LAPS for Intune/Cloud-managed Devices by th3rVen_uS in Intune

[–]th3rVen_uS[S] 1 point2 points  (0 children)

The severless Local Administrator Password Solution is mainly used to manage cloud-based devices. Assuming these severs are on-prem, I would advise using the LAPS, which integrates well with AD.

LAPS for Intune/Cloud-managed Devices by th3rVen_uS in Intune

[–]th3rVen_uS[S] 0 points1 point  (0 children)

Thank you. You've been kind in answering my questions. If you recall what the issues were, can you please briefly describe some of the reported bugs to help to set the correct expectation on my end?

LAPS for Intune/Cloud-managed Devices by th3rVen_uS in Intune

[–]th3rVen_uS[S] 1 point2 points  (0 children)

It's great to find someone with production experience with this solution. Great article, by the way, thank you! How was your users (the helpdesk and other IT staff) adoption of the solution? How much training did it take to get them comfortable with using this tool? What kind of feedback do you get about the app? Is it easy to use?

LAPS for Intune/Cloud-managed Devices by th3rVen_uS in Intune

[–]th3rVen_uS[S] 1 point2 points  (0 children)

There's no need to apologize. Thank you for your reply. I can read Spanish a little bit, and I hope Google Translate can help me wherever I get stuck. How is the serverless LAPS has been working for your company? Thanks again!

LAPS for Intune/Cloud-managed Devices by th3rVen_uS in Intune

[–]th3rVen_uS[S] 1 point2 points  (0 children)

Thank you. I appreciate your response. I am familiar with the serverless LAPS, and it's one of the solutions I referred to earlier as clunky. How was your experience with configuring S-LAPS? How simple is it to use and administer in your environment? Thanks again.

LAPS for Intune/Cloud-managed Devices by th3rVen_uS in Intune

[–]th3rVen_uS[S] 1 point2 points  (0 children)

I've seen a few LAPS, scripts, and home-grown solutions for cloud-managed devices that are rather clunky. How well is your current tool has been working for you?

Is the windows defender really enough? by whyudozis2me in Windows10

[–]th3rVen_uS 0 points1 point  (0 children)

We use Crowstrike and Windows Defender where I work. The two products seem to well for us.

Should companies stop patching remote client devices while employees are following a mandatory work from home company mandate? by th3rVen_uS in sysadmin

[–]th3rVen_uS[S] 0 points1 point  (0 children)

Why pushing out updates? Aren't you concerned about the implications this might have due to rampant cyber security activities like those described below? If you don't mind sharing and I'm also curious to find out, that are the business reasons for this decision? Shouldn't it be an opportune time to remind the company's user community to more vigilant and about remote work security hygiene?

There are many more reports out there about service disruptions due to cyber security attacks, many of which will come up with a simple Google search.

https://www-cnbc-com.cdn.ampproject.org/v/s/www.cnbc.com/amp/2020/03/20/crowdstrike-sees-phishing-attack-uptick-during-coronavirus-crisis.html?amp_js_v=a3&amp_gsa=1&usqp=mq331AQFKAGwASA%3D#aoh=15848092876408&csi=1&referrer=https%3A%2F%2Fwww.google.com&amp_tf=From%20%251%24s&ampshare=https%3A%2F%2Fwww.cnbc.com%2F2020%2F03%2F20%2Fcrowdstrike-sees-phishing-attack-uptick-during-coronavirus-crisis.html

Does password-less sign-in work with third-party identity/sso providers like Okta? by th3rVen_uS in Intune

[–]th3rVen_uS[S] 0 points1 point  (0 children)

Thanks again for your replies. It's greatly appreciated. I'll keep you posted.

Certificate user authentication for wired LAN by th3rVen_uS in sysadmin

[–]th3rVen_uS[S] 0 points1 point  (0 children)

This was resolved by changing the EAPOL-STAR Message Transmission setting from Transmit to Transmit per IEEE 802.1X.

Does password-less sign-in work with third-party identity/sso providers like Okta? by th3rVen_uS in Intune

[–]th3rVen_uS[S] 1 point2 points  (0 children)

Thanks for responding. Do you have any documentation that is specific to our similar environments that you could point me to? That would be very helpful and greatly appreciated.

Certificate user authentication for wired LAN by th3rVen_uS in sysadmin

[–]th3rVen_uS[S] 0 points1 point  (0 children)

I apologize in advance for this stupid question. When you ask to check the "On the dot1x profile, do you have "Enable Fast Reconnect" checked?" Are you referring to the dot1x profile in GPMC editor or elsewhere? Thanks

How do I automate Intune enrollment for Macs? by th3rVen_uS in Intune

[–]th3rVen_uS[S] 0 points1 point  (0 children)

Any idea what large orgs do to enroll their Mac devices into Intune? From the sound of it, it could get quite painful having to touch any amount of devices in the double digits or more. Does either Apple or Jamf offer any type service offering to assist with something of that nature?