Option 1 – Set the following Group Policy:Computer Configuration\Policies\Administrative Templates\Windows Components\Credential User Interface\Enumerate administrator accounts on elevationTo the following value: Disabled Option 2 – Follow these steps to apply a […]
Category: Research
Research Undertaken
Microsoft \ platform-managed key Azure Rotation
As Microsoft Manage your keys ( not Customer Managed Keys ( CMK ) ) – How often exactly are Microsoft-managed keys rotated · Issue #68838 · MicrosoftDocs/azure-docs · […]
Scoping Questions for Azure Files
How low does the latency need to be? Express Router or Onprem Server?Tiering ? ( Onprem Server then to Cool Storage or Netapp Files)DFS?Identity?Security? Public Access not […]
How to use a Powershell script for a Monitor in Labtech Connectwise
Create a script that has return 0 when working and return 1 for warning and 2 for failed Copy .ps1 file Labtech server C:\LTShare\Transfer\Montitors Create a External […]
Cookies Missing Attributes in RDWeb Gateway
The HTTPOnly attribute makes cookies inaccessible to JavaScript. Additionally, the Secure attributeensures that the cookie may only be transmitted over HTTPS. Cookies used by the application didnot […]
Wireless SSID Certificate Based Auth ( Azure AD )
Setting up a radius server for Azure AD joined devices and 802.1x | Nicola Suter (nicolonsky.ch) Paid for -> https://www.securew2.com/blog/azure-ad-802-1x https://katystech.blog/mem/intune-8021x-pkcs User Auth Solution https://katystech.blog/mem/intune-8021x-pkcs NDES and […]
Internet Information Services (IIS) Securing Best Prac \ Website Headers
ASPNET \ Web Server \ Misconfiguration: Missing Error HandlingDisable Detailed errors in IISPermissions-Policyfullscreen=() Cache-Controlprivate, no-storeReferrer-Policystrict-origin-when-cross-originwe can conclude that the default setting deals with most of the security X-XSS-Protection1; mode=block X-Content-Type-OptionsnosniffStrict-Transport-Securitymax-age=31536000; […]
365 Backup Products
https://afi.ai/https://www.n-able.com/products/cove-data-protectionhttps://www.backupify.com/365 Veeam ( Needs Server ) Synology Nas ( Needs Onprem )
Windows Defender Best Practice
-Enable App Governance -Enable Defender for Identity -Turn all Advanced Features for Endpoints – Enable default Policies for App Discovery