Тёмный
Robert Crane
Robert Crane
Robert Crane
Подписаться
This is the official RU-vid channel of the Computer Information Agency (CIAOPS) a business based in Sydney, Australia that specializes in Office 365, SharePoint, Cloud Computing, Productivity and Mobility. This channel contains numerous tutorials created by the CIAOPS for the products it focuses on. It is staffed by Robert Crane a Microsoft Office 365 MVP and certified SharePoint Technical specialist. You can find out more by visiting the main webs site - www.ciaops.com or the blog - blog.ciaops.com.
Intune Run Remediation
4:54
11 месяцев назад
An overview of Microsoft Winget
14:54
Год назад
Exchange Online Spam Filters
11:51
Год назад
An introduction to Power Automate
21:29
Год назад
Intune Remote Help introduction
12:33
Год назад
Комментарии
@CjHazel287
@CjHazel287 9 дней назад
Since SharePoint's released new versions somce this video - for everyone's clarity,what specific version of SharePoint is this? (Year, and enterprise, on-prem etc)
@hxpatel2503
@hxpatel2503 23 дня назад
hello, is it possible to set this permission to all members globally as i have administrator access. so i want to set that those who have member role can not delete any files/folder from any sites not only one site.
@directorcia
@directorcia 23 дня назад
All custom permissions need to be assigned to a location. That is not a global option.
@rajputdevendra5240
@rajputdevendra5240 Месяц назад
But how to added a template in multiples libraries at onces
@directorcia
@directorcia Месяц назад
PnP Powershell
@rajputdevendra5240
@rajputdevendra5240 Месяц назад
@@directorcia any another option available or not without powershell?
@directorcia
@directorcia Месяц назад
Not really. MS doesn't not encourage non coding template management
@rajputdevendra5240
@rajputdevendra5240 Месяц назад
@@directorcia Thankyou
@avinash0072355
@avinash0072355 Месяц назад
I am very very very thankful to you! _/\_
@muhammadhassansiddiqui9129
@muhammadhassansiddiqui9129 Месяц назад
Hi Robert, can we allow only notepad to a user and apply only to the user's group
@directorcia
@directorcia Месяц назад
Yes
@marylegion7378
@marylegion7378 2 месяца назад
Hi I had to add enablerdsaadauth:i:1 to the RDP properties too otherwise it gave me a sign in error - thanks for the vid
@aaronmagic
@aaronmagic 2 месяца назад
Will the login scripts work with O365 GCC High environments?
@directorcia
@directorcia 2 месяца назад
I couldn't tell you but I would suggest yes as long as the service is available in GCC you are connecting to.
@aaronmagic
@aaronmagic 2 месяца назад
@@directorcia I was able to manually execute the scripts. But using the c.ps1 does not on GCC High. But that is OK. The other scripts work great! TY
@dileepyapa8983
@dileepyapa8983 3 месяца назад
HI, How can we connect power shell to audit logs (Power BI services )
@directorcia
@directorcia 3 месяца назад
learn.microsoft.com/en-us/power-bi/enterprise/service-admin-auditing
@richmarxist
@richmarxist 3 месяца назад
Hi can you set up "Contribute w/o Delete" for a specific folder within the library?
@directorcia
@directorcia 3 месяца назад
Yes
@louieaparicio2613
@louieaparicio2613 4 месяца назад
Hello, good simple video. I have a question. Is there a way to enable or disable the Start Now page in MS Forms? Or is it really just dependent on the style template chosen?
@directorcia
@directorcia 4 месяца назад
Template chosen
@tox_anituber
@tox_anituber 4 месяца назад
I've been getting an Error Your Organization has used WDAC to block this app on my virtual box . I tried everything and It's still not working any ideas?
@directorcia
@directorcia 4 месяца назад
Clearly there is a policy in play. Look at the MS guide to troublehooting WDAC. Note many things can apply a WDAC policy.
@brentperry5759
@brentperry5759 4 месяца назад
Hey Robert, what a great step by step walk through in setting up AVD. Clear and to the point. Made my set up very easy the first time around. Thank you so much.
@keiotani2063
@keiotani2063 4 месяца назад
is there a way to make it work in home edition?
