Stian A. Strysse 🛡️
banner
learningbydoing.cloud
Stian A. Strysse 🛡️
@learningbydoing.cloud
Sr. Identity Architect - #learningbydoing 🛡️ Focused on #cloud, #identity, #cybersecurity, #devops, #automation, #Entra 🆔.
Fixing it with code, sharing it in blogs 🚀

Blog: https://learningbydoing.cloud 💥
LinkedIn: https://linkedin.com/in/stianstrysse 🗞️
Connect-AzAccount with newest PS module does not redirect to browser sign-in as the older versions did. Now it’s a popup instead, which takes longer to sign-in with. Same with Connect-ExchangeOnline newest module, why this new behavior - anyone knows?
April 29, 2025 at 7:34 AM
Woah, this feature totally slipped under my #Entra radar - new protected action capability in #ConditionalAccess for hard-deletion of directory objects. Require e.g. compliant device, phishing-resistant MFA and re-auth before allowing permanent deletion of users, M365 groups and apps in Entra ID!
What are protected actions in Microsoft Entra ID? - Microsoft Entra ID
Learn about protected actions in Microsoft Entra ID.
learn.microsoft.com
February 3, 2025 at 10:45 PM
I keep hearing recommendations for excluding #Entra breakglass accounts from all CA policies - I don’t agree. They should be included in at least one single, special CA policy requiring phishing-resistant MFA (FIDO2), where only breakglass accs’ are included. Session policy too. Thoughts?
January 24, 2025 at 6:11 PM
Reposted by Stian A. Strysse 🛡️
Want to run roadrecon, but a device compliance policy is getting in your way? You can use the Intune Company Portal client ID, which is a hardcoded and undocumented exclusion in CA for device compliance. It has user_impersonation rights on the AAD Graph 😃
December 12, 2024 at 3:59 PM
Funny thing is, 99% of the apps I’ve seen still using Azure AD Graph is Microsoft’s own apps 😬
🥩🥩Mr T-Bone tip!🥩🥩
Heads up, IT Pros! ⏰ Azure AD Graph API is retiring. Action required for a seamless experience! Let’s get you ready. 🚀

#AzureAD #CloudTech #MVPBuzz #EntraID #MicrosoftTechCommunity

https://buff.ly/41l2vDe
December 7, 2024 at 12:14 AM
I just submitted an idea for this on the MgGraph GitHub repo. Upvote if you agree 🙏🏻

github.com/microsoftgra...
December 5, 2024 at 11:17 AM
Reposted by Stian A. Strysse 🛡️
Today is the day folks.

The new and updated Bluesky.ms is now live!

Go add yourself. I'll share a detailed step by step...
Search the Microsoft community on Bluesky and get verified!
Bluesky account verification for Microsoft staff and MVPs.
Bluesky.ms
December 3, 2024 at 10:15 PM
I know at least some SaaS vendors use these EXO legacy tokens still, so good to stay updated on this with the coming deprecation.
December 3, 2024 at 5:59 PM
I just read this cool blog post by @smsagent.bsky.social covering how to activate eligible PIM roles using PS MgGraph when CA policies require Auth Context, found in @merill.net’s epic #Entra newsletter. This problem has been bugging me!

However, shouldn’t MgGraph add support for Auth Context CAPs?
Activating PIM Roles that require MFA or Conditional Access Authentication Context with PowerShell
For some time, I’ve been activating and scheduling activations for Azure roles under Privileged Identity Management (PIM) using the Microsoft Graph PowerShell SDK. However recently we secured…
smsagent.blog
December 2, 2024 at 11:21 PM
Reposted by Stian A. Strysse 🛡️
Use exposure management data in #XDR to find all domain controllers and check if #MDI is installed.
AzSentinelQueries/Defender XDR/DefenderForIdentityInventory.md at master · f-bader/AzSentinelQueries
Repository with Sentinel Analytics Rules, Hunting Queries and helpful external data sources. - f-bader/AzSentinelQueries
buff.ly
November 29, 2024 at 6:30 PM
Reposted by Stian A. Strysse 🛡️
So who wants a verified 'Microsoft' and 'Microsoft MVP' label on their profile and all the posts?

