Microsoft Azure is a cloud computing platform and infrastructure for building, deploying and managing applications and services through datacenters. It provides both platform-as-a-service (PaaS) and infrastructure-as-a-service (IaaS) services and supports many different programming languages, tools and frameworks, including both Microsoft-specific and third-party software and systems. Cloud Services is a PaaS environment and can be used to create scalable applications and services; there are specific software development kits (SDKs) provided by Microsoft for Python, Java, Node.js and .NET. Azure also has file and storage services, data management, analytics and DNS services.

I need to add a SLQ Server login on our AmazonRDS Instance.

Can't run it with Create Login code because I am getting the message(s) below.

How can I add the USer through the EC COnsole?

Msg 50000, Level 15, State 1, Procedure rds_create_login_trigger, Line 105
Unable to modify or set default database for logins when mirroring is enabled as these changes cannot be applied to the mirror
Msg 3609, Level 16, State 2, Line 1
The transaction ended in the trigger. The batch has been aborted.
Msg 15007, Level 16, State 1, Line 3
'WrkCrm' is not a valid login or you do not have permission.
I am kind of confused with ADFS , AZURE AD CONNECT is it dirsync?
during staged migration, on premise AD is gone?
Need a quick answer so any help would be appreciated.

Does anyone have a powershell script to add ALL USERS and INDIVIDUAL USERS to AAD groups. We have a group in AZURE AD that I need to populate with several hundred users.

This is an Pure Cloud based solution of Office 365

I have Database on Azure SQL. I created a backup resulting in a backpac file.
I have two questions:

1. Azure says the db is about 24 Gig, but the backpac size is 1.5 Gig - is this probable?

2. I have a local SQL Server Express 2016 on which I have created the same db as I have on Azure (by generating and running scripts to create the schema) and I want to import this backpac to this local db. How do I do this?

After some months of trial period in this year, I need to delete or remove the pilot users in Office 365 Exchange Online mailbox.

So which command line that I need to use ?

I'm confused between Get-MailboxActivityReport and Get-StaleMailboxReport
I'm starting to get my feet wet with Azure. I've been getting myself familiar with the VM's, networking, etc.

One area where I am confused is when creating a VPN, every Azure article i find has you creating a Gateway Subnet. What is the purpose of creating this when I've already created an address space and then a couple subnets within that address space? I know i must be missing something but it seems to be a waste of IP's and subnets (even if you make it a /27 or /28) when creating a Gateway Subnet.

Is it just for the VPN or something else?
I have a planned release (multi-product deployment) that might be derailed because some one hasn't got "penetration testing" done (so may not get security clearance) in one important part of the solution.

The only details I have about the scope of this testing is:

Vulnerability Testing will cover Azure/SharePoint for web jobs.

Source O365 (SharePoint) ... Destination Azure .Net Services
Source Azure .Net Services ... Destination o365 (SharePoint)

I suspect that the quality of the .net code may be the biggest issue here, but assume this is written to stringent enterprise standards.

How risky can the "pen testing" be? Is it likely to result in a "no go" decision?
Should I be greatly concerned? or only moderately? or just a little? (explain why if you can)

(nb: I do not know what penetration testing actually does, nor do I know much about .net or Azure)

I am working on project where I need to automate the process of Archieving SharePoint Online list data to Azure SQL data base on frequently basis. Any help in listing out the options to accomplish the task is greatly appreciated.
Hello Experts,

I'm trying to build a Microsoft Azure site-to-site vpn where the local end device is a Palo Alto Networks firewall.

I have been trying to follow the example shown here ....


But I'm not having any luck establishing a connection.

Has anyone successfully established a connection with a Palo Alto firewall?

Kind regards


following situation:

We have an Office365 tenant testTenant.onmicrosoft.com.
There are some users that have licenses for Office Online and Exchange Online.
Those user names are as follows:


The users habe One Note books and files.

Now we added our custom domain test.de zu the Office 365 tenant and verified it.
We also have a on Premise AD domain "test.de" which is connected to the Office 365 tenant with AAD Connect and Standard-Settings.

