Practitioner-focused IT content

Intelligence for the Modern Sysadmin

In-depth guides, scripts, and analysis for endpoint specialists, Windows admins, and IT engineers who need signal — not noise.

Growing library of real sysadmin guides, scripts & analysis — written for working engineers.

Written for engineers working with

Microsoft 365
Microsoft Intune
PowerShell
Sysinternals
Microsoft Entra ID

Why AdminSignal

Built for engineers who’ve been burned by bad docs

Signal Over Noise

Every article, guide, and alert is written for working IT engineers — no filler, no SEO padding. If it's here, it earned its place.

Deep Technical Depth

Step-by-step guides that go beyond surface documentation. From Group Policy internals to Intune Graph API calls, we go where the manuals stop.

Scripts That Actually Work

Production-tested PowerShell, ready for enterprise environments. Reviewed, documented, and built for real deployments, not just demos.

Curated Tool Intelligence

Honest, practitioner-reviewed recommendations. No affiliate fluff — just tools that experienced sysadmins actually reach for on hard days.

Latest Signals

What's happening in IT right now

Patch Tuesday
New

May 2026 Patch Tuesday: admin deployment notes and checks

May 2026 Patch Tuesday deployment notes covering KB5089549 for Windows 11, Windows Server updates, BitLocker PCR7 known issue, Secure Boot certificate readiness, Intune Autopatch hotpatch, and WSUS deployment checks.

·10 min read·AdminSignal
Read

Featured Guides

The depth your vendor docs don't cover

Step-by-step technical guides that go where official documentation stops — from GPO internals to Graph API edge cases.

Microsoft 365AdvancedUpdated May 2026

Exchange Online SMTP AUTH Basic Authentication 2026 Migration Planning

A practical operational guide for planning Exchange Online SMTP AUTH Basic Authentication and credential-based Exchange Online PowerShell automation migrations, covering inventory, EAC and Entra checks, mailbox and tenant settings, OAuth, High Volume Email, Azure Communication Services Email, relay caveats, app-only PowerShell, managed identity, rollback, and prevention controls.

Read the guide
32 min read
Abstract terminal panel connected to Microsoft Graph style automation nodes
PowerShell
PowerShellAdvanced

Migrating AzureAD and MSOnline PowerShell Scripts to Microsoft Graph PowerShell SDK

A practical migration guide for replacing production AzureAD and MSOnline PowerShell scripts with Microsoft Graph PowerShell SDK, covering module strategy, delegated and app-only authentication, managed identity, permission discovery, cmdlet mapping, paging, OData filters, eventual consistency, throttling, beta endpoint risk, logging, rollback, and prevention checks.

34 min read
Read guide
Abstract managed endpoint fleet with shield and telemetry lines
Endpoint Security
Endpoint SecurityAdvanced

Rolling Out Microsoft Defender for Endpoint with Intune in a Managed Windows Fleet

A practical operational guide for rolling out Microsoft Defender for Endpoint with Intune across a managed Windows fleet, covering tenant connection, licensing, Plan 1 versus Plan 2, onboarding, endpoint security policies, antivirus, firewall, ASR, EDR, baselines, pilot rings, reporting, coexistence, rollback, and prevention checks.

30 min read
Read guide

Script Library

Production-ready PowerShell for real environments

Tested, documented scripts for endpoint management, compliance, and automation.

PowerShell

Get-StaleDevices

Identifies devices inactive for a configurable threshold across Intune, Entra ID, and on-premises Active Directory. Outputs CSV and HTML reports with remediation actions.

IntuneEntra IDActive Directory
Real-world scriptView script
PowerShellNew

Invoke-WindowsHardening

Applies a configurable subset of CIS Level 1 and Level 2 controls to Windows 10/11 endpoints. Runs locally or via Intune remediation script. Generates a pre/post compliance delta report.

CISHardeningSecurity
Real-world scriptView script
PowerShell

Get-PatchComplianceReport

Queries WSUS or Windows Update for Business status via WMI and Graph API. Produces a per-device patch lag report with severity breakdown and exportable HTML dashboard.

Patch ManagementWSUSWUfB
Real-world scriptView script

AdminSignal Weekly

The signal, every Tuesday.

A curated digest of the most important security alerts, new guides, and fresh PowerShell scripts — sent once a week. No filler, no vendor hype.

No spam • Unsubscribe any time • We never share your email.

Recommended Tools

Tools I use in enterprise environments

These are the tools I reach for when managing real enterprise fleets — tested in production, not picked for referral fees.

Links go directly to each vendor's official site — no middlemen. I only list tools I've personally used in production environments.

These are practitioner recommendations. If affiliate arrangements are ever established, they will be clearly disclosed. Full disclosure policy →

About the Author

Jack

Senior Enterprise Sysadmin · 12+ Years Windows & Intune

  • 12+ years enterprise Windows & Intune
  • Production-tested — not lab theory
  • Content updated regularly, not published once and forgotten

Certifications

  • Microsoft Certified: Modern Desktop Administrator Associate
  • Microsoft Certified: Endpoint Administrator Associate

Content kept current. All guides and scripts are reviewed and updated as Microsoft ships changes — not published once and left to rot.

Last site-wide review: May 2026

Practitioner-written. Not a content farm.

AdminSignal exists because I kept hitting the same wall: Microsoft docs that stop at "click Apply", blog posts written by people who clearly haven't touched a real fleet, and Reddit threads that end with "it depends."

Everything I publish here is drawn from 12+ years managing Windows environments — Intune tenants with 10,000+ devices, Active Directory migrations, endpoint security hardening for regulated industries, and the kind of PowerShell that gets written at 2 AM when something breaks. If a guide is on AdminSignal, it has been run in production, not just a dev VM.

The site covers Microsoft Intune, PowerShell automation, Windows Server, endpoint security, and the day-to-day reality of running enterprise IT. I write the content I wish existed when I was learning — and the content I still reach for when I'm stuck.

AdminSignal content is produced independently. Editorial policy · About this site

Last site-wide review: May 2026
All content written and tested in production environments by a senior enterprise sysadmin.