Azure – The Az PowerShell module is now in general availability

As announced in August 2018, a new PowerShell module to manage Azure resources called Az has been in development. It reached the general availability state. To install it, open a PowerShell prompt (as usual using the Run As Administrator) and run the command Install-Module -Name Az -Repository PSGallery –Force NOTE will you can have both AzureRM and Az modules installed side by side (using the –AllowClobber) it is not recommended…

Read More

Azure – Azure Backup Server now support SQL 2017 and Windows Server 2019

Microsoft Azure Backup Server (MABS) v3 now support SQL 2017 workloads and can be installed on Windows Server 2019. In addition MABS v3 introduces support for TLS 1.2 and support for VMware VM backup (vCenter and ESXi 6.5 and auto-protection when new VMWare VM’s are added to a protected folder) You can get here https://docs.microsoft.com/en-us/azure/backup/backup-azure-microsoft-azure-backup#software-package to know how to upgrade to MABS v3.

Read More

Azure – Integration of PDF Acrobat Reader with Azure Information Protection is now generally available

It has been announced last September at the Ignite 2018 conference and in preview since then. Now, the integration of Acrobat Reader with Azure Information Protection is now GA. To take advantage of it, you have few things to do: Download and deploy the latest Adobe Acrobat Reader from https://get.adobe.com/reader/ Download and deploy the add-in available here https://go.microsoft.com/fwlink/?linkid=2050049 You can also use the Foxit Reader available here https://www.foxitsoftware.com/pdf-reader/ Download and…

Read More

Azure VM – You can now replace virtual disk during the restore process

Previously when you had to restore an Azure Virtual Machine you had to fully restore the VM by creating a new VM. Now you can restore the VM by replacing it by overwriting the existing/being restored one. Off course to be able to do this you need to have a recovery vault in place and have the VM being backed up at least once If you need to restore a…

Read More

Azure – Azure Site Recovery automatic update is now available

Azure Site Recovery (ASR) is an Azure service allowing you to setup a disaster recovery infrastructure by replicating your virtual machines either from on-premises (VMWare/Hyper-V) or from Azure. When you implement ASR you have to deploy a component, known as mobility service, on each virtual machines being replicated. As each time ASR is updated (which is a monthly cadence) you also have to update your mobility agent, which then may…

Read More

SCCM – Use Autopilot when deploying OS

Following the availability of the new SCCM Current Branch build (1810), it is now possible to use the built-in SCCM task sequence to use Autopilot when deploying OS. To use it, you need to create an SCCM package which will contains the Autopilot settings and use the SCCM tasks sequence (this is not available for MDT integrated task sequence) and choose the Deploy Windows Autopilot for existing devices To create…

Read More

Azure – New Azure Information Protection Client available

The new Azure Information Protection (AIP) client (version 1.41.51.0) is now available for download here https://www.microsoft.com/en-us/download/details.aspx?id=53018 As part of the usual fixes, the new version includes support for central reporting, support for S/MIME or better handling for disconnected client (aka client which will not be able to connect to internet for a certain period of time). Also it no longer excludes MSG, ZIP or RAR files from the Windows Explorer…

Read More

Azure – You can explore your Azure Resources using Graph

Azure Resource Graph is a new capability (currently in preview) which is helping you exploring all your Azure resources. This is already in use by Azure itself when you use the ‘Search resources, services, and docs’ search box To start using Azure Resource Graph, search for Resource Graph from the ‘All services’ From there you can launch the Cloud Shell to your query You can also use Resource Graph directly…

Read More

Office 365 / Azure – New CDN’s are going to be used for authentication

This is an important notification for customer managing access to internet (and cloud services) using Whitelist. New Content Delivery Networks (CDN’s) are going to be used for managing Office 365 (and potentially Azure services) authentication. If you are using whitelisting to allow Office 365/Azure services access to your end-user you have to be prepared ASAP. The new CDN’s will be: aadcdn.msauth.net aadcdn.msftauth.net ccscdn.msauth.net ccscdn.msftauth.net If you need the IP addresses…

Read More

Azure – Azure Policy now audits installed applications on VM’s

You may already know Azure Policy, introduced during Ignite 2018. If no, Azure Policy has the capability to apply audit settings on virtual machines (VM’s) running on Azure. The first policies can audit password security settings on both Windows and Linux VM’s or the encryption protocol used by IIS (aka TLS – in this case the VM is compliant if TLS 1.1 or 1.2 is enabled and other protocols disabled).…

Read More

Intune – You can now get Windows 10 join an Active Directory Domain (preview)

It has been quite a limitation so far for Windows 10 managed with Intune; it was impossible to get them to join an Active Directory domain using Autopilot, making these devices Azure AD Hybrid joined devices. Now (currently in preview – so there could be some glitch and may change), you can assign an Intune profile to your Windows 10 devices to join your Active Directory domain. Off course, to…

Read More

Azure AD Connect – A new version of the directory synchronization tool is available

A new version (1.2.65.0) of Azure AD Connect has been released. You can get it from http://go.microsoft.com/fwlink/?LinkId=615771 You need to know that this version is going to overwrite your setting for autoupgrade if you have it set to not automatically update. Before Update After Update If you want to keep the autoupgrade disabled you will need to run the following command after the upgrade is completed Set-ADSyncAutoUpgrade -AutoUpgradeState Disabled As…

Read More

Azure Information Policy – You can now set permissions using All Authenticated Users or All users within your organization

Azure Information Protection (AIP) has been updated to let you set AIP Protection to either All Authenticated Users or All Users within your Organization. These specific configuration can be helpful when you don’t really want to restrict access to specific and limited set of user but still want to restrict what can be done with the content (permissions and expiration), or when you do not want to restrict the access…

Read More

Azure – DevOps can now use ExpressRoute

You may be already aware that ExpressRoute implements a dedicated connection between your on-premises environment and Microsoft cloud services – Office 365 or Azure. While most of the Azure services (SQL instance,storage, VM…) were already able to be accessed using ExpressRoute, this was not the case for DevOps (https://dev.azure.com/ or https://{organization}.visualstudio.com). Well, this is not the case anymore; since Oct 23rd 2018, you can access your DevOps services through ExpressRoute.…

Read More

Azure MFA – Support for hardware OAth token and multiple MFA devices coming on Azure MFA

You may be already aware of the Azure Multi Factor Authentication (MFA) solution which has been available for quite some time. Well, good news as Azure MFA is now going to support hardware tokens (OATH-TOTP SHA-1). As you may already know Azure MFA requires end-user to have a phone available (either mobile or desk phone) to be able to challenge the MFA request – either with a call (desk/mobile), text…

Read More