Microsoft Tenants
Explains Azure/Microsoft Entra ID tenants: identity boundaries, uses, differences from subscriptions, and best practices.
Explains Azure/Microsoft Entra ID tenants: identity boundaries, uses, differences from subscriptions, and best practices.
Guide to syncing user accounts from Entra ID to Active Directory using Entra Cloud Sync, including setup and attribute mapping.
Microsoft Entra Cloud Sync now supports provisioning users from Entra ID to Active Directory, with setup steps and prerequisites.
Microsoft Graph adds new IdentityDiagnostic permissions, hinting at a future Entra ID diagnostics API for starting and reading diagnostic processes.
Microsoft adds 13 new Graph API permissions for deleting user authentication methods, aiding SOC teams in identity threat response.
Step-by-step guide to set up OpenWebUI on Docker with Foundry, Entra ID authentication, and Caddy reverse proxy.
Microsoft silently updated four Entra ID built-in roles, affecting permissions for backup, AI, and governance administrators.
Explains why bypassing MFA for office IP addresses creates security risks, especially with guest networks and SNAT.
Guide to cross-tenant Azure authentication using Managed Identity and Federated Identity Credentials, avoiding secrets and the AADSTS700236 error.
Learn how to automate PIM approvals using custom extensions with REST APIs to improve efficiency.
Guide to connecting .NET apps to Azure DocumentDB (MongoDB) using Entra ID Managed Identity instead of passwords.
Microsoft Entra is expanding system-preferred authentication to first-factor login, prioritizing secure methods like passkeys over passwords.
Troubleshooting missing Member attribute in Entra ID users and fixing it with PowerShell.
Analysis of the new AADGraphActivityLogs log source for detecting reconnaissance tooling like ROADtools and AADInternals in Entra ID.
Guide to setting up an Exchange Online shared mailbox for automation agents using certificate-based authentication and Exchange RBAC.
Analysis of bypassing Entra Conditional Access via alternative token broker techniques, focusing on security vulnerabilities.
Explains that new Entra admin roles are not automatically protected by Conditional Access policies, creating a security gap.
Discusses the critical need for secure account recovery workflows when implementing passkeys, highlighting Microsoft Entra's new preview solution.
Explains why being an Azure Storage Account Owner doesn't grant data access and how to assign the correct Storage Data roles.
A technical guide on securing Azure Files with Entra ID Kerberos, focusing on private network access via VPN, Firewall, and Private Endpoints.