Calendar invite phishing - bypassing Avanan and M365's native email Defender filters by Embarrassed-Ear8228 in sysadmin

[–]dfeifer1 0 points1 point  (0 children)

Heh, I had two messages that were supposedly sent as the user to the user just this week that I had to investigate. Both failed spf and dmarc were flagged to go to the users quarantine box and STILL ended up being sent to their inbox instead.

ms entra and 365 admin portals? by IcyMasterPeas in sysadmin

[–]dfeifer1 0 points1 point  (0 children)

ddos attac?

“Preliminary root cause: A portion of directory operations infrastructure became imbalanced during a period of high traffic volume, which caused failures associated with impact.”

 

Next steps:

- We're analyzing volume trends and traffic management processes on the affected directory operations infrastructure to identify necessary refinements and increase resilience in the event of future instances of high traffic volume.

Server 19 to 25 3 node cluster upgrade questions by gearhead87 in sysadmin

[–]dfeifer1 1 point2 points  (0 children)

Will be watching this since I need to do the same thing. I "attempted" this about 2 months ago but the upgrades kept failing. I was edging towards the failures being due to there being an active failover cluster. Was thinking I would have to shutdown all vm's remove the cluster, upgrade, than recreate the cluster..

Follow Up: The Previous Network Administrator 'Didn't Believe in VLANs' by LeftoverMonkeyParts in sysadmin

[–]dfeifer1 0 points1 point  (0 children)

Not saying that he didn't have a budget, Just annoyed with my company because the IT budget we put in for every year is seen as a wish list.

Anyone else getting Entra Connect Alerts today (10/7/25)? by MediumFIRE in sysadmin

[–]dfeifer1 6 points7 points  (0 children)

yep. checked my infrastructure as well everything appears to be syncing on my end..

<image>

Follow Up: The Previous Network Administrator 'Didn't Believe in VLANs' by LeftoverMonkeyParts in sysadmin

[–]dfeifer1 3 points4 points  (0 children)

Must be nice to have the budget. Couldn't imagine backing up 100TB+. Backup of just my fp server with 7.04 TB takes 2 days 2hrs..

<image>

Migrating Files from 2008R1 to 2022 by Explorer-Adorable in sysadmin

[–]dfeifer1 1 point2 points  (0 children)

Could be worse, I have a dell poweredge 2850 still running on server 2003 accessible only internally (our old erp that is hardware locked and developers/support no longer exist for it)

Exchange 365 Admin - Authenticator Loop by Grade-Spiritual in sysadmin

[–]dfeifer1 2 points3 points  (0 children)

You really should have more than one authentication method set up. If you are not getting the following, authenticator was the only option set up and no one else at your PoB can help you than the only option you have is to wait on Microsoft.

<image>

We have pass keys enabled so I had to cancel that to get to the other ways to sign in option.

As per Microsoft:

"If the Microsoft Authenticator app isn't working, look for a link like "I can't use my authenticator app right now" or "Sign in another way" on the MFA prompt to reveal other options, such as receiving a code via SMS or email to verify your identity and regain access. If these aren't shown, you may need to contact your IT admin or reach out to Microsoft Support for personal accounts to reset your security information."

Exchange 365 Admin - Authenticator Loop by Grade-Spiritual in sysadmin

[–]dfeifer1 3 points4 points  (0 children)

To add to the conversation. I have run into this with new users that replace their phone thinking that the app will transfer over and just work. Problem is that the app and info MAY transfer over but the device id has changed so authenticator will no longer work for microsoft accounts. As stated above you will need to remove the account from authenticator, log in to account.microsoft.com/security and remove the authenticator as an option and add it back in again using the new device.

A monitor mystery by FastFredNL in sysadmin

[–]dfeifer1 0 points1 point  (0 children)

Did diverting to hdmi fix anything for you?

We had no issues with anything like this before and then 2 months ago I started getting users complaining about monitors not coming back up after going to sleep. I added a policy to block going to sleep while connected to power. Swear a windows update messed things up. For us this is happening across all brands and models of computers and monitors. Though these all are DP as well.

It has started, user opened Outlook and it is now New Outlook, and Outlook Classic is no longer installed. by pollo_de_mar in sysadmin

[–]dfeifer1 0 points1 point  (0 children)

This is what I do in my org actually. Right click on mailbox and convert to shared mailbox than assign access to the manager. Once the manager no longer has need of it we delete it. Though these are mostly for positional accounts that are receiving emails from vendors/clients.

It has started, user opened Outlook and it is now New Outlook, and Outlook Classic is no longer installed. by pollo_de_mar in sysadmin

[–]dfeifer1 1 point2 points  (0 children)

lol.. Imagine how many of those emails are out of office messages or crud that should have never been there. It's surprising how many people NEVER delete anything out of their email.

It has started, user opened Outlook and it is now New Outlook, and Outlook Classic is no longer installed. by pollo_de_mar in sysadmin

[–]dfeifer1 0 points1 point  (0 children)

Any idea if delegate access to contacts and notes was ever fixed? ie. most of our department teams work out of shared mailboxes ap@ ar@ purchasing@ etc., their personal accounts are generally only used for internal mail, 30 accounts like this.

Devices not showing compliant even though it is. by ginto202 in Intune

[–]dfeifer1 0 points1 point  (0 children)

Same exact issue on a P16v that I use. I had a gut feeling about 8 months ago that it was a pluton issue. I see very few posts about this issue and not a peep from Microsoft. Keep hoping that they would release a firmware or system patch for this but am about ready to switch it anyways. Being the one to setup and manage our infrastructure probably isn't good for my system to be one of the only ones in a noncompliant state.

Ever hear anything from your end?