M365 | on-premise, Outlook.exe DEBUG logging for troubleshooting complete guide

Enhancing Outlook Debug Logging for Troubleshooting Mike Butsch, www.butsch.ch What we want to do and why Outlook debug logging is a valuable tool for diagnosing and resolving issues within Microsoft Outlook. By enabling advanced logging, you gain deeper insights into the application’s behaviour, allowing for more effective troubleshooting. In this blog post, we will explore […]

Azure/M365: Kann AZURE Dein Active Directory (DC) ersetzen?

Ersetzt Azure die Active Directory Domain Controller und Active Directory Services? Der eigentliche Zweck von Azure-AD ist was? Azure Active Directory wurde entwickelt, um Microsofts Präsenz in der Cloud zu erweitern. Azure Active Directory sollte ursprünglich Benutzer mit Microsoft M365-Diensten verbinden und eine einfachere Alternative zu ADFS für Single Sign-On bieten. Nun hat es sich […]

Active Directory accounts with ADMINSholder/adminCount flag | No syncback from Azure, ms-ds-consistencyGuid

english, Management summary To gain a better understanding of the ADMINSholder/adminCount attribute, we recommend referring to the provided blog posts, which shed light on the impact of this flag, particularly regarding ActiveSync and GPO. This attribute poses a challenge in the synchronization process of the Synchronization Service Manager (Microsoft Azure AD Connect Synchronization Services) as […]

Exchange Office M365 customers will have to upgrade their Office 2016/2019 by October 2023

How we found this info beside Technet: Error: Outlook 2016 verlangt neues Update (Aktuell: 16.0.4266.1001 / Erforderlich: 16.0.4600.1000) There is a link in the warning which leads to the rather delicate info abour EOL of Office 2016/2019 with M365. Fact: If you don’t want to update your Office 2016/2019, keep your Exchange on-premise DAG with […]

IE11 GPO Settings, PROXY Explained F5-F8, Proxy settings still used in 2023 by system account

This may be useful in 2023 because SYSTEM (The PC itself) still often uses PROXY and IE Settings. Often on New environment and DC or GPO Console you can’t see those old settings but sometimes they are still affective. Check out our other IE11 LINKS: https://www.butsch.ch/post/ie11-ieak-11-setup-9-pre-deployment-patches-2b-1-hotfix/ htps://www.butsch.ch/post/internet-explorer-9-11-gpo-old-ie9-not-visible-wmi-checks/ IE11 GPO Settings, PROXY Explained F5-F8 IE11 has […]

M365, Exchange Online Remote Powershell blocked by T1056 Mitre Trellix

Trellix ENS 10.X, T1056 – Key capture using PowerShell detected, Host intrusion buffer overflow ExP:Illegal API Use Blocked an attempt to exploit C:\WINDOWS\SYSTEM32\WINDOWSPOWERSHELL\V1.0\POWERSHELL.EXE, which targeted the GetAsyncKeyState API. For efficient M365 and Exchange Online management, there are various methods available. While utilizing the PowerShell button within the Admin Portal is one option, it requires an Azure […]

CVE-2023-23397, Outlook.exe Exploit, PidLIDReminder custom Sound ab SMB für Termin Reminder

CVE-2023-23397 Was ausgenutz wird: Anstatt Standard Microsoft Outlook Sound kann man für ein meeting reminder einen Custom Sound angeben. Dieser kann auf einem Share liegen. Da liegt der Hund begraben. https://learn.microsoft.com/de-de/office/client-developer/outlook/mapi/pidlidreminderoverride-canonical-property https://www.forbes.com/sites/daveywinder/2023/03/15/microsoft-outlook-warning-critical-new-email-exploit-triggers-automatically-update-now/?sh=47f058ce6e5e CVE-2023-23397 ist ein Outlook-Bug. Wenn Sie eine eingehende E-Mail für einen Termin mit einer benutzerdefinierten Erinnerung (Ton, Attribut PidLIDReminder) senden, wird Outlook.exe (2012/2016) versuchen, […]

Starting march 2023, Microsoft EDGE will be the new Adobe Reader and Acrobat if you Opt IN

Starting march 2023, Microsoft EDGE will be the new Adobe Reader and Acrobat if you Opt IN I just found some Information while searching for more Infos about the 02/2023 Windows Updates/Patches. This is interesting because we mostly do AutoUpdates for Defender and EDGE Updates while we analyse and test all other monthly CUMU updates […]

M365/Hybrid Exchange Setup: Steps to verify on-premise, Prepare for Directory Synchronization (IDFIX, UPN, Proxyaddress)

TIP: Cleanup everything LOCAL before you even think of moving anything to M365 or Azure or even starting the Connector PRO TIP: Full manual list of Objects/attribute to check on your local ADS in this blog. This blog entry is mainly about those two steps of the MS Technet: https://learn.microsoft.com/en-us/microsoft-365/enterprise/prepare-for-directory-synchronization?view=o365-worldwide Directory Clean-up Tasks Directory object […]

Exchange: Error when you want to change a Receive Connector TLS with a Cert with no Common Name

On an Exchange 2016/2019/M365/Azure you want to change the TLS Certificate of your Receive Connector. Your SAN (Subject Alternate Name) or Wildcard Certificate has no Common Name [CN] (Empty). When you try to assign the cert the regular way you get an error. Nothing wrong with the Cert company just the other side (Requester/Converter) as […]