How to Stop Azure AD Connect and Safely Convert All Users to Cloud-Only

After converting your domain from Federated to Managed authentication, the next logical step in a cloud-first identity strategy is to disconnect Azure AD Connect and make all users cloud-only. This sounds simple, but it’s one of the most misunderstood steps in Microsoft Entra ID. Many admins assume stopping the sync service is enough, it isn’t. … Read more

Zoom Background Blur Missing on Cloud PC (Windows App) – Root Cause & Working Fix

Introduction Many organizations today use Windows 365 Cloud PC accessed via the Windows App, which acts as a remote desktop client. The Windows App redirects local hardware resources, such as camera, microphone, and audio devices to the Cloud PC, allowing users to work as if they are on a physical machine. However, a common issue … Read more

Converting a Microsoft 365 Domain from Federated to Managed Using Microsoft Graph (The Right Way)

Introduction Microsoft has officially deprecated legacy PowerShell modules such as MSOL and AzureAD. While these modules may still load in some environments, they are no longer supported, unreliable, and increasingly broken due to backend authentication changes. The only supported path forward for tenant and domain management today is Microsoft Graph PowerShell — but only if … Read more

How to Enable the Outlook “From” Field for All Users Using Microsoft Intune

Managing Outlook settings across a modern cloud environment can get tricky, especially when dealing with user-specific options like the From field in Outlook.By default, Outlook doesn’t show the “From” line when a user composes a new email — this becomes a problem for customers who: ✓ Send as shared mailboxes✓ Send on behalf of others✓ … Read more

Fixing Outlook on the Web Issue on Mac: Emails Showing as “Partially Downloaded”

Outlook on the Web (OWA) is widely used across macOS devices for quick access to Office 365 mail without installing the full Outlook desktop app. But recently, some Mac users—especially those using Safari—have reported a frustrating issue: Emails show as “partially downloaded,” and users cannot open or view the full message.This issue also appears on … Read more

Daily Reboots on Windows Devices Using Intune

A Complete Guide Including CMD & PowerShell Methods to Check Last Reboot Time Introduction Automating daily reboots is one of the simplest ways to improve Windows performance, reduce memory leaks, ensure policy compliance, and maintain stable Cloud PCs or AVD sessions. Microsoft Intune provides a powerful, cloud-native way to configure these reboots using the Reboot … Read more

Hybrid Exchange Mailbox Magic — How msExchRemoteRecipientType=97 Automates Mailbox Type Conversion

Introduction If you’re managing a hybrid Exchange environment, you’ve likely faced the headache of mailboxes in Exchange Online showing up as the wrong type — especially when you’ve configured the on-premises user as a Remote Shared Mailbox, but Exchange Online still treats it as a User Mailbox. Frustrating, right? In this blog, I’ll walk you … Read more

Cloud PC Login Failure

Cloud PCs are a powerful tool in modern enterprise environments, enabling flexible, secure access to Windows desktops from virtually anywhere. However, when authentication issues occur—especially during login via the Windows Remote Desktop app—it can stall productivity and confuse users. Recently, we encountered a Cloud PC login issue where the user was unable to sign in … Read more

Azure AD Connect Password Writeback: “Denied Access to Perform the Operation on a Privileged Account” Error

Overview If you’re configuring Self-Service Password Reset (SSPR) with Password Writeback from Entra ID (Azure AD) to on-premises Active Directory, you might encounter this frustrating error in the Event Viewer or password reset logs: hr=80231367, message=Requesting user was denied access to perform the operation on a privileged account. The affected user may not even be … Read more

Fixing IRM License Expiration Issues in Outlook: Prevent Re-Authentication for Older Emails

Introduction Information Rights Management (IRM) is a crucial security feature that protects sensitive emails in Outlook by applying encryption and access restrictions. However, many users face an issue where older IRM-protected emails (beyond 30 days) require re-authentication when accessed in Outlook. This happens due to the default expiration of Azure Rights Management (Azure RMS) use … Read more