- 81
- 765 963
Cloud Inspired
United Kingdom
เข้าร่วมเมื่อ 9 พ.ย. 2018
Hello and thank you for visiting the Cloud Inspired channel.
This channel focuses mainly on the Microsoft 365 and Azure Cloud platform and provides easy to follow step by step technical guides, diagrams, cloud certifications and tutorials. The aim is to deliver videos on Microsoft 365 and Azure Cloud from start to finish on many different Azure services and certifications, building and increasing the viewers knowledge in a short, logical, easy to understand format quickly getting to the point of the subject matter!
All content provided on this channel is for informational, testing and demo purposes only. The owner of this channel makes no representations as to the accuracy or completeness of any information on this site or found by following any link on this site.
The owner will not be liable for any losses, injuries, or damages from the display or use of this information.
Please visit www.cloudinspired.com
Thank you for watching and lets get inspired about cloud!
This channel focuses mainly on the Microsoft 365 and Azure Cloud platform and provides easy to follow step by step technical guides, diagrams, cloud certifications and tutorials. The aim is to deliver videos on Microsoft 365 and Azure Cloud from start to finish on many different Azure services and certifications, building and increasing the viewers knowledge in a short, logical, easy to understand format quickly getting to the point of the subject matter!
All content provided on this channel is for informational, testing and demo purposes only. The owner of this channel makes no representations as to the accuracy or completeness of any information on this site or found by following any link on this site.
The owner will not be liable for any losses, injuries, or damages from the display or use of this information.
Please visit www.cloudinspired.com
Thank you for watching and lets get inspired about cloud!
Microsoft Loop Project and Training Collaboration #microsoftloop
This is a step by step guide and demo on Microsoft Loop.
In this demo we are going to present a scenario where a trainer or teacher delivers a training education day to students on a introduction to programming.
We will use Microsoft Loop to create all the workspaces and components that we will use to deliver and setup the training. Then demo how to collaborate between teacher and students delivering training and collaborating bring all the content together.
Microsoft Loop really does have the potential to revolutionise how we work together and collaborate across email, meetings, teams and documents so that all your information and data continues to stay in one central place and every one is working from a central point.
We can increase productivity that brings teams, content, and tasks together across various tools and devices. It combines a powerful and flexible portal with portable components that move seamlessly and stay in sync across applications, allowing teams to collaborate, plan, and create together.
Contents of this video
00:08 Intro
02:04 Loop Portal
02:37 Creating a workspace
04:19 Creating Sub Pages
05:14 Creating tables
06:09 Creating Kanban board
07:30 Sync between pages
08:05 Adding Loop workspace to Teams
08:46 Create Loop component
09:16 Collaboration in teams between Students and Teachers
09:32 Sharing Kanban and loop component in Outlook
10:51 Creating teams meetings with agenda
12:37 Meeting notes adding to workspace
13:54 Version History and rolling back
14:27 Print and PDF export
14:46 Adding covers to pages
15:09 Templates
#loop
#microsoftloop
In this demo we are going to present a scenario where a trainer or teacher delivers a training education day to students on a introduction to programming.
We will use Microsoft Loop to create all the workspaces and components that we will use to deliver and setup the training. Then demo how to collaborate between teacher and students delivering training and collaborating bring all the content together.
Microsoft Loop really does have the potential to revolutionise how we work together and collaborate across email, meetings, teams and documents so that all your information and data continues to stay in one central place and every one is working from a central point.
We can increase productivity that brings teams, content, and tasks together across various tools and devices. It combines a powerful and flexible portal with portable components that move seamlessly and stay in sync across applications, allowing teams to collaborate, plan, and create together.
