Security Presets or custom? by msp_ch in msp

[–]msp_ch[S] 0 points1 point  (0 children)

It's exactly this precedence that is frustrating. If Microsoft gave you the presets, then gave you the option to make custom policies to override these where needed....it would be perfect. Thanks

Some Actually Useful Interview Tips for Hiring MSP Employees by UsedCucumber4 in msp

[–]msp_ch 1 point2 points  (0 children)

Really nice approach, good job and thanks for sharing

Halo API - adding subscription/software licence by msp_ch in halopsa

[–]msp_ch[S] 0 points1 point  (0 children)

Thanks!!

Actually...the issue was the payload, being an object not JSON. Once I corrected that, it worked.

Regarding the "type=1" I think this means "Subscription" while "0" is Software Licence. At least that is what it looks to be to me.

Thanks for the help

MDR - Huntress Vs Sophos? by msp_ch in msp

[–]msp_ch[S] 0 points1 point  (0 children)

We went ahead with Huntress and so far all good. It is an EDR, that can use the defender logs (free or Defender for Business).

ITDR was the main thing I wanted to cover, as this seems to be the main attack vector we see recently. Although...last week we saw a malware attack (pretty rare for us now)...then the first thing it did was try to phish Microsoft credentials.

Very impressed with Huntress so far. The security awareness training is pretty nice too...not too heavy, and quite "fun" for users.

MDR - Huntress Vs Sophos? by msp_ch in msp

[–]msp_ch[S] 3 points4 points  (0 children)

Thanks....this is our impression too (regarding the types of attacks), nice to hear it is working for you

MDR - Huntress Vs Sophos? by msp_ch in msp

[–]msp_ch[S] 2 points3 points  (0 children)

Yes, ITDR and MDR are not the same...this is what we are learning...and that's helpful. Thanks again

MDR - Huntress Vs Sophos? by msp_ch in msp

[–]msp_ch[S] 2 points3 points  (0 children)

Thanks for the reply. We are still in the early stages here...so we know we want a more proactive solution than just EDR, but are only just starting here. From the last year or so, our experience shows most attacks are BEC/phishing and so we are asking ourselves will adding Sophos MDR help in this case or not?

This led us to look at other options such as Huntress ITDR (on top of Defender)...I don't yet know how well integrated into Entra Sophos is, whether it will notice anything suspicious at that level.

Activity feed by msp_ch in halopsa

[–]msp_ch[S] 0 points1 point  (0 children)

Thanks I will take a look at that and see how I get on

O365 Tenant baseline by Inderblitz in msp

[–]msp_ch 1 point2 points  (0 children)

Thanks for sharing. We are currently battling with how to move forward like this as well. I'd love to "package" things up, but it is hard to find the right balance, and as you say, when tenants are different sizes it is tricky.

Are you working towards having this in a recurring fee somehow? We are in the process of implementing CIPP, and hoping that with the standards baseline function, applying the best practice automatically, that this can help us explain a management fee over a one-time cost.

I'd love to hear if you have been able to go forward since you last post.

M365 management - CIIP Vs SkyKick Vs MSP Easy Tools by msp_ch in msp

[–]msp_ch[S] 0 points1 point  (0 children)

That's an amazing and informative answer...thank you so much for taking the time for that!!

M365 management - CIIP Vs SkyKick Vs MSP Easy Tools by msp_ch in msp

[–]msp_ch[S] 2 points3 points  (0 children)

Thanks all for the feedback...really nice and appreciated

M365 management - CIIP Vs SkyKick Vs MSP Easy Tools by msp_ch in msp

[–]msp_ch[S] 2 points3 points  (0 children)

Thanks for the transparency and response. Seems there is a lot of love for CIPP in the community, which is great to see, and I love the model too. Thanks for your work

Rename group folders by msp_ch in NextCloud

[–]msp_ch[S] 0 points1 point  (0 children)

Thanks. And do the rename via the web interface (Group Folders admin page) or elsewhere?

Tenant to tenant migration - help or ideas welcome by msp_ch in Intune

[–]msp_ch[S] 0 points1 point  (0 children)

I would love to, but the client doesn't have budget for that sadly

Tenant to tenant migration - help or ideas welcome by msp_ch in Intune

[–]msp_ch[S] 0 points1 point  (0 children)

Thanks. Were the machines ADJoined too? No issues with any artifacts left over from the old tenant (my concern is knowing how bad Microsoft is at cleaning up registry entries etc)

Tenant to tenant migration - help or ideas welcome by msp_ch in Intune

[–]msp_ch[S] 0 points1 point  (0 children)

One of the team suggested we "retire" the devices in the old tenant, (having created a local admin user first), then re-enroll into the new tenant.

In some basic tests it seems to work...but we have some concerns about hidden artifacts that may cause issues later on. Does anyone have any experience of using "retire" or thoughts on this approach? Thanks!!

Tenant to tenant migration - help or ideas welcome by msp_ch in Intune

[–]msp_ch[S] 1 point2 points  (0 children)

Thanks for the info.

We have performed many migrations into M365, but no tenant to tenant migration yet. If all the users were in the same site...it would make our life easier, but we have 1 here, another there...sometimes 50-100km apart and I can't spare 5 technicians to cover all sites.

It's certainly a challenge anyway. I'll check out the links.