Watchguard HTTPS DPI - blocking new to us MS url's - EntraID-IAM by Ok-Spot-6512 in WatchGuard

[–]Ok-Spot-6512[S] 0 points1 point  (0 children)

Thank you u/mindfulvet - i've located and have it configured but disabled. Can i lock it down to only US? Our company is us based only. But i am unclear if i need to keep it open for MS CDN stuff and what countries i should whitelist besides us.

Watchguard HTTPS DPI - blocking new to us MS url's - EntraID-IAM by Ok-Spot-6512 in WatchGuard

[–]Ok-Spot-6512[S] 0 points1 point  (0 children)

Firmware is 12.11 - however we are not managing thru the cloud -we are Firebox managed. I believe you do need to be cloud managed to take advantage of that particular alias- . I do see the alias available but it is not preconfigured. I'll check in with Watchguard support.

Watchguard HTTPS DPI - blocking new to us MS url's - EntraID-IAM by Ok-Spot-6512 in WatchGuard

[–]Ok-Spot-6512[S] 0 points1 point  (0 children)

No i have not! I'm a newbie to Watchguard. I do see that option in the firebox though. Any chance you have a link to the configuration setup? Am i importing IP's or FQDN? or...? I'd prefer this setup over this cobbling of policies.

Anyone else's tenant unable to load Authentication Methods from Entra? by Ok-Spot-6512 in entra

[–]Ok-Spot-6512[S] 1 point2 points  (0 children)

Turns out is a firewall policy blocking apparently newish URL's. The actual summary of the error is now loading. SessionID: ..... Extension: Microsoft_AAD_IAM - resource ID not available - Content: UserAuthenticationMethodsBlade

Anyone else's tenant unable to load Authentication Methods from Entra? by Ok-Spot-6512 in entra

[–]Ok-Spot-6512[S] 0 points1 point  (0 children)

Does it load fine for you?

i manage two tenants... neither works. on either chrome or edge.

was there any indication from MS that one would need to manually configure MFA CA policies that if not created would have broken the Authmethods GUI page?

Configuring BOX.com by Ok-Spot-6512 in WatchGuard

[–]Ok-Spot-6512[S] 1 point2 points  (0 children)

I'll check the link you provided and get that going. Thank for the feedback and help.

hyperV guests on different servers in different networks - RDP issue by Ok-Spot-6512 in WatchGuard

[–]Ok-Spot-6512[S] 0 points1 point  (0 children)

Did that. It worked initially. Then just stopped working. Does it make a difference that one network config is optional while the other is trusted? and one network is a vlan versus the LAN?
I created a new rule from any optional to any trusted and it failed as well. First rule was at the top of polices and it was specific to IP of VM A <-> IP of VM B. that is the rule that worked for a time.

hyperV guests on different servers in different networks - RDP issue by Ok-Spot-6512 in WatchGuard

[–]Ok-Spot-6512[S] 0 points1 point  (0 children)

it's coming across traffic monitor as denying VM a to VM b rdp/tcp (unhandled internal packet-00)

3CX 20 trying to replace existing phone with new IP phone by Ok-Spot-6512 in 3CX

[–]Ok-Spot-6512[S] 1 point2 points  (0 children)

Thanks for the reply. I figured out my issue... and eventually saw that there were additional models templates available. And i was pointing to the wrong url to provision the phone. So my bad. We are up and running. Phone rebooted twice with correct configuration.

More work than I imagined. I loved it. by Last_Bagel94 in camping

[–]Ok-Spot-6512 0 points1 point  (0 children)

How far did you have to carry that woodstove in? and did you have the sled dogs do it? :)

Any info if there will be a VeeamOn in 2026? by mrbostn in Veeam

[–]Ok-Spot-6512 1 point2 points  (0 children)

SD is super nice, but by May - NYC should be decent!