Contents of this video
00:08 Intro
02:04 Loop Portal
02:37 Creating a workspace
04:19 Creating Sub Pages
05:14 Creating tables
06:09 Creating Kanban board
07:30 Sync between pages
08:05 Adding Loop workspace to Teams
08:46 Create Loop component
09:16 Collaboration in teams between Students and Teachers
09:32 Sharing Kanban and loop component in Outlook
10:51 Creating teams meetings with agenda
12:37 Meeting notes adding to workspace
13:54 Version History and rolling back
14:27 Print and PDF export
14:46 Adding covers to pages
15:09 Templates
#loop
#microsoftloop
มุมมอง: 356
วีดีโอ
Windows 365 Cloud PC Explained with Demo | Business, Enterprise and Frontline
มุมมอง 3.7K5 หลายเดือนก่อน
We discuss different Windows 365 Cloud PC versions such as Business, Enterprise and Frontline in this video. What they are, why you would need them using the different versions available. We look into some comparisons with Azure Virtual Desktop and a short demo creating and accessing a Windows 11 enterprise cloud PC for Windows 365. Your Microsoft cloud PC lives on a remote server in a Azure da...
Setup Azure Virtual Desktop "AVD" and FSLogix Complete Step by Step Guide and Demo
มุมมอง 9K6 หลายเดือนก่อน
Complete step by step guide and demo showing Azure Virtual Desktop (AVD) how to setup, configure and implement from the start a fully working AVD solution using FSLogix profiles with Azure premium storage private endpoint with Active Directory integration. This will help you build a virtualized desktop infrastructure VDI solution at enterprise scale from start to finish. 👌 Contents of this vide...
SharePoint Security Best Practices using Conditional Access, Cloud Apps, Authentication Context
มุมมอง 1.4K7 หลายเดือนก่อน
I`m always getting asked what are the most popular SharePoint Security Best Practices that you can consider that we can apply to our SharePoint sites for increased security controls and compliance once we have created our sites. This video covers some best practices ranging from controlling user access, defining sensitivity labels, conditional access policies to apply to individual SharePoint s...
Azure Certification Path 2024 | Guide to Jobs, Training, Learning and Passing Exams
มุมมอง 9569 หลายเดือนก่อน
Today we are going to talk about the importance of the Azure certification path in 2024 and how we should pass exams for that next Cloud job. Azure Certifications are a way to demonstrate and validate your Microsoft skills and knowledge for your own personal journey of learning and gaining a industry recognised certification and also for your employers to have confidence that you can match up y...
Entra ID Security Defaults That You Must Review!
มุมมอง 8109 หลายเดือนก่อน
This video shows the Entra ID security default settings in the portal that are important for you to review. We show various Entra ID security default settings. Many are set by default which may leave your open to access and breach your company security policy. The aim of this video is to review these settings against your own Entra ID security environments security policy and show the options a...
Azure SFTP Blob Storage Creating EndPoint and Connect using WinSCP in Under 10 Minutes
มุมมอง 1.7K10 หลายเดือนก่อน
This video will show a step by step guide on enabling a Azure SFTP server from Azure Blob storage endpoint then connecting to that SFTP endpoint via a namespace with WinSCP. 👌 Contents of this video 👌 0:08 Intro to Azure SFTP and Pricing 2:50 Create SFTP enabled Azure Blob Storage 5:17 Add local SFTP user 6:37 Create container and set user permissions 7:20 Network Settings 7:53 Data Encryption ...
Microsoft Defender for Cloud Apps DLP | App Control | Block Cut or Copy
มุมมอง 1.6K10 หลายเดือนก่อน
This video will show a step by step config and demo on how to configure Microsoft Defender for Cloud Apps Data Loss Prevention or DLP. Microsoft Defender for Cloud Apps provides you with DLP capabilities that provide application control and cover the various data leak points that exist in organizations. We will configure blocking cut or copy actions on web apps like Exchange and Microsoft 365 A...
Exchange DLP with Microsoft Purview | Block Email Words | Block External Domains | Encrypt Message
มุมมอง 3.6Kปีที่แล้ว
This video will show a step by step guide and demo covering Exchange email Data Loss Prevention (DLP) using Microsoft Purview. Creating and configuring DLP policy and rules to block sending emails to external domains like gmail.com, outlook.com, block sending emails and files containing sensitive words or phrases and encrypting outgoing messages. 👌 Contents of this video 👌 0:00 - Intro on Excha...
