Category: Research
Research Undertaken
Failure sending mail: The permissions granted to user ‘%’ are insufficient for performing this operation.Mail will not be resent
Recently I was working through an environment access to least privilege and a Reporting Service had been given Domain Admin I re-add the account to the DB […]
RDS Shortcut\Gateway\Connection Broker trying to connection to Session Hosts Outside of Collection
I recently Sysprepped and cloned an existing RDS Session Host from a collection and created two new servers Upon adding the new Session Hosts to the RDS […]
Free Sharepoint Storage Upgrade from 1TB to 3TB for a year
By Default Microsoft Gives you 1TB of Sharepoint Storage ( 1 TB plus 10 GB per license purchased ) in Office 365 Recently going through a Microsoft […]
LDAPS\LDAP Channel Binding
2020 LDAP channel binding and LDAP signing requirements for Windows (KB4520412) https://evotec.xyz/four-commands-to-help-you-track-down-insecure-ldap-bindings-before-march-2020/ https://www.petenetlive.com/kb/article/0001645 https://techcommunity.microsoft.com/t5/core-infrastructure-and-security/ldap-channel-binding-and-ldap-signing-requirements-march-2020/ba-p/921536 If the LdapEnforceChannelBinding key is not present, the server will use the new […]
How to leverage Azure PIM to protect onpem AD Groups
Make sure you set this up with the correct service user to start withAdd Groups that have roles assigned will be synced onpremMake sure you do not […]
How to Redirect Http to HTTPS on a non standard port on IIS using URL ReWrite
The standard way in IIS to redirect HTTP to https will not work because http_host contains the port You need to use Regex Magic : <rule […]
Dynamics Reports not Showing Logo’s
After copying the .DIC files fro Dynamics the Reports were not showing the logos A few things to note
FsLogix Update Procedure
Download FSLogix FSLogix is available for download: https://aka.ms/fslogix-latest
HTTP Header Internal IP Disclosure
Fix for IIS -> https://securitytutorials.co.uk/http-header-internal-ip-disclosure/ and how to test after Can also be done via -> https://www.verifyit.nl/wp/?p=175955 How to test HTTP header side : ( curl -v […]