Last month, the combined MFA and password reset registration portal has been made generally available. Previously, a user could register his security information on two separate locations, for MFA and … Continue Reading Requiring two MFA methods with the Combined Registration
Microsoft Endpoint Manager (Intune) currently supports three different Android Enterprise enrollment methods: Work Profile Dedicated Device Fully Managed Each method has it’s own purpose. Work Profile is mostly used for … Continue Reading Android Enterprise Dynamic Groups for Intune
Every Microsoft 365 Security engineer has the same struggle: maintaining corporate IP-address range needs to be done in two places. Once in trusted named locations in Azure AD and once … Continue Reading Sync Named Locations to MCAS IP Ranges using Azure Automation
Link to the ARM template for the full playbook can be found on Github. Microsoft cloud SIEM, Azure Sentinel, is an amazing product which can provide central logging and reporting … Continue Reading Saving corporate IPs to Log Analytics with Logic Apps
As a lot of organizations are picking up Power Apps, I have seen more and more use for them. Some organizations are now developing Power Apps and having their end … Continue Reading Deploy Power App to a Managed Home Screen through MEM
A lot of companies want all their employees to have all calendars open by default. That way any employee can view the calendar of a colleague to check if he/she … Continue Reading Setting up calendar sharing in a multilingual company
Break The Glass or emergency accounts are a necessity in the cloud world we live today. Every year Azure AD goes down for a few hours because of some Multifactor … Continue Reading Best Practices for Emergency Accounts
Dynamic Groups in Azure AD are truly an amazing feature. It lets you manage a large group of users without the need to manually add every one of them in … Continue Reading Creating a dynamic group with all AAD Premium licensed users
I was recently involved in a Exchange Migration that also involved an Enterprise Vault migration. The company in question currently had about 2000 archived that needed to be moved into … Continue Reading Updating the flag status of an Exchange email through Powershell EWS
Patch My PC is probably the most known product for Automated Third Party Application Patch Management with SCCM integration. This is an amazing product that simplifies your Third Party Application … Continue Reading Automating 3rd Party application deployment in Intune with PatchMyPc
During recent weeks, an increase in OAuth phishing attacks has been spotted. OAuth Phishing attacks are an evolution of the old phishing attacks we all know and hate. During a … Continue Reading Protecting against OAuth attacks: Setting-up Admin Consent Workflow
Almost every Office 365 migration has the same step involved every time: changing the UPN suffix of all the users from a non-routable (local) domain to a routable, public domain. … Continue Reading Changing AD UPN in bulk using Powershell GUI
Update 06/01/2020 I received an email from Google last week that the previous Android Certification website is being deprecated. Starting from 1/01/2020 all certifications need to be completed through http://googlepartnertraining.fathomed.com. … Continue Reading Android Enterprise Certifications
A while back Azure AD has announced Azure AD Security Defaults. Azure AD Security defaults is positioned as a baseline to harden the security of your Azure AD Tenant. Conditional … Continue Reading What is Azure AD Security Defaults & should you be using it?
Passwordless has been one of those buzzwords in 2019. So many articles and announcements have been made around it recently. First there was passwordless through the Microsoft Authenticator app. I … Continue Reading My thoughts on passwordless in AzureAD
I have been doing quite a few projects involving Hybrid Azure AD Join lately and have learnt a lot about it and how you should begin your troubleshooting journey. What … Continue Reading Troubleshooting Hybrid Azure AD Join
Last month Microsoft announced that basic authentication is being turned off on October 13, 2020. There are still a lot of admins who are unaware of this change and what … Continue Reading Basic Authentication is being deprecated – Help!?
In the newest release of Intune, support for the Managed Google iFrame has been added. This means a newer version of the Managed Google Play store had been inbedded into … Continue Reading Google iFrame: Deploying Web Links with Intune
When using the regular Office 365 deployment in Intune there are a few limitations. If you want to change the current installation (add or remove apps) Intune doesn’t handle some … Continue Reading Installing Visio onto an Existing Office installation with PSADT and Intune
In the beginning of this week, I was invited to a Microsoft training about the new Surface HUB 2S. The 2S is the successor of the Surface HUB, Microsoft ‘Creative … Continue Reading Managing the Surface HUB 2s through Intune
Azure AD Group based licensing is a pretty awesome Office365 feature. It automatically assigns licenses based on the groups of a user. This group can be a security group synced … Continue Reading Reporting Azure AD Group Licensing
Microsoft has finally released their Intune Powershell module! This was the third most requested feature on the Uservoice section of Intune ( https://microsoftintune.uservoice.com/forums/291681-ideas/suggestions/8363319-add-powershell-support-to-manage-the-service). Previously all the automation in Intune had to … Continue Reading Microsoft Intune Powershell preview releases!
Checking the domain join type of a computer used to be easy (here was only one :)). We could to go to System Information pane of the Control Panel. Here … Continue Reading Checking the join method on a Windows 10 computers.
Setting up Enterprise Mobility & Security for your organization is one thing. But what’s important is supporting and following it up after implementation. To help you in this, Microsoft offers … Continue Reading PowerBI reporting for Intune and AzureAD
Something went wrong. Please refresh the page and/or try again.