landwomble
landwomble t1_jc2ez3t wrote
Reply to comment by MammothJust4541 in The UK is banning TikTok on government devices — joining the US, Canada, and the EU — despite a charm offensive dubbed 'Project Clover,' report says by chrisdh79
BYOD is fine (although I'm fairly sure the civil services DOES supply work phones to most line of business staff who require one). However you should be enforcing Android Work Profile or the iOS equivalent when accessing corporate resources as part of a Conditional Access Policy. E.g. as soon as you sign into work email etc it enforces MDM before you get access. This will do stuff like insist on a secure PIN/password screen lock, control over application install under an allow/deny list, enforce device encryption as well as provision it with any certs needed to access company resources. Every company I can think of has been doing this for years and it's trivial and essential under a Zero Trust model for security.
landwomble t1_jc27qdz wrote
Reply to comment by cartsucks in The UK is banning TikTok on government devices — joining the US, Canada, and the EU — despite a charm offensive dubbed 'Project Clover,' report says by chrisdh79
<shrugs> Pretty much every company does exactly that. It's neither hard nor expensive (and is probably a significant saver of money from not having to clear up after security incidents). UK Gov uses M365, they have access to InTune. Turn it on.
Personally I'd ban whatsapp/signal/telegram from them as well to enforce integrity in communications via Teams (which they are also using and licenced for) to avoid the "oops I lost my phone, sorry" responses to FOIA requests.
landwomble t1_jc27ewj wrote
Reply to comment by Additional_Ad_2778 in The UK is banning TikTok on government devices — joining the US, Canada, and the EU — despite a charm offensive dubbed 'Project Clover,' report says by chrisdh79
"As a CIO I strongly believe in protecting the integrity of the network and the information contained within it, you fvcking idiot" would be my response
landwomble t1_jc27a1o wrote
Reply to comment by MammothJust4541 in The UK is banning TikTok on government devices — joining the US, Canada, and the EU — despite a charm offensive dubbed 'Project Clover,' report says by chrisdh79
What do you mean by this? It's unclear. Is it irony?
landwomble t1_jc274xy wrote
Reply to comment by SuperToxin in The UK is banning TikTok on government devices — joining the US, Canada, and the EU — despite a charm offensive dubbed 'Project Clover,' report says by chrisdh79
UK Gov has M365. They have this already via InTune. Who on earth, outside of government, would think allowing users to install ANYTHING they like on a work device was a good idea, let alone users that are privy to very sensitive information. It's madness.
landwomble t1_jc1q283 wrote
Reply to The UK is banning TikTok on government devices — joining the US, Canada, and the EU — despite a charm offensive dubbed 'Project Clover,' report says by chrisdh79
Every time I read one of these stories I want to know WHY THE FUCK these orgs aren't applying mobile device management policies to gov devices to control what is installed on them. It's easy, they have the tooling already, just TURN IT ON.
landwomble t1_j9o042e wrote
Reply to comment by hucktard in In-Car Climate Control Design: How It Has Gone Backwards and How to Fix It by nastratin
Sure, defrost/defog buttons get used, but summer or winter, with climate control you set a temp you want and the car sorts it out and maintains that temp. I guess with older style aircon with no temp sensing you might need to manually fiddle with it but on modern cars - I don't see the point. I don't want to be cold in summer, I want to be comfortable all year round...
landwomble t1_j9jwekk wrote
Doesn't everyone just set their AC to about 21 degrees, leave it on auto and forget it?
landwomble t1_j9fbwpi wrote
Reply to The new generations will never understand the pain for paying $100 for a 1GB flash drive by prettypistolgg
I remember the first thumbdrive we ever got at work. Around £400 for 120mb. That's MB, not GB.
landwomble t1_j0cc4ig wrote
Reply to comment by fgdfghdhj5yeh in Senate votes to ban TikTok on US government-owned devices | Bill comes after several states barred employees from downloading the app on state-owned gadgets over data concerns by AsslessBaboon
It just feels like something that should be universal, it's not hard to do or anything!
landwomble t1_j0b3yuu wrote
Reply to Senate votes to ban TikTok on US government-owned devices | Bill comes after several states barred employees from downloading the app on state-owned gadgets over data concerns by AsslessBaboon
Why aren't US gov owned devices subject to a device management policy? If they are Android or iOS, it's trivial to apply an MDM policy to them to control what can/can't be installed, to mandate being patched and up to date before accessing gov resources like email etc. If they're Windows or Mac, similar with InTune etc. How the hell aren't they already like this? Every large company I've worked with over the past decade has been doing this for years...!
landwomble t1_ixzsxd6 wrote
Reply to Lg dishwasher not draining, pump runs by HashBandicoot93
When mine does this I usually suck out all the water with a pump action plunger, tip a few pints of boiling water into the drain hole then carefully use the plunger on it until it unblocks. With hot water you can feel your drain pipe until you find the spot where it goes cold and that's your blockage point.
landwomble t1_jc66wl7 wrote
Reply to comment by GetOutOfTheWhey in The UK is banning TikTok on government devices — joining the US, Canada, and the EU — despite a charm offensive dubbed 'Project Clover,' report says by chrisdh79
Any corp that runs BYOD should be using Conditional Access / InTune or a 3rd party equivalent. You sign into mail/calendar etc and it enrolls your device, turns on and enforces strong PIN, encryption, remote wipe etc.
This is very much a Solved Problem.