Microsoft 365 Project

Here’s how the journey will look: we will create a completely new tenant for the company StackPride365. From there we will configure most things that are reasonable for a home-use tenant—security, users, device management, branding, and so on. This will serve as a portfolio to showcase my knowledge, while I continue looking for a job (and carry on if I do find one).

During the journey you’ll be able to read about what I do, why I do it, and how my thought process has unfolded, as well as a bit about the challenges. Of course, it won’t become a full-blown corporate tenant, but it probably won’t be far off. It’s important to know that I’m my own client and some things simply won’t be done, for various reasons. On the other hand, some aspects will be adjusted according to licenses and so on. It shouldn’t completely blow my fairly modest budget.

This won’t be a how-to guide, but rather a focus on what and why. Sometimes I’ll write at length about the process I’ve followed, and sometimes it will be shorter—but I’ll keep the blog updated at all times. Below you can read about the different subprojects; the final step will be to move my personal domain into the tenant and migrate all existing data—mailboxes and OneDrive.

The project links don’t yet contain every task and will be updated continuously. You’ll find both things that need doing and things that have been done under these projects. This is a mega-project that I expect will take several months overall, so just because something isn’t there yet doesn’t mean I don’t intend to do it.

I’ll hop around between the different projects depending on how much time each task requires and its priority. More project categories will follow once these are complete. In the upcoming blog posts I will, of course, go through every setting I make.
In the upcoming blog posts i will go thorught my steps and thought process. 
The project links will have a good overview about what I´m doing but can miss minor to-dos. 
Follow the blog for more info

 

Microsoft 365 

This is the main project, and underneath it most of the small tasks will land, as well as anything that doesn’t fit elsewhere. The project will be continuously updated and tasks will be added.

This section will cover Entra AD, Teams, OneDrive, and SharePoint.
To see all tasks in the  Microsoft 365 Project

As mentioned, not all tasks exist yet—they’ll be created as we go, and the link to all tasks will be included in each project update.
Some tasks that exist now are:

  •  Register a tenant and apply branding
  • Create Users and and Admin Users
  • Customize Navigation Bar on Microsoft365

Intune for MacOS

One of the most important projects to lay a foundation for right now. Since I’ll soon need to reinstall myMacBook as I’m taking it over from my current job, which ends soon, this must be prioritized.

You’ll find the project’s tasks here: Intune for MacOS

Here we focus on managing macOS devices the emphasis is on management; there’s a separate project for packaging the various applications I need.
I’ll go through different configurations and share my thoughts behind each setting.
As mentioned, this is something that will be written about extensively at the start.

Some examples of current tasks are:

  • Set up Apple Business Manager and connect it with Intune
  • Create the configuration for Defender
  • Create the configuration for OneDrive Known Folders

Intune for Windows

All my devices will of course be managed in Intune – here the first focus is on managing my gaming PC.
Here several POCs will be carried out and a bunch of small things configured.
It should become a managed and secure gaming PC.
We will do things like LAPS, fix a slick Start menu and configure security for Microsoft 365.
App packaging we’ll handle in another project, just like for the MacOS project.

As mentioned, you can read about tasks that will constantly be updated here: Intune for Windows

Some of the tasks:

  • LAPS
  • OneDrive known folders
  • Start Menu
  • Policies for edge

Security in MS365

Here is the security project focused on MS365 security outside of device management.
Here we concentrate on tenant security. It can include MFA, alerts, DMARC, password policies, and other security-related configurations. Much of the focus here will also be on studying for the SC-401 certification.
You can find the tasks here: Security MS365

Some of the tasks are:

  • DKIM
  • MFA policies
  • Alert when someone gains access to a shared mailbox
  • Disable automatic forwarding to external email
     

MacOS apps

Here we will gather all the apps to be distributed from Intune to macOS devices. We will package and publish different apps in various ways to demonstrate different methods. We’ll also package apps that you might not normally package in a corporate environment after all, these are my personal devices. You can find the list here: MacOS Apps

Some of that apps that will be distributed are: 

  • Visual studio Code
  • Brave
  • MS 365 
  • ChatGPT
  • DisplayLinkManager

Windows apps

Just like in the macOS apps project, this is where we package Windows apps in various ways—the goal is to use most methods. Both Store apps, PowerShell-packaged Win32, and apps deployed directly from Intune. As with the macOS apps, apps you wouldn’t normally package will be included here.
You can find the apps to be packaged here: Windows Apps

Some of the apps will be:

  • Steam
  • Spotify
  • MS Edge
  • Discord

Hope you would like to follow along