Apply corporate background to Windows 10 Pro with Microsoft Intune

Late afternoon on Friday, I received a mail with the subject “Isn’t it just nice :)” and including the following screenshot attached. This is one of my smaller customers that use Microsoft Intune to manage his installation of Windows 10 Pro device. A couple of weeks back we have had a workshop on how to …

Continue reading "Apply corporate background to Windows 10 Pro with Microsoft Intune" »

Minor ADFS 2016 upgrade bug related to custom web theme

This is just a quick post I wanted to share online as this is the second time I was asked/heard about this ADFS 2016 bug. A minor bug exist in ADFS 2016 after upgrading from ADFS 2012 R2, when you have added a custom ADFS illustration picture. When willl I see this bug? Often you …

Continue reading "Minor ADFS 2016 upgrade bug related to custom web theme" »

Deploy EXE file from Microsoft Intune using Azure Blob Storage

A couple of weeks ago I managed to get my first deployment of executables to work with Microsoft Intune. This approach not only allows for deployment of EXE files but also MSI files alongside other files like DLL, CAB and MSP files. Basically building a deployment package that can be distributed by using Microsoft Intune …

Continue reading "Deploy EXE file from Microsoft Intune using Azure Blob Storage" »

Azure Conditional Access support for Dynamics 365 for Finance and Operations

Some weeks back I discussed with a customer whether Microsoft Dynamics 365 for Finance and Operations could be protected by using Microsoft Azure Conditional Access instead of just configuring a specific IP range whitelist within the Microsoft Dynamics 365 environment. Utilizing Microsoft Conditional Access would provide a more modern workplace approach for accessing Microsoft Dynamics …

Continue reading "Azure Conditional Access support for Dynamics 365 for Finance and Operations" »

Office 365 / Azure AD: Block sign in for accounts with password hash sync

Expired Active Directory users are still able to sign into Microsoft Office 365 / Azure Active Directory when using password Synchronization If you have made the move from ADFS / PTA to using Azure AD Password Synchronization with SSO you will soon realize that former / terminated employees are still able to sign into Microsoft Office …

Continue reading "Office 365 / Azure AD: Block sign in for accounts with password hash sync" »

iOS 11 provides support for OAuth 2.0 (Modern Auth) in the native mail app

With the release of iOS 11.0, the native mail client has now support for OAuth 2.0. OAuth 2.0 is often mentioned as modern authentication and provides some new capabilities like Microsoft Azure Multi-factor Authentication support and allows to using certificates for authentications. Modern Authentication uses a secure token instead of relying on a username and …

Continue reading "iOS 11 provides support for OAuth 2.0 (Modern Auth) in the native mail app" »

Credential Roaming vs. Device Registration Certificate for Conditional Access

During the last couple of weeks I have been asked from a couple of my customers on how to get Azure device registration to work in environments using either Windows Credential Roaming or Roaming User Profile (with Certificates included). After doing some research on the subject I found the answer on docs.microsoft.com, Microsoft doesn’t support …

Continue reading "Credential Roaming vs. Device Registration Certificate for Conditional Access" »

Speaking: Everything Windows User Group Meeting, September 2017

I’m proud to announce that I’ve been invited to speak at the Everything Windows User Group event held at Edgemo in Aarhus on Tuesday the 12th of September. Bridging the legacy gap in modern workplaces Microsoft is rapidly providing a strong platform for running Azure AD joined devices in the cloud with modern management (Intune), …

Continue reading "Speaking: Everything Windows User Group Meeting, September 2017" »

Microsoft Azure Information Protection app now support CBA

Microsoft just released support for certificate-based authentication (CBA) for the Microsoft Azure Information Protection iOS app. The app integrates with the Microsoft Authenticator app that supports the Apple iOS SafariViewController that enables access to the certificates stored on the iOS device.

Continue reading "Microsoft Azure Information Protection app now support CBA" »

Installing System Center Endpoint Protection for Mac OS X

Microsoft brings security to Mac  During Microsoft Management Summit 2012 it was announced that Microsoft will support both Linux and Mac from Configuration Manager 2012 and also deliver System Center Endpoint Protection for these operating systems. You can read the annocement here: http://blogs.technet.com/b/server-cloud/archive/2012/06/15/system-center-2012-extends-client-management-and-security-to-mac-and-linux.aspx This guide is only for manually deploying the System Center Endpoint Protection …

Continue reading "Installing System Center Endpoint Protection for Mac OS X" »