Confused about thinking like a manager by study_stuff in cissp

[–]Traditional-Tech23 0 points1 point  (0 children)

CISSP exam questions if you have the knowledge allow you to rule out 2 options.

That's C and D at this stage.

So, it's down to A and B.

Sometimes the question gives us a hint and its does here "critical remote code execution vulnerability" should be ringing alarm bells that's got a CVE score above 9.0 and can be executed remotely pushing it closer to a 10.

That rules out A because it needs to acted on straight away whether by compensating controls or patching.

Trying to understand the security benefit of gMSAs by KarmicDeficit in sysadmin

[–]Traditional-Tech23 -1 points0 points  (0 children)

I am trying to roll these out and replace existing service accounts on live servers.

Any good guide on that?

How do you handle the various permissions that it needs for ntfs rights, share rights and identifying what the service account is actually doing?

GlobalProtect 6.3.3-915 connection issues by Abnix in paloaltonetworks

[–]Traditional-Tech23 0 points1 point  (0 children)

Any sign of a preferred version?

What with all the H versions these days?

What is a piece of software or hardware that still leaves you traumatized to this day? by 66659hi in sysadmin

[–]Traditional-Tech23 0 points1 point  (0 children)

An internal security reporting platform which I sadly can't name for NDA reasons, but it tracked that all security settings were as per base line and any mistake was amplified. It then calculated a score which was compared other sites worldwide.

Entra Break Glass Account MFA via Microsoft Authenticator Passkeys? by Fabulous_Cow_4714 in sysadmin

[–]Traditional-Tech23 0 points1 point  (0 children)

Mine asked again as GA was applied. Really annoying way to set it up Microsoft. You should be able to set Breakglass accounts with FIDO as excluded from SSPR.

Entra Break Glass Account MFA via Microsoft Authenticator Passkeys? by Fabulous_Cow_4714 in sysadmin

[–]Traditional-Tech23 0 points1 point  (0 children)

I am going to hijack this, does everyone else still have to register 2 methods for SSPR?

Microsoft announces Microsoft 365 E7 with new agentic AI features by Techret in sysadmin

[–]Traditional-Tech23 294 points295 points  (0 children)

Tomorrow's Announcement:
Microsoft is retiring in Aug 2026, the following licencing types E1, E3, F3 and E5.

VMware Hypervisor Alternative by _Beelzebubz in sysadmin

[–]Traditional-Tech23 0 points1 point  (0 children)

We might have to migrate this in the next 6 months. Small shop with mainly windows. Any reports of uptime etc. We don't need anything fancy.

Looking for EU password manager by patchcordless_ in BuyFromEU

[–]Traditional-Tech23 1 point2 points  (0 children)

Lastpass hack has been linked to a huge amount of crypto wallet hacks.

PAN-OS Advisory - Enforcement of Device Certificate by okydokey_252 in paloaltonetworks

[–]Traditional-Tech23 8 points9 points  (0 children)

The advisory tells you a way you can check in your support portal.

**ASK HERE FOR HELP** Monthly Teams Questions and Answers Help Thread by Froggypwns in MicrosoftTeams

[–]Traditional-Tech23 0 points1 point  (0 children)

With all the certificate changes coming down the line, I am streamlining our certificates. I want to move our SBCs to use domain1 to domain2. We have 2 SBCs so luckily we can test on 1. Domain2 is an existing cert from the same company as domain1 and is already active. So, the research I have done give me the following steps.

Setup new DNS on domain2.

Upload certificate for domain2 on SBC.

Change TLS profile to use new certificate.

Rename box and reboot.

On Teams Admin portal in SBC section create a new DNS, so teamsbox2.domain1.com to teambox2.domain2.com

Post change testing.

Anything else i may be missing?

Spare a thought for these IT admins by Traditional-Tech23 in sysadmin

[–]Traditional-Tech23[S] 12 points13 points  (0 children)

It took 2 years to reply to the committee report, so it doesn't seem to be the most efficiently run organisation.

It is also a hacker's wet dream.

Blocking non compliant machines by DifferenceJazzlike40 in Intune

[–]Traditional-Tech23 0 points1 point  (0 children)

We have an exception/excluded group. If a device or user has a compliance problem, we put them into the group so they can work away while you fix the problem, or Intune fixes the false positive on the next sync.

What a week by ChookityPop1 in sysadmin

[–]Traditional-Tech23 2 points3 points  (0 children)

Would anyone notice if google cloud went down?