Your IT. My business. My life.  

Ja Sie lesen richtig, Ihre IT ist mein Business und mein Leben, neben meiner Familie natürlich.


Warum das so ist?


Als Principal Consultant habe ich es mir zur Aufgabe gemacht, Ihnen in Ihren vielen Fragen rund um Ihre IT-Infrastruktur zur Seite zu stehen und Sie zu unterstützen. Mein Focus liegt hierbei in den Themen Unified Communication (Microsoft Exchange, Microsoft Lync / Skype for Business), Active Directory und Office 365.


Bei meinem derzeitigen Arbeitgeber, ein IT-Systemhaus, bin ich im Auftrag zahlreicher Kunden aus allen Sektoren (Banken, Health Care, Kommunen etc.) im gesamten Deutschsprachigen Raum unterwegs.


Sie brauchen Hilfe?


Dann schreiben Sie mir und ich schau was ich für Sie tun kann.


Viele Grüße

Alexander Wolfshohl



Neueste Blogeinträge

Intune und die Verwendung von ADMX GPO Einstellungen

Bis vor einer noch nicht so langer Zeit, gab es eine große Hürde bei der Einführung von Intune in Unternehmen, es war nämlich nicht möglich Gruppenrichtlinien (GPO´s) auf den Intune verwalteten Geräten zu verteilen. Dieses Defizit wurde nun von Microsoft behoben, mit den ADMX backed policies ist es nun möglich, diese Lücke zu füllen.


GPO in Intune sind nun möglich

Für viele Unternehmen stellte sich beim Einsatz von Intune – z.B. zur Gewährleistung von Compliance Anforderung – bisher die Hürde, dass keine Gruppenrichtlinien bzw. Registry-Einträge durch Intune möglich waren. Gerade wenn eine Mischumgebung aus hybrid-verwalteten Geräten und Geräten mit reinem Azure AD join zum Einsatz kamen.


In diesem Fall musste eine Doppelpflege vorgenommen werden, auf der einen Seite On-Premise in Form von GPO Einstellungen und auf der anderen Seite Einstellungen in Intune. Die Problematik dabei ist nur, das mit den GPO´s mehr Einstellungen möglich sind.



Mit den in Windows 10 integrierte Microsoft Configuration Service Providers (CSPs), welche nun im Systemkern vorhanden sind, womit die Anwendung von OMA-URI-Einstellungen (Open Mobile Alliance Uniform Resource Identifier), wie in den mobilen Plattformen Android und iOS, ermöglicht werden.


Dieses Verfahren hat einen großen Vorteil: Richtlinienanwendungen – bzw. eine Einstellung daraus – lässt sich nun zentral über die Intune-Console monitoren.


Microsoft Intune setzt hierbei zudem auf ein mehrstufiges Verfahren zur Richtlinien-Prüfung: Zum einen meldet der Client zurück, ob eine Richtlinie erfolgreich angewendet werden konnte. Über eine separate Konformitätsrichtlinie wird zudem geprüft, ob das Endgerät zu den Richtlinien kompatibel ist, die man zur Wahrung eines Sicherheitsstands im Unternehmen definiert hat. Ist das Gerät aus der Sicht der Security nicht kompatibel – etwa weil es nicht verschlüsselt ist oder ein Viren-Infekt nicht behoben werden konnte –, so wird es z.B. von den Office 365 Diensten ausgesperrt.


Eine Konfigurationsprüfung und die Konformität zu trennenstellt sich durchaus als sinnvoll dar: Es wäre falsch, einen Nutzer auszusperren, nur weil vielleicht das Hintergrundbild falsch gesetzt wurde.


Das Intune bietet zwar schon recht viele Einstellungen an, die auch über Schalter aktiviert werden können, aber über die ADMX backed policies werden diese Möglichkeiten nun deutlich erweitert.