Data Loss Prevention Microsoft Purview (DLP) for Endpoint Step By Step Guide and Demo
มุมมอง 13Kปีที่แล้ว
This video will cover a step by step guide and demo showing how to configure Data Loss Prevention (DLP) in Microsoft Purview for Windows endpoint devices to block, block with override and audit. We will create a DLP policy for sensitive information such as drivers license numbers, IP addresses being copied to the clipboard from a document and pasted elsewhere into notepad for example. We will a...
Block Personal BYOD Bring Your Own Device NonCompliant Devices Conditional Access Intune Autopilot
มุมมอง 2Kปีที่แล้ว
How do we stop and block BYOD non-compliant personal devices from accessing our company applications and data which are not secure. We don`t want employees bringing their own devices and using their personally owned devices for work purposes. It is critical to have a well defined BYOD policy and understand the risks to protect the company from cyber threats such as ransomware, hacking and data ...
Microsoft Entra Internet Access and Conditional Access Step by Step Tutorial and Demo
มุมมอง 2.9Kปีที่แล้ว
This Cloud Inspired video will cover a step by step tutorial guide and demo on Microsoft Entra Internet Access in the Azure Cloud. 🌝 Entra Internet Access is part of the Security Service Edge and provides dedicated secure tunnels for traffic directly via Microsoft's backbone network. This demo shows current supported Microsoft 365 traffic and conditional access policys allowing and blocking Off...
Microsoft Entra Private Access Step by Step Tutorial and Demo using Zero Trust
มุมมอง 17Kปีที่แล้ว
In this video we are going to give a step by step guide, deep dive and demo on Microsoft Entra Private Access and how to configure implement this solution. Entra Private Access is currently in public preview we can secure access to all private apps, resources and protocols from endpoints to secure all access using a zero trust model. This video will cover a step by step by first setting up Entr...
Microsoft Entra Security Service Edge (SSE) Internet Access & Private Access Overview #zerotrust
มุมมอง 1.7Kปีที่แล้ว
Microsoft Entra Security Service Edge (SSE) Internet Access & Private Access Overview #zerotrust
Microsoft Defender for Endpoint with Intune & OnBoard to Windows Device
มุมมอง 2.7Kปีที่แล้ว
Microsoft Defender for Endpoint with Intune & OnBoard to Windows Device
Cyber Security using Microsoft Defender for Identity | Protect from Cyber Attacks | Insider Threats
มุมมอง 919ปีที่แล้ว
Cyber Security using Microsoft Defender for Identity | Protect from Cyber Attacks | Insider Threats
Azure Automation | Automatically Install Software to Windows Servers for Desired State Configuration
มุมมอง 2.3Kปีที่แล้ว
Azure Automation | Automatically Install Software to Windows Servers for Desired State Configuration
Azure Design Review | Best Practice Checklist for Cloud Migration and Current Environments
มุมมอง 758ปีที่แล้ว
Azure Design Review | Best Practice Checklist for Cloud Migration and Current Environments
Migrate Virtual Machines On-Premise to Azure Cloud | VMware Cloud Migration Azure | Step by Step
มุมมอง 20Kปีที่แล้ว
Migrate Virtual Machines On-Premise to Azure Cloud | VMware Cloud Migration Azure | Step by Step
Azure Disaster Recovery | Azure Site Recovery (ASR) Step by Step Demo (Hub Spoke Architecture)
มุมมอง 1.4K2 ปีที่แล้ว
Azure Disaster Recovery | Azure Site Recovery (ASR) Step by Step Demo (Hub Spoke Architecture)
Unlock Teams Public Preview New Features 2022 in 2 Mins #office365
มุมมอง 5962 ปีที่แล้ว
Unlock Teams Public Preview New Features 2022 in 2 Mins #office365
Microsoft Teams Top 10 Secret Features and Setup you must know!
มุมมอง 1.4K2 ปีที่แล้ว
Microsoft Teams Top 10 Secret Features and Setup you must know!
