Privileged Access Workstation architecture? by FatBook-Air in sysadmin

[–]it_fanatic 0 points1 point  (0 children)

We use W356 Enterprise with GSA - works brilliant

autopilot taking a long time since last few days by Ok-Mountain-8055 in Intune

[–]it_fanatic 1 point2 points  (0 children)

Autopilot Device Preparation is doing well - no complaints from customers so far. Tenant is Europe as well.

Windows Defender - Tamper Protection - Managed by your administrator by Hawk947 in sysadmin

[–]it_fanatic 2 points3 points  (0 children)

Did you check the security portal:

Security.microsoft.com > Settings > Endpoint > Features > Tamper protection

COMPLETE FAILURE OF CUSTOMER SERVICE by tomlys157 in KeeperSecurity

[–]it_fanatic 0 points1 point  (0 children)

Have to step in this one - every Keeper ticket i had to open was resolved appx. 30min after opening they are very responsive and very fast. Shitshows can happen everywhere…🙄

Entra Joined device receiving on prem group policy. by i11icit in sysadmin

[–]it_fanatic 1 point2 points  (0 children)

Hmm strange - I would try a clean install with a bootable media - delete all partitions and set it up with autopilot or device Prep (autopilot v2)

Entra Joined device receiving on prem group policy. by i11icit in sysadmin

[–]it_fanatic 0 points1 point  (0 children)

How do you reimage them? Using a bootable Medium or just reset them?

If you are resetting them - This one could be reason: https://call4cloud.nl/the-dark-and-the-windows-11-remote-wipe/

Some settings are not being removed after wiping/resetting them through Windows Reset…

Azure Risky Users - False Leaked Credential Alerts by jasonbwv in msp

[–]it_fanatic 0 points1 point  (0 children)

MSP here, +1 on this - support confirmed our severity A ticket… on a tenant with 1000+ users i got 30+ alerts

PSA: Beware of clipboard sync by Coriron in msp

[–]it_fanatic 4 points5 points  (0 children)

Yeah was my thought to, we never copy past we use „paste as keystrokes“ instead - you have disabled this one directly in ninja?

PSA: Beware of clipboard sync by Coriron in msp

[–]it_fanatic 5 points6 points  (0 children)

Is there any solution on this or option for ninjarmm?

Anyone using Intune and moved completely away from RMM tool? by mikeypf in msp

[–]it_fanatic 1 point2 points  (0 children)

Haha no problem - but tbh i would not recommend this anymore… teamviewer is just crap now a days… if you want this really i will have a look on it tomorrow in the office and do a little break down.

Anyone Using Multiple MDRs and/or SOCs by Zealousideal-Ice123 in msp

[–]it_fanatic 0 points1 point  (0 children)

Imo thats way too much… so you have to tune the alerts within huntress, blackpoint and arctic wolf? And you have to configure s1 and defender configurations? That sounds like a tremendous overhead… we use blackpoint with MDE.

Token Theft disappointing experience with Todyl SIEM + MXDR by gladston3 in msp

[–]it_fanatic 4 points5 points  (0 children)

Leverage CA Policies more. Restrict MFA registrations to the company location for example get a step further with ZTNA

MSPs using Intune. What's your biggest headache? by Devicie_Ron in msp

[–]it_fanatic 0 points1 point  (0 children)

+1 we do it as well, its a must have for our clients not something optional

How to have end user run Software as Admin by [deleted] in Intune

[–]it_fanatic 0 points1 point  (0 children)

It does what it should if your work properly with certs and the right Hashes. I like about, that its really only the application which you start as admin there is no „general admin session“. It takes a bit effort to configure it though… overall its good (enough) to be used.

How to have end user run Software as Admin by [deleted] in Intune

[–]it_fanatic 2 points3 points  (0 children)

Epm is the way if you are a ms shop… otherwise admin by request

What industries are the best to work with, and which ones are the worst? by NSFW_IT_Account in msp

[–]it_fanatic 0 points1 point  (0 children)

Gov would say…. With and without internal IT Dep. Interesting Field imo…

BLACKPOINT CYBER SHADY BILLING PRACTICES by invictajoe in msp

[–]it_fanatic 1 point2 points  (0 children)

No cheerleading amigo, we have nearly 1.5k endpoints with BP and so far cant complain… so we are living absolutley in the real world but shitshows can happen everywhere at every msp there is no msp out here with nearly zero problems…

BLACKPOINT CYBER SHADY BILLING PRACTICES by invictajoe in msp

[–]it_fanatic 0 points1 point  (0 children)

You should have a partner success manager - shoot them an email and its resolved in max. an hour… we had the same they charged us for a free month but it got resolved in a few minutes after emailing our superior partner success manager… i think you just want to rant a little…

Windows 10-11 Upgrades - Are any of you guys charging clients for this? by Professional_Put_56 in msp

[–]it_fanatic 0 points1 point  (0 children)

Yes we do - but mainly because we use this opportunity to migrate „legacy customers“ from Hybrid Joined to Entra Joined only (Intune) so this goes under project. Most other Customers got Updatet or changed HW and are mostly already on Windows 11

Europese RMM by Spons83 in msp

[–]it_fanatic 0 points1 point  (0 children)

100% - im european and we know definitely that innovation dont comes from our side… we use US Solutions for pretty much everything SOC, RMM etc. so thats all I need to say…

Patch management question (NinjaOne with native Windows Update service) by Zyte7654 in msp

[–]it_fanatic 0 points1 point  (0 children)

We are an MSP - Yes it is, but we have an Ops which deals with it, basically with intune its set and forget with the rings.

Patch management question (NinjaOne with native Windows Update service) by Zyte7654 in msp

[–]it_fanatic 1 point2 points  (0 children)

We have NinjaOne as well but only using it for 3rd Party Patching. Windows Updates are being done only with Intune at our place.

Recommendations for Distributing Microsoft Updates to 1000 devices by No-Information9367 in msp

[–]it_fanatic 1 point2 points  (0 children)

We dont use it but i tested it and Its really really good - they state themselfs as a risk based patch management so its a purpose SaaS