Tips & Tricks #5: Unable to login to Azure SQL Managed Instance using AAD Integrated

Tips & Tricks #5: Unable to login to Azure SQL Managed Instance using AAD Integrated

This article is contributed. See the original author and article here.












Issue:


Trying to login to Azure SQL Managed Instance (MI) from SQL Server Management Studio  (SSMS) using AAD-Integrated keeps getting the below error. However, the user is able to connect to MI using AAD-Password, AAD-MFA and SQL Authentication without any issue:



1.png


 


Below is the detailed error from SSMS:


===================================


Cannot connect to mySQLMI.xxxxxx.database.windows.net.


===================================


One or more errors occurred. (mscorlib)


——————————
Program Location:


   at System.Threading.Tasks.Task.ThrowIfExceptional(Boolean includeTaskCanceledExceptions)
   at System.Threading.Tasks.Task.Wait(Int32 millisecondsTimeout, CancellationToken cancellationToken)
   at System.Data.SqlClient.SqlInternalConnectionTds.GetFedAuthToken(SqlFedAuthInfo fedAuthInfo)
   at System.Data.SqlClient.SqlInternalConnectionTds.OnFedAuthInfo(SqlFedAuthInfo fedAuthInfo)
   at System.Data.SqlClient.TdsParser.TryRun(RunBehavior runBehavior, SqlCommand cmdHandler, SqlDataReader dataStream, BulkCopySimpleResultSet bulkCopyHandler, TdsParserStateObject stateObj, Boolean& dataReady)
   at System.Data.SqlClient.TdsParser.Run(RunBehavior runBehavior, SqlCommand cmdHandler, SqlDataReader dataStream, BulkCopySimpleResultSet bulkCopyHandler, TdsParserStateObject stateObj)
   at System.Data.SqlClient.SqlInternalConnectionTds.CompleteLogin(Boolean enlistOK)
   at System.Data.SqlClient.SqlInternalConnectionTds.AttemptOneLogin(ServerInfo serverInfo, String newPassword, SecureString newSecurePassword, Boolean ignoreSniOpenTimeout, TimeoutTimer timeout, Boolean withFailover, Boolean isFirstTransparentAttempt, Boolean disableTnir)
   at System.Data.SqlClient.SqlInternalConnectionTds.LoginNoFailover(ServerInfo serverInfo, String newPassword, SecureString newSecurePassword, Boolean redirectedUserInstance, SqlConnectionString connectionOptions, SqlCredential credential, TimeoutTimer timeout)
   at System.Data.SqlClient.SqlInternalConnectionTds.OpenLoginEnlist(TimeoutTimer timeout, SqlConnectionString connectionOptions, SqlCredential credential, String newPassword, SecureString newSecurePassword, Boolean redirectedUserInstance)
   at System.Data.SqlClient.SqlInternalConnectionTds..ctor(DbConnectionPoolIdentity identity, SqlConnectionString connectionOptions, SqlCredential credential, Object providerInfo, String newPassword, SecureString newSecurePassword, Boolean redirectedUserInstance, SqlConnectionString userConnectionOptions, SessionData reconnectSessionData, DbConnectionPool pool, String accessToken, Boolean applyTransientFaultHandling, SqlAuthenticationProviderManager sqlAuthProviderManager)
   at System.Data.SqlClient.SqlConnectionFactory.CreateConnection(DbConnectionOptions options, DbConnectionPoolKey poolKey, Object poolGroupProviderInfo, DbConnectionPool pool, DbConnection owningConnection, DbConnectionOptions userOptions)
   at System.Data.ProviderBase.DbConnectionFactory.CreateNonPooledConnection(DbConnection owningConnection, DbConnectionPoolGroup poolGroup, DbConnectionOptions userOptions)
   at System.Data.ProviderBase.DbConnectionFactory.TryGetConnection(DbConnection owningConnection, TaskCompletionSource`1 retry, DbConnectionOptions userOptions, DbConnectionInternal oldConnection, DbConnectionInternal& connection)
   at System.Data.ProviderBase.DbConnectionInternal.TryOpenConnectionInternal(DbConnection outerConnection, DbConnectionFactory connectionFactory, TaskCompletionSource`1 retry, DbConnectionOptions userOptions)
   at System.Data.ProviderBase.DbConnectionClosed.TryOpenConnection(DbConnection outerConnection, DbConnectionFactory connectionFactory, TaskCompletionSource`1 retry, DbConnectionOptions userOptions)
   at System.Data.SqlClient.SqlConnection.TryOpenInner(TaskCompletionSource`1 retry)
   at System.Data.SqlClient.SqlConnection.TryOpen(TaskCompletionSource`1 retry)
   at System.Data.SqlClient.SqlConnection.Open()
   at Microsoft.SqlServer.Management.SqlStudio.Explorer.ObjectExplorerService.ValidateConnection(UIConnectionInfo ci, IServerType server)
   at Microsoft.SqlServer.Management.UI.ConnectionDlg.Connector.ConnectionThreadUser()


===================================


One or more errors occurred. (mscorlib)


——————————
Program Location:


   at System.Threading.Tasks.Task.ThrowIfExceptional(Boolean includeTaskCanceledExceptions)
   at System.Threading.Tasks.Task`1.GetResultCore(Boolean waitCompletionNotification)
   at System.Threading.Tasks.Task`1.get_Result()
   at System.Data.SqlClient.SqlInternalConnectionTds.c__DisplayClass134_1.b__0()
   at System.Threading.Tasks.Task`1.InnerInvoke()
   at System.Threading.Tasks.Task.Execute()


===================================


<S:Envelope xmlns:wsa="http://www.w3.org/2005/08/addressing” xmlns:wsse=”http://docs.oasis-open.org/wss/2004/01/oasis-200401-wss-wssecurity-secext-1.0.xsd” xmlns:wsu=”http://docs.oasis-open.org/wss/2004/01/oasis-200401-wss-wssecurity-utility-1.0.xsd” xmlns:wsp=”http://schemas.xmlsoap.org/ws/2004/09/policy” xmlns:wst=”http://schemas.xmlsoap.org/ws/2005/02/trust” xmlns:S=”“>http://www.w3.org/2003/05/soap-envelope”> S:mustUnderstand=”1″ wsu:Id=”Action”><A class="fui-Link ___1eya986 f3rmtva f1ewtqcl fyind8e f1k6fduh f1w7gpdv fk6fouc fjoy568 figsok6 f1hu3pq6 f11qmguv f19f4twv f1tyq0we f1g0x7ka fhxju0i f1qch9an f1cnd47f fqv5qza f1vmzxwi f1o700av f13mvf36 f1cmlufx f9n3di6 f1ids18y f1tx3yz7 f1deo86v f1eh06m1 f1iescvh fhgqx19 f1olyrje f1p93eir f1nev41a f1h8hb77 f1x7u7e9 f10aw75t fsle3fq f17ae5zn" title="http://schemas.xmlsoap.org/ws/2005/02/trust/rstr/issue%3c/wsa:action%3e%3cwsa:to" href="http://schemas.xmlsoap.org/ws/2005/02/trust/RSTR/Issuehttp://schemas.xmlsoap.org/ws/2005/02/trust/RSTR/Issue S:mustUnderstand=”1″ wsu:Id=”To”><A class="fui-Link ___1eya986 f3rmtva f1ewtqcl fyind8e f1k6fduh f1w7gpdv fk6fouc fjoy568 figsok6 f1hu3pq6 f11qmguv f19f4twv f1tyq0we f1g0x7ka fhxju0i f1qch9an f1cnd47f fqv5qza f1vmzxwi f1o700av f13mvf36 f1cmlufx f9n3di6 f1ids18y f1tx3yz7 f1deo86v f1eh06m1 f1iescvh fhgqx19 f1olyrje f1p93eir f1nev41a f1h8hb77 f1x7u7e9 f10aw75t fsle3fq f17ae5zn" title="http://schemas.xmlsoap.org/ws/2004/08/addressing/role/anonymous%3c/wsa:to%3e%3cwsse:security" href="http://schemas.xmlsoap.org/ws/2004/08/addressing/role/anonymoushttp://schemas.xmlsoap.org/ws/2004/08/addressing/role/anonymous S:mustUnderstand=”1″><wsu:Timestamp wsu:Id="TS" xmlns:wsu="2021-06-03T14:54:06.2749193Z2021-06-03T14:59:06.2749193Z2021-06-03T14:54:06.2749193Z2021-06-03T14:59:06.2749193Z”>http://docs.oasis-open.org/wss/2004/01/oasis-200401-wss-wssecurity-utility-1.0.xsd”>2021-06-03T14:54:06.2749193Z2021-06-03T14:59:06.2749193Z xmlns:S=”“>http://www.w3.org/2003/05/soap-envelope”> xmlns:wsu=”http://docs.oasis-open.org/wss/2004/01/oasis-200401-wss-wssecurity-utility-1.0.xsd” xmlns:wsp=”http://schemas.xmlsoap.org/ws/2004/09/policy” xmlns:wst=”“>http://schemas.xmlsoap.org/ws/2005/02/trust”> xmlns:wsa=”“>http://www.w3.org/2005/08/addressing”> xmlns:psf=”0x8004882c0x80045b00″ target=”_blank” rel=”noreferrer noopener” aria-label=”Link http://schemas.microsoft.com/Passport/SoapServices/SOAPFault”>0x8004882c0x80045b00″>http://schemas.microsoft.com/Passport/SoapServices/SOAPFault”>0x8004882c0x80045b00 (System.Data)



Reason:


This error may occurs when the computer account “AZUREADSSOACC” has an issue such as being removed or disabled for some reason.