What happens now:
- We create a user in on premise Active Directory.
- We set the Attributes "proxyAddresses" and "mailNickname":
   - proxyAddresses: SMTP:user.name@test.de
   - mailNickname: user.name
- Now we sync the AD to Azure AD (AADConnect
   - The user is created in Azure AD as user.name@test.de
- As soon as I add the license for Exchange Online the mailbox gets created.
   - The user then has following e-Mail-Addresses:
     Primary: user.name@test.de
     Additional: user.name@testTEnant.onmicrosoft.com

That`s fine and what I want.
Now I saw, that the configured default Domain ist still "testTenant.onmicrosoft.com".

What exactly does that mean?
We are planning to put the MX record for test.de to Office 365 in the future. Would it be a problem that the default domain is still testTenant.onmicrosoft.com?
What would happen, if I change the default domain to "test.de"?
     - Will the old users (user.name@testTenant.onmicrsofot.com) stay untouched? …
I want to create an Azure Site to Site VPN to on-premise Sonicwall device.  Problem is when my main internet connection is down the sonicwall fails over to 4G which is not a static public IP.

The sonicwall can initiate a VPN when WAN is dynamic IP but VPN settings must use "aggressive mode" for this to work.

However, I cannot seem to find a way to set the Azure VPN  settings to "aggressive mode"

Anyone know if this can be done in Azure ?

I am looking for quanitative info, Azure price reductions, year-to-year since 2012 to present:
Virtual Machines, Cloud Services, Storage etc..

All pointers welcomed.


we have a fresh Windows Domain (Win2k12) and installed AAD Connect (latest version) and established the sync to an Office 365 tenant with default settings.

Now, after the syncrhonization ist working fine, I installed the Exchange2013 schema extension in the AD.
I did this, because I want the possbility to edit some AD-Attributes, that are not available in the cloud (msExchHideFromAddressList) with AdsiEdit. (I know it is not supported).

After the schema extension I did a "Refresh Directory Schema" in Azure AAD Connect.

After that the new attribute "msExchHideFromAddressList" was still not synching to the cloud.
I found out, that I have to do following:

"Synchronization Rule Editor":
Rule:  "In from AD - User Common"

There I added a transformation that maps the attribute.
OK, this is working now.

But how do I know which Exchange-Attributes would bei used in the future?
Which attributes do I have to map?
Or is there a possibility the map the needed attributes automatically?

Many thanks in advance!
We are in the process of migrating users to Office 365 and I would like help updating AD users accounts so they will sync with Azure AD.

Traditionally we have used an internal/non-routeable domain ('company.local') as the domain suffix for our UPN's, but if course now we need to switch you our public/validated domain.

I have already added the alternate domain suffix of 'company.com', manually updated a number of test users and synchronized successfully with Azure AD. What I am looking for now is a Powershell script that has the flexibility to update either all user accounts or all accounts by OU (to allow for testing).

Thanks in advance
Hell Experts

Can someone please let me know why I get the error message shown in the image when I try to execute the command shown in the image?


Hello Experts

When I run the Microsoft Azure Powershell command as shown in the image I get the error highlighted in RED. Can someone please shed some light on why I'm getting the error. I have attached the files.

Hello Experts,

Can someone please let me know what application I can use to open .json files located https://github.com/Azure/azure-quickstart-templates/tree/master/101-vnet-two-subnets  ?

I thought  could edit the file with Powershell, but I think the only application is Visual Studio - but that application is too expensive.


Sorry if this question seems simple to server admins. I am a developer, not a server admin, though I have some experience with setting up servers and managing them, but have not done so in quite a while. Here is my issue. I am setting up VMs in MSoft Azure. The first VM I set up was a 2008 Server R2 Datacenter edition. I added the remote desktop hosting role since I want me clients to be able to run my software by means of RDP. When I was done adding the role I installed my software, created a user as a test and assigned the user to the RDP group. Other than that I changed no other settings. By the way I am not sure if this is important but when I added the role I selected the option to configure the license server later (120 day grace period). I started the rdp client and logged on as the user with no problems. So far so good. Now I realized I wanted a faster server config so I decided to  spin up another VM and leave the first server alone (have an important demo and did not want to make any changes to the first server since it is working). The second server was also a 2008 Server R2 Datacenter edition and I followed the exact steps I did on the first server. When I went to log in as the user I got the follow message : The requested session access is denied. I search for an answer and the most common one is that the rdp shortcut has the console option enabled, but I am not using a shortcut, I have the rdp file itself on the desktop. After being frustrated I decided to try …
Getting the following error, and I'm not sure what I'm doing wrong.  I'm clearly defining 'NIC_Interface_Name' as: "002-dc-ip"  Please help.

