Jump to content

free780

Members
  • Posts

    3,614
  • Joined

  • Last visited

Everything posted by free780

  1. It just deleted the contents of the documents folder in my profile. I don't use it. I don't think I have that GPO setting enabled. I can see a big CU coming next week. I guess insiders don't join the insider builds to a domain and test multiple configurations.
  2. It helps you not having to allow inbound connections through your firewall. You can also enforce 2FA etc. Has anybody tried it with desktop apps that use sql connections?
  3. Any admx's anywhere?
  4. @DalekSec Are you using NTLM? If so switch to Kerebos and see if you still get the prompts? Make sure the time is in sync with a DC.
  5. Yes very expensive. Had 2017 CC packages rolled out last year. Getting 2018 products ready. Looks like serial licensing for CC will be retired with the 2019 release. I think Adobe will require a device sync for shared devices. Until you hit a compatability/security issue maybe stick with CS6. You could argue that vulnerabilities in CC can be reverse engineered into CS6. You can keep CC up to date with AUSST.
  6. Device Based Activation FAQ.pdf This should fix the issue for regularly re-imaged PCs. I've also used this on the client to reset it.
  7. I'd bite the bullet and go for the Office 365 ProPlus version if your using Office 365. Been on it for a year and not really had any issues apart from legacy features.
  8. Wow. Didn't realise they was this much strife. Maybe Microsoft's thinking is to target 1:1 business customers who are tech savvy. They can uninstall the modern apps they don't want, start the latest feature update etc. Its geared for a less heavy handed administrative load. In edu we can't fire the students when they go poking where they shouldn't. The larger issue seems to be user competence with doing things themselves. I spend a lot of time setting up User GPP settings. Maybe we've got so used to proping up the gap in knowledge and skills. Windows 10 will force you to tighten up on security. @FragglePete Have you allowed the DBA app in AzureAD to have rights? I can't remember the powershell off the top of my head. I did wonder about automating a process to delete the _dev user. I did write a script to automate the re-activation.
  9. Yep 1:1 seems to be the go to phrase when we got an issue with shared devices.
  10. I had this just make sure your xml is correct. Also you may need certain office domains to be allowed unauthenticated via your proxy.
  11. It's a shame there's so many Office extensions that are 32bit only.
  12. Controlled via SCCM. You need a test ring. Then a slow ring. It means you stay current and supports all the features of Office 365.
  13. Real admins deploy 365 ProPlus. On the monthly channel.
  14. Alas no. I usually just create an application via powershell with the updated version. One day I write a blog post on this. Hopefully within 2 years we won't need to deploy legacy browser plugins.
  15. I deployed Android Studio. The SDK is quite large so I had a script to copy it. I had to configure GPP files to set the config correctly and add the proxy cert to prevent a lot of errors.
  16. Been rolling out Windows 10 since 1511 Current Branch and LTSC on occasion. 1. MS believe that devices are 1:1 and all users are technically competent. 2. Users should take responsibility for updates etc due to it being a 1:1 device. 3. There is a load of legacy. Roaming Profiles,RDS,Folder Redirection,Mapped Drive that doesn't really fit into the modern desktop idea. If you bear these things in mind and start with fresh GPOs. Use SCCM. Try and automate as much as possible I've found it easier than Windows 7.
  17. The issue becomes worse with forced password changes when staff are using Mac's with Outlook, OneDrive etc. You can't simply delete the keychain. It helps that Mac's are being used 1:1 in this scenario. When a password is changed users have to update the keychain password. I can't see a way around this.
  18. Brave. That is moving fast.
  19. It may be working for 30 days. Exchange Online licences used to work like this.
  20. Even with the C drive hidden the OneDrive folder is shown in explorer. It's designed for 1:1 devices not shared.
  21. I tried express then there was a bug in SCCM SUP that filled C drives. Bandwidth and disk space don't appear to be an issue as SCCM will delete content automatically if disk space is low enough. It depends on your network and amount of clients.
  22. Traced the issue to C:\ProgramData\Microsoft\Windows Defender\platform\4.18.1807.18075-0\NisSrv.exe . Will do further investigation.
  23. Anybody else seen this? supportedUris files seem to be filling C drives in this path "C:\Windows\ServiceProfiles\LocalService\AppData\Local\Microsoft\Windows\Safety\network\remote" . The size of the files are 10-13MB since April 2018.
  24. Sophos did introduce some real time telemetry that used AWS that isn't proxy aware on the client a few years ago. It would be best to allow it through an intercepting proxy if you have this configured. https://community.sophos.com/products/endpoint-security-control/f/sophos-endpoint-software/2434/sophos-anti-virus-making-1000-s-of-internet-requests-causing-very-slow-internet-speeds
  25. It was always the freeze button that is the killer feature of remotes
×
×
  • Create New...