#azuread — Public Fediverse posts
Live and recent posts from across the Fediverse tagged #azuread, aggregated by home.social.
-
🟦 Entra ID Backup. What you Need to Know!
Microsoft has added built in backup and restore to Entra ID — a big win for admins. 🔹
It creates automatic daily backups with five days of retention.
Backups cannot be disabled or deleted even by admins.
Restores cover users groups apps and policies enabling faster recovery and compliance.💡 Daily backups retained for five days
🔍 Restore users groups apps and policies
⚖️ Backups stored in tenant geo for complianceWant a short guide to get started?
#EntraID #IdentityBackup #AzureAD #CloudSecurity
▶︎https://www.hubsite365.com/en-ww/pro-office-365/?id=450758d2-b934-f111-88b4-00224882d634&topic=eb4ea787-ac86-ec11-93b0-6045bd8f31a1&theater=true -
RE: https://infosec.exchange/@merill/116188307859736132
Android Authenticator
Root Detection
🚨⚠️🚨⚠️🚨⚠️🚨⚠️
#MicrosoftAuthenticator on #Android
strictly blocks usage on rooted or
jailbroken devices.Relies on Google
Play Services;privacy-focused OS
distributions (e.g., #GrapheneOS)
lacking Play Services will be
completely blocked.THIS WONT MAKE EVERYONE HAPPY
-
🟦 Entra ID Access Reviews — Beginner's Guide
New walkthrough demystifies Microsoft Entra ID Access Reviews and how they enforce least privilege 🚀
💡 Access review basics and workflow
🔍 Setup steps roles and scopes
⚖️ Automation recommendations and audit trailsWatch the video for a step by step demo and a preview of upcoming features. Requires Entra ID P2 or Governance licensing for full capabilities. What access review challenge are you tackling next?
-
🎤 On Stage in 5min 🎤 Track 1: @powers-hell.com Track 2: Jan-Hendrik Peters Track 3: @hcritter.bsky.social Track 4: Jonny Eskew #PowerShell #automation #Azure #DevOps #Microsoft365 #AzureAD #MSAL #MicrosoftGraph #Bicep
-
Microsoft Entra ID Exposed: Actor Token Flaw Enables Stealthy Global Admin Takeove https://thecyberexpress.com/cve-2025-55241-exposes-entra-id-admin-access/ #AzureActiveDirectory #TheCyberExpressNews #MicrosoftEntraID #Vulnerabilities #TheCyberExpress #FirewallDaily #CVE202555241 #CyberNews #AzureAD
-
"While preparing for my Black Hat and DEF CON talks in July of this year, I found the most impactful #EntraID #vulnerability that I will probably ever find. This vulnerability could have allowed me to compromise every Entra ID tenant in the world (except probably those in national cloud deployments). If you are an Entra ID admin reading this, yes that means complete access to your tenant." 😲
https://dirkjanm.io/obtaining-global-admin-in-every-entra-id-tenant-with-actor-tokens/
#Microsoft #security #Cloud #Azure #AD #ActiveDirectory #AzureAD
-
👋 It's Entra NOT Ontra 😂
Full episode at https://entra.news/p/from-active-directory-to-ai-agents
entra.chat
-
https://opensource.microsoft.com/blog/2022/01/18/announcing-azure-active-directory-azure-ad-workload-identity-for-kubernetes/ - authenticate #Kubernetes #pods to #AzureAD (now #Entra). Nice intro Anish Ramasekar.
-
🎙️ BIG NEWS: I'm launching Entra.Chat - the podcast identity pros have been waiting for!
After years in the identity trenches, I've seen a lot - the midnight calls, the authentication puzzles, and those "how is this even possible?" moments.
That's why I created EntraChat - to share the REAL stories behind Microsoft Entra deployments that you won't find in documentation.
My first episode drops TODAY with identity wizard Ben Wolfe, who reveals how his team migrated 700 apps and 30,000 users from Okta to Microsoft Entra in just 90 days (while implementing Windows Hello for Business simultaneously!)
I've already recorded amazing conversations with identity leaders who've solved problems you're probably facing right now. Their candid insights and battle-tested solutions might just save your next deployment!
Upcoming episodes include conversations with
❤️ Kuba Gretzky - Creator of EvilGinx
❤️ Martin Sandren - Product leader at Ikea
❤️ Dhanyah Krishnamoorthy - Product Manager, Microsoft Entra for Connect Sync and Cloud Sync
❤️ Samantha 🦚 Kloos-Kilkens -
❤️ Nathan McNulty - Fountain of knowledge on all things Microsoft SecurityWho's ready to level up their identity knowledge?
Drop a 💙 if you're as excited about this as I am!
Subscribe with your favourite podcast player:
🎧 Apple Podcast - https://podcasts.apple.com/us/podcast/entra-chat/id1801200012🎧 Spotify - https://open.spotify.com/show/2lJSWBTmMWWn4f9u75JvHY
📺 YouTube - https://www.youtube.com/@merillx/podcasts
🎧 Pocketcast - https://pca.st/10oii6uv
🎧 Overcast - https://overcast.fm/itunes1801200012
🎧 Other podcast apps (rss) - https://api.substack.com/feed/podcast/1804560/private/17af4edf-5946-4494-a05a-ac8693ba426d.rss
Episode 1: https://entra.news/p/from-okta-to-entra-migrating-700
#MicrosoftEntra #IdentityManagement #TechPodcast #AzureAD #CloudSecurity
-
Report Active Directory Accounts that are Synchronized with Azure AD http://dlvr.it/TJL2Zs via PlanetPowerShell #ActiveDirectory #AzureAD #PowerShell #ADConnect
-
02-14-2025 MSOnline and AzureAD PowerShell modules.. One last Valentine’s day card each http://dlvr.it/TJ02dV via PlanetPowerShell #ValentinesDay #MSOnline #AzureAD #PowerShell
-
Microsoft Entra PowerShell modules http://dlvr.it/THs8jn via PlanetPowerShell #MicrosoftEntra #PowerShell #AzureAD #CloudComputing
-
Microsoft Entra PowerShell modules http://dlvr.it/THj3GY via PlanetPowerShell #Microsoft #Entra #PowerShell #AzureAD
-
A widespread error has hit Microsoft 365, deactivating licenses in Office apps. Learn about the causes and how to fix it. #Microsoft365 #Office365 #MicrosoftOffice #Word #Excel #Outlook #AzureAD #Windows #Microsoft
https://winbuzzer.com/2024/12/20/microsoft-365-license-bug-locked-you-out-try-this-workaround-xcxwbn
-
Some Graph API fun today.
The Graph API knows `applications` (https://learn.microsoft.com/en-us/graph/api/resources/application) and `servicePrincipals` (https://learn.microsoft.com/en-us/graph/api/resources/serviceprincipal).
The Azure Portal knows `App Registrations` and `Enterprise Applications`.
App Registrations (Portal) = applications (Graph API)
Enterprise Applications (Portal) = servicePrincipals (Graph API)Applications (App Registrations) and servicePrincipals (Enterprise Applications) have a unique, individual `ObjectId` but the ones that belong together hold the same `ApplicationId` which glues them together.
Fortunately, the Graph API documentation is clear and relatively consistent on what is expected for requesting an object - either the `objectId` or the `applicationId`:
```
GET /servicePrincipals/{id}
GET /servicePrincipals(appId='{appId}')
GET /applications/{applicationObjectId}
GET /applications(appId='{appId}')
```When searching for servicePrincipals (Enterprise Applications) in the portal, it is not that clear since the terms are mixed up a bit.
-
https://dev.to/kasuken/securing-a-blazor-webassembly-hosted-apps-with-azure-active-directory-part-1-382d - putting an app behind #AzureAD (now #Entra ID). Nice walk-through https://www.linkedin.com/in/emanuelebartolesi/.
-
#AzureAD #Entra #EntraID Entra ID Tenant ID & Custom Domains PowerShell Module http://dlvr.it/TFhVtv via PlanetPowerShell
-
Abusing Family Refresh Tokens for Unauthorized Access and Persistence in Azure Active Directory - https://github.com/secureworks/family-of-client-ids-research #redteam #azuread
-
Attn Microsoft 365 & Entra ID admins:
Entra ID Connect Sync service needs to be upgraded to the minimum req'd version of 2.3.2 by Sept 23rd, 2024 to avoid disruption to auto-upgrade & alerting functionality.
Yes, in 2 weeks. Final warning.
https://learn.microsoft.com/en-us/entra/identity/hybrid/connect/security-updates-pks
#entraid #azuread #microsoft365 #microsoft #msftadvocate #entraconnect
-
What are your biggest Entra (AzureAD) Conditional Access questions or pain points? I'm working on a giant Conditional Access post for the #TrustedSec blog -- would welcome your inputs!
#Microsoft #Entra #AzureAD #Azure #ConditionalAccess #conditionalaccesspolicies -
After 9 years in #azuread / #EntraID CxE I've decided to take on a new role at #Microsoft. I'll be joining the Global Hunting, Oversight and Strategic Triage team, also known as GHOST as a security researcher. I'm excited for the change and very much up for the new challenges in this space. #infosec
-
𝐑𝐞𝐦𝐞𝐝𝐢𝐚𝐭𝐞 𝐔𝐬𝐞𝐫 𝐑𝐢𝐬𝐤𝐬 𝐢𝐧 𝐌𝐢𝐜𝐫𝐨𝐬𝐨𝐟𝐭 𝐄𝐧𝐭𝐫𝐚 𝐈𝐃 𝐏𝐫𝐨𝐭𝐞𝐜𝐭𝐢𝐨𝐧 𝐓𝐡𝐫𝐨𝐮𝐠𝐡 𝐎𝐧-𝐩𝐫𝐞𝐦𝐢𝐬𝐞𝐬 𝐏𝐚𝐬𝐬𝐰𝐨𝐫𝐝 𝐂𝐡𝐚𝐧𝐠𝐞𝐬
While we recommend mastering password changes in Entra ID to take advantage of Password Protection, hybrid customers who do password changes on-premises can now use the new setting called "Allow on-premises password change to reset user risk"
#entraid #azuread #azure #idp #identityprotection #passwordchange #passwordprotection #identityrisk #soc #identity #cybersecurity #zerotrust #azureactivedirectory #hybrididentity #hybrid #identityprotection #microsoft #microsoftsecurity
-
If you've been living under the impression that 100% of all configuration changes in Entra ID are audited or audited to a degree of value... you'd be wrong.
From a recent bit of analysis in what's in, or, what's not in, Entra ID audit logs, I've written up some findings and thoughts.
#entra #EntraID #aad #azuread #azureactivedirectory #m365 #mvpbuzz #microsoft #infosec #identitysecurity #azure
https://ericonidentity.com/2023/08/29/dude-wheres-my-audit-logs/
-
Announcing General Availability of Authenticator Lite (in Outlook)
"Authenticator Lite (in Outlook) expands the opportunity to convert users by bringing the enhanced security of push notifications to devices that have not yet downloaded the Microsoft Authenticator App. "
#microsoft #security #mfa #entra #azuread #azureactivedirectory #authenticatorapp #outlook #phone #azure #microsoftsecurity #identity #idp #authentication #cloud #cloudnative #ios #android #mobile
-
Azure AD Certificate-Based Authentication (CBA) on Mobile now Generally Available!
You can now provision certificates on a hardware security key, which can then be used for authentication with Azure AD on iOS and Android devices. Microsoft's mobile certificate-based solution coupled with the hardware security keys is a simple, convenient, Federal Information Processing Standards (FIPS) certified phishing-resistant MFA method.
