Tag - Azure AD

Navigating Device management in Microsoft 365: Registered vs. Joined vs. Hybrid Joined… and Intune

Device management is not a straightforward thing in Azure AD.  I think that one major point of confusion for people is understanding the difference between various device states--for example, what is the difference between a device which is merely registered with Azure AD, versus one that is actually Azure AD...
Read more...

How to require MFA for Azure AD Join, and enable Enterprise State Roaming

Hey folks! We have already covered a few posts on Azure AD Premium and Conditional access; and that's great--because you do things like enforce requirements like Multi-factor Auth, but only in situations where devices are unmanaged. This provides a way better user experience than enabling MFA across the board, and without...
Read more...

Coming soon to an Azure AD/Microsoft 365 subscription near you: Life without passwords?!

I previously commented when Microsoft released new password guidance, which is backed by their own research as well as that of NIST. A quick recap of that: Require passwords have at least 8 characters. Longer isn't necessarily better, as they cause users to choose predictable passwords, save passwords in files,...
Read more...

How to migrate from Windows Server Active Directory to Azure AD and Microsoft 365 Business (including Teams) in 5 easy steps

Microsoft 365 Business is a very compelling platform for the small business, particularly those that are "born in the cloud," or, those who have shed most of their on-premises server weight already, by moving their line of business apps to cloud-based alternatives. I can't tell you how many clients I...
Read more...

Security Reports and Identity Protection features available in Azure AD, Azure AD Premium P1 and P2

Azure AD Premium P1 is included with Enterprise Mobility and Security (EMS) E3. I have been experimenting with numerous aspects of this subscription, since security is such a high priority these days, especially for the SMB (small businesses are statistically far more more likely to be targeted than large enterprises). As...
Read more...

How to migrate from Office 365 Essentials Dashboard Integration to Azure AD Connect

As we've previously discussed on this blog, Windows Server Essentials comes with the ability to integrate with Azure AD & Office 365, using the Essentials Dashboard plugin. It is important to know that this technology is very different from the more widely adopted Azure AD Connect.  While there is nothing...
Read more...

Soft (SMTP) vs. Hard (immutableID) matching with Azure AD Connect

If you are setting up Directory Synchronization from scratch (there are no users in the cloud yet), then Azure AD Connect will be pretty straightforward--the on-premises objects (and passwords if you choose that option) will be synchronized to the cloud, and you can assign services to the user accounts from...
Read more...

2016 Essentials Integration: Azure AD & Office 365

This post is part of a series on the Microsoft Cloud Services integrations that are included with Windows Server 2016 Essentials Experience. To begin we will connect our local on-premises Windows Essentials Experience Server to the Microsoft cloud by enabling the Azure Active Directory and Office 365 integrations. Please note that this is very different from using Azure...
Read more...

How to Remove a Legacy Hybrid Exchange Server and migrate to Windows Server Essentials Office 365 Integration

If you performed a Remote Move migration from a legacy system such as SBS 2011 or Exchange 2010, and now you want to remove your hybrid server without losing the ability to sync passwords to Office 365, I have some good news for you: it's totally possible. Update: This is no...
Read more...

How-to Upgrade DirSync to Azure AD Connect (and move to a new server at the same time)

Many a small business using Exchange Online, Office 365 or other Microsoft cloud services has opted to enable Directory Synchronization--this means you can have the same credentials on-premises and in the cloud. Most commonly, this synchronization was achieved with a tool called DirSync. And wouldn't you know it, that tool is now being...
Read more...

Helping IT Consultants Succeed in the Microsoft Cloud

Have a Question? Contact me today.