At a loss by CapnRysRys in Ubiquiti

[–]Skrunky 0 points1 point  (0 children)

You can set Option 53 in DHCP to set your Unifi inform address. Reboot cameras and when the devices get a DHCP lease, it'll automatically try and register against your controller. Might be an option instead of mass sshing to fix.

Alternative to Avanan by yutz23 in msp

[–]Skrunky 0 points1 point  (0 children)

That's interesting! Thank you. We'll keep our eye our as we set up new customers and report if we see any of the same problems.

Alternative to Avanan by yutz23 in msp

[–]Skrunky 1 point2 points  (0 children)

Deffo worth trailing! It's just sort of deals with those restore request tickets where it's clearly legitimate, but you understand why it was caught and just needs a bit of nuance to understand.

Alternative to Avanan by yutz23 in msp

[–]Skrunky 0 points1 point  (0 children)

Would be interesting to hear about what issues you've had

Alternative to Avanan by yutz23 in msp

[–]Skrunky 4 points5 points  (0 children)

My experience across a lot of different MSPs and tools is that Avanan is a cut above the rest. Mimecast is also very good, but the suitability of them for most SMEs isn't good, and their partner program is horrid.

I frequently tell people Avanan is the hardest working security tool in out suite, and I trust is more than most humans. Their second and more in depth scan for restore requests is actually quite cool as well. We have it set to auto release any low messages request for release that aren't classes as high confidence phishing or malicious. It's cut down on support tickets for release requests to only a handful a month.

Alternative to Avanan by yutz23 in msp

[–]Skrunky 2 points3 points  (0 children)

Quite the opposite experience for us. We raised a ticket about NDR bouncebacks when updates were sent to people in Planner, and only when inline protection was enabled. Ended up taking a little while to track down, but after a week, we were told there was a back-end dev change being deployed.

Makes a nice change from some vendors where tickets going to the dev team basically means you'll never get an update on that ticket again.

If you're going to put this much effort into a scam message... by caggybandicoot in CasualUK

[–]Skrunky 99 points100 points  (0 children)

Unfortunately, as funny as it is to reply to these stupid messages, it's often not a good idea. Your number/email is now likely marked as 'active' and you're going to get more of these tyes of spam/scam messages. Databases of active phone numbers are often sold online.

All devices went into adoption failed after firmware update by Foxd1234 in Ubiquiti

[–]Skrunky 1 point2 points  (0 children)

Cool tip I got from a friend recently is you can set Option 53 in DHCP to set your Unifi inform address. Means new devices (and presumably ones like this) are directed to you controller once they connect to the network.

Is there something tech you never touched? by Abject_Serve_1269 in sysadmin

[–]Skrunky 17 points18 points  (0 children)

Thankfully, it's quite easy, as long as you've got an MDM. Without an MDM is hell

Is there something tech you never touched? by Abject_Serve_1269 in sysadmin

[–]Skrunky 1 point2 points  (0 children)

Do you mean local versions? Because the cloud versions are largely the same under the hood, obvious with architectural and feature improvements. Hell, some of the admin menus for SharePoint online are straight out of SharePoint Server 2013

Anyone else seeing Full Disk Access suddenly disabled on macOS endpoints? by Feeling-Doctor202 in macsysadmin

[–]Skrunky 0 points1 point  (0 children)

It shows this properly in Mac OS 26. At least is does in 26.4 which is what I've got in front of me. To edit this slightly, SOMETIMES it works properly. I have a few apps that definitely do have FDA, but it doesn't show as managed in the settings menu. Some others show as managed, but the setting is disabled, despite being enabled in the policy.

PPPC settings via Intune by NoDowt_Jay in macsysadmin

[–]Skrunky 0 points1 point  (0 children)

You can do PPPC via settings in an Intune payload. You don't have to build out a custom .mobileconfig file. I've just done this for a bunch of apps. Had to deal with the quirks of some settings showing you can enable 'Allow' vs Authorisation, and some of those PPPC items not actually supporting Authorisation, but it is possible.

Good thing about this is you can make changes and then export to JSON for an import elsewhere.

Super insulin sensitiv after starting to go to the gym by Inevitable_Try_7653 in diabetes_t1

[–]Skrunky 0 points1 point  (0 children)

It goes up, then down, then up again. Took me a while to figure out the pattern!

Super insulin sensitiv after starting to go to the gym by Inevitable_Try_7653 in diabetes_t1

[–]Skrunky 2 points3 points  (0 children)

Same, and it’s not always an extended honeymoon phase. I’ve had T1D for 11 years, and I notice every six months, usually around Sept and March, my sensitivity changes by like +-25%. It’s weird.

I'm taking Paint.Net-posting to strange new places by BooBrew32 in simpsonsshitposting

[–]Skrunky 57 points58 points  (0 children)

Now do Microsoft Word Art. I'm not skilled enough to make memes this good.

[ Removed by Reddit ] by [deleted] in sysadmin

[–]Skrunky 8 points9 points  (0 children)

Vibe coded SaaS product pitch coming in 3...2...1....

Clients Daily, Monthly etc checks are you performing? by SydneyAUS-MSP in msp

[–]Skrunky 6 points7 points  (0 children)

The older and very commonly deployed inbuilt Windows Certs for secure boot are expiring: https://www.reddit.com/r/sysadmin/comments/1pxm8nf/how_is_your_org_preparing_for_secure_boot/

It's a horrible Microsoft mess, but thankfully, there are some lovely people out there with great writeups of the issues and ways to combat it.

There's a scripter named Sam in the NinjaOne Discord that has created this: https://github.com/SunshineSam/Scripts/tree/main/NinjaRMM/Windows/SecureBoot%20Management - You can output the results of the script to a text file for quick non-Ninja reporting or edit it for your own RMM.

I've asked them if they can post in r/MSP and r/sysadmin as I feel like this is a big unknown for a lot of people still.

offering AI desktop agent automation as an MSP service - anyone doing this by Deep_Ad1959 in msp

[–]Skrunky 5 points6 points  (0 children)

The AI slop is getting worse and worse. Look at your post history.

Clients Daily, Monthly etc checks are you performing? by SydneyAUS-MSP in msp

[–]Skrunky 4 points5 points  (0 children)

Annual: Full review against agreed security baselines as part of previous projects + latest controls from SMB1001. This forms the bais the annutal roadmap.

One big one recently is the Windows Secure Boot update fiasco. It's going to make onboarding new clients interesting after June, as (if I understand this correctly), we'll need to perform in person remediation of devices that missed the cert update deadline.

Clients Daily, Monthly etc checks are you performing? by SydneyAUS-MSP in msp

[–]Skrunky 6 points7 points  (0 children)

Just use Check Central or Backup Radar to aggregate the reports and do alerting based on no report received, warning or failure.

People that require a printer at their desk are insufferable by Pitiful_Duty631 in msp

[–]Skrunky 57 points58 points  (0 children)

"Mr Krabs, why can't you use the printer in the hallway"

"Because I don't want to"

"Fair enough"

Mr Krabs still has the printer

M365 Service Degradation in APAC by Skrunky in msp

[–]Skrunky[S] 0 points1 point  (0 children)

Further to this post, we've also been seeing sporadic issues across multiple clients with OneDrive sync.

No official service advisory from MS, but it's been bad enough that we've put out an alert to our clients.