JrSys4dmin

M365 + Slack legal Data Access Request - Help Please!

Posted by Smile4menow84@reddit | sysadmin | View on Reddit | 18 comments

JrSys4dmin@reddit

You can absolutely do this as an eDiscovery case within the Purview portal. You'll add all mailboxes as a source and then add filters (conditions) to it to search for specific keywords, date range, participants, etc. *Processing img kemsiq8ced2h1...* I don't have any experience with it, but from what others have said you can add slack as a connector and search there as well. Also, make sure these searches are being requested from your company's legal counsel and perform the search exactly as requested. They will usually craft a search criteria with the specific intention of omitting items irrelevant to the subpoena.

Mass Email (Mail Merge) Restrictions?

Posted by Steakboy159@reddit | sysadmin | View on Reddit | 6 comments

JrSys4dmin@reddit

Google workspace allows up to 1500 mail merge messages per day for each account. If you're going over that limit, you should definitely use a different platform to send. If it's at all spammy, a separate subdomain for emails would be a good idea too.

Routing internet traffic between Western and Eastern Canada without going through the USA

Posted by BloodyIron@reddit | sysadmin | View on Reddit | 116 comments

JrSys4dmin@reddit

I don't have any experience with them but they have several different network as a service offerings that supposedly allow you to directly connect two data centers together.

Routing internet traffic between Western and Eastern Canada without going through the USA

Posted by BloodyIron@reddit | sysadmin | View on Reddit | 116 comments

CEO's and multiple mailboxes

Posted by OCAU07@reddit | sysadmin | View on Reddit | 43 comments

JrSys4dmin@reddit

Have you tried setting up the confidential shared mailbox with an actual login? You should be able add the shared mailbox as an additional account then.

IP Phone System Recommendations?

Posted by Orangestar1@reddit | sysadmin | View on Reddit | 64 comments

JrSys4dmin@reddit

Yeah, moving to a cloud solution might fix some of your problems but without fixing the network side of things you're just asking for a headache further down the line trying to troubleshoot when it pops up again. At least with your system being on-premises, you have the tools readily available to see exactly what's going on not just a "call quality" dashboard.

IP Phone System Recommendations?

Posted by Orangestar1@reddit | sysadmin | View on Reddit | 64 comments

JrSys4dmin@reddit

Take a look at the Avaya System Status app and head to the Active Calls sedition. Keep an eye there whenever you're having these call issues. It'll help you narrow down what in the system is causing the call delays or phantom ringing. You might also want to check to see what version of IP Office you're running and see if it can be updated. As a last ditch effort (assuming you can eat the cost) would be to replace your current IP500 unit.

Interesting request for Exchange rule. Not sure if I know how or if I can do it.

Posted by grnerd@reddit | sysadmin | View on Reddit | 34 comments

JrSys4dmin@reddit

No need to setup an Exchange mailflow rule, you can set this up on the individual mailbox. Convert the old employee's mailbox to a shared mailbox if it isn't already. On that mailbox, set an Automatic Reply with the introduction message. You can then do one of two things (or both). Configure email forwarding to send to the new sales rep's inbox (and/) or give the new rep delegated permissions to access the old mailbox. This way all new emails to the old employees mailbox will get the new rep's contact info and the new rep gets the message.

365 backup solution - Dell vs Veeam vs Microsoft

Posted by Catdaddyx2@reddit | sysadmin | View on Reddit | 67 comments

JrSys4dmin@reddit

With Veeam Backup for M365, yes, you can backup to an on prem server just like the Veeam Data Platform. They do however offer a 100% cloud hosted solution called Veeam Data Cloud that is surprisingly competitively priced and includes storage.

SSL decrypt

Posted by ilanbp@reddit | sysadmin | View on Reddit | 48 comments

JrSys4dmin@reddit

I see this recommended a lot (specifically Google and Microsoft) but I have seen my fair share of malware spread using OneDrive or Google Drive to feel comfortable whitelisting them. And honestly, I don't think I've seen any adverse effects from not whitelisting either.

