Problem to configure Palo Alto Firewall Notification email

Q: We are configuring Palo Alto Firewall. We have a problem to setup SMTP to send a notification. We use Microsoft office 365 and put smtp.office365.com server name. However, it doesn’t work and it return with an error message.

Chicagotech.net: smtp.office365.com is Microsoft 365 standard smtp server. However, for security reason, you may want to use protection SMTP server name. It looks lime this format: chicagotech-net.mail.protection.outlook.com.

Sharp Printer SMTP settings problem

Q: We have Sharp MX-6070 multiple function printer/scan/copy. We have a problem to setup SMTP to scan to email. We use Microsoft office 365 and put smtp.office365.com server name. However, it doesn’t work and it return with an error message.

Chicagotech.net: smtp.office365.com is Microsoft 365 standard smtp server. However, for security reason, you may want to use protection SMTP server name. It looks this format: chicagotech-net.mail.protection.outlook.com.

Unable to send an invitation to a member who requests one

Situation: The client tried to send invitation to one of his friend for joining a Yahoo group. He received this message: Unable to send an invitation to a member who requests one

Resolution: The receipt needs to enable allow receive invitation in his Yahoo email preferences. This how to may help:

How to access Yahoo Groups email preferences

The User Profile Service failed the logon. User profile cannot be loaded.

Situation: The user can’t login his Windows 7 computer with this message: The User Profile Service failed the logon. User profile cannot be loaded.

Troubleshooting: 1. Restart the computer and then try it.

2. Fix the user account profile

  1. Click Start, type regedit in the Search box, and then press ENTER.

2) In Registry Editor, locate and then click the following registry subkey: HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\ProfileList

3) In the navigation pane, locate the folder that begins with S-1-5 (SID key) followed by a long number.

4) Click each S-1-5 folder, locate the ProfileImagePath entry in the details pane, and then double-click to make sure that this is the user account profile that has the error. Click each S-1-5 folder, locate the ProfileImagePath entry in the details pane, and then double-click to make sure that this is the user account profile that has the error. •If you have two folders starting with S-1-5 followed by some long numbers and one of them ended with .bak, you have to rename the .bak folder. To do this, follow these steps: a) Right-click the folder without .bak, and then click Rename. Type .ba, and then press ENTER. Right-click the folder without .bak, and then click Rename. Type .ba, and then press ENTER.   b) Right-click the folder that is named .bak, and then click Rename. Remove .bak at the end of the folder name, and then press ENTER. Right-click the folder that is named .bak, and then click Rename. Remove .bak at the end of the folder name, and then press ENTER.   c) Right-click the folder that is named .ba, and then click Rename. Change the .ba to .bak at the end of the folder name, and then press ENTER. Right-click the folder that is named .ba, and then click Rename. Change the .ba to .bak at the end of the folder name, and then press ENTER. •If you have only one folder starting with S-1-5 that is followed by long numbers and ends with .bak. Right-click the folder, and then click Rename. Remove .bak at the end of the folder name, and then press ENTER.

5) Click the folder without .bak in the details pane, double-click RefCount, type 0, and then click OK. Click the folder without .bak in the details pane, double-click RefCount, type 0, and then click OK.

6) Click the folder without .bak, in the details pane, double-click State, type 0, and then click OK. Click the folder without .bak, in the details pane, double-click State, type 0, and then click OK.

7) Close Registry Editor.

8) Restart the computer.

9) Log on again with your account.

3. Create a new account and copy the data from the old account to the new account.

4. Delete the profile by using the Computer Properties dialog box. To do this, follow these steps: 1)Click Start, right-click Computer, and then click Properties.

2) Click Change settings. Click Change settings.

3) In the System Properties dialog box, click the Advanced tab. In the System Properties dialog box, click the Advanced tab.

4)In the User Profiles area, click Settings.

5) In the User Profiles dialog box, select the profile that you want to delete, click Delete, and then click OK.

6)Click Start, type regedit in the Search box, and then press ENTER. 

7) Locate and then click the following registry subkey: HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\ProfileList

8) Right-click the SID that you want to remove, and then click Delete. 

9) Log on to the computer and create a new profile.

Please view the step by step video:

iOS Accounts needs permission to access resources

Situation: When setup iPhone to use Office 365 email with MFA enabled, you may receive this message:

iOS Accounts

You can’t access this application

iOS Accounts needs permission to access resources in your organization that only and admin can grant. Please ask an admin to grant permission to this app before you can use it.

Resolutions: 1. The best way to access Microsoft Office 365 email is using Outlook app. You can download it from Apple store.

2. If you want to use both business email and personal email in the Apple mail app, you may download Microsoft Authentication app.

3. Or set it up using Configure manually option. You will see this option after you enter domain account password. You have two options: Login admin or configure manually. When using Configure Manually, you enter all information manually including server: outlook.office365.com.

4. Enable user access to Enterprise apps. From your Office 365 Admin portal, go to Admin Centers > Azure AD > Users and Groups > User Settings then make sure “Users can consent to apps accessing company data on their behalf” is enabled. And

5. admin_consent

You will then be redirected to an Microsoft login page where the user should enter a password. On the bottom from that page you have the option to send the URL to a user. Instruct the user to send that URL to one Office 365 administrator. The URL should look like the following:

3g.) Once you get the URL, open a browser (and login into the Office Admin Center with an global admin account). Now you need to modify the URL you got.

3h.) Change the section “prompt=login” to “prompt=admin_consent”

3i.) remove the “login_hint=blocks@contoso.onmicrosoft.com&” section

3j.) now copy the modified URL and past it into the browser you have open

3k.) You will now be prompted to accept that.

3l.) Once done the browser try to redirect you to the iOS device, however on your PC this will fail, but the needed action is performed.

6. Users or groups may be assigned access to the Read&Write application

•Navigate to Azure Admin Settings -> Azure Active Directory -> Enterprise Applications -> All Applications -> Read&Write.

•Select Users and Groups -> Add User/Group.

7. A Global Administrator must give consent on behalf of users

  • Using an administrator account, use this consent link to sign-in to Office 365. 
  • You will be prompted to consent for the read permissions that the Read&Write application needs
  • After consenting, you’ll be directed to the Read&Write login page https://www.login.texthelp.com. Please allow a short period of time for the Read&Write Application to be added to your catalog.

After completing these steps, non-admin users should be able to access Read&Write for Windows!