Technical Notes

Practical writeups on Microsoft 365, Entra ID, Intune, PowerShell automation, endpoint engineering, and identity lifecycle operations.

Timed Conditional Access Exceptions

A case study on temporary Conditional Access travel exceptions using nested Entra ID groups and BetterCloud workflows to automatically remove users after approved access windows.

Read Timed Exception Workflow Case Study →

Terraform Azure Lab: First Managed Resource

A walkthrough of setting up a local Terraform workflow with VS Code, PowerShell 7, Azure CLI, and the AzureRM provider. Covers planning, applying, state tracking, tag updates, and portal drift detection.

Read the Terraform Notes

Endpoint Deployment Rings

A case study on phased endpoint rollouts using pilot groups, validation checks, location-aware deployment rings, issue investigation, and rollback planning to reduce broad-impact change risk.

Read Endpoint Deployment Rings Case Study →

Autopilot Hardware Hash Batch Collection

A case study on USB-based Autopilot hardware hash collection for technician staging, including individual device CSV exports and automatic combined CSV generation.

Read Autopilot Batch Collection Case Study →

Lenovo Secure Boot Remediation

A case study on detecting disabled Secure Boot on Lenovo endpoints, applying the BIOS setting through Lenovo WMI, logging results, and prompting for restart to support endpoint compliance.

Read Lenovo Secure Boot Remediation Case Study →

TeamViewer Host Deployment

A case study on automating TeamViewer Host deployment by downloading the current package, extracting the installer, running a silent install, applying assignment parameters, and cleaning up temporary files.

Read TeamViewer Host Deployment Case Study →

Work in Progress

This section will grow into practical technical notes, implementation examples, and project writeups from real-world Microsoft 365, identity, automation, and endpoint work.