User Profile
Galaxy876
Copper Contributor
Joined 6 months ago
User Widgets
Recent Discussions
Network Design Ideas for VMs in Azure
Hello, I am analyzing the current Azure environment at my new job and trying to figure out the architectural choices mostly networking wise. Currently, we have 10 VMs and each VM has its own VNet and they are all in the same region. In my experience so far, I have never seen such network design in Azure before. If all VMs are in the same region, we could have one Vnet and utilize subnets and NSGs to segment the VMs and control the traffic. Having so many different VNets makes it very complex to manage. Looking for opinions what other people think. Is this just a bad design or just to keep the VMs separate from each other.How to remove Intune policy from a device after its pushed to the device
Hi, I pushed a standard password Intune policy to a windows device and would like to know how to remove this policy from the device once it is pushed to the device already. I excluded this device from the policy and after a day or two, I could see in the Intune portal that this password policy is no longer hitting the device. However, when I try to change the password, it's still hitting the password requirement that I setup before. Any advice would be appreciated.153Views0likes2Comments'Single Factor Authentication' after Intune device enrollment
Hello, We have MFA enforced for all employees through Conditional access. Recently, we started enrolling our company laptops (Windows and Mac) to Intune and also setup 'Windows Hello for Business' as a login method. I noticed that after the enrollment, the user sign in attempts are showing as 'single factor authentication' in the Entra ID sign in logs. Also, it says that there's no conditional access policies getting applied even though we have several CA policies about MFA, session controls etc. I did some research and found out that this is due to Windows Hello for Business. My question is, what is the right course of action here? I'm getting messages on the CA policy page that the users are logging in without any policy coverage which concerns me a bit even though I know we have all the policies set in place. Any advice would be appreciated.389Views0likes1CommentDoes Intune create a new user profile?
Hello, I am new to Intune and figuring out a way to enroll our corporate devices (i.e. Windows and Mac devices) to Intune. Currently, we are using a third-party device management tool and planning to move to Intune soon. My question is about the user profiles. Our users already have a profile on their laptops and all their data, files is in those profiles. If we enroll the devices to Intune, is it going to create a new user profile for them? If that's the case, it adds another challenge to move the user data from old profile to new one. We have around 200+ users so this will require a lot of work from admin side. Any advice is appreciated.879Views0likes4CommentsHow to handle MFA for a shared account?
Hello, We have a business need where some users need to share an Entra ID account for Dynamics 365. I am trying to figure out how to handle MFA for a shared account and what's the best practice in such cases. We could setup the MFA for this account to the admins' phones, but this will only create headache for those admins (when they're out of office, travelling etc.). Any advice would be appreciated.SolvedHow to disable Sign in Frequency setting for a user?
Hello, I am working on configuring the session timeout policies for our Entra ID. Currently, we have sign in frequency set as 14 days through a conditional access policy. There's one common Entra ID account which is being on multiple mobile devices and due to system requirements, we don't want this account to get logged out after a certain period of time once it is signed in. I have excluded this account from the existing session timeout policy. My question is- Now that it does not have any session timeout policy getting applied to, will it be impacted by the default sign in frequency (i.e. 90 days) setting by Microsoft? Any advice is appreciated.SolvedRemoving MFA for a group of users
Hi, I'm fairly new to Entra ID and need some assistance with setting up a new CA policy for our users. Currently, we have a CA policy that enforces MFA for all users. There's a new requirement where we want to skip MFA for a group of employees when they're working on-site. I know I can create a location for our office IP and create a security group for these employees who need MFA disabled. If I exclude this group in the existing CA policy, it will disable MFA for these employees altogether no matter if they're working from home or on site. which is not the goal. We only want these users to skip MFA when they're working in the office. Does anybody have any suggestions how I can achieve this? Any advice is appreciated.SolvedLicensing for guest users in Entra ID
Hi, We have Active Directory Premium P1 licenses in our tenant and I'd like to know how does licensing work for guest users in Entra ID. We are pushing MFA through Conditional access and I'm trying to figure out if the guest users will need this license or not for MFA enforcement. I know that if there's a subscription attached to Entra ID, the licensing is based on MAU but there is no subscription in our Entra ID yet. I'm a GA in our tenant and I don't see any subscriptions here. Any advice would be appreciated.841Views0likes1Comment
Groups
Recent Blog Articles
No content to show