Skip to content

Commit faf61f7

Browse files
authored
Merge branch 'MicrosoftDocs:main' into patch-3
2 parents b9e35ca + f5fd217 commit faf61f7

File tree

448 files changed

+5511
-3820
lines changed

Some content is hidden

Large Commits have some content hidden by default. Use the searchbox below for content that may be hidden.

448 files changed

+5511
-3820
lines changed

.openpublishing.redirection.baremetal-infrastructure.json

Lines changed: 81 additions & 1 deletion
Original file line numberDiff line numberDiff line change
@@ -49,7 +49,87 @@
4949
"source_path": "articles/baremetal-infrastructure/workloads/nc2-public-preview/use-cases-and-supported-scenarios.md",
5050
"redirect_url": "/azure/baremetal-infrastructure/workloads/nc2-on-azure/use-cases-and-supported-scenarios",
5151
"redirect_document_id": false
52-
}
52+
},
53+
{
54+
"source_path": "articles/baremetal-infrastructure/workloads/oracle/concepts-oracle-high-availability.md",
55+
"redirect_url": "/azure/virtual-machines/workloads/oracle/oracle-overview",
56+
"redirect_document_id": false
57+
},
58+
{
59+
"source_path": "articles/baremetal-infrastructure/workloads/oracle/options-considerations-high-availability.md",
60+
"redirect_url": "/azure/virtual-machines/workloads/oracle/oracle-overview",
61+
"redirect_document_id": false
62+
},
63+
{
64+
"source_path": "articles/baremetal-infrastructure/workloads/oracle/configure-snapcenter-oracle-baremetal.md",
65+
"redirect_url": "/azure/virtual-machines/workloads/oracle/oracle-overview",
66+
"redirect_document_id": false
67+
},
68+
{
69+
"source_path": "articles/baremetal-infrastructure/workloads/oracle/create-on-demand-backup-oracle-baremetal.md",
70+
"redirect_url": "/azure/virtual-machines/workloads/oracle/oracle-overview",
71+
"redirect_document_id": false
72+
},
73+
{
74+
"source_path": "articles/baremetal-infrastructure/workloads/oracle/netapp-snapcenter-integration-oracle-baremetal.md",
75+
"redirect_url": "/azure/virtual-machines/workloads/oracle/oracle-overview",
76+
"redirect_document_id": false
77+
},
78+
{
79+
"source_path": "articles/baremetal-infrastructure/workloads/oracle/oracle-baremetal-architecture.md",
80+
"redirect_url": "/azure/virtual-machines/workloads/oracle/oracle-overview",
81+
"redirect_document_id": false
82+
},
83+
{
84+
"source_path": "articles/baremetal-infrastructure/workloads/oracle/oracle-baremetal-ethernet.md",
85+
"redirect_url": "/azure/virtual-machines/workloads/oracle/oracle-overview",
86+
"redirect_document_id": false
87+
},
88+
{
89+
"source_path": "articles/baremetal-infrastructure/workloads/oracle/oracle-baremetal-overview.md",
90+
"redirect_url": "/azure/virtual-machines/workloads/oracle/oracle-overview",
91+
"redirect_document_id": false
92+
},
93+
{
94+
"source_path": "articles/baremetal-infrastructure/workloads/oracle/oracle-baremetal-patching.md",
95+
"redirect_url": "/azure/virtual-machines/workloads/oracle/oracle-overview",
96+
"redirect_document_id": false
97+
},
98+
{
99+
"source_path": "articles/baremetal-infrastructure/workloads/oracle/oracle-baremetal-provision.md",
100+
"redirect_url": "/azure/virtual-machines/workloads/oracle/oracle-overview",
101+
"redirect_document_id": false
102+
},
103+
{
104+
"source_path": "articles/baremetal-infrastructure/workloads/oracle/oracle-baremetal-skus.md",
105+
"redirect_url": "/azure/virtual-machines/workloads/oracle/oracle-overview",
106+
"redirect_document_id": false
107+
},
108+
{
109+
"source_path": "articles/baremetal-infrastructure/workloads/oracle/oracle-baremetal-storage.md",
110+
"redirect_url": "/azure/virtual-machines/workloads/oracle/oracle-overview",
111+
"redirect_document_id": false
112+
},
113+
{
114+
"source_path": "articles/baremetal-infrastructure/workloads/oracle/oracle-high-availability-recovery.md",
115+
"redirect_url": "/azure/virtual-machines/workloads/oracle/oracle-overview",
116+
"redirect_document_id": false
117+
},
118+
{
119+
"source_path": "articles/baremetal-infrastructure/workloads/oracle/restore-oracle-database-baremetal.md",
120+
"redirect_url": "/azure/virtual-machines/workloads/oracle/oracle-overview",
121+
"redirect_document_id": false
122+
},
123+
{
124+
"source_path": "articles/baremetal-infrastructure/workloads/oracle/set-up-snapcenter-to-route-traffic.md",
125+
"redirect_url": "/azure/virtual-machines/workloads/oracle/oracle-overview",
126+
"redirect_document_id": false
127+
},
128+
{
129+
"source_path": "articles/baremetal-infrastructure/workloads/oracle/high-availability-features.md",
130+
"redirect_url": "/azure/virtual-machines/workloads/oracle/oracle-overview",
131+
"redirect_document_id": false
132+
}
53133
]
54134
}
55135

