Hello and good morning. Does Microsoft (or anyone) have a script that will disable remote powershell for anyone that is not in one of the RBAC groups? Do we need to disable remote powershell for all mailboxes with an enabled account? Do we need to disable remote powershell for users with an On Prem and Exchange Online mailbox?
Like many others I am waiting on guidance from Microsoft regarding the RegEx and whether to use ".*autodiscover\.json.*\@.*Powershell.*" or ".*autodiscover\.json.*Powershell.*" at the Default WebSite of my Exchange CAS servers. Currently I we have ".*autodiscover\.json.*\@.*Powershell.*" applied and need to know if we should change it. We have a case opened with Microsoft and we were advised to leave it ".*autodiscover\.json.*\@.*Powershell.*".