SharePoint Website in 20 Minutes #sharepoint
มุมมอง 8222 ปีที่แล้ว
SharePoint Website in 20 Minutes #sharepoint
Azure AD DS Management Tools Install on Windows Server 2022
มุมมอง 9682 ปีที่แล้ว
Azure AD DS Management Tools Install on Windows Server 2022
Create Windows Server 2022 VM and Domain Join to AADDS
มุมมอง 6K2 ปีที่แล้ว
Create Windows Server 2022 VM and Domain Join to AADDS
Azure Active Directory Domain Services (AADDS)
มุมมอง 9K2 ปีที่แล้ว
Azure Active Directory Domain Services (AADDS)
Learn Azure AD and Active Directory Working Together for Cloud Identity #azure #azuread
มุมมอง 1.4K2 ปีที่แล้ว
Learn Azure AD and Active Directory Working Together for Cloud Identity #azure #azuread
Creating a Microsoft Power Pages Web Site Tutorial
มุมมอง 4.5K2 ปีที่แล้ว
Creating a Microsoft Power Pages Web Site Tutorial
Great demo. Do you have another video, or steps to block the uploading of files to unsanctioned web apps like 3rd party cloud storage? We can do this with Endpoint DLP in Purview but wondering how we can achieve it with Defender for Cloud Apps.
Great Video..!!
Thanks Aprajita!
This video moves fast so if this is your first time configuring FSLogix get ready to pause a lot. However, its perfect. Helped me resolve the issue that other videos couldn't.
Glad it helped you Sergio!
I’ve got a question about setting up FSLogix with my AVD environment. I currently have 6 resource groups, and each one will contain multiple AVD host pools. I’m trying to figure out the best approach for configuring FSLogix in this setup. Storage Account Setup: Should I create one large storage account and then assign a file share to each resource group with AVD host pools? Or is there a better way to structure the storage accounts for performance and manageability across multiple resource groups? User Access to File Shares: What’s the recommended way to assign users to each file share? Are there any best practices on permissions or group assignments for FSLogix profiles, especially with multiple resource groups? Users Accessing Multiple Host Pools Across Resource Groups: What would happen if a user has access to multiple host pools located in different resource groups? How should I set up FSLogix in that case to ensure smooth profile management?
Hi Rafał, The ug-uks-wvd group in this demo contains the AVD users and has the Storage File Data SMB Share Contributor role to access the storage resource in Azure. Permissions are also granted and set at the Windows security level for access. The FSLogix VHD location is specified for the Azure storage path that was created and accessed as specified in the GPO. You could create different groups to divide your storage and apply permissions accordingly to the Azure storage as above. There is a Microsoft doc for User profile management for AVD with FSLogix profile containers which outlines best practices and permissions learn.microsoft.com/en-us/azure/virtual-desktop/fslogix-profile-containers
Cant find the complete vid
Hello, Full AVD video is located here th-cam.com/video/rKjdAOl0THo/w-d-xo.html Thanks
Merci 🙏
Merci Salah!
Can you set a Loop to read only for certain users? And does it save changes in case someone deletes or changes something in error?
14:00 nevermind
Yes this is all possible, glad you found in the video ok!
@@CloudInspired I find it hard to find a use for loop. Or how to use it in a team or project.
is it possible in 2024-OCT to have a 100% cloud only AVD with FSLogix ???
Check out the prerequisites for Azure Virtual Desktop learn.microsoft.com/en-us/azure/virtual-desktop/prerequisites To use FSLogix profile containers with AVD you will require a AD DS domain or Microsoft Entra Domain Services where a AVD host pool with session hosts are joined. Security groups will also be needed, if you're using AD DS, this must be synchronized to Microsoft Entra ID.
Excellent , AVD detail in half an hour :)👍
Thank you! 👍
Great Content. But the Michael Myers Murdering Sound is weird.
Hi, I have a question; how does this work for those of us testing this at home and with trial accounts and a trial server. In other words, it a .local and behind a router. E.g 10.0.1.2 is server and there's a public ip of 173.x.x.x. Should there be any routing done or extra configurations? All videos I've seen does not account for this, or am i missing something Thank you for your time and response in advance
Straight forward to addressing the issue
Thanks Adewale
which brand and model phone you are using ??? we use Samsung is fucked up here !
Great overview of the capabilities. I’m particularly interested in the RDP copy options. Is it possible to prevent copy out of rdp but not into rdp?
