The_Exchange_Team
We're a few days later after the release of these patches and the EP requirement, and it's clear that a lot of customers can't enable EP at this moment, or are not sure if something will break when they do.
Will Microsoft supply more information about how and what to test after enabling EP? And give more information about how vulnerable we are when not enabling EP? And are you looking into the situations with SSL offloading, modern hybrid, etc, and give an estimate on when these workloads will be addressed?
Also, few questions were asked about complex setups, such as OWA with on-prem adfs. How will this be affected?
I would have hoped that MS would give some more guidance on this complex topic, since you bring this as a requirement to patch a critical vulnerability.
Thanks.