← Previous day

Next day →
Day in brief

Microsoft Entra Conditional Access guidance clarified; no feature rollout evidenced

All 28 recorded changes for 22 August are Microsoft Learn updates, with no new or removed items and no Message Center notices. The clearest administrator-relevant material concerns Microsoft Entra Conditional Access application targeting, policy exclusions, and licensing. Separate updates clarify the PIM license prerequisite for Global Secure Access and the default role assigned when a tenant is created. The supplied evidence supports documentation clarification and security or governance guidance—not a preview, general-availability release, retirement, or runtime behavior change.

  • The updated Entra ID Conditional Access Cloud Apps guidance states that targeting the Windows Azure Service Management API applies policy to tokens issued to a set of services closely bound to the portal, with the grouping defined by application IDs. This is a scope clarification for policy authors, not evidence of changed enforcement behavior.

  • The updated ID Governance guidance covers business cases for exceptions and says administrators can manage exclusions and provide auditors evidence that they are reviewed regularly through Microsoft Entra access reviews. This is security and governance guidance, not a new exclusion control.

  • The updated Entra ID developer guide states that Conditional Access is included with Microsoft Entra ID P1 or P2 and that Microsoft 365 Business customers also have access to Conditional Access features. The evidence supports a licensing clarification only; it does not indicate a pricing or entitlement change.

  • The updated Global Secure Access setup guidance lists an Entra ID license that includes Privileged Identity Management for configuring Global Access with PIM. Administrators can use this as a prerequisite check; the record does not establish that the requirement or availability changed on this date.

  • The updated Entra ID tenant-installation guidance states that, by default, the user who creates a tenant is automatically assigned the Global Administrator role. The concrete impact is on tenant-creation and privileged-access runbooks; this record does not establish a new role-assignment behavior.

This period briefing was generated by AI from the tracked Microsoft Learn and Message Center changes.

28 updates

7

What is the Microsoft Entra architecture?

Updated

Microsoft Entra enables you to securely manage user access to services and resources. Included with Microsoft Entra is a family of identity management and network access capabilities. For information about Microsoft Entra features, see [What is Microsoft Entra?](~/fundamentals/what-is-entra.md)

Microsoft Entra deployment plans

Updated

Azure Active Directory is now [Microsoft Entra ID](~/fundamentals/what-is-entra.md), which can safeguard your organization with cloud identity and access management. The solution connects employees, customers, and partners to their apps, devices, and data.

Secure Fundamentals

Updated

These functional areas are provided by Microsoft Entra ID that are relevant to isolated environments. To learn more about the capabilities of Microsoft Entra ID, see [What is Microsoft Entra ID?](~/fundamentals/what-is-entra.md).

5

Migrate Adfs Apps Phases Overview

Updated

To ensure that the users can easily and securely access applications, your goal is to have a single set of access controls and policies across your on-premises and cloud environments.

Groups Saasapps

Updated

* [Managing access to resources with Microsoft Entra groups](~/fundamentals/concept-learn-about-groups.md)

Groups Troubleshooting

Updated

* [Managing access to resources with Microsoft Entra groups](~/fundamentals/concept-learn-about-groups.md)

What is enterprise user management?

Updated

This article introduces an administrator for Microsoft Entra ID, part of Microsoft Entra, to the relationship between top [identity management](~/fundamentals/what-is-entra.md?context=azure/active-directory/users-groups-roles/context/ugr-context) tasks for users in terms of their groups, licenses, deployed enterprise apps, and administrator roles. As your organization grows, you can use Microsoft Entra groups and administrator roles to:

4

Tenant Installation Account

Updated

By default, the user who creates a Microsoft Entra tenant is automatically assigned the [Global Administrator](/entra/identity/role-based-access-control/permissions-reference#global-administrator) role.

2

Choose Ad Authn

Updated

In today's world, threats are present 24 hours a day and come from everywhere. Implement the correct authentication method, and it will mitigate your security risks and protect your identities.

2

Conditional Access Cloud Apps

Updated

When you target the Windows Azure Service Management API application, policy is enforced for tokens issued to a set of services closely bound to the portal. This grouping includes the application IDs of:

V2 Conditional Access Dev Guide

Updated

Microsoft Entra Conditional Access is a feature included in [Microsoft Entra ID P1 or P2](~/fundamentals/licensing.md). Customers with [Microsoft 365 Business licenses](/office365/servicedescriptions/office-365-service-descriptions-technet-library) also have access to Conditional Access features.

2

Application Proxy Ping Access Publishing Guide

Updated

You need a license for PingAccess and Microsoft Entra ID. However, Microsoft Entra ID P1 or P2 subscriptions include a basic PingAccess license that covers up to 20 applications. If you need to publish more than 20 header-based applications, you can purchase more licenses from PingAccess.

Plan An Application Integration

Updated

The following articles discuss the different ways applications integrate with Microsoft Entra ID, and provide some guidance.

1
2

Access Reviews External Users

Updated

This article describes features and methods that allow you to pinpoint and select external identities so that you can review them and remove them from Microsoft Entra ID if they're no longer needed. The cloud makes it easier than ever to collaborate with internal or external users. When embracing Office 365, organizations start to see the proliferation of external identities (including guests), as users work together on data, documents, or digital workspaces such as Teams. Organizations need to balance, enabling collaboration and meeting security and governance requirements. Part of these efforts should include evaluating and cleaning out external users, who were invited for collaboration into your tenant, that originating from partner organizations, and removing them from your Microsoft Entra ID when they're no longer needed.

1
1

Conditional Access Exclusion

Updated

In an ideal world, all users follow the access policies to secure access to your organization's resources. However, sometimes there are business cases that require you to make exceptions. This article goes over some examples of situations where exclusions could be necessary. You, as the IT administrator, can manage this task, avoid oversight of policy exceptions, and provide auditors with proof that these exceptions are reviewed regularly using Microsoft Entra access reviews.

1
Daily Entra.News

Get daily email updates

Get a concise summary of the latest Microsoft Entra updates delivered straight to your inbox.

Loading the secure signup form…