Konica Minolta and Universal Print

Posted by JrSys4dmin@reddit | sysadmin | View on Reddit | 5 comments

AC for small server room

Posted by jflint@reddit | sysadmin | View on Reddit | 47 comments

JrSys4dmin@reddit

Portable air conditioners do need a source of fresh air to operate due to the hot air being exhausted outside which creates a negative pressure. If you can add a vent somewhere near the AC unit you might have better luck with efficiency and lifespan. As many have recommended, it would be best to bite the bullet and install a mini split system. But if thats out of the question, reach out to a local equipment rental company and see what portable AC units they rent. You might even be able to purchase one from them.

How to best move a ton of files and folders from someone's personal OneDrive onto SharePoint?

Posted by ForeignAd3910@reddit | sysadmin | View on Reddit | 9 comments

JrSys4dmin@reddit

This would 100% work. In the admin center, you can generate a link to access anyones OneDrive folders. From there, you can select any files/folders you want to move and select "Move" in the top menu bar. Finding the target site can be hit or miss though. But if you favorite the site first, it should show up in the window.

What's the smallest hill you're willing to die on?

Posted by bgr2258@reddit | sysadmin | View on Reddit | 1100 comments

JrSys4dmin@reddit

Saying wack wack instead of slash slash is useless. Anyone outside of IT isn't going to know what it is anyway and anyone actually in IT should already know which slash to use

Password Manager Recommendations

Posted by Jazzlike_Clue8413@reddit | sysadmin | View on Reddit | 82 comments

JrSys4dmin@reddit

I have LastPass deployed at work. It has its quirks here and there but overall, it's pretty solid. It has the name recognition that the execs needed to signoff at the time we originally purchased. Personally I have Keeper and like it much better. Everything just seems more polished

Recommendations for Active Noise Cancelling Headphones with a good mic?

Posted by MisterPink@reddit | sysadmin | View on Reddit | 40 comments

JrSys4dmin@reddit

I have these as well and think they're great as well. I did find that the ANC was actually a little bit better on my old XM3 though, but the mic is much better on the XM5.

Network Refresh for Small Office

Posted by JrSys4dmin@reddit | sysadmin | View on Reddit | 16 comments

Network Refresh for Small Office

Posted by JrSys4dmin@reddit | sysadmin | View on Reddit | 16 comments

JrSys4dmin@reddit (OP)

Realistically I find the Unifi portals and whatnot just as easy if not easier to work in than Meraki. I know these are famous last words but with the environment we have, its going to essentially be a set it and forget it setup. Once VLANs, DHCP, and whatnot are configured there isnt going to be much ongoing configuration changes made.

Network Refresh for Small Office

Posted by JrSys4dmin@reddit | sysadmin | View on Reddit | 16 comments

JrSys4dmin@reddit (OP)

I have the Omada setup at home to and it definitely is rock solid. My main concern is that Omada is less known. Should something go wrong, I know for a fact that the conversation will be "who on earth is this Omada why didnt we go with....." I know its not a proper justification for writing them off but the defensibility of the decision just isn't there with Omada yet.

Network Refresh for Small Office

Posted by JrSys4dmin@reddit | sysadmin | View on Reddit | 16 comments

JrSys4dmin@reddit (OP)

I think you'd be hard pressed to find many companies sub 100 employees with a HA configuration for their server... Our company made the decision that the risk of services being offline in the event of a host failure was acceptable. Especially considering a majority of our work and data is in the cloud. When you say business level are you referring to their "Pro" line or their "Enterprise" line of equipment?

Network Refresh for Small Office

Posted by JrSys4dmin@reddit | sysadmin | View on Reddit | 16 comments

JrSys4dmin@reddit (OP)

Have you experienced any of the reliability "issues" across any of your six sites that everyone seems to keep warning about as a reason not to go with Unifi? And do you have their professional phone support package?

Knowbe4 replacement?

Posted by Paintrain8284@reddit | sysadmin | View on Reddit | 35 comments

JrSys4dmin@reddit

We use Ninjio. The animation can feel a little goofy for a corporate environment at times but our users actually look forward to the monthly episodes. They're episodic so you get to know the characters and use actual actors like Jon Lovitz. A huge improvement from the boring HR like training that kb4 offered.

What should I do next after failing my PIP and being let go?

