Welcome to the IdGuys

Our blog is focused on mostly identity topics based on Microsoft technologies.

We are passionate about sharing our knowledge and experiences in the field of identity and access management, and we hope that our blog will be a valuable resource for anyone interested in this exciting and rapidly evolving field.

Latest blog posts

November 12, 2025
How I accidentally replaced Maester and half of my weekend plans

If you had told me a month ago that I'd build an assessment framework from scratch - one that would completely replace both Maester and Pester - I would have laughed, said "sure", and gone back to debugging my PowerShell script.

But here we are.

The need for a better way

I've spent a fair...

November 07, 2025
Soft-delete for security groups is finally supported in Entra ID

Not a day to soon, security groups can now be soft-deleted, something that has been around for Office groups for ever.

Recently Microsoft added soft-delete support for Conditional Access poclies, but this is in my mind an even bigger improvement.

If you take a look in any tenant today, you will...

October 27, 2025
Change Source of Authority for AD synced security groups to implement Entitlement Management

Changing SoA for synced AD groups was recently made available as a public preview feature in Entra ID. In a previous blog post, I demonstrated how this can be used to move your management of these groups to Entra ID from Active...

October 10, 2025
Soft-delete for Conditional Access

Until now, once you deleted a Conditional Access policy it was gone forever. You always had the option to disable it or set it to report-only mode but as with so many other things, old policies have a tendency to be kept "just in case" and be forgotten.

Having the option to restore a deleted...