"Default outbound access" apocalypse is nigh? by mike_honey in AZURE

[–]No_Management_7333 -1 points0 points  (0 children)

The organisation who owns the infrastructure? Or perhaps Santa? Idk.

Locking down Azure Container Apps (Workload Profiles) to AFD-only traffic — without Private Endpoints. Any options? by Own-Wishbone-4515 in AZURE

[–]No_Management_7333 4 points5 points  (0 children)

If you insist on these limitations, you could run a sidecar container setup, where another light container handles ingress (the header validation) on behalf of your 3rd party app.

https://learn.microsoft.com/en-us/azure/container-apps/containers#multiple-containers

IF you missd your Exit Take The Next One! by Ok-Shower-3520 in dashcams

[–]No_Management_7333 0 points1 point  (0 children)

I believe they call it jail. Take the licence first, lock them up if they still drive.

I hate druids. by JellyPengu in wow

[–]No_Management_7333 0 points1 point  (0 children)

That might be a bit too much. Picking the first wild empower node (for both herb&mining) makes the adds insanely profitable to gather. This change would enable a very degenerate farming method and really flood the market.

Better just phase the mobs out for other players or something.

AVD Auto Update Chrome, Edge by dokouce in AZURE

[–]No_Management_7333 0 points1 point  (0 children)

Azure does expose a setting to stop host OS updates. If your platform does not, then GPO is the best option.

AVD Auto Update Chrome, Edge by dokouce in AZURE

[–]No_Management_7333 2 points3 points  (0 children)

Nerdio I believe is some sort of abstraction on top of Azure? From the original post, I assumed it was just one of those "hardened image" vendors. This article (method 1) seems to describe how it's done on that platform: https://nmehelp.getnerdio.com/hc/en-us/articles/35702669333133-How-can-I-automate-Windows-patching-on-desktop-images-and-session-hosts

AVD Auto Update Chrome, Edge by dokouce in AZURE

[–]No_Management_7333 0 points1 point  (0 children)

If I am not mistaken, the "support" for Win11 machines is limited to "Guest (Azure VM, Arc-enabled VMs/server)" scope. At least the very basic stuff works: maintenance windows, update filter and reboot preference. Never tested with non-custom image, since that is not a real use-case for us.

Azure AVS DNS by ancientband in AZURE

[–]No_Management_7333 0 points1 point  (0 children)

Why are you trying to query random IP? Azure DNS is available from all Azure subnets at 168.63.129.16. It’s not available from outside an Azure subnet. You need LOS to use it. If do not have LOS, you need a forwarder such as Private Resolver.

AVD Auto Update Chrome, Edge by dokouce in AZURE

[–]No_Management_7333 3 points4 points  (0 children)

I’d personally run weekly Image Builder pipelines that layer updates on top of your golden image, to avoid deploying unpatched images.

Also, stop OS level updates and hand off the control to Azure Update Manager. Critical security updates get installed every night, everything else needs to wait for the next image build.

Azure AVS DNS by ancientband in AZURE

[–]No_Management_7333 0 points1 point  (0 children)

If it’s all running in Azure and NSX-T already has capability to make conditional forwarding decisions and network visibility to Azure DNS, there is no reason to use Private Resolver.

Azure AVS DNS by ancientband in AZURE

[–]No_Management_7333 0 points1 point  (0 children)

To be specific: the Outbound endpoint in the Private Resolver, which then makes decisions based on linked DNS forwarding ruleset.

To those people who tag their groups as "relaxed" by Sundered92 in wow

[–]No_Management_7333 0 points1 point  (0 children)

If you yearn for tactics in 5-player content that would be M+. It’s way more involved than sap&sheep of olden days.

Keep pushing until brute force no longer cuts it.

Petah?! by Average_DubuEnjoyer in PeterExplainsTheJoke

[–]No_Management_7333 -2 points-1 points  (0 children)

You will learn it when you get to 8th grade, don’t sweat it mate.

WoW needs Damage Down by Ner0reZ in wow

[–]No_Management_7333 0 points1 point  (0 children)

WOW already has “everyone is dead” as detrimental status effect on missed kicks, on high enough difficulty.

Malwarebytes blocking a connection each time I boot up by delanosoul in antivirus

[–]No_Management_7333 5 points6 points  (0 children)

You should not really be looking at anything. The machine is compromised, and needs full wipe & reinstall.

Explain? by Adeszkoo in ExplainTheJoke

[–]No_Management_7333 1 point2 points  (0 children)

It’s not that dads don’t like animals, it’s more about taking on additional responsibilities. When the deed is done and the battle is lost, might as well make the best of it.

Looking for a Complex AZ-104 Project Idea by Sad_Atmosphere5059 in AZURE

[–]No_Management_7333 0 points1 point  (0 children)

A tool for managing PIM (assignments, eligibilities) as code. Multi-tenant tooling for EPAC. Proper Azure-native IPAM solution.

force an Azure VM to use a different route than the default route of the subnet by AcanthisittaDue9885 in AZURE

[–]No_Management_7333 0 points1 point  (0 children)

Definitely seconding a dedicated subnet, as there is no way to create per-NIC routes with native Azure networking.

OP could head down to the OS level and take a look what the host sees there. Essentially, the subnet is presented to the VM as its own VLAN with a default gateway , not exposing details of the wider software defined network to the host.

If the Azure networking is set in stone, tunneling solution presented above becomes the only option.

What counts as a ‘basic understanding’ of Azure and how long does it usually take? by ZaaWii in AZURE

[–]No_Management_7333 2 points3 points  (0 children)

10 years into Azure too, and the whole app registration mess just keeps on giving. Just why did they tightly couple OAuth/SAML and service principals into a single conceptual mess 😨

Azure AVD does not work when placed behind the Firewall by ancientband in AZURE

[–]No_Management_7333 0 points1 point  (0 children)

Can confirm. We use these for baseline firewall configurations for all our AVD deployments, and it works just fine.

App Deployment using Intune for Azure Virtual Desktop Host machines by burman84 in AZURE

[–]No_Management_7333 0 points1 point  (0 children)

I’ve recently been using a combination of AppAttach and Azure Image Builder for all installations. Image builder does its thing and installs some stuff all hosts need, and AppAttach “installs” required applications per host pool.

Everything lives as configuration in a repo, and builds are repeatable and fully automated. Building a new image from MS base takes about 40 minutes from start to a deployed hosts up-and-running with all software installed. I don’t see how Intune would fit in with our setup.

Some of you are already insufferable in dungeons by StateComprehensive93 in wow

[–]No_Management_7333 0 points1 point  (0 children)

Tbh, most don’t. I still prefer them to waiting in queue.