by Scott Muniz | Aug 14, 2020 | Azure, Microsoft, Technology, Uncategorized
This article is contributed. See the original author and article here.

New Learn Modules for Azure and Window Server IT Pros is just the beginning to this weeks content wrap up from the Advocate team!
Content Round Up
Mod 11:Deploy Azure File Sync (Video)
Orin Thomas
Short video for MS Learn course – Module 11: Implement a hybrid File Server Infrastructure – Deploy Azure File Sync
Mod 20:Manage Azure VM Backups (Video)
Orin Thomas
Short video for MS Learn course – Module 20: Implement hybrid backup and recovery with Windows Server IaaS – Manage Azure VM backups with Azure Backup service.
New Microsoft Learn Modules for Azure and Windows Server IT Pros
Thomas Maurer
In the last couple of days, we published a couple of new Microsoft Learn modules around Azure, Hybrid Cloud, and Windows Server for IT Pros. These modules help you to learn how you can leverage Microsoft Azure in a hybrid cloud environment to manage Windows Server.
Migrate VMs from AWS to Azure with Azure Migrate
Sarah Lean
Blog and video around using Azure Migrate to migrate from AWS to Azure
How to use Terraform to Create Azure DevOps Projects
Anthony Bartolo
With the recent release by HashiCorp and Microsoft of the Azure DevOps Provider 0.0.1 for Terraform we look at how to use these new features to create repeatable standardized projects into Azure DevOps by MVP Chris Jeffery
Blog/ Setting-up Codespaces for .NET Core App Development
Justin Yoo
This post shows how to set up a common development environment for Visual Studio Codespaces to build .NET Core applications.
Video: Migrate your AWS VMs to Azure with Azure Migrate
Sarah Lean
A video showcasing how Azure Migrate can be used to migrate virtual machines from AWS across to Azure.
Connect Azure Cloud Shell to Virtual Network vNet
Thomas Maurer
As you know, Azure Cloud Shell is a great management tool to manage your Azure resources. Azure Cloud Shell is an interactive, authenticated, browser-accessible shell for managing Azure resources. It provides the flexibility of choosing the shell experience that best suits the way you work, either Bash or PowerShell. You can learn more about Azure Cloud Shell
here. If you wanted to manage Azure resources such as Azure virtual machines (VMs), you needed to connect to a public IP address of a virtual machine, which really didn’t work in all scenarios. With the
latest update, you can now connect Azure Cloud Shell to an Azure virtual network (vNet). With the new method, you can now deploy the Azure Cloud Shell container within your virtual network (vNet), which now allows you to use PowerShell remoting, SSH, or other command-line tools such as kubctl using private IP addresses.
GraphQL on Azure: Part 3 – Azure Functions
Aaron Powell
Blog/ Turning Raspberry PI into Remote Controller
Justin Yoo
This post shows how to enable LIRC module on a Raspberry PI so that it turns into a remote controller for all home appliances.
Jay Gordon
AzureFunBytes – A Twitch show on how to use all the fundamentals that are Microsoft Azure. This time we look at the options for containers on Azure.
Web API Authentication with Microsoft.Identity.Web
Matt Soucoup
Learn how to authenticate to an ASP.NET Core Web API protected by Azure AD with the Microsoft.Identity.Web library.
Azure Architecture Best Practices Virtual Event
Thomas Maurer
I am happy to let you know about another
free online event where I am presenting together with Microsoft Cloud Solution Architect, Dominik Zemp, about Azure Architecture Best Practices. This free virtual event will be on August 18 from 9:30am-12:00pm (CEST). In this session, you will learn about proven guidance that’s designed to help you, architect, create and implement the business and technology strategies necessary for your organization to succeed in the cloud. It provides best practices, documentation, and tools that cloud architects, IT professionals, and business decision-makers need to successfully achieve their short- and long-term objectives. We will be focusing on topics like the
Cloud Adoption Framework and the new
Enterprise-Scale landing zone architecture.
Use Debezium pgoutput plugin with Azure PostgreSQL
Abhishek Gupta
This blog will provide a quick walk through of how to use the PostgreSQL pgoutput plugin with Debezium on Azure
“Get Inspired By These BitCamp Final Projects by High School Students!” Dev.to post
Chloe Condon
The Students I have been working with in Bit Project are presenting their final projects this week. This blogpost will highlight these 7 projects and link to their open source projects/MSLearn modules. The event is live here on 8/13 (and I will be updating the blog post with the recorded video of presentations after 8/13)!
Twitch stream: adding accessibility tooling and linting to a React-based game
Em Lazer-Walker
I took the Azure-based social space / event platform I’m building for the Roguelike Celebration conference and added in a few different accessibility linting tools, including integrating them with GitHub and GitHub Actions. I talked through the value (and limitations!) of automated accessibility tooling, and went through my app live and fixed accessibility issues based on the feedback.
Azure Functions with WSL2 and Visual Studio Code
Alvaro Videla Godoy
Explains how to solve a couple of problems we might find while getting started with Azure Functions with WSL2 and Visual Studio Code on Windows 10
by Scott Muniz | Aug 14, 2020 | Uncategorized
This article is contributed. See the original author and article here.
News this week includes:
Azure Sentinel announced a new GitHub Leaderboard to recognize the growing list of amazing contributors to their threat hunters community.
Windows 10 has posted three key blogs on their Windows IT Pro blog. These blogs are centered around customer feedback, questions and more. Read them here.
@Dennis5mile is our Member of the Week, and a great contributor in the Microsoft Edge Insider community.
View the Weekly Roundup for August 10-14 in Sway and attached PDF document.
by Scott Muniz | Aug 14, 2020 | Azure, Microsoft, Technology, Uncategorized
This article is contributed. See the original author and article here.
I made this as a quick lab based on the public documentation to help address this doubt about restoring a deleted database on Azure.
This is a common customer doubt.
- Create a new DW database and change the performance level to the minimum, this is just a lab as you can check on fig. 1.

