Heard at TEC: Mischief Managed – Attacking (and securing) Azure Managed Identities
A brief recap of Andy Robbins TEC session on Azure Managed Identities, discussing what they are, their challenges, and should you avoid them?
A brief recap of Andy Robbins TEC session on Azure Managed Identities, discussing what they are, their challenges, and should you avoid them?
Guest access for your company should be planned and understood by all stakeholders, documented in the company’s Security Policy, and then implemented and reviewed to maintain a clean Azure AD environment.
Microsoft 365 tenants usually include many Entra iD apps. These apps hold permissions, including permissions that hackers like to exploit. This article explains how to use PowerShell to detect apps with high-priority permissions and report them to administrators for review.
In the Exchange Server 2019 “H1” updates, Microsoft finally supported removing the last Exchange Server. But what if you've already said goodbye to yours, and want to get into a supported state? Find out what you need to do..
Preparation, Preparation, and More Preparation Migrations in Microsoft 365 are a complex beast. It seems every time you feel like you have captured everything, more apps or functionalities appear. Every shiny new tool Microsoft releases is another consideration for migration teams and IT departments. Planning for migrations – tenant-to-tenant or otherwise – is a mammoth […]
In the very early Windows NT Days, we had computer accounts connected to domain controllers. This provided the early building blocks of securing data and computers in company networks. Since then, our entire digital landscape has transformed. With modern networking and cloud adoption across so much of our world, it makes sense for our computer accounts to make the move from on-prem Active Directory (AD) to Azure Active Directory (AAD).
Kerberos Delegations can be confusing, but it is important to understand how delegations behave when configured across trust boundaries.
This article covers how to use an Azure managed identity with the Microsoft Graph PowerShell SDK and Microsoft Teams modules in an automation runbook.
Microsoft has extended the deprecation date for the Azure AD license management cmdlets to March 31, 2023. After that time, the cmdlets won't work. The strong recommendation is to replace all the old Azure AD and MSOL license management cmdlets in scripts with Microsoft Graph PowerShell SDK cmdlets or Graph API requests. You have an extra 7 months to do the job, do there's no excuse!
In episode 3 of season two, Paul Robichaux and Steve Goodman chat about a flurry of new Microsoft Teams features - including the long-awaited Teams Connect shared channels going into general availability, plus Microsoft's headline conference for IT professionals is back in-person - but will it be the same?
After spending some time to better understand how Azure AD Connect Group Writeback v1.0 works with the attribute flow and some possible use cases, I’ve come up with some practical pointers for you to understand as you consider a deployment.
You just activated the Exchange admin role (or any other role) via Privileged Identity Management (PIM), but the Microsoft portal still indicates that you have insufficient permissions to perform your task. Don’t panic, this blog will help you to load freshly activated permissions faster.