Azure

Securing Your Identity with Microsoft’s New Authentication Methods

Microsoft will retire legacy multifactor authentication (MFA) and self-service password reset (SSPR) policies on September 30, 2025. Organizations must switch to the unified Authentication Methods policy in Microsoft Entra ID before this date. This guide explains how to: Understanding Legacy Authentication Methods Legacy methods include MFA and SSPR policies managed separately in Microsoft Entra ID. …

Understand Opportunistic TLS and Email Encryption: A Deep Dive into S/MIME, Purview Message Encryption, and Secure Email.

This entry is part 1 of 2 in the series Email encryption

Enhancing Email Security: Opportunistic TLS and Encryption Solutions In Part 1 of this series, we explored how SMTP DANE and DNSSEC collaborate to secure email communications in Exchange Online, ensuring authenticity and encryption between servers. In this follow-up, we focus on two critical components of email security: Opportunistic TLS and email encryption. Specifically, we’ll examine …

Directory-Based Edge Blocking causing 550 5.4.1 NDR

Issue Overview A customer faced a problem where all new users created in the past week and newly added proxy addresses failed to receive emails from external senders due to Directory-Based Edge Blocking causing 550 5.4.1 NDR. Internal emails worked fine, but external messages were rejected with the error: 550 5.4.1 [user@Customerdomain.com]: Recipient address rejected: …