Jump to content

Steve21

Members
  • Posts

    9,168
  • Joined

Everything posted by Steve21

  1. Well yes but from your comment about bodging the Win11 upgrade via SCCM I thought you meant just in terms of being able to use it until you replaced them Steve
  2. Not sure where he got that from as it says on the support doc it's not being blocked, just not officially supported: So basically it's a "don't shoot us when it does break" kind of response! Steve
  3. Depending on what the survey is using (in terms of website URLs behind it) you could do something like deploy Chrome and SingleMode it. Then set the Chrome "GPO" settings to add a whitelist only for URLs? https://chromeenterprise.google/policies/#URLAllowlist Steve
  4. We are yep, Generally most bang for your buck and covers most of what you need by default Steve
  5. I assume it'll be Entra ID P2 in terms of things like Risk Based conditional access/advanced MFA policies etc Steve
  6. Haven't used it for a while for PaperCut, but it used to be an option in the renewal tools as to whether you wanted the same fingerprint or not. Most LE things like CertifyTheWeb etc change the fingerprint each renewal if you just do a standard "auto" renewal, and then yes you need to accept to the change on every printer each time Steve
  7. I may be missing the obvious, but when we used to use the free version of that it'll check for items as the user who's logged in/accessing those items. e.g. IT knows when the test is run Wouldn't deploying a client to machines around the school then report that all those users are trying to access that site? And give false reports to those staff/students? Steve
  8. Being early development I'm not sure how far it's supposed to be "working as expected" on that demo login but there seems to be security holes in the coding at the base level of restricting what people can see/edit As a parent you can view/edit any student in the whole system currently. Miss. Demo Bent has two children assigned to her which would suggest those are the only ones she can see (Natalia Simpson & Kimarnie Simpson) However just by changing the URL you can view any other students/schools too: e.g. https://tuicamp.com/p/buckets/2/students/18 - Stan Ackton https://tuicamp.com/p/buckets/2/students/19 - Sabrina Alsop https://tuicamp.com/p/buckets/2/students/20 - Sophia Alsop https://tuicamp.com/p/buckets/2/students/21 - Wyatt Andrews https://tuicamp.com/p/buckets/2/students/22 - Steve Bond etc etc You'll now notice that Miss Demo Bent just saved/blocked "Steve Bond" from all foods as he's totally allergic to everything on the menu (Even though it's not her own child/school) but has full rights to edit them Pretty much anything that uses those Student/School ID numbers is do-able from any account currently Steve
  9. It's probably the Microsoft sided issue. Found a few instances of it earlier this week and after searching the other day there's a MS ticket tracking resolution, which was updated today and apparently it got fixed earlier: Steve
  10. You may want to check with your own safeguarding team what requirements you need to meet for adult learners, as my understanding was KCSIE only applies to under 18s On the Prevent side of things HE generally also have some different rules for free speech/research etc etc due to the nature of their courses Steve
  11. Nope, whoever said that is totally wrong Azure IAAS doesn’t require cals for a start because it’s built into the pricing of the per-minute pricing Microsoft A3 for staff (not office A3) includes cals for Windows server: https://learn.microsoft.com/en-us/office365/servicedescriptions/office-365-platform-service-description/microsoft-365-education Scroll right to the bottom and look at that last table Steve
  12. Not that I use lightspeed, but the variables return based on the MDM so it depends if that mail one is the same that InTune recognises compared to Mosyle etc In terms of the supported list, might be worth trying the following few to see if they make any difference: {{AADDeviceId}}: Microsoft Entra device ID {{AccountId}}: Intune tenant ID or account ID {{AccountName}}: Intune tenant name or account name [color="#FF0000"][b]{{AppleId}}: Apple ID of the user[/b][/color] {{Department}}: Department assigned during Setup Assistant {{DeviceId}}: Intune device ID {{DeviceName}}: Intune device name {{domain}}: Domain name {{EASID}}: Exchange Active Sync ID {{EDUUserType}}: Type of user {{IMEI}}: IMEI of the device {{mail}}: Email address of the user [color="#FF0000"][b]{{ManagedAppleId}}: Managed Apple ID of the user[/b][/color] {{MEID}}: MEID of the device {{partialUPN}}: UPN prefix before the @ symbol {{SearchableDeviceKey}}: NGC Key ID {{SerialNumber}}: Device serial number {{SerialNumberLast4Digits}}: Last 4 digits of the device serial number {{SIGNEDDEVICEID}}: Device ID blob assigned to client during Company Portal enrollment {{SignedDeviceIdWithUserId}}: Device ID blob assigned to client with user-affinity during Apple Setup Assistant {{UDID}}: Device UDID {{UDIDLast4Digits}}: Last 4 digits of the device UDID [color="#FF0000"][b]{{UserId}}: Intune user ID[/b] [b]{{UserName}}: User name[/b] [b]{{userPrincipalName}}: UPN of the user[/b][/color] Also, did you deploy the app to device or user? As I'm guessing that might affect whether it picks up the "user" variables etc Steve
