<?xml version="1.0" encoding="utf-8" standalone="yes"?><rss version="2.0" xmlns:atom="http://www.w3.org/2005/Atom"><channel><title>M365 on IT Admin</title><link>/tags/m365/</link><description>Recent content in M365 on IT Admin</description><generator>Hugo</generator><language>en-us</language><lastBuildDate>Sun, 27 Sep 2026 00:00:00 +0000</lastBuildDate><atom:link href="/tags/m365/index.xml" rel="self" type="application/rss+xml"/><item><title>Conditional Access Guest Accounts</title><link>/posts/post-9/</link><pubDate>Sun, 27 Sep 2026 00:00:00 +0000</pubDate><guid>/posts/post-9/</guid><description>&lt;p>Guests themselves don&amp;rsquo;t need P1 assigned, but the policy won&amp;rsquo;t do anything until the tenant has P1 active for its own members.&lt;/p>
&lt;p>Enforcement is currently soft, not hard. Microsoft doesn&amp;rsquo;t technically block Conditional Access from working if you&amp;rsquo;re short on licenses — Entra ID processes connections that require multifactor authentication no matter if the account has a premium license — but Microsoft has started surfacing warnings about it: tenants are now seeing informational messages in the Entra admin center flagging that some Conditional Access policies are protecting more users than their current licensing entitlements allow, though this is not a precursor to billing and there&amp;rsquo;s no automated enforcement yet.&lt;/p></description></item><item><title>Hardening Microsoft 365 Without Buying Extra Licenses</title><link>/posts/post-7/</link><pubDate>Sun, 27 Sep 2026 00:00:00 +0000</pubDate><guid>/posts/post-7/</guid><description>&lt;p>A lot of Microsoft 365 &amp;ldquo;security&amp;rdquo; starts with an upsell: Defender for Office 365, Entra ID P1, P2, the Worksuite. But a large share of the highest-impact hardening is already included in the subscription you pay for — it&amp;rsquo;s just switched off by default. This post is a practical, no-extra-cost checklist: what&amp;rsquo;s free, what it actually does, and the commands to verify it.&lt;/p>
&lt;p>Companion reading: &lt;a href="/blog/post-6/">PowerShell + Microsoft Graph — Connection &amp;amp; Command Reference&lt;/a> covers the PowerShell/Graph setup used in the verification commands below.&lt;/p></description></item></channel></rss>