← Previous day

Next day →
Day in brief

External ID on-behalf-of ordering targets Dynamics 365 Commerce general availability on 11 September 2026

The clearest product announcement is a Microsoft 365 Message Center notice that on-behalf-of ordering for Dynamics 365 Commerce with Microsoft Entra External ID is scheduled for general availability on 11 September 2026. A new Microsoft Entra Internet Access article documents the V2 web-filtering model and its coexistence with V1. Most other updates are documentation clarifications or connector setup changes, including sharper Staged Rollout troubleshooting and more explicit application-claim configuration.

  • Microsoft announces that on-behalf-of ordering for Microsoft Entra External ID in Dynamics 365 Commerce will reach general availability on 11 September 2026. This is a product availability announcement; the supplied notice does not provide further configuration or migration guidance.

  • The new Global Secure Access V2 article describes one policy per security profile, multiple rules with individual actions, a default action, and URL-based FQDN destinations. Existing V1 web-content-filtering policies continue to function until migration. The new article documents the model but does not by itself establish a separate availability milestone.

  • The Microsoft Entra Connect article replaces general transition language with scenarios involving extra interactive sign-ins when users are added to or removed from Staged Rollout, including certain Microsoft Entra ID Protection remediation events such as SSPR and risk remediation. The supported administrator outcome is better troubleshooting guidance, not evidence of a newly changed sign-in behavior.

  • The updated article explains that SAML applications must configure the `include_granular_amr` setting through the application manifest or Microsoft Graph because the admin center has no corresponding UI. It also documents adding the `amr` optional claim for OIDC token types and clarifies that `include_granular_amr` applies only to SAML.

  • The Puzzel integration guide now covers OAuth2 Client Credentials Grant authentication, including creating an OIDC client, setting 3600-second token lifetimes, generating a shared secret, and entering the client ID, secret, and token endpoint. This is connector-specific setup guidance rather than a new general provisioning capability.

This period briefing was generated by AI from the tracked Microsoft Learn and Message Center changes.

10 updates

5

Howto Analyze Provisioning Logs

Doc update

The article’s Microsoft MCP Server for Enterprise overview and setup links changed from Microsoft Learn paths to the EnterpriseMCP GitHub repository. The article continues to describe the service as preview, global-service-only, and read-only.

Zscaler Zidentity Provisioning Tutorial

Doc update

The tutorial now documents entering a Tenant URL, Client identifier, Client secret, and OAuth token endpoint, and includes a list of SCIM user attributes and data types.

Account Discovery

Doc update

The account discovery documentation now links to the Microsoft MCP Server for Enterprise GitHub repository instead of Microsoft Learn pages for investigating reports and provisioning an MCP client.

1

Microsoft Entra Connect: Cloud authentication via Staged Rollout

Doc update

The documentation, dated August 11, 2026, replaces general transition text with scenarios describing additional interactive sign-ins when users are added to or removed from Staged Rollout. It also covers certain Microsoft Entra ID Protection remediation events, including SSPR and risk remediation.

1

Optional Claims

Doc update

The documentation now explains how to configure granular AMR values for SAML applications through the manifest or Microsoft Graph, since the admin center has no UI option for `include_granular_amr`. It also documents adding the `amr` claim to OIDC token types and clarifies that `include_granular_amr` applies only to SAML.

1

Connect Staged Rollout

Doc update

The heading changed from “Workaround for newly added Staged Rollout users” to “Workaround to avoid one additional federated sign-in.” No procedural content changed in the supplied diff.

1
1

Web filtering in Global Secure Access (V2)

Doc update

A new concept article documents the V2 web filtering model in Microsoft Entra Internet Access, including policies, rules, destination matching, and coexistence with V1 web content filtering.

Daily Entra.News

Get daily email updates

Get a concise summary of the latest Microsoft Entra updates delivered straight to your inbox.

Loading the secure signup form…