Azure AD Connect V1 retiring – Upgrade NOW!

In september 2021 another big announcement was published by Microsoft. Azure AD Connect Version 1x is retired and will not work anymore in August 2022. So please update your Azure AD Connect Version! On August 31 2022 all old versions of Azure AD Connect Ver. 1.x won’t work. Resulting this announcement there are some consequences. …

New Exchange Security Update January 2022 KB5008631

Today a new exchange update KB5008631 for all supported versions of exchange was released. See the original link to Exchange Team blog:https://techcommunity.microsoft.com/t5/exchange-team-blog/released-january-2022-exchange-server-security-updates/ba-p/3050699 Here are the links to download manually: Exchange Server 2013 CU23 Exchange Server 2016 CU21 and CU22 Exchange Server 2019 CU10 and CU11 They say there are some vulnerabilities but no exploit, so there is not that much pressure to …

Exchange Online and disabling Basic Authentication by Microsoft

Some days ago Microsoft announced the final ending of basic authentication in Exchange Online. Today, we are announcing that, effective October 1, 2022, we will begin to permanently disable Basic Auth in all tenants, regardless of usage, with the exception of SMTP Auth. https://techcommunity.microsoft.com/t5/exchange-team-blog/basic-authentication-and-exchange-online-september-2021-update/ba-p/2772210 So why disabling Basic Auth? It works like a charm! Basic …

Active Directory bugs / vulnerability november 2021 CVE-2021-42287

I thought my holidays already started, but there is a very critical sercurity vulnerability included in Microsoft Active Directory. More precisely there are two vulnerabilities, CVE-2021-42287 and CVE-2021-42278 . Vulnerability CVE-2021-42278 contains an attack which is also known as sAMAccountName spoofing or impersonation. It is possible to rename Computer Accounts of DomainController to impersonate them. …