#ITAdvent

dmstorkdmstork
2024-12-24

Last day of ! I made it! The last tip is more of a summarized strategy for 2025 when you are responsible for & . There are a lot of (breaking) changes on the way you need to prepare & plan ahead.

Obviously Server 2016 & 2019 End of support in October 2025. Prepare by getting all servers to 2019 CU15 (eventually) & then in-place upgrade to Subscription Edition. Do note that the OS can be with 2019CU15, but not

dmstorkdmstork
2024-12-23

Day 23 of . More than a week ago I posted about the Junk Report button being integrated within Classic . New Outlook & OotW (Outlook on the Web) already had that button. This would remove the need to deploy the reporting add-in in those clients.

dmstorkdmstork
2024-12-22

Day 22 of . There is no specific available. Which unfortunately also means that there is less training offered, as they are based on Microsoft Official Courseware or . So, I sometimes see the question what options there are.

Obviously, sites were already a replacement for any books used during those MOCs. However, there is no Learning Path/Modules available that covers everything. learn.microsoft.com/en-us/trai

dmstorkdmstork
2024-12-22

Day 22 of . There is no specific available. Which unfortunately also means that there is less training offered, as they are based on Microsoft Official Courseware or . So, I sometimes see the question what options there are.

Obviously, sites were already a replacement for any books used during those MOCs. However, there is no Learning Path/Modules available that covers everything. learn.microsoft.com/en-us/trai

dmstorkdmstork
2024-12-21

Day 21 of . A reminder that will remove the Online RBAC ApplicationImpersonation role. It means that applications that rely on this role will stop working starting February 2025.

You might have had a Message Center post if your tenant uses that role, but it can mis things so check your environment and change to keep your apps operational.

dmstorkdmstork
2024-12-20

Day 20 of . This week announced changes in the Online Message Trace capabilities. This is the tool you use to verify mail flow events; i.e. what happened to incoming or outgoing mail.

Previously you couldn't go further back then 10 days without the need of a downloadable report (which took time to process). Now you still have a max range of 10, but within the last 90 days. This is a very welcome change as this can speed up troubleshooting!

dmstorkdmstork
2024-12-19

Day 19 of . The Dutch Forum Standarisatie is a Dutch Advisory commity on IT open standards in order to easily and safeliy exchange data between government bodies, companies, non-profits and citizens. They maintain lists of mandatory and recommended protocols for at least governmental bodies. But IMHO every organization should adopt these.

dmstorkdmstork
2024-12-18

Day 18 of . And after , it's time for . I often call this the holy trinity of mail authentication as they complement each other and should be configured correctly, specifically SPF and DKIM. For DMARC you only need to publish a TXT DNS Record, but I've seen:

- While DMARC offers automatic inheritance to subdomains, it only works from the organizational domain downwards, not from subdomains to subsubdomains.

dmstorkdmstork
2024-12-17

Day 17 of . A quick look to . This protocol adds a hash signatures in your mail based on specific headers & the email body. Recipients can verify this with a DNS record with the public key & conclude 2 things:

Whether your org has sent it (based on the DNS record info) and whether it has been changed in transit or not. If the signature is verified, it's probably authentic mail & not changed. While DKIM has a significant role in , I do see these issue a lot:

dmstorkdmstork
2024-12-16

Day 16 of . Let's talk about or Sender Policy Framework! Especially the most common mistakes I see happening, be sure to check those periodically (but during the holiday period you also might have time to do this):

- Forgotten sub domains: SPF does not inherit to subdomains
- Not having a correct syntax: typos or linefeeds where they shouldn't.

dmstorkdmstork
2024-12-15

Day 15 of . In many orgs is the digital meeting solution used to attend meetings. Ad-hoc meetings but also recurring meetings such as stand-up/dailies. It can be helpful to have a or , but you might forget the manual action.

You can enable automatic recording of your meeting via the Meeting Options in Teams. There are diverse ways to get to that, in the Meeting request there is a link. Or in go to calendar: support.microsoft.com/en-us/of

Microsoft Teams screenshot with the title "Lock the meeting?" with cartoonlike depiction of a Teams meeting with a large lock on top of it. Below the tekst shows "No one else will be able to join, but invitees can still access the meeting chat, the recording, and other meeting info."  With the buttons Cancel and Lock.
dmstorkdmstork
2024-12-14

Day 14 of . In 2024 reported in their Digital Defense Report 2024 that is still the greatest threat from . So, it's good to periodically review your orgs preparedness on this.

dmstorkdmstork
2024-12-13

Day 13 of . Administrating comes with a lot of work, requiring to install and update lots of different modules. The ones I have to use frequently I know by heart. Others, not so much...

dmstorkdmstork
2024-12-12

Day 12 of . Be sure to check whether you have apps/devices that send with multiple FROM: headers (or P2) without a SENDER: header. To comply with RFC5322 will reject those mails.

Why? "Most of the traffic exhibiting multiple P2 From Addresses without a Sender Address will be inbound spam destined for your tenant sent by malicious spammers on the internet." as stated in . However, you could have valid mail that does this.

dmstorkdmstork
2024-12-11

Day 11 of . Well, there are strong opinions on New ! Especially about changing the default client this January for Business & in 2026 for Enterprise which I posted earlier. See: mastodon.social/@dmstork/11362

While I also think that New might not be ready for most orgs, there are also some misconceptions surrounding this switch. First: will support Classic until at least 2029. See techcommunity.microsoft.com/bl

dmstorkdmstork
2024-12-10

Day 10 of . There are several tools to check your compliance stance on , , and other capabilities. One is my own PowerShell script, but in most cases a online tool is preferable. github.com/dmstork/Show-AntiSp

screenshot of GitHub repository: black letters on white background showing dmstork/Show-AntiSpoof and beneath it in smaller grey font: "Exchange PowerShell based script that checks every accepted domain of Exchange and will show the DNS configuration of SPF and..." 
Below some statistics and at the right profile photo of Dave Stork
dmstorkdmstork
2024-12-09

Day 9 of . With Message Center post MC949965 announced that Enterprise users will get the New per default from April 2026. But if you are a Bussines user, this will happen this January 2025!

There are a lot of reasons to stay on Classic and you can still can. has stated that support will continue up to at least 2029. This is only a change on which is default. Need to stay on Classic? Check learn.microsoft.com/en-us/micr

dmstorkdmstork
2024-12-08

Day 8 of . Did you know you can remove an event from any user as admin? There are situations you might need this, such as a Team having recurring appointments organized by someone that has left the organization. Even the deletion of the mailbox won't remove those events.

dmstorkdmstork
2024-12-07

Day 7 of . While I do not work with often, the fact that you needed to use a click-once app in order to data was a major drawback of the whole experience. Especially in heavily controlled environments this was challenge to explain & implement.

dmstorkdmstork
2024-12-06

Day 6 of . If you have a lot of meetings and sharing audio/video via BYOD, you know that especially transcripts attribute what has said to the account that was connected to those devices. You then need to check recordings to verify who said what. But for cant' do that.

There are devices with Intelligent Speakers, that can identify the speaker in the room which requires specific hardware.

Client Info

Server: https://mastodon.social
Version: 2025.04
Repository: https://github.com/cyevgeniy/lmst