Einstellungen in Microsoft Intune

Microsoft führt eine umfangreiche Dokumentation bereits importierter CSP-Einstellungen. Für diese CSP-Settings ist beschrieben in welcher Windows Version sie zur Verfügung stehen, in welcher ADMX-Datei sie zu finden sind und wie die ID der einzelnen Optionen lauten. 

mehr lesen 0 Kommentare

Erstellen und Bereitstellen von PFX-Zertifikatsprofilen in Microsoft Intune

In vielen Kundensituationen kommt es immer wieder vor, das Kunden Zertifikate an mobile Geräte senden möchten, um mit Ressourcenzugriffsprofilen (WLAN, S / MIME etc.) zu arbeiten und den Zugriff über ein Zertifikat aus der internen CA abzusichern. Aus der Sicht der Sicherheit aber nicht den NDES (Network Device Enrollment Server), der ja über das SCEP Protokoll arbeitet, über eine URL im Internet publizieren möchten.


Microsoft Intune verfügt hierfür über eine weniger bekannte PKCS # 12 (PFX) -basierte Zertifikatsbereitstellung, die in diesem Szenario verwendet werden kann


In den vorherigen Versionen musste ein Administrator eine PFX-Datei bereitstellen, die dann auf dem Gerät eingebunden werden musste. Dies hat sich nun in Intune geändert, die PFX Datei muss nun nicht mehr bereitgestellt werden. Mit der  Hilfe des Intune Certificate Connector, können nun Geräte ein Zertifikat aus der lokalen Zertifizierungsstelle automatisiert erhalten. Hierfür wird der NDES Service nicht mehr benötigt.

mehr lesen 0 Kommentare

Product Key per Powershell auslesen

Die Frage die immer wieder gestellt wurde, ist es möglich per Powershell den Product Key von Microsoft Windows Betriebssystemen auszulesen?


Ja es ist möglich. Hier nachfolgend ein kleines Powershell Script, womit der Product Key ausgelesen werden kann (Nutzung auf eigene Gefahr).



$value = (get-itemproperty "HKLM:\\SOFTWARE\Microsoft\Windows NT\CurrentVersion").digitalproductid[0x34..0x42]

$ProductKey = ""

for ($i = 24; $i -ge 0; $i--) {

 $r = 0

 for ($j = 14; $j -ge 0; $j--) {

  $r = ($r * 256) -bxor $value[$j]

  $value[$j] = [math]::Floor([double]($r/24))

  $r = $r % 24


 $ProductKey = $map[$r] + $ProductKey

 if (($i % 5) -eq 0 -and $i -ne 0) {

  $ProductKey = "-" + $ProductKey



echo "Product Key:" $ProductKey



4 Kommentare

Microsoft Global Datacenters and Network Infrastructure

Ein kleiner Überblick über das Microsoft Rechenzentrum.

mehr lesen 0 Kommentare

Whitespace in einer Microsoft Exchange Datenbank entfernen

Wenn Daten zu einer Exchange-Datenbank hinzufügt werden, erhöht sich damit zwangsläufig die Größe der Microsoft Exchange Datenbank. Wenn jedoch Postfächer gelöscht werden, nimmt die Größe der Microsoft Exchange-Datenbank nicht unbedingt ab - sie bleibt gleich.

mehr lesen 2 Kommentare

News rund um Exchange und Allgemeine IT Themen

Exchange Server tips, tutorials and expert advice

ZERO DAY Vulnerability – Exchange Servers (Mi, 03 Mär 2021)
If youre running Exchange 2010, 2013, 2016 or 2019, upgrade your servers to the latest rollup update and PATCH NOW !!!!! What is the purpose of this notification?   This notification provides guidance for customers regarding new security updates released by Microsoft to resolve privately reported security vulnerabilities that affect Exchange Server 2013, Exchange Server 2016, and Exchange […]
>> mehr lesen

Best Exchange Recovery Software- Stellar Repair for Exchange (Tue, 19 Jan 2021)
I have been in many situations where I would need to recover or extract some data from an old Exchange Server database file which was restored from a decommissioned Exchange Server. Some of these occasions where to retrieve an old mailbox which was not migrated, or in case of a disaster and where the Exchange […]
>> mehr lesen

Microsoft Teams Blog

Decorate your background – How generative AI backgrounds work, and why you might want to use them (Tue, 07 May 2024)
Microsoft Teams has always been at the forefront of innovation, and the Decorate your background feature is no exception. Released in Teams Premium in January 2024, this feature uses generative AI to create an artificial version of the user’s real background but cleans it up or decorates it following a specific theme.   Background replacement has become increasingly popular, as it allows users to project a mood or image into a Teams meeting, or simply to hide a messy room. Teams offers a variety of different background replacement themes, including standard and portrait blur, video backgrounds, frosted glass, which is great for displaying your company logo in your video calls , and a variety of specific images. Backgrounds in Microsoft Teams won the 2024 IF Design Award for Product Backgrounds and give Teams users joy, help them feel connected, and express who they are. The Decorate your background feature takes this a step further by creating a background that looks like the room the user is in, only cleaned up and therefore presentable. It offers different styles, like Clean up, Fancy, Greenhouse, Celebration, and Surprise me, with more in the works . Clean up - Designed to tidy up your surroundings, this theme removes clutter and creates a more streamlined and minimalistic aesthetic, elevating your room’s professional appearance. clean up.png   Fancy- Enhances your space by incorporating lavish and traditional decorative elements to give your room a more elegant and adorned appearance. Fancy.png   Greenhouse - Adds plants and greenery into your space, infusing your room with a natural and lush ambiance. Greenhouse.png   Celebration - Includes festive decorations like balloons, streamers, lighting, and other elements, livening up your space for celebratory moments. Celebration.png   Surprise me - Cycles through a variety of styles to transform your space including 2D animation theme, underwater theme, a block-style design reminiscent of Minecraft, and a space shuttle theme, offering a new experience with every click. Surprise Me.png   The feature works by taking a screenshot of the user in front of their current background, then sends that to a service in the cloud. The service removes the user from the screenshot, fills the user-shaped hole in the background, and then passes this image to the generative AI image service, along with text instructions for the selected style. After creating a background image, the service does several safety checks to assure the generated image is appropriate and safe for work , before sending the image to the user’s machine. The user’s images are not stored in the cloud or used for any purposes other than the background replacement that happens on the user’s machine. The step by step process behind Decorate your backgroundThe step by step process behind Decorate your background   One major advantage of Decorate your background is the fact that the background looks like the user’s actual background, particularly with regards to colors, brightness, and angles of objects in the background. We’ve all seen it when video participants in meetings use backgrounds that look ‘off’. Something can be not quite right either because the background replacement is much lighter or darker than the user’s surroundings, or because the colors between the background and the user’s actual environment are so different that people on video have an edge around their body, or because the angles and orientation of the items in the background don’t match the user in front of that background. With Decorate your background , video users look like they are in the environment depicted in the background, because in a way, they are. The Decorate your background feature is available for Teams Premium users. So, next time you’re in a Teams meeting and want to spruce up your background, give the Decorate your background feature a try ! Learn how to use the feature here: Change your background in Microsoft Teams meetings - Microsoft Support To try Decorate your background ask your IT admin about acquiring a Microsoft Teams Premium license. Get started for free for 30 days or buy before June 30, 2024, for just USD 7 per user per month—30 percent off the standard USD 10 pricing. Try of buy Teams Premium today.
>> mehr lesen