New-AzureRmResourceGroupDeployment : 12:31:48 PM - Error: Code=InvalidDeploymentParameterValue; Message=The value of deployment parameter 'NIC_Interface_Name' is null.
Please specify the value or use the parameter reference. See https://aka.ms/arm-deploy/#parameter-file for details.
At line:106 char:5
+     New-AzureRmResourceGroupDeployment -ResourceGroupName $resourceGr ...
+     ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
    + CategoryInfo          : NotSpecified: (:) [New-AzureRmResourceGroupDeployment], Exception
    + FullyQualifiedErrorId : Microsoft.Azure.Commands.ResourceManager.Cmdlets.Implementation.NewAzureResourceGroupDeploymentCmdlet

Powershell Script

 $resourceGroupName = "CW-ARM",



 $templateFilePath = "C:\Users\CHRIS\Desktop\ARMCreate\template.json",

 $parametersFilePath = "C:\Users\CHRIS\Desktop\ARMCreate\vm_params.json"

    Registers RPs
Function RegisterRP {

    Write-Host "Registering resource provider '$ResourceProviderNamespace'";
    Register-AzureRmResourceProvider -ProviderNamespace 

I have an App Service with a public facing URL.  Now I would like to restrict access to specific static IPs.  Sort of a mini-firewall.
I see that it is possible to setup a VNet, but then that would restrict to just our internal IPs.
Is the only suggestion to license and install the Azure Barracuda?
Have company  A.com (80 mailboxes)  and they bought company g.com (540 mailboxes).

a.com has a local AD forest a.local (2012)  that uses Azure ad connect to sync with an O365 instance.

G.com has an on-premise AD forest g.corp (2008 R2)  and on-premise Exchange 2010 sp3 running Mailbox, Hub, and CA  rolls.  
(no edge server)
A.com came up with ag.com domain name to represent the new company and added as an alias to the o365 a.com domain .

The execs of A.com want this merger of email done like last week. :)

Trying to put together an approach that makes sense.  New instance(move both) , merge into existing instance.... etc..
Has anyone done this type of mail merge?  
Trying to see if ag.com needs to be a new instance that we migrate everything to or would a hybrid approach with current a.com  and leave ag.com and g.com as alias.

Hello Experts,

Can someone please show me how to make Powershell 3.0 run the following commands when its activated?

set-executionpolicy -executionpolicy remotesigned

Install-Module AzureRM



Import-Module AzureRM.Compute

$env:PSModulePath = $env:PSModulePath + ";D:\Modules"

Get-Module -ListAvailable | ?{$_.path -match "D:\\Modules"} | Import-Module


We are undergoing the process of moving to an Office 365 solution from a single 'domain'.local  domain. I have already validated our routable 'domain'.com domain.
We are about to install Azure AD Connect to synchronize user accounts to our Azure AD presence. I understand that AD UPN's must use a routable domain and that as changing our primary AD domain (from .local) is not an action we want to take there is an option to update as following;

1) Add 'domain.com' as an Alternate UPN suffix (Domains & Trusts - applied only at new account creation)
2) Change the UPN suffix for existing users (to the routable 'domain'.com), or
3) Use PowerShell to change the UPN suffix for all users.

My questions are;
1) Has anyone used this, or another process
2) What has been the positive (or negative) experience
3) What are the risks involved

My challenge is that as Microsoft have changed the tools for synchronizing (eg from DirSync etc) it is difficult to find consistent and relevant information.

Thanks in advance.
Hello Experts,

I have signed up to Microsofts Labs Online to train on Implementing Microsoft Azure.

As part of the lab we are told login our account from Powershell using the command 'Login-AzureRMAccount'. That works fine when I login from the lab, but I when run the command with powershell from my PC I get the following error:


I am quite new to Azure. So far it is going very well. I am looking for online video tutorials for the Azure ARM portal. Not The Classic portal.
I can see that pluralsight and cbtnuggets got plenty of azure learning, especially Pluralsight. Based on their selection i need to get verified whether these courses is based on the new Azure ARM (Ressource manager) or the Classic, before doing a subscription. Can´t find anything that descrips which Azure platform these courses is related to.