I don't think it is possible because it doesn't care about receiving the sensitive information from any channels.
Hi Can you share some content on team channel To block domain and whitelist user the condition
subscribed! great content, will appreciate a lot if you can make chapters on your videos, thank you
Welcome aboard!
Might have missed it in the video, but you didn't talk about enabling share-level permissions on the fileshare once the storage account is AD joined and before you start setting the ACL's in windows.
Hi Wesley, the Azure portal was used and shown in the video to assign the built-in roles to the Entra identity of a user for granting share-level permissions.
Hi, thanks for the video. I'm having some trouble understanding DLP in general. What exactly is the role of Microsoft Purview in DLP? From what I understand, the features and capabilities are largely determined by the types of licenses a client has, correct? For example, let's say a client wants to implement DLP in Outlook and SharePoint across their organization. In this case, we need to know which tier they have on Exchange Online and Microsoft 365 licenses. So, where does Purview fit into all of this? I know Microsoft Purview is a governance solution and doesn't have any compute power (I think). Is it simply the platform where these features can be enabled? Do I need an Azure Purview solution to utilize the features available through the licenses?
Hi Perez, Microsoft purview is a service which provides a set of solutions govern, protect, and manage data. Check out the licensing to enable Microsoft DLP here for more info. learn.microsoft.com/en-us/office365/servicedescriptions/microsoft-365-service-descriptions/microsoft-365-tenantlevel-services-licensing-guidance/microsoft-365-security-compliance-licensing-guidance#microsoft-purview-data-loss-prevention-data-loss-prevention-dlp-for-exchange-online-sharepoint-online-and-onedrive-for-business
Thanks for the video - Very concise and clear. However, when trying to mount the drive, I'm met with authentication failure - permission denied. Did anyone else have this and know a way around it?
Hello, have you double checked the SMB permissions on azure file share that hosts user profiles for users those will be signing in learn.microsoft.com/en-us/fslogix/how-to-configure-storage-permissions
I have created the DLP policy for particular file typelike. .exe,.msi when copy the file to usb device i am unable genarate the alrets for .exe file ,can you olease suggest
Will fslogix profiles only apply to users in the ug-uks-wvd group, since it is tied to the Storage File Data SMB Share Contributor Role? Asking because I'd like to have fslogix only apply to only a subset of users first for testing purposes. Thanks for the video!
Hello, yes the ug-uks-wvd group in this demo contains the AVD users and has the Storage File Data SMB Share Contributor role to access the storage resource in Azure. Permissions are also granted and set at the Windows security level for access. The FSLogix VHD location is specified for the Azure storage path that was created and accessed as specified in the GPO. If you require selected users for FSlogix testing, you could create a test group and apply permissions accordingly to the Azure storage as above.
Im so thankful for your video since it answered almost all my questions! The only part im having problems with is the dns config of my private endpoint. Since im not aware of a seperate dns server in my company my endpoint is registered with a ".windows" fqdn. Is it neccessary to create a seperate dns server or is there a workaround? kind regards
Hi Paul, Glad it answered all your questions and thanks for your comment. There are options to configure your DNS settings for private endpoints listed in this Microsoft article which should help. learn.microsoft.com/en-us/azure/private-link/private-endpoint-dns#azure-services-dns-zone-configuration
This is precisely what I've been searching for.
Thanks Tenzin, glad it helped you!
i have a test environment using business premium license, and when i access security portal - settings i can't see endpoint there! is it because lacking license? can i check the settings from other portals as i have access like to purview portal (compliance) and created a policy for test to scan exchange for credit card but it didn't captured my email including credit card word! any help and tips please
Hi Ehab, there could be multiple reasons for the policy not working. I would confirm that the DLP policies are configured correctly and enabled from compliance portal. In addition, confirm that the correct content sources are selected. This article also explains how the DLP compliance portal works with DLP and mail flow rules in the Exchange admin center learn.microsoft.com/en-us/purview/dlp-how-dlp-works-between-admin-centers?view=o365-worldwide For licensing requirements this should help. learn.microsoft.com/en-us/purview/endpoint-dlp-getting-started#skusubscriptions-licensing
Sorry to say this. Honestly, you are going way too fast, and for beginners like me who want to understand this migration is quite difficult.