Fig 1 Create database
- Connect on SQL Server Management Studio and check the last backup by running the following:
select * from sys.pdw_loader_backup_runs

Fig. 2 No backups
It is completely empty as there is no backup for this database, yet. So, let’s force a backup to be done by creating a restore point.
- Define a new restore point on the Azure Portal by clicking on… New Restore Point Fig 3.

Fig 3 Restore Point
- Connect on SQL Server Management Studio again and check the lastest backups by running again pdw_loader_backup_run as you can confirm on fig 4:

Fig 4 One backup
By the docs:
A data warehouse restore is a new data warehouse that is created from a restore point of an existing or deleted data warehouse. Restoring your data warehouse is an essential part of any business continuity and disaster recovery strategy because it re-creates your data after accidental corruption or deletion.
Doc: https://docs.microsoft.com/en-us/azure/synapse-analytics/sql-data-warehouse/backup-and-restore
SQL DW will create 42 restore points and the user can additionally create more 42 restore points. Basically this is a restore to a point in time.
- Let’s add one more restore point.
- Create a table like the script below and then add a new restore point. You should get the results as shown in Fig 5.
create table test1 ( i int)

Fig 5 New restore point.
- Drop the database from Azure Portal as fig 6.

Fig 6 Drop the database
Public doc: https://docs.microsoft.com/en-us/azure/synapse-analytics/sql-data-warehouse/sql-data-warehouse-restore-deleted-dw
- Open PowerShell.
- Connect to your Azure account and list all the subscriptions associated with your account.
- Select the subscription that contains the deleted SQL pool to be restored.
- Get the specific deleted data warehouse.
Add the details and run on power shell:
$SubscriptionName="<YourSubscriptionName>"
$ResourceGroupName="<YourResourceGroupName>"
$ServerName="<YourServerNameWithoutURLSuffixSeeNote>" # Without database.windows.net
#$TargetResourceGroupName="<YourTargetResourceGroupName>" # uncomment to restore to a different server.
#$TargetServerName="<YourtargetServerNameWithoutURLSuffixSeeNote>"
$DatabaseName="<YourDatabaseName>"
$NewDatabaseName="<YourDatabaseName>"
Connect-AzAccount
Get-AzSubscription
Select-AzSubscription -SubscriptionName $SubscriptionName
# Get the deleted database to restore
$DeletedDatabase = Get-AzSqlDeletedDatabaseBackup -ResourceGroupName $ResourceGroupName -ServerName $ServerName -DatabaseName $DatabaseName
# Restore deleted database
$RestoredDatabase = Restore-AzSqlDatabase –FromDeletedDatabaseBackup –DeletionDate $DeletedDatabase.DeletionDate -ResourceGroupName $DeletedDatabase.ResourceGroupName -ServerName $DeletedDatabase.ServerName -TargetDatabaseName $NewDatabaseName –ResourceId $DeletedDatabase.ResourceID
# Use the following command to restore deleted data warehouse to a different server
#$RestoredDatabase = Restore-AzSqlDatabase –FromDeletedDatabaseBackup –DeletionDate $DeletedDatabase.DeletionDate -ResourceGroupName $TargetResourceGroupName -ServerName $TargetServerName -TargetDatabaseName $NewDatabaseName –ResourceId $DeletedDatabase.ResourceID
# Verify the status of restored database
$RestoredDatabase.status
Simple like that! You can also use the portal for it, look at the public documentation for more details.
- If you run again sys.pdw_loader_backup_runs after the restore you will see the restore points as the user drop database and the latest backups:

Fig 7 Restore points
Note: A dropped DW database is cleaned-up 8 days after the drop and cannot be restored
That is it!
Liliam
UK Engineer.
by Scott Muniz | Aug 14, 2020 | Uncategorized
This article is contributed. See the original author and article here.
Claire: You’re watching the Microsoft US health and life Sciences Confessions of Health Geeks podcast. A show the offers industry insight from the health geeks and data freaks of the US health and life Sciences industry team. I’m your host, Claire Bonaci. On today’s episode, I talked with our HLS industry team summer intern Param on how he spent his three months at Microsoft and what surprised him most.
Claire Bonaci: So, welcome to the podcast Param. You are our summer intern on the HSL industry team and it’s been really great to working with you. So I’d love to get your perspective over the last few months here.
Param Mahajan: Thank you. Thank you for having me. A quick background about me. I’m a rising senior at Cornell. I’m double majoring in computer science and economics, and my experience has over here has been pretty great so far. I mean after COVID hit, I think my internship went virtual and I’m definitely missing out being in the cool NYC office of Microsoft. But I think the transition to a virtual internship was pretty efficient and effective. My team members were very reachable. The people I was working with always took out the time to meet me and help me out in my project. So people have been very accessible. People have always tried to help me out, so it’s it’s been a phenomenal experience.
CB: That’s great, yeah you do. You have a very impressive background. I know you worked at a digital services startup where you built an enterprise at health cloud and last summer you worked at PwC cyber division, assessing a market for a cyber threat simulator. So I guess you mind telling us a little bit about your experience as an intern at Microsoft, kind of what your project was, what you worked on for last three months.
PM: Yeah, absolutely. So my project for this summer was to make a global point of view for the space of manufacturing in pharmaceutical and life Sciences, and internally for the healthcare and life Sciences team. This was an area which was lacking focus initially and it’s a focus area for FY 21, which is why I was asked to focus in this area. In my project I made a global POV deck with an inventory of current assets, resources, solution areas, partner and user success stories. I worked with the healthcare and manufacturing teams from across the US, Europe and APAC. And I also work with a partner development teams at Microsoft to make sure that all the information is up-to-date and the most recent ones. In the latter half of my project, I made a selling strategy document. The thought behind making this document was that infield sellers for healthcare and life Sciences are more used to the health care domain and um so this setting strategy document was made to bridge the gap between the health care domain and the healthcare and manufacturing domains intersection. And this setting strategy document was divided into 6 solution areas with summarized links to either a user success story or a partnership story. And one key aspect of of the selling strategy document was that a lot of our manufacturing success stories are just that like they’re only in the manufacturing domain. And we want to emphasize that OK, we’re going to replicate that success as it pertains to, um, the healthcare and life Sciences sector as well. So there’s that
distinction in the document as well. So yeah, that’s a brief summary of my project and we’re waiting to do a final review, do some field tests and then it will go into the team sales
pipeline.
CB: That’s great, yeah, I’ve been a little bit apart of what you’ve been doing the last three months and it has been very impactful. Very helpful. I’m really looking forward to using these documents in FY21 since I do think they’re going to be really helpful for the team overall. So, given your extensive background, why did you actually choose to work at Microsoft? Why did you choose to intern here rather than some other companies?
PM: Right. So as I said before, my background is in computer science and economics and I have always wanted to do a role which had elements of both. I like a role with client facing
and business development elements. But I also like roles which have some technical elements that coding or technical analysis. So I think Microsoft as a company is one of the few companies that has a breadth of roles which which helps you choose an combine the
elements of your background that you like an make a role that is very suitable for you. So that was a primary reason. And secondly I think the team’s culture and the teams values
really resonated with me. I think in, especially now that, I didn’t think of this like when I
was choosing, but I I, I think, especially now in an era is like great income inequality’s and great disparities in social justice. I think it’s, uh, it’s good to be working for a company which is not tone death, which takes these matters seriously, and which is actually reflects my values. So both of those combined, I think, helped me make my decision.
CB: Those are all really great points and definitely one of the reasons that I came to Microsoft as well. So during your three months here, what surprised you the most? I know, yeah, your fresh, coming from college and obviously you have you had that experience
working at a large company. So what kind of surprised you most here?
PM: Yeah, so I think two things stood out for me. The first one was every company that I’ve worked at before and every [advert] every company that tries to advertise says that oh, bring your passion into work, speak about your passion. And let us know what your passion is, but I think your passion just stay that, like your passions outside of work and the one thing that pleasantly surprised me at Microsoft, especially in this internship was I spoke to my mentor and my manager about exploring some other roles which has surrounded the industry team for healthcare and life Sciences. And they were like OK if that’s your passion, let’s include that in one of as one of your deliverables or one of your core priorities. So I think my passions were really heard and they were not just like encouraged, but they were included in what I was supposed to do in this internship, so it’s quantifiable. I actually had an opportunity to pursue them, so that was a pleasant surprise. And it was, it was great actually pursuing your passions as part of your job. And the second one was, I think I touched on this before was the breadth of roles. I’ve spoken to three to four people in the company that I’ve come in with a multidisciplinary background in computer science in health care, in ah business and you know, client relationship development. And these people have picked and chosen whatever aspects of their background they like and they have made or they have made their respective roles tailor made for themselves and they have been doing that for the past nine years. And I think that was a big big takeaway because listening to company say oh you can you know adjust your role, you have flexibility, that all sounds great, but I think having some of these people on my team interacting with them and seeing how they actually may like sometimes the seemingly most like weird roles, but now they are very sought after and valued and then an essential part of the team. I think that was a great surprise for me and it’s very encouraging to me as well.
CB: I think you really hit on the best parts of Microsoft for sure. And you have made a huge impact already, just in the three months you’re here. I’m really looking forward to hopefully working with you in the future. So again, thank you so much Param for talking to us explaining your internship and giving us a little bit about your insight and we look forward
to seeing you in the future.
PM: Absolutely, it was a pleasure.
CB: Thank you all for watching. Please feel free to leave us questions or comments below and check back soon for more content from the HLS industry team.
by Scott Muniz | Aug 14, 2020 | Azure, Microsoft, Technology, Uncategorized
This article is contributed. See the original author and article here.

