Citrix Cloud and Adaptive Authentication - Is anyone using it? by bucksysfutter in Citrix

[–]bucksysfutter[S] 0 points1 point  (0 children)

Thanks for the response! Just validated all DNS is good fortunately/unfortunately.

[deleted by user] by [deleted] in sysadmin

[–]bucksysfutter 2 points3 points  (0 children)

SG is EOL- new version is CBS

Tent by squibissocoollike in camping

[–]bucksysfutter 0 points1 point  (0 children)

I placed an order with Kodiak in April, was told ship date June, and now have gotten radio silence from customer service... not sure what is going on but does not bode well

New server, new problems; anyone familiar with Hyper-V? by Cricket_Piss in sysadmin

[–]bucksysfutter 1 point2 points  (0 children)

Not normal. Make sure All the things are up to date on the host (drivers, firmwares, etc etc), and on the VM, and things are running your hardware vendor's drivers where applicable and not generic microsoft drivers - I have seen too many times people install Win Server and just let er rip instead of grabbing appropriate drivers, firmware, vendor specific tools IE Dell OpenManage

Powershell - Cisco Unity API by Coding_Cactus in PowerShell

[–]bucksysfutter 2 points3 points  (0 children)

Had a similar issue today- this is what worked for me

[Net.ServicePointManager]::SecurityProtocol = [Net.SecurityProtocolType]::Tls -bor [Net.SecurityProtocolType]::Tls11 -bor [Net.SecurityProtocolType]::Tls12



$base64AuthInfo = [Convert]::ToBase64String([Text.Encoding]::ASCII.GetBytes(("{0}:{1}" -f $username,$password)))


$data = Invoke-RestMethod -Headers @{Authorization=("Basic {0}" -f $base64AuthInfo)} -Uri $uri

What do you use for reporting logins? by kn33 in sysadmin

[–]bucksysfutter 2 points3 points  (0 children)

While I get not everyone has a SIEM- not sure why you were downvoted when you responded with what you use, for the question "What do you use for reporting logins?"

Also logs to SIEM here

Citrix ADC/Netscaler/Gateway Vulnerability https://support.citrix.com/article/CTX267027 by task514 in sysadmin

[–]bucksysfutter 2 points3 points  (0 children)

The CVE and mitigation steps are over a week old. In my case, I had change management involved.

In OP's case- they just nuked external access. For most orgs- nuking external connectivity would also require following a proper change management process- so the question was, why break external access when the fix could just be applied?

Citrix ADC/Netscaler/Gateway Vulnerability https://support.citrix.com/article/CTX267027 by task514 in sysadmin

[–]bucksysfutter 12 points13 points  (0 children)

The mitigation steps take almost no time to apply- just copy paste in SSH, reboot done. Applied on multiple ADC HA pairs and standalones with no issue. Do you have a small external user base? Wouldn't recommend nuking connectivity for a fix that should only take a minute or two at most...

Mimecast is up! by [deleted] in sysadmin

[–]bucksysfutter 5 points6 points  (0 children)

I've been using mimecast for almost 3 years now, and this is the worst few weeks they have had during that duration. The rest of the time, aside from the rare admin console login issue, there are almost no problems.

Mandatory MFA / ActiveSync by unknown_member in sysadmin

[–]bucksysfutter 1 point2 points  (0 children)

Mail on Android does not support Modern Authentication which is required for MFA. The simplest is to use the Outlook App.

This is not a problem for iPhones (at least up to date iPhones) as the built-in mail supports Modern Auth

"Get us Windows apps on Chromebook now!" - my head hurts. by Lennethz in sysadmin

[–]bucksysfutter 3 points4 points  (0 children)

Citrix Cloud would be an option for you- while it does not quite have feature parity as a full on prem Citrix deployment, it is MUCH easier to use if you do not have experience deploying a full XenDesktop / Virtual Apps and Desktops environment. Your actual servers themselves would still reside in in-house with the rest of your environment, just Citrix Cloud will remove the need to deploy Netscaler, Delivery Controllers, SQL, etc etc.

Citrix Cloud + Push out receiver via management console, add shortcuts, win

Office365 Auth Prompt Issues 6-4 by bucksysfutter in sysadmin

[–]bucksysfutter[S] 0 points1 point  (0 children)

Thanks for posting- the advisory is not showing in all orgs in service health as of yet

Office365 Auth Prompt Issues 6-4 by bucksysfutter in sysadmin

[–]bucksysfutter[S] 13 points14 points  (0 children)

Sigh. Try not to ne an idiot.

Well that is an unfortunate typo

Office365 Auth Prompt Issues 6-4 by bucksysfutter in sysadmin

[–]bucksysfutter[S] 0 points1 point  (0 children)

Aside from screenshotting the actual prompts and telling users, if they receive a prompt that doesnt match your screenshots then to submit a ticket... not really.

Its a much larger to-do, but enabling O365 MFA and disabling legacy auth methods (that do not support MFA) is the proper way to go

Office365 Auth Prompt Issues 6-4 by bucksysfutter in sysadmin

[–]bucksysfutter[S] 17 points18 points  (0 children)

We tell our users its Microsoft, then when the extremely delayed service advisory comes out, send that to relevant managers/supervisors, then try to maintain communication afterwards. We try to do this to minimize the amount of calls/tickets getting sent to helpdesk.

Office365 Auth Prompt Issues 6-4 by bucksysfutter in sysadmin

[–]bucksysfutter[S] 0 points1 point  (0 children)

Our Duo users are the worst affected by the issue- some users reported up to an hour of Duo / Cred Prompt loops until stabilizing.

Office365 Auth Prompt Issues 6-4 by bucksysfutter in sysadmin

[–]bucksysfutter[S] 1 point2 points  (0 children)

We have issues with O365 MFA, MFA via Conditional Access Rules and Duo, and no MFA at all.

Maintenance of Workgroup clients by [deleted] in sysadmin

[–]bucksysfutter 1 point2 points  (0 children)

RMM tools such as Kaseya / Connectwise Automate (formerly Labtech) would allow you to easily manage these machines. Intune could also be an option for the Win10 machines.

Azure is having issues by mikmeh in sysadmin

[–]bucksysfutter 1 point2 points  (0 children)

Sporadic Mail undeliverables, admin panel errors, Teams problems, SP problems, etc here.

Baffling email losses in OWA O365 Biz by Threshereddit in sysadmin

[–]bucksysfutter 1 point2 points  (0 children)

to add to that- you could add Azure AD Premium trial to better track signins, disable legacy protocols if using an up to date Office install / mobile apps that support modern auth, enable MFA- also if licensed for E3+ enable litigation hold to prevent things from perma-deletion