UnderOpenSky
baseline neural therapy
Rant Alert
I think I've been cursed with a poison chalice for my first project in a new the job. Well, first proper IT project ever really. I've got over 1000 phones to get off Sophos MDM and on to Intune for November. There's no way to do it other than factory reset the dam things. I know I've already moaned about this, but there's no equivalent of Autopilot pre-provisioned mode for Android, so the user has to have their phone reset and then sign into it themselves (twice) and hope that Intune works today. Consultants aren't known for having loads of patience with IT. I won't have to do the brunt of the end user stuff, but I don't want the 1.5 person phone team not to hate me forever.
My latest joy in testing is that fucking Microsoft Authenticator is an absolute bitch to transfer to a new phone. I've backed up multiple times with my own account and tried to restore on a new phone and most logins aren't there. That's before needed the dam thing to actually set up the reset phone. I'm hoping I can do this with a conditional access policy, but it doesn't sort the missing logins. Plus, the OAUTH app that most people with be using is deprecated and not available, so we'll have to move it...MS Authenticator. Oh and we'll probably need to reset their VPN connection as well because Sophos is shit. I'm not quite sure what I did to deserve this in my first T3 role.
I'm also the hero of the day because when SCCM broke big style, lots of very important PCs started locking after 5 mins and I discovered it was an Intune setting and fixed it. Except now whenever anyone is having a problem with anything I get call to ask if it could be Intune. No, it's not broken your SQL database. There's like 5 policies there.
I think I've been cursed with a poison chalice for my first project in a new the job. Well, first proper IT project ever really. I've got over 1000 phones to get off Sophos MDM and on to Intune for November. There's no way to do it other than factory reset the dam things. I know I've already moaned about this, but there's no equivalent of Autopilot pre-provisioned mode for Android, so the user has to have their phone reset and then sign into it themselves (twice) and hope that Intune works today. Consultants aren't known for having loads of patience with IT. I won't have to do the brunt of the end user stuff, but I don't want the 1.5 person phone team not to hate me forever.
My latest joy in testing is that fucking Microsoft Authenticator is an absolute bitch to transfer to a new phone. I've backed up multiple times with my own account and tried to restore on a new phone and most logins aren't there. That's before needed the dam thing to actually set up the reset phone. I'm hoping I can do this with a conditional access policy, but it doesn't sort the missing logins. Plus, the OAUTH app that most people with be using is deprecated and not available, so we'll have to move it...MS Authenticator. Oh and we'll probably need to reset their VPN connection as well because Sophos is shit. I'm not quite sure what I did to deserve this in my first T3 role.
I'm also the hero of the day because when SCCM broke big style, lots of very important PCs started locking after 5 mins and I discovered it was an Intune setting and fixed it. Except now whenever anyone is having a problem with anything I get call to ask if it could be Intune. No, it's not broken your SQL database. There's like 5 policies there.