Think You Know How To Manage Office 365?

Slides:



Advertisements
Similar presentations
Configuring SharePoint 2013 and Office 365 Hybrid – Part 1
Advertisements

Azure AD & Office Logon with Username / Password 2. MFA challenge 3. Reply to MFA challenge -1-way or 2-way SMS -Phone call -Mobile Application.
Private Cloud (on & off premises) Hybrid CloudPublic Cloud SaaS PaaS IaaS Microsoft’s Online service portfolio Office 365 Microsoft‘s communication.
Acceleratio Ltd. is a software development company based in Zagreb, Croatia, founded in Acceleratio specializes in developing high-quality enterprise.
GROUPS END USER EXPERIENCE IT ADMIN MANAGEMENT AND CONTROLS NEXT STEPS.
Sessions about to start – Get your rig on!. Notes from the field – Implement Hybrid Search and OneDrive for Business Chris Zhong - Microsoft Aaron Dinnage.
4/17/2017 © 2014 Microsoft Corporation. All rights reserved. Microsoft, Windows, and other product names are or may be registered trademarks and/or trademarks.
Empower Enterprise Mobility Jasbir Gill Azure Mobility.
Office 365 Administration Ron Schindler See full Office 365 Admin course on Ron Schindler See.
Julien “Superman” Stroheker and Nicolas “Batman” Georgeault Negotium
New SharePoint 2016 Features
Microsoft ® Official Course Module 13 Implementing Windows Azure Active Directory.
Empowering people-centric IT Unified device management Access and information protection Desktop Virtualization Hybrid Identity.
Offer highly configurable and scalable services Maintain an evergreen service Provide a platform built on security, privacy, and trust.
Module 1Introduction Module 2Office 365 for IT Pros Module 3Getting started with Office 365 Module 4Deploying Office 365 Module 5Office 365 Service.
ON YOUR TERMS Business needs * Enhanced by upcoming Azure IAAS features GoodBetterBest * * GoodBetterBestGoodBetterBestGoodBetterBestGoodBetterBestGoodBetterBest.
Get identities to the cloud Mix on-premises and cloud identity for improved PC, mobile, and web productivity Cloud identities help you run your business.
Identities and Azure AD Premium
Why EMS? What benefit does EMS provide O365 customers Manage Mobile Productivity Increase IT ProductivitySimplify app delivery and deployment LOB Apps.
BE-com.eu Brussel, 26 april 2016 EXCHANGE 2010 HYBRID (IN THE EXCHANGE 2016 WORLD)
Agenda  Microsoft Directory Synchronization Tool  Active Directory Federation Server  ADFS Proxy  Hybrid Features – LAB.
Martina Grom MVP Office 365 How to (remote) control Office 365 with Azure Toni Pohl MVP Client Dev
Microsoft Virtual Academy Chris Oakman | Managing Partner Infrastructure Team | Eastridge Technology Curtis Sawin | Technical Solutions Professional |
Enabling the Modern Workstyle with Windows 10 & Azure Active Directory Venkatesh Gopalakrishnan 2016 Redmond Summit | Identity Without Boundaries May 25,
EMS in action Hugh Simpson-Wells and Mark Riley 2016 Redmond Summit | Identity Without Boundaries
SaaS apps.
Productivity Architect Meet Chris Bortlik Author, Blogger, Speaker.
Managing Devices in the Enterprise: From EMS zero to Hero in only 60 minutes Ken Goossens Herman Arnedo Mahr.
