<?xml version="1.0" encoding="UTF-8"?><rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:wfw="http://wellformedweb.org/CommentAPI/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
	xmlns:slash="http://purl.org/rss/1.0/modules/slash/"
	>

<channel>
	<title>Identity &amp; Access Archives | Peter Klapwijk - In The Cloud 24-7</title>
	<atom:link href="https://inthecloud247.com/category/identity-access/feed/" rel="self" type="application/rss+xml" />
	<link>https://inthecloud247.com/category/identity-access/</link>
	<description>Intune, Windows, Office 365, Microsoft 365, Azure, Automation</description>
	<lastBuildDate>Sat, 21 Feb 2026 08:55:45 +0000</lastBuildDate>
	<language>en-US</language>
	<sy:updatePeriod>
	hourly	</sy:updatePeriod>
	<sy:updateFrequency>
	1	</sy:updateFrequency>
	

<image>
	<url>https://inthecloud247.com/wp-content/uploads/2016/09/cropped-Cloud-1-1-32x32.png</url>
	<title>Identity &amp; Access Archives | Peter Klapwijk - In The Cloud 24-7</title>
	<link>https://inthecloud247.com/category/identity-access/</link>
	<width>32</width>
	<height>32</height>
</image> 
	<item>
		<title>Why ‘Never persistent’ isn’t really never persistent: understanding browser sessions in Microsoft 365 Web Apps</title>
		<link>https://inthecloud247.com/never-persistent-browser-session-microsoft-365-explained/</link>
					<comments>https://inthecloud247.com/never-persistent-browser-session-microsoft-365-explained/#respond</comments>
		
		<dc:creator><![CDATA[Peter Klapwijk]]></dc:creator>
		<pubDate>Sat, 21 Feb 2026 08:52:00 +0000</pubDate>
				<category><![CDATA[Identity & Access]]></category>
		<category><![CDATA[Microsoft365]]></category>
		<category><![CDATA[Modern Workplace]]></category>
		<category><![CDATA[Security]]></category>
		<category><![CDATA[Windows]]></category>
		<category><![CDATA[Entra ID]]></category>
		<category><![CDATA[Identity Management]]></category>
		<category><![CDATA[Microsoft 365]]></category>
		<guid isPermaLink="false">https://inthecloud247.com/?p=13723</guid>

					<description><![CDATA[<p>Do you know how persistent&#160;your browser session is when a Conditional Access policy is active,&#160;in which the setting&#160;Persistent browser session&#160;is set to&#160;Never persistent?&#160; I assumed&#160;that&#160;the browser session would never be persistent, like the setting says.&#160;Maybe I&#160;just&#160;thought&#160;to simple, as&#160;I&#8217;m&#160;not an&#160;authentication&#160;expert,&#160;but the answer seems to&#160;be;&#160;it depends. It depends on the authentication architecture of the web application, and on a setting in the browser. [...]</p>
<p>The post <a href="https://inthecloud247.com/never-persistent-browser-session-microsoft-365-explained/">Why ‘Never persistent’ isn’t really never persistent: understanding browser sessions in Microsoft 365 Web Apps</a> appeared first on <a href="https://inthecloud247.com">Peter Klapwijk - In The Cloud 24-7</a>.</p>
]]></description>
		
					<wfw:commentRss>https://inthecloud247.com/never-persistent-browser-session-microsoft-365-explained/feed/</wfw:commentRss>
			<slash:comments>0</slash:comments>
		
		
			</item>
		<item>
		<title>Create deployment ring groups for Microsoft Intune</title>
		<link>https://inthecloud247.com/create-deployment-ring-groups-for-microsoft-intune/</link>
					<comments>https://inthecloud247.com/create-deployment-ring-groups-for-microsoft-intune/#respond</comments>
		
		<dc:creator><![CDATA[Peter Klapwijk]]></dc:creator>
		<pubDate>Fri, 27 Jun 2025 14:21:49 +0000</pubDate>
				<category><![CDATA[Identity & Access]]></category>
		<category><![CDATA[Intune]]></category>
		<category><![CDATA[Microsoft Endpoint Manager]]></category>
		<category><![CDATA[Modern Workplace]]></category>
		<category><![CDATA[Windows]]></category>
		<category><![CDATA[Identity Management]]></category>
		<guid isPermaLink="false">https://inthecloud247.com/?p=13473</guid>

