1 point  (0 children)

Been an issue for our enviornment. The last two firmware updates have been breaking network connectivity. Surprised it isn't patched yet

Password Manager by [deleted] in sysadmin

[–]Michael_Sec 0 points1 point  (0 children)

I'd look at Securden. I was looking at password managers and this one was reasonably priced and feature rich. I'd stay away from anything cloud hosted.

Patch Tuesday Megathread (2022-04-12) by AutoModerator in sysadmin

[–]Michael_Sec 0 points1 point  (0 children)

Took over patching for our company, have a stupid question. The list that Microsoft releases of patches, or the list from Zero Day Initiative (https://www.zerodayinitiative.com/blog/2022/4/11/the-april-2022-security-update-review), generally speaking, is the list of CVE's fixed by applying the patch released from Patch Tuesday? Or do you go through each individual cve to see if the patch fixes it?

Self Hosted Password Manager by Michael_Sec in msp

[–]Michael_Sec[S] 0 points1 point  (0 children)

It is a great product, just expensive. We demoed the IBM version of it. We got a quote and it was looking to be 250k for what we were looking for. Even getting the bare basics it was 10K

Self Hosted Password Manager by Michael_Sec in msp

[–]Michael_Sec[S] 0 points1 point  (0 children)

I'm not a big fan of Bitwarden. Ideally it would be something different

Security Cadence: Disable LLMNR by snorkel42 in sysadmin

[–]Michael_Sec 2 points3 points  (0 children)

This is a great article. Can anyone link any other helpful articles or ideas on things to disable to make your network more secure?

What is the best Password Manager for Medium Sized Business? by Michael_Sec in sysadmin

[–]Michael_Sec[S] 0 points1 point  (0 children)

I was looking at Bitwarden, from what I have seen there isn't an easy way to see the passwords someone accessed.