.openpublishing.redirection.json

Lines changed: 5 additions & 0 deletions
Original file line numberDiff line numberDiff line change
@@ -28773,6 +28773,11 @@
2877328773
"source_path": "articles/aks/keda-troubleshoot.md",
2877428774
"redirect_url": "/troubleshoot/azure/azure-kubernetes/troubleshoot-kubernetes-event-driven-autoscaling-add-on?context=/azure/aks/context/aks-context",
2877528775
"redirect_document_id": false
28776+
},
28777+
{
28778+
"source_path_from_root": "/articles/virtual-machines/windows/using-visual-studio-vm.md",
28779+
"redirect_url": "/visualstudio/install/using-visual-studio-vm",
28780+
"redirect_document_id": false
2877628781
}
2877728782

2877828783
]

.openpublishing.redirection.virtual-desktop.json

Lines changed: 0 additions & 5 deletions
Original file line numberDiff line numberDiff line change
@@ -30,11 +30,6 @@
3030
"redirect_url": "/azure/virtual-desktop/rdp-shortpath",
3131
"redirect_document_id": false
3232
},
33-
{
34-
"source_path_from_root": "/articles/virtual-machines/windows/using-visual-studio-vm.md",
35-
"redirect_url": "/visualstudio/install/using-visual-studio-vm",
36-
"redirect_document_id": false
37-
},
3833
{
3934
"source_path": "articles/virtual-desktop/azure-stack-hci-faq.yml",
4035
"redirect_url": "/azure/virtual-desktop/azure-stack-hci",

articles/active-directory/authentication/howto-mfaserver-deploy-upgrade.md

Lines changed: 10 additions & 11 deletions
Original file line numberDiff line numberDiff line change
@@ -1,32 +1,31 @@
11
---
22
title: Upgrading Azure MFA Server - Azure Active Directory
3-
description: Steps and guidance to upgrade the Azure Multi-Factor Authentication Server to a newer version.
3+
description: Steps and guidance to upgrade the Azure AD Multi-Factor Authentication Server to a newer version.
44

55
services: multi-factor-authentication
66
ms.service: active-directory
77
ms.subservice: authentication
88
ms.topic: how-to
9-
ms.date: 11/12/2018
9+
ms.date: 10/10/2022
1010

1111
ms.author: justinha
1212
author: justinha
1313
manager: amycolannino
14-
ms.reviewer: michmcla
14+
ms.reviewer: jpettere
1515

