Cloud Scholars

Cloud Scholars

Welcome to Cloud Scholars Channel ! I created this channel to help other like minded people increase their knowledge in the cloud. The two main technologies that I focus on are Microsoft Azure and Microsoft 365.

This page is for:
People looking to get into technology. (scholars)
You're going for a certification and need help understanding a topic.
Looking to improve your skillset and learn how to do a specific task for work. (IT professional)

I have 15+ years of experience working in technology and I love to work in the cloud. This page helps me further my education as well so we get to learn together which is pretty cool.

I'd like to thank you for stopping by and I hope you find the content valuable. I'm looking forward to providing you some great material. My goal is to get you from scholar to consultant and consultant to expert!

One thing about technology, you are always learning.

Пікірлер

  • @MyCCW
    @MyCCWКүн бұрын

    Got everything configured, AD synced, etc. The only thing I cannot seem to get to work is if I set a user account to "User must change password at next logon" on my on-prem DC, when they log into M365, it does not prompt them to change their password. I have been through every setting in Entra. Googled to high heaven, and M365 never prompts the end-user to change their password. We have a lot of sales people who are on the road and never step into the office so we want them to still change their password when our password policy kicks in. Any insight would be greatly appreciated.

  • @cloudscholars
    @cloudscholarsКүн бұрын

    I've run into the same problem as well. They don't get reminded because their technically not logging "on-prem". There is a script that I used in the pass that will check last time they changed their password and send out an email 14 days in advance(you can change the reminder) before the password expires. Unfortunately I don't remember the script but you will need to have it running on your domain controller and use a service account "[email protected]" that has access to send emails.

  • @srinivas1623
    @srinivas16235 күн бұрын

    Thank you so much could you do using azure resources terraform real time scnarios for interview purpose thank you once again😊

  • @sukhpreeetkaur6728
    @sukhpreeetkaur67286 күн бұрын

    what about the vnet description

  • @cloudscholars
    @cloudscholars6 күн бұрын

    You can add that if you want to.

  • @sukhpreeetkaur6728
    @sukhpreeetkaur67286 күн бұрын

    @@cloudscholars im getting error of size not available, no matter wat size i choose in east us

  • @cloudscholars
    @cloudscholars6 күн бұрын

    Can you get the size when you do it from the console rather then powershell?

  • @sukhpreeetkaur6728
    @sukhpreeetkaur67286 күн бұрын

    @@cloudscholars no at that time also vm configuration is failing

  • @fbifido2
    @fbifido28 күн бұрын

    how to do email alert for this account ????

  • @cloudscholars
    @cloudscholars8 күн бұрын

    I have a video for this kzread.info/dash/bejne/pJutxbGppcaWeZs.htmlsi=UsTXpS1SAgGV-6H_

  • @AbidSheikh-kg9tv
    @AbidSheikh-kg9tv8 күн бұрын

    Excellent! very well explained about Azure Break Glass account and credential management.

  • @DoubleA-ARon
    @DoubleA-ARon8 күн бұрын

    Again, simple and to the point!!

  • @cloudscholars
    @cloudscholars8 күн бұрын

    Glad it helped. Please hit the like button for me. Helps with the algorithm.

  • @poloqaz
    @poloqaz8 күн бұрын

    many thanks for the video; it is really simple and easy to follow. thank you!

  • @cloudscholars
    @cloudscholars8 күн бұрын

    Glad it was helpful!

  • @DoubleA-ARon
    @DoubleA-ARon8 күн бұрын

    Simple and to the point!

  • @cloudscholars
    @cloudscholars8 күн бұрын

    That’s why I do it. Pleas like and subscribe if you haven’t.

  • @balduberdriver
    @balduberdriver8 күн бұрын

    So if you have like 300 kay vaults you download them one by one manually?

  • @cloudscholars
    @cloudscholars8 күн бұрын

    I’ve never had to manage 300 key vaults before. May have to find another route for what you need.

