How to create a backup job to backup the organization objects to Azure blob cool tier repository in Veeam Backup for Microsoft 365 v6
The procedure creates a backup job to backup the organization objects to Azure Blob Cool Tier repositories.
The procedure creates a backup job to backup the organization objects to Azure Blob Cool Tier repositories.
When adding Microsoft Azure Blob storage, different storage account types can be used for Veeam Backup for Microsoft 365.
This procedure upgrades a Windows Server 2012 R2 generation Hyper-V virtual machine to Windows Server 2019 (2022) generation 2 Hyper-V virtual machine.
The Azure archiver appliance is a small auxiliary machine in Microsoft Azure that is deployed and configured automatically by Veeam Backup for Microsoft 365. Veeam services that Veeam Backup for Microsoft 365 installs on the Azure archiver appliance compress data passed through. This helps reduce network traffic and increase the speed of backup copy.
Veeam Backup for Microsoft 365 supports different Azure storage account types for standard and premium performance tiers. Tables in this section list the supported storage account types.
Microsoft is ending support for the Azure Active Directory Graph API. To allow for continued service, if your application providers migrate all Azure Active Directory Synchronization integrations to the MS Graph API, you need to change your API permissions.
If you try to add an organization with modern authentication and legacy protocols or basic authentication at Veeam Backup for Microsoft 365 but failed, the error message is ” Connect to PowerShell: Connecting to remote server outlook.office365.com failed with the following error message: Access is denied”.
You are required to provide a username and password to authenticate to your Microsoft 365 organization if you add an organization using the basic authentication method.
I won’t recommend adding organization with basic authentication, Microsoft announced that effective October 1, 2022, we will begin disabling Basic authentication for Outlook, EWS, RPS, POP, IMAP, and EAS protocols in Exchange Online. SMTP Auth will also be disabled if it is not being used.
You will use both Veeam Backup account and Azure AD application for authentication if you add an organization using the modern authentication method with legacy protocols allowed. Veeam Backup for Microsoft 365 uses Veeam Backup account and an application to establish a connection to your Microsoft 365 organizations with disabled security defaults and maintain data transfer during backup and restore sessions.
When you add an organization using the modern app-only authentication method, you are required to provide Azure AD application settings. Please reference following link to create and configure Azure AD Application permissions.
Veeam Backup for Microsoft 365 Modern Authentication and Legacy Protocols Authentication requires that you grant permissions to Azure AD applications to back up and restore data from/to your Microsoft 365 organizations.
When you add organization using the modern app-only authentication method, the permissions for Azure AD applications that are granted automatically by Veeam Backup for Microsoft 365.
Anyway, if you prefer to use a custom application of your own, make sure to grant all the permissions as below.
Cyberattack is one of the fastest growing crimes in the world, we have seen passwords being leaked regularly, local administrator account is like God of machine, it has superpower to do anything for the machine. A lot of IT guys simply use the same password for all local administrator accounts, the attacker easy access to the whole estate if one machine is breached.
Microsoft LAPS is one of solutions to prevent the issues, The “Local Administrator Password Solution” (LAPS) provides management of local account passwords of domain joined computers. Passwords are stored in Active Directory (AD) and protected by ACL, so only eligible users can read it or request its reset. Today, I am going to show you how to deploy it.
How to move failover clusters on the same hardware to another domain
Today, I am going to show you how to delete a protected OU of Active Directory.
Please on hold to install patches for servers, there are lots of issues happened after install patches, the detail as following information.
Patch Tuesday Megathread (2022-01-12) : sysadmin (reddit.com)
Please wait up to 1 week prior to touching these updates on servers or at least TAKE A BACKUP PRIOR to ANY PATCHING.
If you are trying to promo windows server 2019 as domain controller, it happened “Verification of replica failed. The specified domain {Domain-Name} is still using the File Replication Service (FRS) to replicate the SYSVOL share. FRS is depreciated.” Error, this is because Windows Server version 1709 (or after version) can no longer be added as an Active Directory domain controller (DC) to an existing domain that is still using File Replication Service (FRS) for replication of the SYSVOL share.
Today, I ma going to show you how to configure Cisco DUO two-factor authentication for Outlook Web App of Exchange 2013 and later.