1616
ms.collection: M365-identity-device-management
1717
---
18-
# Upgrade to the latest Azure Multi-Factor Authentication Server
18+
# Upgrade to the latest Azure AD Multi-Factor Authentication Server
1919

20-
This article walks you through the process of upgrading Azure Multi-Factor Authentication (MFA) Server v6.0 or higher. If you need to upgrade an old version of the PhoneFactor Agent, refer to [Upgrade the PhoneFactor Agent to Azure Multi-Factor Authentication Server](howto-mfaserver-deploy-upgrade-pf.md).
20+
This article walks you through the process of upgrading Azure AD Multi-Factor Authentication (MFA) Server v6.0 or higher. If you need to upgrade an old version of the PhoneFactor Agent, refer to [Upgrade the PhoneFactor Agent to Azure AD Multi-Factor Authentication Server](howto-mfaserver-deploy-upgrade-pf.md).
2121

2222
If you're upgrading from v6.x or older to v7.x or newer, all components change from .NET 2.0 to .NET 4.5. All components also require Microsoft Visual C++ 2015 Redistributable Update 1 or higher. The MFA Server installer installs both the x86 and x64 versions of these components if they aren't already installed. If the User Portal and Mobile App Web Service run on separate servers, you need to install those packages before upgrading those components. You can search for the latest Microsoft Visual C++ 2015 Redistributable update on the [Microsoft Download Center](https://www.microsoft.com/download/).
2323

2424
> [!IMPORTANT]
25-
> As of July 1, 2019, Microsoft no longer offers MFA Server for new deployments. New customers that want to require multi-factor authentication (MFA) during sign-in events should use cloud-based Azure AD Multi-Factor Authentication.
26-
>
25+
> In September 2022, Microsoft announced deprecation of Azure AD Multi-Factor Authentication Server. Beginning September 30, 2024, Azure AD Multi-Factor Authentication Server deployments will no longer service multifactor authentication (MFA) requests, which could cause authentications to fail for your organization. To ensure uninterrupted authentication services and to remain in a supported state, organizations should [migrate their users’ authentication data](how-to-migrate-mfa-server-to-azure-mfa-user-authentication.md) to the cloud-based Azure MFA service by using the latest Migration Utility included in the most recent [Azure MFA Server update](https://www.microsoft.com/download/details.aspx?id=55849). For more information, see [Azure MFA Server Migration](how-to-migrate-mfa-server-to-azure-mfa.md).
26+
2727
> To get started with cloud-based MFA, see [Tutorial: Secure user sign-in events with Azure AD Multi-Factor Authentication](tutorial-enable-azure-mfa.md).
28-
>
29-
> Existing customers that activated MFA Server before July 1, 2019 can download the latest version, future updates, and generate activation credentials as usual.
28+
3029

3130
Upgrade steps at a glance:
3231

@@ -36,7 +35,7 @@ Upgrade steps at a glance:
3635

3736
## Upgrade Azure MFA Server
3837

39-
1. Use the instructions in [Download the Azure Multi-Factor Authentication Server](howto-mfaserver-deploy.md#download-the-mfa-server) to get the latest version of the Azure MFA Server installer.
38+
1. Use the instructions in [Download the Azure AD Multi-Factor Authentication Server](howto-mfaserver-deploy.md#download-the-mfa-server) to get the latest version of the Azure MFA Server installer.
4039
2. Make a backup of the MFA Server data file located at C:\Program Files\Multi-Factor Authentication Server\Data\PhoneFactor.pfdata (assuming the default install location) on your primary MFA Server.
4140
3. If you run multiple servers for high availability, change the client systems that authenticate to the MFA Server so that they stop sending traffic to the servers that are upgrading. If you use a load balancer, remove a subordinate MFA Server from the load balancer, do the upgrade, and then add the server back into the farm.
4241
4. Run the new installer on each MFA Server. Upgrade subordinate servers first because they can read the old data file being replicated by the primary.
@@ -113,7 +112,7 @@ These instructions only apply if you run Multi-Factor Authentication Server sepa
113112

