Issue with Web Content Filtering – Indicators Not Working
Hello, I'm trying to set up site blocking using Web Content Filtering. After enabling all the necessary components in Advanced Features in security center: Web Content Filtering And configuring the following components in the system (via…
MS Defender web protection / SmartScreen for Google Chrome and Firefox
Hi. We have our CE+ assessment in a few weeks. In our CE basic, we provided information about our browsers Edge, Google Chrome and Firefox they have MS Defender / SmartScreen options enabled for malicious sites and downloads. Unfortunately, MS Defender…
ADMINISTRATION PROBLEM
So my mother originally set up an account on my computer which gives her administration. There are some applications I can't download or delete without permission, but the problem is: She forgot the password to it, and she said she can't reset it. I…
Windows Hello for Business- Intune
We have Windows 10/11 devices enrolled in Intune. How can we enable users to use WHfB for computer logons without requiring it to be used? The option for standard users to set up WHfB in the device settings are grayed out.
Conditional Access Policy Frustration
I do what I am asked. I was asked to build a policy that would prevent using Office 365 apps or access to Online apps unless the device was either Entra Registered or Entra Joined. I have this working 99%. The issue is that I cannot enroll new devices…
BitLocker Recovery Prompt After Update - Assistance Needed
Hi everyone, I’m experiencing an issue where BitLocker recovery is being required on a device, and I’m trying to understand why. The device recently received update KB5048652, and the recovery prompt started appearing after that. Is there a way to…
M365 Join Restriction
Hi All, I need your kind support in advising me on the below questions, I want to create a dynamic query which brings only TPM 1.2 and above machines in to the M365 group I want to block specific device model like Dell Latitude 5420 from enrolling on…
Intune Kiosk Mode Copy/Paste
Hello, We currently have a number of Single app Kiosks using Edge. It's been noticed that Copy/Paste is disabled by default. I havent seen this in any documentation. Is there any way to enable this even if its by a reg key rather than intune setting?
Program Requirements - Microsoft Trusted Root Program (EV code signing)
Hi there, I have questions regarding the EV code signing and MS's root program. In the following link https://learn.microsoft.com/en-us/security/trusted-root/program-requirements in 3.D.3 it says that at the beginning of August 2024, all EV Code Signing…
Password in the cloud
i have observed multiple sign ins from dublin location with the IP being microsoft , and the user agent is Rich client , further the auth method is Password in the cloud, also we have observedToken Protection - Sign In Session StatusCode is the same for…
Easy passwords
Is it possible to make a policy which does not allow easy passwords like qwerty1234
what solution has replaced microsoft Network Access Protection (NAP)
NAP is a client health policy creation, enforcement, and remediation technology. With NAP, system administrators can establish and automatically enforce health policies, which can include software requirements, security update requirements, and other…
Microsoft Threat Modeling Tool - Manually added threats Interaction name changed to "Deleted"
When I manually add threats by right-clicking on the interaction name, the threat is added, and I am able to enter information. After saving, the Interaction name changes to "Deleted" so when you filter on the interaction name, manually added…
how to enable remote lock in Microsoft Intune ?
Hi Reader, I would like to know how to enable remote lock in Microsoft Intune ? The device which I need to lock remotely is compliant and that I have checked from the overview and the mentioned device is "Microsoft Entra Joined" also. However,…
How to setup/configure "Disable the local storage of passwords and credentials" using Intune?
How to setup/configure "Disable the local storage of passwords and credentials" using Intune? We have below recommendations in our tenant inside M365 Defender. See below screenshot.
How to Enable Remote Lock in Microsoft Intune?
Hi Reader, I would like to know how to enable remote lock in Microsoft Intune ? My aim is to Remotely lock any Entra id connected device (through work or school account) in my organization through microsoft intune of the Global Admin. The device which I…
How to Enable Remote Lock in Microsoft Intune?
Hi Reader, I would like to know how to enable remote lock in Microsoft Intune ? The device which I need to lock remotely is compliant and that I have checked from the overview and the mentioned device is "Microsoft Entra Joined" also. However,…
About Password Policy
Hi all, Can I allow the user to change their AD password a maximum of 5 times in the same day? I can't do this with AD password policy. Is there another way? If I write 1 in the Minimum password age field, it can only be changed once a day, but I don't…
Intune Application Deployment Delay and Log Location
Hello everyone, We are experiencing delays in the installation of applications deployed via Intune, even though the installation is set to "Required". The process is taking longer than expected. Could anyone please guide us on the following: …
Active Directory Password Policy: Changing the [Mast Change] Attribute
Hello everyone, Is there an article that specifies how to change the [Mast Change] attribute in Active Directory? I need to modify this parameter for some users to enforce a password change (bypassing the Default Policy - GPO). Are there any certified…