Kerberos
UpdatedCloud-only user accounts managed solely in Microsoft Entra ID are supported for Kerberos authentication by workloads like Azure Files, Azure Virtual Desktop and Windows authentication access to Azure SQL Managed Instance.
Daily.Entra.NewsAll six recorded changes were updates to Microsoft Learn documentation, with no new or retired items and no Message Center announcements. The most consequential update states that cloud-only Microsoft Entra ID accounts are supported for Kerberos authentication with workloads such as Azure Files, Azure Virtual Desktop, and Windows authentication access to Azure SQL Managed Instance. The other notable entries clarify delegated-role boundaries and an External ID capability table; the supplied evidence does not establish any new launch, preview, general availability milestone, or changed tenant behavior.
The updated Kerberos page states that accounts managed solely in Microsoft Entra ID are supported for Kerberos authentication by workloads including Azure Files, Azure Virtual Desktop, and Windows authentication access to Azure SQL Managed Instance. Because this is recorded as a documentation update, it should be treated as a support clarification rather than evidence of a new feature launch or tenant-wide behavior change.
The roles documentation lists User Administrator as able to manage users and groups, including resetting passwords for limited administrators, but only within the assigned administrative unit. It also states that User Administrator cannot currently manage users’ profile photographs. The evidence supports updating delegated-administration expectations, not concluding that the underlying permissions changed on this date.
The customer-features table was updated with an OpenID Connect row marked “Yes” in both displayed support columns. The excerpt does not define those columns or provide rollout details, so this is best treated as a reference-table clarification rather than a new protocol availability announcement.
This period briefing was generated by AI from the tracked Microsoft Learn and Message Center changes.
Cloud-only user accounts managed solely in Microsoft Entra ID are supported for Kerberos authentication by workloads like Azure Files, Azure Virtual Desktop and Windows authentication access to Azure SQL Managed Instance.
| [User Administrator](permissions-reference.md#user-administrator) | Can manage all aspects of users and groups, including resetting passwords for limited admins within the assigned administrative unit only. Cannot currently manage users' profile photographs. |
author: OwenRichards1
Microsoft Entra External ID allows you to collaborate with or publish apps to people outside your organization. Compare solutions for External ID, including Microsoft Entra B2B collaboration, Microsoft Entra B2B collaboration, and Azure AD B2C.
|[OpenID Connect](../../identity-platform/v2-protocols-oidc.md)| Yes| Yes|