114113
## Next steps
115114

116-
* Get examples of [Advanced scenarios with Azure Multi-Factor Authentication and third-party VPNs](howto-mfaserver-nps-vpn.md)
115+
* Get examples of [Advanced scenarios with Azure AD Multi-Factor Authentication and third-party VPNs](howto-mfaserver-nps-vpn.md)
117116

118117
* [Synchronize MFA Server with Windows Server Active Directory](howto-mfaserver-dir-ad.md)
119118

articles/active-directory/conditional-access/concept-conditional-access-cloud-apps.md

Lines changed: 10 additions & 8 deletions
Original file line numberDiff line numberDiff line change
@@ -6,7 +6,7 @@ services: active-directory
66
ms.service: active-directory
77
ms.subservice: conditional-access
88
ms.topic: conceptual
9-
ms.date: 08/09/2022
9+
ms.date: 09/14/2022
1010

1111
ms.author: joflore
1212
author: MicrosoftGuyJFlo
@@ -21,7 +21,7 @@ Cloud apps, actions, and authentication context are key signals in a Conditional
2121

2222
- Administrators can choose from the list of applications that include built-in Microsoft applications and any [Azure AD integrated applications](../manage-apps/what-is-application-management.md) including gallery, non-gallery, and applications published through [Application Proxy](../app-proxy/what-is-application-proxy.md).
2323
- Administrators may choose to define policy not based on a cloud application but on a [user action](#user-actions) like **Register security information** or **Register or join devices**, allowing Conditional Access to enforce controls around those actions.
24-
- Administrators can use [authentication context](#authentication-context-preview) to provide an extra layer of security in applications.
24+
- Administrators can use [authentication context](#authentication-context) to provide an extra layer of security in applications.
2525

2626
![Define a Conditional Access policy and specify cloud apps](./media/concept-conditional-access-cloud-apps/conditional-access-cloud-apps-or-actions.png)
2727

@@ -185,7 +185,7 @@ User actions are tasks that can be performed by a user. Currently, Conditional A
185185
- `Client apps`, `Filters for devices` and `Device state` conditions aren't available with this user action since they're dependent on Azure AD device registration to enforce Conditional Access policies.
186186
- When a Conditional Access policy is enabled with this user action, you must set **Azure Active Directory** > **Devices** > **Device Settings** - `Devices to be Azure AD joined or Azure AD registered require Multi-Factor Authentication` to **No**. Otherwise, the Conditional Access policy with this user action isn't properly enforced. More information about this device setting can found in [Configure device settings](../devices/device-management-azure-portal.md#configure-device-settings).
187187

188-
## Authentication context (Preview)
188+
## Authentication context
189189

190190
Authentication context can be used to further secure data and actions in applications. These applications can be your own custom applications, custom line of business (LOB) applications, applications like SharePoint, or applications protected by Microsoft Defender for Cloud Apps.
191191

@@ -197,11 +197,7 @@ Authentication contexts are managed in the Azure portal under **Azure Active Dir
197197

198198
![Manage authentication context in the Azure portal](./media/concept-conditional-access-cloud-apps/conditional-access-authentication-context-get-started.png)
199199

200-
> [!WARNING]
201-
> * Deleting authentication context definitions is not possible during the preview.
202-
> * The preview is limited to a total of 25 authentication context definitions in the Azure portal.
203-
204-
Create new authentication context definitions by selecting **New authentication context** in the Azure portal. Configure the following attributes:
200+
Create new authentication context definitions by selecting **New authentication context** in the Azure portal. Organizations are limited to a total of 25 authentication context definitions. Configure the following attributes:
205201