@directorcia
@directorcia 4 месяца назад
No
@balajidevaraj1217
@balajidevaraj1217 4 месяца назад
can we add multiple remote apps on a single hostpool under application group we know that if we have a desktop on a hostpool we cant add another desktop on hostpool is the same rule applied for remote app?
@directorcia
@directorcia 4 месяца назад
I couldn't tell you off the top of my head. Check the documentation.
@georgewashington3012
@georgewashington3012 4 месяца назад
Too bad it’s limited to Edge or it could compete with web gateways like Zscaler.
@hussein_elnady
@hussein_elnady 4 месяца назад
thanks for ur help i have this role but still they can access form outside ? what can i do
@directorcia
@directorcia 4 месяца назад
Set up an appropriate Conditional Access policy to require compliant devices or only at certain locations.
@Daruuu-MR_Some_Who
@Daruuu-MR_Some_Who 4 месяца назад
Thank you , Amazing Tool
@bobfrog4836
@bobfrog4836 4 месяца назад
O365 is a bit of a labyrinth and this video helped make logical sense of some the mess. Thanks!
@ToTCaMbIu
@ToTCaMbIu 5 месяцев назад
Great explanation! Any idea how one configures WDAC to be able to override it with a local admin account? e.g. install one single application for a single machine. Similar to what is possible with AppLocker.
@directorcia
@directorcia 5 месяцев назад
WDAC is a device NOT user policy. If you want a user policy use AppLocker. WDAC because it is a device policy is far more secure.
@sweetjamesjones8008
@sweetjamesjones8008 5 месяцев назад
You're a life saver with this script!
@sweetjamesjones8008
@sweetjamesjones8008 5 месяцев назад
I'm in the process of buying your Microsoft 365 Incident Response course now. So excited about all the new skills I'm about to learn.
@user-ds5yq9ws6x
@user-ds5yq9ws6x 5 месяцев назад
It blocks all my apps and I can't get to it anymore
@directorcia
@directorcia 5 месяцев назад
Simply stop the service or login as another user to the device. Any blocking technology needs to used with caution.
@hengsokdarom7239
@hengsokdarom7239 5 месяцев назад
Me the same I’m plan to block telegram only but after deploying a script it block all my app
@hengsokdarom7239
@hengsokdarom7239 5 месяцев назад
My script testing on local security policy is working fine but after deploy from intune it block all 😢 such as Microsoft team, note ++ and another app could you please help me check 😢
@directorcia
@directorcia 5 месяцев назад
@@hengsokdarom7239Remove the policy and only apply to limited group for testing
@hariakabeast
@hariakabeast 3 месяца назад
​@@directorcia yo i can't even open the services section
@obaidshaukat3412
@obaidshaukat3412 6 месяцев назад
Hi Robert, We have enabled the Microsoft Defender for our organization via Intune, and it has blocked few apps like surf shark, table plus etc, i have deployed the WDAC policies to allow them but no way they are allowed, is there something i am missing ?
@directorcia
@directorcia 6 месяцев назад
if they are blocked you need to adjust your WDAC policy to allow.
@obaidshaukat3412
@obaidshaukat3412 6 месяцев назад
can you please guide me ?@@directorcia
@directorcia
@directorcia 6 месяцев назад
@@obaidshaukat3412 learn.microsoft.com/en-us/windows/security/application-security/application-control/windows-defender-application-control/deployment/audit-wdac-policies
@obaidshaukat3412
@obaidshaukat3412 6 месяцев назад
Thanks mate.@@directorcia
@mariohurtado2180
@mariohurtado2180 6 месяцев назад
Man!! This Tutorial is so usefull. Thanks!!
@yhytuncer
@yhytuncer 6 месяцев назад
Great video !
@MrMilesThompson
@MrMilesThompson 6 месяцев назад
At 17:39, you add targetisaadjoined:i:1 but this text is already in the rdp properties. Do you need to add it twice?
@directorcia
@directorcia 6 месяцев назад
No
@damiensanchez7941
@damiensanchez7941 6 месяцев назад
Keep getting "sign in failed". Any ideas?
@directorcia
@directorcia 6 месяцев назад
Check your conditional access rules
@clivebuckwheat
@clivebuckwheat 6 месяцев назад
Can you do a white list of trusted apps for your organization?
