• 0 Posts
  • 1.12K Comments
Joined 2 years ago
cake
Cake day: August 7th, 2023

help-circle
  • apparently it’ll pwrma lock itself after x amounts of invalid passwords which is just incredibly stupid. But don’t worry, there is a backup key! Yeah, that is lie

    If you only used TPM for bitlocker with no pre-boot authentication or something similar, it’s possible that you had the “MaxDevicePasswordFailedAttempts” policy configured. Apparently that is configured by default if you use the security baseline.

    IMO it makes a lot of sense to lockdown and require bitlocker recovery if there has been a few failed attempts.

    We use bitlocker on probably over 1000 devices I don’t believe we had any substantial issues with it. Of course users occasionally get locked out, but that should be planned for and a process should be in place to help them.

    I suggest deploying windows hello or smart cards to reduce the dependency on passwords. Window hello for business is especially great since it’s free, secure and way easier and faster for users to use, especially if your devices have fingerprint readers or face recognition. I wish Linux and MacOS had anything as useful as Windows Hello.




  • You have to pay if you want to stop a year’s commitment early. Iirc you have to pay half of what you promised you would pay them over the year. So if you changed your mind it’s cheaper to cancel than to continue paying for the months you have left.

    If you sign a contract agreeing to their terms (and receive a discount in exchange) you have to follow them. The same goes for any other contract where you have a year’s commitment like for an ISP. It’s all pretty standard.

    Is it annoying? Yeah obviously but they make it pretty damn clear when ordering that it’s a year’s commitment and that you receive a discount. Any reasonable individual should be able to figure out why you get a discount.