Skip to content

AuthorRonny de Jong

As principal consultant & Microsoft MVP I work for Inspark, the #1 Dutch Microsoft Partner specialized in Datacenter & Apps, Modern Workplace, Data/AI, Security & Managed Services. As principal consultant I'm member of the Technology Board, which is responsible for technology innovation, strategy & vision of InSpark. My primary focus is on Microsoft 365 (Identity-, Modern Workplace-, Security & Threat protection. He‘s responsible for a great team of highly skilled consultant’s helping customers to accelerate by innovation. As Microsoft MVP I'm working closely with various Microsoft product groups to provide (customer) feedback, product improvements & most important contribute to the community by sharing knowledge & experience via this blog and social channels. My presence at various international (community) events like Tech Summit, Expertslive Europe, TechDays, Techorama & various user group meetings are dedicated by meeting people & again sharing knowledge. Modern Workplace: Microsoft Intune, Configuration Manager, Windows 10, Autopilot, Always-On VPN, Windows 10 Security (Windows Hello for Business, Application-, Credential-, Device-, Exploit Guard, FIDO2, N-Factor), Desktop Analytics, Windows Desktop Virtualization. Threat Protection: Azure Security Center, Windows Defender ATP, Azure ATP, ATA, Cloud App Security. Identity & Access Management: Active Directory Federation Services, Azure AD (Connect), Azure Information Protection, Azure Multi Factor Authentication (MFA), Azure Application Proxy, Azure AD Privileged Identity Management, Azure AD Identity & Password Protection.

Name Suffix Routing into the rescue publishing Non-Claims-Aware application using Kerberos Constrained Delegation

Last week I faced a challenge publishing non-claims-aware application (SharePoint 2013) using Kerberos Constrained Delegation (KCD) by Web Application Proxy (WAP). The customer environment consists of a multi-forest active directory … Continue Reading Name Suffix Routing into the rescue publishing Non-Claims-Aware application using Kerberos Constrained Delegation

Part 3 – Deploy certificates to mobile devices using Microsoft Intune NDES – Deployment

In the first two blog posts I covered the theory how deployment of certificates works to mobile devices using Microsoft Intune NDES connector followed by setup and configuring the connector. … Continue Reading Part 3 – Deploy certificates to mobile devices using Microsoft Intune NDES – Deployment

Part 2 – Deploy certificates to mobile devices using Microsoft Intune NDES – Connector

In part 1 of this blog series I provided some background and highlevel overview how the proces of deploying certificate profiles to devices works with Microsoft Intune. Part 1 – … Continue Reading Part 2 – Deploy certificates to mobile devices using Microsoft Intune NDES – Connector

Part 1 – Deploy certificates to mobile devices using Microsoft Intune NDES – Overview

With the recent updates of Microsoft Intune it is possible now deploying certificate profiles using Network Device Enrollment Service (NDES) to mobile devices. In this blog series I’ll cover the … Continue Reading Part 1 – Deploy certificates to mobile devices using Microsoft Intune NDES – Overview

Use Alternate Login ID implementing Enterprise Mobility Suite in a Multi-Forest scenario

Last week I came across a scenario where Alternate Login ID feature of Active Directory Federation Services (AD FS) came at its best. Scenario Part of an Enterprise Mobility Suite … Continue Reading Use Alternate Login ID implementing Enterprise Mobility Suite in a Multi-Forest scenario