• @hark
    cake
    link
    English
    439 months ago

    The skill of removing as much ambiguity as possible is valuable. This includes ambiguity derived from loopy brain. Prepare to still be amazed by wild interpretations, but minimize what you can. One tip is to reduce message complexity and clearly separate concepts (in this case, the greeting and the actual instructions).

    • @vladmechOP
      link
      English
      289 months ago

      I get that, and I’ve had a reminder of an old failing at explicit communication to end users on my desk for 5+ years to help keep me grounded, but come on… In what interpretation other than Yoda giving instructions would an English as their first language user think ‘hey hey!’ was the username I was providing? It’s out of frame, but the previous three sets of IMs I’ve sent this user started with hey hey! hey hey! and hello hello! so it’s not like this was even a one off weird greeting for them (I should probably mix it up a bit more but what can you do)

      • @hark
        cake
        link
        English
        199 months ago

        That’s another useful tip: never underestimate user stupidity.

        • Echo Dot
          link
          fedilink
          English
          129 months ago

          I had to screen share with a user yesterday because he couldn’t find the print button on the print dialogue.

          It was right there. When I remoted onto his computer his cursor was about four pixels away from it. It even said “Print”.

          No idea how he managed to mess that up.

        • @vladmechOP
          link
          English
          49 months ago

          Haha that’s very true, yeah

      • Someology
        link
        English
        109 months ago

        It is almost as if OP was expecting their customer to have attended elementary school or something.

    • @Sniper
      link
      English
      11
      edit-2
      8 months ago

      Removed by mod

  • @_bug0ut
    link
    English
    35
    edit-2
    9 months ago

    An auditor with this level of scrutiny and attention to detail? Say it ain’t so.

    • @vladmechOP
      link
      English
      179 months ago

      Sadly this was an internal coworker who requested the auditor’s access…

      • @_bug0ut
        link
        English
        49 months ago

        Oof, i can relate to that.

        What’s really sad here, though, is that it was so easy and effortless to assume it was the auditor himself lmao

  • @SpaceNoodle
    link
    English
    149 months ago

    Ah yes, email, the most secure channel possible

    • @vladmechOP
      link
      English
      169 months ago

      Super fair, but it’s at least across two channels for a 3 day login with very limited permissions, not something I’m worried about in this situation.

      • @[email protected]
        link
        fedilink
        English
        9
        edit-2
        9 months ago

        Actually it is not. 1:1 and group chats in Teams are stored in each participants mailbox. Ignore this if you’re using exchange server or other onprem or cloud solution for email than exchange online :^)

        https://learn.microsoft.com/en-us/purview/ediscovery-teams-workflow#where-teams-content-is-stored

        Also both are stored in clear text due to compliance reasons.

        While SMS is rather insecure protocol, it’s still generally the best way of delivering a new password to users as long as the username is delivered in a different way. This is mainly because it’s one of the only methods generally available that is completely separate from your other communication methods besides calling (but try delivering password via call haha)

        Also the SMS should not contain any context to which system it is meant for, this info should be delivered together with the username. It’s sometimes rather easy to guess a username (such as first.lastname or shortened) but gets harder when you need to guess the system as well.

        Of course even better way would be to not deliver password at all and let the user reset their passed themselves if there’s a system in place for it. SSPR if you’re in m365. https://learn.microsoft.com/en-us/azure/active-directory/authentication/concept-sspr-howitworks

        Edit: not sorry for rant these are very interesting topics I love to talk about.

        Edit2: formatting + more rant about sms

        • Echo Dot
          link
          fedilink
          English
          29 months ago

          I’ve heard of SSBL; Single Sign on Before Log on, but I’ve never heard of SSPR what’s that one do?

          • @[email protected]
            link
            fedilink
            English
            2
            edit-2
            9 months ago

            Self-Service Password Reset. You can use MFA to verify your identity to reset a password and those MFA methods can be predefined by admins.

            So you can allow user to reset their initial passwords using SMS OTP and some another factor such as location (approved public IP ranges at offices for example)

            https://learn.microsoft.com/en-us/azure/active-directory/authentication/concept-sspr-howitworks

            I have to admit I have not implemented or even seen SSPR configured for initial password before, but this talk actually made me want investigate it further. Lab project for the weekend!

        • @[email protected]
          link
          fedilink
          English
          18 months ago

          Ok, but could you imagine trying to get this user to get a password from SMS? They’d probably get a text from their friend at the same time and not understand.

          “I tried every variation of ‘miss you ttys’ for the password, but nothing is working!”

          (Hopefully obvious it’s just joking)

        • @SpaceNoodle
          link
          English
          19 months ago

          That was a very educational rant, thank you!

    • @Delta_44
      link
      English
      49 months ago

      Microsoft Teams 😂

  • eltimablo
    link
    fedilink
    109 months ago

    Every day, I grow more convinced that the average person should never be anywhere near a computer.

    • @[email protected]
      link
      fedilink
      English
      49 months ago

      I am in the middle of a CRM migration and I feel like I’m having the “emails are IN the computer?!?!” conversation every hour

    • @WiildFiire
      link
      English
      59 months ago

      Translation: nobody is allowed to see this ever again because I’ve already seen it

      • @tedmustard
        link
        English
        69 months ago

        I’m IRL friends with OP and I’m just giving them shit.

        • @vladmechOP
          link
          English
          39 months ago

          I feel crept upon!

    • @tedmustard
      link
      English
      39 months ago

      Definitely saw this already on the Slack instance we share 🤣🤣🤣