How this account created:


When you enable Azure Active Directory Seamless Single Sign-On feature from Portal; this account will be created in your on-premises Active Directory (AD) in each AD forest that you synchronize to Azure AD (using Azure AD Connect), along with a number of Kerberos service principal names (SPNs) that are created to be used during the Azure AD sign-in process.


Azure Active Directory Seamless Single Sign-On feature will allow the users to login to their Azure SQL without the need to type in their passwords, and usually, even type in their usernames as shown below: 

3.png



Mitigation:



  • If the user removed the computer account “AZUREADSSOACC“, we recommend to re-enable the Azure Active Directory Seamless single sign-on feature if possible.

  • If the user disabled the computer account “AZUREADSSOACC“, they can follow the below steps to enable it back:


    • To open Active Directory Users and Computers, click Start, click Control Panel, double-click Administrative Tools, and then double-click Active Directory Users and Computers.




    • In the console tree, click Computers.


      Where? Active Directory Users and Computersdomain nodeComputers


      Or, click the folder that contains the computer account that you want to enable as shown below:

      4.png




    • In the details pane, right-click the desired computer account, and then click Enable Account.






For more information about this issue, please refer to the following documents:



 












Microsoft Purview in the Real World (August 11, 2023) – Encrypted Emails and Purview eDiscovery

Microsoft Purview in the Real World (August 11, 2023) – Encrypted Emails and Purview eDiscovery

This article is contributed. See the original author and article here.

James_Havens_1-1691794039632.png


 


 


 


Disclaimer


This document is not meant to replace any official documentation, including those found at docs.microsoft.com.  Those documents are continually updated and maintained by Microsoft Corporation.  If there is a discrepancy between this document and what you find in the Compliance User Interface (UI) or inside of a reference in docs.microsoft.com, you should always defer to that official documentation and contact your Microsoft Account team as needed.  Links to the docs.microsoft.com data will be referenced both in the document steps as well as in the appendix.


All the following steps should be done with test data, and where possible, testing should be performed in a test environment.  Testing should never be performed against production data.


 


Target Audience


Microsoft customers who want to better understand Microsoft Purview.


 


 


Document Scope


The purpose of this document (and series) is to provide insights into various user cases, announcements, customer driven questions, etc.  It is not meant as the final answer to all Purview related questions.


 


 


Topics for this blog entry


Here are the topics covered in this issue of the blog:



  • Topic – Purview related eDiscovery and Office Message Encrypted (OME) emails

  • Use Case #1 – legal or HR review of Office Message Encrypted (OME) emails within Purview eDiscovery

  • Use Case #2 – legal or HR review of OME emails that have been exported from Purview to a PST and/or Exchange Mailbox and then opened within an Outlook thick client.


 


Out-of-Scope


This blog series and entry is only meant to provide information, but for your specific use cases or needs, it is recommended that you contact your Microsoft Account Team to find other possible solutions to your needs.


 


Not done – OME and eDiscovery


 


 


1 – Roles Based Access Control (RBAC) for Purview


 


If you want to leverage Purview RBAC roles to access and view emails/files, you will need to open the Purview eDiscovery console.  The Purview RBAC roles are not “usable” within Outlook thick or thin clients.


Here is a link to the RBAC information and a screenshot related specifical the Review role within that RBAC:


Assign eDiscovery permissions in the Microsoft Purview compliance portal | Microsoft Learn


 


 


James_Havens_0-1691794131776.png


 


2 – Accessing emails that have been encrypted via OME inside of Purview eDiscovery


 



  • Let us first understand how Purview deals with encrypting/decrypting data, as it relates to eDiscovery.  The following chart from Microsoft documentation should provide more light on what is decrypted in the Standard and Premium versions of Purview.


 


Decryption in Microsoft Purview eDiscovery tools | Microsoft Learn


 


James_Havens_1-1691794176828.png


 



  • The following is the link and screenshot to the Microsoft documentation that tells you what Purview eDiscovery tasks can be run on encrypted data.


 


Decryption in Microsoft Purview eDiscovery tools | Microsoft Learn


 


James_Havens_2-1691794191848.png


 


 



  • In conclusion, if you have the proper version of Purview eDiscovery (ie. Premium) and the proper RBAC role, you can view emails that have been encrypted using OME.


 


3 – Accessing emails that have been encrypted via OME and then exported to a PST and/or Exchange mailbox


 


 


Before we start this section, please note that review of eDiscovery related data from within Outlook is not a Microsoft best practice.  We recommend you perform your reviews from within Purview eDiscovery or another eDiscovery solution designed for legal and HR investigations.


 


With that being stated, let us look at what options are available if you do decided to try and review encrypted (OME) that has been exported from Purview eDiscovery.


 



  • First, let us return to the supported decryption charted from above, we can see what versions of Purview support decryption of data when exporting to PST files.


 


Decryption in Microsoft Purview eDiscovery tools | Microsoft Learn


 


James_Havens_2-1691794272908.png


 


 



  • Next, let us again return to one of the charts above, notice that you can export encrypted data (to email/PST).  This applies to the export of encrypted data but DOES NOT decrypt data as part of its export process.


 


 


Decryption in Microsoft Purview eDiscovery tools | Microsoft Learn


 


James_Havens_1-1691794261702.png


 


 



  • So, this begs the following:

    • Question – if my data is exported and still encrypted with OME, how can I read OME emails from the exported PST file?




 



  • Answer – The official answer is you need additional rights tied back to RMS, in particular the RMS Decrypt role.  Please note the information in the following link and screenshot for specifics.


 


 


Decryption in Microsoft Purview eDiscovery tools | Microsoft Learn


 


 


James_Havens_0-1691794248122.png


 


 


From the link and screenshot above, there are 2 items listed:



  • You need to assign the RMS Decrypt role to your user performing the review.  This is separate from the Reviewer role specific to Purview eDiscovery.

  • It is recommended that you run the ScanPST.exe tool on the exported PST.  This tool does not decrypt data only verifies and fixes PST files that might have become corrupted.


 


Important Note


 


For a deeper understanding of what rights are needed and work flow you should follow (if you are pursuing this email review process) you should contact your Microsoft Account Manager or certified Microsoft Partner.


 


Appendix and Links



 



 



 



 


 

Understanding your Azure savings plan recommendations

Understanding your Azure savings plan recommendations

This article is contributed. See the original author and article here.

Learn how you can save money with the Azure saving plan recommendations. with your host Thomas Maurer and Azure savings plan expert Obinna Nwokolo.


 


Azure savings plan feature recap.


 


Azure savings plan for compute is an easy and flexible way to save money on compute services spend compared to pay-as-you-go (PAYG) prices. What customers do is you can commit to an hourly amount to spend over a one to three-year and in exchange for that you get significant discounts over the on-demand prices.


 


Purchase savings plans in the Azure portal.


 


You can purchase Azure savings plan by going to Azure Portal.


 



  1. Login to the Azure Portal.

  2. In the search box, search for “Savings plan”, click on that.


 


AriyaKhamvongsa_0-1691740373514.png


 



  1. You’ll be brought to the Savings plan blade where you can click “Add” and then you can go through the purchasing process just by filling out the necessary information.


How are savings plan recommendations generated?


 


Thomas mentioned that when he talks to customer using the savings plan, he gets a few common questions such as “How much commitment should I make?” or “How do I select the right savings plan?” and so on because it varies by individual cases One other question, he gets asked is “How are Azure savings plans recommendations generated?”


 


From Obinna’s experience it is very difficult to figure out exactly how much to commit and so Microsoft tries to do that work for you. Microsoft looks at your hourly usage, what you’ve spent on savings plan eligible resources over the last 7, 30, and 60 days. Then Microsoft does some calculations where they try to determine what would have been the optimal savings plan amount for each hour within the 7, 30, or 60 day timeframe. Then Microsoft takes that optimal savings plan amount and attempts to simulate what would have happened had you made that savings plan purchase and your savings projected. After all those simulations have been done, Microsoft takes the top ten of those simulations that resulted in positive savings and presents those to you as recommendations. Your recommendations are based on what you’re actually spending.


 


Demo of Azure savings plan and explanation of calculations.


 


In the video below there is a segment where there is a demo. For example, let’s talk about a customer that would be a good fit for Azure savings plan. Our fictional customer Contoso runs a helpdesk service and because they are serving globally, it’s important for them to leverage compute services through multiple regions over the course of the day.


 


AriyaKhamvongsa_1-1691740373540.png


 


 


This makes them a really good candidate for the Azure savings plans. So, in this example how does Microsoft generate the recommendation is going to go through several steps.


 



  1. Microsoft figures out what did you spend, this could be called the “commitment candidates”. These are the amounts that say for this hour this is the optimal savings plan amount.

  2. Then some simulations are run where Microsoft figures out what you would have saved if you had that commitment.

  3. Then Microsoft simulates all 720 commitment candidates; it is going to say here are the top 10 and this is what we’re going to present to you as a customer.


