blog.icewolf.ch

Let's talk about IT!
posts - 2204, comments - 295, trackbacks - 0

My Links

Archives

Post Categories

icewolf

Azure

Azure
Create Azure AD App Registration with Microsoft.Graph PowerShell

Hi All, In this Blog Post i explain you how to create an Azure AD App Registration with the Microsoft.Graph PowerShell. You need to have the Azure Active Directory Role "Application Administrator" or "Application Developer". By the way. All the Code is used here is also on my GitHub Repo https://github.com/BohrenAn/GitHub_PowerShellScripts/blob/main/AzureAD/CreateAADApp-MgGraph.ps1 #Import Module Import-Module Microsoft.Graph.Authentication Import-Module Microsoft.Graph.Applications ############################################################################### #Connect-MgGraph #Connect to your Azure Active Directory with "Application Adminstrator" or "Global Administrator" Role ############################################################################### Connect-MgGraph -Scopes "Application.Read.All","Application.ReadWrite.All","User.Read.All" Get-MgContext That's the User Approval when you sign in to Microsoft Graph with these Scopes ############################################################################### #Create AAD Application ############################################################################### $AppName =  "DemoApp" $App = New-MgApplication -DisplayName $AppName $APPObjectID = $App.Id ############################################################################### #List Applications ############################################################################### Get-MgApplication -ApplicationId $APPObjectID List all the Details of an Application Get-MgApplication | Where-Object {$_.DisplayName...

posted @ Friday, December 2, 2022 2:26 PM | Filed Under [ PowerShell Azure ]

Microsoft Azure Active Directory Connect 2.1.20.0

Hi All, A few weeks ago, Microsoft has released a new Version of Microsoft Azure Active Directory Connect. Azure AD Connect: Version release history https://learn.microsoft.com/en-us/azure/active-directory/hybrid/reference-connect-version-history Microsoft Azure Active Directory Connect 2.1.20.0 https://www.microsoft.com/en-us/download/details.aspx?id=47594 On the M365 Admin Center in the Health > Directory Sync Status you can find the new Version Number https://admin.microsoft.com/#/dirsyncmanagement Regards Andres Bohren

posted @ Tuesday, November 29, 2022 8:21 PM | Filed Under [ Microsoft365 Azure ]

Deploy PowerShell 7 Script on Azure Automation

Hi All, In this Blog Post i explain how to Create and Depoly a PowerShell 7 Runbook for Azure Automation with the AZ PowerShell Module. #Connect to Azure Connect-AzAccount #Get Automation Account Get-AzAutomationAccount I have two Azure Automation Accounts. In this Example, we use the second one. ############################################################################### # Create Runbook ############################################################################### $accountName = "icewolfautomation" $rgName = "RG_DEV" $location = "West Europe" $RunbookName = "DemoPS7" $scriptContent = @'     #Connect to Exchange with Managed Identity     $tenant = "icewolfch.onmicrosoft.com"     Connect-ExchangeOnline -ManagedIdentity -Organization $tenant     #Get Accepted Domain     Get-AcceptedDomain | Format-Table DomainName, DomainType     #Disconnect Exchange Online     Disconnect-ExchangeOnline -Confirm:$False '@ Invoke-AzRestMethod -Method "PUT" -ResourceGroupName $rgName -ResourceProviderName "Microsoft.Automation" `     -ResourceType "automationAccounts" -Name "${AccountName}/runbooks/${RunbookName}" -ApiVersion "2017-05-15-preview" `     -Payload "{`"properties`":{`"runbookType`":`"PowerShell7`", `"logProgress`":false, `"logVerbose`":false, `"draft`":{}}, `"location`":`"${Location}`"}" Invoke-AzRestMethod...

posted @ Saturday, November 19, 2022 11:55 AM | Filed Under [ PowerShell Azure ]

How to Manage PowerShell 5 and 7 Modules on Azure Automation

Hi All, As you might already know, i am a big Fan of Azure Automation. Recently i have used "Managed Identity with Exchange Online on Azure Automation". Yesterday there was a Release of "Microsoft.Graph PowerShell Module 1.17.0" and the Question of how to update the PowerShell Modules on Azure Automate arises once again. Basically i've covered that already in a Blog Post earlyer this Year "Update Modules on Azure Automation with AZ PowerShell". But i think i have improved the Script a little bit. And finally i explain how to Manage the PowerShell 7 Modules on Azure Automate. #Connect to Azure Connect-AzAccount #Get Automation Account Get-AzAutomationAccount #Get Modules $accountName =...

posted @ Saturday, November 19, 2022 10:43 AM | Filed Under [ PowerShell Azure ]

