-
Posts
686 -
Joined
-
Last visited
Content Type
Forums
News
20th
EduGeek EDIT Conference
Blogs
Everything posted by Bankesy
-
Good morning everyone, I switched on MFA this week, for a specific user group and aimed at Office 365. This appears to have broken some Azure AD Enterprise Applications that we had running and I don't understand why, when accessing these we now get the following error: BadGateway: This corporate app can't be accessed. Next Steps One or more errors were found in the Secure Sockets Layer (SSL) certificate sent by the server. For more details, check the Application Proxy Connector Event Log for reported errors. Quick Links Learn more about Application Proxy services Troubleshoot Application Proxy services Azure AD Application Proxy Status code: BadGateway Url: https://sometext-domaincouk.msappproxy.net/my_view_page.php TransactionID: A bunch of numbers ConnectorGroupId: More numbers Timestamp: 2/23/2024 8:48:28 AM You are seeing this detailed error message because you are an administrator for this application. Unless it's coincidental and nothing to do with MFA and is indeed as the error suggests, something to do with the certificate. I also don't know how to access the Application Proxy Connector Event Log. All suggestions welcomed as ever. Thanks
-
Thanks everyone, I had considered it might be related to e-mail on personal devices. It's been happening to a few more users since so I do need to get to the bottom of this. I put the policy in by targeting a specific security group that only contains staff so I've managed to avoid breaking anything too important. We don't use AD credentials for connecting to the wireless so I don't think it's that. I might just take my policy out and start again.
-
Good afternoon, I've got myself stuck in a loop and I don't know how or what to try to fix it. I put in a new fine grained password policy a couple of weeks back and everything has been fine but now I've got one user for who the AD account just keeps locking. I think I've made it worse by trying multiple password resets and unlocks, has anybody seen this sort of thing before? I know I have in my last role but can't remember the fix. Thanks as always.
-
@psydii Yes that's exactly what I used, I'm guessing somewhere there is a rule or policy that keeps adding in that X500 address and making it live again. Thanks
-
Good afternoon all, I've got a mail enabled security group (which I didn't create), I thought I had disabled it correctly but noticed that staff could still e-mail it and when I checked in AD it still had an X500 entry in the proxy address attribute. I removed this and waited for a bit only for it to return so I'm hoping somebody can highlight what I'm missing and how I stop the group being mail enabled because I can't delete it yet. Thanks in advance
-
@APMerry Agreed that is a separate question, I personally prefer the desktop in classroom approach and they've historically always given laptops to staff it has just continued in my short time here. Thanks
-
Good morning, Hoping somebody can advise me as to what their LA advises, or indeed what you just happen to do when it comes to: 1.) Staff configuring their mobiles for access to work e-mail 2.) Staff using personal laptops or PCs to access cloud-based resources such as OneDrive, Exchange Online, Teams, etc. Seems to me that our LA has a hard "do not use a personal device for anything work-related" stance but my issue with this is that with more and more going cloud it surely makes sense to allow this and stop spending so much money on literally everyone having a laptop provided by us (in addition to desktop in the classroom). Not all staff can\will take a laptop to and from. I get not storing documents on personal devices but to look at and work on documents directly from cloud I don't understand. All thoughts welcome, thanks in advance.
-
Probably reviving a dead topic here and some of you may have seen my other posts around the issues we've had with BlueRunner, can't see anybody mentioning them here but definitely looking to get out only two years into a 5 year contract. BlueRunner might get better now they are owned by ParentPay but I can't see it. Looking at Live Register myself but previously looked at AMI, Cunninghams, and Biostore.
-
@chaplic Yes msExchRemoteRecipientType is set as 4. I think I didn't explain my actual problem very well, basically the account\mailbox was disabled some months ago but not somebody wants access to the mailbox so I'm trying to understand how to do that\where the mailbox and e-mails have gone. I'm wondering if I've gone past the retention period so 365 just got rid.
