Tuesday, April 14, 2020

MIS2000 Links

Using Power BI for data analytics and reporting
https://docs.microsoft.com/en-us/learn/paths/create-use-analytics-reports-power-bi/

City of Winnipeg Software Piracy
https://www.cbc.ca/news/canada/manitoba/city-of-winnipeg-manager-in-charge-of-police-radios-arrested-after-2-year-investigation-1.5027975

What's wrong with this picture?
https://twitter.com/DaveLeeBBC/status/1102359402151985152

Computer system failure grounds transit system in San Francisco
https://www.bart.gov/news/articles/2019/news20190309

Supply Chain Management Simulator
https://www.scmglobe.com/supply-chains-roman-empire/

Career wisdom from IT pros
https://www.reddit.com/r/sysadmin/comments/dzm3xs/once_a_young_sysadmin_and_now_an_old_unicorn_how/

(A few) Ops Lessons We All Learn The Hard Way
https://www.netmeister.org/blog/ops-lessons.html

Michael Geist blog (copyright and net freedom issues)
http://www.michaelgeist.ca/


Government IT failures


Federal Government - Phoenix payroll system #1
http://www.oag-bvg.gc.ca/internet/English/parl_oag_201711_01_e_42666.html

Federal Government - Phoenix payroll system #2
http://www.oag-bvg.gc.ca/internet/English/parl_oag_201805_01_e_43033.html

More Phoenix payroll
https://twitter.com/PSSuzanne/status/1098720582516895745

Phoenix payroll - 3 years later and still broken
https://www.thestar.com/news/canada/2019/03/10/still-stuck-on-the-phoenix-pay-roller-coaster-these-canadians-just-want-to-get-off.html

Federal Government - Gun registry
https://www.cbc.ca/news/canada/timeline-the-gun-registry-debate-1.786548

Security

Malware distribution hosted in LED light control console
https://news.microsoft.com/apac/features/law-enforcement-and-microsoft-come-together-to-bust-a-major-malware-attack-in-taiwan/

Ransomware attacks lock 2 Manitoba law firms out of computer systems
https://www.cbc.ca/news/canada/manitoba/winnipeg-law-firms-computer-virus-ransomware-1.5530825

Is Huawei really a risk?
https://www.reuters.com/article/us-huawei-tech-usa-pompeo/u-s-wont-partner-with-countries-that-use-huawei-systems-pompeo-idUSKCN1QA1O6?utm_source=reddit.com

City of Saskatoon phishing
https://thestarphoenix.com/opinion/columnists/tank-scam-stings-at-saskatoon-city-hall-with-shiny-fiscal-reputation

City of Ottawa victim of phishing
https://www.ctvnews.ca/canada/ottawa-city-treasurer-transfers-130k-of-taxpayer-funds-to-email-fraudsters-1.4371900

Stolen laptop with health data
https://www.cbc.ca/news/canada/north/nwt-stolen-laptop-encryption-it-department-1.5044118

Government of Nunavut Ransomware
https://nunatsiaq.com/stories/article/government-of-nunavut-slowly-rebuilds-computer-network-following-ransomware-attack/

Nursing Home Network Ransomware
https://www.cbsnews.com/news/hackers-ransomware-nursing-homes-14-million/

Spear Phishing
https://www.microsoft.com/security/blog/2019/12/02/spear-phishing-campaigns-sharper-than-you-think/

Scammy companies


WeWork - A tech company?
https://www.businessinsider.com/weworks-nightmare-ipo?r=US&IR=T?utm_source=markets&utm_medium=ingest

WeWTF
https://www.profgalloway.com/wewtf

Theranos timeline
https://www.refinery29.com/en-ca/2019/01/223033/theranos-scandal-timeline-what-happened-elizabeth-holmes-documentary

Theranos - Wall Street Journal expose
https://www.wsj.com/articles/theranos-has-struggled-with-blood-tests-1444881901


Cryptocurrency


What is cryptocurrency?
https://blockgeeks.com/guides/what-is-cryptocurrency/

QuadrigaCX Cryptocurrency Exchange Shadiness
https://www.cbc.ca/news/business/quadriga-bitcoin-bankruptcy-1.5004735

QuadrigaCX empty accounts - even more shady
https://www.ctvnews.ca/business/search-into-missing-cryptocurrency-turns-up-empty-cold-wallets-report-1.4319270

Cryptoqueen: How this woman scammed the world, then vanished
https://www.bbc.com/news/stories-50435014




Thursday, April 2, 2020

Azure AD Connect Large Object Error

A client is migrating their remaining mailboxes from on-premises Exchange to Office 365. Today they went to migrate a mailbox, but the user account wasn't replicated up to Office 365. After verifying that it was not being filtered by OU in Azure AD Connect, I checked the Synchronization Service Manager for Azure AD Connect and found an error listed for the export to the Azure AD tenant (XXX.onmicrosoft.com).

The error was LargeObject and when I drilled down, it had these details:
The provisioned object is too large. Trim the number of attribute values on this object.

This error is typically caused by:
  • Too many user certificates (15 max)
  • Too many SMIME certificates (15 max)
  • A thumbnail photo that is too large
  • Too many proxy addresses
This user object did not have any user certificates, SMIME certificates, or a thumbnail photo. So, let's check out the proxy addresses.


The user object had 540 addresses. After a bit more research, I found that user objects in Azure AD have a limit of 400 proxy addresses, Azure AD Connect has a limit of 333 proxy addresses.

They do have a legitimate need for this account to receive mail for all of those addresses. We implemented a workaround by creating a group for the extra addresses. We removed 300 email addresses and put them on a group where that user is the only member. Mail flow is preserved and now both the user and the group can sync. The group is hidden from address lists to avoid confusing the users.

More information: