Sander van Beek
sandervanbeek.bsky.social
Sander van Beek
@sandervanbeek.bsky.social
M365 and Azure enthousiast. Husband and father. BBQ-er. F1 fan.
Reposted by Sander van Beek
Announcing General Availability of RDP Shortpath Configuration via GPO and Microsoft Intune: We are pleased to announce the general availability (GA) of centralized RDP Shortpath configuration using Microsoft Intune and Group Policy (GPO).

This update gives IT administrators a… #WindowsITPro
Announcing General Availability of RDP Shortpath Configuration via GPO and Microsoft Intune
We are pleased to announce the general availability (GA) of centralized RDP Shortpath configuration using Microsoft Intune and Group Policy (GPO). This update gives IT administrators a unified, policy-driven way to control which RDP Shortpath modes (Managed, Public/STUN, Public/TURN) are enabled across Azure Virtual Desktop (AVD) session hosts and Windows 365 Cloud PCs. These Shortpath controls now map directly to registry-backed policies, so IT admins can easily maintain consistent behavior across large or distributed environments. RDP Shortpath provides multiple optimized UDP-based transport paths—Managed, Public/STUN, and Public/TURN—that improve connection performance and reliability across diverse network environments. These options collectively form the RDP Shortpath feature set, and we recommend keeping them all enabled so the best path can be selected automatically. However, if your organization requires stricter control—for example, disabling STUN based traversal to ensure traffic flows only through TURN’s dedicated port and subnet—admins now have the policy-driven flexibility to do so through centralized configuration. Organizations using Windows 365 and AVD have asked for stronger policy-governed control over Shortpath behavior—especially as network environments grow more complex. With this release, admins: * No longer need per-host manual configuration. * Gain predictable, enforced behavior across managed devices. * Can centrally govern Shortpath modes based on security, NAT topology, or network readiness. This release brings Shortpath into the same modern management motion that customers already use for Windows configuration, compliance, and security. Benefits of centralized Shortpath configuration Unified policy management across AVD and Windows 365 Admins can centrally control all three Shortpath modes through GPO or Intune, which directly writes the relevant registry-backed configuration on each session host. This ensures consistent and governed behavior across all devices. Operates in addition to AVD host pool configuration For Azure Virtual Desktop, these GPO and Intune configurations act in addition to host pool network settings. This gives admins an extra layer of control at the session host level. When both host pool settings and policies are configured, the session-host policy takes precedence, ensuring deterministic behavior. This layering model is reinforced in internal discussions where session host configuration remained necessary in cases such as enabling UDP listener paths.   Important! The settings described in this article update registry-backed policies that enable or disable RDP Shortpath modes. Network prerequisites must still be in place (UDP allowed; STUN/TURN endpoints reachable) for connections to succeed. After policies apply, restart the session hosts or Cloud PCs for changes to take effect. See Optimization of RDP documentation for more detail.   Configuring RDP Shortpath using Intune To enable the RDP Shortpath listener on your session hosts using Microsoft Intune:   * Sign in to the Microsoft Intune admin center. * Create or edit a configuration profile  for Windows 10 and later devices, with the Settings catalog profile type. * In the settings picker, browse to Administrative templates > Windows Components > Remote Desktop Services > Remote Desktop Session Host > Azure Virtual Desktop > RDP Shortpath. * Expand the Administrative Templates category. * For each RDP Shortpath type, toggle the setting to Enabled or Disabled. * Enabled or Not Configured: The connection will attempt to use the specified network path. * Disabled: The connection will not use this network path. * Available RDP Shortpath types: * RDP Shortpath for managed networks using NAT traversal * RDP Shortpath for public networks using NAT traversal * RDP Shortpath for public networks using Relay (TURN) * Select Next. * Optional: On the Scope tags tab, select a scope tag to filter the profile. For more information about scope tags, see Use role-based access control (RBAC) and scope tags for distributed IT.  * On the Assignments tab, select the group containing the computers providing a remote session you want to configure, then select Next.  * On the Review + create tab, review the settings, then select Create. * Once the policy applies to the computers providing a remote session, restart them for the settings to take effect.  Configuring RDP Shortpath using Group Policy (GPO) in an Active Directory domain To configure the RDP Shortpath using Group Policy in an Active Directory domain:  * Make the administrative template for Azure Virtual Desktop available in your domain by following the steps in Use the administrative template for Azure Virtual Desktop.  * Open the Group Policy Management console on a device you use to manage the Active Directory domain.  * Create or edit a policy that targets the computers providing a remote session you want to configure.  * Navigate to Computer Configuration > Policies > Administrative Templates > Windows Components > Remote Desktop Services > Remote Desktop Session Host > Azure Virtual Desktop > RDP Shortpath.   * Review the available RDP Shortpath types:  * RDP Shortpath for managed networks using NAT traversal   * RDP Shortpath for public networks using NAT traversal   * RDP Shortpath for public networks using Relay(TURN)   * Double-click the policy setting Enable RDP Shortpath for managed networks to open it.  * Set the policy to Enabled or Disabled:   * Enabled or Not Configured: The connection will attempt to use the specified network path.  * Disabled: The connection will not use this network path.  * Ensure the policy is applied to the session hosts, then restart them for the settings to take effect.  Note After you configure the GPO policy, restart the session to ensure the changes take effect. Summary The GA of RDP Shortpath configuration via GPO and Microsoft Intune gives administrators:  * Stronger policy-governed control  * Deterministic Shortpath behavior  * A layered model that works with AVD host pool configuration  * A consistent management experience across Windows 365 and AVD  While these policy settings simplify administration, network prerequisites still determine whether Shortpath will successfully establish.  We welcome your feedback and hope these enhancements help streamline your connectivity strategy across Windows 365 and Azure Virtual Desktop environments.    Continue the conversation. Find best practices. Bookmark the Windows Tech Community, then follow us on LinkedIn or @MSWindowsITPro for updates. Looking for support? Visit Windows on Microsoft Q&A .
bit.ly
January 28, 2026 at 5:57 PM
Reposted by Sander van Beek
Speaker announcement!

