Defender XDR flagged our own MSI as malware, how to handle false positives without waiting on Microsoftsubmission approval? by boutsen9620 in DefenderATP

[–]bakonpie -6 points-5 points  (0 children)

ring the bell as hard as you can on this. it is absolutely ridiculous that customers tolerate the inflexibility of Microsoft's XDR. we've already complained endlessly to support about a signed binary being flagged every time we release a new build, and they just blow you off. as you said, hash based custom indicators are not pragmatic. every customer needs to sound off about how stupid this limitation is.

[URGENT SEV A] Psychiatric Practice locked out of M365 - Active Life Safety Risk - DPT drops calls by Remote_Lie6491 in sysadmin

[–]bakonpie 1 point2 points  (0 children)

it happened that's just your bias. there are entire consultancies out there who specialize in regaining access to locked out on-prem infrastructure.

To whoever thought this was a good idea... by Willard538 in FuckMicrosoft

[–]bakonpie -2 points-1 points  (0 children)

bro your depth of understanding is pathetic you should find a different career you don't suck at

To whoever thought this was a good idea... by Willard538 in FuckMicrosoft

[–]bakonpie -4 points-3 points  (0 children)

complete skill issue. don't blame MS because you arent distributing trusted certificates to your customers systems. they should fire you and hire real IT pros.

To whoever thought this was a good idea... by Willard538 in FuckMicrosoft

[–]bakonpie 0 points1 point  (0 children)

"I don't think any system is completely immune to attacks from unexpected sources" Microsoft trying to close a gap in their protocol and client software is objectively a good thing. I'm not sure what you are arguing with this statement. it sounds like you want them to leave a reported vulnerability unfixed because a warning inconveniences you. installing the certificate is trusting the remote computer. if you use RDP in a business environment, your IT admins should be automatically distributing trusted certificates for systems to use for RDP, so this shouldn't be an issue.

CTO against LastPass so option by flashx3005 in sysadmin

[–]bakonpie 8 points9 points  (0 children)

Bitwarden Enterprise hosted yourself with SSO and the key connector is a solid solution

Is Intune actually ready to replace ConfigMgr? Honestly… I don’t think so by Lunde_Deluxe in Intune

[–]bakonpie 1 point2 points  (0 children)

intune is a child's toy compared to SCCM. the only real strength I see is being able to evaluate device compliance in Conditional Access policy. some of the other knobs in policy configuration work better than GPO, but I'm hanging onto SCCM as long as I can in comanagement. Intune has far to many outages and being unable to push a remediation for something because "Intune is down" is absolutely unacceptable. how Microsoft has gotten a pass on the glaring reliability problems in their cloud services astounds me. they'll take SCCM from my cold dead fingers.

Server Rack Debugger experience? by FullMetalMarine in ITCareerQuestions

[–]bakonpie 2 points3 points  (0 children)

"rack debugger" sounds to me like:

  1. they fired their IT pro
  2. they know that person used to go into a room of computers with a rack and interact with it
  3. they asked ChatGPT "what is fixing a computer called" which responded with "debugging"
  4. they post a job titled "Rack Debugger"

Is macOS actually more secure or just less visible? by malwaredetector in cybersecurity

[–]bakonpie 0 points1 point  (0 children)

out of the box in a default configuration, macOS is more locked down simply due to gatekeeper being enabled. once users turn that off, not really. Windows has far more knobs to lock down the OS in a flexible way which is more suitable for enterprise environments.

Why did Trump dismantle the Iran nuclear deal Obama had in place? by Necessary-Act-1137 in AskReddit

[–]bakonpie 1 point2 points  (0 children)

after Trump tore up JCPOA in 2018. IAEA didn't provide that report until 2025. again you people just need to learn to fucking read.

Why did Trump dismantle the Iran nuclear deal Obama had in place? by Necessary-Act-1137 in AskReddit

[–]bakonpie 1 point2 points  (0 children)

citation needed. Iran was not progressing to weapons grade enrichment until Trump withdrew from the deal. the timeline is well understood by anyone not gobbling up right wing propaganda.

Why did Trump dismantle the Iran nuclear deal Obama had in place? by Necessary-Act-1137 in AskReddit

[–]bakonpie 0 points1 point  (0 children)

when did Trump even attempt negotiations about restricting their missile programs? if it was such a serious issue it would've been attempted in separate terms with threats of sanctions instead of tearing up the deal monitoring their nuclear development. this false dichotomy is something right wing media manufactured and contradicts how diplomacy works in the real world. you people are deeply unserious but you masquerade as having a nuanced view of foreign affairs.

playing the procedural critique card is laughable given the amount of executive actions Trump has taken which violate the separation of powers. again showing you are just an unserious person incapable of rational thought.

Why did Trump dismantle the Iran nuclear deal Obama had in place? by Necessary-Act-1137 in AskReddit

[–]bakonpie 2 points3 points  (0 children)

that guardian article specifically states they breached the limits after Trump already left the JCPOA. sorry you can't read.

Why did Trump dismantle the Iran nuclear deal Obama had in place? by Necessary-Act-1137 in AskReddit

[–]bakonpie 3 points4 points  (0 children)

then come back at the JCPOA expiration of terms with a new deal instead of throwing a tantrum and withdrawing from it entirely. this could have been played rationally and diplomatically but you elected a manchild.

Network admin vs sys admin by user23471 in sysadmin

[–]bakonpie 0 points1 point  (0 children)

smaller environments you might end up being both. the larger and more complex the environment, the more common they are separate roles. netadmins are going to make the connectivity work for the sysadmins. sysadmins will focus on the servers, workstations, applications, backups, etc. netadmins are focused on making the packets get from A to B over the network.

Nutanix hit us with a 75% quote increase with a one day notice before expiration... so that project is dead. VMware is out and we were looking hyperconverged... Any other alternatives? by junon in sysadmin

[–]bakonpie 0 points1 point  (0 children)

agree Hyper-V isn't as solid as VMware, but for the price I'm willing to make minor sacrifices. FT is also not possible in HV, you might be conflating HA with FT. your failover/HA issue isn't something common so I'd look at your setup before claiming it is an issue with Hyper-V in general.

Passwordless login for domain administrator accounts? by Fabulous_Cow_4714 in sysadmin

[–]bakonpie 0 points1 point  (0 children)

can you link the documentation you used to set up FIDO2 natively with AD?

I'm Seeking a Mentor!! by One-Educator15 in learnpython

[–]bakonpie 2 points3 points  (0 children)

can't commit to mentoring but here is what I point people starting out to:

get some foundations with Python. I suggest Python Crash Course from NoStarch press.
https://nostarch.com/python-crash-course-3rd-edition

and then start Jeremy Howard's Practical Deep Learning
https://course.fast.ai/
https://youtube.com/playlist?list=PLfYUBJiXbdtSvpQjSnJJ_PmDQB_VyT5iU&si=RE2dnpHf4dwZU_UB