-
Posts
686 -
Joined
-
Last visited
Content Type
Forums
News
20th
EduGeek EDIT Conference
Blogs
Everything posted by Bankesy
-
So is SPMT just for moving existing onsite SharePoint to cloud SharePoint? It's not the thing to use for moving data from onsite file servers to cloud SharePoint? Just curious as we aren't far away from starting that journey and just happened to see the thread. Thanks
-
@Steve21 In total I have just under 800 distribution lists.
-
@Steve21 If I search Groups>Distribution List in Exchange Online Admin Centre I can see them all just by searching "abc-" so would it not follow into searching via Outlook? Thanks
-
Good morning all, Seeing a strange issue when searching for distribution lists in Outlook (Office 365) in terms of not being able to load more results, steps I'm taking to produce problem: - Start new e-mail and click on 'To' - Click on "All Distribution Lists" - Search for "abc-" (where abc- is a prefix we use) - Search results appear - BUT there are more "abc-" groups than what appears in the results (no option to show or load more) However: - Same steps but search for "abc-start of distribution group name" and I get the groups that can't be seen from the first search term above - So the groups are there but just not showing from the first search term Just me missing something?
-
@cheekycharly Yes one policy for registering, setup exactly as per following link but targeted at staff group only: https://learn.microsoft.com/en-us/azure/active-directory/authentication/howto-registration-mfa-sspr-combined This doesn't enable SSPR though, you have to switch that on elsewhere in Azure Portal first. Then a separate policy for MFA, still targeted at staff group, excluding trusted location, for all cloud apps. Or alternatively as @TechMonkey points out there are templates to get you started. Happy to continue discussing if you need.
-
Joining this thread a bit late and not strictly the same issue but I'm currently migrating from Exchange to O365 and wondering if anybody has FMS working with a genuine shared mailbox rather than a user mailbox that's shared if that makes sense? I thought it best to convert "shared mailboxes" to actual shared mailboxes prior to migration but I don't think this will work with FMS because there won't be a username\password to enter into the FMS setup?
- 47 replies
-
- fms
- office 365
-
(and 1 more)
Tagged with:
-
@cheekycharly Are you asking about the polices to get users to register for SSPR and MFA (combined security info registration) or the polices to dictate when and where users will be prompted for MFA after registering? I'm only doing staff so I have one policy prompting staff to register (inside the network only) and then a separate policy that states users will be prompted for all cloud apps (outside of the network only).
-
Filtering/Firewall quotes
Bankesy replied to mdrabble's topic in Internet Related/Filtering/Firewall
Not been at my current site very long, inherited a WatchGuard firewall that I've never used and know nothing about but turns out the school got it years ago from Epic Net and I have been very happy with the way they've supported me and the appliance (training, health check etc.) Been dealing with Chris Picknell who has worked there years and really knows this stuff inside out, explains things in an easy to understand way. https://www.epic.uk.net/ -
Thanks @Oaktech Used that script and it worked well. Now trying to figure out why one user in particular is prompted for multi-factor authentication setup when added to the targeted security group but then told they don't have access after the 'More information required' screen. It's almost like the conditional access policy is both allowing and denying the user to register...?
-
@TechMonkey I didn't quite do it the way you have described, I did it manually following this link: https://learn.microsoft.com/en-us/azure/active-directory/authentication/howto-registration-mfa-sspr-combined This is what I advised to @ultima170387 but now I'm thinking your way is better apart from the bit where it includes all users but I guess this can be edited after? Now I'm wondering if you have any tips for configuring multi-factor authentication itself as in when it's required\what it's required for? Did you use the 'Require multifactor authentication for all users' template for this as well? Again though I'm trying to configure for only staff and only outside of the network. Thanks
-
@cheekycharly Yeah it was but I had started another thread on the forum about all of that and people came to my aid so it's all working now. Next challenge...working out why multi-factor is preventing some users (not all) from accessing SSO resources such as EduLink etc.
-
@kevin_lane I'll try and remember the steps I took and the articles I read but it basically involved recovering the database and log files from a backup to an alternative location (not the original) then running a lot of eseutil commands to repair the database\logs before copying them back to their original location. Once the database was stable (no longer in dirty shutdown) I migrated mailboxes to the other onsite databases or cloud (because luckily we are in hybrid anyway). I had a lot of help from consultants and people that know a lot more than me.
