Intune – “Conditional Access, Terms of Use and The Company Portal”

The Issue We recently had an issue where we tried to use the Conditional Access setting and only granting Terms of Use for an Android Device Enrollment. The Investigation What happens now is as described in our docs article Terms of use - Azure Active Directory | Microsoft Docs - The authenticator app installs... Why … Continue reading Intune – “Conditional Access, Terms of Use and The Company Portal”

Microsoft Endpoint Manager – “Defeating Vulnerability Scans”

The Issue In Operations you may get approached by your Security Team from time to time to help them close new Vulnerabilities that have been identified after a Vulnerability Scan was run. It might look like the below and contain a list of Vulnerabilities that need to be addressed. The Investigation If you are lucky … Continue reading Microsoft Endpoint Manager – “Defeating Vulnerability Scans”

Azure – Assign A Custom Role to Allow Specific Users to Stop/Start/Restart a specific VM

The Issue A customer recently had the need to only allow specific Server Owners to Start\Restart\Deallocate specific Virtual Machines. The Investigation I actually found this article that explains how to create this for an assignment to an entire subscription. https://techcommunity.microsoft.com/t5/itops-talk-blog/step-by-step-enabling-custom-role-based-access-control-in-azure/ba-p/363668 You use the mentioned JSON File, { "Name": "Restart Virtual Machines", "IsCustom": true, "Description": "Restart … Continue reading Azure – Assign A Custom Role to Allow Specific Users to Stop/Start/Restart a specific VM

Azure – Point to Site Transit Traffic over Connected VNETs Issue

The Issue Recently one of my customers experienced an issue where we wanted to achieve the below. The reason was we wanted machines out on the internet to communicate with Active Directory Servers by using the Azure VPN Client. The Investigation So there are two ways to achieve a "Connection" between Virtual Networks. You can … Continue reading Azure – Point to Site Transit Traffic over Connected VNETs Issue

Microsoft Endpoint Manager – “Ultimate Environment”

Intro I really love building solutions that contain a vast variety of the tools you could ever want or need to do your job. This may be a bit excessive and you might end up with tools you only click once in a blue moon. Never-the-less if you are a Configuration Manager Admin and also … Continue reading Microsoft Endpoint Manager – “Ultimate Environment”

Infrastructure – Hybrid Cloud Print – Publish Printers Powershell

The Issue I recently had the opportunity to build a Hybrid Cloud Print Solution. If you have never built this before, it isn't hard but there are a lot of moving parts. Stay close to our official document - https://docs.microsoft.com/en-us/windows-server/administration/hybrid-cloud-print/hybrid-cloud-print-deploy By not deviating from the above document you not only make your own life easier, … Continue reading Infrastructure – Hybrid Cloud Print – Publish Printers Powershell

Visual Studio Code – “The IDE you wished you had started using earlier”

I recently presented at Ignite The Tour Johannesburg and my topics were relating to managing your Azure Environment using better tools and also some tips and tricks. This was a revolutionary step to say none the less as I was going to have to present a tool that I wished I started using earlier - … Continue reading Visual Studio Code – “The IDE you wished you had started using earlier”

Intune – “Steps for Windows 10 Automated MDM Enrollment into Microsoft Intune”

Business Case I recently had a scenario at a customer where we needed to very quickly enroll machines into Intune but in an automated way without user intervention. After a few days of testing and troubleshooting please find my tips below. In the current scenario Co-Management has already been set up in MEMCM. This is … Continue reading Intune – “Steps for Windows 10 Automated MDM Enrollment into Microsoft Intune”

Powershell – “Search and Count All File Extensions on Multiple Machines using Powershell”

The Issue Recently I was at a customer that had a very strange and specific requirement. They wanted to query All File Type Extensions with a count on all machines in the environment. This was an environment with 30 000+ machines and they wanted it to run quickly and once off. The Investigation System Center … Continue reading Powershell – “Search and Count All File Extensions on Multiple Machines using Powershell”

System Center Configuration Manager – “Configure SQL Server Service Broker Failed”

The Issue Recently I installed the Latest Tech Preview in my lab environment and while running an In-Console update I received an error "Configure SQL Server Service Broker - Failed". The Investigation If you watch a video Steve Rachui posted some time ago, there are some valuable tips for which logs to review and the … Continue reading System Center Configuration Manager – “Configure SQL Server Service Broker Failed”