← Previous day

Next day →
Day in brief

External ID gets explicit OIDC Discovery URL rules; Agent ID adds an error-code reference

The 3 December record is mostly documentation maintenance—15 updates, one new item, and no removals—but includes four administrator-relevant changes. The updated External ID guidance specifies an exact OIDC Discovery URL format, while Agent ID receives a new troubleshooting reference. ID Governance updates clarify the Catalog Access Reviews preview and My Access approval delegation. No supplied item announces general availability, a retirement, or a broader product rollout.

  • The updated Authentication External Method Provider guidance says the external identity provider’s OIDC Discovery URL must use `https`, end exactly in `/.well-known/openid-configuration`, and have no additional path segments, query strings, or fragments. The full URL must be supplied when the EAM is created. This is a standards and configuration clarification, not evidence of a new capability.

  • Agent ID · Microsoft identity platform
    Agent ID adds a new error-code reference

    A new Microsoft identity platform article covers error codes for Agent ID, Agent Blueprint, and Agent Identity. It is a troubleshooting documentation addition; the record does not indicate a new runtime feature or availability-stage change.

  • The updated ID Governance page describes managers reviewing users’ access to groups, applications, and custom disconnected resources together through a multi-stage process. Related catalog documentation updated the same day connects catalogs with preview access reviews and provides catalog setup guidance. This clarifies use of a preview capability rather than announcing general availability.

  • The updated guidance describes allowing an approver to assign another individual to respond to access package approval requests on the approver’s behalf, including during leave or travel. This clarifies an approval workflow; it does not establish that the capability was newly released or change approval policy.

This period briefing was generated by AI from the tracked Microsoft Learn and Message Center changes.

17 updates

1
1

Cloud Sync Version History

Updated

Get notified about when to revisit this page for updates by copying and pasting this URL: `https://aka.ms/cloudsyncrss` into your ![RSS feed reader icon](media/cloud-sync-version-history/feed-icon-16-x-16.png) feed reader.

1

Whats New Docs

Updated

Welcome to what's new in the Microsoft identity platform documentation. This article lists new articles that were added or had significant updates in the last three months.

1
2
1
7

Catalog Access Reviews (preview)

Updated

Catalog access reviews in Microsoft Entra ID Governance enables organizations to simplify how managers can review users access to multiple resource types, such as groups, applications and custom disconnected resource at once. This helps ensure only the right people retain access, while enabling managers and resource owners to review access efficiently through a multi-stage process.

Custom Data Resource Access Reviews

Updated

If you do not yet have a catalog, then create a new catalog. If you have a catalog already, then continue at the [next section](#add-a-custom-data-provided-resource-to-a-catalog).

Create Access Review

Updated

- To review access package assignments, see [configure an access review in entitlement management](entitlement-management-access-reviews-create.md).

Delegate Approvals My Access

Updated

Approval delegation in My Access allows approvers to assign another individual to respond to access package approval requests on their behalf. This feature helps maintain productivity when approvers are unavailable due to leave, travel, or other commitments.

Manage User Access With Access Reviews

Updated

1. Select a group in Microsoft Entra ID that has one or more members. Or select an application connected to Microsoft Entra ID that has one or more users assigned to it.

1

Access Reviews Overview

Updated

| Microsoft Entra role | Specified reviewers</br>Self-review | [PIM](../id-governance/privileged-identity-management/pim-create-roles-and-resource-roles-review.md?toc=/azure/active-directory/governance/toc.json) | Microsoft Entra admin center |

2

Authentication External Method Provider

Updated

An external identity provider needs to provide an [OIDC Discovery endpoint](http://openid.net/specs/openid-connect-discovery-1_0.html#ProviderConfig). This endpoint is used to get more configuration data. The Discovery URL **MUST** use the `https` scheme and **MUST** end with `/.well-known/openid-configuration`. No additional path segments, query strings, or fragments are permitted after this segment. The full Discovery URL must be included in the Discovery URL configured when the EAM is created.

Daily Entra.News

Get daily email updates

Get a concise summary of the latest Microsoft Entra updates delivered straight to your inbox.

Loading the secure signup form…