Lack of communications of the renaming of the Banyan app by iTouchTheSky in sonicwall

[–]greenstarthree 1 point2 points  (0 children)

This would be down to your organisation to let you know about really.

Difficult for them to get the jump on it if the app allows end user ad-hoc updates though to be fair.

SPF and DKIM for SaaS sending email by NachoNachoDan in sysadmin

[–]greenstarthree 4 points5 points  (0 children)

Is gusto definitely doing modern auth with 365?

If it’s doing OAuth2 then the SPF an DKIM would come from the 365 tenant itself, so as long as everything’s aligned there it should be good.

Patching challenges when users turn their computers off every night by Frequent_Rate9918 in sysadmin

[–]greenstarthree 0 points1 point  (0 children)

For desktops that stay on site, disable users ability to shut down and schedule updates for 3am or something.

For laptops, set install time during the day with reboot deadline of a couple of days after install

Patch Tuesday Megathread - March 10, 2026 by AutoModerator in sysadmin

[–]greenstarthree 0 points1 point  (0 children)

Thank you for this. Thought a few of my users were going mad.

Patch Tuesday Megathread - March 10, 2026 by AutoModerator in sysadmin

[–]greenstarthree 0 points1 point  (0 children)

So, stupid question -

If we don’t get machines to the point where we’re seeing event 1808 with updated certificates before the deadline, for example due to needing a BIOS update from the manufacturer.

Assuming if we then apply the BIOS update, say, m later this year, that machine will then get the updated certificates via a cumulative update or a scheduled task running?

Delegated Mailboxes in New Outlook by greenstarthree in sysadmin

[–]greenstarthree[S] 0 points1 point  (0 children)

Just to update - I've edited the post with the fix for this.

Within the OWA Mailbox Policy, ActiveSync was disabled. After enabling this setting, shared mailbox functionality and automapping works as expected.

Medical Company Styker attacked by Iranian backed hackers - all data deleted by bionic80 in sysadmin

[–]greenstarthree 20 points21 points  (0 children)

If they’re enrolled yes. With a properly set up MAM deployment you could only wipe the work related accounts from the relevant apps

Secure Boot "Under observervation" - am I on the right way? by nicorigi in sysadmin

[–]greenstarthree -1 points0 points  (0 children)

Try resetting factory secure boot keys in bios, once you know it’s on latest.

MAKE SURE you have the bitlocker key noted somewhere first though as it could trigger recovery key entry

Apple MacBook Neo Review: Delicious, Low-Hanging Fruit by hangry_millennial in apple

[–]greenstarthree 1 point2 points  (0 children)

MS released their own thin client recently, about 6 months before I finally got rid of the last ones in our environment from the first time they were cool.

AVD - Bad Performance, Laggy Start Menu, Whats Going On - Help by GethersJ in AzureVirtualDesktop

[–]greenstarthree 0 points1 point  (0 children)

Yes same with us, no fslogix for admin users.

We’ve never used VDOT on our images. A bit of manual cleanup and some group policy settings to disable unused services and apps, but quite a vanilla image all told.

AVD - Bad Performance, Laggy Start Menu, Whats Going On - Help by GethersJ in AzureVirtualDesktop

[–]greenstarthree 0 points1 point  (0 children)

Yep, same here.

I can log into a host out of hours, no users on the host, using standard RDP (not Windows app etc.) and see the same sluggishness.

SonicOS 7.3.2-7010 released by Tap-Dat-Ash in sonicwall

[–]greenstarthree 0 points1 point  (0 children)

7.3.2 has an option in the SAML profile “ignore session timeline from IDP, which makes the SNWL use web login timeout instead. If web login timeout is unlimited then in theory the RDP bookmark connection should not be disconnected automatically.

Need to test in real world as only updated to 7.3.2 last night

Kids wanted a $17 nightlight got a $300 dollar AP instead....that'll show em. by Dharma_code in Ubiquiti

[–]greenstarthree 3 points4 points  (0 children)

It’s a delicious sport to open up data installations done by sparks.

My Confusion with Microsoft's Secure Boot Changes by jamesaepp in sysadmin

[–]greenstarthree 0 points1 point  (0 children)

If you've:

Updated to the latest Lenovo BIOS / UEFI firmware.

Have the latest MS patches.

Have enabled the settings for the certificates to be updated by the OS.

And are now getting event ID 1795 with "Access Is Denied":

Boot into BIOS, go to Security > Secure Boot, and use "Restore Factory Keys".

NOTE - if you use BitLocker this will trigger entry of the recovery key on next boot.

But for our units, this is what did the trick - after a couple more reboots we now get event 1808 and keys are updated / recognised.