← Previous day

Next day →
Day in brief

Global Secure Access documents AI-agent discovery in preview; Entra updates reinforce ROPC migration and identity guidance

17 June 2026 was primarily a documentation-maintenance day: 30 items were updated and one new item appeared, with no removals or Message Center entries. The substantive exceptions are a new Global Secure Access preview description, explicit security guidance for deprecated ROPC, and concrete clarifications for Agent ID’s identity model and dynamic-group limits. The supplied evidence does not establish a general-availability launch, retirement, or broad tenant behavior change.

  • A new Microsoft Learn entry describes AI agent discovery in Global Secure Access (preview), providing network-level visibility into managed and shadow AI agents reaching the internet from the environment. It is explicitly preview documentation, not evidence of general availability or a required deployment.

  • An updated Entra ID article explains how the username-and-password (ROPC) flow works in desktop apps, why it is deprecated, and how to migrate to more secure authentication flows. This is security guidance, not evidence that ROPC was retired on this date or that tenant behavior changed; affected applications should be identified for migration planning.

  • An updated Agent ID platform overview describes an OAuth 2.0- and OpenID Connect-compliant authentication service that issues tokens for resource and API access, supporting application-only and delegated scenarios. It also defines the agent identity blueprint, agent identity, and agent’s user account as core constructs. This clarifies fundamentals rather than announcing a new availability milestone or tenant setting.

  • The updated member-of dynamic-group guidance states that each dynamic group can have up to 50 member groups. The supplied record does not say whether this is a new service limit or a clarification of an existing rule, so administrators using member-of rules should verify designs against the stated cap without assuming a behavior change.

This period briefing was generated by AI from the tracked Microsoft Learn and Message Center changes.

32 updates

6

Java

Updated

author: Dickson-Mwendia

.NET

Updated

author: Dickson-Mwendia

Ai Reader

Updated

- Read AI-related enterprise services, extensibility, and copilot agents

3
1
1
1
1

What If Tool

Updated

**Has filter** indicates whether the policy has app filters that use custom security attributes.

6

What Is Agent Id Platform

Updated

- **Authentication service**: An OAuth 2.0 and OpenID Connect (OIDC) standard-compliant authentication service that enables secure, standards-based authentication for agents. This service issues tokens that agents use to authenticate to resources and APIs, supporting both application-only and delegated access scenarios. There are three objects that form the core identity constructs in the platform: agent identity blueprint, agent identity, and agent's user account.

To guide users on how to call APIs using agent identities in .NET.

Updated

To call an API from an agent, you need to obtain an access token that the agent can use to authenticate itself to the API. We recommend using the *Microsoft.Identity.Web* SDK for .NET to call your web APIs. This SDK simplifies the process of acquiring and validating tokens. For other languages, use the [Microsoft Entra ID Auth SDK (sidecar)](/entra/msidweb/agent-id-sdk/overview).

4

Integrate N8n Agent

Updated

Deploy n8n on Azure Container Apps and secure AI agent workflows with Microsoft Entra Agent ID and Microsoft Graph MCP Server for Enterprise.

2

Key Concepts

Updated

Traditional service principals were designed for static, deterministic workloads. Microsoft Entra Agent ID exists because service principals lack the governance infrastructure AI agents need. There's no enforced sponsorship, no agent-aware audit entries, and no blueprint-managed lifecycle. For more information, see [Agent identities, service principals, and applications](agent-service-principals.md).

1
1

Configure Third Party Agents

Updated

- [Configure Entra ID Auth SDK (sidecar) for agent identities](microsoft-entra-sdk-for-agent-identities.md)

1
1

Whats New Agent Id

Updated

- [AI-guided setup](agent-id-ai-guided-setup.md) (New) - Automate onboarding with an AI coding agent that walks you through blueprint creation, credential configuration, and agent identity provisioning.

2
1
Daily Entra.News

Get daily email updates

Get a concise summary of the latest Microsoft Entra updates delivered straight to your inbox.

Loading the secure signup form…