Brian Veldman's Avatar

Brian Veldman

@brianveldman

☁️ Cloud Solution Architect at Fellowmind ❤️ Microsoft MVP with a passion for Azure, DevOps, and Infrastructure as Code 🚀 Blogging at cloudtips.nl 💪🏻 Active on Reddit since July 2025 in the Azure and Azure Bicep community as brianveldman

538
Followers
130
Following
77
Posts
17.11.2024
Joined
Posts Following

Latest posts by Brian Veldman @brianveldman

Preview
Entra ID support for Azure Bastion 😍 Azure Bastion has introduced support for signing in with Microsoft Entra ID when using RDP to access Windows virtual machines directly from…

🔥 Azure Bastion has introduced support for signing in with Microsoft Entra ID when using RDP to access Windows virtual machines directly from the Azure portal. cloudtips.nl/entra-id-sup...

01.03.2026 21:16 👍 1 🔁 0 💬 0 📌 0
Preview
Azure Service Groups for Flexible Resource Organization Azure Service Groups make it possible to bring resources together and manage them, even when they are spread across multiple subscriptions…

🔥Azure Service Groups make it possible to bring resources together and manage them, even when they are spread across multiple subscriptions and resource groups, without being tied to the default Azure hierarchy. cloudtips.nl/azure-servic...

26.02.2026 20:06 👍 1 🔁 1 💬 0 📌 0
Preview
The Azure Bicep Console = ❤️ When working with Bicep templates, one of the biggest challenges is validating your logic before deployment. Naming rules, conditions…

In this blog, I will show you how to get started with the Bicep console and how it supports my daily development workflow, so it can save you time as well. cloudtips.nl/the-azure-bi...

17.02.2026 20:38 👍 2 🔁 1 💬 0 📌 0
Conditional Access Documenter
Conditional Access Documenter YouTube video by Brian Veldman

What if I told you that you can export your Conditional Access policies to PowerPoint, providing a high-level overview of your security posture? youtu.be/ANZLw1jkX8s?...

13.02.2026 14:02 👍 2 🔁 1 💬 0 📌 0
Preview
Unified Tenant Configuration Management (UTCM) APIs in Microsoft Graph = ❤️ The unified tenant configuration management (UTCM) APIs allow administrators to control and manage configuration settings across a single…

🔥 It is here. The unified tenant configuration management (UTCM) APIs allow administrators to control and manage configuration settings across a single workload or multiple workloads within the organization. cloudtips.nl/unified-tena...

09.02.2026 07:21 👍 1 🔁 0 💬 0 📌 0
Preview
Deploy Azure Monitor Baseline Alerts using Enterprise Policy as Code As many of you know, I am passionate about Infrastructure as Code and governance within Azure environments. Consistency, repeatability, and…

How do we combine strong governance with automation in a structured way? This is where Enterprise Policy as Code, or EPAC, comes into play. cloudtips.nl/deploy-azure...

02.02.2026 22:04 👍 1 🔁 1 💬 0 📌 0
Preview
Microsoft Entra Connect Sync — Migrate from Pass-through Authentication to Password Hash Sync Recently, in a customer project, I had to switch from Passthrough Authentication to Password Hash Synchronization. That experience…

Recently, in a customer project, I had to switch from Passthrough Authentication to Password Hash Synchronization. That experience inspired me to write this blog for anyone who receives the same assignment but is unsure how to approach it. 💪🏻 cloudtips.nl/microsoft-en...

30.01.2026 10:01 👍 2 🔁 0 💬 0 📌 0
Preview
This is why your AI platform on Azure needs a Landing Zone Many organizations deploy AI solutions on Microsoft Azure with a strong focus on innovation and speed. What is often underestimated is the…

Many organizations deploy AI solutions on Microsoft Azure with a strong focus on innovation and speed. What is often underestimated is the importance of a well designed foundation. cloudtips.nl/this-is-why-...

24.01.2026 17:12 👍 1 🔁 0 💬 0 📌 0
Preview
The Future of Secure Access with Managed Identities and Workload Identity Federation At many organizations, managing secrets and certificates in Azure application registrations quickly becomes a challenge, often due to risks…

🔥 Curious how the future of secure access with Managed Identities and Workload Identity Federation helps you move beyond risky secrets and certificates? medium.com/microsoftazu...