 


AriyaKhamvongsa_2-1691740373556.png


 


 


To recap, Microsoft wants to start by looking at your usage. In this scenario, when Microsoft looks at Contoso’s usage over 720 hours. Microsoft goes through hour one, hour two all the way down to the last hour for that period and says “this is your usage and what did they actually spend?”.


 


You can see how this is calculated in this example a little bit over $7.00, so $7.32 and fractions of that. Then Microsoft says, “let’s figure out that same answer for all of the remaining hours within that 30 day look back period.” Which in this case is 720 distinct hours (24 hours x 30 days = 720 hours). So now that Microsoft knows what they were spending for every single hour, Microsoft wants to understand what the optimal savings plan amount is for each one of those hours.


 


Microsoft then applies the Azure savings plan discount for each one of those hours and then calculates what’s the net resultant savings plan commit optimal amount. So, in this example their usage of on demand cost was $7.32 for hour one. When the savings plan discounts are applied, we find that the right amount for them, from a savings plan perspective, is a little bit more than $3.30.


 


So, we now know this is the optimal amount for our number one. Let’s take our number one’s value and apply to our number two, our number three and all the remaining hours in that 720-hour window. And so, we’re going to follow the benefit application rules that exist for savings plan, look at the meter that has the greatest discount and apply the savings plan to that first and then work our way down. As we go through that process in this particular example, we find that a $3.30 savings plan isn’t actually enough to fully cover that first meter so there’s going to be some overage. We’re going to fully consume the savings plan and then we’re going to incur an on-demand cost of $1.57. Then we’re going to go on that second meter and we’re going to, because the savings plan is gone, just charge that one as the full on-demand rate. So, the net of this is as we go through this, we see that we incurred a total simulated cost of $6.87. That’s actually still better than the on-demand cost that the customer had coming in which was $7.32. So, this $3.30 savings plan for our number two resulted in a net savings of $0.44 which is progress. As we go through each one of those hours, if a candidate results in a positive savings, we want to keep it because it’s got potential but if it doesn’t, we want to discard it. So we’re going to run this analysis for our number two, our number three, all the way to 720 when we finish for each individual hour, each individual simulation, we want to compare all of them.


 


In this case, again, we have 720 candidates. We’re going to simulate each one of those against every single hour. The result of this is about a little bit over 500,000+ calculations in this period and when we finish this whole process, we’re going to select up to the top 10 candidates that actually resulted in savings and that’s what you end up seeing within the Azure portal UI when you click into the billing into the hourly commitment.


 


You’ll see in this example we’ve presented for $1.43 all the way to $1.43 and a little bit more change along with providing the commitment amount, we do provide additional information. It says here’s your expected savings percentage as well as the expected coverage and this is the coverage that this savings plan and any other reservations and or savings plan you’ve previously purchased would have provided for you.


 


We think that’s really good information to help you make the right choice, but you still also have the ability to put a custom amount if you want to go a little bit less. We wouldn’t recommend going over because as you go over you have additional waste and again this is focused on making sure we provide you with the greatest cost savings.


 


Resources to help you learn more about Azure savings plan.


 


Microsoft has lots of resources to help you figure this out. Learn more at the Azure savings plan for compute https://aka.ms/savingsplan-compute to understand broadly how savings plan works. You can also read about Azure savings plan for compute at Microsoft Learn https://aka.ms/savingplans/doc and about Cost Management APIs at Microsoft Learn https://aka.ms/CostManagement/API.


 


Recommended Next Steps:


 


 If you’d like to learn more about the general principles prescribed by Microsoft, we recommend Microsoft Cloud Adoption Framework for platform and environment-level guidance and Azure Well-Architected Framework. You can also register for an upcoming workshop led by Azure partners on cloud migration and adoption topics and incorporate click-through labs to ensure effective, pragmatic training.


 


You can view the whole video below.


 


AriyaKhamvongsa_3-1691740373562.jpeg


 


 

Azure Marketplace new offers – August 10, 2023

Azure Marketplace new offers – August 10, 2023

This article is contributed. See the original author and article here.

We continue to expand the Azure Marketplace ecosystem. For this volume, 106 new offers successfully met the onboarding criteria and went live. See details of the new offers below:


 



































































































































































































































































































































































































































Get it now in our marketplace


Atalo.png

Atalo: Hosted and powered by Microsoft Azure, Atalo by Cadvil helps businesses manage all aspects of operations such as HR, production, finance, inventory, and more. Increase efficiency and drive growth with this comprehensive solution with affordable SaaS pricing.


Avanti - Managed Cloud Development Platform.png

Avanti – Managed Cloud Development Platform: Focus on value and time to market and let the Avanti platform manage all the infrastructure components involved in your software development cycle. Avanti is optimized for Microsoft Azure and follows Microsoft guidelines for a scalable and secure setup.


C3 Generative AI Production Pilot.png C3 Generative AI: Production Pilot: The C3 Generative AI production pilot facilitates a transformative human-computer interaction approach allowing enterprise users to quickly access critical information and relevant data through a natural language interface.
Cadvil SPOT.png

Cadvil SPOT: SPOT by Cadvil is an employee engagement and recognition application designed to increase employee morale, collaboration, team building, and production while reducing attrition, absenteeism, employee conflicts, training costs, and HR workload.


CGT Watch.png

CGT Watch: This SaaS platform offers a comprehensive suite of tools for biopharma executives to access information and gain valuable insights about cell and gene therapy developments. Stay ahead of market trends and maximize opportunities for success with CGT Watch.


Ciro Hotel Booking Engine.png

Ciro Hotel Booking Engine: Search hotel listings and book rooms with this app from Tecnoglare Infotech Pvt. Ltd. Sort listings by location, price, name, and star category. The solution can be integrated with all major payment gateways.


CIS Benchmark L1 on Microsoft Windows 11 Enterprise.png

CIS Benchmark L1 on Microsoft Windows 11 Enterprise: Center for Internet Security (CIS) provides an image of Microsoft Windows 11 Enterprise that’s hardened according to a CIS Benchmark. Level 1 (L1) profile settings within the CIS Benchmark have been applied to provide clear security benefits.


CKYC for Banking and Financial Institutions.png

ShareDocs Enterpriser CKYC Management Tool: ShareDocs Enterpriser provides a central repository for banking and financial institutions to maintain know-your-customer records. ShareDocs Enterpriser uses face recognition technology to automatically capture photos and data from forms.


Client-Side Global Server Load Balancer.png

Client-Side Global Server Load Balancer: DynConD’s client-side GSLB (global server load balancer) is used by replicated and distributed network services for optimal server selection by taking into account network distance, service response time, and server load.


CloudCasa Kubernetes Backup Service.png

CloudCasa: Kubernetes Backup Service: CloudCasa, a backup, recovery, and cluster migration service that’s compatible with Azure Kubernetes Service, lets you centrally manage the open-source backup tool Velero across multiple clusters and cloud providers.


CloudDRaaS for VMware Cloud Director .png

CloudDRaaS: C-Data’s CloudDRaaS is a disaster recovery solution for VMware Cloud Director and vSphere. Users can replicate tenant vSphere workloads between an on-premises vCenter Server instance and a provider-hosted instance, or between provider-hosted vCenter Server instances.


CUBIKA Big Insight - Low Code Big Data Management.png

CUBIKA Big Insights: CUBIKA Big Insights applies machine learning, analytics, and Digital Dialogue’s natural language processing to task automation, categorizing, and standardizing data. Manage your big-data environment with an automated, governed, and secure platform.


Custom LLM Model Training for Chat Search Service.png

Custom LLM Model Training for Chat Search Service: Neuu Labs Pvt. Ltd.’s Chat.usln.in platform lets you train chatbots on custom data so it can respond to queries. The large language model (LLM) training is appropriate for customer support, sales assistance, task automation, or information retrieval.


Debian 11.png

Debian 11: This offer from AskforCloud provides Debian 11 on a Microsoft Azure virtual machine. Debian is an open-source Linux-based operating system known for stability and smooth upgrade processes.


Debian 11 bullseye.png

Debian 11 Bullseye: This offer from AskforCloud provides Debian 11 (called Bullseye in development) on a Microsoft Azure virtual machine. Debian is an open-source Linux-based operating system known for stability and smooth upgrade processes.


decisionOS Cutting Edge Causal AI.png

decisionOS by Causal AI: decisionOS powered by Causal AI is a suite of Python packages that can determine the causal effect of your actions and root cause of outcomes. You can assess, quantify, and fix the fairness of your data and models different business-critical scenarios.


Deepsight AI Platform.png

Deepsight AI Platform: DeepSight AI Labs’ computer vision platform utilizes AI to quickly parse your video analytics data so you can instantly detect specific objects and potential threats from multiple live cameras. It can be integrated with various IoT devices to make your existing setup smarter. 


Digital Platform Conductor Automate Intelligently.png

Digital Platform Conductor: ReadyWorks offers a comprehensive view of your IT estate by automating critical workflows and accurate compliance in your IT processes. It analyzes crucial data, facilitating responses to security and compliance audits with verified asset data, ensuring CMDB accuracy.


eekox for Remote Workspace Management.png

eekox for Remote Workspace Management: eekox’s Work as a Service (WaaS) credit-based solution empowers corporate nomads in your organization by providing them with an ideal workspace that promotes productivity and well-being. The platform utilizes Microsoft Azure for scalability and security.


eekox for Team Building.png

eekox for Team Building: Designed to foster team unity and cohesion, eekox’s instant booking tool allows employees to choose the best space and plan for team building. Foster unity in remote work environments and ensure your team functions smoothly.


