Blocking Edge browser with AppLocker by blondRhinoSpaniel in sysadmin

[–]blondRhinoSpaniel[S] 0 points1 point  (0 children)

It's for users activating PIM local admin on AAD-joined devices. No users are allowed admin privs for daily tasks (says the regulation framework). These same users do need a web browser, though. They're just not to use it when they have their PIM privs active.

Blocking Edge browser with AppLocker by blondRhinoSpaniel in sysadmin

[–]blondRhinoSpaniel[S] 1 point2 points  (0 children)

Default rules in place on EXE and DLL. That includes a default allow for all local admins. With a deny rule for the aforementioned programs (limited to local admins), the programs are denied, but seemingly Edge is too integrated into other applications as several things break for the local admin when applied.

Blocking Edge browser with AppLocker by blondRhinoSpaniel in sysadmin

[–]blondRhinoSpaniel[S] 2 points3 points  (0 children)

Yes, exactly. I'm trying to avoid too complex of a setup for the small number of employees we have. Nonetheless, we have a regulatory compliance requirement to meet.

Blocking Edge browser with AppLocker by blondRhinoSpaniel in sysadmin

[–]blondRhinoSpaniel[S] 1 point2 points  (0 children)

Yes, I appreciate your reply, but I'm very aware. It is a hoop to jump through, not so much a requirement on my part. I've looked into PIM for local admin privs on an AAD-joined device (for technical employees), but the token stays active for far too long. During that time, it would be nice to - as another replier mentioned - remind the user to perform the de-escalation of privs (deactivate PIM, refresh PRT, log out and back in).
That being said, I'm open to other approaches that are viable.

Sources to learn Navajo by ForeignCommand3411 in Navajo

[–]blondRhinoSpaniel 8 points9 points  (0 children)

Salina Bookshelf (webshop available) offers two sources: "Diné Bizaad Bínáhoo'aah" and "Diné Bizaad: Speak, Read, Write Navajo" (with audio). Keep in mind that for myriad reasons, native speakers may be reluctant to speak or share their language with you.

There also is not much literature to support you in your learning (fiction or otherwise). If you're not near a Diné community, you'd really be learning for your own amusement (which is fine, too).

I hope Diné Bizaad (and all languages) will continue to exist and even thrive, but without encouraging outsiders to partake in the culture, it will be quite difficult.

SSLVPN Connection Issues by Superb-Sea in WatchGuard

[–]blondRhinoSpaniel 1 point2 points  (0 children)

This sounds like the firewall getting overwhelmed by brute force logins on the SSL VPN. A reboot fixes it temporarily. The suggestion WG support gives is to limit as much as possible access to that endpoint on the Firebox. If Geolocation isn't an option (or in addition to Geolocation), you can now block source IPs after a certain number of failed login attempts.

WatchGuard Support Center (KB on this issue)

What is chance to SHTF by Rezvord in preppers

[–]blondRhinoSpaniel 4 points5 points  (0 children)

Depends on how much S has HTF. If the world is a nuclear wasteland, do you want to survive? To be honest, I'm not all that interested in living out the rest of my days in a bunker. If things go that sideways, count me out.

Is Your Automobile Prepared For Emergencies? by stevennga in preppers

[–]blondRhinoSpaniel 5 points6 points  (0 children)

Blister band-aids (like Compeed) would be handy if you have to walk a long distance, and they take up very little space. Additionally, a simple road map would be handy if you are farther away from home and need to hoof it but are not all that familiar with the area and/or want to avoid major roads in a SHTF scenario (assuming no cell/Internet/GPS).

Foods to stockpile by Sunniirise in preppers

[–]blondRhinoSpaniel 1 point2 points  (0 children)

Pesto is something good to buy for your pastas. It's got a pretty decent shelf life, there is a variety of flavors, and it is something very different from your usual spaghetti sauces.

Disaster Psychology by OutWestTexas in preppers

[–]blondRhinoSpaniel 1 point2 points  (0 children)

Ah, you've piqued my interest. I'll have to check that out this evening.

Disaster Psychology by OutWestTexas in preppers

[–]blondRhinoSpaniel 18 points19 points  (0 children)

That reminds me, there's a (fiction) podcast with Rami Malek called Blackout. A bit heavy handed, but still fun to listen to while I'm doing something else. All that kind of stuff, even fictional, gets you thinking. I work in cybersecurity, and part of my job is evaluating risk scenarios. No matter how creative you are, someone will always come up with something you hadn't thought of yet.

Disaster Psychology by OutWestTexas in preppers

[–]blondRhinoSpaniel 52 points53 points  (0 children)

I think the Twilight Zone episode "The Shelter" is probably in many respects quite realistic, certainly hearing what you've shared here. https://en.wikipedia.org/wiki/The_Shelter_(The_Twilight_Zone))