					<description><![CDATA[<p>If you’re working with Microsoft Intune, I assume you deploy new updates, configurations or applications gradually, with different ring groups to gradually roll these out and avoid an outage because of a change.Today, I share an approach in creating device ring groups for your ring deployments. Let’s say we want to gradually roll out Windows [...]</p>
<p>The post <a href="https://inthecloud247.com/create-deployment-ring-groups-for-microsoft-intune/">Create deployment ring groups for Microsoft Intune</a> appeared first on <a href="https://inthecloud247.com">Peter Klapwijk - In The Cloud 24-7</a>.</p>
]]></description>
		
					<wfw:commentRss>https://inthecloud247.com/create-deployment-ring-groups-for-microsoft-intune/feed/</wfw:commentRss>
			<slash:comments>0</slash:comments>
		
		
			</item>
		<item>
		<title>Build your own user onboarding automation: Send a notification when Windows 365 provisioning is finished</title>
		<link>https://inthecloud247.com/build-your-own-user-onboarding-automation-send-a-notification-when-windows-365-provisioning-is-finished/</link>
					<comments>https://inthecloud247.com/build-your-own-user-onboarding-automation-send-a-notification-when-windows-365-provisioning-is-finished/#comments</comments>
		
		<dc:creator><![CDATA[Peter Klapwijk]]></dc:creator>
		<pubDate>Tue, 25 Feb 2025 20:51:26 +0000</pubDate>
				<category><![CDATA[Automation]]></category>
		<category><![CDATA[Identity & Access]]></category>
		<category><![CDATA[Intune]]></category>
		<category><![CDATA[Logic Apps]]></category>
		<category><![CDATA[Power Automate]]></category>
		<category><![CDATA[Windows 365]]></category>
		<category><![CDATA[Entra ID]]></category>
		<category><![CDATA[Identity Management]]></category>
		<category><![CDATA[Modern Workplace]]></category>
		<category><![CDATA[user onboarding]]></category>
		<guid isPermaLink="false">https://inthecloud247.com/?p=13201</guid>

					<description><![CDATA[<p>Today, I&#8217;m sharing another blog post that&#8217;s somewhat related to user onboarding automation. This time I&#8217;m sharing how we can automatically build an automation flow to inform our users when their Windows 365 cloud PC finished provisioning and is ready for sign-in. This prevents the user from manually checking if the cloud PC is ready, [...]</p>
<p>The post <a href="https://inthecloud247.com/build-your-own-user-onboarding-automation-send-a-notification-when-windows-365-provisioning-is-finished/">Build your own user onboarding automation: Send a notification when Windows 365 provisioning is finished</a> appeared first on <a href="https://inthecloud247.com">Peter Klapwijk - In The Cloud 24-7</a>.</p>
]]></description>
		
					<wfw:commentRss>https://inthecloud247.com/build-your-own-user-onboarding-automation-send-a-notification-when-windows-365-provisioning-is-finished/feed/</wfw:commentRss>
			<slash:comments>3</slash:comments>
		
		
			</item>
		<item>
		<title>Build your own user onboarding automation – Day 1: enable the account and create a Temporary Access Pass</title>
		<link>https://inthecloud247.com/build-your-own-user-onboarding-automation-day-1-enable-the-account-and-create-a-temporary-access-pass/</link>
					<comments>https://inthecloud247.com/build-your-own-user-onboarding-automation-day-1-enable-the-account-and-create-a-temporary-access-pass/#respond</comments>
		
		<dc:creator><![CDATA[Peter Klapwijk]]></dc:creator>
		<pubDate>Tue, 18 Feb 2025 14:25:53 +0000</pubDate>
				<category><![CDATA[Automation]]></category>
		<category><![CDATA[Identity & Access]]></category>
		<category><![CDATA[Logic Apps]]></category>
		<category><![CDATA[Power Automate]]></category>
		<category><![CDATA[Entra ID]]></category>
		<category><![CDATA[Identity Management]]></category>
		<category><![CDATA[Modern Workplace]]></category>
		<category><![CDATA[user onboarding]]></category>
		<guid isPermaLink="false">https://inthecloud247.com/?p=13098</guid>