I just finished setting up @bluesky.ms as a labelling service.

Go subscribe to the label to start seeing labels on verified MVPs and Microsofties.

🧵👇
November 26, 2024 at 2:35 PM
Reposted by Stian A. Strysse 🛡️
This week's Entra newsletter just went out. Get all the Entra related Ignite announcements in one place 👇

entra.news/p/entra-n...
November 24, 2024 at 10:18 PM
Reposted by Stian A. Strysse 🛡️
Quick reminder to check out the #Microsoft community starter packs.

We have new starter packs + starter packs updated with new folks.

So hit up the page and update your follows so you can connect with more folks.

Please add if I've missed any.

bluesky.ms/starterpacks/
🚀 Starter packs | Bluesky.ms
Starter packs in Bluesky are curated collections of folks to follow. These packs are created by the community and are a great way to get started with Bluesky. You can bulk follow the folks in the pack...
bluesky.ms
November 18, 2024 at 9:52 AM
Reposted by Stian A. Strysse 🛡️
New to Bluesky?

Looking for people to follow who post content about Microsoft Azure, Microsoft 365 and/or Security?

Click the below starter pack and click follow all.

Let me know if you want to be added to the list.

go.bsky.app/2nmrHcS
November 12, 2024 at 11:28 PM
Reposted by Stian A. Strysse 🛡️
I just created my first starter pack. This one is for women in infosec. Please follow and share, and lmk if you’d like to be added! go.bsky.app/HAGHpCr
November 17, 2024 at 9:54 PM
Reposted by Stian A. Strysse 🛡️
I created a list of Cloud Security folks on here. bsky.app/profile/scot...
November 18, 2024 at 12:57 AM
Reposted by Stian A. Strysse 🛡️
Sharing my #PowerShell Starter Pack again.

I realized I must have accidentally dropped @robsewell.com's PowerShell feed, so I added it back. I also added @psconf.eu #PSConfEU feed.

go.bsky.app/9ozmoAY
November 17, 2024 at 5:00 PM
Reposted by Stian A. Strysse 🛡️
“bluesky is an echo chamber” everywhere’s an echo chamber i’m going with the one without cybertruck guys
November 17, 2024 at 4:30 AM
Reposted by Stian A. Strysse 🛡️
If you are new to #Entraid Conditional Access Policies, or you have been working with them for years, this video from the product group on the #425show is worth your time to watch. #identity #security #microsoft #entra www.youtube.com/live/HylR3JL...
YouTube
Share your videos with friends, family, and the world
www.youtube.com
November 15, 2024 at 7:33 PM
Reposted by Stian A. Strysse 🛡️
Want to know how to setup/configure and use Fiddler to intercept Intune Traffic?
Well, this is how!

#Intune #MsIntune #Windows

call4cloud.nl/fiddler-decr...
Fiddler | Capture and Decrypt Intune Traffic | Troubleshoot
Fiddler | Intune | MDM | Entra | Capture and Decrypt Traffic | Autopilot | ClientCertificate.cer | Troubleshooting | customize rules | Troubleshooting
call4cloud.nl
November 17, 2024 at 9:18 AM
Reposted by Stian A. Strysse 🛡️
Want to follow the Entra community on Bluesky?

Check out the bluesky.entra.news starter pack👇

Please repost, like, bookmark to spread the word.

To add yourself to the starter pack → github.com/merill/en...
Entra.News Authors #microsoft
Join the conversation
bluesky.entra.news
November 17, 2024 at 11:53 PM
Reposted by Stian A. Strysse 🛡️
Do you remember the first big task you tackled with #PowerShell?

How about the moment it all just clicked, that system administration shouldn't be about clicks?

What drew you to #automation?
November 11, 2024 at 2:00 PM
Reposted by Stian A. Strysse 🛡️
With #Microsoft Ignite 2024 taking place this week in Chicago, US, I created an automated feed you can subscribe to, to join those sharing from people around the world attending and posting!

Please Like>Share>Post, and Pin to your feeds! #msignite #microsoftignite #entra

bsky.app/profile/did:...
November 16, 2024 at 8:50 PM
This is such a refreshing place!
November 8, 2024 at 11:34 PM