What’s New in Microsoft Teams | April 2024 (Wed, 01 May 2024)
If you're looking for ways to boost your productivity with Microsoft Teams, you're in the right place. In this blog post, we'll share the latest features and improvements that have rolled out in April, covering everything from chat to meetings and town halls, from Teams Phone to Teams Rooms, and more. Whether you're a regular Teams user, an IT administrator, or a frontline manager, you'll find something new and exciting to try out.   There are several features this month that I really like. First, I like that I’m now able to have a multi-turn conversation with Copilot, so that the answers are based on my follow-up questions. And when I join a meeting in a Teams Room, I enjoy that meeting chat is now displayed by default on the front-of-room screen alongside the meeting participants or content.   Read on to discover what's new in Microsoft Teams and how you can make the most of it. Chat and Collaboration Meetings Webinars and Townhalls Teams Phone Teams Rooms and Devices IT Administration and Security Frontline Worker Solutions   Chat and Collaboration Multi-turn conversation with Copilot in chats and channels After Copilot has answered your question, you can continue the conversation and ask for more details or clarification. For example, after Copilot summarizes a chat, you can ask to elaborate on the first point of the summary. Multi-turn conversation with Copilot in chats and channels1.png   Hide general channel You now have the option to hide or show the general channel of a team, just like other channels. This way, you can customize your channel list and make it more organized. By hiding channels that are not very relevant, you can reduce the clutter in your channel list and focus on the channels that are most important. Hide general channel.png   Group chat profile picture Use a custom chat profile picture to match your team and group chat topic. Group chat members can either upload an image or select from various illustrations and emojis, making their chat more inclusive and expressive. This feature also helps to tell apart different chats easily, making it easier to quickly find a specific chat. Group chat profile picture.png   Context-based file attach suggestions Searching for the right file to attach can take a while. Now, you can attach files to a chat more easily. Select “Attach file” from the chat compose box and Teams will surface the five most relevant files from OneDrive and SharePoint based on the context of the conversation, helping you finish the task in fewer steps. Context-based file attach suggestions.png   Voice isolation Voice isolation enables clear and seamless calls or meetings, wherever users are. This feature uses AI to eliminate all background noise, including other people's voices. By using a voice profile, this advanced noise reduction capability makes sure only the user’s voice is heard. Whether you are in a busy office, a noisy cafe, or a crowded airport, you can communicate with confidence and clarity. Learn more about voice isolation. Voice isolation 2.png   Simplified team creation When creating a team, the new default experience will be “create a team from scratch”, making it a simpler and quicker experience. If you would like to create a team from a template, select “more create team options” and pick from the template library. Simplified team creation.png   Create channels with ease Not every conversation requires a new team. So, we’ve made it easier to create a channel from the same menu you use to create a new team. Now you can avoid creating unnecessary team structures and clutter when a single channel is enough. Create channels with ease.png   Sign in with multiple accounts across clouds Stay informed and responsive without the need to switch contexts, no matter which account you're currently working with. You can sign in to Teams with multiple accounts simultaneously – now including government accounts - and get real-time notifications for all the accounts.      Meetings Calendar notifications in Teams Stay on top of your schedule with calendar notifications in Microsoft Teams. You can now manage calendar notifications from your Teams activity feed, without leaving your flow of work. You will see calendar notifications for meeting invites, changes, cancellations, and forwards (if you are the meeting organizer) in your activity feed. You can click on them to see the meeting details. Calendar notifications in Teams.jpg   Improvements to admin controls for Copilot access during and after meeting In the Teams admin center, IT administrators can manage how people in the organization can use Copilot for meetings and events. Settings for meeting policies and transcription policies will determine if Copilot can only be used during meetings, or if it can be used both during and after meetings. Learn more about Teams admin center settings and Copilot behavior in managing Copilot for Teams meetings and events.     