@directorcia
@directorcia 6 месяцев назад
Yes
@clivebuckwheat
@clivebuckwheat 6 месяцев назад
@@directorcia how would I do this?
@directorcia
@directorcia 6 месяцев назад
@@clivebuckwheatI suggest you review the MS docs. Basically instead of a line in the XML file blocking an app you'd have one allowing the app. Provided the software has a cert you could do it by public cert.
@clivebuckwheat
@clivebuckwheat 6 месяцев назад
@@directorcia So blocking Apps would be much easier I have too much to white list, on your opinion?
@directorcia
@directorcia 6 месяцев назад
@@clivebuckwheat I block known/unknown bad apps rather than allowing good apps. Far easier yes.
@defkon99
@defkon99 7 месяцев назад
And to remove this would be to simply remove the GPU from that OU, correct?
@directorcia
@directorcia 7 месяцев назад
Sorry??
@defkon99
@defkon99 7 месяцев назад
@directorcia sorry I meant GPO didnt notice the typo. Sorry, but to remove app locker would be to unlink it?
@directorcia
@directorcia 7 месяцев назад
@@defkon99 if you apply via a policy you remove that policy essentially or manually remove via settings.
@blindside995
@blindside995 7 месяцев назад
Fantastic video. Thank you for making this information public and providing a resource for anyone with interest in this feature of windows. Also, I totally realize it has been stated before, but just adding another data point. Seems windows 10 pro 22H2 and 11 pro 22H2.
@user-ec4yx4ns5k
@user-ec4yx4ns5k 7 месяцев назад
Спасибо за информацию 😮
@user-ec4yx4ns5k
@user-ec4yx4ns5k 7 месяцев назад
@ user-ec4yx4n...
@user-ec4yx4ns5k
@user-ec4yx4ns5k 7 месяцев назад
6:23
@Sududimuthu
@Sududimuthu 2 месяца назад
0:28 0:28 ​@@user-ec4yx4ns5k
@alifrahany379
@alifrahany379 Месяц назад
🎉​@@user-jt8lu2kj2o
@alifrahany379
@alifrahany379 Месяц назад
​@@user-jt8lu2kj2o😢
@MrDjegsi
@MrDjegsi 7 месяцев назад
Hi Robert , thank you for the video, l have question , on your deployment we deployed 2 VM , how to know on which one l am connected?
@directorcia
@directorcia 7 месяцев назад
It is a pool. You connect to one that is available depending on your config/ If you want to connect to dedicated machine you need a different config. AVD is aimed to pooled machines and allocations made into the pool.
@lucyzhang2652
@lucyzhang2652 7 месяцев назад
thank you!! <3
@LulzimVeliu
@LulzimVeliu 7 месяцев назад
Hi Robert , thank you for the video , but l need this VDI to be accessed using RDP , can you provide video , or info how to ?
@directorcia
@directorcia 7 месяцев назад
Ahhh. AVD is accessed via an RDP client as well as a web browser. Look for the remote apps section to get the client - learn.microsoft.com/en-us/azure/virtual-desktop/users/connect-windows?tabs=subscribe
@erwinolarte2320
@erwinolarte2320 7 месяцев назад
Hi Robert, Thank you for this great video. It is very easy to follow. However, when i tried to use a custom image, I can't connect to the AVDs, does this support custom images? or do i need to follow a different procedure?
@directorcia
@directorcia 7 месяцев назад
Yes but u need to ensure your custom image allows remote RDP sessions.
@alanrahal7306
@alanrahal7306 8 месяцев назад
Thanks Robert, nice and easy to understand
@Inkachu
@Inkachu 8 месяцев назад
Years after you made this, it is still helping people. Perfect video thank you so much for making it 🍻
@adamwillis1299
@adamwillis1299 8 месяцев назад
Cheers Robo, what's the quickest way to stop the desktop / vm charging you overnight when not running? I don't really want to go into the portal every evening when logging off.
