Author name: Benoit HAMET

Intune – Collect device hardware information

If you use Microsoft Intune to manage your devices fleet, you already know that it can gather some device hardware details. Well, good news as now you can get more detailed hardware information from your Windows devices, covering more details about CPU, battery, hard drives, BIOS version or SIM information. To enable this capability you […]

Intune – Collect device hardware information Read More »

Intune – Remove preinstalled Windows Store apps

As IT administrator, you may want/need to remove preinstalled/default Windows Store apps (such as Solitaire, Feedback hub or Clipchamp). Until now, you had either to use script or deploy these applications from Intune in uninstall mode. Unfortunately, this does not block end-user to install again these applications (even if they eventually will be uninstalled again).

Intune – Remove preinstalled Windows Store apps Read More »

Intune – You can now run a remediation script on demand and per device basis (preview)

If you are Intune administrator, you should already know (and hopefully using) remediation scripts capability which allows you to run detection and remediation scripts on device to maintain specific configuration which are not available through profiles (see Use Remediations to Detect and Fix Support Issues – Microsoft Intune | Microsoft Learn). Until now, remediation scripts

Intune – You can now run a remediation script on demand and per device basis (preview) Read More »

Exchange / AD – Heads up Exchange and Active Directory administrators, AD extension issue

Well, even if it has been generally available for months, seems Windows Server 2025 is in fact still not yet ready for production use. After multiple core services issues, from DHCP services to authentication with Windows Hello, we now have a new issue which is impacting another system, in this case Exchange server on-premises. As

Exchange / AD – Heads up Exchange and Active Directory administrators, AD extension issue Read More »

Entra ID – You can now list and recover deleted conditional access policies (updated)

NOTE this post was originally posted in October 2nd and has now been updated with instructions from the Entra ID portal As you know, Entra ID Conditional Access policies play an important role in securing to your resources integrated with Entra ID for authentication (such as M365, Azure or third-party cloud apps). If you have

Entra ID – You can now list and recover deleted conditional access policies (updated) Read More »

Windows – Windows 11 25H2 is now available

Windows 11 25H2 is now available from Intune, My Visual Studio (aka MSDN), SCCM Software Update/WSUS but apparently not yet through Windows Update.   You can learn about known issues from there Windows 11, version 25H2 known issues and notifications | Microsoft Learn As part of the improvements: Support for Wi-Fi 7 for enterprise connectivity

Windows – Windows 11 25H2 is now available Read More »

Entra ID – Manage inactive users with Identity Lifecycle Workflow (preview)

Identity Governance helps achieving a balance between productivity and security. Identity Lifecycle Workflow as part of Entra ID provides effective identity governance at scale helping managing identity lifecycle by automating accounts management. Unfortunately, there was a gap – which is now filled in preview – related to inactive accounts. These inactive accounts – usually which

Entra ID – Manage inactive users with Identity Lifecycle Workflow (preview) Read More »

Office – You can now restrict new file creation in Office desktop apps to Cloud Locations

IT Administrators can restrict new file creation in Word, Excel, and PowerPoint on Windows to Cloud Locations only, enhancing security and compliance. This policy, deployable via Group Policy or Cloud Policy Service, limits saving new files to OneDrive, SharePoint, or third-party Clouds, promoting cloud usage and protection. It is important to properly identify the use

Office – You can now restrict new file creation in Office desktop apps to Cloud Locations Read More »

Teams – New security options available in Teams to protect against phishing attacks

Microsoft is rolling out a new security feature to protect Teams users against phishing attacks by scanning URLs (see Malicious URL protection in Microsoft Teams – Microsoft Teams | Microsoft Learn) and files (see Weaponizable file protection in Microsoft Teams – Microsoft Teams | Microsoft Learn) shared in chats and channels. This is available for

Teams – New security options available in Teams to protect against phishing attacks Read More »

Entra ID – You can now manage Entra ID applications policies from the portal

As you know an Entra ID enterprise application is a representation of a cloud-based software application within your Entra ID tenant. It allows to integrate your Entra ID tenant with the software platform, allowing single-sign on and access control capabilities through Entra ID as control plane. Most Entra ID administrators are not usually aware of

Entra ID – You can now manage Entra ID applications policies from the portal Read More »