Posted by Weary_Promise2402@reddit | sysadmin | View on Reddit | 103 comments

JrSys4dmin@reddit

First lesson to learn from this is that a PIP is (in most cases) designed for you to fail. A PIP is corporate speak for I'm going to fire you soon. The employer is just trying to create paperwork that shows that they fired you with cause for performance issues. In the future, treat PIPs as your current employer giving you time to look for another job while still on payroll. Depending on your state you most likely wont be able to file for unemployment because its "for cause". Speak with your HR department about how they're filing your termination with the state and honestly file anyway regardless of what they say. Worst comes to worst the unemployment office will deny your case. If you feel the PIP was not attainable or if there are other issues with your work environment, supervision, etc just make sure you write Acknowledged/Disagree or something similar under your signature. You dont want to accidently sign away any legal recourse should you decide to go that route in the future. This is the advice I hear get thrown around a lot so you're not signing that its true just that you received it. As for how to bring it up in interviews. Dont. Play it off as if you wanted to explore other opportunities or learn a new aspect of technology that your current company couldnt offer. Theres a lot of turnover in IT especially in the entry levels so gaps arent that big of a deal. Take the time to look at job postings for roles you want and study for certificates that they require. And apply for the job even if you dont have the cert currently, its a wish list not a list of requirements.

What's the best noise-cancelling headset for noisy working environment?

Posted by loveusadenver@reddit | sysadmin | View on Reddit | 81 comments

JrSys4dmin@reddit

I have a pair of XM5 and XM3. I actually find that the XM3 are significantly better in noisy environments but the XM5 are more comfortable and still do a plenty good job.

How does this end up happening?

Posted by Comprehensive-Bee622@reddit | sysadmin | View on Reddit | 152 comments

JrSys4dmin@reddit

I think it's primarially because of two main things. First off, IT is generally seen as a cost center regardless of the value it actually provides to the organization. No matter how much a Senior Principal Network Administrator tries to explain now the new configuration to port 12 on B switch did.......... And optimized ........ The CEOs eyes just glaze over like everyone else's when they explain the same. But have someone with the same managerial and political knowhow to say I need X thousand dollars for XYZ in a way the CEO can understand? Suddenly they get it an start to understand the return those thousands of dollars can provide. Secondly, it's becoming less and less of a "secret" that a lot of IT people are neurodivergent or may want to focus on implementing a new feature/process instead of what the business actually needs right in the moment like upgrading the time tracking system the partners need for billing. Someone outside of the technical side of things can help herd the cats towards the businesses goals.

Any advantage of using Sophos E-mail protection over Defender?

Posted by jjkmk@reddit | sysadmin | View on Reddit | 5 comments

JrSys4dmin@reddit

I'm in the same boat as you, we have business premium and Sophos. It's really good at filtering out the obvious stuff but their heuristic based filtering is really lacking. Ive tried calling their support several times now to see if it's a misconfiguration on my end but we still constantly get plenty of phishing and giftcard/payroll scam emails. I'm trying to see if I can setup defender for email in a whatif mode to see if it would catch the stuff sophos doesn't.

Is Cogent down in Chicago?

Posted by terola17@reddit | sysadmin | View on Reddit | 132 comments

JrSys4dmin@reddit

We're having issues here on the west coast as well. My troubleshooting so far is indicating that its a routing and/or DNS issue to Google. Our DNS servers were set to forward to [8.8.8.8](http://8.8.8.8) and was failing all nslookups. Switching to [1.1.1.1](http://1.1.1.1) resolved name resolution issues but still could not ping any google services until maybe 10min ago.

How often do you or should you delete users' temp files?

Posted by Ok_Exchange_9646@reddit | sysadmin | View on Reddit | 48 comments

Needing recommendations for AV setup in conference room!

Posted by ReactNativeIsTooHard@reddit | sysadmin | View on Reddit | 17 comments

JrSys4dmin@reddit

We're using the polycom system and love it so far. Super easy to one touch join via the tablet and even easier screen charing via automatic HDMI capture. It supports zoom and teams room systems so just pick whichever one your company uses as internally. Both systems will support all of the big VC providers. Our sales rep was even able to get us a two month trial as well to make sure it fit our needs fully.