Protect your data Enable your users Desktop Virtualization Information protection Mobile device & application management Identity and Access Management.
Recording Brief EMS Partner Bootcamp Variables Values Module Title
Microsoft Azure Active Directory Identity Solutions
OneDrive for Business: Administration, Security and Compliance
Microsoft Ignite /27/2018 9:00 AM THR2016
Microsoft - Managing Office 365 Identities and Requirements
Developing Hybrid Apps on Microsoft Azure Stack
6/17/2018 5:54 AM OSP322 Getting the best of both worlds, making the most of SharePoint hybrid search solutions Shyam Narayan Microsoft © 2013 Microsoft.
Azure AD for the client management guy (or gal!)
Using Microsoft Identity Manger with SharePoint 2016 to fill the User Profile Sync Gap Max Fritz Senior Systems Consultant Now Micro.
Understanding Multi-Geo Capabilities in Office 365
7/29/2018 4:45 PM Manage SharePoint and OneDrive in Office 365: A field guide for administrators Chris Bortlik Modern Workplace Technical Architect Microsoft.
9/4/2018 6:45 PM Secure your Office 365 environment with best practices recommended for political campaigns Ethan Chumley Campaign Technology Advisor Civic.
Power BI Security Best Practices
IDaaS SHOWDOWN: Microsoft EM+S vs Okta
Wait, Microsoft is in the Security Game?
Windows 10 & Intune: A Modern Desktop Management Story Joe Crandall.
9/13/2018 4:54 PM BRK How to get Office 365 to the next level with Azure Active Directory Premium Brjann Brekkan Program Manager Lead – Customer.
9/14/2018 2:22 AM THR2026 Set up secure and efficient collaboration for your organization with Office 365 Joe Davies Senior Content Developer Brenda Carter.
Microsoft Intune MAM without Device Enrollment
Leverage your on-premise investments with cloud innovation
Introduction to Soonr by ….
BRK3277 Making the best of the cloud: How Exchange Online is different from Exchange on-premises Tony
Multi-Farm, Cross-Continent SharePoint Architecture
Protect your OneDrive and SharePoint files on mobile devices
Hybrid Search Planning Implementation.
Hybrid Search Technical Guidance.
PSC Group, LLc Office 365/SharePoint Online Migration traps and tricks
Office 365 Development July 2014.
Microsoft Ignite /20/2018 2:21 PM
11/27/ :16 AM © Microsoft Corporation. All rights reserved. MICROSOFT MAKES NO WARRANTIES, EXPRESS, IMPLIED OR STATUTORY, AS TO THE INFORMATION IN.
SharePoint Online Hybrid – Configure Outbound Search
SharePoint Security for the Site Owner
Five mistakes to avoid when deploying Enterprise Mobility + Security
12/29/2018 8:46 AM © Microsoft Corporation. All rights reserved. MICROSOFT MAKES NO WARRANTIES, EXPRESS, IMPLIED OR STATUTORY, AS TO THE INFORMATION IN.
1/3/2019 1:47 PM © Microsoft Corporation. All rights reserved. MICROSOFT MAKES NO WARRANTIES, EXPRESS, IMPLIED OR STATUTORY, AS TO THE INFORMATION IN THIS.
Matthew Levy Azure AD B2B vs B2C Matthew Levy
OneDrive for Business: Administration, Security and Compliance
10 | Implementing Directory Synchronization
Microsoft 365 Business Technical Fundamentals Series
08 | Configuring SharePoint Online
Office 365 Security Features For SharePoint Admins
Presentation transcript:

Think You Know How To Manage Office 365? By: Eric Raff

Quick Introduction Joined JourneyTEAM in April 2015 In IT industry for 20+ years Cloud Solutions Architect Identity & Access Management Architect SharePoint Architect Exchange Server Engineer OCS/Lync Engineer GroupWise Guy Published Author Teacher

Identities in the Microsoft Cloud Types of Identities Office 365 Services Member Exchange Online SharePoint Online Guest - #EXT# EXO SPO Microsoft Account B2C User (another time) Backend replication AAD Service (Microsoft Accounts) Azure AD Service (Work/school accts) Azure Services Associated AAD Directory Subscription AAD Directory Ericraffoutlook.onmicrosoft.com Associated B2B AAD Directory Subscripton

O365 Admin Centers * No Powershell Exchange (EXO) Skype for Business (S4B) SharePoint (SPO) OneDrive (ODfB) Yammer * PowerApps * Flow * Security & Compliance Azure AD (AAD) https://aad.portal.azure.com – special AD admin center Intune * Cloud App Security * * No Powershell

O365 Management Options Powershell O365 Admin Portal https://www.powershellgallery.com O365 Admin Portal https://portal.office.com Microsoft Azure Portal (ARM/Ibiza) https://portal.azure.com Windows Azure Portal (OLD - deprecated) https://manage.windowsazure.com O365 Admin Mobile App (W10, Mobile) See this for more info GREAT for cloud only users

Powershell Access AzureAD – V1 (SDK) and V2 (Graph API) V1: Connect-MsolService (Install-module MSOnline) V2: Connect-AzureAD (Install-module AzureAD) Exchange Online – IE/Edge download required Exchange Admin Center | hybrid | Online powershell Connect-EXOPSSession SharePoint Online - Download here $orgName="<your Office 365 tenant>“ Connect-SPOService -Url https://$orgName-admin.sharepoint.com Skype for Business Online – Download here Import-Module SkypeOnlineConnector Security and Compliance Center – Uses EXO install Connect-IPPSSession Teams – Announced Nov 7th See blog here Install-Module MicrosoftTeams Single script with MFA support here

Azure AD General Tenant Settings Attributes, Attributes, Attributes – Drive Dynamic Groups - Document and Normalize Department, Location, Title, EmployeeID & Type etc. Phone # Format +1 (801) 555-1212 (for MFA calling) Properties Directory Name – very important when B2B in play Global Admin can Manage Azure Subscriptions Company Branding If using ADFS, brand both to match Mobility (MDM and MAM) To Auto Enroll or not?

Azure AD User & Groups Settings User Settings Guest users permissions are limited - YES Guests can invite – Really? Restrict access to AzureAD admin portal – YES Group Settings Who can create/manage Groups? O365 Group Expiration – CONFIGURE THIS! Enable “All users” Group – Includes EVERYONE! TIP: Create “All Members”, “All Guests” dynamic groups Device Settings Who can Join? Require MFA to join - SUGGESTED Sync settings & app data across devices - YES

Azure AD Connect Health AAD Connect Agent Get on latest AAD Connect version. See version history Sync Errors Password Hash Sync AuthN status/state ADFS Agent ADFS servers WAP servers AD DS Agent Install on each DC See info here on agent download and install info. TIP: port 5671 is more efficient for health status but if not open will fall back to 443 for outbound connectivity to Azure services.

Licensing - GBL has arrived Group Based Licensing AAD Basic or Premium required DEMO Powershell script to remove direct assignments is here TIP: At the very bottom of this site.

O365 General Tenant Settings Release Preferences Custom Themes Company Branding A Word on Trusted IE Sites *.microsoftonline.com *.sharepoint.com *.outlook.com *.lync.com *.office365.com *.office.com *.microsoftstream.com *.sway.com *.powerapps.com

Exchange Online Settings Exchange Advanced Threat Protection Enable Modern AuthN Set-OrganizationConfig -OAuth2ClientProfileEnabled $true Get-OrganizationConfig | select *Oauth* SPAM Settings Security SPF DKIM DMARC Conf Rooms for scheduling Working hours, booking options Message Size Limits Get-MailboxPlan | Set-MailboxPlan -MaxSendSize 75MB -MaxReceiveSize 75MB Mailbox Auditing Get-mailbox –ResultSize Unlimited -Filter {(RecipientTypeDetails -eq 'UserMailbox')} | ForEach {Set-Mailbox $_.Identity -AuditEnabled $true -AuditLogAgeLimit 180 - AuditOwner MailboxLogin,HardDelete}

SharePoint Online Settings Hide Everyone principles Set-SPOTenant -ShowEveryoneClaim $false Set-SPOTenant -ShowEveryoneExceptExternalUsersClaim $false Set-SPOTenant -ShowAllUsersClaim $false OneDrive Sync Button – Check your tenant Sharing with External users

Skype for Business Settings Enable Modern Authentication Set-CsOAuthConfiguration -ClientAdalAuthOverride Allowed Get-CsOAuthConfiguration Organization profile General External Communications

THANK YOU