E-invoice and E-way bill.png

E-Invoice and E-Way Bill: Experience the convenience of integrating and generating E-Invoices and E-Way Bills with LogiTax’s solution. The app offers real-time validation, seamless integration, and instant transmission leading to faster processing and improved cash flow.


Engauge.png

Engauge: Utilizing a single, unified interface that houses multiple CPaaS companies and gateway providers, Engauge by Decisive Analytical Systems enables digital marketing agencies to capitalize on cost-saving opportunities, streamline invoice management, and deliver a consistent UI/ UX experience.


ERP FOR PHARMA.png

ERP for Pharma: This ERP suite of solutions for Pharma provides end-to-end bidirectional traceability, ensures compliance, and enhances the quality, consistency, and speed to deliver drugs to market. The application allows you to streamline your workflow and cut production costs.


ERP SMS.png

ERP School Management System (SMS): This integrated educational ERP solution streamlines, automates, and simplifies campus administration and enables educators to make quick and thoughtful decisions that enhance student and faculty performance and ultimately drives institutional growth.


FinanzOS for Tally.png

FinanzOS for Tally: Reconcile all your accounting data sets across a wide range of sources with FinanzOS, a finance automation platform from Thoughtle Technologies. Enhance productivity and improve your cash flow efficiency via insights into your accounts receivable and accounts payable data.


FinStinct.png

FinStinct: FinStinct uses the power of AI/ML and NLP to automate and streamline the processing of unstructured data in the financial services industry. It can even convert complex financial and legal documents into personalized videos for analysis.


FinView.png

FinView: Enhance your customer engagement by converting complex bank, credit card, portfolio, and mutual fund statements into personalized videos. FinView sends the video clip of the research highlights and statement analysis by secure email to your clients.


FlyPal-CRS.png

FlyPal-CRS: Simplify crew management and ensure the proper balance of competent, well-rested crew members on board with FlyPal Crew Rostering System (CRS) from BytzSoft. The application can be configured to meet the needs of general aviation operations or commercial airlines.


FlyPal-SMS neo.png

FlyPal-SMS Neo: Proactively mitigate safety risks and enable data-driven decision making with aviation app FlyPal Safety Management System (SMS) Neo from BytzSoft. Comprehensive incident analysis tools and modules ensure compliance with international safety regulations.


FocusX - AI-Powered ERP.png

FocusX – AI-Powered ERP: This AI-powered ERP with in-memory computing and industry-ready templates empowers businesses with ML-driven statistics, predictive analytics, and forecasting. Customers can cherry-pick their desired modules for effective communication and secure transactions.


Foresiet.png

Foresiet: This SaaS offer from Foresiet provides an AI-powered integrated digital risk protection platform that can identify and forecast risks by analyzing over 100+ unique vectors across on-premises and cloud deployments. Get deeper visibility through content-specific threat intelligence.


Goodbook.png

Goodbook: Experience the convenience of quickly generating custom pay slips with Goodbook’s intuitive platform. The application provides personalized pay slips and simplifies your payroll process, even if you have no prior accounting knowledge.


GST Return & Reconciliation.png

GST Return & Reconciliation: LogiTax streamlines the filing process, saving time and ensuring accuracy, thereby optimizing cash flow during upload for businesses with multiple GSTINs. It provides intelligence-driven reconciliation reports for easy ITC claims and vendor management.


HiFairs Virtual Art Rooms.png

HiFairs: Virtual Art Rooms: This SaaS offer from HIDS Technologies uses augmented, virtual, and extended reality to create 2D and 3D virtual art rooms. It supports artists, buyers, and sponsors by creating a digital ecosystem to assist with branding and selling of art products.


HiLearner Interactive Platform for Learning.png

HiLearner: Interactive Platform for Learning: Designed to support e-learning, this SaaS offer from HIDS Technologies uses augmented, virtual, and extended reality to host, design, and tailor your classrooms, workshops, and labs. Learn to do more with less, while maintaining scalability and reliability.


iAQT.png

iAQT: iAQT is an end-to-end SaaS platform for managing your Out-of-Home (OOH) media inventory. It ensures continued visibility of point-of-sale visual media assets and real time campaign status reporting for closed loop management.


iCert Global HRM.png

iCert Global HRM: Streamline administrative tasks and engage effectively with customers by delivering personalized experiences through the right channels at the right time with iCert Global HRM. This comprehensive HR management solution fosters customer loyalty.


iCertGlobal LMS.png

iCertGlobal LMS: iCert Global’s Learning Management System is a self-paced, live online training solution providing professional certification courses. Accelerate your career with data-driven digital classrooms that offers seamless collaboration between students and teachers.


Ideanote.png

Ideanote: Ideanote enables goal-driven innovation by collecting, developing, and managing ideas efficiently within Microsoft Teams. Available in multiple languages, the app helps enterprise users achieve strategic goals, enhance customer experiences, and reduce costs.


iMXM.png

iMXM: This mobile-enabled point-of-sale visual merchandise management solution is tailored for retail chains and brands. iMXM manages your media inventory across stores, right from planning to installation and monitoring, with real time inventory analytics and campaign planning.


iTrans.png

iTrans: An IoT-based solution, iTrans is a blood transportation and Haemovigilance box that addresses key principles for bedside transfusion safety. It ensures patient identification alignment connecting the Haemovigilance checklist directly with the blood issue process for enhanced safety and accuracy.


KappaX.png

KappaX: KappaX significantly enhances customer engagement, brand recall, and sales with AI-powered interactive experiences. The collaborative, no-code platform combines customer experience with interactive storytelling and uses videos to drive brand action.


Kriyam FieldSutra.png

Kriyam FieldSutra: Kriyam FieldSutra streamlines field operations by automating and optimizing your workforce scheduling, dispatching, and tracking. The app provides real time updates allowing you to make informed decisions and respond quickly to customer service requests.


Kyvos.png

Kyvos: Kyvos’ semantic layer solution simplifies and accelerates analytics for business intelligence and data science teams. It allows you to analyze massive amounts of historical data at scale while enabling sub-second query response times for complex queries.


Laabam One ERP.png

Laabam One ERP: This SaaS offer from Laabam provides an end-to-end cloud-based enterprise resource planning solution to optimize operations around billing, accounting, GST, and stocks. It supports mobile app integration for efficient data handling and management.


Lever.Tax Lite.png

Lever.tax Lite: Designed for startups and small businesses, Lever.tax Lite simplifies the process of accessing tax credits for R&D expenses related to employee salaries. The solution offers a user-friendly form for eligibility assessment, application preparation, and submission.


Lever.Tax Premium.png

Lever.tax Premium: Experience a simpler, faster, and more cost-effective approach to obtaining tax benefits with AI-powered Lever.tax Premium. The app generates R&D reports and application details for tax credits tailored to your country’s rules and requirements.


MFISM - Multi Features IoT Smart Energy Meter.png

Multi Feature IoT Smart Energy Meter: This app from Delving Research measures 3-phase electrical parameters as well as physical parameters using IoT sensors. It works via GSM, Wi-Fi, or Ethernet and can calculate required capacitor values for power factor improvement with alarm/trip controls.


MTARGET The Email Company.png

MTARGET: The Email Company: MTARGET helps deliver personalized emails at scale without having your organization maintain its own email server. Gather high-quality leads and retain customers using this AI-powered platform with SMTP relay, transactional email API, email validator, and more.


NetApp BlueXP (Annual).png

NetApp BlueXP (Annual): BlueXP abstracts the complexity of architecting underlying Azure infrastructure resources, making it easier to deploy and operate NetApp’s storage, mobility, protection, and analysis services within your Azure environment. This offer is for an annual subscription.


Novus.png

Novus: Novus streamlines the organization of conference data and offers seamless navigation across multiple conferences relating to oncology. It fosters networking, encourages attendee feedback, and integrates with popular calendar applications.


Omada Identity Cloud.png

Omada Identity Cloud: Omada Identity Cloud is a robust identity, governance, and administration service solution. It enhances your Azure Active Directory environment by monitoring identities, groups, teams, and data along with access management workflows and advanced identity analytics.


Omnisient Secure Data Sharing & Exchange Platform.png

Omnisient: Omnisient’s platform allows businesses to securely share, monetize, and access 1st party data. It enables businesses to perform market benchmarking and create new revenue streams while protecting consumer privacy and ensuring data sovereignty.


Plumb5.png

Plumb5: Plumb5 is a customer engagement platform that automates conversion and retention strategies in real time by intelligently connecting all customer touchpoints. It helps your business grow exponentially with effective tagging strategies and auto segmentation.


Qualitas EagleEye Edge Application.png

Qualitas EagleEye Edge Application: This standalone application offers on-premises deployment of AI models allowing you to effortlessly run AI models in any framework. The Qualitas EagleEye Edge deployment tool is used for image capture, annotation, deep learning training, and more.


Qualitas EagleEye Platform.png

Qualitas EagleEye Platform: Qualitas EagleEye Platform automates quality control in manufacturing using computer vision technology to extract insights from visual data, streamline tasks, and improve decision-making processes through data labelling, report generation, and inferencing.


