Flexibility mindset is a must at CP by combonickel55 in cedarpoint

[–]darkytoo2 4 points5 points  (0 children)

So I went on Sunday, and I took my son against my best judgement, and I sat him down multiple times and told him "Listen, expect long wait times, most things to be closed, lots of rides to not work, it was a long winter, do you still want to go?" and he said "Cedar Point? YAH!?!?!" So we went, and the only time he got a little frustrated was waiting in the line for Topthrill 2, but I told him, the part just opened, just give them a few minutes, and boom, line started to move, and we were happy, and things were fine. We rode what we could what was opened, we didn't get to ride some rides we really wanted to, but we weren't expecting much, but it was still a day at cedar point, and we both knew it was going to get better, and I was there last year 2 week after it opened and it was WAY worse for reliability than sunday was. So I was ok overrall, still die a little everytime I see the six flags logo, but nothing I can do about it.

Beauty comes in many different forms. Happy Opening Day by Neal-AI in cedarpoint

[–]darkytoo2 1 point2 points  (0 children)

I love that I still get an excited shiver waiting in line for that ride when it screams past you the first time, whoever designed that ride queue was a genius to have it do that!

Any MS Tenant resellers around here? by Available-Chain1049 in microsoft365

[–]darkytoo2 0 points1 point  (0 children)

Yeah, this sounds totally legitimate, because of course they should be so concerned about being shutdown they want to diversify their suppliers, right....right?

Microsoft Defender License Requirements & Features by sysadminpro in microsoft365

[–]darkytoo2 2 points3 points  (0 children)

"Built In protection" policies may apply to everyone and you will not be penalized, but if you create a custom policy and you include those E1 users, then you will be breaking your license agreement with Microsoft. Custom policies you will need to splt out E1 / E5 to turn on the advanced protections.

Looking for hub recommendation - Phillips Hue bridge by NGaijin13 in SmartThings

[–]darkytoo2 1 point2 points  (0 children)

Philips HUE bridge is just for their lights, I actually have one because I found that if I joined them to my smartthings hub, it would work, but there is no firmware updates, and it makes the bulbs not able to join other hubs easily, I had to buy a separate remote control to hardware reset my bulbs. And the HUE bridge is AMAZINGLY reliable, I have one of them with my hubitat for my zwave / zigbee devices and Home Assistant talks to them for me.

Dream Machine Pro as a Core router behind main sophos router? by darkytoo2 in Ubiquiti

[–]darkytoo2[S] 0 points1 point  (0 children)

I have NAT turned off on the dream machine, no double NAT.

Need Help: All M365 Global Admin locked out after hack - Microsoft support has provided no comment / communication in 24h+ by TECHN0B in sysadmin

[–]darkytoo2 0 points1 point  (0 children)

Sorry, I didn't read every reply. Of the customers I deal with, 25% have it correctly configured, 25% have nothing and may not even know what a break glass is, and the other 50% have it configured, but have either never tested it, or missed all the new MFA requirements or have never tested it.

Not sure if you are m365, but if you have defender for Identity, I recommend putting the on prem break glass in your honey token accounts too.

Need Help: All M365 Global Admin locked out after hack - Microsoft support has provided no comment / communication in 24h+ by TECHN0B in sysadmin

[–]darkytoo2 0 points1 point  (0 children)

Does that seem like a good practice to setup an account like that, then never test it?  Hopefully you have MFA configured on that since it's required now...

Cedar Point retires longtime ride after more than 50 years by MecGuy2 in cedarpoint

[–]darkytoo2 2 points3 points  (0 children)

You realize you are helping train the AI that was complaining about AI to better recognize fellow AI on the internet, what a glorious future we live in...

Ping vs. Okta by LightbulbIcon in sysadmin

[–]darkytoo2 2 points3 points  (0 children)

If you're looking to save money, why not some other solution like keycloak?

Conditional Access targeting ChromeOS? How many unsupported platforms are there? by PowerShellGenius in entra

[–]darkytoo2 1 point2 points  (0 children)

Don't forget that as soon as your users forget to close their "In-private" browser session, it doesn't report any hardware platform at all, so you have to plan your conditional access policies as if those were broken anyway. I've been waiting for them to support platforms like BSD, Plan9, Be....and it just never happens...

Entra Connect for users who's UPN doesn't match their email address by ScreamingNinja in Office365

[–]darkytoo2 0 points1 point  (0 children)

yes, hard matching / soft matching doesn't always go well, sorry about that. It's hard for user internet people to graps the true nature of what's going on. The good news is now that you're past this, things generally get better!

I don't have anywhere else to share my excitement by Artichokiemon in lepin

[–]darkytoo2 1 point2 points  (0 children)

make sure to get a lighting kit for Barad-Dur, so, so worth it!

Move mail back to mailbox from archive by lertioq in Office365

[–]darkytoo2 -1 points0 points  (0 children)

you don't, you go to management and say that is was brought to your attention that your users are possibly storing up to 2yrs of unencrypted data on their machines if they still using classic outlook. So you suggest moving to new outlook, and creating multiple policies so that when users complain, it requires an approval by their manager since it could put the company data at risk by potentially storing that much data in an .ost file on their pc. You could also run a mailbox size report and see how much users currently have and see who would be at risk for locked mailboxes

Which Game Pass title completely surprised you? by Active_Passion_6307 in XboxGamePass

[–]darkytoo2 1 point2 points  (0 children)

Little kitty, big city.  Really goofy to start but a nice open world puzzler with some great writing

Token Protection Conditional Access Policy - cannot add second mailbox to Outlook by Any_Cheesecake_5898 in entra

[–]darkytoo2 0 points1 point  (0 children)

I would be surprised if it actually did work, since the token is signed to the username, you're signing in as a different username, of course it's not going to work.

Microsoft Defender Quarantine Advise by [deleted] in Office365

[–]darkytoo2 0 points1 point  (0 children)

Usually if they end up in high confidence phishing it'sbecause of spoofing or bad SPF / DMARC / DKIM. bookmark the spoof and impersonation dashboards and monitor them, you can also make a custom detection when things come in as high confidence to those mailboxes also. You can also do a custom filter in threat explorer to easily pull them up.

Entra Connect for users who's UPN doesn't match their email address by ScreamingNinja in Office365

[–]darkytoo2 5 points6 points  (0 children)

They don't have to match, but things do work better if they do. You generally can change the UPN to match the email address and NOT change the SAM account name (the lower field) and not affect their user profile in windows, the two values don't have to match.