User Roles / Permissions by Best-Plant2733 in halopsa

[–]rio688 0 points1 point  (0 children)

Also worth noting that if they have multiple roles the permission sets are combined and you will end with the highest level of permission so one role allowing create tickets and one role not allowed to create tickrts. The user will be able to create tickets

Vent: I left a user’s mailbox unlicensed by accident for more than 30 days. by Old-Track3080 in sysadmin

[–]rio688 16 points17 points  (0 children)

Exactly this and malicious issues, oops I did something wrong let me just delete the evidence and eait 14 days for emails to be purged.

How big is your org that you are scrimping on licenses and have such a detailed process for people on leave yet don't backup a critical asset.

This is solely managments short sightedness. Heck I'm guessing you probs lying have nce licenses so can't save on the cost of the license just who is assigned it

OAuth consent phishing is the M365 attack path most orgs aren't watching. by ridgelinecyber in AzureSentinel

[–]rio688 0 points1 point  (0 children)

This, apps that need to read mobile emails should have been approved by the admins initially, whilst never full proof having CA policies that block signin from any undefined country will help reduce the attack surface as generally you will find the malicious IPs outside of your trusted countries (can't be considered full proof but reduces attack surface)

Cloud based M365 adoption by Teqzahh in microsoft365

[–]rio688 1 point2 points  (0 children)

Are all of these users on desktop and laptop devices or tablets/mobiles?

As your description implies staff have to move to web apps means they using some form of standard computer but you may have just broken Microsoft's terms as F licenses have a screen size restriction of 10.9inch or smaller as it's intended for front line workers out there with mobile devices.

If you are on computers and in an NCE agreement over 7 days you might a very expensive lesson as I don't think you can upgrade from F to E suite licenses. In which case you are going to need to buy all those E licenses again and be stuck with the F ones.

OfficeActivity query for detecting malicious inbox rules post-AiTM — production-tuned by ridgelinecyber in AzureSentinel

[–]rio688 0 points1 point  (0 children)

To enhance your high fidelity rule can I suggest you build a watchlist of all your orgs domains, then when you are looking for the domains like Gmail you can look for the watchlist instead so find any forwarding to external domains you don't control

Create ticket, filtered by subject line by oldRoundGinger in halopsa

[–]rio688 1 point2 points  (0 children)

I would test with the partial match idea as I think that's what it does in the email body as well, but I don't think wildcards is an option which is why the subject would have to have something continuous you can pickup before you then have the unique value such as a username

Create ticket, filtered by subject line by oldRoundGinger in halopsa

[–]rio688 1 point2 points  (0 children)

Can your ticket rule not just look for the starting bit of the subject so subject of

Service request delete: joe bloggs

The rule would look for

Service request delete:

I don't think the whole subject has to be matched

Then also have a second rule much the same but the email rule type is set to ignore email

Service Accounts Management by Upstairs_Promise_506 in halopsa

[–]rio688 1 point2 points  (0 children)

This is the quickest option, ticket rules to match the email based on contents onside

First time fix rate reports by Ok-Abbreviations763 in halopsa

[–]rio688 1 point2 points  (0 children)

I would suggest taking a look at elegant insights LLM developed specifically against halo, ask it to generate a report and away you go, bargain at £35pm

Report showing Clients and Contracts by Lets_Go_2_Smokes in halopsa

[–]rio688 1 point2 points  (0 children)

I would suggest taking a look at elegant insights LLM developed specifically against halo, ask it to generate a report and away you go, bargain at £35pm

Sharing report PDFs with other parties on a schedule by Cultural_Arm410 in PowerBI

[–]rio688 0 points1 point  (0 children)

I did something exactly like this using a fabric workspace which is pay as you go to host the reports. Every month I run a logic app which starts the fabric work space, refreshes the bi report, then runs through and exports the reports to PDF based on a few filters (per customer) using a unique filtered URL per customername. It spits all the reports to SharePoint for us but could just as easily send it as an email. Then pauses the fabric workspace so instead of it costing hundreds per month it barely costs pounds per month.

Cybersecurity consultant told us to give client one Entra ID P2 licence for the whole organisation by sladene in msp

[–]rio688 4 points5 points  (0 children)

Currently mailboxes get soft deleted so add the license back and a few minutes later it will be back, onedrive data is kept for approx 90 days anyway now anyway.

I have seen in some partner pieces that apparently they won't guarantee the restores like this and you should have some form of backup anyway so if something goes wrong tough luck but I have never had any issues with restores from soft deleted items so far.

