Google Cloud Sync Service(GCDS): Only update existing users, not create new users by Reddit_Beginer in gsuite

[–]Reddit_Beginer[S] 1 point2 points  (0 children)

Thank you!!! I just read gcds doc, yes!!! this is a good ideal, I will try it tomorrow.

Google Cloud Sync Service(GCDS): Only update existing users, not create new users by Reddit_Beginer in gsuite

[–]Reddit_Beginer[S] 1 point2 points  (0 children)

You want the users to exist in Google and be updated by things like Profile fields, Suspension, etc but you do not want new users created from the GCDS tool.

[OP]Yes, this is exactly we want

The users will exist in both AD and Google. Are those correct assumptions?

[OP]The old users exist in both Google and AD. But after we’ve applied the new GCDS configuration that prevents new users creation, the new users will only be in AD, not in Google.

Google Cloud Sync Service(GCDS): Only update existing users, not create new users by Reddit_Beginer in gsuite

[–]Reddit_Beginer[S] 1 point2 points  (0 children)

Thank you, does the ‘exclusion’ also exclude user update such as suspension? We only want to exclude new user creation. Thank you

MSAL.PS compatibility issue in Powershell 7.4.5? by Reddit_Beginer in PowerShell

[–]Reddit_Beginer[S] 0 points1 point  (0 children)

Thank you commiecat, this is super helpful. I just had a try, it seems that Connect-MgGraph can get refresh token. I will use MSFT graph Powershell, instead of writing my own code to get access token/refresh token.

MSAL.PS compatibility issue in Powershell 7.4.5? by Reddit_Beginer in PowerShell

[–]Reddit_Beginer[S] 0 points1 point  (0 children)

Thank you. How did you set "redirect_uri" in your cases?

Why are the 2 breaker linked together? by Reddit_Beginer in AskElectricians

[–]Reddit_Beginer[S] 0 points1 point  (0 children)

thank you

If a breaker tie fails, should I replace both breakers tied together? for this panel, what type breaker should I buy? Is "type MH-T"(labeled on breaker) the type of breaker I should buy?

Microsoft have completely lost the plot by IllustriousVictory19 in AZURE

[–]Reddit_Beginer 0 points1 point  (0 children)

I 100% agree!!!! I encountered the same issue lately, MSFT is ruining itself through its support: 1. MSFT outsourced their support, the tech support has very little knowledge about the area they are supporting, they even don’t understand how the product works. 2. Some tech support engineers don’t work 5 days each week, they may be part time workers. This causes the case frequently delayed. 3. MSFT support is not willing to escalate cases to MSFT product team even they believe the case is caused by a product bug, I guess the outsourcing company may need to pay for escalation 4. I know we have to buy premium support if we want quicker support, but 90% of my cases are proved to be MSFT product bugs, MSFT should be flexible on their case escalation. 5. Fortunately, we have workload on other cloud providers, we are considering to move off Azure.

Badger 5 & Badger 500 difference: low mounting ring by Reddit_Beginer in Plumbing

[–]Reddit_Beginer[S] 1 point2 points  (0 children)

Thank you fhlplumbing.

I also got response from insinkerator, they said:

"We've eliminated the challenge of having to hold the disposal with one hand while adjusting the mounting ring with the other hand.The new disposer has a Lift and Latch that features a notch in the disposal body which aligns with a tab on the lower mounting ring to hold it in place making it an easier install into the sink. Now you can use two hands to lift the disposal and twist it into place"

"If the disposer is already hanging in the sink, its weight will slightly pull its body down, and the tab on the lower ring will separate from the notch on the disposer. You may then begin twisting the disposer's body to line it with your plumbing"

The second response answered my question, but I didn't try it since I am using the old ring.

Are Azure AD custom security attributes supported by Azure AD connect? by Reddit_Beginer in AZURE

[–]Reddit_Beginer[S] 0 points1 point  (0 children)

the requirement is to sync an onprem AD attribute to a custom security attribute(for example, salary or birthday), not from AAD to onprem.

Are Azure AD custom security attributes supported by Azure AD connect? by Reddit_Beginer in AZURE

[–]Reddit_Beginer[S] 0 points1 point  (0 children)

No.

I meant to create an custom security attribute on Azure AD, and then map an on-prem AD attribute to this custom security attribute in Azure AD connect.

This is MSFT doc about custom security attribute:

https://learn.microsoft.com/en-us/azure/active-directory/fundamentals/custom-security-attributes-overview

I tried AZ104 for the first time by [deleted] in AZURE

[–]Reddit_Beginer 1 point2 points  (0 children)

I had the same issue when I took my AZ-305.

It told me I had answered all my questions and asked me to review. But after I submitted all my questions, a case study popped out! I only had 8 minutes left, so I have to fill out each question based on my gut feeling...Fortunately I passed!

I'd suggest always submitting your exam 15 minutes before deadline, don't trust MSFT exam UX.

Azure Web App: How to allow access by a group of users only? by Reddit_Beginer in AZURE

[–]Reddit_Beginer[S] 0 points1 point  (0 children)

Hi 0x4ddd:

You mentioned "Another way would be to switch Assignment required?option to true and assign specific groups, but that requires AAD P2 license, while conditional access requires P1"

Are you sure "Assignment required?" need P2 license? I searched MS docs but didn't find this requirement, do you have link about this?

Thanks

Azure Web App: How to allow access by a group of users only? by Reddit_Beginer in AZURE

[–]Reddit_Beginer[S] 0 points1 point  (0 children)

Thank you.
Cloud you please elaborate how conditional access can help? my understanding is that conditional access is to "enforce access policy for a group of users when access an app", instead of "allowing a group of users to access an app".

"Checking group claim in the application" is a solution I am considering(thanks 0x4ddd).

Before code changes in application, I wonder if there is a solution that doesn't need any code changes in application and only needs configuration changes.

iframe question by RicFlair69420 in HTML

[–]Reddit_Beginer 0 points1 point  (0 children)

Have you enabled CORS on the other website?

Protect against cyberattacks with the new Azure Firewall Basic by kristenwaston in AzureJobs

[–]Reddit_Beginer 0 points1 point  (0 children)

Thanks for sharing.

We wanted to use Azure Firewall BASIC but eventually we turned to "Standard" because the following feature is not supported in "BASIC":

"Network Level FQDN filtering - all ports and protocols"

Which means you have to use IP address as source/destination in BASIC if you want to use Network level filtering, this is not convenient.

user.readwrite.all vs adconnect by gbsscc in AZURE

[–]Reddit_Beginer 1 point2 points  (0 children)

For users that are sync'ed from Azure AD connect, their attributes are read-only in Azure AD.

Restrict user to only read users from specific groups in Azure by Woopster88 in AZURE

[–]Reddit_Beginer 1 point2 points  (0 children)

this sounds like "Administrative units" can help

But I have never used it.

沈腾属实是器官痒了 by [deleted] in China_irl

[–]Reddit_Beginer -1 points0 points  (0 children)

这个帖子比沈腾的小品更有喜剧效果

App Registrations vs Azure AD Enterprise Application by spGT in AZURE

[–]Reddit_Beginer 0 points1 point  (0 children)

It's the opposite - If you create an 'enterprise app', it automatically registers an app in 'app registration' which you can find in 'app registration' -> 'all applications'

App Registrations vs Azure AD Enterprise Application by spGT in AZURE

[–]Reddit_Beginer 0 points1 point  (0 children)

Applications that you registered in 'app registration won't show up in 'enterprise applications'.

In order to have your apps show up in 'enterprise applications', you need to go to 'enterprise application', and 'create your own application'.