← Previous day

Next day →
Day in brief

Global Secure Access operational guidance dominates 14 March; system-preferred MFA precedence is clarified

This is a documentation refresh rather than a release event: all 39 supplied changes are marked Updated Microsoft Learn documentation, with no new or removed items and no Message Center notices. The bulk concerns Global Secure Access, including traffic-forwarding rollout, remote-network security, SSE coexistence, and troubleshooting. The clearest Entra ID-specific clarification covers dynamic system-preferred MFA ordering and Conditional Access precedence. Nothing supplied establishes a new feature, preview, general-availability milestone, retirement, or changed tenant behavior.

  • The updated article covers rolling out traffic-forwarding profiles to users and groups. Related same-day updates cover management of the Microsoft, Internet Access, and Private Access profiles, plus per-app and Quick Access paths to private resources. This is rollout documentation, not evidence of a newly introduced profile or availability change; teams deploying Global Secure Access should verify assignments against the current procedure.

  • The updated guidance covers applying web content filtering, threat intelligence, and cloud firewall to remote network traffic, with companion pages listing filtering categories and threat types. This is security guidance; the evidence does not say that policy semantics changed. Remote-network operators can use it to check their documented controls and scope.

  • The partner ecosystem material covers integrations and coexistence, while parallel updates include solution guides for Zscaler, Netskope, Palo Alto Networks, Cisco Secure Access, Cisco Umbrella, and Cisco VPNs. The evidence supports refreshed coexistence guidance, not a new integration, preview, or GA announcement. Organizations with another SSE should consult the relevant guide when planning a mixed deployment.

  • The update says the preferred authentication-method order is dynamic, changes as stronger methods emerge and the security landscape evolves, and is subordinate to Conditional Access requirements; users can cancel and choose another available method. This is an ordinary documentation clarification, not evidence of a new MFA method or tenant policy change. Update user and help-desk explanations if they describe a fixed order.

  • Global Secure Access · Troubleshooting
    A Global Secure Access DFS workaround is documented

    The updated troubleshooting article addresses a case where a Distributed File System does not operate correctly with Global Secure Access and includes a workaround. The stated impact is limited to deployments using DFS; the evidence does not indicate a general client or connector fix or a broader service change.

This period briefing was generated by AI from the tracked Microsoft Learn and Message Center changes.

39 updates

1
1

System Preferred Multifactor Authentication

Updated

When a user signs in, the authentication process checks which authentication methods are registered for the user. The user is prompted to sign-in with the most secure method according to the following order. The order of authentication methods is dynamic. It's updated as the security landscape changes, and as better authentication methods emerge. Users can always cancel and choose a different available sign in method if needed. If your organization has Conditional Access policies that require specific authentication methods, those policies will continue to take priority over the system preferred MFA order. Click the link for more information about each method.

1

What Is Cloud Sync

Updated

Cloud Sync solves common challenges organizations face with hybrid identity infrastructure by eliminating single points of failure, reducing on-premises management overhead, and enabling complex multi-forest scenarios that support organizational growth and change.

4
1

Netskope Coexistence

Updated

Learn how to configure and deploy Microsoft Entra and Netskope Security Service Edge (SSE) solutions together for optimized security and connectivity across private applications, Microsoft 365, and internet access.

1
16
7

Zscaler Coexistence

Updated

Learn how to configure Microsoft and Zscaler SSE for unified SASE solutions to enhance security and connectivity in your organization.

4

What is Global Secure Access?

Updated

Learn how Microsoft's Security Service Edge (SSE) solution, Global Secure Access, provides network access control and visibility to users and devices inside and outside a traditional office.

Partner Ecosystem Overview

Updated

Learn about the Microsoft Secure Access Service Edge (SASE) partner ecosystem. Learn about partner integrations and partner coexistence.

2
1
Daily Entra.News

Get daily email updates

Get a concise summary of the latest Microsoft Entra updates delivered straight to your inbox.

Loading the secure signup form…