Relatude CMS.png

Relatude CMS: Relatude, a unique content management system focused on APIs, offers a combination of AI capabilities, a graph-based content model, and an efficient core engine. Its intuitive user interface caters to content producers while providing developers with data models for advanced functionality.


Relatude E-commerce.png

Relatude E-Commerce: Whether you’re working on critical B2B e-commerce solutions or simple B2C web shops, the Relatude e-commerce application seamlessly blends content and commerce, enabling you to build a cohesive online business.


Relatude Web Application Framework.png

Relatude Web Application Framework: Relatude Web Application Framework (WAF) rapidly develops advanced web applications with AI-powered features, graph-based content model, and an efficient core engine. Developers can reduce risks and save time as WAF handles a significant portion of the code.


Rexo Campus.png

Rexo Campus: Designed to help students make informed decisions, Rexo Campus provides data transparency and convenience for educational institutions. The software assists with student registration, examination management, fee collection, HR, and payroll.


Rexo-ERP.png

Rexo ERP: Rexo ERP is a flexible, scalable solution that offers multiple cross-platform features to meet the specific needs of educational institutions. It helps schools of any size manage students, teachers, courses, and academic programs using big data and cloud analytics.


Safetrans.png

Safetrans: SafeTrans is a vein-to-vein blood transfusion traceability software that tracks, records, and supports good transfusion practices. It enables blood banks to eliminate cognitive process-based bias errors by ensuring consistent adherence to configured blood transfusion rules.


Shevalues - Diversity Hiring (SaaS).png

SheValues – Diversity Hiring (SaaS): SheValues is a SaaS-based recruitment platform that promotes gender equality in the workplace by connecting women in non-IT segments with job opportunities. It aids in candidate sourcing, applicant tracking, and collaborative decision-making during hiring.


Taskurai.png

Taskurai: Taskurai is a scalable platform for running background tasks and jobs using serverless queues and containers. Build your applications with a powerful and easy to use .NET SDK that’s designed to be robust and resilient and equipped with automatic and configurable retry patterns.


TeamPilot Enterprise Workforce Management .png

TeamPilot Feild Service Management: TeamPilot Field Services by LocationGuru empowers service organizations to efficiently dispatch and monitor their teams in the field while digitizing work orders, expense claims, and inventory management.


Tekmon ESG Reporting.png

Tekmon ESG ReportingTekmon’s no-code platform allows users to easily browse prebuilt templates and automate data collection processes to address environmental, social, and governance issues. It enables organizations to create value from their ESG strategy, data, and reporting.


Thirdray Data Platform.png

ThirdRay Data Platform: ThirdRay Data Platform is a cloud-based service that automates extraction, processing, analytics, and integration of structured content from documents, video, and voice assets to create real-time actionable business insights.


TxHelpDesk.png

TxHelpDesk: TxHelpDesk is an omnichannel ticketing tool that allows businesses to deliver a unified and consistent support experience by centralizing customer interactions, automating workflows, and ensuring efficient handling and monitoring of customer requests.


Video Analytics, Transcoding & Storage Optimisation.png

Video Analytics, Transcoding & Storage Optimization: Neuu Labs’ video and image converter supports an extensive range of formats, ensuring compatibility with different devices and platforms. With just a few clicks, you can convert your media files to the format that suits your needs.


Vision AI For Manufacturing.png

Vision AI For Manufacturing: Using advanced machine learning algorithms, Thinking Stack’s Vision AI for Manufacturing optimizes operational efficiency, improves product quality, and increases safety standards across the factory floor.


Vision AI For Retail Sector.png

Vision AI For Retail Sector: Thinking Stack’s Vision AI for Retail ensures that your store layout and product placement comply with your planogram. It also provides crowd analytics by processing real-time video feeds and sends alerts about low-stock, out-of-stock, or misplaced items.


AskforCloud.png

WireGuard on CentOS 7: This offer from AskforCloud provides WireGuard along with CentOS 7 on a Microsoft Azure virtual machine. WireGuard is an open-source virtual private network (VPN) that utilizes state-of-the-art cryptography for encryption.


AskforCloud.png

WireGuard on CentOS 8: This offer from AskforCloud provides WireGuard along with CentOS 8 on a Microsoft Azure virtual machine. WireGuard is an open-source virtual private network (VPN) that utilizes state-of-the-art cryptography for encryption.


AskforCloud.png

WireGuard on Debian 10: Providing a ready-to-use environment to implement encrypted virtual private networks, AskforCloud’s image includes WireGuard on Debian 10. More performant than OpenVPN, WireGuard is a general-purpose VPN that can run on embedded interfaces and supercomputers.


AskforCloud.png

WireGuard on Debian 11: Providing a ready-to-use environment to implement encrypted virtual private networks, AskforCloud’s image includes WireGuard on Debian 11. More performant than OpenVPN, WireGuard is a general-purpose VPN that can run on embedded interfaces and supercomputers.


AskforCloud.png

WireGuard on Red Hat Enterprise Linux 7: This offer from AskforCloud provides WireGuard along with Red Hat Enterprise Linux 7 on a Microsoft Azure virtual machine. WireGuard is an open-source virtual private network (VPN) that utilizes state-of-the-art cryptography for encryption.


AskforCloud.png

WireGuard on Windows Server 2012 R2: This offer from AskforCloud provides WireGuard along with Windows Server 2012 R2 on a Microsoft Azure virtual machine. WireGuard is an open-source virtual private network (VPN) that utilizes state-of-the-art cryptography for encryption.


AskforCloud.png

WireGuard on Windows Server 2016: This offer from AskforCloud provides WireGuard along with Windows Server 2016 on a Microsoft Azure virtual machine. WireGuard is an open-source virtual private network (VPN) that utilizes state-of-the-art cryptography for encryption.


AskforCloud.png

WireGuard on Windows Server 2019: This offer from AskforCloud provides WireGuard along with Windows Server 2019 on a Microsoft Azure virtual machine. WireGuard is an open-source virtual private network (VPN) that utilizes state-of-the-art cryptography for encryption.



Go further with workshops, proofs of concept, and implementations


Data Journey using Microsoft Fabric 1-Day Workshop.png

Data Journey using Microsoft Fabric: 1-Day Workshop: Capgemini’s workshop will present an overview of Microsoft Fabric and articulate its value, then identify a sample use case and roll out infrastructure to support the use case. Capgemini will also develop and deliver train-the-trainer sessions.


Generative AI for Your Enterprise Proof of Concept.png

Generative AI for Your Enterprise: Proof of Concept: Knowit AB’s proof of concept will represent a cost-effective path to determine if what you’re trying to achieve is feasible and if doing it with AI is worth it. Knowit AB will offer guidance so you can start the AI journey with solid planning and best practices in place.


Infrastructure as Code on Azure - Terraform.png

Infrastructure as Code on Azure – Terraform: In this workshop, SVA will discuss the theoretical and practical basics of HashiCorp’s Terraform, an infrastructure-as-code tool. Participants will learn how to create their first Terraform modules. This service is available only in German.


Mission Planning with Propel on Azure.png

Mission Planning with Propel on Azure: By advising on implementation practices for Microsoft Azure and providing solution prototyping, Propel’s experts will help clients leap the chasm between product strategy and execution.


OpenAI - 2 Day Workshop.png

OpenAI – 2-Day Workshop: Learn how to create and refine prompts and utilize Azure OpenAI Service and the next generation of Azure AI products with CDW’s interactive workshop. By deploying use cases you can quickly differentiate and sharpen your organization’s competitive edge.


OpenAI - 2 Hour Crash Course.png

OpenAI – 2-Hour Crash Course: CDW will introduce you to key concepts of AI/ML and Generative AI so you can understand how to utilize them in real-world applications. Learn about Azure Cognitive Services, Azure Chat Playground, and a host of AI-related topics to improve your business processes.


Optimize Sales, Marketing with ML & Generative AI .png

Optimize Sales, Marketing with ML & Generative AI: In this proof of concept, data scientists from Knowit AB will develop a machine learning model for your business needs. Key sales drivers and sales forecasts will simulate different scenarios, and reports and visualizations will highlight sales and marketing opportunities.



Contact our partners



AI Adoption Acceleration: 2-Week Assessment



AIRRE – AI-Powered Complaint Management Solution



Azure FinOps: 4-Week Assessment



CognoCampaign by Exotel



CognoChatbot by Exotel



ControlUp for Azure Virtual Desktop: 1-Hour Briefing



Data & AI Assessment and Strategy: 2-Week Discovery



Data Platform with Azure Integration Services: 4-Week Fit-Gap Assessment



Optimize Azure with Exquitech’s Managed Service



Exquitech Consultancy for Azure



Guest User Manager by Arvato Systems



Intapp Time & Compliance



Kore.ai XO Platform



KPS Knowledge Management Solution



Mainframe Data to Azure: 2-Week Assessment



Microsoft Sentinel Optimization and Tuning Service



Opening the Door to OpenAI: 3-Week Assessment



Regulatory Data Insights



Trimble Unity AMS



Trimble Vegetation Manager


Availability of Defender Vulnerability Management Standalone and Container vulnerability assessments

Availability of Defender Vulnerability Management Standalone and Container vulnerability assessments

This article is contributed. See the original author and article here.