-
Good morning all, I think I'm misunderstanding something about how Exchange Online handles disabled and unlicensed accounts: I've got a user who left in June, account was disabled in AD and at the time we still had Exchange on prem but since then have migrated to Office 365 but I'm confused because on Exchange server the user shows as having an Office 365 mailbox but having re-enabled and re-licensed the account there is only a blank mailbox when logging in. Thanks
-
Thanks @Davit2005 I can't see the "ip ssh filetransfer' line under running config, just looking at HP article on setting that up now. I'm just trying to get the config from it so I can replace it and copy the config back.
-
@Davit2005 I don't know if I've got IP SSH file transfer on the switch, do you know how I would check please? When I look at the general settings it says TFTP is enabled. So is there a way of getting the startup and running configs off the switch without using TFTP? The HP documentation I'm reading uses TFTP in the commands. Thanks
-
@JNEWells I know it's years later but don't suppose you ever got anywhere with this, having the same issue myself. Thanks
-
@thimon Not to my knowledge It's a mystery
-
@mdrabble From what I can tell, the MDT deployment of Office calls a configuration XML that installs O365ProPlusRetail. No specific mention in there of Teams being included or excluded but looking at this link I guess it is being included because it's not being excluded? https://learn.microsoft.com/en-us/microsoft-365/troubleshoot/installation/product-ids-supported-office-deployment-click-to-run But as I say, I'm pretty sure no part of the task sequence is installing the Office app or using this config file so I'm struggling to understand where devices are getting the Teams Machine Wide Installer from. Unless it's coming from the Intune deployment that does include Teams. Thanks
-
@Norphy Yes there is an 'Office' application in MDT and XML for it in the deployment share but I don't think it's being deployed this way, I inherited the task sequence which at first was installing a reference image at the OS stage but I changed this so it was just installing a base OS. I wondered if MDT was installing 'Office' as a default app when I couldn't find a specific instance but can't see any sign of this either. @mdrabble Yes devices are hybrid joined and the Intune deployment is set to all devices. @TriggerHappyUK Thought of that, can't see anything.
-
Good afternoon, I'm trying to establish where our devices are picking up the Teams Machine Wide Installer from, pretty sure it's not AD or MDT task sequence. I've been deploying 'Microsoft 365 Apps for Windows 10 and later' (including Teams) via Intune so would this method be putting the machine wide installer onto devices? Thanks
-
For anyone still following this thread, the upshot was this: The power cut\surge caused the NIC card used for connecting to SAN to become faulty, hence server boot issues\looping etc. AND separately it would appear that when the server and switch have come back on that LACP has not detected\negotiated the trunk properly. So in essence the fix was to remove three of the four network cables from the server and put them back one at a time.
-
@CrootUK It's booting up fine now but I'm confused about why VCentre shows it as not responding and why I cannot ping it when there are seemingly no network config issues. Thanks
-
@Olliedawg Thanks, my situation isn't getting any better. The log files that VmWare are asking for don't open after being downloaded to a zip folder and I reset the iDrac only to now not be able to reach it at all.
-
@CrootUK Yes, checked with my predecessor and apparently the drives are SD cards so the error above is expected. I think I've definitely got a hardware issue somewhere because the host keeps shutting down and a couple of times when powering on it has hit a loop.
-
-
@Julian Yes, I cannot reach the problematic host but can reach the other one. I'm starting to think it's some sort of hardware failure as it has powered off again but I don't have access to the iDrac without resetting all of that. I'm going to see if I can run some diagnostics. Thanks
-
@bknaggs Should have mentioned I tried that, no issues. Boots up fine and all looks normal to me. Thanks
-
Good morning, Came in this morning to find one of the hosts off, powered back on and everything looks fine but can't ping it\access interface. Doesn't look like anything has changed in terms of switch config. Not great with VmWare but vSphere shows the host as 'Not Responding' so I'm wondering where I go from here? Thanks