15.01.2026 17:33 👍 1 🔁 0 💬 0 📌 0

Super nice!

14.01.2026 12:48 👍 0 🔁 0 💬 0 📌 0
Preview
Protect your Microsoft External ID tenant using Web Application Firewall! Recently I published a blog post about deploying Microsoft Entra External ID and integrating it as an authentication provider for Azure App…

🔥 Want to know how to protect your Microsoft Entra External ID tenant against bad bots and malicious attackers? cloudtips.nl/protect-your...

12.01.2026 18:26 👍 1 🔁 0 💬 0 📌 0
Post image

Did somebody said snow? ⛄️❄️

08.01.2026 21:15 👍 1 🔁 0 💬 0 📌 0
Preview
Reflecting on 2025: Microsoft MVP, How It Started and What’s Next 🚀 First of all, I have to say that 2025 was an incredible year. I am truly grateful for everyone who supported my community contributions and…

First of all, I have to say that 2025 was an incredible year. I am truly grateful for everyone who supported my community contributions and helped me grow along the way. cloudtips.nl/reflecting-o...

30.12.2025 08:22 👍 1 🔁 0 💬 0 📌 0
Preview
Source IP Anchoring with Entra Global Secure Access 🔥 Source IP Anchoring with Entra Global Secure Access 🔥 Global Secure Access (GSA) is a comprehensive solution that integrates Microsoft Entra Internet Access and Microsoft Entra Private Access …

In this blog I will show how to configure Microsoft Entra Private Access to tunnel selected application traffic through a private network in order to meet the access control policy of an application that depends on network based restrictions. cloudtips.nl/source-ip-an...

22.12.2025 06:21 👍 0 🔁 0 💬 0 📌 0
Post image

💪🏻Together with my colleagues Robert and Wouter, we migrated 100 VMs this weekend, phased out the old RDS farm, introduced AVD with six host pools and 125 VMs, and migrated fourteen locations from IPVPN to fiber and DSL via SDWAN to vWAN. Grateful for the gift and happy to help innovate IT platforms.

15.12.2025 18:01 👍 1 🔁 0 💬 0 📌 0
Preview
The North Pole Azure Landing Zone 🎄It is December at the North Pole. The elves are rushing around, workloads are flying everywhere, and even Santa is complaining that he…

🎄 It is December at the North Pole. The elves are rushing around, workloads are flying everywhere, and even Santa is complaining that he has too many permissions. It is clearly time to bring some order with a bit of Bicep magic. cloudtips.nl/the-north-po...

15.12.2025 08:47 👍 0 🔁 0 💬 0 📌 0
Post image

⚡Adding Intune P2 features to Microsoft 365 E3 and E5 is getting a lot of well-deserved attention, but did you see the blip that isn't? Some Defender for Office P1 features are coming to E3 and E1 in 2026! 📧
www.microsoft.com/en...

09.12.2025 13:16 👍 2 🔁 1 💬 0 📌 0
Preview
Microsoft Entra Kerberos authentication for Cloud-only Identities on Azure Files SMB ❤️ Azure Files now allows SMB access through identities that exist entirely in Entra also known as cloud-only accounts. These accounts live in…

🔥 It is here. Microsoft Entra Kerberos authentication for cloud only identities on Azure Files SMB is now available in preview. This makes it possible to access Azure Files without any domain controllers or hybrid identity requirements. cloudtips.nl/microsoft-en...

30.11.2025 14:08 👍 3 🔁 2 💬 0 📌 0
Preview
Secure Your Traffic with Forced Tunneling in Azure Virtual WAN P2S VPN 😍 Secure Your Traffic with Forced Tunneling in Azure Virtual WAN P2S VPN 😍 When remote users connect through a Point to Site (P2S) VPN in Azure Virtual WAN, you can route all their traffic including …

When remote users connect through a Point to Site (P2S) VPN in Azure Virtual WAN, you can route all their traffic including internet bound traffic through Azure Firewall by pushing a default route (0.0.0.0/0). This approach is commonly referred to as forced tunneling. 🔥
cloudtips.nl/secure-your-...

