Microsoft Secure Score - Devices
On this page, I will describe how I implemented my current Microsoft Secure Score on the Devices pillar. This means altering mostly the…
On this page, I will describe how I implemented my current Microsoft Secure Score on the Devices pillar. This means altering mostly the…
Microsoft released that the Kerberos protocol will be hardened by an update coming in April to June 2026 to increase the security. This was…
Microsoft 365 Backup ensures that your data, accounts and email is safe and backed up into a separate storage space. A good and reliable…
On this page, I will describe how I implemented my current Microsoft Secure Score on the Identity pillar. This means altering mostly the…
Microsoft announced RemoteAppV2 under some pretty enhancements on top of the older RemoteApp engine. This newer version has some…
With GitHub Pages, we can host some free websites for personal use. This is really great as we mostly already use GitHub to store our code and assets for websites.
When I first chose to use V6 or V7 machines with Azure Virtual Desktop, I ran into some boot controller errors about the boot…
As we want to secure our Break Glass Accounts as good as possible, we cloud want to get alerts when break glass admins are used to login.
In this post, I will explain how I redirect my domains and subdomains to websites and parts of my website. If you ever visited my tools…
Azure Bastion is a great tool in Azure to ensure your virtual machines are accessible in a fast, safe and easy way. This is cool if you…
In this guide, I will describe how I host multiple Github applications/tools into one single Static Web App environment in Azure. Ths…
MTA-STS is a standard for ensuring TLS is always used for email transmission. This increases security and data protection because…
In this guide, I will show you how to delete the printers using a PowerShell script. This is compatible with Microsoft Intune and Group Po…
In some cases we want to automatically start the Windows App for connections to AVD and Windows 365 at startup. We can achieve this through different ways which I will describe in this post.
On this page I will describe how I built an environment with a pooled Azure Virtual Desktop hostpool with FSLogix and using the Entra…
When using Azure Files and Windows 11 as operating system for Azure Virtual Desktop, we can leverage the highest SMB encryption/security…
When deploying Google Chrome with Microsoft Intune, users still have to manually login with their credentials into Microsoft Online websites.
One day I came across an option in Microsoft 365 to disable the users’ self service trials. You must have seen it happening in your ten…
In Azure we can deploy ARM templates (+ script afterwards) to deploy resources on a big scale. This is like an easier version Terraform…
Today a short guide on how to disable Windows Taskbar widgets through Intune. I mean this part of the Windows 11 taskbar:
Microsoft just released a new feature, Windows Backup for Organizations, which is a revolution on top of the older Enterprise State Roaming.
Since the latest Windows 25H2 update, we have a great new feature. We can now remove pre-installed Windows Store Applications which we…
When deploying Microsoft Office apps to (pooled) Virtual Desktops, we mostly need to do some optimizations to the installation. We want to…
In Azure, we can configure Boot diagnostics to view the status of a virtual machine and connect to its serial console. However, this must…
One of the small things I experienced in one of the updates for Windows 11 (24H2) is that the language bar/selector get’s automatically…
Wordpress. Its maybe the best and easiest way to maintain a website. This can be run on any server, and in Azure, we also have great possi…
This guide explains how to perform a in-place upgrade WIndows Server on Azure to leverage the newest version and stay secure.
Universal Print is a Microsoft cloud solution which can replace your Windows based printservices. It can be used to deploy printers to…
Sometimes, it is necessary to match an existing local Active Directory (AD) user through Entra Connect with an existing Entra ID user…
Joining a storage account to Active Directory can be a hard part of configuring Azure Virtual Desktop or other components to work. We must…
Today I have a Logic App for you to clean up orphaned FSLogix profiles with Logic Apps. As you know, storage in Azure costs money and we…
In this blog post I will explain and demonstrate the pro’s and features of using FSLogix App Masking for Azure Virtual Desktop. This is a…
In Azure, you have the option to create Ephemeral OS disks for your machine. This sounds really cool but what is it actually, what pro’s…
RDP Multipath is a new protocol for Azure Virtual Desktop and ensures the user always has a good and stable connection. It improves the…
When using Entra ID, we can automate a lot of different tasks. We can use a script processing server for this task but doing that…
With Azure Logic apps we can save some money on compute costs. Azure Logic apps are flow based tasks that can be run on schedule, or on a…
In this article, we are going to implement Azure Firewall in Azure. We are going to do this by building and architecting a new network and creating…
When it comes to basic email security, we have 3 techniques that can enhance our email security. SPF, DKIM and DMARC.
