Users Revoke Access
UpdatedHow to revoke all access for a user in Microsoft Entra ID
Daily.Entra.NewsThe period is documentation-heavy rather than a feature-launch or retirement day. The clearest operational notice says Microsoft Authenticator will move from warning to blocking Entra credentials on jailbroken or rooted iOS and Android devices, automatically for all users on those devices. Other notable updates clarify External ID billing, Internet Access lab sequencing, ID Protection risk-detection guidance, and Global Secure Access signaling. Three new Entra ID pages document Purview workload roles, but the supplied evidence does not establish a change to role availability or permissions.
The Message Center notice describes a warning phase followed by blocking on jailbroken or rooted iOS and Android devices. It says the behavior is automatic, applies to all users on those devices, and requires no admin action; administrators should notify users and update documentation.
The updated FAQ defines MAU as unique users with authentication activity during a calendar month. It also distinguishes the core offer from premium add-ons and states that the core offering is free for the first 50,000 MAU. This is a pricing-documentation clarification, not evidence of a changed price or tenant feature.
The updated tutorial says the exercises should be followed in order. The baseline web-filtering lab creates a security profile and assigns it to a Microsoft Entra Conditional Access policy; later labs should use that existing profile and policy rather than creating duplicates.
The updated Source IP Restoration page states that the capability improves the accuracy of risk detection in Microsoft Entra ID Protection. The supplied summary does not identify a new setting, rollout status, or required administrator change, so this is best treated as guidance rather than a confirmed service launch.
The updated page links administrators to instructions for enabling Global Secure Access signaling for Microsoft Entra ID and Microsoft Graph. The record supports a documentation cross-reference, not a claim that signaling is newly available or automatically enabled.
This period briefing was generated by AI from the tracked Microsoft Learn and Message Center changes.
How to revoke all access for a user in Microsoft Entra ID
Purview Workload Content Writer
Purview Workload Content Administrator
Purview Workload Content Reader
Describes the Microsoft Entra built-in roles and permissions.
Instructions about how to add an existing Azure subscription to your Microsoft Entra tenant.
Instructions about how to find Microsoft Entra ID and how to create a new tenant for your organization.
ID Protection analyzes signals about user accounts and calculates a risk score based on the probability that the user is compromised. If a user has risky user sign-in behavior, or their credentials were leaked, ID Protection uses these signals to calculate the user risk level. Administrators can configure risk-based Conditional Access policies to enforce access controls based on user risk, including requirements such as:
- It improves the accuracy of risk detection in [Microsoft Entra ID Protection risk detections](/entra/id-protection/concept-identity-protection-risks).
Microsoft Entra External ID pricing is based on monthly active users (MAU), which is the count of unique users with authentication activity within a calendar month. External ID consists of a core offer and premium add-ons. The Microsoft Entra External ID core offering is free for the first 50,000 MAU. For the latest information about usage billing and pricing, see [Billing model for Microsoft Entra External ID](../external-identities-pricing.md).
Learn about the pricing and billing structure for Microsoft Entra External ID, along with steps for linking an external tenant to an Azure subscription.
This series of exercises covers the fundamentals of Internet Access. The exercises assume that you follow them in order. If you skip around, you might miss a step. For example, in the baseline web-filtering tutorial, you create a security profile and assign it to a Microsoft Entra Conditional Access policy. Subsequent labs instruct you to assign the new policy to this existing security profile rather than creating a new security profile and Conditional Access policy each time.
- [Enable Global Secure Access signaling for Microsoft Entra ID and Microsoft Graph](how-to-source-ip-restoration.md#enable-global-secure-access-signaling-for-microsoft-entra-id-and-microsoft-graph)