MSIdentityTools PowerShell Module v2.0.33 released

Hi All,

Microsoft has released another Version of theyr MSIdentityTools PowerShell Module to the Powershell Gallery.

Check what Version of the Module is installed and what’s available in the PowerShell Gallery

Get-InstalledModule MSIdentityTools
Find-Module MSIdentityTools

Uninstall the old version of the PowerShell Module and install the newest one

Uninstall-Module MSIdentityTools
Install-Module MSIdentityTools
Get-InstalledModule MSIdentityTools

To see what commands are available use the following command

Get-Command -Module MSIdentityTools

Exchange Online legacy TLS Endpoints for POP3 IMAP and SMTP

Hi All,

New opt-in endpoint for POP3/IMAP4 clients that need legacy TLS

  • Exchange Online ended support for TLS1.0 and TLS1.1 in October 2020.
  • This year, we plan to disable these older TLS versions for POP3/IMAP4 clients to secure our customers and meet compliance requirements.
  • However, we know that there is still significant usage of POP3/IMAP4 clients that don�t support TLS 1.2, so we�ve created an opt-in endpoint for these clients so they can use TLS1.0 and TLS1.1.
  • This way, an organization is secured with TLS1.2 unless they specifically decide to opt for a less secure posture.

The Setting for legacy TLS Protocols (TLS1.0 and TLS 1.1) for POP3 / IMAP and SMTP is controlled by this setting. The Default is $Null and means disabled.

ExchangeOnlineManagement 3.1.0 released as GA

Hi All,

Just a few hours ago, Microsoft has released the ExchangeOnlineManagement PowerShell Module 3.1.0 as GA.

What is new in v3.1.0 :

  1. Support for providing an Access Token with Connect-ExchangeOnline.
  2. Bug fixes in Connect-ExchangeOnline and Get-ConnectionInformation.
  3. Bug fix in Connect-IPPSSession for connecting to Security and Compliance PowerShell using Certificate Thumbprint.

Check what Version is installed and what’s available from the PowerShell Gallery

Get-InstalledModule ExchangeOnlineManagement
Find-Module ExchangeOnlineManagement

PowerToys v0.66.0 released

Hi All,

Just a few days ago, Microsoft has released the Version v0.66.0 of theyr PowerToys. As always, there are a plenty of news.

Highlights

  • PowerToy utilities now ship with self-contained .NET 7, meaning it’s not necessary to install .NET as part of the installer and it’s easier to keep up to date.
  • It’s possible to pick which of the installed OCR languages is used by Text Extractor by selecting it in the right-click context menu.
  • Added a setting to sort the order of the accented characters by usage frequency in Quick Accent.

Exchange Online Role Based Access Control (RBAC) for Applications

Hi All

On December 01 Microsoft has announced in the Exchange Team Blog that they Support Role Based Access Control (RBAC) for Applications in Exchange Online.

The most important Takeaways are:

  • The Preview is now available to all customers in our worldwide multi-tenant environment, and we expect to reach general availability in H1 2023
  • This feature extends our current RBAC model and will replace the current Application Access Policy feature.
  • Service Principals representing apps must be manually created in Exchange Online during the Preview, but this process will be automated to offer a more efficient user experience at GA
  • The Preview provides two resource scoping mechanisms, both of which are supported by Exchange RBAC: management scopes, and admin units

Blog Articles

DNS Certification Authority Authorization (CAA)

Hi All,

Do you know the Certification Authority Authorization (CAA) DNS Records?

With these Records you can control what CA can issue Certificates for your domain.

CAA implementation mandatory for all certificate authorities by September 2017.

That Record means no CA is allowed to issue Certificates and Wildcard Certifcates for that Domain

domain.tld.  IN  CAA  0 issue ";"
domain.tld.  IN  CAA  0 issuewild ";"

Only the specified CA can Issue Certificates and Wildcard Certifcates for that Domain

The year in review and Blogstatistic 2022

Hi All,

Happy new Year to everybody! Thank’s for reading my Blog and following me on Twitter and Linkedin.

It’s always good to review the past Year. In 2022 i did write 285 Blog Articles, that results in average 24 per Month. That’s one more than last year and the highest ever archieved since i started this Blog back in 2007.

In total i had over 120'000 Pageviews

Over 100'000 Unique User from around the World

Authenticated Received Chain (ARC)

Hi All,

Did you come across “Authenticated Received Chain (ARC)”?

Authenticated Received Chain (ARC) is an email authentication system designed to allow an intermediate mail server like a mailing list or forwarding service to sign an email’s original authentication results. This allows a receiving service to validate an email when the email’s SPF and DKIM records are rendered invalid by an intermediate server’s processing.

ARC is defined in RFC 8617, published in July 2019, as “Experimental”