Since the beginning of Azure Virtual Desktop, it is mandatory to run it with an Active Directory. This because when using pooled sess…
Microsoft Azure has a service called the ‘Static Web Apps" (SWA) which are simple but yet effective webpages. They can host HTML…
Azure Workbooks are an excellent way to monitor your application and dependencies in a nice and customizable dashboard. Workbooks can…
Minecraft is a great game. And what if i tell you we can setup a server for Minecraft on Azure so you can play it with your friends and…
Sometimes we want to know why a Azure Virtual Desktop logon took longer than expected. Several actions happen at Windows logon…
Locks in Azure are a great way to prevent accidental deletion or modify resources or resource groups. This helps further securing your…
This page is about Azure Migrate and how you can migrate an on-premises server or multiple servers to Microsoft Azure. This process is not very easy, but it’s also not extremely difficult. Microsoft hasn’t made it as simple as just installing an agent on a VM, logging in, and clicking the migrate button. Instead, it is built in a scalable way.
In this module, we cover Azure: Infrastructure as Code (IaC) and DevOps. This module focuses more on development on Azure, with less emphasis…
I tested the new FSLogix 25.02 version and a very annoying bug appeared. “The Recycle Bin on C:\ is corrupted.”
With the Azure Start/Stop solution we can save costs in Microsoft Azure and save some environmental impact. In this guide I will explain…
In this guide, i will show how to do some popular Active Directory attacking tests and show how Defender for Identity (MDI) will alert…
In Microsoft Azure, we can build servers and networks that use IPv6 for their connectivity. This is especially great for your webserv…
Microsoft Defender for Identity (MDI for short) is a comprehensive security and monitoring tool which is part of the Microsoft XDR suite…
Azure Update Manager is a relatively new tool from Microsoft and is developed to automate, installing and documenting…
Active Directory Domain Controllers are assigned 5 different FSMO roles, which all have their own function. We can separate them over multiple…
If you have the Office Apps installed with OneNote included, sometimes the OneNote printer will be installed as default…
Most companies who use Microsoft Azure in a hybrid setup have a Site-to-Site VPN gateway between the network in Azure and on-premises. This…
In this guide i will explain how to add a alias of a domain to every user in Microsoft 365/Exchange Online.
This guide explains how to configure the new announced DNSSEC and SMTP DANE security options in Exchange Online.
When using Azure Virtual Desktop (AVD) or Windows (W365), we sometimes use the mobile apps for Android, MacOS or iOS. But those apps rely…
Azure Stack HCI is a solution for Microsoft Azure to host Azure resources on your own hardware and location. This soun…
Now and then we come across a problem with Entra Connect Sync which states “DeletingCloudOnlyObjectNotAllowed”. This error looks…
Microsoft will sometimes “pause” tenants to reduce infrastructure costs. You will then get an error which contains “tenant dehydrated”.
Also impacted by the update where you can’t select users to filter your Group Policies (GPO)? Read this guide for a temporary solution.
By default, Microsoft Store applications are not supported when using FSLogix. The root cause is that Windows stores some metadata that…
Once in a while, we as IT administrators need to migrate our Group Policies of Windows Server to another server. Sometimes to…
When using Windows 11 on Azure Virtual Desktop (AVD) - without the right optimization - the experience can be a little lagg..
Sometimes a company wants to receive all email, even when addresses don’t really exist in Exchange. Now we call this a Catch all mailbox…
By default it is not possible to create multiple shared mailboxes with the same name/alias. In this guide i will explain how to reach…
This page helps you to migrate to SharePoint or OneDrive with the SharePoint Migration Tool (SPMT). This tool helps automating the…
In this guide i explain how to use PowerShell remote sessions, what they are and how to configure your systems to use this. Also some…
This guide explains how to perform Remote Group Policy updates and how to do the initial configuration needed.
This guide will explain how to create a Dynamic group for access to Windows 365. THis further enhance the deployment of new users.
This guide explains how Exchange Online Dynamic Distribution Groups work, how to create and maintain them with Microsoft 365.
When you install a fresh Windows Server Evaluation installation from a .iso file, it will be installing the OS as a Evaluation version…
This page will share a PowerShell script to create bulk AD users with Powershell. Click here for more information…