Organizations are increasingly challenged to stay aligned with evolving business requirements and protect against expanding attack surfaces with a diverse portfolio of devices outside of traditional organizational boundaries, adding complexity to the vulnerability management process. Vulnerability management solutions provide understanding of their overall security risk posture and where to prioritize.


 


In recent years, Microsoft has established itself as a leading solution for vulnerability risk management (VRM) by leveraging its industry-leading threat intelligence and security expertise. Microsoft Defender Vulnerability Management provides end-to-end capabilities across the VRM lifecycle to identify, assess, prioritize, and remediate vulnerabilities, making it an ideal tool for managing an expanded attack surface and reducing overall risk posture.


 


Announcing availability of Defender Vulnerability Management standalone  


Earlier this year we released our premium capabilities as an add-on to the core capabilities included with Defender for Endpoint Plan 2 and we are thrilled to announce Defender Vulnerability Management is now offered as a standalone solution. Now organizations not yet on Defender for Endpoint Plan 2, or have another EDR solution, or just looking to replace an existing vulnerability management solution, can take advantage of our context-aware, risk-based prioritization that leverages Microsoft’s unmatched threat intelligence, breach likelihood predictions and business contexts to prioritize vulnerabilities across their portfolio of managed and unmanaged devices.


With this significant addition of a standalone offering, we also introduced enhancements to the Microsoft 365 Defender Unified RBAC permissions model to clearly associate relevant roles & permissions with Defender Vulnerability Management (this change will not affect existing roles).


 


BrjannBrekkan_0-1691554246618.png


Figure: Core and premium capabilities in standalone offer


Defender Vulnerability Management premium capabilities provide advanced assessments with in-depth visibility into potential exposure to your assets:


 



  • Security baselines assessment – customized profiles that you can create to assess and monitor endpoints against industry security benchmarks, such as CIS, STIG and Microsoft benchmarks. Instead of running never-ending compliance scans, monitor your organization’s security baselines seamlessly according to customized profiles.

  • Block vulnerable applications – In addition to the core remediation capabilities, proactively reduce risks with this premium capability by taking mitigation steps such as warning users or blocking known vulnerable versions of applications. Leverage software usage insights to understand the impact of the vulnerable application.

  • Hardware and firmware assessment – full visibility into device manufacturer, processors, and BIOs information to assess vulnerabilities for hardware and firmware risks.

  • Digital certificates and browser extensions assessment – expand your asset coverage beyond devices and gain entity-level visibility into the various browser extensions and digital certificates installed across assets.

  • Network shares analysis protect against misconfigurations used in the wild by attackers for lateral movement, reconnaissance, data exfiltration, and more.

  • Authenticated scans for vulnerability assessment– run scans on unmanaged devices by remotely targeting by IP ranges or hostnames to remotely access the devices for vulnerability assessment purposes.


Defender Vulnerability Management capabilities are integrated into Defender for Endpoint and Defender for Cloud enabling security teams to assess their exposure and address changes to improve security posture of your organization. You now have flexibility in our offering across endpoints and servers.  More info on our updated website.


BrjannBrekkan_1-1691554374354.png


Figure: Availability of Core and premium capabilities across offerings that include Defender Vulnerability Management for endpoints and servers.


 


Your needs for vulnerability assessments and analysis spans platforms, clouds and modalities and our strategy for Defender Vulnerability Management is to support these environments that span multiple platforms across both on-premises and cloud. We have recently added Fortinet to the network devices and container support is our second big news. 


 


BrjannBrekkan_2-1691554402865.png


Announcing vulnerability assessment (VA) for Containers powered by Microsoft Defender Vulnerability Management in Defender for Cloud


With the rise of containerization and microservices, it’s more important than ever to secure the software supply chain and ensure that container images are free from vulnerabilities.


Today, as a result of Defender for Cloud’s integration with Microsoft Defender Vulnerability Management, we are excited to announce the general availability of agentless container posture management in Defender CSPM and the public preview of vulnerability assessment scanning for container images in Defender for Containers.


These new container vulnerability assessment capabilities powered by Defender Vulnerability Management include:



  • Agentless vulnerability assessment for containers

  • Zero configuration for onboarding

  • Near real-time scan of new images

  • Daily refresh of vulnerability reports

  • Coverage for both ship (ACR) and runtime (AKS)

  • Support for OS and language packages

  • Real-world exploitability insights (based on CISA kev, exploit DB and more)

  • Support for ACR private links


 


Agentless container posture management in Defender CSPM, powered by Defender Vulnerability Management


To help proactively strengthen the security posture of your containerized environments, Defender CSPM provides a new vulnerability assessment offering for containers powered by Defender Vulnerability Management, with near real-time scans of new images, daily report refreshes, and real-world exploitability insights. Vulnerabilities are added to Defender CSPM security graph for contextual risk assessment and calculation of attack paths. Customers can now access out-of-the-box container vulnerability assessments that, combined with attack path analysis and agentless discovery of the Kubernetes estate, enable security teams to hunt for risks with the cloud security explorer and prioritize the vulnerabilities that pose the greatest risks to the organization. This agentless approach allows security teams to gain visibility into their Kubernetes and containers registries across the SDLC, removing friction and footprints from the workloads.


BrjannBrekkan_0-1691587217734.png


 


Figure Attack path analysis outlining a containerized application publicly exposed with high severity vulnerabilities discovered using Defender Vulnerability Management


Enable Defender CSPM with agentless container posture in a single click.


 


Public preview of vulnerability assessment for containers in Defender for Containers, powered by Defender Vulnerability Management


In providing comprehensive cloud workload protection, Defender for Containers’ new integration with Defender Vulnerability Management now provides our customers with vulnerability assessments through one-click enablement, near real-time scan of new images, and daily result refreshes of current and emerging vulnerabilities enriched with exploitability insights – all to help organizations focus on vulnerabilities with the greatest security impact to their organization.


 


BrjannBrekkan_1-1691587217750.png


 


New vulnerability assessment recommendation powered by Defender Vulnerability Management


Enable Container vulnerability assessments powered by Defender Vulnerability Management in one click here.


 


If you’re interested in learning more about Defender Vulnerability Management visit our website for updated pricing and packaging and datasheet. Read more about our plans and capabilities here. To take advantage of our free 90-day trial, check out our interactive guide, and read more information in our product documentation.  


For additional information and other relevant updates on protecting cloud workloads please visit the Microsoft Defender for Cloud blog.


 


 


 

Introducing Copilot in Dynamics 365 Field Service, helping your frontline deliver exceptional service with next-generation AI

Introducing Copilot in Dynamics 365 Field Service, helping your frontline deliver exceptional service with next-generation AI

This article is contributed. See the original author and article here.

Delivering exceptional service is key for building customer preference and loyalty. But timely resolution can get challenging when fragmented tools make it hard to find the right information and service delivery gets delayed with lengthy data-entry processes. Today, we’re introducing Copilot in Dynamics 365 Field Service, bringing the power of next-generation AI to service professionals on the frontline to speed time to resolution. From creating work orders with the right information and assigning them to the right technicians, to equipping the technicians with sufficient support to successfully complete jobs—Copilot will help streamline critical frontline tasks.

New data from Microsoft’s 2023 Work Trend Index Annual Report1 reveals 63 percent of frontline workers struggle with having to do repetitive or menial tasks that take time away from more meaningful work, and 66 percent feel that they don’t have enough time to complete work tasks. The number one thing that frontline leaders value from AI is helping employees with necessary but repetitive/mundane tasks. Whether it’s for a facility inspection, equipment installation, or a maintenance request, frontline service managers want to spend their time figuring out how to improve their team’s efficiency rather than on repetitive tasks such as copying and pasting information from one system to another to create work orders and dispatch technicians. And frontline technicians want the right information at the right time to complete the job, the first time.

Accelerating service delivery

With the preview of Copilot in Dynamics 365 Field Service today, frontline managers who receive service requests or questions via emails can use next-generation AI to streamline work order creation directly within Outlook. Copilot prepopulates relevant data including summaries of customer escalations into draft work orders for managers to review in their flow of work. Once saved, these work orders automatically sync to Microsoft Dynamics 365 Field Service. Additionally, with updates coming this fall, Copilot will streamline technician scheduling by offering data-driven recommendations based on travel time, availability, skill set, and other factors as well as accelerate responses to customer messages by summarizing key details and next steps in email drafts. Copilot will also become available to assist frontline managers in their flow of work within Microsoft Teams.

“I am really excited about working with Copilot capabilities as I believe it will completely change the way our employees at G&J Pepsi interact with Dynamics 365 Field Service. It will be a game changer for our field service and frontline teams, allowing them to enhance their best-in-class service by getting access to the information they need faster than ever before.”

Eric McKinney, Director of Enterprise Infrastructure at G&J Pepsi

Boosting technician productivity

Today, we’re also introducing the preview of a new Dynamics 365 Field Service mobile experience for frontline technicians to swiftly access all the information they need on the go. This modern user experience supports familiar mobile navigation, gestures, and controls to streamline managing work order Tasks, Services, and Products. From changing the status of a booking with a quick swipe to accessing driving directions to a customer site with one tap, the redesign saves valuable technician time for daily work—cutting down the number of taps for key tasks in half. Technicians can not only easily pick, change, or complete work order details, but also add notes with multiple inline images. Technicians who need additional support can now also use Microsoft Dynamics 365 Guides embedded in Field Service mobile. Embedded Dynamics 365 Guides in Field Service provides technicians with step-by-step guided instructions, pictures, and videos explaining the immediate task.