Hello, I'm sorry you felt this way. However the video is at an advanced level. Prerequisites and a good understanding of VMware and Azure environments would be required to understand the content being discussed in this video. I would recommend you study some basics around VMware and Azure and the tooling used (i.e networking, virtual machines, azure migrate, DR/Migration concepts) before watching this video. Thanks and good luck!
hi thanks for your video could you post corporate users VPN connection though ms entra
Hi Ajith, do you mean use an existing VPN connection? I dont think that is possible at this time.
Hello, the first part about blocking Sharepoint download doesn't work unfortunately
Hello, thanks for your comment. If you follow the video exactly it should work as shown. At what point is this not working and what are you exepriencing?
Best content ever
Thanks Sunny
Thank you for this great video! May I ask is this tutorial for pure cloud environment?
Hi Haonan thanks for your comment. Domain Controllers in this AVD demo are in the Azure cloud and Microsoft Entra ID and AD DS synchronized. However check out supported identity scenarios below. There are also several network requirements you need to meet to successfully deploy Azure Virtual Desktop. One of which is join session hosts to the domain, therefore if your Domain Controllers are not in Azure you need connectivity to them. Best to check out all the prerequisites for Azure Virtual Desktop below that covers different scenarios learn.microsoft.com/en-us/azure/virtual-desktop/prerequisites?tabs=portal
@@CloudInspired Hey there, thank you so much for your detailed response! I will check the settings as you suggested, however, if it is possible to configure FSLogix on AVD totally on native cloud (e.g., no domain controller, no AADS, no Entra Domain Service, etc.)? Thank you!
No problem Haonan, glad to help you! To use FSLogix profile containers with AVD you will require a AD DS domain or Microsoft Entra Domain Services where a AVD host pool with session hosts are joined. Security groups will also be needed, if you're using AD DS, this must be synchronized to Microsoft Entra ID. PowerShell scripts will also need to be run to join the storage account to your domain.
@@CloudInspired Thank you so much, that's very clear answer! Now we are trying to implement FSLogix on pure cloud AVD so need to avoid on-prem things haha
OK best of luck hope it all goes well
This is the most complete AVD's production environment tutorial I have ever seen. Thank you very much...truly appreciate your share
Thanks glad you like it. Spread the word!..
Great video, thanks for sharing
Your welcome!
Lovely
Thanks Chris
No longer works😢
Hi, thanks for the tutorial 👌 Everything ok except the global access clients, i have several warning such as disabled by your organization and breakglass mode disabled. Could you help me ?thanks !
Hi Alexis, thanks for your comment. The preview requires a Microsoft Entra ID P1 license and Administrators who interact with Global Secure Access preview features must have the Global Secure Access Administrator role. Check out the Prerequisites here learn.microsoft.com/en-us/entra/global-secure-access/how-to-get-started-with-global-secure-access .Also how to Set up connector server learn.microsoft.com/en-us/entra/architecture/sse-deployment-guide-private-access#deploy-and-test-microsoft-entra-private-access Anything in the Global Secure Access client logs? Troubleshoot issues in the Global Secure Access client for Windows learn.microsoft.com/en-us/troubleshoot/azure/entra/global-secure-access/troubleshoot-global-secure-access-client-windows-issues
This configuration requires hardware with robust resources and a high-speed internet connection. My tests show that the more applications you have open, the greater the processor and RAM usage.
Hi Leonardo, thanks for your comment. Its interesting you have found those results from your testing. Windows 365 uses the RDP protocol which dynamically adjusts various parameters to deliver the best user experience. The Microsoft articles below give different scenario examples on bandwidth required for running popular applications for Windows 365 cloud pc, i.e. Microsoft apps, word, excel and web browsing including video playback. Network requirements for Windows 365 cloud pc learn.microsoft.com/en-us/windows-365/enterprise/requirements-network Remote Desktop Protocol (RDP) bandwidth requirements and use cases learn.microsoft.com/en-us/azure/virtual-desktop/rdp-bandwidth
How does the recipient open the encrypted email provided that OWA is disable?
