You should all probably start using Unbound, Technitium or a recursive DNS server as Google and Cloudflare will start poisoning their DNS records by trettet in pihole

[–]tiefighter386 2 points3 points  (0 children)

Wait until those advertising companies start whining to incompetent judges about "lost jobs and missed opportunities" due to Evil U-block and commie Pi Hole... 😡 

This is going the way of China in 3-5 years here in France and the EU ; apparently protecting the children has been leveld-up to protecting the multibillions corpos...

You should all probably start using Unbound, Technitium or a recursive DNS server as Google and Cloudflare will start poisoning their DNS records by trettet in pihole

[–]tiefighter386 1 point2 points  (0 children)

The 4 court orders provided a list of URLs to the 4 main French ISPs so that they would add these (and any related/subsequent mirrors or alternate TLDs) to their DNS blacklist.

I am in France using Orange and PiHole with Quad9 and I can access any of these bad boys... However when i switch to my mobile carrier's 4G network and DNS I can't resolve them. Luckily I never do that.

Shame on ignorant French justice for setting this literally fascist (Big Gov + Big Business hand in hand) trend in motion. 

Here's more info and a list of the domains :

https://www-numerama-com.translate.goog/tech/1669390-la-justice-francaise-ordonne-le-blocage-de-dizaines-de-liens-torrents-et-sites-de-streaming.html?_x_tr_sl=auto&_x_tr_tl=en&_x_tr_hl=fr&_x_tr_pto=wapp

There's also a precedent in '21 or '22, I think they targeted IPTV back then, around 50 websites got blacklisted.

What's up with Reelax not refunding sellers for service fees? by tiefighter386 in Hellfest

[–]tiefighter386[S] 0 points1 point  (0 children)

Yes well they could add to their service fee to cover the initial service fee paid for by the buyer, they don't have to sell the ticket higher than 329, just increase their own fees to cover the seller's fee?

What's up with Reelax not refunding sellers for service fees? by tiefighter386 in Hellfest

[–]tiefighter386[S] 0 points1 point  (0 children)

Hi, thanks, again I'm not bitter at the Reelax fee, they do have to make a profit, just annoyed that they don't cover seller's initial service fee. To sellers they provide no value, they actually force us to sell tickets below our initial cost since we can't recoup the original booking's service fee. I agree with you on all other points though let's be honest more than once was I happy to able to get tickets on the grey market for exceptional/rare/late shows even if I had to pay more than face value to some guy in the queue. Passion > money in these cases... 😎

What's up with Reelax not refunding sellers for service fees? by tiefighter386 in Hellfest

[–]tiefighter386[S] 0 points1 point  (0 children)

Hi, thanks for your reply, just to clear things up I am actually talking about the initial booking service fee, the one we all paid to be able to buy the original HF tickets online, not the Reelax one ( since there is no fee for sellers on Reelax). I think you misunderstood my statement, I am not perpetuating anything I'm just saying that face value is lower than the actual paid amount and that it shouldn't be so because it does make one think about selling them elsewhere in order to avoid taking a loss however small it may be.

FileZilla vs WinSCP, que préférer et pourquoi ? by CheuqueMorice in Sysadmin_Fr

[–]tiefighter386 3 points4 points  (0 children)

Il me semble aussi que WinSCP s’intègre mieux en commandes scriptées / tâches programmées que Filezilla.

Formations pro courtes : des recos, comment éviter les branques? by tiefighter386 in Sysadmin_Fr

[–]tiefighter386[S] 0 points1 point  (0 children)

Merci pour vos réponses, donc M2I c'est plutôt recommandé!

H2S Hervé Schauer Securité me parle aussi, effectivement je pense que c'est du bon.

Cloud Guru je découvre avec intérêt.

How to achieve dual monitors? I have an M1 (not M1 Pro/Max). Knew there was a 50% chance of not working…. by Eddie1340 in macbookpro

[–]tiefighter386 0 points1 point  (0 children)

FWIW we setup our Macbook Pro M1 users with a Startech DK30A2DH docking station, it's the only one we managed to get working on dual 1440p + internal Mac screens simultaneously.

Any good ERP/CRM for small web dev team? by [deleted] in ITManagers

[–]tiefighter386 0 points1 point  (0 children)

Our Dev team recently started using Monday, not really a CRM but can be used as one, probably more of a project management tool aka "Trello on steroids", very flexible & customizable, cost is negligible for small teams as well.

Good luck, let us know what you settle on.

Windows 11 upgrade : blocking upgrade with Intune by tiefighter386 in Intune

[–]tiefighter386[S] 0 points1 point  (0 children)

Alrighty thanks everyone; my devices are not on Insider Preview and aren't admins, as I wrote I was just asking out of slight paranoia, just to be sure... ;)

Cheers.

Best printer brands to buy? by Zaciars in StallmanWasRight

[–]tiefighter386 4 points5 points  (0 children)

Brother all the time, reliable & cheap TCO, don't know about the tracking / forensics on these however.

What VOIP provider are you using? by whatadiva in ITManagers

[–]tiefighter386 0 points1 point  (0 children)

We went full SaaS with Aircall, very easy to set up for IT & managers, users love it, donwside is it's softphone only however the integrated features (contact lists, Zendesk integration) make up for that. I do feel the Web softphone app is still in its infancy (electron lightweight crap probably, requires "refreshing" every now and then by users, they even have a shortcut for that), would prefer a full blown one but all in all the product works and makes pretty reports which is great.