Azure PowerShell Module Az 9.1.1 released

Hi All, Microsoft has released the AZ 9.1.1 PowerShell Module to the PowerShell Gallery just a few Hours ago. Az 9.1.1 https://www.powershellgallery.com/packages/az/9.1.1 Show Installed AZ Module and what's available in the PowerShell Gallery Get-InstalledModule AZ -AllVersions Find-Module AZ To uninstall all the old Modules and install the new Modules i have written a PowerShell Script that is published at my GitHub Repo. #Run Script directly from GitHub $ScriptFromGitHub = Invoke-WebRequest "https://raw.githubusercontent.com/BohrenAn/GitHub_PowerShellScripts/main/Azure/Cleanup-AZModules.ps1" Invoke-Expression $($ScriptFromGitHub.Content) The AZ Module is just a Wrapper Module for all AZ* Modules Get-Installed Module AZ* Regards Andres Bohren

posted @ Friday, November 18, 2022 9:29 AM | Filed Under [ PowerShell Azure ]

Microsoft Azure Active Directory MFA Number matching comes in 2023

Hi All, Basic Authentication has been mostly disabled. And Attackers now search for new ways to compromise M365 Accounts. If you use Microsoft Authenticator Push Notifications - good for you. There is a thing called "MFA Fatique" that Attackers use to gain access. They send so many Push Requests until a user is annoyed and clicks on "Approve". As anounced in the Article below, the MFA Number Matching will be enabled for all M365 Tenants starting end of February 2023. This will prevent these Attacks as the User needs to know the Number from the Request to Approve the MFA Signin. Defend your users...

posted @ Wednesday, November 16, 2022 9:54 PM | Filed Under [ Azure ]

Use Managed Identity with Exchange Online on Azure Automation

Hi All, With the ExchangeOnlineManagement PowerShell Module 3.0.0, Microsoft has providet the Ability to use Managed Identity in Azure. Time to test that on my own. ExchangeOnlineManagement 3.0.0 https://www.powershellgallery.com/packages/ExchangeOnlineManagement/3.0.0 v3.0.0 :    1. General Availability of REST-backed cmdlets for Exchange Online which do not require WinRM Basic Authentication to be enabled.    2. General Availability of Certificate Based Authentication for Security and Compliance PowerShell cmdlets.    3. Support for System-Assigned and User-Assigned ManagedIdentities to connect to ExchangeOnline from Azure VMs, Azure Virtual Machine Scale Sets and Azure Functions. I will use an Azure Automation Account. As i have already used that for Automation with Exchange. That Time with...

posted @ Saturday, November 12, 2022 6:09 PM | Filed Under [ Exchange PowerShell Azure ]

Microsoft Azure Active Directory Connect 2.1.19.0

Hi All, A few days ago, Microsoft has released a new Version of Microsoft Azure Active Directory Connect. Azure AD Connect: Version release history https://learn.microsoft.com/en-us/azure/active-directory/hybrid/reference-connect-version-history There are two new Attributes, but only one is currently supported by AADConnect. How to synchronize attributes for Lifecycle workflows https://learn.microsoft.com/en-us/azure/active-directory/governance/how-to-lifecycle-workflow-sync-attributes Microsoft Azure Active Directory Connect 2.1.19.0 https://www.microsoft.com/en-us/download/details.aspx?id=47594 On the M365 Admin Center in the Health > Directory Sync Status you can find the new Version Number https://admin.microsoft.com/#/dirsyncmanagement Regards Andres Bohren

posted @ Saturday, November 5, 2022 7:51 AM | Filed Under [ Microsoft365 Azure ]

Azure PowerShell Module Az 9.1.0 released

Hi All, Microsoft has released the AZ 9.1.0 PowerShell Module to the PowerShell Gallery this Morning. Az 9.1.0 https://www.powershellgallery.com/packages/AZ/9.1.0 Show Installed AZ Module and what's available in the PowerShell Gallery Get-InstalledModule AZ -AllVersions Find-Module AZ To uninstall all the old Modules and install the new Modules i have written a PowerShell Script that is published at my GitHub Repo. #Run Script directly from GitHub $ScriptFromGitHub = Invoke-WebRequest "https://raw.githubusercontent.com/BohrenAn/GitHub_PowerShellScripts/main/Azure/Cleanup-AZModules.ps1" Invoke-Expression $($ScriptFromGitHub.Content) The AZ Module is just a Wrapper Module for all AZ* Modules Get-InstalledModule AZ* Regards Andres Bohren

posted @ Tuesday, November 1, 2022 9:40 PM | Filed Under [ PowerShell Azure ]

Azure Active Directory Connect 2.1.18.0 released

Hi All, Today i have noticed, that there is a new Version of Microsoft Azure Active Directory Connect available. It fixes just a few bugs and is for Download only - no Autoupdate available. Azure AD Connect: Version release history https://learn.microsoft.com/en-us/azure/active-directory/hybrid/reference-connect-version-history Microsoft Azure Active Directory Connect 2.1.18.0 https://www.microsoft.com/en-us/download/details.aspx?id=47594 After Download run the MSI File on your AAD Connect Server. After the Update you can Check the Version also in the M365 Admin Portal Directory sync status https://admin.microsoft.com/#/dirsyncmanagement Regards Andres Bohren

posted @ Tuesday, October 25, 2022 11:24 AM | Filed Under [ Microsoft365 Azure ]

Full Azure Archive

Powered by:
Powered By Subtext Powered By ASP.NET