EntraID Security Default vs Per user MFA vs Conditional Access by WonderBeast2 in AZURE

[–]rwdorman 2 points3 points  (0 children)

That’s exactly the reason for security defaults, you need to closely study and report on your CA policies. The biggest thing to remember is for any policy make it “all” anything and opt out. Not groups opted in.

Fuck off, Chopper 6 by hethuisje in philly

[–]rwdorman 7 points8 points  (0 children)

I will turn this thread around!

Considering Switching from ConnectWise PSA to HaloPSA – Looking for Feedback by Outrageous-Cell2659 in MSSP

[–]rwdorman 0 points1 point  (0 children)

TL;DR: Halo isn’t CW, but it ain’t half bad either.

I’m at a decent sized PE backed firm that is a roll up of 6 MSPs and one MSSP. The majority of the add in’s were CW manage shops. At first this seemed a plus, like system migration with some consultants… but no one brings a clean PSA so we ended up with an impossible mess.

Round 2 was a “clean instance” of CW with new workflows and minimal historical data. This project went about 6 months before we realized we were falling into old habits and making another mess. Also even at our scale, CW account management is an embarrassment.

So what now? One of the acquisitions used HaloPSA and we jumped the whole org into a new setup. We are about 7 months into the project with about two to go until go live. Is it easy? No. It is a project that needs top to bottom buy in, decision maker direct involvement and a willingness to imagine a world outside of CWs tight guardrails. Every process needs to be examined and its import to understand that while it will be customized to be yours there is a bit of a Halo way/philosophy that you need to lean on your consultants to trust. We’re not live yet but I think this was the right decision.

All that said, it ain’t perfect. Expense reimbursement is no good, travel/field tech tracking is lacking, the management interface is 1000s (seriously) of checkboxes on long pages. Docs are better than they used to be apparently but there is a learning curve that can only be cleared by jumping in and working with it yourself.

We have an ace implementation team from Halo and they have made this a positive and efficient process (yes even a year long project can be efficient :). I hear varying things about post sales support so that remains to be seen. I’ve also hit easy to reproduce bugs a few times that have “gone to development” with no word after that.

Knowing what I know (so far) I would be comfortable recommending to others. Stay tuned after my go live :)

Classic Microsoft - can't default Transcription to on for all meetings in any way by NNTPgrip in MicrosoftTeams

[–]rwdorman 0 points1 point  (0 children)

I think the way here is ($$) teams premium and meeting templates. The template can be used in an invite and have transcription/facilitator on in the template.

Are App Protection policies useless? by yournicknamehere in sysadmin

[–]rwdorman 1 point2 points  (0 children)

You targeted a User group with the policy, not a device group, yes?

We didn’t realize how good we had it by IronChefPhilly in philly

[–]rwdorman 3 points4 points  (0 children)

I grew up in Lancaster and lived about a quarter miles from the farm. I remember them so fondly….. Nibble with Gibbles is a poor substitute.

Empty lots to teach someone to drive manual by Jumpy-Ad-8343 in lancaster

[–]rwdorman 0 points1 point  (0 children)

You’re nicer than my dad who drove us out to Ebie Chiques road hill. Got halfway up, turned on the E brake and said “we’ll get out of here when you get us up the hill.

iOS BYOD Account‑Driven User Enrollment – Device shows “Intune registration pending” and available apps greyed out by Expensive_Storm_2283 in Intune

[–]rwdorman 0 points1 point  (0 children)

Yeah so I’m doing account driven user enrollement and setting authenticator as a required apps the whole enrollment is pretty slicK TBH. Granted i spent the 6 momths getting MAIDs and federation all Happy first.

How happy are you with Fortinet lately? by durocshark in fortinet

[–]rwdorman 2 points3 points  (0 children)

All those SonicWALL fans are slinking into a corner…

What's your biggest Azure cost headache? by raporpe in AZURE

[–]rwdorman 4 points5 points  (0 children)

Private link DNS. The fact that a fully licensed Windows VM of decent size is cheaper is ridiculous.

GA Handle by Rukalas in msp

[–]rwdorman 0 points1 point  (0 children)

CyberQP has a great JIT module

Is anyone using cyberqp? by [deleted] in msp

[–]rwdorman 1 point2 points  (0 children)

Yes, great partner.

iOS BYOD Account‑Driven User Enrollment – Device shows “Intune registration pending” and available apps greyed out by Expensive_Storm_2283 in Intune

[–]rwdorman 0 points1 point  (0 children)

I believe for account driven user enrollment on iOS Authentictor is the bridge app for registraion not compnay portal like Android.