#microsoft #azure #security #android #hardware #ios #fido2 #mfa #cba #certificatebasedauthentication #phishing #msal #yubikey #certificate #azureactivedirectory #azuread #iam #nfc #microsoftentra #security #identity #identitysecurity #cloudsecurity #identityprovider
-
📢 Find out new Microsoft Entra Features:
➡Identity security / protecting Identities
🔸 Azure AD Recommendations
🔸 More information on why a sign-in was flagged “unfamiliar”
➡Identity modernization
🔸Converged Authentication Methods
🔸Granular device management using custom roles
🔸Azure AD Single-Sign-On enhancements
🔸Attribute Name format for SAML claims
🔸Apply RegEx Replace to the group claim content
🔸Multiple instances of the same application (IDP- and SP-initiated)
🔸 Persistent NameID for IDP-initiated apps
🔸AD FS migration advisor in Microsoft 365 admin center
➡Identity Governance
🔸New SCIM connector for ServiceNow
🔸Provisioning insights workbook
🔸 Expanding Privileged Identity Management (PIM) role activation across the Azure portal
➡Identity for multicloud
🔸Workload Identity Federation for Managed Identities
➡Passwordless
🔸Multiple Passwordless Phone Sign-in for iOS devices
#microsoft #azure #security #entra #azuread #azureactivedirectory #aad #epm #identity #pim #multicloud #passwordless #ios #saml #servicenow #sso #singlesignon #cloudidentity #governance #identitygovernance #iam #iag #microsoft365 #microsoft365defender
-
Whether you're fresh to #Azure or #AzureAD, or have been around the block for a while, understanding the tenant to subscription relationship can be a tricky thing.
In this post we'll try to gain a better understanding with a mix of analogies and visuals.
#mvpbuzz #aad #azureactivedirectory #azuresecurity #entra #identity
https://ericonidentity.com/2023/01/29/azure-ad-101-azure-subscription-relationship
-
IPv6 Coming to Azure AD.
Microsoft will begin introducing IPv6 support into Azure AD services in a phased approach, starting March 31st, 2023.https://lnkd.in/dYnz7k4f
#microsoft #ipv6 #azure #azure #azuread #azureactivedirectory #ipv4 #conditionalaccess #microsoftentra #identity #identityprovider #idp #iam #iag -
Congrats to the team, #Klaw 1.2.0 the #apachekafka #opensource governance tool is now available! What’s new?
✅ #React for Klaw’s UI
✅ New look & feel for Browsing topics
✅ Support for #AzureAD AuthenticationGet a list of all the new features 👇
klaw-project.io/releases/relea… -
The Microsoft Authenticator app on iOS is now FIPS 140 compliant, meaning it meets the standards for cryptography set by the Federal Information Processing Standards #AzureAD#Azure#Microsoft#Id #sharegeneratedinpartwithgpt3 https://techcommunity.microsoft.com/t5/microsoft-entra-azure-ad-blog/microsoft-brings-fips-140-compliance-to-authenticator-supporting/ba-p/2365671
-
I was asked recently to help provide my experiences with migration from federated to cloud authentication with #AzureAD.
While I may not work in a consulting role these days, I wanted to share my learnings working with customers, and included some solid community advice.
#aad #entra #azure #azureactivedirectory #adfs
https://ericonidentity.com/2022/12/01/field-notes-migration-from-federation-to-cloud-authentication/
-
heise-Angebot: iX-Workshop: Azure AD als zentralen Authentifizierungsdienst einrichten
Lernen Sie, wie Sie Microsofts Active Directory aus der Cloud als Authentifizierungsdienst einsetzen und mit Azure AD hybride Identitäten sicher verwalten.
iX-Workshop: Azure AD als zentralen Authentifizierungsdienst einrichten -
heise-Angebot: iX-Workshop: Azure AD als zentralen Authentifizierungsdienst einrichten
Lernen Sie, wie Sie Microsofts Active Directory aus der Cloud als Authentifizierungsdienst einsetzen und mit Azure AD hybride Identitäten sicher verwalten.
iX-Workshop: Azure AD als zentralen Authentifizierungsdienst einrichten -
heise-Angebot: iX-Workshop: Azure AD als zentralen Authentifizierungsdienst einrichten
Lernen Sie, wie Sie das Active Directory aus der Cloud als Authentifizierungsprovider einsetzen und mit Azure AD hybride Identitäten sicher verwalten.
iX-Workshop: Azure AD als zentralen Authentifizierungsdienst einrichten