[Nugget] Replace Edge Browser F1 Key Help URL with Endpoint Manager

Quick nugget and this can be a handy way to push your IT Support/ Helpdesk info in to the user's browser and its literally one key stroke away. F1 that is. In the Edge Brower, if you press F1 key, you will get the below default webpage But wouldn't that be nice to make it … Continue reading [Nugget] Replace Edge Browser F1 Key Help URL with Endpoint Manager

Device Control Polices with Microsoft Defender for Endpoint and Endpoint Manager

Device Control is one of the core components of any Device Management solution. This identifies what devices the user can install in their system or plug and play. While there are devices that need to be installed on user computers such as printers, specific computer peripherals, and USB keys, you don't want to allow the … Continue reading Device Control Polices with Microsoft Defender for Endpoint and Endpoint Manager

Passwordless Authentication With FEITIAN BioPass FIDO2 Security Key K49

FEITIAN Technologies recently reached me out via LinkedIn to request if I can review one of their latest Passwordless key products - K49. This is not a paid review and only contains my independent opinion as a technologist as well as an avid Identity and Access Management enthusiast. I'm always a big fan of going … Continue reading Passwordless Authentication With FEITIAN BioPass FIDO2 Security Key K49

A Closer Look At The Azure AD Joined Device Local Administrator Role And Endpoint Manager Account Protection Policy

Local Admin is a must needed account/ access that requires in a domain setup for so many reasons. Over the years Microsoft brought many options to manage these accounts in a secure manner. Restricted groups/ LAPS etc. With Azure AD and Endpoint Manager in the scene, many devices are moved to cloud managed rather than … Continue reading A Closer Look At The Azure AD Joined Device Local Administrator Role And Endpoint Manager Account Protection Policy

Windows Autopatch – General Availability With Improvements

This is an update post on the much awaited Windows Autopatch service. This went from Public Preview to General Availability today (12/06/2022) and number of good improvements have been introduced and I would like to go through them. If you haven't read my previous posts on Windows Autopatch, please check them from below. Features EnrollmentDevice … Continue reading Windows Autopatch – General Availability With Improvements

An Attempt to Configure Defender for Endpoint and Endpoint Manager With the Same Device Tag

Most often the device tagging requirements are simple or you do have a set of tags for the devices that are enrolled in Intune and a set of tags for the devices onboarded in Defender for Endpoint. However there can be situations where you need both services to have the same device tagging setup. This … Continue reading An Attempt to Configure Defender for Endpoint and Endpoint Manager With the Same Device Tag

Windows Autopatch – 3. Support Requests

This will be a short post, but I like to emphasize this great feature Windows Autopatch provides. In case you haven't seen the news, Windows Autopatch is now in Public Preview and I'm thrilled to write about it. Post 1 and Post 2 can be found below 1. Tenant Onboarding and Device Registration 2. Deployment … Continue reading Windows Autopatch – 3. Support Requests

Windows Autopatch – 2. Deployment Rings, Security Groups and Device Profiles

In case you haven't seen the news, Windows Autopatch is now in Public Preview and I'm thrilled to write my 2nd post about it. Post 1 can be found below 1. Tenant Onboarding and Device Registration In this post I will talking about the main component of the feature - Deployment Rings and Device Profiles. … Continue reading Windows Autopatch – 2. Deployment Rings, Security Groups and Device Profiles

Windows Autopatch – 1. Tenant Onboarding and Device Registration

Windows Autopatch is finally here and this will update your eligible Windows 10 and 11 devices and Office application. This is a IT admin hands off task as opposed to traditional Patch Tuesday and other patching events and internal IT admins can always open support tickets with Microsoft when required. This is Microsoft looking after … Continue reading Windows Autopatch – 1. Tenant Onboarding and Device Registration

How to use Log Analytics on Endpoint Manager

Ever since I learned about KQL I'm obsessed about it and what it can do in Azure Log Analytics space and this is my attempt on plugging another service to Log Analytics to experiment with the logs. KQL has proven to be a clever tool when it comes to dig deeper in to Log Analytics. … Continue reading How to use Log Analytics on Endpoint Manager

How to Setup Endpoint Manager RBAC

Welcome to another MEM article. Today I'm going to talk about an essential component of Microsoft Endpoint Manager where a lot of admins ignore or fail to configure. As your team grows or if you planning on outsourcing tasks to a different team of admins, a MSP perhaps, it is vital to configure correct RBAC … Continue reading How to Setup Endpoint Manager RBAC

FIX and Thoughts on Autopilot Pre-Provision Error 0x80180014

It was one of days where you get these sort of errors just after completing a task. That big ol' unsatisfying red screen with an error. This time it was We couldn't finish MDM enrollment. Error 0x80180014 At 1st glance, though the Reset button will fix the issue. However it didn't. It resets the machine … Continue reading FIX and Thoughts on Autopilot Pre-Provision Error 0x80180014