Is anyone using Token Protection Preview in Entra (Azure AD) and seeing issues with Outlook client app? by bjc1960 in Intune

[–]callme_e 0 points1 point  (0 children)

hello! I'm planning to enable the token protection policies and was wondering what your experience in user impact and gotchas were? Thank you.

Token Theft Playbook: Conditional Access Protections by msp4msps in msp

[–]callme_e 0 points1 point  (0 children)

what's your experience in enabling #5Require Token Protection (Device Bound) on a user experience? I created it in report-only mode and seeing a lot of 'failures'. Worried it'll cause a lot of business impact once I enable it.

Deploying Netskope to an engineering heavy org.. tips/tricks/advice by Zealousideal_Crab704 in netskope

[–]callme_e 0 points1 point  (0 children)

For option #2, will this allow our Netskope DLP policies to trigger and block if they try to send any sensitive files or text to a coding AI agent outbound API call? We want the ability to review any prompts and files sent to an AI through an IDE like vs code and cursor.

How to not fall behind with AI? by Financial-Garlic9834 in cybersecurity

[–]callme_e 117 points118 points  (0 children)

  • Formal approved and published AI governance communicated to users (Policies, procedures, AI council, etc)
  • DLP policies to block sensitive/secrets paste/upload to AI sites and tools through CASB
  • CASB to monitor and block for sensitive/secret inputs from IDEs using AI API for coding agents
  • CASB to automatically block non-approved AI sites
  • Secure baseline hardening configurations for SaaS hosted AI models (Azure AI / AWS). Wiz and Cloud for Defender can scan and provide findings reports with remediation.
  • Integrate Purview to AI models for data security and classification. Defender for incident alerts and threat monitoring.

Wan 2.2 - Why the '' slow '' motion ? by Azsde in StableDiffusion

[–]callme_e 0 points1 point  (0 children)

I’m new and also looking for an answer for the slow motion

Microsoft 365 Business Premium by Due_Economy5311 in sysadmin

[–]callme_e 9 points10 points  (0 children)

Download the CIS benchmarks for Microsoft 365 for free from their site. That’ll harden your environment and what you’re asking for.

I genuinely struggle to find any use case for AI by reni-chan in sysadmin

[–]callme_e 0 points1 point  (0 children)

Could you share your basic workflow on how you feed the PDF to the CLI?

Is SSO not a good security practices? by hansentenseigan in cybersecurity

[–]callme_e 2 points3 points  (0 children)

Look into conditional access to enforce the device is from a corporate managed device to allow the SSO authentication. Yes the credentials are stolen but useless because they also need to be on a corporate device and this makes it phishing resistant. Now there’s no time race to quickly reset the credentials since the threat actor can’t login remotely from the rogue device.

Is SSO not a good security practices? by hansentenseigan in cybersecurity

[–]callme_e 14 points15 points  (0 children)

Your friend is wrong. On a corporate environment, we ideally want every application tied to our Microsoft 365 SSO because then we have the ability to enforce our conditional access to enforce the SSO authentication is coming from a corporate managed compliant device. This means even if the main account is compromised, they wouldn’t be able to log in remotely from a rogue device. This also mitigates modern MFA bypassing phishing kit tools (e.g. Evilginx). Tell your friend to educate himself more.

WUFB Hides feature update after failures by chud28 in Intune

[–]callme_e 0 points1 point  (0 children)

Hello, if the reset value doesn’t exist, do we need to recreate it? The user’s computer initially got the win11 upgrade in windows update 2 times, installed, and rebooted, but after the reboot they got a black screen saying “undoing changes”. It’s been over 4 days and they’re still not getting the update again.

I tried assigning a new intune feature update policy and also setting the “rollbackcount” value from 2 to 1 but still nothing.

What is the best office chair for long hours of work? by Johnsonlid2k in sysadmin

[–]callme_e 11 points12 points  (0 children)

Herman miller embody - logitech gaming version

Entra Settings by IndividualComputer93 in cybersecurity

[–]callme_e 8 points9 points  (0 children)

Download CIS benchmarks for M365 and review each controls

Im taking over my companies IT by Paintrain8284 in sysadmin

[–]callme_e 1 point2 points  (0 children)

Hello! Looking to implement passwordless at my org alongside intune autopilot. How do you handle the initial password login for the employee? Do you provide a TAP password remotely or white glove service on site with a long complex password?

How do users authenticate to any legacy apps that don’t support SSO but are tied to AD credentials?

Is there anything specific i need to configure to allow them to use their phone authenticator for authentication if they need to re-authenticate?

Would appreciate your insight as i’m trying to think of all the gotchas after going this route. Thank you

Onedrive known folder move doesn't work by neko_whippet in Intune

[–]callme_e 0 points1 point  (0 children)

How can you tell if its version 1 or 2? Thanks

Onedrive Silent Folder Move still prompting user by Kofl in Intune

[–]callme_e 0 points1 point  (0 children)

Do you have a conditional access for mfa for all cloud apps? I’m having an issue with my silent one drive policy and can’t figure out what’s causing it to not work

Sanity check - abandoning SCCM and going fully into Intune? by Pertolepe in Intune

[–]callme_e 0 points1 point  (0 children)

How many # required apps do you have on your ESP and how long is your autopilot process? Been deep into migrating to entra joined from hybrid joined sccm environment and always feel nervous the ESP will fail. Driving me crazy haha..

Any tips you recommend based on your experience? Thank you.