← Previous day

Next day →
Day in brief

Application Proxy and provisioning guidance were the clearest changes on 6 February; External ID redemption was clarified, with no new Entra release evidenced.

This was a documentation-heavy period: 135 items were updated, 3 were removed, and there were no new items or Message Center notices. The most meaningful cluster was Microsoft Entra application proxy guidance, including PingAccess header-based authentication, header-based SSO, and Defender for Cloud Apps Conditional Access App Control, alongside API-driven inbound provisioning and its safeguards. The supplied records support documentation clarification and a named page removal—not a feature launch, preview or GA announcement, service retirement, or confirmed behavior change.

  • The updated Entra ID Microsoft Learn page covers header-based authentication with PingAccess and Microsoft Entra application proxy. It is an updated integration guide, not a stated introduction, preview, GA change, or authentication-behavior change. Administrators using this pattern should check the current guidance, but no specific tenant configuration change is identified.

  • The updated concepts page provides an overview of API-driven inbound provisioning. Related updates in the period cover implementations with Azure Logic Apps and PowerShell, provisioning-app configuration, API access, Microsoft Graph automation, and custom-attribute synchronization. This is a documentation refresh; the evidence does not establish a new API, changed availability, or migration requirement.

  • The updated provisioning-service page explains how to enable accidental-deletion prevention for applications and cross-tenant synchronization. It describes a safeguard administrators can configure; it does not say protection became the default or was automatically deployed. Relevant provisioning owners can verify the control, but the period supplies no mandatory change.

  • The updated Redemption Experience page states that a guest remains PendingAcceptance until accepting the invitation and agreeing to the privacy policy and terms of use; the status then becomes Accepted and the consent pages stop appearing. This is a clarification of documented behavior, not evidence of a behavior change. Because the status is viewable in PowerShell, it can help administrators diagnose incomplete redemption.

  • The representative removed item is the Entra ID page titled Federation Overview. The evidence identifies a documentation-page removal only; it does not support calling the federation capability retired or require changes for federated tenants. Treat this as a documentation-lifecycle event.

This period briefing was generated by AI from the tracked Microsoft Learn and Message Center changes.

138 updates

48
39

Application Proxy Cookie Settings

Updated

Microsoft Entra ID uses access and session cookies to access on-premises applications through application proxy. This article explains how to use and configure the cookie settings.

Publish native client apps

Updated

Covers how to enable native client apps to communicate with the Microsoft Entra private network connector to provide secure remote access to your on-premises apps.

14

On Premises Ecma Troubleshoot

Updated

Describes how to troubleshoot various issues you might encounter when you install and use the ECMA Connector Host.

9

Sspr

Removed

A Microsoft Entra documentation page was updated: Sspr.

7

Federation Overview

Removed

A Microsoft Entra documentation page was updated: Federation Overview.

Sso Overview

Removed

A Microsoft Entra documentation page was updated: Sso Overview.

7
3
2
1
1

Use application proxy to integrate on-premises apps with Defender for Cloud Apps

Updated

Use Microsoft Defender for Cloud Apps with on-premises applications in Microsoft Entra ID. Use the Defender for Cloud Apps Conditional Access App Control to monitor and control sessions in real-time based on Conditional Access policies. You apply these policies to on-premises applications that use application proxy in Microsoft Entra ID.

1
1

Plan cloud HR application to Microsoft Entra user provisioning

Updated

This article describes the deployment process of integrating cloud HR systems, such as Workday and SuccessFactors, with Microsoft Entra ID. Integrating Microsoft Entra ID with your cloud HR system results in a complete identity lifecycle management system.

1
1

Entitlement Management Delegate

Updated

| Catalog owner | `ae79f266-94d4-4dab-b730-feca7e132178` | Edit and manage access packages and other resources in a catalog. Typically an IT administrator or resource owners, or an identity who the catalog owner chooses. |

2

Redemption Experience

Updated

When you add a guest user to your directory, the guest user account has a consent status (viewable in PowerShell) that's initially set to **PendingAcceptance**. This setting remains until the guest accepts your invitation and agrees to your privacy policy and terms of use. After that, the consent status changes to **Accepted**, and the consent pages are no longer presented to the guest.

B2b Quickstart Add Guest Users Portal

Updated

If you don’t have an Azure subscription, create a [free account](https://azure.microsoft.com/pricing/purchase-options/azure-account?cid=msft_learn) before you begin.

1
Daily Entra.News

Get daily email updates

Get a concise summary of the latest Microsoft Entra updates delivered straight to your inbox.

Loading the secure signup form…