Security

Azure AD – Conditional Access policies now applied to all client application by default

By now, you should already know the Conditional Access feature provided with Azure AD, helping you defining conditions to authorize access to applications/resources – like requesting multi factor authentication when outside of the corporate network. You should also know that legacy authentication endpoints (like SMTP, POP or IMAP) should be blocked. Well, an important update […]

Azure AD – Conditional Access policies now applied to all client application by default Read More »

Intune / Windows 10 – Unable to turn on BitLocker with conflicting group policy error

Recently I came across an issue turning on BitLocker with the error on a Windows 10 device BitLocker Drive Encryption cannot be applied to this drive because there conflicting Group Policy settings for recovery options on fixed data drives. Also got the error before starting the troubleshooting You can’t create both a recovery password and

Intune / Windows 10 – Unable to turn on BitLocker with conflicting group policy error Read More »

Azure – You can now get notification when your Secure Score downgrade

After releasing a Power BI dashboard to follow up on the evolution of your Azure Secure Score (see https://t.co/U1I15FSuBP), you can now get an email notification if your Secure Score is reducing. The playbook is available for deployment in the Azure Security Center Github repository here https://github.com/Azure/Azure-Security-Center/tree/master/Secure%20Score/Secure%20Score%20Reduction%20Alerts Connect to the above URL and use the

Azure – You can now get notification when your Secure Score downgrade Read More »

Azure – Azure Security Center is now helping you identifying weak network access

You may already know Azure Security Center, your one stop shop for anything security related on Azure, helping you managing and improving your security posture on your Azure resources (and also on-premises ones if you are in hybrid). Well, Azure Security Center is now also helping you identifying (or more importantly provides a better visibility)

Azure – Azure Security Center is now helping you identifying weak network access Read More »

Azure – Soft-delete will be enabled by default for Azure Key Vault

You may already know Azure Key Vault, the cloud solution provided by Azure to store securely secrets (like certificates, passwords…) You may already know there is a functionality available called soft-deleted allowing to recover deleted secret up to 90 days after the deletion. This option is available from the Properties blade of the Key Vault

Azure – Soft-delete will be enabled by default for Azure Key Vault Read More »

Azure – The Azure Security team has developed a Power BI Dashboard

The team in charge of Azure Security Center has developed a Power Bi dashboard to help you track your Secure Score evolution. It also includes backlog of actions to be performed. You will have 2 setup options: Edit a Power BI template with Power BI desktop Use a Power BI application Prepare your Azure environment

Azure – The Azure Security team has developed a Power BI Dashboard Read More »

Azure AD – Azure AD App Proxy now supports Remote Desktop web client

By now, you may already know the Azure Active Directory App Proxy (AAD App Proxy), the solution integrated with Azure AD to publish internal resources securely without having to configure firewall (open port, define target…) and providing Single Sign On with Azure AD (if the published application support it). You may already using Azure App

Azure AD – Azure AD App Proxy now supports Remote Desktop web client Read More »

Azure – New capability added to Azure Security Center: Inventory

As you know Azure comes with a lot of security capability which sometimes get missed or misconfigured. To help customers stay on top of their security posture, Azure integrates Azure Security Center (ASC) which gives you an overview of your security configuration, not only for Azure resources but also for on-premises ones if you have

Azure – New capability added to Azure Security Center: Inventory Read More »

Office 365 – Updated retirement date for TLS 1.0/1.1

As you may be aware, Microsoft is on the move to deprecate older TLS versions (TLS 1.0 and TLS 1.1) and make the switch to TLS 1.2. It has been announced last year (July 2019), retirement date for TLS 1.0 and TLS 1.1 was initially scheduled for June 2020 but with the unprecedent situation it

Office 365 – Updated retirement date for TLS 1.0/1.1 Read More »