23.11.2025 09:25 👍 1 🔁 0 💬 0 📌 0
Post image

Enjoying vacation 💪🏻

21.11.2025 11:34 👍 1 🔁 0 💬 0 📌 0
Preview
GitHub - microsoft/ignite25-next-steps Contribute to microsoft/ignite25-next-steps development by creating an account on GitHub.

[Share] 🔥 Microsoft Ignite 2025 Next Steps

After attending Microsoft Ignite 2025, your next steps to continue your learning journey!

#msignite #mvpbuzz

20.11.2025 10:50 👍 2 🔁 2 💬 0 📌 0
Preview
Automate Microsoft Graph Tasks with Azure Container App Jobs! ❤️ Azure Container Apps Jobs allow you to run containerized tasks that execute for a finite duration and then exit. You can use jobs for…

In this blog, I will demonstrate how to use Azure Container App Jobs to automate tasks with Microsoft Graph. For example, you might want to back up your Conditional Access rules from Entra ID to a secure location, such as an Azure Storage Account. 🔥 cloudtips.nl/automate-mic...

10.11.2025 08:49 👍 1 🔁 0 💬 0 📌 0
Preview
Microsoft Entra ID Governance — Automating Privileged Identity Management in Azure Landing Zones… Azure Landing Zones provide a solid foundation for deploying workloads in the cloud by integrating best practices across governance…

In this blog, I’ll demonstrate how to automate Privileged Identity Management (PIM) in Azure Landing Zones using Azure Bicep and the Microsoft Graph Provider, powered by Microsoft Entra ID Governance. cloudtips.nl/microsoft-en...

02.11.2025 08:20 👍 1 🔁 0 💬 0 📌 0
Preview
Why You Should Start Using Microsoft Learn MCP Today The way we learn is changing quickly. In the past we relied on manuals and static documentation, but today we expect direct and interactive…

Bring Microsoft Learn content straight into your AI assistant or app with the Microsoft Learn Model Context Protocol (MCP). cloudtips.nl/why-you-shou...

21.10.2025 18:18 👍 0 🔁 0 💬 0 📌 0
Post image

This week's Entra newsletter is out.

Get it at https://entra.news

19.10.2025 12:02 👍 6 🔁 1 💬 0 📌 0
Preview
Managing Entra ID Configuration and Security using the Terraform MSGraph Provider ❤️ Recently, I wrote a blog about using the new Terraform MSGraph provider. This provider, currently in public preview, allows you to describe…

🚨 The Terraform MSGraph provider is a gamechanger. Today, I will show how you can use it to improve your Entra ID configuration and strengthen your security posture. cloudtips.nl/managing-ent...

15.10.2025 04:36 👍 3 🔁 0 💬 0 📌 0
Post image

I just sent out this week's Entra newsletter.

🚀 Most popular posts from last week

🥇Microsoft Introduces Restore Capability for Conditional Access Policies • Tony Redmond
🥈Why Setting Office IP as a Trusted Location in Conditional Access Is Risky • AIMA

12.10.2025 01:47 👍 3 🔁 1 💬 1 📌 0
Preview
How to Configure Multi-Pool P2S VPN Using Azure VWAN When remote users connect through a Point to Site (P2S) VPN in Azure Virtual WAN, you can assign them to specific Entra ID groups, for…

🔥 Want to know how you can segment remote users in Azure Virtual WAN when they connect over Point to Site (P2S) VPN? cloudtips.nl/how-to-confi...

06.10.2025 19:50 👍 0 🔁 0 💬 0 📌 0
Preview
New version of Maester on Azure Web App — Microsoft Security Test Automation Framework Some time ago, I showcased how to deploy Maester on Azure Web App. For anyone unfamiliar, Maester is a PowerShell-based Microsoft Security…

Today, @merill.net I are thrilled to announce the release of the new version of Maester on Azure Web App. cloudtips.nl/new-version-...

29.09.2025 09:40 👍 10 🔁 3 💬 0 📌 0
Post image

We just sent out this week's Entra news.

Check it out at entra.news/p/entra-n...

28.09.2025 21:02 👍 7 🔁 1 💬 0 📌 0