User Profile
Kiril
Steel Contributor
Joined 7 years ago
User Widgets
Recent Discussions
Surface Hub 2S setup with Microsoft Azure Active Directory has no admin permissions
We setup a new Surface Hub 2S with a Microsoft Entra ID user: We have the following settings in place in Entra > All Devices > Device Settings (which prevents Global Admins from being admin on devices): Does that interfere with having admin rights on the surface hub? When I assign the Global Admin role to a user this user cannot access the Settings app as an admin on the Surface Hub.268Views0likes0CommentsBitwarden Passkey
I tried to implement passkeys with Bitwarden, but I am getting an error during the last step of the setup. I have added Bitwarden's AAGUID (d548826e-79b4-db40-a3d8-11116f7e8349) to the allow list in the authentication methods. The passkey is also added to the Bitwarden app, but not into my security info. Does Microsoft support only Microsoft Authenticator for device-bound passkeys?1.8KViews0likes3CommentsUAC during OOBE (after switching from Admin to Standard user in Windows Autopilot)
We switched settings in Windows Autopilot to make the user a standard user instead of an admin. Now, during OOBE I am asked multiple times to execute a PowerShell script as an admin. What causes this behavior and how to prevent?SolvedShare desktop with Miracast (Win + K) on Surface Hub 3 with new Teams Rooms on Windows Platform
We just installed a new Surface Hub 3. Everything is fine and looks great, however Win + K seems not to be working. The Surface Hub does not appear in the list of devices where I can share to. I can share my desktop using Teams -> Settings -> Cast, but that's way too many clicks. Is it possible to enable Win + K sharing?Solved6.5KViews0likes9CommentsShare desktop with Miracast (Win + K) on Surface Hub 3 with new Teams Rooms on Windows Platform
We just installed a new Surface Hub 3. Everything is fine and looks great, however Win + K seems not to be working. The Surface Hub does not appear in the list of devices where I can share to. I can share my desktop using Teams -> Settings -> Cast, but that's way too many clicks. Is it possible to enable Win + K sharing?889Views0likes2CommentsPrevent users from adding third party email accounts to Outlook, but with exceptions
I want to prevent users from adding private email accounts in Outlook Desktop on their Windows Laptops. There must be an exception however, because some user have Microsoft 365 accounts in another tenant which belongs to our organization. So, is there a possibility to generally prevent the addition of email accounts to Outlook, but provide a domain white list for which the addition of the Outlook account is still possible?11KViews1like2CommentsHow to give admin consent for an application only for the specific user who is asking for permission
We want to control consent to enterprise applications and therefore switched to: "User consent for applications:Allow user consent for apps from verified publishers, for selected permissions (Recommended)" This works as expected, and now most of the times a user wants to access to an application an admin consent request is generated. When I accept the admin consent request, the application is granted access on behalf of the whole organization. I don't like this behavior, because now the application has access to potentially too much data. Is it possible to use the "admin consent required" restriction, but only to grant access to the user asking for it? It seems to be possible with PowerShell, but it would be nice to use the Microsoft Entra Portal to achieve that.Difference between Tenant Allow/Block Lists and Endpoint > Indicators
I am trying to whitelist a URL that is being blocked by Windows Smart Screen on user devices. My initial approach was to submit the URL to Microsoft using an admin submission in the Actions & Submissions of Microsoft 365 Defender, and allow the URL in the process. That worked fine, and the URL was placed onTenant Allow Lists. However, the user devices still could not reach the URL. After that I created an Indicator in Settings > Endoint > Indicators and allowed the URL. After a short time the user devices were able to access the URL. What is exactly the difference between Tenant Allow/Block Lists and Endpoint > Indicators? I guess one comes from Microsoft Defender Office 365 and the other from Microsoft Defender for Endpoint, but I am confused about which to use.SolvedDoes reporting an e-mail as phishing (in Microsoft 365 Defender) move it into the Junk Folder?
When I as an admin report an e-mail as Phishing from the Explorer in Microsoft 365 Defender, does the e-mail also get moved to the Junk of the respective mailbox, or do I have to do that as well? Example: a phishing e-mail is received by 10 users. I search for this mail in the Explorer and Report it as Phishing. Is this enough, or do I have to do the "Move the junk folder" action on the same messages?