← Previous day

Next day →
Day in brief

Microsoft Authenticator changes iOS backup in September; 9 July is otherwise a documentation-heavy Entra update

The period's one explicit service-behavior change is MC1111780: starting in September 2025, Microsoft Authenticator on iOS will use iCloud and iCloud Keychain for backup and restore, removing the need for a Microsoft personal account. Account names and third-party TOTP credentials will be backed up automatically, and no admin action is required. The other 52 tracked items were documentation updates across Entra products and related capabilities, with no new or removed items. The supplied evidence supports deprecation, preview, and documentation-clarification guidance—not a broad new-feature or general-availability announcement.

  • The Microsoft 365 Message Center says that, starting in September 2025, Authenticator on iOS will use iCloud and iCloud Keychain for backup and restore. The update eliminates the need for a Microsoft personal account and automatically backs up account names and third-party TOTP credentials. The notice explicitly says no admin action is required.

  • The updated Microsoft Entra ID article describes the deprecation of the Azure AD Graph-format app manifest and the attribute differences in the newer format. This is migration guidance, not evidence that the format was retired on 9 July; application owners should use it to assess manifest conversions and dependent tooling.

  • The updated Global Secure Access page covers Advanced Threat Protection and Data Loss Prevention policies powered by Netskope. Because the capability is explicitly labeled Preview, this record supports preview guidance rather than a general-availability or rollout claim.

  • The updated Entra ID documentation explains that the Conditional Access optimization agent's summary shows discoveries from the last 30 days and reports the agent's Security Compute Unit consumption. This adds operational monitoring detail without evidence of a newly launched agent or changed tenant policy.

This period briefing was generated by AI from the tracked Microsoft Learn and Message Center changes.

52 updates

7

Application model

Updated

Learn about the process of registering your application so it can integrate with the Microsoft identity platform.

6

Deploy a web app with App Service auth in a pipeline

Updated

Describes how to set up a pipeline in Azure Pipelines to build and deploy a web app to Azure and enable the Azure App Service built-in authentication. The article provides step-by-step instructions on how to configure Azure resources, build and deploy a web application, create a Microsoft Entra app registration, and configure App Service built-in authentication using Azure Pipelines.

Microsoft Identity Platform Glossary

Updated

Learn key terms used in Microsoft identity platform documentation, Microsoft Entra admin center, and authentication SDKs like the Microsoft Authentication Library (MSAL).

6

Microsoft Entra federation metadata

Updated

This article describes the federation metadata document that Microsoft Entra ID publishes for services that accept Microsoft Entra tokens.

4
2

Agent Optimization Logs Metrics

Updated

The **Agent summary** at the top of the Conditional Access optimization agent page provides a quick summary of what the agent has discovered in the last 30 days. The total number of [security compute units (SCU)](/copilot/security/manage-usage) consumed by the agent is also provided.

2
1
1
1

Investigate risky users with Copilot

Updated

Use Copilot in Microsoft Entra to quickly respond to identity threats by summarizing the risk level for a user and receiving insights relevant to the incident.

1

Manage lifecycle workflows with Microsoft Security Copilot

Updated

Use Microsoft Security Copilot in the Microsoft Entra admin center to create lifecycle workflows for Joiner, Mover, and Leaver scenarios. Execute workflows on-demand and use workflow insights to monitor execution and troubleshoot as needed.

5

Facebook Federation

Updated

Federate with Facebook to enable external users (guests) to sign in to your Microsoft Entra apps with their own Facebook accounts.

2

Azure Monitor

Updated

To stop collecting logs to your Log Analytics workspace, delete the diagnostic settings you created. You'll continue to incur charges for retaining log data you've already collected into your workspace. If you no longer need the monitoring data you've collected, you can delete your Log Analytics workspace and the resource group you created for Azure Monitor. Deleting the Log Analytics workspace deletes all data in the workspace and prevents you from incurring other data retention charges.

1
1

B2b Direct Connect Overview

Updated

Microsoft Entra B2B direct connect lets users from other Microsoft Entra tenants seamlessly sign in to your shared resources via Teams shared channels. There's no need for a guest user object in your Microsoft Entra directory.

1

Create an Azure app identity (PowerShell)

Updated

Describes how to use Azure PowerShell to create a Microsoft Entra application and service principal, and grant it access to resources through role-based access control. It shows how to authenticate application with a certificate.

1

Workload Identity Federation Config App Trust Managed Identity

Updated

The audience value must be set to one of the following values:<br/> &#8226; **Entra ID Global Service**: *api://AzureADTokenExchange* <br/>&#8226; **Entra ID for US Government**: *api://AzureADTokenExchangeUSGov* <br/>&#8226; **Entra ID China operated by 21Vianet**: *api://AzureADTokenExchangeChina* <br/>

1
1
2
1
3
1

Agent Optimization

Updated

Learn how the Microsoft Entra Conditional Access optimization agent with Microsoft Security Copilot can help secure your organization.

1
Daily Entra.News

Get daily email updates

Get a concise summary of the latest Microsoft Entra updates delivered straight to your inbox.

Loading the secure signup form…