Kenneth van Surksum is a name many of you already know. As a returning speaker and active contributor, Kenneth always brings clarity and high-quality insights to the table, and this year will be no different.

Buy your tickets and join @kennethvs.nl in Paris!

#MEMSummit
December 5, 2025 at 10:53 AM
Reposted by Sander van Beek
🚨 Having AVD sessions freeze, drop, or refuse to connect?
Your firewall might be killing your AVD deployment.
Check out the deep‑dive on AVD endpoints, FQDNs, IPs, and URL checks you need and how to troubleshoot it fast.
🎥 youtu.be/mNtXB2xSmPs
#Azure #AVD #Networking #SysAdmin #TechVideo #MVPBuzz
AVD FQDN and Endpoint Configuration | Stop the Lag and Freezing Now
YouTube video by Travis Roberts
youtu.be
January 27, 2026 at 6:07 PM
Reposted by Sander van Beek
Interesting Azure ☁ update -> [In preview] Public Preview: 7th generation Intel-based VMs – Dlsv7/Dsv7/Esv7
Azure updates | Microsoft Azure
Subscribe to Microsoft Azure today for service updates, all in one place. Check out the new Cloud Platform roadmap to see our latest product plans.
azure.microsoft.com
January 27, 2026 at 6:40 PM
Reposted by Sander van Beek
Updated Exchange Online SMTP AUTH Basic Authentication Deprecation Timeline | Microsoft Community Hub! 🦋
techcommunity.microsoft.com/blog/exchang...
Updated Exchange Online SMTP AUTH Basic Authentication Deprecation Timeline | Microsoft Community Hub
We wanted to provide the updated Exchange Online SMTP AUTH Basic Authentication Deprecation Timeline.  
techcommunity.microsoft.com
January 27, 2026 at 7:08 PM
Reposted by Sander van Beek
Reposted by Sander van Beek
Simplify your identity landscape, reduce risk, and modernize access for any identity by Kaitlin Murphy techcommunity.microsoft.com/t5/microsoft...
Simplify your identity landscape, reduce risk, and modernize access for any identity | Microsoft Community Hub
A new four‑part webinar series that helps you turn the 2026 identity strategy into actionable steps—with demos, templates, and guidance from Microsoft Entra.
techcommunity.microsoft.com
January 25, 2026 at 11:55 PM
Reposted by Sander van Beek
Microsoft Releases Emergency Fix for Azure Virtual Desktop, Windows 365 Authentication Failures by Chris Paoli #Azure redmondmag.com/Articles/202...
redmondmag.com
January 26, 2026 at 12:00 AM
Reposted by Sander van Beek
A new era of agents, a new era of posture by MS Defender Research Team #Azure www.microsoft.com/en-us/securi...
A new era of agents, a new era of posture  | Microsoft Security Blog
AI agents are transforming how organizations operate, but their autonomy also expands the attack surface.
www.microsoft.com
January 26, 2026 at 3:15 AM
Reposted by Sander van Beek
On February 5th in Antwerp, we’re excited to have @daalmans.com and ‪@kennethvs.nl take the stage at MC2MC Connect.

