SECURITY

Switch DNS Resilience Dashboard

Switch DNS Resilience Dashboard

Andres Bohren
Hi All, SWITCH operates as the official registry for Switzerland’s .ch and Liechtenstein’s .li country-code top-level domains (ccTLDs). It maintains the central database of all .ch domain names and runs the DNS infrastructure, ensuring that the Swiss internet remains stable and secure. This role is mandated by the Federal Office of Communications (OFCOM), as the DNS is considered part of Switzerland’s critical infrastructure Switch DNS Resilience Dashboard Do you know the Switch DNS Resilience Dashboard
Simple way to delegate Active Directory Group Membership Management

Simple way to delegate Active Directory Group Membership Management

Andres Bohren
Hi All, In a recent Migration, i had the Requirement to add Members to an Active Directroy Group to control a GPO that is assigned with the AD Group. In other words, delegate Group Membership Management to a Service Account, that controls the Migration. The goal was to archieve this in the simplest form possible. Demo I’ve created an AD Group “G-DL-DemoManager” and added the User m.muster to the Managed By (managedBy AD Attribute)
Enable IPv6 on Azure Web App

Enable IPv6 on Azure Web App

Andres Bohren
Hi All, One of my Websites is running on Azure Web App. I was recently looking into how to enable IPv6 for the Website. Here is what i found out. In November 2024 Microsoft has anounced the Public Preview for Inbound IPv6 Traffic on Azure Web Apps. Announcing inbound IPv6 support in public preview Azure Portal In the Azure Portal under Configuration you can select between: IPv4 IPv6 IPv4 and IPv6 I’ve selected “IPv4 and IPv6”
Exchange Online Shared Mailboxes are now disabled

Exchange Online Shared Mailboxes are now disabled

Andres Bohren
Hi All, Did you notice that the EntraID User Accounts are now disabled when you create Shared Mailboxes in Exchange Online? In April this of Year i saw, that Shared Mailboxes in Exchange Online had disabled Entra Accounts. But it was not consistent in diffrent Tenants and disappeared after a few days. Now i have retested this, and the Entra ID Accounts of Shared Mailboxes are now disabled. I can’t tell when this change was implemented and i didn’t see any Documentation or Information in the Message Center - but it’s possible i’ve overseen that.
Swiss Domain Security Report Q3 2025

Swiss Domain Security Report Q3 2025

Andres Bohren
Hi All, I’ve published a new Swiss Domain Security Report Q3 2025 to rise awareness about the available Security technologies around Domains and Mailsecurity. It shows the adoption of diffrent technologies for the whole .ch TLD (Top Level Domain). Hope you enjoy it and learn something. Let’s improve the Security in Switzerland! Note: I am a private person and this is just a hobby project. But i believe this Report can be useful as an Overview of the Mail- and Domain Security in Switzerland.
Entra Connect Sync 2.5.79 released

Entra Connect Sync 2.5.79 released

Andres Bohren
Hi All, Two days ago, Microsoft has released a new Version of Entra Connect Sync. It’s only downloadable via the Microsoft Entra Admin Center Microsoft Entra Connect: Version release history Download Download is only availabel in Entra Admin Portal and is now not as hidden anymore Entra Admin Center > Identity > Entra Connect > Entra Connect Sync Download the latest Entra Connect Sync Version If you click on the Download Link you have to click on the “Accept terms & download” Button.
Entra Verified ID Enable Facecheck

Entra Verified ID Enable Facecheck

Andres Bohren
Hi All, I have already written a few Articles about Entra Verified ID Microsoft Entra Verified ID Verified ID Advanced Setup Entra Verifiable credentials Admin API with PowerShell Overview Today we want to dig deeper into Face Check. Prerequisits: Microsoft Entra Verified ID setup completed before using Face Check Azure Subscription / Resource Group User that sets up Face Check has Contributor role for the Azure subscription / Resource Group Costs:
New Hybrid Configuration Wizard supports Dedicated Hybrid App

New Hybrid Configuration Wizard supports Dedicated Hybrid App

Andres Bohren
Hi All, Just a few days ago, Microsoft has announced that the updated Hybrid configuration Wizard (HCW) now supports the Configuration of the Dedicated Hybrid App. Dedicated Hybrid App: temporary enforcements, new HCW and possible hybrid functionality disruptions CVE-2025-53786 Microsoft Exchange Server Hybrid Deployment Elevation of Privilege Vulnerability Microsoft has also announced some block Tests. As the Adoption of Dedicated Hybrid App does not seem at the Level Microsoft is expecting.
Entra Connect Sync 2.5.76 released

Entra Connect Sync 2.5.76 released

Andres Bohren
Hi All, Just a few days ago, Microsoft has released a new Version of Entra Connect Sync. It’s only downloadable via the Microsoft Entra Admin Center Microsoft Entra Connect: Version release history There is also a new Article (or at least new to me) about the diffrent Stages for Identity Cloud transformation Cloud transformation posture Download Download is only availabel in Entra Admin Portal and is now not as hidden anymore
Microsoft Purview Information Protection client 3.1.310.0

Microsoft Purview Information Protection client 3.1.310.0

Andres Bohren
Hi All, Recently i have been stumbled upon a new Version of the Microsoft Purview Information Protection client Microsoft Purview Information Protection client Microsoft Purview Information Protection client - Release management and supportability Installation of the *.msi file Started the Information Protection Viewer client List commands from the PowerShell Module PurviewInformationProtection Get-Command -Module PurviewInformationProtection Regards Andres Bohren M365 Logo Security Logo