Webinars and Town Halls Improved live translated caption options in town halls Organizers can now select up to six languages to support live translated captions in town hall events. Once in the town hall, attendees can choose between the selected languages for a more inclusive experience. Organizers with a Teams Premium license can select up to 10 languages. Improved live translated caption options in town halls.png   New activity notification for Q&A in town halls Organizers, presenters, and attendees using Q&A functionality in a town hall event will now see a red dot appear next to the Q&A icon to indicate that a new question or a reply has been posted. This new notification appears when the Q&A pane is closed, and persists until it has been opened. New activity notification for Q&A in town halls.png     Teams Phone Expanded incoming call setting options for Teams Phone Mobile users Teams Phone Mobile allows you to have a single phone number as your mobile number and your Teams number. With Teams Phone Mobile, you now have the option to choose whether notifications for incoming group calls and meeting nudges are received natively on your mobile device or in the Teams app. This new capability enables greater flexibility and mobility and allows you to easily move these calls between your mobile device’s native dialer or the Teams app without interruption.   Shared call history for call delegation Call delegators and delegates can now see shared call history records for the shared line, enabling greater transparency and collaboration. Learn more about call delegation and shared line appearance. Shared call history for call delegation 1.png   Teams Rooms and Devices Find certified for Teams devices for all types of spaces and uses at   Devices store in Teams app With the Teams device store experience inside the Teams app, you can easily discover and purchase certified Teams devices for personal or shared use cases – headsets, webcams, desk phones, Teams Rooms, and more. Explore devices in categories, use search or filters to find the desired device, and purchase, all within the familiar Microsoft Teams interface. This devices store experience will be available to small and medium businesses - commercial customers with up to 300 Teams licenses. Customers in the United States and Canada can purchase from the store inside Microsoft Teams. Learn more about the Teams device store experience in Teams. Devices store in Teams app.png   Require meeting ID and passcode to join a Teams Rooms meeting IT administrators can configure and require a meeting ID and passcode to join a meeting on Teams Rooms on Windows and Android to ensure a level of security and privacy. This feature is available for rooms with a Teams Rooms Pro license. Require meeting ID and passcode to join a Teams Rooms meeting.png   4K display support for Teams Rooms on Windows 4K-enabled displays, including front-of-room displays and touch boards, are natively supported in the Teams Rooms experience. Once enabled, the Teams Room user interface will scale for optimal readability. Note that this improvement does not include support for 4K video or 4K HDMI sharing.   New Teams available on Teams Rooms on Windows The new Teams app now powers Teams Rooms on Windows devices. The new Teams app delivers up to two times faster performance while using 50 percent less memory. This means that Teams Rooms devices can utilize available resources to optimize the room experience and to render intelligent audio and video more reliably.   Change language in Teams Rooms on Windows Meeting participants in the room will be able to select a different language for Microsoft Teams Rooms on Windows. Administrators will be able to configure up to 3 languages. Change language in Teams Rooms on Windows.png   Meeting chat shown by default in Gallery View for Teams Rooms on Windows When joining a meeting with Teams Rooms on Windows, meeting chat is now shown by default on the front of room display alongside meeting participants or content. Meeting participants in the room can use the touch console to hide or show chat on the front of room display and IT admins can easily change the default chat experience for a room. Meeting chat shown by default in Gallery View for Teams Rooms on Windows.jpg   Home screen refresh for Teams Rooms on Android The Teams Rooms on Android home screen matches the look and feel of Teams Rooms on Windows, enabling users to engage with a consistent Teams Rooms interface. The touch console now features six action buttons and shows the room calendar on the right side of the home screen. Home screen refresh for Teams Rooms on Android2.png   Give feedback for Teams Rooms on Android On a Teams Rooms on Android device, the Help button will include a Give feedback option that lets users share their opinions and ideas about Teams Rooms with Microsoft. Microsoft will use this feedback to improve the Teams Rooms experience. IT admins can enable or disable this feature for users and manage feedback policies. Give feedback for Teams Rooms on Android1.jpg   4K-quality local HDMI content sharing for Teams Rooms on Android 4K local HDMI content sharing lets you project HDMI content in 4K quality to front-of-room displays for Teams Rooms on Android devices that have 4K HDMI input capability, enhancing presentations and collaboration. Meeting participants can enjoy this sharper and more detailed content viewing experience when sharing HDMI content outside of an online Teams meeting, offering an improved experience for all meeting scenarios.   Automatic device updates via Teams Rooms Pro management During the initial setup of a device, the Teams Rooms on Windows app will automatically check for and install new application and Windows updates, ensuring devices are protected and up to date on day one. User reported events in Teams Rooms Pro Management When an end user reports an issue from the Teams Rooms device, a feedback event is raised in the Teams Rooms Pro Management portal. This event provides administrators with the necessary data to address the feedback or to open a support case with logs that were generated by the end user. This feature requires a Teams Rooms Pro license.   