CSS live reloading on Blazor
Jun-ichi Sakamoto is a Japanese MVP for Developer Technologies. The 10-time MVP title holder specializes in C#, ASP.NET, Blazor, Azure Web Apps, TypeScript. Jun-ichi’s publication of NuGet packages – like Entity Framework Core, helper, testing tools, Blazor components, and more – have been downloaded more than 18 million times. For more on Jun-ichi, check out his Twitter @jsakamoto

Helping the busy BDM or manager: create ToDo tasks automatically when you are mentioned in a team channel
Vesku Nopanen is a Principal Consultant in Office 365 and Modern Work and passionate about Microsoft Teams. He helps and coaches customers to find benefits and value when adopting new tools, methods, ways or working and practices into daily work-life equation. He focuses especially on Microsoft Teams and how it can change organizations’ work. He lives in Turku, Finland. Follow him on Twitter: @Vesanopanen

6 useful Xamarin Forms Snippets
Damien Doumer is a software developer and Microsoft MVP in development technologies, who from Cameroon and currently based in France. He plays most often with ASP.Net Core and Xamarin, and builds mobile apps and back-ends. He often blogs, and he likes sharing content on his blog at https://doumer.me. Though he’s had to deal with other programming languages and several frameworks, he prefers developing in C# with the .Net framework. Damien’s credo is “Learn, Build, Share and Innovate”. Follow him on Twitter @Damien_Doumer.

#Microsoft Windows Admin Center and Azure Backup Management #WAC #Azure
James van den Berg has been working in ICT with Microsoft Technology since 1987. He works for the largest educational institution in the Netherlands as an ICT Specialist, managing datacenters for students. He’s proud to have been a Cloud and Datacenter Management since 2011, and a Microsoft Azure Advisor for the community since February this year. In July 2013, James started his own ICT consultancy firm called HybridCloud4You, which is all about transforming datacenters with Microsoft Hybrid Cloud, Azure, AzureStack, Containers, and Analytics like Microsoft OMS Hybrid IT Management. Follow him on Twitter @JamesvandenBerg and on his blog here.

