Dennis Lind
dnsinit.bsky.social
Dennis Lind
@dnsinit.bsky.social
Lucky guy who works with his hobby 👨🏼‍💻
Reposted by Dennis Lind
🔥 It is here. Microsoft Entra Kerberos authentication for cloud only identities on Azure Files SMB is now available in preview. This makes it possible to access Azure Files without any domain controllers or hybrid identity requirements. cloudtips.nl/microsoft-en...
Microsoft Entra Kerberos authentication for Cloud-only Identities on Azure Files SMB ❤️
Azure Files now allows SMB access through identities that exist entirely in Entra also known as cloud-only accounts. These accounts live in…
cloudtips.nl
November 30, 2025 at 2:08 PM
Reposted by Dennis Lind
Using a managed identity for your multi-tenant application is back!! svrooij.io/2024/12/24/m... This is huge security wise. If you build a multi-tenant application for #Microsoft365 you want to keep the secrets, safe. Now you can get rid of those secrets all together. #security #entraid
December 24, 2024 at 11:03 AM
Reposted by Dennis Lind
Don't want to be the grinch in this festive season but 🚨 URGENT 🚨 announcement related to Azure CDN from Edgio which you need to migrate off NOW because of the Edgio bankruptcy. Please share and act.

Video of detail and actions.

youtu.be/QNIESfQno8U

Thank you!
Microsoft Azure
portal.azure.com
December 23, 2024 at 1:19 PM
Be prepared in January already.

🚨 MSOnline retires between early April and late May.

🚨 A series of temporary outages between Jan and Mar (3-8h x2).

🚨 Inspect Sign-in logs (interactive and non-interactive) where Application Name is Azure Active Directory PowerShell.
December 23, 2024 at 7:31 AM
Loving the new Entra recommendation to get the hell off AzureAD Graph but.. how do I fix these? @merill.net ? 😇
December 9, 2024 at 10:32 AM
Reposted by Dennis Lind
Old but gold 💰 Receive admin notification emails from Microsoft Entra without a mailbox license using 𝐩𝐥𝐮𝐬 𝐚𝐝𝐝𝐫𝐞𝐬𝐬𝐢𝐧𝐠! Check out how here > ourcloudnetwork.com/how-to-recei...

#Entra #Admin #Graph
December 9, 2024 at 8:54 AM
Reposted by Dennis Lind
I had a customer ask me if they can block an app and disable sign-ins even from non-human identities.

The answer is Yes!

The label 'Enabled for users to sign in' in the admin portal is slightly misleading and could probably be improved.

FYI internally it's called 'enabled' 😉
December 9, 2024 at 9:13 AM
Reposted by Dennis Lind
Soo... A little bit of awareness is probably a good idea :p

We can delete MDI sensors from the Defender portal and do so in bulk via the internal API

It might be a good idea to set up a detection for this:

CloudAppEvents
| where ActionType == "SensorDeleted"
December 7, 2024 at 12:05 AM
Anyone else having issues with DfC reporting on vulnerable OpenSSL in the latest versions of Azure Monitoring Agent? 😞 Secure Score taking hits
November 21, 2024 at 10:01 AM
If anyone else was looking for the ultimate place for announcements (Book of News), here it is.

And don’t forget to use the table of content instead of scrolling the Wall of Text… 😅

news.microsoft.com/ignite-2024-...
November 19, 2024 at 10:18 PM
Reposted by Dennis Lind
Quick video covering the huge update that gives you a number of Azure management services for FREE on your SA non-Azure Windows Server. Patching, inventory, change management, policy and more!
youtu.be/7EnbSjWb6io

#azure #cloud #microsoft #cloudcomputing #microsoftazure #windowsserver #azurearc
FREE Azure Services for NON-Azure Windows Servers Covered by SA Powered by Azure Arc!
YouTube video by John Savill's Technical Training
youtu.be
November 19, 2024 at 12:49 PM
Reposted by Dennis Lind
Microsoft Security Exposure Management is now GA with some neat features

Attack Path Analysis with support for
◻️DACL
◻️Hybrid Attack Paths
and also #uRBAC support

#Ignite #XDR

https://buff.ly/3ZeN91K
November 19, 2024 at 3:58 PM
With Ignite just around the corner, do you fiery MS tech evangelists happen to know if there’ll be a Book of News this year? 📖2️⃣0️⃣2️⃣4️⃣
November 18, 2024 at 3:17 PM
Reposted by Dennis Lind
Almost embarrassed to post this, but I've always used Fiddler or Burp for capturing things like this...

I didn't have admin rights and was trying to capture network traffic from a pop-up, so Dev Tools wasn't working

Apparently this is built into Chrome/Edge! So cool :)

edge://net-export/
November 17, 2024 at 6:49 AM
Reposted by Dennis Lind
👋 Starting 3 Feb 25, Microsoft will start enforcing MFA when anyone tries to access the Microsoft 365 admin centre.

Learn more at techcommunity.micros...
November 14, 2024 at 11:56 PM
Reposted by Dennis Lind
Great writeup that demonstrates that Intune is really powerful and you should not manage your PAW devices from the same environment they manage.

#Security #Intune #ControlPlane #RedTenant

https://buff.ly/4fICwty
November 13, 2024 at 8:53 PM
Reposted by Dennis Lind
New video exploring a great Entra ID feature that helps revoke resource access based on critical user events.

youtu.be/m3309aUKET8

#entra #entraid #microsoft #security
Continuous Access Evaluation Deep Dive - Securing Your Tokens!
YouTube video by John Savill's Technical Training
youtu.be
November 11, 2024 at 3:05 PM
Reposted by Dennis Lind
Since I have been digging into Bluesky I thought I would keep notes on what tools I have been using. I posted them on Github for others to discover as well. Please let me know if I missed any that you find useful github.com/JefTek/Blues...

#tips #blueskytips
November 10, 2024 at 9:11 PM
Any info on the bug causing corrupt 4768 events (and 1108 errors) on DCs since july patch? Will it be fixed in a CU soon? Yet another customer upgraded and ask the same questions 😬

@josephryanries.bsky.social perhaps?

For reference:
www.reddit.com/r/sysadmin/c...
Reddit - Dive into anything
A reddit dedicated to the profession of Computer System Administration.
www.reddit.com
November 9, 2024 at 11:32 AM
Can’t wait for this to ship to non canary channels, game changer! 🙌🏼
🚨Local Administrator Protection

This new feature introduces a hidden, just-in-time elevation mechanism that unlocks admin rights only when needed instead of using the legacy admin approval mode (Spit-Token AKA Clark Kent mode).Curious how it works?

patchmypc.com/local-admini...

#Intune #Windows11
November 9, 2024 at 11:21 AM
I hope Bluesky is ready for us this time
🦋 Introducing bluesky.ms 👏 = A crowdsourced database of anyone and everyone in the Microsoft community on Bluesky.

👉 Add yourself and anyone you know today 👈

🫂 All are welcome.

This is my v1, I'll add options to directly follow from the site itself but first 👇

LET'S FILL IT UP! 🙏
Search bluesky.ms
Use this page to search for the Microsoft community on bluesky.ms.
bluesky.ms
November 9, 2024 at 8:03 AM