					<description><![CDATA[<p>Recently I shared this blog post about creating a low-code automation solution to easily create users in Entra ID. This is the follow-up blog post in the&#160;user onboarding automation series. This second automation flow enables the user account of users that have a hire date of today. Besides that a Temporary Access Pass is created [...]</p>
<p>The post <a href="https://inthecloud247.com/build-your-own-user-onboarding-automation-day-1-enable-the-account-and-create-a-temporary-access-pass/">Build your own user onboarding automation – Day 1: enable the account and create a Temporary Access Pass</a> appeared first on <a href="https://inthecloud247.com">Peter Klapwijk - In The Cloud 24-7</a>.</p>
]]></description>
		
					<wfw:commentRss>https://inthecloud247.com/build-your-own-user-onboarding-automation-day-1-enable-the-account-and-create-a-temporary-access-pass/feed/</wfw:commentRss>
			<slash:comments>0</slash:comments>
		
		
			</item>
		<item>
		<title>Build your own user onboarding automation &#8211; Entra ID user account creation</title>
		<link>https://inthecloud247.com/build-your-own-user-onboarding-automation-entra-id-user-account-creation/</link>
					<comments>https://inthecloud247.com/build-your-own-user-onboarding-automation-entra-id-user-account-creation/#comments</comments>
		
		<dc:creator><![CDATA[Peter Klapwijk]]></dc:creator>
		<pubDate>Thu, 13 Feb 2025 11:18:31 +0000</pubDate>
				<category><![CDATA[Automation]]></category>
		<category><![CDATA[Identity & Access]]></category>
		<category><![CDATA[Logic Apps]]></category>
		<category><![CDATA[Modern Workplace]]></category>
		<category><![CDATA[Power Automate]]></category>
		<category><![CDATA[Entra ID]]></category>
		<category><![CDATA[Identity Management]]></category>
		<category><![CDATA[user onboarding]]></category>
		<guid isPermaLink="false">https://inthecloud247.com/?p=12881</guid>

					<description><![CDATA[<p>In one of the latest blog posts, I shared how we can create a red button automation solution to take action when a user account is compromised. Today we&#8217;re going to build our own user onboarding automation with the low-code solution Azure Logic Apps. This is the first part of a user onboarding automation series [...]</p>
<p>The post <a href="https://inthecloud247.com/build-your-own-user-onboarding-automation-entra-id-user-account-creation/">Build your own user onboarding automation &#8211; Entra ID user account creation</a> appeared first on <a href="https://inthecloud247.com">Peter Klapwijk - In The Cloud 24-7</a>.</p>
]]></description>
		
					<wfw:commentRss>https://inthecloud247.com/build-your-own-user-onboarding-automation-entra-id-user-account-creation/feed/</wfw:commentRss>
			<slash:comments>8</slash:comments>
		
		
			</item>
		<item>
		<title>Revoke user access in case of an emergency with a single click &#8211; on-premises AD integration</title>
		<link>https://inthecloud247.com/revoke-user-access-in-case-of-an-emergency-with-a-single-click-on-premises-ad-integration/</link>
					<comments>https://inthecloud247.com/revoke-user-access-in-case-of-an-emergency-with-a-single-click-on-premises-ad-integration/#comments</comments>
		
		<dc:creator><![CDATA[Peter Klapwijk]]></dc:creator>
		<pubDate>Fri, 06 Dec 2024 11:00:00 +0000</pubDate>
				<category><![CDATA[Automation]]></category>
		<category><![CDATA[Identity & Access]]></category>
		<category><![CDATA[Intune]]></category>
		<category><![CDATA[Logic Apps]]></category>
		<category><![CDATA[Microsoft Endpoint Manager]]></category>
		<category><![CDATA[Modern Workplace]]></category>
		<category><![CDATA[Power Automate]]></category>
		<category><![CDATA[Security]]></category>
		<category><![CDATA[Windows]]></category>
		<category><![CDATA[Entra]]></category>
		<category><![CDATA[Microsoft Defender]]></category>
		<category><![CDATA[Microsoft Defender for Endpoint]]></category>
		<guid isPermaLink="false">https://inthecloud247.com/?p=12774</guid>