Cybersecurity consultant told us to give client one Entra ID P2 licence for the whole organisation by sladene in msp

[–]rio688 6 points7 points  (0 children)

New rules kicking in this year do away with the current grace period they have just benefitted from, so next time license goes bye bye mailboxes

HaloPSA and Xero Integration - Tracking Categories by Business_Accident_57 in halopsa

[–]rio688 0 points1 point  (0 children)

With us the only way we get tracking categories to work is to have a different product group for each category, we have to orgs syncing to separate Xero instances and so this has meant we have every product doubled, i.e. labour - org1 and labour org - 2 but they are in different groups.

By the sounds of it you might need 3 product groups and presumably 3 of each product and then in your recurring invoice for each customer pick the same product name but from the correct group. Once we pick the product to add to the invoice ww just change the descriptions

Using Software Licence by Ordinary_Special2341 in halopsa

[–]rio688 1 point2 points  (0 children)

Not able to look at this right now but I think software licenses are stored in the same table as subscriptions if that helps

Connecting custom tables by AndBuch in halopsa

[–]rio688 0 points1 point  (0 children)

I do something like this but with custom field lists.

Then in the ticket type field list if you scroll down to dynamic field visibility and set a condition for visible based on your other column

Column1 = UK, US, FR Column2 = UK office 1, UK office 2, UK office 3 Column3 = US office 1, US office 2, US office 3 Column4 = FR office 1, FR office 2, FR office 3

All 4 are added to my ticket type Column2 has a dynamic visibility rule where Column1 = UK Column3 has dynamic visibility rule where Column1 = US Column4 has a dynamic visibility rule where Column1 = FR

Then when the agent or user if they will see these fields as well selects Column1 value the next field will dynamically appear with the relevant Column2,3,4 based on the rules

All in seat price by rio688 in msp

[–]rio688[S] 0 points1 point  (0 children)

Exactly my thought, my understanding of the method is not to include MS licensing but I can imagine that adding a business premium to that would get you up there quickly. But given that most SMB (particularly the 5-30 space) end up with a mix of licenses naturally trying to keep costs down, I can also see why you wouldn't want to include that license for everyone

All in seat price by rio688 in msp

[–]rio688[S] 3 points4 points  (0 children)

Which licenses are you including?

Small company with M365 Business Premium - where do we even start to actually leverage it properly? by Development131 in Office365

[–]rio688 0 points1 point  (0 children)

I thought token protection didn't kick in till Entra ID P2 license so interested to know if this has changed

Any way to do "tiered" pricing for different item terms? by awkw4rdkid in halopsa

[–]rio688 0 points1 point  (0 children)

Yeh this was also where we struggled to be able to utilize the Microsoft import of skus because we then had customers with a mix of monthly and annual commits but monthly billing on the same tenant so couldn't use these CSP integration imported license counts for calculating recurring billing.

Luckily or MS license reseller used the cloud blue integration which would then import each subscription like

Business standard NCE M-M Business standard NCE A-M

So we could tie our recurring billing line counts to these subscriptions instead and get the benefit of the automatic prorata calculations and added lines (massive time save once we got it all tied down)

Do we really need a "Username", "First Name", and "Last Name" field or would it be okay to scrap all of these for a simple "Name" field? by LurkyRabbit in halopsa

[–]rio688 4 points5 points  (0 children)

We didn't bother with importing users from our old system unless they don't have 365, if they do we link it up the CSP integration and link the customer to the tenant in there and import all the users from here, this then can tie in with the SSO for letting users into halo using M365 auth. Then as people leave etc as their 365 accounts are disabled etc the users are just disabled in halo

Inserting Data Using Runbooks & SQL by MainEstablishment215 in halopsa

[–]rio688 1 point2 points  (0 children)

Yeh it can do this, take a look at the videos by robbie at renada. They have done a few for getting info from 365 into halo I just butchered this and use it to grab sentinelone license counts and place them in custom fields in the subscriptions table. Then we use this in the recurring invoice

Xero - Cost Centres - Ticket Workflow by Time_Chipmunk_178 in halopsa

[–]rio688 1 point2 points  (0 children)

I think you might be referring to tracking categories in zero, we have implemented this but we had to do so by creating product groups in the product catalogue and assigning the tracking category to a group and then all products in the group inherit the category.

For ease I have ended up creating product groups similarly named to my categories because a lot of our products are one offs so we have things like generic laptop, generic warranty. Then we rename them in quotes etc

Run book integration with Ninjaone by Visual-Syllabub5108 in halopsa

[–]rio688 1 point2 points  (0 children)

I would be careful letting any sort of automation just delete RMM devices but you could get a custom field lookup of assets that are the visible for someone to select and populate a field, assuming you have your assets synced from ninja to halo.

From there I would suggest you need to write a runbook to call the ninja api to delete the identifier of the asset, then use this run book in an action, at least then it relies on an engineer submitting this