Reference guide for the CSS template selectors for customizing Microsoft Entra sign-in page company branding.
TLS inspection guidance received the day’s most consequential update; remaining changes were documentation clarifications
On 17 December 2025, all four recorded changes were updates to existing Microsoft Learn documentation—there were no new, retired, preview, or generally available capabilities identified. The most substantive change concerns certificate configuration for Microsoft Entra Internet Access TLS inspection. Entra ID updates covered custom sign-in branding and a .NET protected-API tutorial, with no evidence of a product behavior change.
- TLS inspection documentation clarifies the intermediate-CA configuration model
Internet Access · Security
The Microsoft Entra Internet Access guidance explains that TLS inspection uses a two-tier intermediate-certificate model to issue dynamically generated leaf certificates for traffic decryption. It now documents configuring the CA that acts as the Global Secure Access intermediate CA, including signing and uploading the certificate. This is configuration and security guidance, not evidence of a new launch or changed availability status.
- Entra ID branding guidance documents custom CSS and its selector reference
Entra ID · Branding
The updated branding material states that administrators can upload a custom CSS file to replace the Microsoft default sign-in-page style, while the companion CSS reference describes the template selectors used to customize company branding. Together, these updates clarify how to use an existing branding capability; they do not establish that custom CSS was newly introduced or moved to a different release stage.
This period briefing was generated by AI from the tracked Microsoft Learn and Message Center changes.
4 updates
Microsoft Entra ID
3 updatesCustomize Branding
Updated- **Custom CSS:** Upload a custom CSS file to replace the Microsoft default style of the page.
HttpClient client = new HttpClient();
Microsoft Entra Internet Access
1 updateTransport Layer Security (TLS) inspection in Microsoft Entra Internet Access uses a two-tier Intermediate certificate model to issue dynamically generated leaf certificates for decrypting traffic. This article explains how to configure the Certificate Authority (CA) that serves as the Global Secure Access intermediate CA, including signing and uploading the certificate.
