Entra ID – You can now list and recover deleted conditional access policies

As you know, Entra ID Conditional Access policies play an important role in securing to your resources integrated with Entra ID for authentication (such as M365, Azure or third-party cloud apps). If you have the proper permissions (at least Conditional Access Administrator administrator role), it is easy to create, edit or delete conditional policies. Sometime, […]

Entra ID – You can now list and recover deleted conditional access policies Read More »

Windows – Windows 11 25H2 is now available

Windows 11 25H2 is now available from Intune, My Visual Studio (aka MSDN), SCCM Software Update/WSUS but apparently not yet through Windows Update.   You can learn about known issues from there Windows 11, version 25H2 known issues and notifications | Microsoft Learn As part of the improvements: Support for Wi-Fi 7 for enterprise connectivity

Windows – Windows 11 25H2 is now available Read More »

Entra ID – Manage inactive users with Identity Lifecycle Workflow (preview)

Identity Governance helps achieving a balance between productivity and security. Identity Lifecycle Workflow as part of Entra ID provides effective identity governance at scale helping managing identity lifecycle by automating accounts management. Unfortunately, there was a gap – which is now filled in preview – related to inactive accounts. These inactive accounts – usually which

Entra ID – Manage inactive users with Identity Lifecycle Workflow (preview) Read More »

Office – You can now restrict new file creation in Office desktop apps to Cloud Locations

IT Administrators can restrict new file creation in Word, Excel, and PowerPoint on Windows to Cloud Locations only, enhancing security and compliance. This policy, deployable via Group Policy or Cloud Policy Service, limits saving new files to OneDrive, SharePoint, or third-party Clouds, promoting cloud usage and protection. It is important to properly identify the use

Office – You can now restrict new file creation in Office desktop apps to Cloud Locations Read More »

Teams – New security options available in Teams to protect against phishing attacks

Microsoft is rolling out a new security feature to protect Teams users against phishing attacks by scanning URLs (see Malicious URL protection in Microsoft Teams – Microsoft Teams | Microsoft Learn) and files (see Weaponizable file protection in Microsoft Teams – Microsoft Teams | Microsoft Learn) shared in chats and channels. This is available for

Teams – New security options available in Teams to protect against phishing attacks Read More »

Entra ID – You can now manage Entra ID applications policies from the portal

As you know an Entra ID enterprise application is a representation of a cloud-based software application within your Entra ID tenant. It allows to integrate your Entra ID tenant with the software platform, allowing single-sign on and access control capabilities through Entra ID as control plane. Most Entra ID administrators are not usually aware of

Entra ID – You can now manage Entra ID applications policies from the portal Read More »

Office 365 – You must configure local network access before end of September for Chromium based browsers

An important change is coming for Chromium-based browsers (Google Chrome and Microsoft Edge) which will impact offline access to Office 365 services using web browser. You need to act before end of September (before Chromium 141 is being rolled out). The change introduced with Chromium 141 is related to privacy settings which will increase restrictions

Office 365 – You must configure local network access before end of September for Chromium based browsers Read More »

Outlook – Automatically set Outlook settings for both classic and new Outlook client

As you may already know, Microsoft has been transitioning to a new Outlook client to provide better integration and feature updates with Exchange Online than the classic Outlook provided with M365 applications. Well, starting October, if end-users already have their mailbox configured with the classic Outlook client AND the new Outlook client is installed, the

Outlook – Automatically set Outlook settings for both classic and new Outlook client Read More »

Intune – Windows Security Updates can now be installed during autopilot enrollment

By now you should already know about the autopilot enrolment in Intune (Overview of Windows Autopilot | Microsoft Learn). Well, autopilot enrolment just got a good improvement as it can now install Windows security updates during the enrolment. The configuration to enable or disable the security updates installation during enrollment is managed from the enrollment

Intune – Windows Security Updates can now be installed during autopilot enrollment Read More »

Exchange Online – Cloud managed remote mailboxes

When the move to the cloud, customers had on-premises footprint with especially messaging systems – such as Exchange Server, which leaded to implement Exchange hybrid configuration with directory synchronization. Years later, there is still need to maintain a low level Exchange on-premises footprint to manage remote mailboxes. Even if Microsoft has made so progress by

Exchange Online – Cloud managed remote mailboxes Read More »