Category Archives: Best Practices

I’m presenting three Webinars with Netwrix focusing on the best recipes from the AD Administration Cookbook

On September 24th, 25th and 26th, I’ll present three 1-hour webinars with Netwrix. Tune in to get the best in Active Directory security, Hybrid Identity and Azure AD Hardening demo’ed! Tip! These courses may be of specific interest to CISSPs, as these courses allow you to earn Continuing Professional Education (CPE) credits.   About the […]


I’m presenting my Active Directory 101 course with Netwrix again

Whether you are an Active Directory novice or an experienced IT professional, enroll in my upcoming free online course for step-by-step instructions and industry best practices for Active Directory management. These sessions are also a great way to get ready for Exam 70-742. Note:These webinars cover only 3 out of 5 topics for Microsoft exam […]


Veeam Backup for Office 365 now offers support for the Baseline Policy ‘Require MFA for Admins’

Today’s release of version of Veeam Backup for Office 365 (VBO) offers many new features and benefits, but none as significant as the ability to use multi-factor authentication for the admin account when configuring and reconfiguring VBO. Let me explain why.   Azure AD Privileged access, today Microsoft is working hard to further harden […]


Ten things you need to know about Pass-through Authentication

For Azure AD, Microsoft offers and recommends to use Pass-through Authentication (PTA) as the authentication method. This method is then used to authenticate to applications, services and systems connected to Azure AD, like Office 365, Intune and Power BI. However, there are a couple of things you should know:   Only outbound connections When using […]


Passing Microsoft Exam 70-742: Identity with Windows Server 2016

There is a good and free way to prepare for Microsoft exam 70-742: Identity with Windows Server 2016. In the past years, I conducted webinars that can serve as a primer on Active Directory in terms of forests, domains, trusts, security and on Group Policy. They are not and were never intended as the sole […]


Assessing the impact that the new Baseline Policy for Admins in Azure AD might have

Microsoft is working hard to further harden Azure Active Directory tenants, so the roughly 13 million organization depending on it, don’t get disappointed by Azure AD-based security breaches and don’t have to worry about attacks on their infrastructure. One of the newest technologies Microsoft is developing is Baseline Policies. Using baseline policies, fields of attention […]


Pictures of our Security session at Graafschap College

As I mentioned a couple of weeks ago, Raymond Comvalius and I were scheduled for an ‘Inspire Me’ session at Graafschap College last week. Our challenge was to inspire their High School students in their 3rd year for their future as systems administrators with information security. For me, this presentation followed on a flight from […]


Do you know all the objects, attributes and configured settings in your Azure Active Directory Tenant?

The role of Azure Active Directory in an Hybrid Identity environment seems hard to understand. Azure AD is not a 100% slave to Active Directory. There are objects and attributes in Azure AD that have no relationship with on-premises objects or attributes in Active Directory Domain Services. We’ve come across many admins in organizations, who […]


I’m presenting an Active Directory 101 course with Netwrix

I know from my own experience – the importance of Active Directory and its security can never be overestimated. So, I’ve teamed up with Netwrix to bring you an easy yet extensive update for your knowledge of Active Directory management and security principles. Therefore, this September, I’m hosting three consecutive webinars on Active Directory Domain […]


Azure’s Access Control Service is retiring in three months time

  One of Azure’s oldest Identity-related services, Azure’s Access Control Service (ACS) will cease to exist soon. There are replacements. If your organization is still using ACS, you will need to migrate this functionality to Azure AD,  Azure AD B2C, AD FS and/or 3rd party solutions.   About the Access Control Service The Microsoft Azure […]