Their session, “Essential Tips and Tricks for Today’s Workplace Admin,” is packed with actionable, real-world insights.

🎟️ connect.mc2mc.be

#MC2MC #ConnectMC2MC #ConnectMC2MC2026
January 22, 2026 at 9:09 PM
Reposted by Sander van Beek
This month, Microsoft re-released PowerShell as a command-line option for Intune Win32 packages, making it easy to update the installation script without recreating the IntuneWin package. In this blog post, I will show you how it works

#PowerShell #Intune #Win32

powershellisfun.com/2026/01/23/i...
PowerShell is fun :)Intune Win32 PowerShell Installer Type
This month, Microsoft re-released PowerShell as a command-line option for Intune Win32 packages, making it easy to update the installation script without recreating the IntuneWin package. In this b…
powershellisfun.com
January 23, 2026 at 8:17 PM
Reposted by Sander van Beek
Another Learning Opportunity! Generate MITRE ATT&CK Report for Microsoft Sentinel Analytics Rules https://charbelnemnom.com/mitre-attack-for-sentinel-analytics-rules/##Microsoft##Azure##Blog > Please RP if you like it!
January 8, 2026 at 1:30 PM
Reposted by Sander van Beek
Reposted by Sander van Beek
🚀I did check out the Microsoft #MCP Server for Enterprise #Preview.
Now i can use prompts in #VisualStudioCode. Did you install that too?
bit.ly/4qHjIQS
January 7, 2026 at 8:48 AM
Reposted by Sander van Beek
Another Learning Opportunity! 8 Best Practices To Secure Domain Controller https://charbelnemnom.com/8-best-practices-to-secure-domain-controller/##Microsoft##Azure##Blog > Please RP if you like it!
January 5, 2026 at 1:30 PM
Reposted by Sander van Beek
🚀 Want instant remote access to your Azure Virtual Desktop? Learn how to use #WindowsApp with Direct URI for one-click access! No more connection page—just launch and go.

👀 Watch now: youtu.be/3vCA2jLuUPM

#Azure #AVD #RemoteAccess #CloudComputing #PowerShell #Microsoft #MVPBuzz #TechTutorial
Conquer AVD Shortcuts: Effortless Direct URI for Windows Apps!
Unlock AVD Direct URI: Launch Windows App straight to your Azure Virtual Desktop! Want faster remote access to your Azure Virtual Desktop? In this tutorial, we’ll show you how to use the Windows App…
youtu.be
December 21, 2025 at 5:00 PM
Reposted by Sander van Beek
Reposted by Sander van Beek
Robopack and @systemcenterdudes.com have partnered to bring faster, smarter automation to Intune app packaging & patching. Together we're helping IT teams reduce manual work and modernize endpoint management.

Learn more: www.robopack.com | www.systemcenterdudes.com

www.linkedin.com/feed/update/...
December 1, 2025 at 5:23 PM
Reposted by Sander van Beek
Boom. And that’s what it looks like when folks actually know what they’re doing! Much nicer than my version! Check out StreamLight - it’s FREE!
camo.com Camo @camo.com · Dec 8
✨Today we’re launching Camo Streamlight, the first virtual ring light built for HDR. Download it for free today at the Microsoft Store and see what it means to shine through every pixel! ➡️ apps.microsoft.com/detail/9PGF2...
December 8, 2025 at 7:33 PM
Reposted by Sander van Beek
PostgreSQL 18 is Now GA on Azure Postgres Flexible Server by Varun Dhawan #AzureActiveDirectory techcommunity.microsoft.com/t5/microsoft...
PostgreSQL 18 GA on Azure Postgres Flexible Server
: PostgreSQL 18 is now GA on Azure Postgres with in-place upgrades, Entra ID, Query Store, and global availability.
techcommunity.microsoft.com
December 8, 2025 at 8:40 PM
Reposted by Sander van Beek
AVD + FSLogix Without Domain Controllers: A Complete Cloud-Native Setup by Travis Roberts #Azure www.ciraltos.com/avd-fslogix-...
AVD + FSLogix Without Domain Controllers: A Complete Cloud-Native Setup - Ciraltos
Learn how to deploy AVD with FSLogix using Entra-only identities and Azure Files for a fully cloud-native setup. Includes step-by-step demo and prerequisites.
www.ciraltos.com
December 9, 2025 at 12:01 AM
Reposted by Sander van Beek
After Microsoft Security Copilot, Microsoft now also adds Microsoft Intune Suite in your Microsoft 365 E5 (and E3) licence! 🔥 #Microsoft365 #MSIntune

🔗 aka.ms/IntuneM365Blog
December 4, 2025 at 7:12 PM