Map each Microsoft identity platform OpenID Connect (OIDC) extensibility surface to the configuration article and the Microsoft Graph API resource that programs it.
1 July 2026: Global Secure Access publishes Microsoft-traffic guidance and calls out HTTP-method filtering in preview; ID Protection documents unified risk
This is a Microsoft Learn-led update rather than a release bulletin, with no Message Center item. The meaningful changes are a new set of Global Secure Access tutorials for Microsoft traffic controls, an updated Web Content Filtering page that explicitly labels HTTP method request filtering as preview, new ID Protection guidance for correlated risk, and Entra ID documentation for OIDC extensibility and SCIM API setup. The supplied evidence does not establish general availability, retirement, or an automatic tenant behavior change; the remaining edits are mainly standards, integration, logging, Security Copilot, and troubleshooting documentation maintenance.
- Global Secure Access adds a Microsoft traffic labs tutorial and related configuration guidance
Global Secure Access · General
The new tutorial brings source IP restoration, compliant network checks, and universal tenant restrictions into a Microsoft traffic lab path. Related new tutorials add the steps for enabling the Microsoft traffic profile, assigning users, installing the client, verifying forwarding, validating restored source IP in Entra sign-in logs, and configuring a Conditional Access policy that requires a compliant network. This is a new how-to set, not evidence of general availability or automatic changes to existing policies
- Global Secure Access Web Content Filtering documents HTTP-method request filtering as preview
Global Secure Access · General
The updated guidance identifies HTTP method request filtering as preview and describes blocking or allowing methods including GET, POST, PUT, PATCH, and DELETE. The evidence supports a documented preview capability, not general availability or a change to existing content policies; administrators should account for that status when assessing the option
- Microsoft Entra ID Protection documents unified risk signals and compounded user risk
ID Protection · Fundamentals
A new fundamentals article explains that identity-risk signals from Microsoft Entra ID Protection and Microsoft Defender are correlated to calculate compounded user risk. Related dashboard guidance describes correlation across other Microsoft security products within the same time window, and the Risky User Report update documents an option to aggregate risk signals by risky sign-ins. This clarifies risk interpretation and reporting; it does not announce a new tenant setting or scoring rollout
- Entra ID adds an OIDC extensibility-to-Graph reference
Entra ID · Standards
A new Microsoft identity platform reference maps each OpenID Connect extensibility surface to its configuration article and the Microsoft Graph API resource that programs it. Alongside updates to the OAuth and OIDC protocol pages, this is a navigation and implementation clarification for application and identity-platform owners, not evidence of a new protocol capability or availability change
- Entra ID SCIM API documentation spells out call prerequisites
Entra ID · Standards
The updated SCIM API reference states that callers must enable the SCIM Provisioning API, configure billing, set up credentials, and obtain an access token before calling the documented endpoints. A related enablement-page update points readers to API-call pricing. This is a documentation clarification with planning implications for SCIM API adopters; it does not state that existing integrations changed
This period briefing was generated by AI from the tracked Microsoft Learn and Message Center changes.
20 updates
Microsoft Entra ID
8 updatesSign in Microsoft Entra users by using the Microsoft identity platform's implementation of the OpenID Connect extension to OAuth 2.0.
Enable Scim Api
Updated- **Cost:** See [API call pricing](https://aka.ms/EntraSCIMAPIPricing).
Entra Id Scim Api Reference
UpdatedBefore you can call the SCIM API endpoints described in this article, you must enable the SCIM Provisioning API feature, configure billing, set up credentials, and obtain an access token. For step-by-step instructions, see [Enable the SCIM Provisioning API in Microsoft Entra ID](enable-scim-api.md).
Learn about OAuth 2.0 and OpenID Connect in Microsoft identity platform. Explore authentication flows, endpoints, and secure user authentication.
How to choose the right method for accessing and integrating the activity logs in Microsoft Entra ID.
Learn how to configure Microsoft Entra ID to automatically provision and deprovision user accounts to Harness.
Troubleshooting
Updated- The object or property isn't supported for preview in the current release.
Microsoft Entra ID Protection
3 updatesRisky User Report
UpdatedTo see risk sign-in events together with risky user events, select the **Aggregate risk signals by risky sign-ins** checkbox.
Learn how unified risk signals correlate identity risk across Microsoft Entra ID Protection and Microsoft Defender to calculate compounded user risk.
Id Protection Dashboard
UpdatedMicrosoft Entra ID Protection provides unified risk signals that aggregate correlated risk signals from Microsoft Entra ID Protection, Microsoft Defender, and other Microsoft security products. Instead of evaluating alerts in isolation, this capability correlates identity-related signals across products and evaluates them together within the same time window to calculate a compounded user risk score.
Microsoft Entra Global Secure Access
8 updates- **HTTP method request filtering (preview)**: Block or allow specific HTTP methods, such as GET, POST, PUT, PATCH, and DELETE.
Learn how to enable the Microsoft traffic profile in Global Secure Access, assign users, install the client, and verify traffic forwarding.
Learn about Microsoft traffic labs for Global Secure Access, including source IP restoration, compliant network checks, and universal tenant restrictions.
Learn how to configure universal tenant restrictions with Global Secure Access for Microsoft traffic.
Learn how to enable source IP restoration for Microsoft traffic in Global Secure Access and validate Microsoft Entra sign-in logs.
Learn how to configure a Conditional Access policy that requires a compliant network with Global Secure Access.
- [Global Secure Access traffic forwarding profiles](concept-traffic-forwarding.md)
Discover how to configure network content filtering with Global Secure Access to enforce data protection policies for files and text content in real time.
Security Copilot + Entra
1 updateLearn how to review and apply suggestions provided by the Security Copilot for Microsoft Entra optimization agent.
