New EnTrust Certs for PIV Authentication for LAS/MCU

New EnTrust certs were released by Peraton and were supposed to be deployed to all MCU/LAS systems by 8/18/2023. The DOI USAccess team was just made aware of these new certificates today, 8/23/23 and have pushed through an emergency RFC to the new certificates to Active Directory just a few minutes ago.  These will take time to replicate throughout the …

Read More…

USGS SysAdmin Tools (USAT) v2.4.3

Version 2.4.3 of USAT, the USGS SysAdmin Tools PowerShell module, has been released to the Stable channel! Updates include:

  • New Get-SoftwareUsers tool for listing users set up for specific software via AD groups (Adobe, Enterprise Software Catalog, etc.)
  • Export-LapsPasswords can now pull the Windows LAPS password for machines that have migrated (which is most, at this point)
  • The USAT module should …

    Read More…

    USGS SysAdmin Tools (USAT) v2.3.3

    Version 2.3.3 of USAT, the USGS SysAdmin Tools PowerShell module, has been released to the Stable channel! Updates include:

  • New Export-LapsPasswords tool for producing a CSV file of usgs_laps passwords for all Windows machines in Active Directory
    New Remove-UserFromComputer tool for removing a local account and its profile from computer(s) – e.g., for local admin accounts in use prior to the …

    Read More…

  • Curl Use-After-Free < 7.87 on Windows

    The ePatching and Security Assurance Teams are aware of the increase in Tenable findings for Curl < 7.87 on Windows-based Operating Systems and are monitoring the situation. It appears that a fix for this will have to come from Microsoft. The vulnerability is classified as a “Medium” severity and is not currently on CISA’s list of Read More…

    Docker Desktop – Uninstall Directive with Exception process defined that will include POA&Ms and cost recovery for remaining installed licenses 

    To:            GS IT All 

    Subject:  [UPDATE 2] Docker Desktop – Uninstall Directive with Exception process defined that will include POA&Ms and cost recovery for remaining installed licenses 

    WHEN IT WILL HAPPEN:  Final Deadline: March 31, 2023 

    WHAT WILL HAPPEN:      Docker Desktop must be uninstalled from all systems.  Systems that require an exception will need to submit POA&M paperwork and will be cost recovered for remaining installations after …

    Read More…

    Hotfix Available for LAS/MCU systems

    USAccess has released a hotfix to address the following issue:

    USAccess is currently experiencing an issue with credential check-in, activation, and local print for some V8.1 cards.  The issue affects the ability of credentialing sites to check-in cards in the Credential Inventory Tool (CIT), with operators receiving an error message of “Credential record was not found. Reference Code AAAAA”.  …

    Read More…

    Updated Schedule- November 2022 Patching for Windows

    Windows Logo 2022

    UPDATE 2 (11/18/2022):

    Microsoft has published Out-of-Band (OOB) Cumulative Updates for Server OSs, including KB5021654KB5021655KB5021656. These non-security updates address the Kerberos authentication issue that were introduced and discovered during the November Monthly Fast Ring. 

    No new patches have been published for client operating systems.

    The November Monthly BigFix Baseline …

    Read More…