Bring Your Own Device (BYOD) meeting rooms admin experience Bring Your Own Device rooms can be discovered or added in bulk into the Teams Rooms Pro Management portal. For BYOD rooms, IT admins will have unprecedented visibility and comprehensive inventory of their shared spaces and devices. For smart management and planning, IT teams can take advantage of insightful room and device usage reports by adding the Teams Shared Device add-on license. Bring Your Own Device (BYOD) meeting rooms admin experience1.png   Room remote in Teams desktop app available for GCC The room remote feature is now available for the GCC cloud environment. It enables you to control a nearby shared Teams Rooms device from the Teams app on your PC. You can manage the Teams Rooms device’s camera and microphone, content layout, and settings without disrupting your call or meeting. This feature works with nearby Windows, Android, or Surface Hub meeting room devices.   Huddly Crew AI-directed multi-camera system The Huddly Crew is designed to boost engagement and productivity in hybrid meetings with its TV and movie production-inspired setup. It uses three advanced cameras for premium video quality, with the onboard AI, Huddly® Director™, editing the meeting live by seamlessly switching between different shots. This keeps everyone engaged, avoids meeting fatigue, and captures the essence of in-person conversations. Setting up the system is quick and easy with USB plug-and-play, and its modular design allows for flexibility in various workplace settings. Huddly Crew AI-directed multi-camera system.png   Yealink UH35 headset The Yealink Wired Headset UH35 is designed for use in professional environments, this wired headset features leading voice pickup technology to ensure that you can hear and be heard with clarity. The ergonomic design ensures all-day comfort, making it a great choice for any workspace. Yealink UH35 headset.png   Bang & Olufsen Cisco 950 MS earbuds The Bang & Olufsen Cisco 950 MS earbuds are designed for professionals unlocking new levels of productivity with professional, true wireless earbuds that feature a minimalistic design, noise cancellation, on-ear call controls, and a tailored fit for all day comfort. Bang & Olufsen Cisco 950 MS earbuds.png   Dell WL7024 headset The Dell WL7024 Headset is a wireless headset designed to provide you with an immersive audio experience, and boomless design creating a natural speaking experience. With noise-cancelling it ensures your voice is heard clearly, even in noisy environments, and its comfortable over-ear design means you can wear it for hours without discomfort. Dell WL7024 headset.png     IT Administration and Security Limit presenter role permissions Administrators can use a new tenant configuration to restrict what presenters can do in meetings. When enabled, presenters can no longer control attendees’ mics and cameras, change the role of other participants, lower participants’ hands, and remove participants from a meeting. This gives meeting organizers more control in running their meetings.     Frontline Worker Solutions Multi-instance app customization IT administrators can now create and manage multiple customized instances of an app in the Teams admin center. Each customized instance can have a distinct appearance, with a unique app icon, name, description, and more. This way, one app can meet the needs of different business groups or product lines within an organization. Multi-instance app customization.png   Improvements to importing schedules in Shifts app Frontline managers can use Excel to create a schedule and import it into Shifts. Additionally, they can check the import status. Managers no longer need to remain in the Shifts app while the Excel file is being processed. They can return to the Import schedule page to review the import status and check for errors. Managers can see the 10 latest schedule creation actions through Excel import, which makes collaboration easier between managers on a team. This capability is available to frontline managers in the Shifts app in Teams on desktop and Web. Improvements to importing schedules in Shifts app.png New task publishing features Task publishing now includes new features that greatly improve worker visibility in tasks that are necessary and important, while helping frontline managers ensure that work is completed to satisfaction. These features are included in the new Planner experience: Assign training and policy tasks to frontline employees (task list for each team member) Automatically send repeat tasks to frontline locations (task list recurrence) Make it mandatory to provide input back to the organization (form completion requirement) For more details, check out the new Planner: new task features for organizations with frontline workers.   Pre-populated domain for faster sign-in Administrators can now streamline the sign-in process for their employees by pre-filling the domain name on the Teams sign-in screen. This enhancement in Teams for iOS and Android makes signing in faster and more convenient, especially for frontline workers who frequently sign in and out on shared and managed devices. Pre-populated domain for faster sign-in.png  
>> mehr lesen