					<description><![CDATA[<p>Today I will show you how to revoke user access for an Active Directory user account in an automated way. This is a follow-up post to the initial blog post in which I described how to build automation to revoke user access in a single click. For example in case of employee termination or when [...]</p>
<p>The post <a href="https://inthecloud247.com/revoke-user-access-in-case-of-an-emergency-with-a-single-click-on-premises-ad-integration/">Revoke user access in case of an emergency with a single click &#8211; on-premises AD integration</a> appeared first on <a href="https://inthecloud247.com">Peter Klapwijk - In The Cloud 24-7</a>.</p>
]]></description>
		
					<wfw:commentRss>https://inthecloud247.com/revoke-user-access-in-case-of-an-emergency-with-a-single-click-on-premises-ad-integration/feed/</wfw:commentRss>
			<slash:comments>4</slash:comments>
		
		
			</item>
		<item>
		<title>Revoke user access in case of an emergency with a single click </title>
		<link>https://inthecloud247.com/revoke-user-access-in-case-of-an-emergency-with-a-single-click/</link>
					<comments>https://inthecloud247.com/revoke-user-access-in-case-of-an-emergency-with-a-single-click/#comments</comments>
		
		<dc:creator><![CDATA[Peter Klapwijk]]></dc:creator>
		<pubDate>Fri, 15 Nov 2024 12:25:00 +0000</pubDate>
				<category><![CDATA[Automation]]></category>
		<category><![CDATA[Identity & Access]]></category>
		<category><![CDATA[Intune]]></category>
		<category><![CDATA[Logic Apps]]></category>
		<category><![CDATA[Microsoft Endpoint Manager]]></category>
		<category><![CDATA[Modern Workplace]]></category>
		<category><![CDATA[Power Automate]]></category>
		<category><![CDATA[Security]]></category>
		<category><![CDATA[Windows]]></category>
		<category><![CDATA[Entra]]></category>
		<category><![CDATA[Microsoft Defender]]></category>
		<category><![CDATA[Microsoft Defender for Endpoint]]></category>
		<guid isPermaLink="false">https://inthecloud247.com/?p=12646</guid>

					<description><![CDATA[<p>I&#8217;ve seen several online discussions about the steps which need to be taken in case of a &#8216;red button&#8217; action, for example when a user account is compromised or employee termination.&#160; Of course, it differs depending on the environment which actions need to be taken to block access to corporate data as soon as possible [...]</p>
<p>The post <a href="https://inthecloud247.com/revoke-user-access-in-case-of-an-emergency-with-a-single-click/">Revoke user access in case of an emergency with a single click </a> appeared first on <a href="https://inthecloud247.com">Peter Klapwijk - In The Cloud 24-7</a>.</p>
]]></description>
		
					<wfw:commentRss>https://inthecloud247.com/revoke-user-access-in-case-of-an-emergency-with-a-single-click/feed/</wfw:commentRss>
			<slash:comments>1</slash:comments>
		
		
			</item>
		<item>
		<title>Configure a user-assigned Azure Managed Identity &#8211; the basics</title>
		<link>https://inthecloud247.com/configure-a-user-assigned-managed-identity-the-basics/</link>
					<comments>https://inthecloud247.com/configure-a-user-assigned-managed-identity-the-basics/#respond</comments>
		
		<dc:creator><![CDATA[Peter Klapwijk]]></dc:creator>
		<pubDate>Sat, 21 May 2022 13:45:00 +0000</pubDate>
				<category><![CDATA[Automation]]></category>
		<category><![CDATA[Identity & Access]]></category>
		<category><![CDATA[Logic Apps]]></category>
		<category><![CDATA[Microsoft365]]></category>
		<category><![CDATA[Power Automate]]></category>
		<category><![CDATA[Security]]></category>
		<category><![CDATA[Dynamics 365]]></category>
		<guid isPermaLink="false">https://inthecloud247.com/?p=9569</guid>

