Category: Evergreen FAQ

  • Employee Onboarding and Offboarding Are IT Processes, Not Tasks

    One of the most common requests the logic-IT team receives goes something like this: “We just hired someone, can you set them up with email?” It comes in most weeks, often the day the new hire is supposed to start. The ask sounds simple, but it points to a much larger gap that quietly causes problems for small businesses.

    One Request, Many Moving Parts

    Setting up email is rarely just setting up email. A new employee typically needs access to several systems before they can do their job effectively. Depending on your business, that list might include:

    • A company email account and any shared inboxes they need to see
    • Cloud storage and shared drives with the right folder permissions
    • Business software licenses, whether that is accounting, project management, or industry-specific tools
    • A company device that is configured, secured, and ready to use
    • Multi-factor authentication setup across every platform

    When there is no checklist, each of these items gets remembered at different times, by different people. The new hire spends their first days waiting on access instead of getting productive. That is a frustrating experience for them and a waste of time for whoever is fielding the requests one by one.

    Offboarding Is the Bigger Risk

    If slow onboarding is an inconvenience, poor offboarding is a genuine security risk. When an employee resigns or is let go, access needs to be revoked quickly and completely. Without a defined process, things get missed. Former employees have retained access to company email, shared drives, and cloud tools for weeks after their last day, sometimes without anyone realizing it.

    That kind of exposure can lead to real consequences. A former employee with lingering access to client data, financial records, or internal communications is a liability, regardless of how the departure went. Most of the time it is not malicious, but the risk is the same either way.

    The question worth asking is this: if someone on your team resigned today, what would your first hour look like? Is there a clear list of accounts to disable, devices to collect, and permissions to remove? If the answer is uncertain, that gap is worth closing before you need it.

  • Why Your VPN Keeps Dropping (It’s Not Your Wi-Fi)

    If your VPN drops in the middle of a call and your first instinct is to blame the Wi-Fi, you are not alone. It is one of the most common complaints the logic-IT team hears from small businesses across Georgia. And in most cases, the router is completely innocent.

    Why Wi-Fi Gets the Blame

    Wi-Fi is visible and easy to point at. You can see the signal bars, you can reboot the router, and it feels like doing something. But a VPN connection lives at a different layer of your network. It depends on software versions, authentication handshakes, and server-side configuration, none of which a new router will touch. Upgrading your hardware before diagnosing the real problem just adds cost without solving anything.

    The Three Things That Actually Cause VPN Drops

    • Client and server version mismatch. VPN software on your laptop needs to match, or at least be compatible with, the version running on the server. When they fall out of sync after an update on either end, the connection becomes unstable. This is one of the first things logic-IT checks, and it clears a surprising number of cases on its own.
    • Split-tunnel settings configured incorrectly. Split tunneling controls which traffic goes through the VPN and which goes directly to the internet. When it is set up wrong, your device can lose its route mid-session, especially during video calls that pull from multiple sources at once. Reviewing and correcting those rules often stops the drops immediately.
    • Authentication timeout set too short. VPN sessions require periodic re-authentication to stay secure. If the timeout window is shorter than a typical meeting or work session, the connection will silently expire and drop while you are still actively using it. Adjusting that value to something practical, without creating a security gap, is a straightforward fix that makes a real difference.

    What to Do When the VPN Drops Mid-Call

    In the moment, the fastest recovery is usually to disconnect fully, wait ten seconds, and reconnect rather than letting the client try to resume a broken session. That gets you back faster than waiting for an automatic retry.

    For a permanent fix, someone needs to pull the VPN logs

  • Why Emailing File Attachments Creates Risk for Your Business

    A question logic-IT hears often from small-business owners goes something like this: “Can I just email this file to our vendor, or is that a problem?” It is a fair question, and the honest answer is that the file itself is rarely the issue. The problem is how the file travels.

    What Actually Happens When You Send an Attachment

    When you attach a file to a standard email and hit send, you give up control of that file immediately. A few things can go wrong from that point forward.

    • Interception in transit. Email is not a sealed channel. Attachments can be read or copied if the connection is not properly encrypted, and not every server along the route guarantees that.
    • Uncontrolled forwarding. Once your vendor receives the file, they can forward it to anyone. You have no visibility into where it goes next, and no way to stop it.
    • Blocked delivery. Many mail servers flag attachments based on file type or size and quietly hold them in a queue. Your vendor may never receive the file, and you may never get a bounce message telling you so.

    None of these problems require a sophisticated attacker. They are ordinary, everyday risks that come with the attachment habit most businesses have used for years.

    A Better Approach Most Businesses Already Have Access To

    If your business uses Microsoft 365, you already have a more controlled way to share files with vendors and clients. SharePoint and OneDrive sharing links let you send access to a file rather than the file itself. That distinction matters more than it sounds.

    With a sharing link, you decide exactly who can open it, whether they can edit or only view the content, and how long the access lasts. When the job is done, you revoke the link. The file stays in one place, under your control, and access disappears the moment you remove it.

    Compare that to an attachment. Once it lands in someone’s inbox, it lives there indefinitely. You cannot unsend it, expire it, or track where it goes. The access you granted on Monday is still active years later, even if the vendor relationship ended on Tuesday.

    What This Looks Like in Practice

    The

  • How to Spot a Fake Invoice or Login Page Before You Click

    A staff member gets an email from what looks like a familiar vendor. The logo is right, the tone is professional, and there is a “Pay Now” button front and center. It feels routine. Then someone flags it, and suddenly the whole team is asking the same question: how did that almost work?

    This scenario comes up regularly for the logic-IT team. Phishing emails and fake login pages are not crude anymore. They are built to pass a quick glance, and they often do. The difference between a costly mistake and a near miss usually comes down to knowing exactly where to look.

    The Details That Give Fakes Away

    Attackers put real effort into making fraudulent emails look legitimate, but they almost always leave traces. The most common tells include:

    • A sender domain with one transposed letter. The display name may say your vendor perfectly, but the actual sending address might read “invoi ces@acm e-supp1ies.com” instead of the real domain. One character off is all it takes.
    • A payment button that routes somewhere unexpected. Hover over any “Pay Now” or “Click Here” link before you touch it. If the URL does not clearly match the vendor’s actual domain, treat it as suspicious.
    • A login page without HTTPS. Any page asking for credentials should show a padlock and “https” in the address bar. A page that loads over plain HTTP is a hard stop.
    • Urgency without a paper trail. Real vendors rarely send a first contact as an urgent payment demand. If there is no prior invoice, purchase order, or conversation to match it against, that pressure is a tactic, not a deadline.

    The One Habit That Stops Most Attacks

    Spotting visual clues helps, but the single most reliable defense is verifying through a separate channel you already trust. That means picking up the phone and calling the vendor using a number from a previous paper statement, your own saved contacts, or the vendor’s official website. Do not use any contact information inside the suspicious email itself. An attacker who sent the email also controls whatever phone number or reply address appears in it.

    This one step, calling to confirm before acting on any unexpected financial request,