
How to Safely Demote a Domain Controller in Active Directory
Learn how to demote a domain controller in AD with pre-checks, graceful and forced demotion methods, metadata cleanup, and common fixes.
15 min read
Microsoft has announced Microsoft 365 E7, its newest premium bundle for the AI-driven enterprise. It combines Microsoft 365 E5, Copilot, Entra Suite, and Microsoft Agent 365 into a single offering. The suite is priced at $99 per user/month and will be generally available starting May 1, 2026.
Microsoft 365 Backup has extended its support to restore individual files and folders in SharePoint and OneDrive, which is currently available in public preview. With this update, admins can easily browse, search, and recover specific files or folders directly from restore points, eliminating the need to restore an entire site or drive.
Microsoft is retiring One-Time Passcode (SPO OTP) authentication and transitioning to Entra B2B guest accounts for external users. This ensures that SharePoint and OneDrive external collaboration is governed by the same security and compliance standards as internal access. SPO OTP method will be fully retired by August 31, 2026, following rollout beginning in May 2026.
Microsoft now allows admins to enforce a default expiration period for “People in your organization” sharing links in SharePoint Online and OneDrive. By configuring maximum and recommended expiration values, admins can prevent internal links from staying active indefinitely. This update helps reduce stale access while maintaining flexible and secure collaboration.
Starting March 3, 2026, Microsoft is introducing a completely reimagined SharePoint experience in Microsoft 365, designed to make collaboration smarter, faster, and more intuitive. The new experience features a redesigned app bar categorized into three core jobs - Discover, Publish, and Build along with AI-powered tools and a neutral theme.
Microsoft Entra Kerberos provides a simpler way to set up hybrid-joined devices by reducing the need for Microsoft Entra Connect or Active Directory Federation Services. By using cloud-based authentication with Microsoft Entra ID, organizations can streamline device onboarding and simplify hybrid deployments.
Struggling to automate secure monitor manage M365?
Try AdminDroid for Free!Explore hands-on guides, admin tips, and automation to simplify Active Directory management.

Learn how to demote a domain controller in AD with pre-checks, graceful and forced demotion methods, metadata cleanup, and common fixes.
15 min read

Learn how to implement the Active Directory tiered administration model to reduce credential exposure and prevent lateral movement attacks.
14 min read

Learn how to configure and manage password policies in Active Directory to enforce strong passwords and secure your environment.
11 min read

Explore step-by-step methods to identify insecure RC4 usage in Active Directory Kerberos tickets and disable them to strengthen security.
16 min read

Learn how Group Policy Results Wizard helps troubleshoot Active Directory GPO issues by showing all applied and denied policy settings with clear troubleshooting insights.
10 min read

Explore why Microsoft is disabling NTLM by default in Active Directory and Windows environment and learn how to prepare using NTLM auditing.
4 min read

Discover how to find the account lockout source in Active Directory to quickly pinpoint the cause and resolve recurring user lockouts.
12 min read

Explore why Microsoft deprecates RC4 encryption in Kerberos authentication and learn how to prepare for the upcoming AES enforcement.
6 min read

Learn how to set up Account Lockout Policy in Windows Active Directory to prevent password-guessing attacks on user accounts.
10 min read

Understand Group Policy Objects in Active Directory and learn how GPOs work to control user and computer settings across your domain.
15 min read

Learn all methods to exclude a OU from a GPO in Active Directory, including WMI filters, GPO permissions, item-level targeting, and more.
14 min read

Understand FSMO roles in Active Directory, their types, purpose, and how to transfer or seize them to another domain controllers.
18 min read