this post was submitted on 29 Sep 2023
276 points (97.3% liked)

Tech Support Memes

2006 readers
1 users here now

Memes about IT and computer related things, funny screenshots, or things you see out in the wild.

founded 2 years ago
MODERATORS
 
top 11 comments
sorted by: hot top controversial new old
[–] [email protected] 15 points 1 year ago (1 children)

Implement sspr tools and tell them to do it themselves

[–] [email protected] 12 points 1 year ago (1 children)

This in addition to giving users passwords from hell if they refuse to use self-service.

pwgen 32 what a great friend you have been

[–] [email protected] 9 points 1 year ago (2 children)

Refusal isn’t an option they have. Usage of MFA and SSPR is required to work, they will not have access to company systems unless they comply. That is the rule at any company that takes data security serious at all.

[–] [email protected] 2 points 1 year ago (1 children)

As someone who worked for an MSP, not all customers believe that they require these security measures. Especially smaller companies would jest they were too small to be a hacking target.

Many users would call in saying their users didn't work, while in truth their password was expired. We would tell them to use the sspr, and they would call back 10-15 min later and say that the sspr didn't work. So instead of going through the steps to troubleshoot something in front of them, to prove that they were lying, we would set pwgen passwords and depending on when they called and their attitude we had a scoring system and use their score for the pwgen command. After some time of doing this, fewer users would call in and more of them would learn to use the sspr

[–] [email protected] 1 points 1 year ago

Yea MSPs can’t do this because they typically support a bunch of businesses so small they barely need anything and aren’t worth attacking because there is no money to ransom. My comment is from the major Corp IT perspective

[–] [email protected] 2 points 1 year ago (1 children)

Every 3 months my company just increments the last digit.

[–] [email protected] 5 points 1 year ago (1 children)

I mean, that’s what lots of users do. My state requires that all state employees change their password every 90 days. This just means everyone has an incrementing number at the end of their password. Because the idiot users just write it on a fucking sticky note, which totally negates the idea of password changes.

[–] ridago 8 points 1 year ago (1 children)

Regular password changes haven’t been recommended procedure for several years now. The only problem it solves is preventing people from using the same password everywhere, but since everyone just sticks a number at the end anyways it doesn’t actually protect against that either

[–] [email protected] 3 points 1 year ago

Exactly. The problem is that government policy is slow to change. So when the government has made it a required change every 90 days, that policy will stick around for decades even after the practice has fallen out of favor.

[–] [email protected] 10 points 1 year ago

It's always submission/deadline day. No other type of day exists the have a deadline every fckn day. "don't upgrade xy software for the next.... don't upgrade it we have tight deadline"

[–] [email protected] 3 points 1 year ago