Office 365: hybrid-mode, ADFS, Single Sign On, DirSync

Connect to Office 365 PowerShell

Install the 64-bit version of the Microsoft Online Services Sign-in Assistant: Microsoft Online Services Sign-in Assistant for IT Professionals RTW. Install the 64-bit version of the Microsoft Azure Active Directory Module for Windows PowerShell with these steps: Open the Azure Active Directory Connection web page. In Files in Download at the bottom of the page, click Download for the AdministrationConfig-V1.1.166.0-GA.msi file, and then install it. Open the Windows Azure Read more [...]

Change UPN of all AD users in an OU

Issue: You need to change the User Principal Name (UPN) on a large group of users Solution: The following command will allow you to change the UPN of all users contained in a chosen OU. Get-ADUser -Filter * -SearchBase 'ou=yourOU,dc=yourDomain,dc=com' -Properties userPrincipalName | foreach {Set-ADUser $_ -UserPrincipalName "$($_.samaccountname)"} To test your command and determine who it would apply to, use only this portion initially: Get-ADUser -Filter * -SearchBase 'ou=yourOU,dc=yourDomain,dc=com' Read more [...]

How to exclude Office 365 Global Admin from password expiration policies

Issue: the password expiration of the Office 365 global administrator account will cause Azure AD Connect and DirSync to stop synchronizing on-prem AD to Office 365 Azure AD. Prevention: One solution is to exclude your Office 365 global admin account from password policies and set it's password to never expire.  Note: Always have a very strong password on your Office 365 global admin account. launch an instance of Office 365 PowerShell connected to your tenant Run the following command: Set-MsolUser Read more [...]

How to disable Office 365’s Outlook Junk Email Filter

Issue: After deploying Office 365 you find that your end users are complaining about specific emails going into the Junk folder in Outlook. Background/Applicability: You are continuing to use a third party spam filter solution and this solution sits in front of Office 365.  Prior to Office 365 Junk Email in Outlook was not enabled.  You do not desire to use Office 365 Spam Filtering given your existing Spam Solution. Solution: Read more [...]

Manually running an Azure AD Connect Sync (Delta’s)

Do the following on a the Azure AD Connect Server to Sync Delta Changes Check status of any outstanding sync's processes to see if any are currently running: Get-ADSyncConnectorRunStatus Note: if you get an error that the command is not available, import the module w the following command: Import the AD Sync Module: Import-Module ADSync Kickoff a manual directory sync: Start-ADSyncSyncCycle -PolicyType Delta Additional helpful commands View current sync schedule: Get-ADSyncScheduler Resources: Initial Read more [...]