Category: Azure

News Informatique

New release (2.11.57) of AIP UL [General Availability]

Today, Microsoft announced that AIP UL client 2.11.57 is now GA and available to download https://aka.ms/AIPClient What’s new ? This version includes the following new features, fixes, and enhancements for the unified labeling scanner and client: Scanner usage logging in the Windows event log Scanner diagnostics tool improvements Improved scanner details output Updates for the …

Microsoft Cloud App Security – Release 197

Status page deprecation noticeOn April 29, Cloud App Security will deprecate the service health status page, replacing it with the Service Health Dashboard within the Microsoft 365 Admin portal. The change aligns Cloud App Security with other Microsoft services and provides an enhanced service overview.  Only users with Monitor service health permissions can access the dashboard. For more information, …

Microsoft Cloud App Security – Release 195 and 196

Enhanced Shadow IT discovery with Microsoft Defender for EndpointMicrosoft has further improved the Defender for Endpoint integration by leveraging enhanced signals for the Defender agent, providing more accurate app discovery and organizational user context. To benefit from the latest enhancements, make sure your organizational endpoints are updated with the latest Windows 10 updates: KB4601383: Windows …

Temporary Access Pass [Public Preview]

Temporary Access Pass is a game-changer that completes the end-to-end passwordless onboarding experience for your users. Microsoft created Temporary Access Pass to address many of your passwordless account onboarding and recovery scenarios. For a user to truly be passwordless, they shouldn’t know or use their password, and instead use passwordless authentication methods and recovery if …

Update your Apple Configurator profile if Enrollments are Failing with Setup Assistant

Note : This only impacts the iOS/iPadOS device enrollment using Apple Configurator. Only setup assistant workflow is impacted – all other iOS/iPad enrollment workflows are not affected. There was a certificate mismatch between Apple Configurator profiles and the Intune certificate issuing service for iOS/iPadOS enrollment through this setup experience. Existing devices remain enrolled as they …

Audit log improvements introduced in AIP Unified Labeling client 2.8.85

Clarification about audit log improvements introduced in AIP Unified Labeling client 2.8.85, that allow clearer visibility and alignment with Office native audit logs: Audit logs for access events from the unified labeling client are now sent only when users open labeled or protected files, providing a clearer indication of user access. Information types are no …

Microsoft Cloud App Security – Release 192, 193, and 194

Updates to Policies pageMicrosoft has updated the Policies page, adding a tab for every policy category. Microsoft also added an All policies tab to give you a complete list of all your policies. For more information about the policy categorization, see Policy types. Enhanced Office 365 OAuth apps exportMicrosoft has enhanced the Office 365 OAuth …

New release (2.9.116) of AIP UL [General Availability]

Microsoft released AIP UL version 2.9.116 This is maintenance release that includes bug fixes only. It will correct bug that I talked about on a previous post : https://thibaultchatiron.fr/2021/02/03/problem-on-the-latest-version-2-9-111-of-the-aip-client/ For reminder, the issue was for the scenarios where users were not able to view protected files as expected in the following scenarios: When protected files …

Known Issue: Android 10 Samsung A10 Biometric Authentication

There is a known issue with the Android 10 Samsung A10 biometric authorization in case you run into it. Launching any apps with App Protection Policies (APP, also known as MAM) on an Android 10 Samsung A10 with biometric authorization enabled (face recognition/thumbprint) will cause the device to crash. This issue has already been filed …

iOS 14 fails compliance check when passcode expires

Some customers raised several support cases around compliance check behavior in iOS 14. The customer had a compliance policy set with a value for “Password expiration (days)”. Prior to iOS 14, devices would prompt the end user to change the device passcode, and provided they changed it, then the policy condition was met and there …

Problem on the latest version (2.9.111) of the AIP client

An issue was identified in the latest GA version in the AIP Viewer and File Explorer in specific scenarios Some users are not able to view protected files in the following scenarios: When protected files are shared with users who don’t have an AIP policy configured, such as external users. This issue occurs only with …

Microsoft Cloud App Security – Release 189, 190, and 191

New anomaly detection: Suspicious addition of credentials to an OAuth appMicrosoft has extended their anomaly detections to include suspicious addition of privileged credentials to an OAuth app. The new detection is now available out-of-the-box and automatically enabled. The detection can indicate that an attacker has compromised the app and is using it for malicious activity. …

Azure information protection – Unified Labeling client and scanner version 2.9.111 released [General Availability]

New features for the unified labeling client Track document access and revoke access -> this feature still in public preview Added support for additional sensitive information types AIP UL client and scanner are cleared now for China clouds New features for the unified labeling scanner PowerShell support for disconnected scanner servers Support for NFS repositories …

Label separation control [General Availability]

Label separation control between Files & emails to Site & Groups is Generally Available within the Microsoft 365 Compliance Portal. Read more about it at: Use sensitivity labels with Microsoft Teams, Microsoft 365 groups, and SharePoint sites – Microsoft 365 Compliance | Microsoft Docs Integration Enabling sensitivity labels for containers means that you can now …

Azure Blob access time tracking and access time-based lifecycle management preview

Some data in Azure Blob storage is written once and read many times after that. To accurately manage the lifecycle of these data, it is crucial to know the last access/read time. The 17th September, Microsoft announced the public preview of blob access time tracking and access time-based lifecycle management. Once access time tracking is …

Azure Sentinel – Microsoft 365 Defender (MTP) connector now in Public Preview

The 09 November, Microsoft announced that the public preview of the new Microsoft 365 Defender connector is now available. The M365 Defender connector lets you stream advanced hunting logs – a type of raw event data – from Microsoft 365 Defender into Azure Sentinel. It will permit to give you a complete access to the …

End of life – AIP classic client and label/policy management in Azure portal

Azure Information Protection labeling and policy management in the Azure portal, as well as the Azure Information Protection classic client, will reach end of life on April-1-2021. Please plan to migrate to unified labeling and upgrade to the unified labeling client. Learn more about the migration or follow this tutorial.

Best practices for deploying and using the AIP UL scanner

Microsoft summarized what they know about the AIP scanner and share lessons learned while helping their enterprise customers deploy the AIP scanner to production, so that you can avoid possible pitfalls and make your implementation of the AIP scanner easier, faster, more efficient, and get the most out of your investments. In order to read …

Microsoft Cloud App Security – Release 187 and 188

New Shadow IT integration with Menlo SecurityMicrosoft has added native integration with Menlo Security providing you with Shadow IT visibility into app use and control over app access. New Cloud Discovery WatchGuard log parserCloud App Security Cloud Discovery analyzes a wide range of traffic logs to rank and score apps. Now Cloud Discovery includes a …

Microsoft Cloud App Security – Release 184, 185, and 186

New enhanced alert monitoring and management experienceAs part of the Microsoft’s ongoing improvements to monitoring and managing alerts, the Cloud App Security Alerts page has been improved based on customer feedback. In the enhanced experience, the Resolved and Dismissed statuses are replaced by the Closed status with a resolution type. New global severity setting for …