User Profile
HidMov
Steel Contributor
Joined 6 years ago
User Widgets
Recent Discussions
Re: Conditional access policy not recognised
Hi davide984 Still with MS support, I'm afraid. They've informed me that our EntraID tenant and Exchange Tenant do not match and asked us why. I've informed them that we've done nothing knowningly to make them different, if it were even possible for us to do so. They've gone back to the back end team for further investigation. We've extended our trial, but it's frustrating that this showstopper doesn't seem to have an easy fix.131Views0likes0CommentsRe: Difference between 'planned' and 'tasks'
keensg My understanding is that the Tasks list is there to catch any tasks that are not assigned to a custom list you have created. A task has to live somewhere, and if it's not in a list then it gets put in the Tasks list so it can be found. Planned and Assigned aren't really subsets of the Tasks list. Think of those lists not really as lists, but more along the lines of filtered views that look for assigned tasks/planned tasks regardless where the task actually lives. When you are adding the tasks via loop, is the task being put into a list you have created?480Views1like1CommentRe: Conditional access policy not recognised
Thanks josequintino - I've run through everything and it still looks like it should be set up correctly, but still not seeing that a CA is configured. I've raised a ticket with MS who can hopefully give something a kick in the backend.560Views0likes2CommentsConditional access policy not recognised
Hello everyone, We're evaulating Cloud Apps session/conditional access/session policies but have hit a weird snag. We have created a conditional access policy in EntraID with session control of Use Conditional Access App Control. This was initially set to Monitor Only (Preview) I then signed in with the test user and logged into the various 365 services, and confirmed these apps were onboarded into the Conditional Access App Control apps page. So far so good. However when I've attempted to create either a Access or Session Policy in the Cloud Apps Policy Management section, there is an error saying that there are no conditional access policies set up. I changed the conditional access policies in Entra ID to "Custom Policy" and waited a few hours, but still getting the error. I have created additional conditional access policies in EntraID from scratch and waited over night, but it still seems that EntraID and the Cloud Apps parts aren't talking with each other. When I create a policy, I get a warning that there isn't a corresponding CA policy. The Access/Session policy is reated, but has [Entra ID Policy Missing] in the title. I'm not sure where I'm going wrong with this. I've followed various guides and checked various forums but aside from the obvious I'm at a loss. Has anyone else come up against this before, or should I raise a ticket with MS to look at the back end? Thanks in advance, Mark787Views0likes4CommentsRe: Synchronize Azure AD users to local AD
Hi PhillipRGarcia In the portal: Download a list of users in the Azure portal - Microsoft Entra | Microsoft Learn I think I used AzureAD Powershell back in the day (been a while since I've done this) Get-AzureADUser might be a good starting point. Get-AzureADUser (AzureAD) | Microsoft Learn Hope this helps,19KViews0likes0CommentsRe: Block Url Link in Message Body Before Message Delivery
Agree with Dan_Snape - Safe Links is probably the best option although I'm not sure it's going to fit your particular use case; if MS deems the link safe (as in it has good reputation, doesn't have Malware or actually appear dodgy) but you don't want users to go to the URL for other business reasons, then it won't actually block the link. Other solutions approach that if an email contains the specific url the email is either sent to quarantine or otherwise held for review. Unless I've completely misunderstood your requirements my recommendation is that if you don't want your users to go to a specific URL is to use a web filtering solution to stop users from being able to go to the link that way rather than try to change the email itself. It's also possible that a 3rd party mail filter solution might be able to do this, but off the top of my head I'm not sure if any of them do.6.2KViews1like3CommentsRe: Migrating from AD hybrid to new AD because of company adquisition.
Ok, cool. Unless I've misunderstood, I would recommend trying to go down the route of adding partent.com as an additional suffix to the existing AD, and then adding parent.com to your AzureAD Connect/AzureAD. While the AD domain internally would still be company.local or company.com, adding parent.com as an additional suffix means that you can change users UPN from email address removed for privacy reasons to email address removed for privacy reasons. so for sign into the domain and Azure they would use the new suffix (as well as for email etc). While there would be some reconiguration, it would certainly be less disription than ripping out AD/Azure and starting over again. If there is a real need to rename the On Prem AD domain, there is a process to do this, although I've done done this myself and is quite involved. https://www.rebeladmin.com/2015/05/step-by-step-guide-to-rename-active-directory-domain-name/2.5KViews0likes0CommentsRe: EXO, Connector, Bypass SPAM filtering.
