Skip to content
  • Privacy Policy
AJ's Tech Chatter

AJ's Tech Chatter

Windows Endpoint Management with ConfigMgr, Intune, PowerShell, and more

  • Privacy Policy
Active Directory Azure AD

Group SOA Conversion – From AD to Entra!

2025-08-022025-08-02 Anthony J. Fontanez

Entra Connect Sync 2.5.76.0 was released on 2025-07-31, and the release notes included a cool new feature: Group Source of Authority conversion feature allowing administrators

Read More
Azure AD File Services

Internet-facing File Servers, with a dash of Entra Authentication!

2025-07-272025-07-27 Anthony J. Fontanez

Now that the the “Azure AD based Windows Login” extension is available (docs here), a Windows server running in Azure or that is Arc-enabled can

Read More
ConfigMgr Intune Security

Dealing With CVE-2023-24932, aka Remediating BlackLotus

2025-05-182025-05-18 Anthony J. Fontanez

CVE-2023-24932. 2023 feels like so long ago, and yet, this is still an issue. Why? Because it’s quite frankly a mess to deal with and

Read More
Active Directory Autopilot Intune Security

Obsolete Security – Stop Setting These Policies!

2025-04-062025-04-08 Anthony J. Fontanez

The settings in the above screenshots were fairly common to be applied to all workstations as a requirement 20-ish years ago. However, it’s now 2025,

Read More
Active Directory PKI

Migrating an Online Issuing CA & OCSP

2024-03-162024-03-16 Anthony J. Fontanez

This post is mostly sourced from https://techcommunity.microsoft.com/t5/itops-talk-blog/step-by-step-migrating-active-directory-certificate-service-from/ba-p/2328766, along with some helpful notes, screenshots, and code samples from my own experience. It’s mostly here for my

Read More
Intune

Importing Certificates with Remediations

2023-12-302024-01-02 Anthony J. Fontanez

Trusted Certificate profiles in Intune are great. Unfortunately, the only certificate stores you can access with these are the Trusted Root and Trusted Intermediate stores.

Read More
Active Directory Azure AD Intune Security

Remotely Managing Windows Endpoints Part II: Azure AD Joined Hosts

2022-11-042022-11-04 Anthony J. Fontanez

Part I Alright, now on to where things get more complicated, WinRM connections to and from Azure AD joined clients. I’m going to use two

Read More
Active Directory Security

Remotely Managing Windows Endpoints Part I: Domain/Hybrid Joined Hosts

2022-11-042022-11-04 Anthony J. Fontanez

After a number of conversations with Adam Gross in Discord voice on WinAdmins about this topic, which initially started on Twitter a while back, I

Read More
ConfigMgr OSD

Domain Join Hardening Changes (KB5020276) – Workaround

2022-10-132023-03-14 Anthony J. Fontanez

2023-03-14 Update: The following post is now considered deprecated, as the updates released on 2023-03-14 offer a much better solution that does not involve workarounds.

Read More
ConfigMgr SQL WSUS

Upgrading ConfigMgr Infrastructure – Tips and Gotchas

2022-08-082023-04-19 Anthony J. Fontanez

I’ve recently worked through a number of different situations involving upgrading ConfigMgr infrastructure away from older version of Windows Server and SQL Server. In this

Read More

Posts pagination

1 2 3 Next

Recent Posts

  • Group SOA Conversion – From AD to Entra!
  • Internet-facing File Servers, with a dash of Entra Authentication!
  • Dealing With CVE-2023-24932, aka Remediating BlackLotus
  • Obsolete Security – Stop Setting These Policies!
  • Migrating an Online Issuing CA & OCSP

Contact

ajf8729
@ajf8729.com
ajf8729
ajf@anthonyfontanez.com
Mastodon

WinAdmins Community
WinAdmins
Windows-Admins
ajf@winadmins.io

WinAdmins Discord Community

Recent Comments

  • Michael on Windows Firewall Part 5: Bootstrapping Kerberos via Certificate Authentication
  • Christian on Internet-facing File Servers, with a dash of Entra Authentication!
  • Anthony J. Fontanez on Internet-facing File Servers, with a dash of Entra Authentication!
  • Steven McKenzie on Internet-facing File Servers, with a dash of Entra Authentication!
  • Louis on Dealing With CVE-2023-24932, aka Remediating BlackLotus

Archives

  • August 2025
  • July 2025
  • May 2025
  • April 2025
  • March 2024
  • December 2023
  • November 2022
  • October 2022
  • August 2022
  • February 2022
  • December 2021
  • November 2021
  • October 2021
  • September 2021
  • August 2021
  • May 2021
  • August 2020

Tags

Active Directory (15) Autopilot (2) Azure AD (4) ConfigMgr (8) File Services (1) Intune (5) Misc (1) OSD (1) PKI (2) Printing (2) Security (15) SQL (2) WSUS (2)

Categories

  • Active Directory
  • Autopilot
  • Azure AD
  • ConfigMgr
  • File Services
  • Intune
  • Misc
  • OSD
  • PKI
  • Printing
  • Security
  • SQL
  • WSUS

Meta

  • Log in
  • Entries feed
  • Comments feed
  • WordPress.org
DigitalOcean Referral Badge
All Rights Reserved 2026.
Proudly powered by WordPress | Theme: Fairy Dark by Candid Themes.

We are using cookies to give you the best experience on our website.

You can find out more about which cookies we are using or switch them off in .

AJ's Tech Chatter
Privacy Policy / Proudly powered by WordPress Theme: Fairy Dark.
AJ's Tech Chatter
Powered by  GDPR Cookie Compliance
Privacy Overview

This website uses cookies so that we can provide you with the best user experience possible. Cookie information is stored in your browser and performs functions such as recognising you when you return to our website and helping our team to understand which sections of the website you find most interesting and useful.

Strictly Necessary Cookies

Strictly Necessary Cookie should be enabled at all times so that we can save your preferences for cookie settings.