Category: CRUNCH

Deep Dive, helped us solve customer problems.

CRL check, Zertifikatsperrlisten Software, Certificate Revocation List Check Tool zum suchen aller geblockten CRL in Firmenumgebungen, crlcheck.exe

crl check | crlcheck tool Eine Certificate Revocation List (CRL) ist eine von einer Certification Authority (CA) geführte Liste, die digitale Zertifikate auflistet, die revoziert wurden und nicht mehr gültig sind. Sie stellt sicher, dass Benutzer die Gültigkeit eines Zertifikats überprüfen können, was die Sicherheit innerhalb einer Public Key Infrastructure (PKI) erhöht. Mit diesem Tool […]

CRLcheck.exe Certificate Revocation List Check Tool to verify all CRL and OCSP on Windows client

CRLcheck.exe, Certificate Revocation List Check Tool to automatic verify CRL and OCSP internet reachability of all your EXE files that your client runs. Download 01.01.2026, NEW Release 2.2.0.0 rebuilt for server and small display resolutions like VM’s Version 2.2.0.0 Download from our Server or different software portals: https://www.butsch.ch/wp-content/uploads/tools/crlcheck/latest/crlcheck.7z https://www.softpedia.com/get/Security/Security-Related/Certificate-Revocation-List-Check-Tool.shtml https://www.majorgeeks.com/files/details/certificate_revocation_list_check_tool.html     Over the past […]

Missing entry in Fortigate Application Filter ROOT.CERTIFICATE.URL and OCSP source of W10 Setup failing

FortiGate Application Filter Certificate wrong/missing Entry sample for an important laptop driver (W10 Deployment fails because of signed Driver Revocation Lookup) Missing entry in Fortigate Application Filter “ROOT.CERTIFICATE.URL” and “OCSP” source of failing Windows 10 Deployment with commercial Deployment Products (This includes HP client hardware, Microsoft SCCM, Landesk or Ivanti Frontrange). During the Unattend phase […]

M365/Intunes | MDM and MAM enrollement, Primary user, User Scope Limitation what affect

M365/Intunes | MDM and MAM enrolled difference explained   First, let’s take a look at two different models: MDM and MAM. These models provide options for managing endpoints, including computers, clients, mobiles, and smartphones.     Mobile Device Management (MDM) Often device corporate owned and paid (Regular employee of SBS or Enterprise)     MDM […]

M365/Exchange Hybrid OAuth Testing command, OAuth-Cert out-of-sync 4001, IIS VDIR OAuth wrong

www.butsch.ch Resolve and find OAuth problem in Exchange Hybrid Setup Environment Short Understanding OAuth: OAuth (Open Authorization) is an industry-standard protocol that enables secure authorization for third-party applications without the need to disclose user credentials. It allows users to grant limited access to their resources on one site to another site, without sharing their credentials. […]

Active Directory accounts with ADMINSholder/adminCount flag | No syncback from Azure, ms-ds-consistencyGuid

english, Management summary To gain a better understanding of the ADMINSholder/adminCount attribute, we recommend referring to the provided blog posts, which shed light on the impact of this flag, particularly regarding ActiveSync and GPO. This attribute poses a challenge in the synchronization process of the Synchronization Service Manager (Microsoft Azure AD Connect Synchronization Services) as […]

IE11 GPO Settings, PROXY Explained F5-F8, Proxy settings still used in 2023 by system account

This may be useful in 2023 because SYSTEM (The PC itself) still often uses PROXY and IE Settings. Often on New environment and DC or GPO Console you can’t see those old settings but sometimes they are still affective. Check out our other IE11 LINKS: https://www.butsch.ch/post/ie11-ieak-11-setup-9-pre-deployment-patches-2b-1-hotfix/ htps://www.butsch.ch/post/internet-explorer-9-11-gpo-old-ie9-not-visible-wmi-checks/ IE11 GPO Settings, PROXY Explained F5-F8 IE11 has […]

M365/Hybrid Exchange Setup: Steps to verify on-premise, Prepare for Directory Synchronization (IDFIX, UPN, Proxyaddress)

TIP: Cleanup everything LOCAL before you even think of moving anything to M365 or Azure or even starting the Connector PRO TIP: Full manual list of Objects/attribute to check on your local ADS in this blog. This blog entry is mainly about those two steps of the MS Technet: https://learn.microsoft.com/en-us/microsoft-365/enterprise/prepare-for-directory-synchronization?view=o365-worldwide Directory Clean-up Tasks Directory object […]

Exchange 2013/2016 and 2010 Proxy back (400) Bad Request, ADS-user in too many ADS-groups member

Exchange 2010/2013/2016 Migration, problem after DNS-pointing to 2016 structure with some users Outlook.exe When you thought Kerberos Bloating is way back 2012 it returns. And after some research it is still all over the place. It does affect on premise Solutions as well as cloud solution like ADFS, AZURE etc. Error: This error (HTTP 400 […]

Missing entry in Fortigate Application Filter ROOT.CERTIFICATE.URL and OCSP source of W10 Setup failing

Fortigate Application Filter Certificate wrong/missing Entry sample for an important laptop driver (W10 Deployment fails because of signed Driver Revocation Lookup) OR HOW a missing small ENTRY I a FORTIGATE FIREWALL IPS/APP filter can ruin your Windows 10 OS-Deployment work.   Reason: Missing entry in Fortigate Application Filter “ROOT.CERTIFICATE.URL” and “OCSP” source of failing deployment […]