Hi Robert, This should be achievable without Transport Rules. You'll need to lock down your connector from the third party service in Exchange Online, and also set up IP allow list for your in your secureity.microsoft.com portal Connection Filter Policy for provider (off the top of my head this is in the Email and Colloboration section, under anti spam polices). This will always accept messages from the IP range of your 3rd party partner bypassing spam filtering. https://docs.microsoft.com/en-us/microsoft-365/security/office-365-security/configure-the-connection-filter-policy?view=o365-worldwide Hope this helps, Mark2.4KViews0likes1CommentRe: Adding a workstation to a domain
Bit of a vague error, but normally means that the workstation cannot reach the domain controller. Make sure that the workstation can ping both the IP of the domain controller as well as the DNS name of a domain controller. If you click on the details, does it show any further information?1.6KViews0likes0CommentsRe: How to show CPU History For Last 7 Days
You would need to set this up and run it for the period you want to keep the data for - by default, performance data is lost unless you explicitly set this up. If you are troubleshooting a computer crashing or shutting down, you might be better off looking at the event viewer for event ID's 41,1074,1076,6005,6006,6008,6009,6013 or for performance issues event ID 2004 These event ID's should give you an idea on what happens. https://www.shellhacks.com/windows-shutdown-reboot-event-ids-get-logs/ https://morgantechspace.com/2013/12/Event-ID-2004-Resource-Exhaustion-Diagnosis-Events.html34KViews0likes1CommentRe: How to show CPU History For Last 7 Days
Performance Monitor and specifically Data Sets Collection may get what you want. https://docs.microsoft.com/en-us/learn/modules/monitor-windows-server-performance/6-use-data-collector-sets-to-analyze-server-performance The Task Manager only shows 60 seconds at a time. You can set up a data collection to poll the CPU every second and have that run for however long you need. You can then open the saved performance monitor file and review. Be aware that this may use up quite a bit of hard disk space the longer it runs,34KViews0likes3CommentsRe: How to delete a cancelled meeting message within a team chat?
Came across this a while back - someone created a Teams meeting with a sensitive subject, but when they cancelled the meeting the message remained and could not be deleted. If I recall correctly, my research at the time indicated that when a Teams meeting is created in Teams, it's the system that creates it rather than a user which was stopping the full deletion from happening. Not sure if this applies in your case, but that is what we found. In our case, this was in the all company general channel, but before Teams was widely rolled out. We sorted it in our case by applying a retention policy to the channel which deleted the message once it kicked in. As the channel wasn't in use, there wasn't anything the client wanted to save - I appreciate this won't help in the majority of situations for people.5.1KViews0likes1CommentRe: Idle session timeout policy for Microsoft 365
mxtx23 Not tested yet myself, but this blog post ties in with the MS Docs - not sure if you've seen it. Remains unclear to me though https://techcommunity.microsoft.com/t5/microsoft-365-blog/announcing-the-general-availability-of-idle-session-timeout-for/ba-p/3539943 Perhaps Namit Gupta could kindly clarify?2.8KViews0likes1CommentRe: Rolling back from Exchange 2019
HiSam_T You are correct, we migrated directly from 2013 to 2019. We did not introduce a 2016 server. We were considering it due to the problems we were having with the 2019 server, but it wasn't clear to us if it would add even more problems to the enviroment so we did not - if I recall, at the time we had conflicting information on if this scenario was supported and what impact it might have.2.1KViews0likes0CommentsRe: Rolling back from Exchange 2019
Hi Carlos_2023, I'm afraid we didn't. We did have a ticket with MS that went back and forth trying various things, but nothing seemed to improve the situation, and no one was really able to put their finger on the root of the problem. In the end, we migrated everyone to Exchange Online which has shown to be an improvement. After the fun and games with Exchange 2019, we've not touched it since - we've only used 2016 for on-prem, or in most cases migrate to Exchange Online as that seems to be the way things are heading at the moment anyway. We didn't try introducing a 2016 server in the end as we didn't want to complicate things even further. Sorry I'm not much help with this - although it seems most people seem to run Exchange 2019 without these issues, I can sympathize with you - it is incredibly frustrating. Have you raised a ticket with MS support?2.2KViews0likes2CommentsRe: OneNote Drag and Drop
Hi NicktheVic I see the same on my set up too. I don't have a workaround, but the desktop app of OneNote had it's mainstream support extended into 2023 with extended support until 2025 (Your OneNote - Microsoft Tech Community) . I've added feedback on the OneNote regarding this problem; the more people who raise it the better chance that it is addressed sooner rather than later.3.9KViews0likes0CommentsRe: Withdrawal / deletion of sent e-mails
Hi pawfest83 In Office 365, you can only recall sent emails if the following is true: Both the mailboxes are in the same Office 365 Organisation The recipient has not opened the email. You also cannot recall a message that is protected by Azure Information Protection, and also cannot do so through OWA. More information here: Recall or replace an email message that you sent - Office Support (microsoft.com) If I'm understanding your request correctly, then no, I do not believe there is a tool to do what you want.1.2KViews1like0Comments