SECURITY

Entra Connect Sync 2.5.76 released

Entra Connect Sync 2.5.76 released

Andres Bohren
Hi All, Just a few days ago, Microsoft has released a new Version of Entra Connect Sync. It’s only downloadable via the Microsoft Entra Admin Center Microsoft Entra Connect: Version release history There is also a new Article (or at least new to me) about the diffrent Stages for Identity Cloud transformation Cloud transformation posture Download Download is only availabel in Entra Admin Portal and is now not as hidden anymore
Microsoft Purview Information Protection client 3.1.310.0

Microsoft Purview Information Protection client 3.1.310.0

Andres Bohren
Hi All, Recently i have been stumbled upon a new Version of the Microsoft Purview Information Protection client Microsoft Purview Information Protection client Microsoft Purview Information Protection client - Release management and supportability Installation of the *.msi file Started the Information Protection Viewer client List commands from the PowerShell Module PurviewInformationProtection Get-Command -Module PurviewInformationProtection Regards Andres Bohren M365 Logo Security Logo
Exchange Server use ADFS for OWA and ECP

Exchange Server use ADFS for OWA and ECP

Andres Bohren
Hi All, A few days ago, i did publish the Article Installing ADFS on Windows Server 2025. That gave me the opportunity, to test some scenarios with Exchange and Active Directory Federation Services (ADFS). ADFS Server Let’s start the ADFS MMC C:\Windows\ADFS\Microsoft.IdentityServer.msc Create relying party trusts in AD FS for Outlook on the web and the EAC As you can see, the Relying Party Trusts are empty Create Relying Party Trust for Outlook on the Web (owa)
Installing ADFS on Windows Server 2025

Installing ADFS on Windows Server 2025

Andres Bohren
Hi All, For a Project i had to test something with ADFS. That’s why i have set up an Active Directory Federation Server/Service (ADFS) on a Windows Server 2025. To be clear: I don’t advocte for installing ADFS. In contrary i still recommend to use Entra ID instead of ADFS and get rid of Federated Domain in M365. Install Windows Feature Install-WindowsFeature ADFS-Federation -IncludemanagementTools Certificate There are many ways on how to get a public Certificate.
Secure Exchange Online when using CMT or 3rd Party Mailgateway

Secure Exchange Online when using CMT or 3rd Party Mailgateway

Andres Bohren
Hi All, In my professional Life, i have architected and implemented many Exchange Hybrid Organizations. Most of the Time the MX Records still point to the OnPrem Mailgateway or a 3rd Party Service for AntiMalware, Antispam, AntiPhishing. These Systems have well designed Rules for preventing Malware and unwanted Mails. But customers forget, that with Exchange Online by default comes two MX Records to your Tenant, where someone potentially can bypass all these checks from the OnPrem Mailgateway and deliver Mails directly to Exchange Online Protection (EOP).
Entra Connect Sync 2.5.3 released

Entra Connect Sync 2.5.3 released

Andres Bohren
Hi All, Just a few days ago, Microsoft has released a new Version of Entra Connect Sync. It’s only downloadable via the Microsoft Entra Admin Center Microsoft Entra Connect: Version release history It’s really hidden: Entra Admin Center > Identity > Hybrid Management > Microsoft Entra Connect > Get started > Manage > Download Connect Sync Agent If you click on the Download Link you have to click on the “Accept terms & download” Button.
Updated Conditional Access HTML Export Script

Updated Conditional Access HTML Export Script

Andres Bohren
Hi All, I’ve released an updated Version of my Conditional Access HTML Export PowerShell Script on my GitHub Repo. It’s always a Pain to document Conditional Access Policies. So i’ve forked and modified the Script from https://github.com/dougsbaker/CA-Export to match my needs. Recently i saw the new “Network” Section in the Conditional Access Policies. I Like when the Sections match the HTML Output Users Target resources Network Conditions Grant Session The Script requires the Microsoft.
Exchange Server April 2025 Hotfix Update

Exchange Server April 2025 Hotfix Update

Andres Bohren
Hi All, Yesterday, Microsoft has releasesed the April Hotfix Updates for Exchange Server Released: April 2025 Exchange Server Hotfix Updates Exchange 2019 In my case, i’ve downloaded the Hotfix Update für Exchange Server 2019 CU15 Hotfix Update for Exchange Server 2019 CU15 HU1 (KB5050672) KB5050672 Installation Update has been sucessfully installed Healthchecker Now let’s run the Healthchecker. The First run updates the Healthchecker to the current version .\Healthchecker.ps1 Let’s run that again and see the Results.
Swiss E-ID is in Public Beta

Swiss E-ID is in Public Beta

Andres Bohren
Hi All, Since a few days, the Public Beta of the E-ID of the Swiss Governement is accessible and can be used to issue, test and revoke Beta-ID Credentials. First you need the swiyu Wallet App on your Smartphone: Google Play Store Apple iOS App Store Everything has been set up. Now we can request the Beta ID Beta Credential Service The Beta-ID has been set up. Now we can test it: Check a Beta-ID Beta Credential Service
Entra Verifiable credentials Admin API with PowerShell

Entra Verifiable credentials Admin API with PowerShell

Andres Bohren
Hi All, I’ve alredy blogged this February about Microsoft Entra Verified ID when it was still in Preview. I’ve also blogged about Entra Verified ID Advanced Setup. In the following MS Learn Site, you can find more Information about Verified employee / Verified ID Verify credentials by using the Microsoft Entra Verified ID Network Microsoft Entra Verified ID now generally available since August 2024 it seems, but there is not much Information and Blogs out there, especially for the Verifiable credentials Admin API.