Details on the last Office Protect updates
Major Release - Thursday September 14, 2023
New Features / Evolutions:
- Integrations - The Autotask connector is now available in its beta phase! To participate and give us your feedback, email us at feedback@office-protect.com
Take a look at our documentation to set up the prerequisites - Set - Flag Phishing Emails using Tenant Domain or Staff Name setting improvement: encoded display names are now detected. Whenever an external email is sent with an encoded display name impersonating someone from your organization, the warning banner will be displayed.
Fixes:
- Set - A crash sometimes occured when a change was made to a settings profile with no tenant attached to it.
Major Release - Thursday August 16, 2023
New Features / Evolutions:
ConnectWise integration is now available to all! All the beta references have been removed. To setup your integration, you can refer to our documentation.
- ConnectWise integration - New ticket creation setting: you can now choose your ticket initial status and see the default board related to your ConnectWise Office Protect API Member
Fixes
- Monitor - "License Assigned" and "License Removed" events detection system has been refactored and fixed.
- Setup - Issues when clicking on "Remediate" button when "Office Protect is Active" health status gets declined have been detected and fixed
- Advanced Report - In "User MFA Status" report, conditional access policies with applied conditions were incorrectly reported in the "target" column.
Major Release - Thursday August 10, 2023
New Features / Evolutions:
- Monitor - Microsoft IP whitelisting has been improved
- Advanced Report - New data included in the Azure AD - User MFA Status report:
- Authentication Methods Migration State: migration state from the legacy policies to the new unified policy (authentication methods policies). On September 30th, 2024, the legacy multifactor authentication and self-service password reset policies will be deprecated and all authentication methods will be managed through the authentication methods policies. Values: Pre-migration (use policy for authentication only, respect legacy policies), Migration In Progress (use policy for authentication and SSPR, respect legacy policies), Migration Complete (use policy for authentication and SSPR, ignore legacy policies).
- Allowed Authentication Methods: list of authentication methods allowed for the user through modern authentication methods policies. An authentication method can be allowed, but it does not mean the user has already registered, nor that MFA is enabled for the user. Important note: this list does not reflect legacy authentication methods. If the migration is in Complete state, this list is exhaustive. Otherwise, legacy authentication methods could still be enabled on your organization.
- Last Sign In now only reflects the last successful Sign In
Fixes
- Monitor - "Too Many Logins" events duplicates fix
Major Release - Monday July 31, 2023
New Features / Evolutions:
- Advanced Report - New data included in the Azure AD - User MFA Status report:
- Roles: User's roles in Entra ID (Azure AD)
- Enrolled Authentication Methods: List of authentication methods the user has registered on.
- Conditional Access Policies details:
- Target: Conditional Access Policy that applies with no conditions
- Conditional: Conditional Access Policy that applies with conditions. Related conditions are display in brakets next to the policy's name
- Only if tenant is licensed with Azure AD Premium (P1 or P2) - Last Sign-In details:
- Last Sign-In Requirement: What MFA requirement was in place at the user’s last sign-in?
- Last Sign-In Details: List of authentication steps that took place at the user’s last sign-in
- Last Sign-In Interpretation: Interpretation of the sign-in scenario based on the sign-in authentication steps and sign-in details.
- Advanced Report - We have updated our required permissions for the Office Protect Entra ID (Azure AD) application by adding the “ReportSettings.ReadWrite.All” permission.
This will allow the Office Protect application to change a required setting to access some data in the users Advanced Reports. Concerned setting: 'Display concealed users, group, and site names in all reports', accessible in Microsoft 365 admin portal > Org settings > Reports.
If your Office Protect application is active, you don't need to do anything.
If your Office Protect application is unhealthy, you should have received a new Health Status change alert. To resolve the issue, you need to restore the application's permissions: see our article on how to reconsent.
In all cases, your tenants are still being monitored without this permission.
Minor Release - Monday July 17, 2023
Fixes:
- Set - Due to a change in Microsoft on the Safe Attachments setting, the application of Enable Safe Attachments was failing. A fix has been deployed, the setting can now be enabled correctly.
Major Release - Thursday July 06, 2023
New Features / Evolutions:
- Set - Two new SharePoint settings! Click on each one to learn more:
- Set - To increase the settings clarity, we changed the lists display: the values are now displayed in two different lists (authorized and unauthorized). Impacted settings:
- Block "Bad" File Extension Attachments
- Block Top Spamming Countries
- Only Allow Emails in Specific Languages
- Monitor - New Microsoft 365 setting enforced by Office Protect alert: to give you more details when Office Protect automatically re-applies a configuration on your tenant, we distinguished this new alert from Microsoft 365 setting changed outside Office Protect alerts. Also, for greater flexibility, you can enable or disable Alerts / Digests for this new alert from the Monitor section. By default, it will be configured the same as your Microsoft 365 setting changed outside Office Protect alert.
Learn more about the new event here
Fixes:
- ConnectWise Beta - Performance fix on the list of companies when the list is too big
- Set - Fix on default value not displayed if the setting has not been initialized (messages and lists)
- Set - Account Passwords Never Expire setting cannot be applied on domains with types "None". To avoid a failure, Office Protect will not attempt to change the expiration value on "None" domains.
- Advanced Report - Fix on the dates display
- Monitor - Fix on the Exchange Scripting(Powershell) Access application if two users within the same organization have the same display name.
- Monitor - License Assigned and License Removed alerts were not correctly triggered due to a change in Microsoft audit logs operations.
Major Release - Thursday June 08, 2023
New Features / Evolutions:
- Three new Defender settings! Click on each one to learn more:
- Advanced Reporting is now a permanent part of Office Protect Core
Fixes:
- ConnectWise Beta - Fix on credentials verification
- Security Events - Setting changed detection fix
Major Release - Thursday May 25, 2023
New Features / Evolutions:
- The ConnectWise connector is now available in its beta phase! To participate and give us your feedback, email us at feedback@office-protect.com
- Adding of an Office Protect link in Security Events emails
Fixes:
- Health Status - Office Protect Health Status "Unavailable" on some tenants: the remediation button is now available
- Set - Settings profile not displayed on some tenants. Note: it had no impact on the settings application nor the profile itself.