security
914 TopicsLocked out because of bugged 2FA
Hello, I have one irritating problem. I did a reset of my microsoft authenticator app since it stopped working, i did not save the Authenticators security code, i got 2FA activated on my account. Now i have been trying to log in on my microsoft account for one month without succes. The 3 options i have for 2FA is Code to external my gmail - This works 2 times a day, then locked for 24h Code by text to my cellphone - This does not work when trying to log in, i get the error "Try another verification method, this method does not work at the moment". I know it works, its just in the combination with 2FA it wont work. Microsoft Authenticator - I cannot log into this one since the textmessage does not work on 2FA-login. I have been in a loop for the last month, i cant log into my ordinary e-mail, xbox and so on. Im still logged in on my computer and cellphone at the moment but im afraid it will time out very soon. Microsoft support says that they cannot do anything about it, it is only a server doing all the security. I cant remove 2FA on the account im still logged into, i need 2FA for that. Help!325Views0likes6CommentsCan't use a SPN in a PowerBi dashboard to access SharePoint lists
Hoping you can help with an ongoing issue I have. I have a PowerBi dashboard I built using regular account to fetch some SharePoint lists and uploaded it to PowerBi for others to view Now in PowerBi portal I want to change the credential from my account to an SPN. I've read what feels like a thousand articles describing the process to create the SPN 99% all the same. Yet when I go into Powerbi portal, edit the semantic model for the dashboard, click edit credentials, select Service Principal put in the tenant ID the Service principal ID (yes using the app id, in fact I tried everything) the service principal key (the secret) and choose any privacy level it fails 100% of the time. Error is: Failed to update data source credentials: The credentials provided for the SharePoint source are invalid. Same error regardless of what privacy level I choose. I'm sure the secret is correct also. Just for fun I tried the Secret ID and the Object ID in place of the Application ID for the Service principal ID field. All failed same error. I'm sure the secret is correct also. The SPN has Graph sites.read.all, Graph user.read and SharePoint Sites.Read.All api permissions configured. All are consented. Everything seems right but gives me the error failed to retrieve oauth token 100% of the time. Am i missing something else? More API permissions maybe? Do i still need ot actually add the SPN to the Sharepoint site itself even though I has API permissions SharePoint Sites.Read.All? I've done days of research and all I find is lots of people with same or similar issue but not resolution. Is this a bug? Help me I'm desperate to get this fixed or I'm going to have to allow people to bypass MFA across my organization which I cant have.199Views0likes1CommentWhy is Excel macros sometimes missing ?
I have an excel file with a lot of rectangular shapes showing a tree structure for a family. When the user clicks on one of the rectangulat shapes the 'story' of that person opens up in a Word dokument. BUT ... Most often the macro 'assigned' to the OnAction WONT run - instead this message comes up: The macros is NOT shown when I "show macros" but it IS present in the VBA section when I press alt+F11 ! When it's working it's most often reight after a reboot og the machine - then it maybe works in 10-30 minuts and then the problem is back again ! I HAVE chesked the security setting allowing macros to be activated ! I have tha SAME file running under Window 10 for years WITHOUT any problems !!!! I can see out there that people FOR YEARS have had similar problems with missing macros - but unfortunately I found no solution ! What the _BEEP_ is wrong here ?442Views0likes9CommentsLock down Form creation for staff
Hi, I want some staff being able to create forms/surveys etc. https://forms.microsoft.com/ I want to ensure that the rest of the staff can consume the forms ,i.e. fill in, but not create new or "Collaborate or Duplicate". What is the best way for me to do this? Thank you for your time, OllieSolved117Views0likes1CommentSecurity Score in Security Admin center not updating
Hi, I am looking at the security score in the security admin center and trying to apply some of the easy items to improve the score. For example, "Move messages that are detected as impersonated users by mailbox intelligence" which needs anti-phishing policy with the ‘Enable mailbox intelligence’ and ‘Enable intelligence for impersonation protection’ options enabled ensure that the ‘If mailbox Intelligence detects an impersonated user’ option set to ‘Quarantine the message’ Both of which are now done But my score will not change and the reccomendation doesn't go away. In this example i have only the default policy, Office365 AntiPhish Default, and it is applied to all users - 408 users (100%). Can anyone point me towards what I am doing wrong or missed? I have applied 7 of the listed recommended actions with no score change so far so i'd like to work it out before I get too far into it if i'm doing it wrong. Thanks for any advice IanSolved156Views0likes2CommentsMicrosoft 365 Certification