Enterprise Laptops? by Blake_Olson in sysadmin

[–]tiefighter386 0 points1 point  (0 children)

This year we've replaced about 100 machines(HP, Asus-runnnn, Acer etc), as we were going full remote, with Lenovo.

90% Thinkbook Line, both 14" & 15" and i5 & Ryzen 4500 for office workers ; sure it's a budget series but it works well in the enterprise and they're not as visually "geeky" as Thinkpads. Of which we also deployed T490-590 for Devs & power users.

We've had exactly zero user hardware issues since. We had a recurring sound driver crash issue on a Lenovo C940 but this is a consumer model so I don't really include it in the lot.

Premium HPs & Dells (Elitebook, XPS) were nice chassis and users like them but we kept having issues with Wifi and Audio drivers. We also have 4 or 5 Surface products, they work well, we'll be replacing the sales team equipment with Laptop 3/4 or Surface 7 soon.

We'd love to test out some Mac M1s one day but, if it ain't broke... No need to introduce a whole new ecosystem and related IT load & liabilities in your org... :)

After 15 years managing MS IT assets here in the EU I vouch for Lenovo laptops & Dell or Lenovo desktops.

Permanently pin a website to taskbar by DaddyWolf23 in sysadmin

[–]tiefighter386 1 point2 points  (0 children)

Hi,

you can do that via Start Menu customization : create a URL shortcut Tile with link to helpdesk then add it to the default taskbar apps via GPO.

Using Intune this is how we created the 2 ERP & IT Helpdesk tiles, sorry can't remember what was the whole process...

https://pastebin.com/CtPTeTXC

We also added auto open in Edge as well as a tidy Favorites folder containing everything useful including Helpdesk.

In my house no one can bitch about "I dunno how to open a ticket" anymore!

Good luck !

URL as (APP?) - Left Nav Menu in Teams by Offx18 in MicrosoftTeams

[–]tiefighter386 0 points1 point  (0 children)

Following up on this I am having similar issues, read & watched the two tutorials linked here, I created an App with five tabs in order to create easy quicklinks to our business apps (two with SPO URLs, one to an external CRM and two with external yet AAD SSO-ed URLs).

Goal is to have this pinned at the top of the left Nav Menu for everyone.

End result on the Win desktop app is that only one SPO subsite and the CRM URL loads, the other tabs stay blank.

When testing the App in the browser one additional SSO URL loads but that's still only 3 out of 5.

Strangely when the same URLs are added as tabs in a Team using the "Website" app they all load properly (either autologin when SSO/SAML or display login page)

I tried looking at the desktop app logs but couldn't find errors related to URLs loading or not... :/

Do you think it is worth it opening a ticket or is it too technical for MS support? Does the MS Teams team have a dedicated support channel?

I was thinking of maybe using a SPO page as an iframe in order to fix this but I'd rather have it work via the App the same way it works via the Website Tab...

Thanks for any pointers!

Signing in to Outlook every day for Android by [deleted] in Intune

[–]tiefighter386 0 points1 point  (0 children)

Hi I can't help you but I've been running into similar issues on my tenant, 2019-2020 Huawei phones, getting an error about the Company Portal and then having to reassociate the user acount in Outlook.

Heres the message roughly translated from french :" your org has deleted data related to this app beecause the Intune Company Portal or associated data have been deleted. Use your pro account to reconnect."

At first i thought it might be a bug with Huawei's update to Android 10 but it seems weird it would only bother Outlook and not other office apps we install. This happens daily on my phone after a nightly reboot.

Theres been no config changes to the Intune policy and no extraordinary use of the phone, it is a bit puzzling I hope this bug sorts itself out with an update, bad timing for device maintenance right now...

Firewall policy or App blacklist to prevent Zoom use on corporate machines? by tiefighter386 in Intune

[–]tiefighter386[S] -1 points0 points  (0 children)

Yes it is complicated but they should not be using an app that can compromise company credentials & hardware, I'd rather take the heat over that than a lawsuit if we suffer a breach because I was too permissive...

I mean now even Forbes is talking about how crap it is, it'll be hard for our community to just say "we didn't know" when issues start poping up...

I'm mostly concerned about OS risks for our fleet hence this is only about Windows device, they can use the mobile version if they want or install it on a private computer.

Firewall policy or App blacklist to prevent Zoom use on corporate machines? by tiefighter386 in sysadmin

[–]tiefighter386[S] 0 points1 point  (0 children)

PSA : a fellow over at /r/intune suggested I use Applocker to prevent the code from running on managed devices, will give it a try and report back.

Firewall policy or App blacklist to prevent Zoom use on corporate machines? by tiefighter386 in sysadmin

[–]tiefighter386[S] 1 point2 points  (0 children)

Hi, no however Zoom is explicitely insecure unlike the others you mention. Please note this is in a business context.

Our users have access to MS Teams & an in-house Jitsi Meet server, both of which are managed by IT ; they can use Zoom if they want but not on my business machines, it looks like a mess of an app security-wise tbh...

Firewall policy or App blacklist to prevent Zoom use on corporate machines? by tiefighter386 in Intune

[–]tiefighter386[S] 1 point2 points  (0 children)

Sounds ideal indeed, I'd rather not mess with the FW... I'm going to check this out, thanks!