Hi Daniel, DLP policy will encrypt outgoing messages as shown and the recipient will receive an link for encrypted messages.
fantastic explanation. I would just like to ask if for Microsoft Enter Private Access I need some particular license. I have the Microsoft 365 E5, thanks in advance
Hi Giorgio, thanks! The preview requires a Microsoft Entra ID P1 license. To use the Microsoft 365 traffic forwarding profile, a Microsoft 365 E3 license is recommended. A E5 license will cover all the above. Microsoft Licensing requirements might change after general availability.
@@CloudInspired hi! Thanks for the answer! I have unlocked the microsoft entra Suite trial to test it. Now I have a problem the "Global Secure Access Client - disabled by your organization", I don't understand why the client don't function
@@CloudInspired I have configured the agent in 2 server for ridondancy, and after I have configured the "same" configuration like your demo. I have installed the client in my device AzureADJoined but I have the alert "Global Secure Access Client - disabled by your organization" and I can't nothing, can you help me? :/
Great video!
Glad you enjoyed it
Is there any way to avoid the second login when connecting to the AVD windows 10 desktop ? I have a project where we have a local AD and various servers that can’t go away. Those are being moved as is to azure virtual servers using the replication appliance. Users are all synced to Entra and what not. They want the Azure windows 11 multisession virtual desktops to be domain joined to the “local” AD. And of course if I show them they have to login twice to get into a desktop session, they will get all salty on me.
Hello, you would need to Configure single sign-on for Azure Virtual Desktop using Microsoft Entra ID authentication. Details are here learn.microsoft.com/en-us/azure/virtual-desktop/configure-single-sign-on
Perfect solution, I don't know nor understant the pricing of this tools, but it works. I suggest something to prevent mistakes : when creating an other user sometimes the connection string of that user is incomplete and the container name is missing. Azure seems to forget to precise this miss, that's why I'm stucked for a long time because of that missing container in the connection string.
Thanks Fabien for your comment and advice.
can you help me? when i installed the HCW, it has some error regarding the migration endpoint couldn’t be created and no EWS service was listening on the specified endpoint. couldn’t detect the MRS proxy server automatically
Hello, there is a article here to troubleshooting issues where the hybrid migration endpoint cannot be created learn.microsoft.com/en-gb/archive/blogs/exovoice/troubleshooting-issues-where-the-migration-endpoint-cannot-be-created-in-hybrid-scenarios .Please also check your firewall it must allow the incoming connections on URL containing /ews/mrsproxy.svc, in case it is using URL filtering, or if possible, you can allow all the incoming traffic on port 443. If you are using an IP filtering configuration in the firewall, you should make sure that you have the updated Exhange Online IP list in the firewall configuration, you can find IP ranges list for Exchange Online in that article. Also using the Test-MigrationServerAvailability command you can test access to the MRSProxy. Hope that helps.
Thank you. I have tried internet access and am having problems reaching my internal servers. Is it possible to set exceptions for the internal servers as before in Proxy.Pac
Thank you this was a very good Video.
You are very welcome Morne!
super useful, keep going... thank you!
Thanks Yu, Glad it was helpful!
Excellent video. Thanks a lot for sharing! 👍
Thanks John! Glad you enjoyed.
This was really helpful even after 4 years, Thanks I do have one question in detection mode I get "Matched" and "Detected" in action_s. I created custom rules that should allow (Pass) the traffic. it is just nebulous to me what will happen in prevention mode. Can you tell me?
Would this be the optimal method for exempting one specific SharePoint site from all other CA policies? We limit access to our SPO environment via web browser to compliant systems only, but we have a site that we need exempted from those policies. If so, can that be accomplished without sensitivity labels?
Authentication Context is basically a tag that you can apply to SharePoint Online sites. You can then create a conditional access policies to use the context to control access to the SharePoint site. The sensitivity label method would be recommened to allow multiple settings to be applied as shown in the video.
very usefull thanks alot.
You are welcome
When I create the policy, I don't have the option to upload the configuration file?
Wonderful demonstration
Thanks and your welcome