  • @sajidsid
    @sajidsid10 күн бұрын

    I'm an IT professional from the 90s, and unlike before, there's now an overwhelming amount of information available. However, finding the time to upskill while maintaining a work-life balance is challenging. Creating concise and to-the-point videos is incredibly valuable and appreciated. Thank you for this video

  • @cloudscholars
    @cloudscholars9 күн бұрын

    Thank you for the kind words. Please like and subscribe if you haven’t done so yet. This helps me with the algorithm.

  • @user-hi2nr3gx6f
    @user-hi2nr3gx6f18 күн бұрын

    i think when you deleted locations under Conditions > Network condition got deleted

  • @cloudscholars
    @cloudscholars18 күн бұрын

    This was a walk thru explanation. My goal was more to explain setups and talk through it.

  • @robertdemoine5066
    @robertdemoine506622 күн бұрын

    3:16 for the actual video lmao

  • @robertdemoine5066
    @robertdemoine506622 күн бұрын

    Nevermind, 5:12

  • @cloudscholars
    @cloudscholars22 күн бұрын

    Was there a question? Not sure what your comment meant.

  • @robertdemoine5066
    @robertdemoine506620 күн бұрын

    @@cloudscholars No question, i just got frustrated by how 5 Powershell commands got stretched into a 10 minute video, ain't nobody got time for that lolz

  • @cloudscholars
    @cloudscholars19 күн бұрын

    Sorry about that. I try to explain things in the video. I understand, you want to get straight to the point. Hope you got what you needed tho.

  • @CybrOpp
    @CybrOpp27 күн бұрын

    How often does periodic reauthentication reset though? If a user walks away, comes back, and unlocks their PC, would that cause the timer to reset and restart? I am working on an unmanaged device policy.

  • @cloudscholars
    @cloudscholars27 күн бұрын

    Periodic reauthentication reset depends on the setting you apply. No that timer is associated to your group policy object. This is for last time a user authenticated from a cloud sense. Like a browser session. You can do 8 hours to make sure your users authenticate each day. This is good for security in the event a laptop gets stolen. That browser session would persist allowing the robber access to company data.

  • @Mike-xw6dh
    @Mike-xw6dh27 күн бұрын

    Thanks very much, this was really well put together and well communicated. Nice one mate!

  • @JoshPecks500lbDad
    @JoshPecks500lbDad28 күн бұрын

    down with the ship!

  • @JoshPecks500lbDad
    @JoshPecks500lbDad28 күн бұрын

    oooh this is a good one. straight to the point and curryfree!

  • @Quinton1969
    @Quinton1969Ай бұрын

    Awesome. Thanks for the lesson. I had an issue with IE Enhanced Security blocking me at the Authentication with a blank sign-in popup. Turned both off for perform and good to go.

  • @cloudscholars
    @cloudscholars25 күн бұрын

    You're welcome!

  • @SK-ju8si
    @SK-ju8siАй бұрын

    wow real simple & good explanation

  • @cloudscholars
    @cloudscholarsАй бұрын

    Glad you liked it

  • @joshuareyes1009
    @joshuareyes1009Ай бұрын

    First of all, thank you very much for the video. After applying the procedure, how long does it take to update?

  • @edison8214
    @edison8214Ай бұрын

    Thank you!

  • @cloudscholars
    @cloudscholarsАй бұрын

    You're welcome!

  • @TheWasabiLion
    @TheWasabiLionАй бұрын

    Unfortunately, there is no Regex supported yet. This solution is only a workaround that would get more complicated the more parameters you have for name conventions.

  • @Vapor_Space
    @Vapor_SpaceАй бұрын

    Thanks man

  • @cloudscholars
    @cloudscholarsАй бұрын

    You're welcome! Please like and subscribe if you haven't.

  • @siddharthay1898
    @siddharthay1898Ай бұрын

    So when you say Repot-only mode not applied, do you mean that if we enable the policy to ON, it will grant access or block access?

  • @siddharthay1898
    @siddharthay1898Ай бұрын

    Denis The Menace was under Report-only Mode, when you check the insights or sign-in logs , how do we conclude that if we enable this policy 'ON' , In future it will block or grant access? (just a little bit confused at this point)

  • @cloudscholars
    @cloudscholarsАй бұрын

    Report only mode will not enforce any actions. Putting the policy "On" will enforce actions. Report only mode is basically an audit mode.

