Skip to content

IT Dev Lab

Learnings and musings of a Microsoft Identity & Security consultant

IT Dev Lab

Learnings and musings of a Microsoft Identity & Security consultant

  • Home
  • Post Series
    • WDAC Wednesday
  • Links library
  • About
    • Home
    • Andrew
    • Page 2
Microsoft 365

Mark of the Web and trusting SharePoint Online

Andrew 19 November 2023 0 Comments

A common measure in corporate environments is to block macros files downloaded from the internet, which is implemented as a security measure to prevent users from inadvertently executing malicious. How…

Sentinel Uncategorized

Deploying Sentinel analytic rules from DevOps

Andrew 18 October 2023 0 Comments

There is a Microsoft Sentinel feature currently in public preview that allow you to deploy custom Sentinel content from DevOps or GitHub, such as analytic rules. The linked article provides…

Exchange Online Microsoft 365

Exchange Online SPF and domain validation

Andrew 29 May 2023 0 Comments

When on-boarding a domain to Exchange Online there is support documentation available detailing the DNS entries required for the domain to be successfully validated. One item not explicitly stated in…

Logic Apps

Logic Apps and Concurrency Control awareness

Andrew 26 May 2023 0 Comments

If you’ve ever had strange, unexplainable behaviour in a Logic App loop that uses variables chances are the cause will be the Concurrency Control setting, which is turned off by…

WDAC

WDAC feature limitations on Windows Server versions

Andrew 23 May 2023 0 Comments

Windows Defender Application Control (WDAC) is a core component of Windows, since Windows 10 and Server 2016, which can be used as part of your security posture to secure workstations…

WDAC

#TIL WDAC logging and Policy Names from Windows Server 2016

Andrew 17 May 2023 0 Comments

In implementing a Windows Defender Application Control (WDAC) audit policy we discovered an interesting quirk with the information logged in the Windows Event Logs on Server 2016, that can make…

PowerShell WDAC

PowerShell script to convert WDAC XML file to binary CIP format

Andrew 30 March 2023 0 Comments

The Microsoft WDAC Wizard is a great tool for building and modifying WDAC policies, but there are times where it is necessary to manually modify the policy XML file. If…

Logic Apps

Logic App security tips – Using a Key Vault

Andrew 28 March 2023 0 Comments

Logic Apps are amazingly powerful in what can be accomplished, and have a very low barrier to entry with their code-less approach, however care needs to be take to ensure…

Dynamics 365 Logic Apps

#TIL converting a JSON date from a Dynamics 365 Business Event in a Logic App

Andrew 8 February 2023 0 Comments

While building a Logic App to perform actions based on business events in Dynamics 365, I faced a slight challenge – one of those challenges can sometimes be tricky in…

Windows

Generating a log file for an MSI or MSP

Andrew 21 January 2023 0 Comments

Recently when completing a MIM 2016 hotfix installation the upgrade process was failing with a very generic and largely unhelpful error message. It’s possible (and in the case of MIM…

Posts pagination

1 2 3 4

« Previous Page — Next Page »

You Missed

WDAC

WDAC Wednesday: Manual software installs

WDAC

WDAC Wednesday: Plan to fail, the importance of rollback testing

WDAC

WDAC Wednesday: Application Control and the Essential Eight

WDAC

WDAC Wednesday: AppLocker vs Application Control for Business

IT Dev Lab

Learnings and musings of a Microsoft Identity & Security consultant