Microsoft Entra will make passkeys the default authentication method starting September 1, 2026, retiring Microsoft-provided SMS and voice authentication by February 1, 2027. Customers must configure telecom providers for SMS/voice via the Microsoft Security Store or face disruptions. Passkeys offer stronger, phishing-resistant security at no extra cost.
New Entra ID documentation covers automatic SSO-permission acceptance; ID Governance guidance clarifies inactive-user workflows
The most consequential change is a new Entra ID page describing a supported registry setting that lets IT administrators automatically accept SSO permissions on managed Windows devices. Three ID Governance updates provide operational guidance for inactive-user workflows: setting the inactivity threshold, using the Pre-Offboard inactive users template, and testing execution with the What-if tool. The supplied evidence does not establish GA, preview status, retirement, or a broader tenant behavior change. The remaining Entra ID update only adds SLA performance data.
- New admin control for SSO permission prompts
Entra ID · General
A new Entra ID document says IT administrators can automatically accept SSO permissions on managed Windows devices through a supported registry setting. This documents an admin-controlled behavior, but the supplied evidence does not classify it as generally available or preview, nor does it provide additional rollout requirements.
- Inactive-user workflow threshold instructions clarified
ID Governance · Governance
The updated Lifecycle Workflows guidance tells administrators to enter the desired number of days under Days of inactivity before proceeding. This is a configuration-documentation clarification; the evidence does not show that the trigger semantics changed.
- What-if guidance supports no-impact workflow testing
ID Governance · Governance
The updated What-if documentation explains that administrators can simulate Lifecycle Workflow execution and preview results without affecting actual users. It is operational guidance for validating workflows, not evidence of a newly launched capability or changed availability.
- Pre-offboarding template guidance for inactive users
ID Governance · Governance
The Lifecycle Workflow Templates update identifies the Pre-Offboard inactive users template and explains that it is intended for tasks that must be completed before offboarding inactive users. This complements the inactivity-threshold and simulation guidance, while the evidence does not indicate a change to the template itself.
This period briefing was generated by AI from the tracked Microsoft Learn and Message Center changes.
6 updates
Microsoft Entra ID
3 updatesIT administrators can now automatically accept SSO permissions on managed Windows devices using a supported registry setting.
Sla Performance
Updated| March | 99.568% | 99.998% | 99.999% | 99.999% | 99.996% | 99.999% |
Microsoft Entra ID Governance
3 updatesLearn how to use the What-if tool in Lifecycle Workflows to simulate workflow execution and preview results without impacting actual users.
1. Under the **Days of inactivity**, enter the number of days you want the trigger to run for if exceeded, and then select **Next**.
Lifecycle Workflow Templates
UpdatedThe **Pre-Offboard inactive users** template is designed to configure tasks that must be completed before offboarding inactive users.