  • @poorinvestor
    @poorinvestorАй бұрын

  • @mav29
    @mav29Ай бұрын

    great vid, thanks

  • @abdulhalimabdullahi9907
    @abdulhalimabdullahi9907Ай бұрын

    I’m preparing for my az-900 exam and this video is the best video demonstration of azure storage accounts, thank you very much for the clear and concise explanation.

  • @cloudscholars
    @cloudscholarsАй бұрын

    Glad it was helpful. Please like and subscribe. Helps me out with the algorithm.

  • @daye1997
    @daye1997Ай бұрын

    The governance identify license is $7 per user per month. Very expensive license! Again. Thank you for this wonderful video!

  • @cloudscholars
    @cloudscholarsАй бұрын

    lol yes it is expensive. Glad you liked the video. Please share on your social media and subscribe. Helps me grow the page.

  • @kavaljeetarya
    @kavaljeetaryaАй бұрын

    Would you please tell me that, can we collect which URL hit my VM in the VM logs?

  • @cloudscholars
    @cloudscholarsАй бұрын

    You using these VMs as a web server?

  • @daye1997
    @daye1997Ай бұрын

    Great content. What if you don’t create the dynamic group and just choose the guest only in scope?

  • @cloudscholars
    @cloudscholarsАй бұрын

    Yeah that should work. I like to use dynamic groups.

  • @jimcopeland4011
    @jimcopeland40112 ай бұрын

    Is there a way to set this up and use a client other than the Azure VPN Client? The client is awful!

  • @cloudscholars
    @cloudscholars2 ай бұрын

    lol there are other clients but I've only used the Azure one.

  • @flavb83music
    @flavb83music2 ай бұрын

    Are you still able to see the list of keys and secrets from the Azure Portal when doing that ?

  • @cloudscholars
    @cloudscholars2 ай бұрын

    secrets are only shown once then they are masked.

  • @jareennari
    @jareennari2 ай бұрын

    @cloud scholars Also as you mentioned last point , difference between backup and download. Where it is given in azure as two different? Only one option is download backup; and another option is restore backup.

  • @jareennari
    @jareennari2 ай бұрын

    @cloud scholars As you told Restore backup is not possible if not same subscription or not same region. But it was able to do using between east us and west us. So does that mean East US and West US aren't two different regions?

  • @livestronger1981
    @livestronger19812 ай бұрын

    Thank you for this. I have a lap that I'm learning. Let me ask. Why did you select "Block" when setting up the 2nd "sign-in" risk policy? I didn't understand the reason behind it? Shouldn't it be allow?

  • @cloudscholars
    @cloudscholars2 ай бұрын

    I changed it to allow. The system wouldn't allow me to block it. In a production environment I would do allow with a password change.

  • @shahidvids
    @shahidvids2 ай бұрын

    No BS, clear and concise. Loved it. Thank you very much.

  • @cloudscholars
    @cloudscholars2 ай бұрын

    I try to make my videos as straightforward as possible. People want the info given to them. Please if you haven’t like and subscribe. I’d appreciate if you can share as well. Thank you!

  • @faisalsharif8898
    @faisalsharif88982 ай бұрын

    Hi, thanks for sharing informative video, I want to add multiple statements for other admin roles as well, I'm new to kql so plz guide

  • @cloudscholars
    @cloudscholars2 ай бұрын

    You can do that from the office 365 side. Alert policies

  • @faisalsharif8898
    @faisalsharif88982 ай бұрын

    @@cloudscholars well, I found the way. However alerts policy under compliance and security center are limited to Exchange and SharePoint permissions, that's why without P2 wanted to achieve through Log Analytics Alerts.

  • @atulpatil8835
    @atulpatil88352 ай бұрын

    Thanks, how to estimate LA size requirement if we have many more CA policies. what is recommended retention for better result from workbook.

  • @cloudscholars
    @cloudscholars2 ай бұрын

    sorry for the late response. Are you following any regulatory compliance? That will help you with your retention policies.

