AAD

Azure – New Azure AD Connect version (1.4.32.0) is now available

A new version of Azure AD Connect (AAD Connect) version 1.4.32.0 is now available. It contains a fix for the known issue with Self Service Password Reset (SSPR) which was fixed with an interim version only available for auto upgrade. This version introduces an internal schema change which will require you to use MSOnline PowerShell […]

Azure – New Azure AD Connect version (1.4.32.0) is now available Read More »

Azure AD – You can now configure Admin Consent workflow

As you may already know, applications integrated with Azure AD may required administrators consent to allow them access your Azure AD data (for example read user profile). When a user tries to access an application with requires admin consent but has not been approved it, it starts to be a long support process to get

Azure AD – You can now configure Admin Consent workflow Read More »

Azure – Azure MFA will now be enabled by default and free

As just announced at the Microsoft Ignite 2019 Conference, Azure Multi Factor Authentication (Azure MFA) will now be enabled by default for all new Azure AD (and Office 365 or Dynamics as they rely on Azure AD) tenant and will be also free for existing customers with the Microsoft Authenticator app (available on Android https://play.google.com/store/apps/details?id=com.azure.authenticator

Azure – Azure MFA will now be enabled by default and free Read More »

Azure AD – You can now ‘live try’ Conditional Access

As you already know, Azure AD Conditional Access policies are one important component helping you securing access to your resources. Implementing Conditional Access policies is sometimes a little bit complicated as it may impact the ability of your users to access those resources. Well, good news, you can now enable a Report Only option when

Azure AD – You can now ‘live try’ Conditional Access Read More »

Azure AD Connect / ADFS – You can now stage your migration from AD FS (preview)

When you are moving to cloud services (in this case Office 365 and/or Azure Active Directory/Azure), it is important that the authentication process is working seamlessly when you are moving away from federated authentication services (AD FS, Okta…) to cloud authentication. This means you need to be able to test and validate the process. Until

Azure AD Connect / ADFS – You can now stage your migration from AD FS (preview) Read More »

Azure AD – You can now enable default security settings for Azure AD

DISCLAIMER it needs to be carefully review before implementing as it will enforce the security configuration. Microsoft has release an option to simply and automatically enabled a default security configuration on Azure AD; this includes: Enforcement of MFA for privileged accounts – all administrator types account), All users are required to be registered for MFA

Azure AD – You can now enable default security settings for Azure AD Read More »

Azure AD Connect – You can now synchronize your password policy and force the password change at next logon (preview)

As you know, you have been able to synchronize your user’s passwords with Azure AD Connect for quite some time now thanks to the password hash synchronization feature. However, there has been a small gap there: you were not able to get the “User must change password at next logon” attribute value synchronized to request

Azure AD Connect – You can now synchronize your password policy and force the password change at next logon (preview) Read More »

Azure AD – You can now perform bulk actions on users and groups from the portal (preview)

You may already have quite few scripts at your disposal to perform bulk actions on cloud user accounts and/or groups on Azure Active Directory (AAD). Well, maintaining (or using) these scripts is no longer a requirement as the Azure AD portal has been updated to allow you bulk actions on user accounts/groups. Bulk actions are

Azure AD – You can now perform bulk actions on users and groups from the portal (preview) Read More »

Azure AD / Office 365 – New Global Reader built-in role is coming

It has been a long awaited capability: being able to give a complete read-access only to Azure AD/Office 365 administration. Well good news, a read-only administrative access role is coming – called Global Reader. The deployment will start on September 24 and scheduled to be completed by October. It worth noting that few limitations will

Azure AD / Office 365 – New Global Reader built-in role is coming Read More »