Turning off Adobe's ability to scan all of your organization's documents for generative AI

Posted by rb3po@reddit | sysadmin | View on Reddit | 270 comments

JrSys4dmin@reddit

Thats a good find! In my testing, bAdobeSendPluginToggle disabled the automatic uploading or prompting users tot send as a link which is enough for our environment. It looks like the AdobeAcroOutlook.SendAsLink key disables the plugin as a whole?

Turning off Adobe's ability to scan all of your organization's documents for generative AI

Posted by rb3po@reddit | sysadmin | View on Reddit | 270 comments

JrSys4dmin@reddit

You're in luck then... When I learned these settings could be controlled by registry key, I knew disabling the Send and Track feature had to be on my list as well. ​ [IntuneRemediationScripts/Disable-AdobeSendAndTrack at main · JrSys4dmin/IntuneRemediationScripts (github.com)](https://github.com/JrSys4dmin/IntuneRemediationScripts/tree/main/Disable-AdobeSendAndTrack)

Turning off Adobe's ability to scan all of your organization's documents for generative AI

Posted by rb3po@reddit | sysadmin | View on Reddit | 270 comments

JrSys4dmin@reddit

If anyone wants detection and remediation scripts for Intune, feel free to steal mine. [https://github.com/JrSys4dmin/IntuneRemediationScripts/tree/main/Disable-AdobeGenerativeAI](https://github.com/JrSys4dmin/IntuneRemediationScripts/tree/main/Disable-AdobeGenerativeAI)

Enterprise Grade Laptops

Posted by Pirated_Freeware@reddit | sysadmin | View on Reddit | 250 comments

New Sysadmin

Posted by cutchtwenty1@reddit | sysadmin | View on Reddit | 4 comments

JrSys4dmin@reddit

Hey cutchtwenty1, I just sent you a PM. I was in the same boat as you not too many years ago and helped build my current companies infrastructure from the ground up. Feel free to reach out if you have any questions or need any guidance.

Teams outage this morning

Posted by meatwad75892@reddit | sysadmin | View on Reddit | 257 comments

365 - How to alert user when sending an email with attachment to external address

Posted by Tom80PalmTree@reddit | sysadmin | View on Reddit | 3 comments

JrSys4dmin@reddit

You can configure a DLP policy in notify only mode to alert users https://learn.microsoft.com/en-us/exchange/security-and-compliance/data-loss-prevention/manage-policy-tips

I have 2x 365 tenants, I need to migrate them into one, what tool or how to do this?

Posted by greenkomodo@reddit | sysadmin | View on Reddit | 34 comments

JrSys4dmin@reddit

Another vote for BitTitan, it just works. Another option if you're taking backups of both tenants is to restore the backups to the new destination. Veeam for example supports restoring items to another location.

Bank Check Scanner(s) Solution

Posted by egokilla@reddit | sysadmin | View on Reddit | 74 comments

Looking for hardware advice for small office!

Posted by BLUNT_LOVE_DOCTOR@reddit | sysadmin | View on Reddit | 9 comments

JrSys4dmin@reddit

At one of the offices I deployed a while ago, we used the MX100 for routing and firewall/security appliance which has since been replaced with the MX105 and the MS220 switches. ​ Was it overkill? Definitely. We could have probably gotten away with an MX85 or MX95 but we wanted dual power supplies for failover. If you're not concerned with a rackmount formfactor you could probably also get away with a smaller appliance.

Employees using company accounts on personal devices

Posted by TheDongles@reddit | sysadmin | View on Reddit | 11 comments

JrSys4dmin@reddit

Take a look into the conditional access policies within the Entra (Azure AD) portal. You're looking for a "grant" condition to restrict access to only compliant devices. ​ You'll also want to setup a compliance policy and also restrict how devices can enroll in Intune. ​ ​ This article is a great start: [Require compliant, hybrid joined devices, or MFA - Microsoft Entra ID | Microsoft Learn](https://learn.microsoft.com/en-us/entra/identity/conditional-access/howto-conditional-access-policy-compliant-device)

Looking for hardware advice for small office!