  • @jonathanwpurvis
    @jonathanwpurvis3 ай бұрын

    thank you really helpfull is there a trick to gettign the server on prem to synch up iam synching down from azure but not up

  • @cloudscholars
    @cloudscholars2 ай бұрын

    are you doing writeback?

  • @jonathanwpurvis
    @jonathanwpurvis2 ай бұрын

    @@cloudscholars oh no I’ll Google that thanks

  • @cloudscholars
    @cloudscholars2 ай бұрын

    Sorry I thought this was for an ad sync video. This is for file sync. Can you provide me more details of the issue?

  • @RekhaDevi-xv1zn
    @RekhaDevi-xv1zn3 ай бұрын

    Wonderful man.

  • @RekhaDevi-xv1zn
    @RekhaDevi-xv1zn3 ай бұрын

    Thankyou.

  • @philliphess6407
    @philliphess64073 ай бұрын

    Dude, great video. bunch of good advice in here.

  • @cloudscholars
    @cloudscholars3 ай бұрын

    Glad you liked it! Please subscribe for more content.

  • @thumper300zx
    @thumper300zx3 ай бұрын

    My org is having an issue with remote users (Intune) changing their passwords in Azure AD (SSPR), but not syncing to their local machine (they have to use their old password to log into the laptop -- Windows + L is not updating it, reboot isn't helping). Which sync mechanism runs for that? Thanks for your video. It helped me understand some of the inner workings that I had no clue about :)

  • @cloudscholars
    @cloudscholars3 ай бұрын

    Did you enable write back in Entra AD Connect?

  • @thumper300zx
    @thumper300zx3 ай бұрын

    @@cloudscholars Everything was working last week, so whatever mechanisms needed to be configred were. The issue would more likely be that something/a service or process was turned off, not working now, maybe due to a user or service account. I will have an administrator check Entra AD Connect further. Was told it was running, but something's gonna be off...any other place you can suggest to look? Is Entra AD Connect (or something specific inside it) what controls getting an updated password cache onto remote AAD machines?

  • @tomcruise3003
    @tomcruise3003Ай бұрын

    @@thumper300zx did you figure this out?

  • @denson877
    @denson8773 ай бұрын

    Great video. One thing that was unclear to me is why you set the Action Group Region to Global and not match it with the Resource Group region? Thanks for your help!

  • @countbrapcula-espana
    @countbrapcula-espana3 ай бұрын

    You should create the Azure AD App Registration through Terraform, then create the Azure AD Service Principal for that that App Reg in Terraform. You will then pull the client_secret from the SP from Azure Key Vault in your TF code, no exposing client credentials in the TF code.

  • @countbrapcula-espana
    @countbrapcula-espana3 ай бұрын

    You probably already knew that.

  • @mosesdalton2902
    @mosesdalton29023 ай бұрын

    "PromoSM" 😞

  • @Oggielectric
    @Oggielectric3 ай бұрын

    My membership type option is grayed out. Do I need to do something to turn it on?

  • @cloudscholars
    @cloudscholars25 күн бұрын

    What license do you have?

  • @maheshkumarnaik754
    @maheshkumarnaik7543 ай бұрын

    Nice sir.

  • @cloudscholars
    @cloudscholars3 ай бұрын

    Glad you liked it! Please subscribe if you haven't.

  • @brandonmagloire7861
    @brandonmagloire78613 ай бұрын

    Thanks!!

  • @cloudscholars
    @cloudscholars3 ай бұрын

    Welcome!

  • @hakaiyou4532
    @hakaiyou45323 ай бұрын

    Thanks man, very helpfull!

  • @cloudscholars
    @cloudscholars3 ай бұрын

    Glad it helped!

  • @zakariaberjila4516
    @zakariaberjila45164 ай бұрын

    thank u for the video but when we use the script in the file share connect ?

  • @cloudscholars
    @cloudscholars4 ай бұрын

    Can you be more detailed with your question? I’m not following.

  • @zakariaberjila4516
    @zakariaberjila45163 ай бұрын

    @@cloudscholars when we creat the service on connect blade there is a script we use it on the VMs to connect them to the file share

  • @AhmadAbdi
    @AhmadAbdi4 ай бұрын

    Very clear and to the point. Thanks for sharing