Why Microsoft 365 Certified Apps and Agents Matter for IT Admins As an IT Admin, you're constantly balancing innovation, security, and user productivity. With the growing ecosystem of apps/agents integrating into Microsoft 365, how do you ensure the ones your organization adopts are secure, compliant, and reliable? That’s where Microsoft 365 Certification comes in. What Is Microsoft 365 Certification? Microsoft 365 Certification is a rigorous program that evaluates third-party apps across key dimensions like security, compliance, data handling, and privacy. Certified apps/agents meet Microsoft’s highest standards and are verified through independent assessments and documentation reviews. Top Benefits for IT Admins 🔐 Enhanced Security & Compliance Certified apps/agents undergo thorough security testing, including vulnerability assessments and penetration testing. Many of the controls these apps / agents adhere to are based on established frameworks such as SOC 2, ISO 27001, and GDPR. This ensures that certified apps align with recognized industry standards, providing confidence when deploying them in enterprise settings. 🛠️ Streamlined Governance With certification, IT Admins can confidently shortlist apps or agents in their tenant, knowing they meet Microsoft’s governance criteria. This reduces the overhead of manual vetting and accelerates app adoption. 📍 Discoverability in Microsoft 365 Ecosystem Certified agents are tagged with a “Microsoft 365 Certified” badge in AppSource, Teams Store and the Microsoft 365 admin center, making them easier to find and trust. 📊 Transparency & Documentation The Microsoft Admin Center and Teams Admin Center include a Security & Compliance section under Integrated Apps where admins can view certification details for apps. This feature is designed to improve transparency and speed up app evaluation. Here’s what is available: Certification Class Publisher Verified – Confirms developer authenticity. Publisher Attested – Indicates the app’s security and compliance posture based on self-assessment. Microsoft 365 Certified – Shows that the app has passed Microsoft’s rigorous audit against security and compliance controls. These details help IT teams understand the app’s risk posture before deployment. Evidence Sharing Developers can opt to share certification evidence (e.g., policy docs, system configs, penetration test reports) directly in MAC. This evidence is uploaded during the certification process in Partner Center and, if consented, becomes visible to admins in Microsoft Admin Center and Teams Admin Center. How to Find Certified Apps Visit the Business Apps – Microsoft AppSource to explore certified apps by category, publisher, or certification level. You can also filter apps directly in AppSource or within the Microsoft 365 admin center. Join the Conversation Have you deployed a Microsoft 365 Certified agent in your organization? Share your experience in the comments below or start a thread in the Microsoft Tech Community to help others make informed decisions.864Views2likes0CommentsI need to speak to a person at Microsoft
Firstly, I don't know if this is the correct place to ask, if not, I apologise, and would be greratful if I could be directed to the correct medium. So..... *** I am writing this on behalf of someone else *** His account has been locked after he had been hacked and infected with a virus, and Microsoft will not unlock it. However, they have decided (today) to take his money for his 365 subscription, that he can't use, and doesn't want. When looking for a way to cancel it, the answer is log-in to his account and cancel it himself. BUT, he can't log in because the account is locked. He has tried looking for a phone number to speak to someone, but cannot find any. He has tried looking for a Live Chat, but, (if it exists) it is only available after he logs in. He just wants to cancel the subscription, and get a refund. Can someone please give me a contact number - preferably in the UK, but any English speaking representitive, in any countrty will do. Thanks,160Views0likes1CommentCompliance licenses at tenant level
Hi, We are a small organization of about 200 employees, and we have following requirements. DLP policies configuration at Exchange, OneDrive, SharePoint BYOD security Users should not be able to send files outside the org And so on as we evaluate We already have M365 Business Premium. However, after researching we figured out that M365 Business premium will alone not solve our requirements. May be compliance license will. We want to apply security policies at tenant level in our organization but definitely do not want every user to get licenses as this will be expensive for us and there is no requirement at all for our users. The question is, Is there a way to solve the above scenario?393Views1like3CommentsUsing the Secret Management PowerShell Module with Azure Key Vault and Azure Automation
If you can't use managed identities, credential resources are a way to manage username and password credentials for Azure Automation runbooks. The Secret Management module is an alternative, and it’s a good option to manage credentials that are shared between interactive scripts and automation runbooks. This article describes how to use the Secret Management PowerShell module to fetch credentials stored in Azure Key Vault for use in an automation runbook. https://office365itpros.com/2025/10/16/secret-management-azure-automation/30Views0likes0Comments