Microsoft Entra enables you to securely manage user access to services and resources. Included with Microsoft Entra is a family of identity management and network access capabilities. For information about Microsoft Entra features, see [What is Microsoft Entra?](~/fundamentals/what-is-entra.md)
Microsoft Entra Conditional Access guidance clarified; no feature rollout evidenced
All 28 recorded changes for 22 August are Microsoft Learn updates, with no new or removed items and no Message Center notices. The clearest administrator-relevant material concerns Microsoft Entra Conditional Access application targeting, policy exclusions, and licensing. Separate updates clarify the PIM license prerequisite for Global Secure Access and the default role assigned when a tenant is created. The supplied evidence supports documentation clarification and security or governance guidance—not a preview, general-availability release, retirement, or runtime behavior change.
- Conditional Access application-targeting scope is clarified
Entra ID · Conditional Access
The updated Entra ID Conditional Access Cloud Apps guidance states that targeting the Windows Azure Service Management API applies policy to tokens issued to a set of services closely bound to the portal, with the grouping defined by application IDs. This is a scope clarification for policy authors, not evidence of changed enforcement behavior.
- Conditional Access exclusions are linked to access-review governance
ID Governance · Conditional Access
The updated ID Governance guidance covers business cases for exceptions and says administrators can manage exclusions and provide auditors evidence that they are reviewed regularly through Microsoft Entra access reviews. This is security and governance guidance, not a new exclusion control.
- Conditional Access licensing guidance is restated
Entra ID · Conditional Access
The updated Entra ID developer guide states that Conditional Access is included with Microsoft Entra ID P1 or P2 and that Microsoft 365 Business customers also have access to Conditional Access features. The evidence supports a licensing clarification only; it does not indicate a pricing or entitlement change.
- Global Secure Access with PIM lists an Entra licensing prerequisite
Global Secure Access · Fundamentals
The updated Global Secure Access setup guidance lists an Entra ID license that includes Privileged Identity Management for configuring Global Access with PIM. Administrators can use this as a prerequisite check; the record does not establish that the requirement or availability changed on this date.
The updated Entra ID tenant-installation guidance states that, by default, the user who creates a tenant is automatically assigned the Global Administrator role. The concrete impact is on tenant-creation and privileged-access runbooks; this record does not establish a new role-assignment behavior.
This period briefing was generated by AI from the tracked Microsoft Learn and Message Center changes.
28 updates
Microsoft Entra ID
23 updatesAzure Active Directory is now [Microsoft Entra ID](~/fundamentals/what-is-entra.md), which can safeguard your organization with cloud identity and access management. The solution connects employees, customers, and partners to their apps, devices, and data.
Secure Fundamentals
UpdatedThese functional areas are provided by Microsoft Entra ID that are relevant to isolated environments. To learn more about the capabilities of Microsoft Entra ID, see [What is Microsoft Entra ID?](~/fundamentals/what-is-entra.md).
The following products and services appear in this guide:
The following products and services appear in this guide:
To ensure that the users can easily and securely access applications, your goal is to have a single set of access controls and policies across your on-premises and cloud environments.
Groups Saasapps
Updated* [Managing access to resources with Microsoft Entra groups](~/fundamentals/concept-learn-about-groups.md)
* [Manage access to resources with Microsoft Entra groups](~/fundamentals/concept-learn-about-groups.md)
Groups Troubleshooting
Updated* [Managing access to resources with Microsoft Entra groups](~/fundamentals/concept-learn-about-groups.md)
This article introduces an administrator for Microsoft Entra ID, part of Microsoft Entra, to the relationship between top [identity management](~/fundamentals/what-is-entra.md?context=azure/active-directory/users-groups-roles/context/ugr-context) tasks for users in terms of their groups, licenses, deployed enterprise apps, and administrator roles. As your organization grows, you can use Microsoft Entra groups and administrator roles to:
Connect Health Adfs
Updated| Requirement | Description |
Connect Health Agent Install
Updated| Requirement | Description |
Datawiza Configure Sha
UpdatedDatawiza integration includes the following components:
Tenant Installation Account
UpdatedBy default, the user who creates a Microsoft Entra tenant is automatically assigned the [Global Administrator](/entra/identity/role-based-access-control/permissions-reference#global-administrator) role.
Choose Ad Authn
UpdatedIn today's world, threats are present 24 hours a day and come from everywhere. Implement the correct authentication method, and it will mitigate your security risks and protect your identities.
For more information about Microsoft Entra ID, see [What is Microsoft Entra ID?](~/fundamentals/what-is-entra.md).
When you target the Windows Azure Service Management API application, policy is enforced for tokens issued to a set of services closely bound to the portal. This grouping includes the application IDs of:
Microsoft Entra Conditional Access is a feature included in [Microsoft Entra ID P1 or P2](~/fundamentals/licensing.md). Customers with [Microsoft 365 Business licenses](/office365/servicedescriptions/office-365-service-descriptions-technet-library) also have access to Conditional Access features.
You need a license for PingAccess and Microsoft Entra ID. However, Microsoft Entra ID P1 or P2 subscriptions include a basic PingAccess license that covers up to 20 applications. If you need to publish more than 20 header-based applications, you can purchase more licenses from PingAccess.
The following articles discuss the different ways applications integrate with Microsoft Entra ID, and provide some guidance.
Hipaa Hitrust Controls
UpdatedMicrosoft Entra ID Governance
4 updatesThis article describes features and methods that allow you to pinpoint and select external identities so that you can review them and remove them from Microsoft Entra ID if they're no longer needed. The cloud makes it easier than ever to collaborate with internal or external users. When embracing Office 365, organizations start to see the proliferation of external identities (including guests), as users work together on data, documents, or digital workspaces such as Teams. Organizations need to balance, enabling collaboration and meeting security and governance requirements. Part of these efforts should include evaluating and cleaning out external users, who were invited for collaboration into your tenant, that originating from partner organizations, and removing them from your Microsoft Entra ID when they're no longer needed.
| | Description |
* [Microsoft Entra ID Governance](../id-governance/identity-governance-overview.md)
Conditional Access Exclusion
UpdatedIn an ideal world, all users follow the access policies to secure access to your organization's resources. However, sometimes there are business cases that require you to make exceptions. This article goes over some examples of situations where exclusions could be necessary. You, as the IT administrator, can manage this task, avoid oversight of policy exceptions, and provide auditors with proof that these exceptions are reviewed regularly using Microsoft Entra access reviews.
- [Microsoft Entra ID license that includes Privileged Identity Management (PIM)](~/fundamentals/licensing.md)