-
Think I'm almost there now with the recovery Thanks everyone
-
@chaplic @HPlum Is there a correct number to phone? Seems like most of Microsoft's help is for Office 365 stuff. I don't think I'm that far off recovering it, got the database and log files from a backup restored to original location but now eseutil says the current logs are missing.
-
Good morning, Struggling to troubleshoot a corrupt database, from ECP I get the following error when I try to mount the database: Failed to mount database "MyDatabase". Error: An Active Manager operation failed. Error: The database action failed. Error: Operation failed with message: MapiExceptionDatabaseError: Unable to mount database. (hr=0x80004005, ec=1108) Diagnostic context:Lid: 65256Lid: 10722 StoreEc: 0x454Lid: 1047 StoreEc: 0x454 [Database: MyDatabase, Server: MyServer] Trying to understand how eseutil can help me with this but not getting very far, probably because I deleted the associated log files (no I didn't have them backed up) I'm thinking just restore the database from a backup? Any ideas? Thanks
-
@ultima170387 I will come back to you on that, currently troubleshooting a corrupt Exchange database that won't mount
-
@TechMonkey I put a conditional access rule to only allow combined security info registration to be setup on site, same thing right?
-
Thanks everyone, while we are on the subject does anybody have any advice as to how the conditional access policy should be setup to prompt for 2FA when using sites or services that utilise SSO. At the moment I've only added Office 365 as an app that requires 2FA but I gather this doesn't cover anything that utilises 'Login with Microsoft' Is it just a case of point at 'All Cloud Apps'? Thanks
-
Good afternoon, Having recently gone through the process of creating conditional access polices for combined security information registration and MFA for Office 365 I would like to check who has and who hasn't set this up. When I check this through Admin Centre>Active Users>Multi-factor authentication I just get a list of all users with Multi-Factor Auth status marked as Disabled but I know users have registered. Am I checking this is the wrong place or are my users not really registered? Thanks
-
@robyholmes No we don't allow students to lock machines and I didn't know there was a link there, thanks for pointing that out.
-
Good afternoon, Hoping somebody can highlight what I'm missing here, I'm trying to create a GPO for a power plan that will lock a laptop on lid close. I've done this as a 'Create' item under Computer Configuration>Preferences>Control Panel Settings>Power Options. I've got 'Lid Close' set to sleep for both battery and on charger but the device isn't behaving that way, interestingly it works for staff logons but not for students (almost like another GPO is taking preference but I've checked and can't see these settings anywhere else). I've got the policy set to enforced on one OU (which only has the one target device in question). Not sure if it's relevant but in the GPO, 'action' is showing as N/A. Thanks to anyone who can help
-
Good morning, I am in the process of setting up combined security info registration and two factor authentication using conditional access policies. So far so good but am I right in thinking that because we only have Azure AD Premium P1 I cannot remove the option for users to skip the registration? Thanks in advance
-
VMWare Guest - Virtual Disk and Config Files
Bankesy replied to Bankesy's topic in Thin Client and Virtual Machines
@win Thanks for the link, I will take a look. I did look at the datastore tab previously but couldn't see anything that made any sense to me but I will look again. -
Good afternoon, I posted in the middle of last year about the VMWare environment I've inherited and how I was trying to backup the config of the hosts. Well having achieved that I'm now focusing on how I can backup guests, not their data but their actual virtual disk files and config\settings files. In my simple mind it would be the case that each VM has a virtual disk and a config file that live in a particular directory that then gets backed up but if this is the case I am struggling to find where my virtual disks and config files live. Any\all ideas welcome. Thanks in advance.
-
Good afternoon, Hoping somebody can tell me what I'm obviously missing here, currently in hybrid environment and run the following command in Exchange Management Shell (2019) to create mailboxes in cloud rather than on prem: Enable-RemoteMailbox "Username1" -RemoteRoutingAddress "[email protected]" But this doesn't set the username in O365 to [email protected] It just sets the username as the remote routing address and then I'm running a different separate command to change it after. I feel like there must be a way I can set the username at the same time as creating the mailbox? Thanks
