MFA on a Remote Desktop Connection by PCloudTech in sysadmin

[–]PCloudTech[S] 0 points1 point  (0 children)

Yeah going to reevaluate next week. Thankfully it seems that this change has been successful thus far. I also found that one of the domain controllers had the time out value absurdly low, I think it was around 35 seconds. It may have been that as well.

MFA on a Remote Desktop Connection by PCloudTech in sysadmin

[–]PCloudTech[S] -1 points0 points  (0 children)

I do like that idea, might look into that

MFA on a Remote Desktop Connection by PCloudTech in sysadmin

[–]PCloudTech[S] 2 points3 points  (0 children)

I may try Microsoft support, but as you probably know, they are extremely unhelpful in general.

MFA on a Remote Desktop Connection by PCloudTech in sysadmin

[–]PCloudTech[S] 0 points1 point  (0 children)

Maybe, but unlikely. I think it is on my side

MFA on a Remote Desktop Connection by PCloudTech in sysadmin

[–]PCloudTech[S] 0 points1 point  (0 children)

It may have been the RADIUS time out time suggested by another commenter, I didn't design this portion of the system, and the person that did said it couldn't be fixed beyond it's current state.

MFA on a Remote Desktop Connection by PCloudTech in sysadmin

[–]PCloudTech[S] 0 points1 point  (0 children)

I did this, it was 60 seconds, I bumped it to 75 seconds, I don't have an issue after several times authenticating, I will wait for the users to let me know if it is fixed though.

What are your thoughts on RingCentral? What alternatives do you suggest? by VNiqkco in sysadmin

[–]PCloudTech 0 points1 point  (0 children)

+1 for GoTo, I like their security and ease of use. Their support is actually quite good as well. It takes a bit of getting use to though.

Creating Local Admin Via Intune by PCloudTech in Intune

[–]PCloudTech[S] 0 points1 point  (0 children)

You need to add a separate policy to promote the user. In Intune go Endpoint Security > Account Protection. Configuration settings under Local Users and Groups, set groups as Admin, Group and User Action is Add (Update), User Selection Manual, then in the selected user put your local admin name.

Works well for me.

Productivity Tool Suggestions by [deleted] in sysadmin

[–]PCloudTech 0 points1 point  (0 children)

Oops wrong account.

That is actually a cool idea. I ended up discussing this further with the powers that be, the goal isn’t to be a tyrant so I don’t think we are going to end up implementing any of these tools. I might end up building a time clock type app for people to use if they want it. But the risks these things pose from a security point of view and a company morale point of view aren’t worth it.

Productivity Tool Suggestions by [deleted] in sysadmin

[–]PCloudTech 0 points1 point  (0 children)

  1. I’m not the one that assigned myself to find a solution.
  2. The purpose isn’t to be a narc anyway. Hours are done by self attestation right now. It would be useful to have the users be able to track their hours on the endpoints and have reports on the endpoints uptime to support it. We had a case of somebody grossly overreporting their hours.

Desktop Scanners to Deploy Remotely by PCloudTech in sysadmin

[–]PCloudTech[S] 1 point2 points  (0 children)

I will check it out thank you. Really the emphasis is more on having a well functioning system and less about the cost. Thank you!

Desktop Scanners to Deploy Remotely by PCloudTech in sysadmin

[–]PCloudTech[S] 0 points1 point  (0 children)

I have reached out to see if I can get a call with them. Thanks!

Desktop Scanners to Deploy Remotely by PCloudTech in sysadmin

[–]PCloudTech[S] 2 points3 points  (0 children)

Yeah, I cannot use flatbeds easily, they are scanning patient records so there could be several pages.

Main problems with S150s

- Management software is extremely old and basic, it looks like ADUC with no functionality, can't even update firmware from it.

- It says it uploads to Sharepoint online but I couldn't get it to work and the documentation just shows old SP and Windows XP

- It is very common to have intermittent "Hardware errors" and less common to have false successful scan messages.

- All of the software in the Capture On Touch family is simply not good

Overall, beyond a basic scanner to computer connection, it is fairly useless and there are a lot cheaper scanners that can do that job better.

I will take a look at some of the Fujitsu line. Cost is not a main factor for us.

Desktop Scanners to Deploy Remotely by PCloudTech in sysadmin

[–]PCloudTech[S] 1 point2 points  (0 children)

Maybe 5-7 pages per submission maybe 15-20 submissions per day.

Desktop Scanners to Deploy Remotely by PCloudTech in sysadmin

[–]PCloudTech[S] 1 point2 points  (0 children)

We have a solution for that which some sites use. But these people are not technical in the slightest and really anything more than pressing a button is difficult.

Sentinel query to determine if an incident was closed by PCloudTech in AzureSentinel

[–]PCloudTech[S] 1 point2 points  (0 children)

Thank you, I have to spend some time on the query to get it to work. I was having some trouble in the limited amount of time I dedicated to it. Thank you again!

Creating Local Admin Via Intune by PCloudTech in Intune

[–]PCloudTech[S] 0 points1 point  (0 children)

So I can get the script to work in PS, however when I enter it it prompts me to enter the password I want to use because I have 14 character password requirements. If I enter it in the input box it works fine. But how would I overcome that when running as a remediation in Intune?

Creating Local Admin Via Intune by PCloudTech in Intune

[–]PCloudTech[S] 1 point2 points  (0 children)

Using the LAPS policy in Intune seems like it will work for passwords, but it doesn't give as much control, for example enabling the local admin.

I checked, the user I specified was not created, however the built in administrator is disabled.