					<description><![CDATA[<p>If you have read one of my automation-related flows before, you know most of these solutions rely on querying Graph API using HTTP actions in a Logic Apps flow. When I first started using these flows, I used Azure App Registrations with a client secret for authentication (and stored these in a Key Vault). But [...]</p>
<p>The post <a href="https://inthecloud247.com/configure-a-user-assigned-managed-identity-the-basics/">Configure a user-assigned Azure Managed Identity &#8211; the basics</a> appeared first on <a href="https://inthecloud247.com">Peter Klapwijk - In The Cloud 24-7</a>.</p>
]]></description>
		
					<wfw:commentRss>https://inthecloud247.com/configure-a-user-assigned-managed-identity-the-basics/feed/</wfw:commentRss>
			<slash:comments>0</slash:comments>
		
		
			</item>
		<item>
		<title>Create an application-based Azure AD group with Logic Apps</title>
		<link>https://inthecloud247.com/create-an-application-based-azure-ad-group-with-logic-apps/</link>
					<comments>https://inthecloud247.com/create-an-application-based-azure-ad-group-with-logic-apps/#comments</comments>
		
		<dc:creator><![CDATA[Peter Klapwijk]]></dc:creator>
		<pubDate>Mon, 09 May 2022 17:52:00 +0000</pubDate>
				<category><![CDATA[Automation]]></category>
		<category><![CDATA[Identity & Access]]></category>
		<category><![CDATA[Intune]]></category>
		<category><![CDATA[Logic Apps]]></category>
		<category><![CDATA[Microsoft Endpoint Manager]]></category>
		<category><![CDATA[Power Automate]]></category>
		<category><![CDATA[MEM]]></category>
		<category><![CDATA[Modern Workplace]]></category>
		<guid isPermaLink="false">https://inthecloud247.com/?p=9418</guid>

					<description><![CDATA[<p>Yes, again a blog post related to a Logic Apps flow! That&#8217;s because I needed to have an Azure AD group filled with Windows devices, based on if a certain application is installed on the device. I have the information on which device, which applications are installed available in an Azure Log Analytics workspace, as [...]</p>
<p>The post <a href="https://inthecloud247.com/create-an-application-based-azure-ad-group-with-logic-apps/">Create an application-based Azure AD group with Logic Apps</a> appeared first on <a href="https://inthecloud247.com">Peter Klapwijk - In The Cloud 24-7</a>.</p>
]]></description>
		
					<wfw:commentRss>https://inthecloud247.com/create-an-application-based-azure-ad-group-with-logic-apps/feed/</wfw:commentRss>
			<slash:comments>4</slash:comments>
		
		
			</item>
		<item>
		<title>Intune RBAC &#8211; Create country based device groups with Logic Apps</title>
		<link>https://inthecloud247.com/intune-rbac-create-country-based-device-groups-with-logic-apps/</link>
					<comments>https://inthecloud247.com/intune-rbac-create-country-based-device-groups-with-logic-apps/#comments</comments>
		
		<dc:creator><![CDATA[Peter Klapwijk]]></dc:creator>
		<pubDate>Thu, 24 Mar 2022 19:32:00 +0000</pubDate>
				<category><![CDATA[Automation]]></category>
		<category><![CDATA[Identity & Access]]></category>
		<category><![CDATA[Intune]]></category>
		<category><![CDATA[Logic Apps]]></category>
		<category><![CDATA[Microsoft Endpoint Manager]]></category>
		<category><![CDATA[Power Automate]]></category>
		<category><![CDATA[MEM]]></category>
		<guid isPermaLink="false">https://inthecloud247.com/?p=9238</guid>

					<description><![CDATA[<p>A lot of companies have business in different countries, with a local IT department that needs to manage the Intune managed devices of their specific country. In Intune, it is possible to scope permissions to a certain group of devices using scope tags. These scope tags can be assigned to devices, based on membership of [...]</p>
<p>The post <a href="https://inthecloud247.com/intune-rbac-create-country-based-device-groups-with-logic-apps/">Intune RBAC &#8211; Create country based device groups with Logic Apps</a> appeared first on <a href="https://inthecloud247.com">Peter Klapwijk - In The Cloud 24-7</a>.</p>
]]></description>
		
					<wfw:commentRss>https://inthecloud247.com/intune-rbac-create-country-based-device-groups-with-logic-apps/feed/</wfw:commentRss>
			<slash:comments>3</slash:comments>
		
		
			</item>
	</channel>
</rss>
