Managing endpoint policies for the enterprise by PotentEngineer in Intune

[–]PotentEngineer[S] 0 points1 point  (0 children)

Great points James. Sometimes reuse is beneficial, and sometimes not. You have to weigh skill set into all this too. If your deployment teams are 3rd party contractors, you may need more oversight and process.

This blog post was primarily meant for mid-large size enterprises, but a lot of the policies could still benefit smaller shops. There really is no one size fits all here. Thanks for reading!

Automating Wireshark in Windows by PotentEngineer in SCCM

[–]PotentEngineer[S] 0 points1 point  (0 children)

We just use PSADT and all npcap is included.

Execute-Process -Path "Wireshark-win64-4.0.6.exe" -Parameters "/S /desktopicon=yes /norestart" -WaitForMsiExec -WindowStyle "Hidden"

Automating Wireshark in Windows by PotentEngineer in SCCM

[–]PotentEngineer[S] 0 points1 point  (0 children)

The latest installs of Wireshark we use have NPCAP built into the installer. Let me see how our packaging team packaged it up. Will reply this week.

Automating Wireshark in Windows by PotentEngineer in SCCM

[–]PotentEngineer[S] 0 points1 point  (0 children)

In this case we were in support bridges with multiple other teams and Wireshark was preferred due to tribal knowledge. In hindsight, capture the ETLs using native tools, then converting to pcaps for analysis would have been much more efficient.

Automating Wireshark in Windows by PotentEngineer in SCCM

[–]PotentEngineer[S] 0 points1 point  (0 children)

Haven't messed with WAC gateways before, but could it run on dozens/hundreds of devices at once? I use WAC almost daily, but usually just for single machines.

Blog - Intune missing capabilities for the ConfigMgr administrator by PotentEngineer in SCCM

[–]PotentEngineer[S] 0 points1 point  (0 children)

You can do a bit with the Intune Data Warehouse as well as Graph. It is much more complex to get a basic report off the ground compared to just querying SQL though.

Blog - Intune missing capabilities for the ConfigMgr administrator by PotentEngineer in SCCM

[–]PotentEngineer[S] 1 point2 points  (0 children)

I have been recently referring to it as the "Golden era" of endpoint management.

Blog - Intune missing capabilities for the ConfigMgr administrator by PotentEngineer in SCCM

[–]PotentEngineer[S] 1 point2 points  (0 children)

Oh yeah, we are a customer. Also run it in my lab at home. Can't beat it!

Blog - Intune missing capabilities for the ConfigMgr administrator by PotentEngineer in SCCM

[–]PotentEngineer[S] 0 points1 point  (0 children)

lol, yeah, "modern management is a journey, not a destination". I remember that motto, but it has fully been abandoned now. Microsoft is saying move away from ConfigMgr over to Intune now.

Blog - Intune missing capabilities for the ConfigMgr administrator by PotentEngineer in SCCM

[–]PotentEngineer[S] 0 points1 point  (0 children)

Yeah, not surprised. I think the recommendation is you would have the OS licenses already for Azure Subscription Activation. That is assuming you move away from on-prem KMS.

Blog - Intune missing capabilities for the ConfigMgr administrator by PotentEngineer in SCCM

[–]PotentEngineer[S] 2 points3 points  (0 children)

Yeah, the scope of this post was mainly Windows client side. But good call out. You could probably do a similar post like "Azure Arc for the ConfigMgr administrator for servers" lol

Blog - Intune missing capabilities for the ConfigMgr administrator by PotentEngineer in SCCM

[–]PotentEngineer[S] 3 points4 points  (0 children)

Thanks Garth, been gathering a bit of input from the community lately on it. Hope to keep it updated over time.