Posted by BLUNT_LOVE_DOCTOR@reddit | sysadmin | View on Reddit | 9 comments

JrSys4dmin@reddit

If you want easy to setup and configure with good support, I'd go with Cisco Meraki. Everything is super easy to setup and configure and for the most part. Monitoring everything is super easy since its in a single pane of glass. Might cost you a pretty penny but it just works. ​ If you want something similar and don't mind missing out on "enterprise" support, I'd personally go with Unifi gear. ​ I'm sure there are a couple of other good options but those are the two systems I have the most experience with for a SMB.

Cloud Training Suggestions

Posted by Arooda@reddit | sysadmin | View on Reddit | 3 comments

JrSys4dmin@reddit

Personally I'd recommend going with a vendor specific certification. It'll cover most of the things CompTIA certs do along with where things are in the management portal.

AD in cloud

Posted by MRBIQ@reddit | sysadmin | View on Reddit | 56 comments

JrSys4dmin@reddit

Assuming this isnt just going to be for DR, you'll need to create a line of sight to this DC. Most likely with a VPN which will need to be always on to facilitate authentication. It might just be easier to setup AAD though. No need to pay for and manage the VPS and VPN connection.

Best 8x8 alternative?

Posted by growing_clutches@reddit | sysadmin | View on Reddit | 126 comments

JrSys4dmin@reddit

Do you have any good documentation or demonstration videos for Teams Direct Routing? I have this on my roadmap for next year but am still trying to figure out how well the advanced features work.

Not for profit client using a general inbox for password resets

Posted by tt9344398@reddit | sysadmin | View on Reddit | 43 comments

Single Sysadmin. Handle being out of the office

Posted by Mr-Hops@reddit | sysadmin | View on Reddit | 309 comments

JrSys4dmin@reddit

Most of the companies I have worked for have a relationship with an MSP or semi-retired sysadmin that we would bring in for vacation coverage. Many times we would buy a chunk of say 10hr for the week and ask them to monitor the queue and only work on high priority tickets. Helps if your boss can triage and determine what tickets meet that threshold.

Our directors always send out bulk event invites all at once, like "Company Town Hall (Jan)", "Company Town Hall (Feb)" etc. Is there a way this can be done without everyone getting inbox flooded? (M365 environment)

Posted by PsyduckAF@reddit | sysadmin | View on Reddit | 11 comments

JrSys4dmin@reddit

You can create a direct to inbox rule that will directly add the calendar invites to people's calendars without any notification. The only notification they'll ever see in thein inbox is if the meeting is cancelled. Also helps the sender avoid having their inbox flooded with OOO replies. https://learn.microsoft.com/en-us/exchange/security-and-compliance/mail-flow-rules/use-rules-to-add-meetings

What tools do you use for storing a long list of usernames and password

Posted by EngineerNoDegree@reddit | sysadmin | View on Reddit | 71 comments

JrSys4dmin@reddit

Previously I used LastPass but am currently in the process of switching over to Keeper Security. ​ Using a password managers are ideal for multiple users. Aside from the obvious added security vs an excel sheet, you can track whenever a password is used and can limit the sharing of passwords to only those who actually need it.

Does my small business need a VAR?

Posted by Hydra05Aqua@reddit | sysadmin | View on Reddit | 8 comments

JrSys4dmin@reddit

I work at a small VAR that would be more than happy to help with any tech purchases you need. Feel free to send me a PM if you want to chat or get a second quote for anything. ​ You can always setup a relationship with CDW or the other big players. You'll get still get marginally better pricing than buying direct but you might not get a dedicated sales rep.

Integrating a newly acquired firm into our domain/Tenant

Posted by FearIsStrongerDanluv@reddit | sysadmin | View on Reddit | 20 comments

JrSys4dmin@reddit

That makes life much easier :) As for the migration itself, all the vendors we worked with either used or recommended [MigrationWiz | Cloud Migrations Made Easy (bittitan.com)](https://www.bittitan.com/). It has a very simple GUI. Just make sure to temporarily disable the Exchange Web Services API throttling policy on both the destination and originating tenant. [How to Disable EWS Throttling in Exchange Online – BitTitan Help Center](https://help.bittitan.com/hc/en-us/articles/12001669149851-How-to-Disable-EWS-Throttling-in-Exchange-Online)