There are a multitude of online tools that help diagnose issues with various mail services, but understanding what these tools actually check is valua… Read the rest “How to Use NsLookup To Check DKIM Record”
Extended Protection uses service binding and channel binding to help prevent an authentication relay attack. In an authentication relay attack, a clie… Read the rest “Exchange Server Extended Protection”
The May 2022 security update for Exchange Server 2013, 2016 and 2019 resolved CVE-2022-21978. A common issue is that admins are only doing part of th… Read the rest “Remediate Exchange Security CVE-2022-21978”
Note that there have been changes to Safe Links policy for Microsoft Defender for Office 365 (MDO).
Previously you could add URLs to the Safe Links pol… Read the rest “Migrate Safe Links Block Settings to TABL”
In the field, I’m seeing multiple customers that are struggling to implement the DownloadDomain feature. It does require a little prep work and it is … Read the rest “Implementing Exchange DownloadDomain Security”
When designing an upgrade strategy from an older version of Exchange to a newer one, a question that needs to be addressed is do we need to introduce … Read the rest “Exchange 2019 Point of No Return”
Admins have become very aware of the need to adjust the Schannel protocol settings for TLS to enable TLS 1.2 and to disable older versions. However, … Read the rest “Remediate SWEET32 — Disable TLS_RSA_WITH_3DES_EDE_CBC_SHA For Windows Server 2012 R2”
This is a snapshot of portal.azure.com using SSLLabs.com to scan the TLS configuration. The image below is a point in time snapshot of the configurat… Read the rest “SSL Labs Scan Portal.Azure.com–June 2022”
This post is a scan of Outlook.office365.com taken with the SSLLabs.com scan tool which analyses the TLS configuration of the server.