Step by Step Azure NAT Gateway – Static Outbound Public IP address
Robert Smit is a EMEA Cloud Solution Architect at Insight.de and is a current Microsoft MVP Cloud and Datacenter as of 2009. Robert has over 20 years experience in IT with experience in the educational, health-care and finance industries. Robert’s past IT experience in the trenches of IT gives him the knowledge and insight that allows him to communicate effectively with IT professionals. Follow him on Twitter at @clusterMVP
by Scott Muniz | Aug 14, 2020 | Azure, Microsoft, Technology, Uncategorized
This article is contributed. See the original author and article here.
The Super User feature of the Azure Rights Management service from Azure Information Protection ensures that authorized people and services can always read and inspect the data that Azure Rights Management protects for your organization. You can learn more about the super user feature and how to enable and manage it here.
One of the concerns we have heard from our customers regarding the super user management was that to be able to add a super user, one needs to be assigned the Global Administrator role and that the super user assignment is permanent until manually removed. All this adds complexity to the roles management workflow and raises security, compliance and governance questions especially at large companies with distributed IT organizations.
Azure Active Directory (Azure AD) Privileged Identity Management (PIM) is a service that enables you to manage, control, and monitor access to important resources in your organization. These resources include resources in Azure AD, Azure, and other Microsoft Online Services like Office 365 or Microsoft Intune. You can learn more about Azure PIM here.
One of the most expected PIM features had been ability to manage membership of privileged AAD groups. Finally, you can now assign eligibility for membership or ownership of privileged access groups. You can learn more about this new capability here.
Note: As of this writing (August 2020) this feature is in preview, so it is subject to change.
So, how can this new feature help us with the problem outlined above? Let’s find out.
Enable the AIP Super User feature
If you have not enabled the Super User feature yet, you need to connect to the AIP service as a Global Administrator and run the following command: Enable-AipServiceSuperUserFeature
Figure 1: Enabling the AIP Super User feature
Note: Please take a moment to review our security best practices for the Super User feature.
Create an Azure AD group
Before you go ahead and create a new group, you need to consider:
- AIP only works with identities which have an email address (proxyAddress attribute in Azure AD)
- As of this writing (August 2020) only new Microsoft 365 and Security groups can be created with “isAssignableToRole” property, you can’t set or change it for existing groups.
- This new switch is only visible to Privileged Role Administrators and Global Administrators because these are only two roles that can set the switch.
This leaves us with the only option – a new Microsoft 365 group.
Figure 2: Creating a new Microsoft 365 group in the Azure Portal
If you prefer PowerShell, you can use it too:
Figure 3: Creating a new Microsoft 365 group using PowerShell
Figure 4: Reviewing properties of the new Microsoft 365 group using PowerShell
Enable PIM support for the new group
Our next step is to enable privileged access management for the group we have just created:
Figure 5: Accessing Privileged access configuration from the group management
Figure 6: Enabling Privileged Access for the new group
Add eligible members to the group
Now we can add assignments and decide who should be active or eligible members of our new group.
Figure 7: Adding assignments
Figure 8: Reviewing a list of the eligible members
Set the new group to use as the super user group for AIP
The Set-AipServiceSuperUserGroup cmdlet specifies a group to use as the super user group for Azure Information Protection. Members of this group are then super users, which means they become an owner for all content that is protected by your organization. These super users can decrypt this protected content and remove protection from it, even if an expiration date has been set and expired. Typically, this level of access is required for legal eDiscovery and by auditing teams.
You can specify any group that has an email address, but be aware that for performance reasons, group membership is cached. For information about group requirements, see Preparing users and groups for Azure Information Protection.
Figure 9: Adding the new PIM-managed group as the super user group
Using the super user feature
Now that we have everything set up, let’s see what the end user (JIT administrator) experience is going to be.
First, for the sake of testing we are going to make sure that the test user can’t open a protected document he does not normally have access to.
Figure 10: Error indicating that the user does not have access to the protected document
It’s time to elevate our access using Azure PIM:
Figure 11: List of the PIM-managed privileged access groups
Figure 12: List of privileged groups the user is eligible for
Figure 13: Privileged group activation dialog
Figure 14: Verifying that the user has the privileged group activated
After that the user is able to access the protected document and remove or change protection settings if needed.
Figure 15: Accessing a protected document as a super user
If required by your company’s policy, you can secure this elevation process even further by enforcing MFA and approval
Figure 16: Customizing role activation options
For more information about role-assignable groups in Azure AD, see Use cloud groups to manage role assignments in Azure Active Directory.
Please also take a moment to review current limitations and known issues here.
Recent Comments