← Previous day

Next day →
Day in brief

28 April: Global Secure Access AI Gateway protection guidance updated; Entra password and guest-governance documentation clarified

This was a documentation-heavy day rather than a product-release day. All 41 supplied entries were Microsoft Learn updates; none was marked new or removed, and there were no Message Center items. Most changes were partner-specific Entra ID provisioning tutorials involving procedural steps such as sign-in, API-key setup, prerequisites, or screenshots. The meaningful exceptions covered Global Secure Access AI Gateway prompt-injection protection and automation, the Entra password-policy treatment of synced users, custom security attributes, and ID Governance licensing for guest Access Reviews. The supplied evidence does not establish a preview, general-availability announcement, retirement, or confirmed tenant-wide behavior change.

  • The Global Secure Access article was updated to describe protecting enterprise generative AI apps with Microsoft’s AI Gateway prompt injection protection. The item is marked Updated and supplies no evidence that the capability is new, in preview, generally available, retired, or changing tenant behavior. Administrators with this protection in scope should compare their implementation with the revised guidance.

  • The updated FAQ says that, depending on the environment, synced users might also be subject to Microsoft Entra ID restrictions such as the global banned password list. This is a security and behavior clarification in the documentation, not evidence of a newly rolled-out policy. It is relevant when assessing password controls for synchronized users.

  • The updated licensing material includes Access Reviews for inactive users, records billing when a guest user is included in the review, and points to the Microsoft Graph v1.0 identityGovernance/accessReviews/definitions API for inactive-guest reviews included in a group-resource policy. This is licensing documentation guidance, not a stated pricing or availability announcement. Administrators running these reviews should verify guest scope and the documented licensing treatment.

  • The PowerShell samples article was updated with examples covering connector registration, client installation, traffic-forwarding bypasses, break-glass scenarios, and TLS certificate creation. The record supports an operational documentation update, not a new feature or client-release announcement; no availability or behavior change is supplied. Global Secure Access operators maintaining these tasks can use the updated samples as their reference.

  • The user custom security attributes article was updated around four operations: assigning, updating, listing, and removing attributes. The record does not state that the API, permissions, or service availability changed, so the evidence supports a procedural documentation update only. Teams that manage these attributes should consult the current procedure when maintaining related automation.

This period briefing was generated by AI from the tracked Microsoft Learn and Message Center changes.

41 updates

25

Preciate Provisioning Tutorial

Updated

1. Sign in to [Preciate Admin Portal](https://preciate.com/web/admin/keys) and navigate to the **Integrations** page.

Dropboxforbusiness Provisioning Tutorial

Updated

The objective of this article is to demonstrate the steps to be performed in Dropbox for Business and Microsoft Entra ID to configure Microsoft Entra ID to automatically provision and de-provision users and/or groups to Dropbox for Business.

Druva Provisioning Tutorial

Updated

1. Sign in to your [Druva Admin Console](https://console.druva.com). Navigate to **Druva** > **inSync**.

Documo Provisioning Tutorial

Updated

1. Sign in to the [Microsoft Entra admin center](https://entra.microsoft.com) as at least a [Cloud Application Administrator](~/identity/role-based-access-control/permissions-reference.md#cloud-application-administrator).

Rfpio Provisioning Tutorial

Updated

1. Sign in to the [Microsoft Entra admin center](https://entra.microsoft.com) as at least a [Cloud Application Administrator](~/identity/role-based-access-control/permissions-reference.md#cloud-application-administrator).

Ringcentral Provisioning Tutorial

Updated

1. Sign in to the [Microsoft Entra admin center](https://entra.microsoft.com) as at least a [Cloud Application Administrator](~/identity/role-based-access-control/permissions-reference.md#cloud-application-administrator).

Moqups Provisioning Tutorial

Updated

1. In the **Tenant URL** field, enter your Moqups Tenant URL and Secret Token. Select **Test Connection** to ensure Microsoft Entra ID can connect to Moqups. If the connection fails, ensure your Moqups account has the required admin permissions and try again.

Recnice Provisioning Tutorial

Updated

1. Select the pencil to edit the properties. Enable notification emails and provide an email to receive quarantine emails. Enable accidental deletions prevention. Select **Apply** to save the changes.

Rhombus Systems Provisioning Tutorial

Updated

1. Select the pencil to edit the properties. Enable notification emails and provide an email to receive quarantine emails. Enable accidental deletions prevention. Select **Apply** to save the changes.

4

Fido2 Hardware Vendor

Updated

Passkeys (FIDO2) enable phishing-resistant authentication. They can replace weak credentials with strong phishing-resistant public/private-key credentials that can't be reused, replayed, or shared across services. They can be stored securely on a device or synced across trusted devices through an encrypted cloud service.

Customize Branding Themes Apps

Updated

Learn how to create branding themes and apply them to the sign-in experience for your application in Microsoft Entra ID.

2

Data Storage Eu

Updated

A Microsoft Entra documentation page was updated: Data Storage Eu.

2

Lucidchart Provisioning Tutorial

Updated

:::image type="content" source="./media/lucidchart-provisioning-tutorial/scim.png" alt-text="Screenshot of the Lucidchart admin console. Within a large S C I M button, the text S C I M is highlighted, and an enabled banner is visible." border="false":::

1
1
1
1

Microsoft Entra Id Governance Licensing For Guest Users

Updated

| Access Reviews | [Access Review – inactive users](../identity/users/clean-up-stale-guest-accounts.md#monitor-guest-accounts-at-scale-with-inactive-guest-insights) | Bill when guest user is included in review.<br><br>**API**<br> https://graph.microsoft.com/v1.0/identityGovernance/accessReviews/definitions where inactive guest reviews are included in the policy for a group resource. | Decision item summary. |

1
2

PowerShell samples for Global Secure Access

Updated

Use these PowerShell samples to automate common Global Secure Access tasks, including connector registration, client install, traffic forwarding bypasses, break glass scenarios, and TLS certificate creation.

1
Daily Entra.News

Get daily email updates

Get a concise summary of the latest Microsoft Entra updates delivered straight to your inbox.

Loading the secure signup form…