Microsoft Entra will stop applying Conditional Access policies via Azure Resource Manager for Azure DevOps sign-ins starting September 2, 2025, fully enforced by September 18. Organizations must update policies to explicitly include Azure DevOps (App ID: 499b84ac-1321-427f-aa17-267ca6975798) to maintain secure access.
Domain Services TLS 1.2 guidance and Global Secure Access remote-network coverage are the day’s substantive updates
This was a documentation-only day: five Microsoft Learn entries were updated, with no new or removed entries and no Message Center items. The clearest administrator-relevant changes are explicit guidance for enabling TLS 1.2 Only Mode in Domain Services and clarified remote-network handling in Global Secure Access. The evidence does not establish a new feature launch, preview, general availability milestone, retirement, or service behavior change.
The TLS enforcement article now states that administrators can enable TLS 1.2 Only Mode using the Azure portal or PowerShell. This supports a concrete security and configuration review, but the supplied evidence does not say that the setting is newly available or generally available.
- Global Secure Access guidance clarifies remote-network coverage for guest devices
Global Secure Access · Fundamentals
The Remote Network Connectivity documentation explains that guest devices without the Global Secure Access client can still have their traffic routed through the Global Secure Access endpoint, with outgoing traffic from the remote network undergoing security evaluation by default. This is presented as capability guidance, not as a separately announced feature launch or availability milestone.
- ID Governance instructions clarify where to configure workflow execution scope
ID Governance · Governance
The workflow guidance directs administrators to the Execution User Scope tab on the Execution conditions page. The supplied summary supports a procedural UI clarification, but does not indicate a change to workflow behavior or availability.
This period briefing was generated by AI from the tracked Microsoft Learn and Message Center changes.
6 updates
Microsoft Entra ID
4 updatesThis article shows the new and updated documentation for the Microsoft Entra application management.
You can use the Azure portal or PowerShell to enable **TLS 1.2 Only Mode**.
Whats New Docs
UpdatedWelcome to what's new in the Microsoft identity platform documentation. This article lists new articles that were added or had significant updates in the last three months.
Microsoft Entra ID Governance
1 update1. On the Execution conditions page, select the **Execution User Scope** tab.
Remote Network Connectivity
UpdatedGuest devices on your network might not have the client installed. To ensure that those devices adhere to your network security policies, you need their traffic routed through the Global Secure Access endpoint. Remote network connectivity solves this problem. No clients need to be installed on guest devices. All outgoing traffic from the remote network is going through security evaluation by default.
