User Profile
Calum_L1
Brass Contributor
Joined 7 years ago
User Widgets
Recent Discussions
Does redirect work on inactive mailboxes?
I'm working on a complex merger process where I have inactive mailboxes (unlicensed) but I need to redirect incoming email to another tenant. In other words I have the mailbox fred-at-contoso.com which is inactive with a hold, but doesn't have an Microsoft 365 license. Can an email redirect without retaining a copy be added to fret-at-fabrikam.com be added to this mailbox?792Views0likes1CommentWhat is minimum permission needed to add domains to organizational relationship?
I'm working on setting least-privileges for tasks. In Azure AD-Organizational relationships - Settings what is the least priv I can allocate that allows staff to specify domains in the collaboration restrictions? Currently the person who does this is a Global Admin but I'm sure there must be lesser privilege that allows this?Solved3.6KViews0likes1CommentAny timeline for telemetry to Cloud Discovery from Defender for iOS and Android?
We're finding the Cloud Discovery dashboard very helpful to see the apps and transactions from Windows 10 devices with Defender for Endpoint Is there any timeline for getting the same telemetry from Defender for iOS and Android?741Views0likes0CommentsHow to find the details of transactions (URLs visited) logged in Cloud Discovery
How do I get to the low level of detail behind the Transactions logged in Cloud Discovery? For example, 206 transaction have been recorded to Azure CDN Edge nodes, but I want to find the actual URLs that web browsers accessed. Happy to use KQL but I cannot figure out from the documentation where/if this level of detail is logged. Second question is my organization's cyber analysts want to stream this transactional level data from endpoint browsers into a SIEM for long term (3 year+) retention. Again, how can I obtain this info and possible buffer into into a Log Analytics Workspace?Sensitivity Labels, specifying trusted domains using OutlookJustifyTrustedDomains?
I've created several Sensitivity Labels and marked them as requiring justification to send to untrusted domains. Now I want to define the domains which ARE trusted and bypass justification prompt using Set-LabelPolicy -Identity "Global" -AdvancedSettings @{OutlookJustifyTrustedDomains=" ..."} Does this option imply subdomains are also trusted? In other words would - Set-LabelPolicy -Identity "Global" -AdvancedSettings @{OutlookJustifyTrustedDomains="contoso.com"} mean that emails to sales.contoso.com, finance.contoso.com etc. would NOT generate a justification prompt? Also where can I report on the justifications users have input?1.5KViews0likes1CommentShould Supervision function on dynamic groups?
I've tested Supervision on assigned Groups, setting it for offensive language on inbound email. This worked OK. I've now created a policy where everything is the same, except the supervised group is based on a dynamic query which has 1,000s of members. After 48 hours, nothing to review! I can see from Explorer that email which previously was flagged for review has arrived. Looks like you can't supervise a dynamic group??Solved1.3KViews1like2CommentsAIP Unified Labeling client policy update frequency?
We're piloting sensitivity labels to a group of 12 staff who have had the AIP UL client installed on their Windows 10 laptops. While in pilot, we change the published labels that are in the one policy we are publishing. Thing is, the staff have varying experience of when the labels appear in Outlook. Is there are way of forcing the UL client to update or otherwise control the frequency of 'calling home'? Looking at the guide but don't see an GPOs to set for this.Solved6.5KViews0likes1CommentWhen will Defender for Android apply Security Center web content filters?
As title, we've used Security Center web content filters to block adult content, but Edge Browser in Work Profile on enrolled Android devices can still access pr0n sites. Defender on the Android mobiles reports that App Security and Web Protection is enabled and active. Is there a date for web filtering policy being recognised?Question on web protection with Defender for Android
I'm planning a rollout of Defender for Android using Intune (aka Endpoint Manager) and enabling Web Protection. The app will be installed in the Enterprise Workspace with permissions so it can scan Personal and Work space. My question is does Web Protection only apply to web sites accessed using the Edge browser also installed in Work space or does the Defender for Android also inspect web browsing from Chrome and other browsers installed in User partition?Connector has crawled web site, but search returns no results!
I've setup the connector to crawl one of our websites, and it's showing 652,886 items in the index. However, there's never any results returned in the 'vertical' I've setup to use the connector - even searching for words I know exists many, many times! Any suggestion on where to start figuring out the problem?650Views0likes0CommentsWhat Conditional Access controls for WVD with staff on secondment?
What's the ideal pattern for this scenario - "as-is" - All my users at contoso.com have hybrid domain-joined Windows 10 laptops. All Cloud apps are protected by multiple Conditional Access rules. One of these is a block rule unless the device is hybrid Azure AD joined. "to-be" - users are seconded to fabrikam.com and I want them to use Windows Virtual Desktop from within an Edge browser running on that organisation's W10 laptops. I want to have Conditional Access that allows my staff to get to the WVD and start a pooled desktop when working in fabrikam.com but I don't want them using WVD from home PC/internet cafe etc. So far, the only solution I've come up with is to exclude Windows Virtual Desktop app from the 'Block' on unknown device CA rule and have an 'allow' rule for the WVD app when the connecting IP address is in the public IP range of fabrikam.com. Is there a more elegant solution??? TIA!Solved1.4KViews0likes1CommentRe: Microsoft 365 network connectivity test tool now with report sharing is released to preview
PaulAndrew Which apps send back telemetry for 365 Connectivity? Our security people have got a bit upset after hearing client devices report back where they located . Can 365 network connectivity work in any meaningful way when Windows 10 location services are turned OFF? However, the security team are willing to discuss having Windows 10 location services ON if I can assure them about which desktop apps are returning telemetry and location is turned off for most Store Apps.19KViews0likes1CommentRe: How to report domains sending email with No TLS?
VasilMichev Thanks, I'm no PowerShell guru but this located the sending domains not using TLS1.2 $dateStart = ([system.DateTime]::Now.AddDays(-1)) $dateEnd = ([system.DateTime]::Now) Get-MessageTrace -StartDate $dateStart -EndDate $dateEnd -PageSize 512 | Where {$_.Status -eq "Delivered"} | Get-MessageTraceDetail | where {$_.Event -eq "Receive"} | where {$_.Detail -notmatch "TLS1.2"} | fl1.9KViews0likes0CommentsCan I control frequency up app updates from secure Google Play Store?
I have 3500 Samsung Android phones running Android 8 and 9, managed by Intune. We'd rolled out the Microsoft apps such as Outlook, Sharepoint etc. into the managed workspace. Secure Google Playstore has the default setting of update apps when on wi-fi. I've been asked why staff have different versions of the Outlook app on their Phones, we assumed Google Playstore would update reasonably frequently without the user being aware. Is there any setting to control the frequency of checking for updates and/or use Intune and Company Portal to trigger an update of the managed apps?1.2KViews0likes1Comment