206202
- **Display name** is the name that is used to identify the authentication context in Azure AD and across applications that consume authentication contexts. We recommend names that can be used across resources, like "trusted devices", to reduce the number of authentication contexts needed. Having a reduced set limits the number of redirects and provides a better end to end-user experience.
207203
- **Description** provides more information about the policies it's used by Azure AD administrators and those applying authentication contexts to resources.
@@ -214,6 +210,12 @@ Administrators can select published authentication contexts in their Conditional
214210

215211
:::image type="content" source="media/concept-conditional-access-cloud-apps/conditional-access-authentication-context-in-policy.png" alt-text="Adding a Conditional Access authentication context to a policy":::
216212

213+
#### Delete an authentication context
214+
215+
When you delete an authentication context, make sure no applications are still using it. Otherwise access to app data will no longer be protected. You can confirm this prerequisite by checking sign-in logs for cases when the authentication context Conditional Access policies are being applied.
216+
217+
To delete an authentication context, it must have no assigned Conditional Access policies and must not be published to apps. This requirement helps prevent the accidental deletion of an authentication context that is still in use.
218+
217219
### Tag resources with authentication contexts
218220

219221
For more information about authentication context use in applications, see the following articles.

articles/active-directory/develop/developer-guide-conditional-access-authentication-context.md

Lines changed: 2 additions & 2 deletions
Original file line numberDiff line numberDiff line change
@@ -19,7 +19,7 @@ ms.custom: aaddev
1919
---
2020
# Developer guide to Conditional Access authentication context
2121

22-
[Conditional Access](../conditional-access/overview.md) is the Zero Trust control plane that allows you to target policies for access to all your apps – old or new, private, or public, on-premises, or multi-cloud. With [Conditional Access authentication context](../conditional-access/concept-conditional-access-cloud-apps.md#authentication-context-preview), you can apply different policies within those apps.
22+
[Conditional Access](../conditional-access/overview.md) is the Zero Trust control plane that allows you to target policies for access to all your apps – old or new, private, or public, on-premises, or multi-cloud. With [Conditional Access authentication context](../conditional-access/concept-conditional-access-cloud-apps.md#authentication-context), you can apply different policies within those apps.
2323

2424
Conditional Access authentication context (auth context) allows you to apply granular policies to sensitive data and actions instead of just at the app level. You can refine your Zero Trust policies for least privileged access while minimizing user friction and keeping users more productive and your resources more secure. Today, it can be used by applications using [OpenId Connect](https://openid.net/specs/openid-connect-core-1_0.html) for authentication developed by your company to protect sensitive resources, like high-value transactions or viewing employee personal data.
2525

@@ -221,7 +221,7 @@ Do not use auth context where the app itself is going to be a target of Conditio
221221
- [Granular Conditional Access for sensitive data and actions (Blog)](https://techcommunity.microsoft.com/t5/azure-active-directory-identity/granular-conditional-access-for-sensitive-data-and-actions/ba-p/1751775)
222222
- [Zero trust with the Microsoft Identity platform](/security/zero-trust/identity-developer)
223223
- [Building Zero Trust ready apps with the Microsoft identity platform](/security/zero-trust/identity-developer)
224-
- [Conditional Access authentication context](../conditional-access/concept-conditional-access-cloud-apps.md#authentication-context-preview)
224+
- [Conditional Access authentication context](../conditional-access/concept-conditional-access-cloud-apps.md#authentication-context)
225225
- [authenticationContextClassReference resource type - MS Graph](/graph/api/conditionalaccessroot-list-authenticationcontextclassreferences)
226226
- [Claims challenge, claims request, and client capabilities in the Microsoft identity platform](claims-challenge.md)
227227
- [Using authentication context with Microsoft Purview Information Protection and SharePoint](/microsoft-365/compliance/sensitivity-labels-teams-groups-sites#more-information-about-the-dependencies-for-the-authentication-context-option)

0 commit comments

Comments
 (0)