@directorcia
@directorcia 8 месяцев назад
Azure automations
@adamwillis1299
@adamwillis1299 8 месяцев назад
​​@@directorcia do you have a RU-vid vid that you recommend. Cheers
@directorcia
@directorcia 8 месяцев назад
@@adamwillis1299 my whole channel
@andreablenxcacopardo5359
@andreablenxcacopardo5359 9 месяцев назад
Hi Robert, thank you very much for your video. The JSON file inside the HostPool contains the names of the users who created the infrastructure. What happens if those users are deleted? Can this compromise the correct functioning of the enabled "autoscale"? Thank you very much
@directorcia
@directorcia 9 месяцев назад
use a managed service account if needed
@stewheelie7874
@stewheelie7874 9 месяцев назад
What ever happened to Select Device, off board, are you sure, yes or no, this will off board the device, do you want to continue, yes. This is nuts Microsoft!!
@directorcia
@directorcia 9 месяцев назад
It all about securely removing protection from device. Convenience vs security is a compromise.
@VibingG077
@VibingG077 9 месяцев назад
Sir how can i apply this app locker on my downloads and documents files i got an assignment of this so please help me how can i do that...
@directorcia
@directorcia 9 месяцев назад
App locker works on file executions not downloads. As always the MS documentation as well as probably ChatGPT can assist
@VibingG077
@VibingG077 9 месяцев назад
@@directorcia Yes sir, but i install an application on that download folder and try to apply that app locker through executable rule and create it but still it doesn't work why and yeah also i saw that when you do that task there is a packaged app rule option in your computer but in my computer it does not have. why and also tell me that why that app locker rule is not implement on that file it should be blocked that executions but it does not so please help me to solve that problem sir...
@directorcia
@directorcia 9 месяцев назад
@@VibingG077 as outlined in the video, if you have a stand alone pc you need Windows Enterprise. Home or Pro versions of Windows are not supported if stand alone.
@VibingG077
@VibingG077 9 месяцев назад
@@directorcia I got it, Thanks a lot kudos to you sir...🥰
@ibrahimabdeltawab6418
@ibrahimabdeltawab6418 9 месяцев назад
Thanks so much
@Noursbear
@Noursbear 9 месяцев назад
A non admi user can however be added to the Help Desk Operator group from my research
@Noursbear
@Noursbear 9 месяцев назад
excellent
@Adamhandle
@Adamhandle 9 месяцев назад
great video, exact that i am looking for. have u have any chance to test liscence transfer, is it effectively immediate?
@directorcia
@directorcia 9 месяцев назад
Don’t know sorry
@123ranaldo
@123ranaldo 9 месяцев назад
Buddy i am seeing this video in 2023 (2) years later and you explain so well for a noob like me! Thank you! - great explanation!
@user-lc2ee1bi9b
@user-lc2ee1bi9b 10 месяцев назад
Great explanation
@Mindset.moverz
@Mindset.moverz 10 месяцев назад
good lord... what a rip off. I understand buying licenses for IT member to initiate remote control but why does receiving user need to have license as well ?? my company is 15k users that would be 630K a year (3.5 USD per user) LOL
@directorcia
@directorcia 10 месяцев назад
With that number of employees I'm sure you can get an enterprise agreement where you would probably get the license for virtually nothing. PAYG licensing is not the only license available.
@agileitsolutions
@agileitsolutions 10 месяцев назад
Thanks Robert... Have setup a couple of test environments. Working well.
@footcare2394
@footcare2394 10 месяцев назад
Hi, I tried to implement this yesterday but it still doesn't seem to be working for my organisation. We have all machines connected to AzureAD, intune licences, 365 Premium business licences & Endpoint trial. All of the options you have do show up but it just doesn't seem to want to work across the devices? Is there anything I might be missing? Thanks
@directorcia
@directorcia 10 месяцев назад
What operating system? Are all devices on boarded to Defender for business?
@kashustephen
@kashustephen 9 месяцев назад
Same for me itr doesnt work, also some options you have dont appear fo rme like alerts and when i create a url in indicators it doenst show what the application is yours says browser. i have p2 license and e5 license. windows os an devices connected to azure ad and onvboarded in defender for endpoint
@directorcia
@directorcia 9 месяцев назад
@@kashustephen It depends on what plan you have. Lower plans have less capability
@bhaskey7
@bhaskey7 10 месяцев назад
Amazing video, thank you.