← Previous day

Next day →
Day in brief

Windows passkeys are announced for public preview; Baseline Security Mode CA-draft issue is being fixed

The most consequential 19 March items are two Entra ID Message Center notices: a phishing-resistant, passwordless Windows Hello passkey public preview scheduled for late March through May 2026, and a service correction for unintended disabled Conditional Access drafts. The remaining material is chiefly updated operational and security guidance for Microsoft Entra Private Access and Global Secure Access/Internet Access. Nothing supplied announces a general-availability release or retirement.

  • The Message Center notice describes passwordless, phishing-resistant sign-in through Windows Hello on managed and unmanaged devices. The preview is scheduled for late March through May 2026 and requires organizational opt-in and passkey-policy configuration. This is a preview, not a general-availability announcement.

  • Microsoft reports that, between November 2025 and February 2026, Baseline Security Mode automatically created two disabled draft Entra Conditional Access policies in some tenants. The drafts were unintended; a fix will remove them and prevent automatic creation. Microsoft says this is not a security issue and requires no action.

  • An updated Private Access procedure explains how to enforce Conditional Access and multifactor authentication for Kerberos authentication to Active Directory Domain Controllers through Private Access. This is deployment and security guidance; the supplied evidence does not identify a new capability or availability change.

  • The updated guidance describes controlling Internet Access by website category, URL, and FQDN, with granular, user-aware filtering policies built from security profiles and Conditional Access. It is a documentation clarification rather than a stated preview or GA release.

  • Updated guidance documents assigning users and groups to traffic-forwarding profiles, allowing administrators to limit scope during testing or deployment and roll out policies gradually. No separate feature-release status is stated.

This period briefing was generated by AI from the tracked Microsoft Learn and Message Center changes.

43 updates

10

Looop Provisioning Tutorial

Updated

![Screenshot of the Manage options with the Provisioning option called out.](common/provisioning.png)

2

Sharing accounts and credentials

Updated

Learn how to configure shared accounts in Microsoft Entra ID using password-based single sign-on so multiple users can securely access apps without sharing passwords directly.

Github Tutorial

Updated

* You can use Microsoft My Apps. When you select the GitHub tile in the My Apps, this option redirects to GitHub Sign-on URL. For more information about the My Apps, see [Introduction to the My Apps](https://support.microsoft.com/account-billing/sign-in-and-start-apps-from-the-my-apps-portal-2f3b1bae-0e5a-4a86-a33e-876fbd2a4510).

2
1
1
1
3
1
1
1

How to use enriched Microsoft 365 logs

Updated

View performance, experience, and availability insights for Microsoft 365 apps routed through Microsoft Entra Internet Access. Integrate enriched log data with Log Analytics or Microsoft Sentinel for network diagnostics and security analysis.

4
2
2
1
5
3
2
1
Daily Entra.News

Get daily email updates

Get a concise summary of the latest Microsoft Entra updates delivered straight to your inbox.

Loading the secure signup form…