  13. I'd assume that's the credential guard issue, by default Win11 turns it on now which breaks the older CHAP style Radius auth - https://learn.microsoft.com/en-us/windows/security/identity-protection/credential-guard/considerations-known-issues#wi-fi-and-vpn-considerations There's a GPO you can enable to disable Credential Guard which after a reboot should then show if it is that issue as if it works as soon as it's disabled you either need to decide whether you want to leave it disabled, or change your authentication type on RADIUS to the newer methods. Steve
  14. Good Afternoon All, Anyone bought FreshDesk through a reseller previously that they can recommend? Being only USD/card payments direct I’m trying to get some items moved across to invoices for Finance Many thanks, Steve
  15. Same. Each April it increases once at a rate of £ per month. e.g. 2025 - 10->11 2026 - 11->12 etc Steve
  16. The 12 bay is more equivalent to the 6410 which is the more powerful one (up to 100gb modules etc) but obviously the cost that comes with the next jump Generally 5406 -> 5420 and 5412 -> 6410 etc Steve
  17. On a side note, Aruba finally released a new version CX 5420 (or are doing so very soon, so be careful with buying 5406R's as they'll no doubt be EOL soon if you're concerned with dates etc) https://community.arubanetworks.com/discussion/new-hpe-aruba-networking-cx-5420-chassis-switch-1 Steve
  18. If you have that many schools, assuming it's a Trust, is there any reason you aren't going for EES? Unless there's something specific on OVS you still need you'd get better pricing with that discount rate too The CSP/NCE changes aren't really for school benefits, but reseller, as it makes it easier to manage from their side. Price wise, you'll probably increase but only because you'd be locked on the cheaper CSP pricing if you're still in contract (Think last bump was about 5%, but then they countered that with a 12-month discount rather than paying monthly etc) Steve
  19. If you mean the Microsoft one probably XPERF that was part of the performance kit but not sure that's been supported in a while Did it look like this? https://techcommunity.microsoft.com/t5/s/gxcuf89792/images/bS0yNTU2MTgtMTY5NzIyaTYyRUEyREE5OEQyNjQxRUE?image-dimensions=571x321&revision=4 Steve
  20. From the addresses that’s ipv6 multicast (the fb and 1:3 ones) I know previously there have been some bugs with network cards that did that when it went to sleep but generally those were just driver updates to fix In terms of fixes if you have no remote options going to be an issue; but generally if you can get in I’d just slowly start disabling downlinks on switches until it stops to isolate where it’s from (deffo downlinks not uplinks so you can remotely re enable it too) Steve
  21. I just mean that not all US firms are automatically covered even with the extension ruling. They need to opt in via the DPF platforms etc unlike companies in UK where they have no choice but to comply with GPDR That’s good to hear that at least one of them is on the list. Steve
  22. Any rough prices in mind at all? Steve
  23. The short answer is... there is no short answer As you said originally EU-US shield, that was dropped, then re-stuck with the new UK extensions as they added US back to the list (https://www.gov.uk/government/publications/uk-us-data-bridge-supporting-documents/uk-us-data-bridge-factsheet-for-uk-organisations) But it still relies on an opt-in from US side of things so isn't as clear cut in terms of UK hosting. Might want to do a quick search under the DPF if those other two companies are listed: https://www.dataprivacyframework.gov/s/participant-search https://www.dataprivacyframework.gov/list as that would give you the quickest answer to if that's even an option under those guidelines. As an example from above for Microsoft: Steve
  24. It's a shame they're still not supporting any kind of real stacking in their releases in terms of meeting DfE spec etc (I know it says it on their but when you read the comments it sounds like it's still not a real stacking setup more like VSF etc) At over £3k for a 48-port it's getting to the stage where it's not even the "cheap" option as such to just throw a few in without worrying about hardware failing etc Steve
  25. Out of curiosity which specific models you going for re the stacked output? A full 2.5g and then 1gs or one of the weird "4/6" 2.5gs? Steve
×
×
  • Create New...