Additionally, with the preview of the Dynamics 365 Field Service app in Teams starting today, frontline technicians can now see upcoming work orders at-a-glance as Tasks in their Microsoft Viva Connections home experience and can easily drill into details such as location or issue type. Frontline technicians can also now share full work order details through cards in Teams and access the Microsoft Dynamics 365 Remote Assist app in one click via their home experience in Teams mobile to problem solve with remote experts in real time using 3D spatial annotations that lock to the physical world.

“Copilot in Dynamics 365 Field Service will support a faster way of working for our organization by simplifying our transactional work order management process. The ease with which an email can be translated into a work order and planned will increase the speed of our customer responses and improve our customer journey. We are also excited to improve the experience for our customer-facing colleagues with the Microsoft 365 integrations. Microsoft Teams is our main internal communication method, and the integration of Field Service into Teams will greatly simplify the communication about a specific work order, account, or other customer case and improve the case lead time.”

Sven van Veldhuizen, CIO/CDO at Joulz

Streamlining work order management

A redesigned Dynamics 365 Field Service work order management experience is now available for early access, featuring a simplified web experience that brings important information front and center—reducing the number of clicks for key tasks by more than a third. The experience not only offers concise information about the work order but also provides relevant next steps based on booking statuses, and supports making quick updates inline or in a side panel to not lose context. Copilot will provide intelligent recaps within this experience to help frontline managers stay up-to-date without having to navigate through all the information in a work order.

Partnering with our ecosystem

Partners have played a key role in helping us refine Copilot in Dynamics 365 Field Service ahead of its public preview and we are excited to share some of their observations as early adopters.

“We are excited to bring Copilot in Dynamics 365 Field Service and Microsoft 365 integrations to augment our sustainable energy customers’ field service workforce—enabling them to stay ahead of the game with increased productivity. Just imagine the productivity gain your service department can realize by having a service-related email translated by AI into a field service work order with the right information, and what field service technicians can accomplish when they get a clear and simple view of all the information they need to focus on in whatever Microsoft 365 tool supports their daily tasks the best.”

Filip Bossuyt, Founder & CEO at 9altitudes Group

“Hitachi Solutions has been working with Microsoft to preview Copilot in Dynamics 365 Field Service and is already seeing how field service organizations will greatly benefit from AI. Our field service customers want solutions fast. With Copilot work order capabilities in Outlook, our customer’s field service managers can stay in the flow of work and immediately assign resources to solve problems, leading to quicker response times and enhanced service delivery.”

Michael Mendoza, Director of Service Transformation at Hitachi Solutions

“Copilot in Dynamics 365 Field Service is like a window into the future, nothing like what I’ve seen before. It’s literally taking steps out of my work stream by summarizing emails and coming up with the work order description—saving me seconds each time which add up to minutes each day. This matters a lot when you think about the volume of emails with service requests in today’s world.”

Greg Somogyi, Field Service Senior Consultant at Ludia Consulting

“We are excited to introduce Copilot in Dynamics 365 Field Service to our facilities clients because we see the power in simplicity. For our clients raising responsive repairs to get the right person with the right skill to the right properties at the right time, Copilot enables frontline teams to go from issue to resolution in just a few clicks.”

Matt Hedges, Products Director at TechLabs London

Lastly, we are excited to announce the interoperation of asset performance solutions from ICONICS and Willow with Dynamics 365 Field Service, making it seamless to share critical insights like equipment health and faults in order to proactively detect and resolve asset issues. The IoT-based solutions elevate asset monitoring and service management to new levels of sophistication, empowering frontline workers to make better-informed decisions based on data when providing service and repairs. The new Copilot capabilities in Dynamics 365 Field Service can also help efficiently summarize and update work orders generated based on these IoT-based solutions. This streamlines service workflows, improves response times, and enhances overall service quality for customers. Read about further details on the solutions here.

Learn more about Copilot in Dynamics 365 Field Service, Microsoft 365 integrations, and more

To try the new Copilot capabilities and Microsoft 365 integrations for Dynamics 365 Field Service, request for your administrator to set up Dynamics 365 Field Service for Outlook (Preview) and Dynamics 365 Field Service (Preview) app in Teams. Administrators can also opt into the new Dynamics 365 Field Service mobile experience available now in preview. To try the new Dynamics 365 Field Service web experience available now in early access, switch to Work Order (Preview) in your system.

Today’s announcement builds on recent AI momentum across Microsoft 365, Dynamics 365, and Microsoft Power Platform. Learn more about the latest AI breakthroughs with Microsoft Dynamics 365 Copilot on the Dynamics 365 AI webpage. With Copilot, you’re in control as it is grounded in your business data and automatically inherits your valuable security, compliance and privacy policies, regulations, and processes. Learn about our AI principles that empower impactful responsible AI practices at Microsoft, as well as provide a framework for implementing responsible AI practices at our customers’ organizations.

Close-up side view of a frontline construction worker

Copilot in Dynamics 365 Field Service

Next-generation AI helps your frontline deliver exceptional service.


End notes:

1 The Work Trend Index survey was conducted by an independent research firm, Edelman Data x Intelligence, among 31,000 full-time employed or self-employed workers across 31 markets, 6,019 of which are frontline workers, between February 1, 2023, and March 14, 2023. This survey was 20 minutes in length and conducted online, in either the English language or translated into a local language across markets. One thousand full-time workers were surveyed in each market, and global results have been aggregated across all responses to provide an average. Each market is evenly weighted within the global average. Each market was sampled to be representative of the full-time workforce across age, gender, and region; each sample included a mix of work environments (in-person, remote vs. non-remote, office settings vs. non-office settings, etc.), industries, company sizes, tenures, and job levels. Markets surveyed include: Argentina, Australia, Brazil, Canada, China, Colombia, Czech Republic, Finland, France, Germany, Hong Kong, India, Indonesia, Italy, Japan, Malaysia, Mexico, Netherlands, New Zealand, Philippines, Poland, Singapore, South Korea, Spain, Sweden, Switzerland, Taiwan, Thailand, United Kingdom, United States, and Vietnam.

The post Introducing Copilot in Dynamics 365 Field Service, helping your frontline deliver exceptional service with next-generation AI appeared first on Microsoft Dynamics 365 Blog.

Brought to you by Dr. Ware, Microsoft Office 365 Silver Partner, Charleston SC.

Save costs and drive efficiency with next-generation AI on the frontline with Microsoft Teams

Save costs and drive efficiency with next-generation AI on the frontline with Microsoft Teams

This article is contributed. See the original author and article here.

Frontline workers are the backbone of the global workforce and often the first to interact with customers and manage on-the-ground operations. When organizations invest in fast time to value technology for their frontline workers, it not only drives positive outcomes for businesses’ bottom lines but also for frontline employees.

The post Save costs and drive efficiency with next-generation AI on the frontline with Microsoft Teams appeared first on Microsoft 365 Blog.

Brought to you by Dr. Ware, Microsoft Office 365 Silver Partner, Charleston SC.

“Yosemite Syntex SAM” ? – The Intrazone podcast

“Yosemite Syntex SAM” ? – The Intrazone podcast

This article is contributed. See the original author and article here.

Are yer sites and content mean-spirited and aggressive – like our Looney Tunes friend, Yosemite Sam? Let us parlay any angst into an inner admin calm – your Bugs Bunny if you will. You’ll be hootin’-n-tootin’ in no time thanking us for them thar oversharing insights.


 


In this episode, you’ll hear from Sesha Mani, Partner Group Product Manager at Microsoft focused on security and compliance. We spoke to Sesha about SAM – that’s SharePoint Advanced Management. We cover its core benefits – helping SharePoint and IT Admins address sprawl and oversharing – mapped to what it gives you beyond the core management aspects within the SharePoint admin center. SAM expands on the principles of securing and managing content and data with advanced access policies for secure content collaboration AND advanced sites content lifecycle management.


 


“When I say whoa, I mean whoa!”– Yosemite Sam. Whoa now, whoa – sit back and enjoy this here episode.


 


The Intrazone, episode 99:


https://play.libsyn.com/embed/episode/id/27686274/height/128/theme/modern/size/standard/thumbnail/no/custom-color/038387/time-start/00:00:00/hide-playlist/yes/download/yes


Subscribe to The Intrazone podcast + show links and more below.


 


The Intrazone guest: Sesha Mani - Partner Group Product Manager at Microsoft focused on security and compliance.The Intrazone guest: Sesha Mani – Partner Group Product Manager at Microsoft focused on security and compliance.


The ‘meanest, toughest, rip-roarin-est’ links to important on-demand recordings and articles mentioned in this episode:  



 


‘Say yer prayers’ and subscribe today!


Thanks for listening! If you like what you hear, we’d love for you to Subscribe, Rate and Review on iTunes or wherever you get your podcasts.


 


Be sure to visit our show page to hear all episodes, access the show notes, and get bonus content. And stay connected to the SharePoint community blog and the Syntex community blog where we’ll share more information per episode, guest insights, and take any questions or suggestions from our listeners and SharePoint users (TheIntrazone@microsoft.com).



