HOWTO: Disable Unnecessary Services and Scheduled Tasks on Windows Servers...
Most Microsoft-based Hybrid Identity implementations use Active Directory Federation Services (AD FS) Servers, Web Application Proxies and Azure AD Connect installations. In this series, labeled...
View ArticleManaging Active Directory Time Synchronization on VMware vSphere
One of the hardest things to get right with virtual Domain Controllers is the time hierarchy in Active Directory. Recommended practices from Microsoft have been all over the place, but seem to have...
View ArticleHOWTO Enforce Azure AD Connect to use TLS 1.2 only
Most Microsoft-based Hybrid Identity implementations use Active Directory Federation Services (AD FS) Servers, Web Application Proxies and Azure AD Connect installations. In this series, labeled...
View ArticleHOWTO: Disable weak protocols, cipher suites and hashing algorithms on Web...
Most Microsoft-based Hybrid Identity implementations use Active Directory Federation Services (AD FS) Servers, Web Application Proxies and Azure AD Connect installations. In this series, labeled...
View ArticleHOWTO: Disable unnecessary AD FS endpoints
Most Microsoft-based Hybrid Identity implementations use Active Directory Federation Services (AD FS) Servers, Web Application Proxies and Azure AD Connect installations. In this series, labeled...
View ArticleWhat’s New in Azure Active Directory for July 2019
Azure Active Directory is Microsoft’s Identity Management-as-a-Service solution, offering seamless access, easy collaboration, efficiency in IT processes and improved security and compliance. In its...
View ArticleReplication considerations for Domain Controllers running on VMware vSphere
Active Directory utilizes a multi-master replication model. It’s great that each Domain Controller provides read and write access to the Active Directory database, but it comes with a big drawback:...
View ArticleHOWTO: Enable Auditing and Logging for AD FS Servers and the AD FS Farm
Most Microsoft-based Hybrid Identity implementations use Active Directory Federation Services (AD FS) Servers, Web Application Proxies and Azure AD Connect installations. In this series, labeled...
View ArticleActive Directory Virtualization Safeguards with VM-GenerationID on VMware...
Arriving at the fifth part of this series on Virtualizing Domain Controllers on vSphere, I managed to gather some feedback on these blogposts. One question that emerged after writing the last blogpost...
View ArticleHOWTO: Install VASCO’s DIGIPASS Authentication for AD FS
Today, I had the pleasure of installing and configuring OneSpan’s (formerly Vasco’s) DIGIPASS Authentication for Microsoft Active Directory Federation Services (AD FS). Microsoft Docs offers links to...
View ArticleKnowledgeBase: Azure AD Connect version 1.3.20.0 and up enables Auto Upgrades...
Organizations, leveraging Azure AD Connect Staging Mode for release management, might find themselves with automatically upgrading Azure AD Connect installations after the initial upgrade to Azure AD...
View ArticleUsing Azure AD’s Dynamic Memberships for Groups to Assign Mutually Exclusive...
Azure AD’s Dynamic Memberships for Groups and Assigning Licenses to Groups features can be used to circumvent the overlap that might occur when user accounts are assigned both an Azure AD P1 and Azure...
View ArticleWhat’s New in Azure Active Directory for August 2019
Azure Active Directory is Microsoft’s Identity Management-as-a-Service solution, offering seamless access, easy collaboration, efficiency in IT processes and improved security and compliance. In its...
View ArticleHOWTO: Handle Time synchronization on non-domain-joined Web Application Proxies
Most Microsoft-based Hybrid Identity implementations use Active Directory Federation Services (AD FS) Servers, Web Application Proxies and Azure AD Connect installations. In this series, labeled...
View ArticleI’m presenting three Webinars with Netwrix focusing on the best recipes from...
On September 24th, 25th and 26th, I’ll present three 1-hour webinars with Netwrix. Tune in to get the best in Active Directory security, Hybrid Identity and Azure AD Hardening demo’ed! Tip! These...
View ArticleOn-premises Microsoft Identity-related updates and fixes for June 2019
Even though Microsoft’s Identity focus moves towards the cloud, they are not forgetting their on-premises roots. Windows Server 2016 and Windows Server 2019 still receive updates. These are the...
View ArticleOn-premises Microsoft Identity-related updates and fixes for July 2019
Even though Microsoft’s Identity focus moves towards the cloud, they are not forgetting their on-premises roots. Windows Server 2016 and Windows Server 2019 still receive updates. These are the...
View ArticleI’m co-presenting at WAZUG NL 60
On Thursday evening October 3rd, 2019, I’ll deliver a 55-minute presentation together with Raymond Comvalius for the Dutch Windows Azure User Group (WAZUG) on Password-less authentication....
View ArticleHOWTO: Handle Windows Activation on non-domain-joined Web Application Proxies
Most Microsoft-based Hybrid Identity implementations use Active Directory Federation Services (AD FS) Servers, Web Application Proxies and Azure AD Connect installations. In this series, labeled...
View ArticleOn-premises Microsoft Identity-related updates and fixes for August 2019
Even though Microsoft’s Identity focus moves towards the cloud, they are not forgetting their on-premises roots. Windows Server 2016 and Windows Server 2019 still receive updates. These are the...
View Article