‘This town IS big enough to get yer Intrazone anywheres’



+ Listen to other Microsoft podcasts at aka.ms/microsoft/podcasts.


 


The Intrazone, a show about the Microsoft 365 intelligent intranet (aka.ms/TheIntrazone)The Intrazone, a show about the Microsoft 365 intelligent intranet (aka.ms/TheIntrazone)

July 2023 Recap: Azure Database PostgreSQL Flexible Server

July 2023 Recap: Azure Database PostgreSQL Flexible Server

This article is contributed. See the original author and article here.

Greetings, Azure Database for PostgreSQL community! As we step into August, it’s time to look back and reflect on the significant updates and features we introduced in July 2023. At Azure Database for PostgreSQL Flexible Server, our consistent focus is on offering stellar performance, unwavering reliability, and unbeatable security via our flexible server solution. Let’s dive into the key takeaways from the last month.


 


Feature Highlights Summary 


 


In July, we launched significant updates to optimize your experience with Azure Database for PostgreSQL Flexible Server:



  1. Flexible Server now supports PostgreSQL 15 (general availability)

  2. Automation Tasks for managing your Flexible Server with greater ease (preview)

  3. Flexible Server Migration: Parallel table migration support (general availability)

  4. Flexible Server Migration: Automatic Migration of Users, Roles, Permissions, and Ownerships (general availability)

  5. Introducing AMD Compute SKUs for General Purpose and Memory Optimized Tiers (general availability)


 


Flexible Server now supports PostgreSQL 15


 


PG15.png


 


We are excited to announce that PostgreSQL 15 is now Generally Available in Azure Database for PostgreSQL Flexible Server in all supported regions. After a successful preview phase, we’re delighted to offer our users the stability, robust features, and security enhancements of PostgreSQL 15.


PostgreSQL 15 includes several new features, performance improvements, and advanced functionalities to address a variety of use cases for developers and DBAs. The upgraded version ensures improved performance, scalability, and efficiency, as well as tightened security controls, reinforcing our commitment to providing our users with the most advanced database solutions. For steps on how to upgrade to PostgreSQL 15, please refer – Major Version Upgrade for PostgreSQL Flexible Server.

Alternatively , to create a new PostgreSQL 15 Azure Database for PostgreSQL Flexible Server, please refer the blog post, PostgreSQL v15 is now Generally available in Flexible Server PostgreSQL.


 


Automation Tasks for managing your Flexible Server


 


Automation_Tasks.png


 


We are pleased to introduce the preview of “Automation Tasks” for Azure Database for PostgreSQL Flexible Server. This feature enables users to automate common management tasks such as starting / stopping servers on schedule, scaling server resources, or sending monthly cost report.

Automation tasks are designed to be basic and lightweight. These tasks are essentially logic app resources that execute workflows at the Azure resource level, powered by the multi-tenant Azure Logic Apps service. Once an automation task has completed at least one run, users can view and edit the underlying workflow in the workflow designer.


Creating an automation task doesn’t incur immediate charges. Instead, the billing model is based on consumption, where metering and billing are driven by triggers and action executions in the underlying logic app workflow. Task history contains a log of task runs and their status. If you wish to modify a task after its creation, they can edit it inline or adjust the underlying workflow in the workflow designer. For more details, refer Manage Azure Database for PostgreSQL – Flexible Server using automation tasks.


Flexible Server Migration Tool enhancements


Migration-Tool.png


 


Fast-tracking Table Migration: Introducing Intra-Table Parallelism


We’re delighted to introduce the Intra-Table Parallelism feature to the Flexible Server Migration tool for Azure Database for PostgreSQL. Designed to simplify the migration of your single server workload to flexible server, this tool now supports simultaneous migration of multiple partitions within a single table. This parallelism substantially minimizes migration time and enhances process efficiency.


 


This upgrade is particularly beneficial for larger databases, leading to considerable time and resource savings. If you’re contemplating migrating your database to Azure Database for PostgreSQL Flexible Server, the Intra-Table Parallelism feature provides an efficient pathway to expedite the migration process and quicken your database’s operational readiness. 


 


Automatic Migration of Users, Roles, Permissions, and Ownerships


 


We’ve further upgraded the Flexible Server Migration tool for Azure Database for PostgreSQL by adding the ability to automatically migrate users, roles, permissions, and ownerships from a single server to a flexible server.

This enhancement simplifies the migration process and ensures that all database object ownerships and privileges are correctly assigned to their respective users and roles in the flexible server. This new feature underscores our commitment to making the transition to our flexible server solution as seamless and accurate as possible.



To make the most of these features, refer to our customer guide.


 


Introducing AMD Compute SKUs for General Purpose and Memory Optimized Tiers


AMD.png


 


We are delighted to announce that Azure Database for PostgreSQL Flexible Server now offers you the choice between Intel and AMD hardware. This expanded offering extends to our General Purpose (v5-series) and Memory Optimized (v5-series) tiers. The inclusion of AMD SKUs introduces choice of hardware vendors t for both your primary and secondary servers, thereby providing greater control and flexibility over your workload deployment. As part of our commitment to accessibility, these AMD options are now available in more regions and zones.

For a comprehensive understanding of these offerings, see the service pricing page.


 


Customer Spotlight: Fujitsu Japan Utilizes Azure Database for PostgreSQL


 


Fujitsu.png


 


This month, we’re thrilled to spotlight the experience of a renowned global IT solutions provider Fujitsu, who employed Azure Database for PostgreSQL Flexible Server in their mission to transform their established EDI solution into a cloud-based offering. Using open-source technologies such as Java and PostgreSQL, they integrated our fully managed PostgreSQL database service into their system, relishing its flexibility, scalability, reliability, and security. The use of our PaaS services significantly reduced operational burden and enabled rapid expansion of their services.


A microservice architecture, linking each PaaS service by API, contributed to superior flexibility, scalability, and improved reliability and stability. This not only increased their operational efficiency but also enhanced the convenience of their cloud services.



This customer story exemplifies the immense potential and robustness of the Azure Database for PostgreSQL Flexible Server, particularly when paired with open-source technologies. For a more detailed account of their success, please check out the Fujitsu Japan rebuilt their solution by fully utilizing Azure PaaS.


Conclusion



As we close out July 2023, we celebrate key strides in Azure Database for PostgreSQL Flexible Server’s development. The launch of PostgreSQL 15, preview of Automation Tasks, enhancements to our Migration tool, and the introduction of AMD Compute SKUs, all contribute to an enriched, efficient user experience.


Thank you for taking the time to stay updated with the recent developments in Azure Database for PostgreSQL Flexible Server. We’re excited to see how these new features will contribute to your success.

Productivity Across Borders: Localized Content now on Microsoft Release Planner 

Productivity Across Borders: Localized Content now on Microsoft Release Planner 

This article is contributed. See the original author and article here.

We are excited to announce that starting August 7th, 2023, Microsoft Release Planner will support the content in 11 new languages. Users around the world can now view the release plans of Dynamics 365 and Power Platform in Danish, Dutch, Finnish, French, German, Italian, Japanese, Norwegian, Portuguese (Brazilian), Spanish, Swedish, and English. 

This update underscores our commitment to inclusivity. We at Microsoft strongly believe that language should not be a barrier to accessing tools and information. With this update, we aim to provide a more personalized, standardized, and intuitive user experience regardless of where you are in the world. 

How to view and manage plans in your preferred language?  

Our user-friendly design ensures that the Release Planner automatically loads in your preferred language based on your browser settings. Additionally, you can switch to your desired language through the language switcher in the header.  

The Release Planner advantage 

The Release planner for Microsoft Dynamics 365 and Microsoft Power Platform allows customers to view and manage release plans across all active release waves in a unified and interactive interface while giving them the option to personalize, filter, sort, and collaborate on release plans. 

Under the hood, the Release Planner is powered by the Power Apps portal. It is created based on customer feedback to address the constraints of content suitability, discoverability, and personalization. Our goal is to improve the release planning and change management process where it matters most – help customers identify and track their salient capabilities, included in both the current and upcoming release waves. 

Here are some of its key features: 

Content personalization through ‘My Release plans’ 

Create a curated list of release plans you would like to follow. All the release plans across various products can be viewed in a unified view. 

Collaborate on plans effortlessly and securely 

Share your curated list and effortlessly and securely with your stakeholders. Collaborate on individual plans using notes and comments all within the Release Planner experience. Your comments are displayed only to the stakeholders with whom you have shared the plan. The owner of the comment has complete control over editing and deleting the comment.

Filter, sort and group plans based on multiple criteria 

Customize your view by using multiple filters, sorting, and grouping criteria. These criteria are available for both ‘All release plans’ and ‘My release plans’ views. You can also view the plans grouped by product theme or timeline.  

Thank you for your continued support as we work to make our product more accessible worldwide. We hope this update sparks more creativity and productivity across our global community! Stay tuned for more exciting updates.  

Here’s to breaking down barriers and welcoming a world of new possibilities! 

The post Productivity Across Borders: Localized Content now on Microsoft Release Planner  appeared first on Microsoft Dynamics 365 Blog.

Brought to you by Dr. Ware, Microsoft Office 365 Silver Partner, Charleston SC.