đź“‹ Microsoft Entra Documentation Changes

Daily summary for changes since January 22nd 2026, 7:42 PM PST

Report generated on January 23rd 2026, 7:42 PM PST

📊 Summary

12
Total Commits
0
New Files
2
Modified Files
0
Deleted Files
6
Contributors

📝 Modified Documentation Files

Modified by anksridhar on Jan 23, 2026 10:23 PM
đź“– View on learn.microsoft.com
+2 / -1 lines changed
Commit: Enhance explanation of Microsoft-managed policies
Changes:
Before
After
 
These Microsoft-managed policies allow administrators to make simple modifications like excluding users or turning them from report-only mode to on or off. Organizations can't rename or delete any Microsoft-managed policies. As administrators get more comfortable with Conditional Access policy, they might choose to duplicate the policy to create custom versions.
 
As threats evolve, Microsoft might update these policies to use new features, functionality, or improve their effectiveness
 
- [Block all high risk agents from accessing all resources](#block-all-high-risk-agents-from-accessing-all-resources-preview) (Preview)
- [Block legacy authentication](#block-legacy-authentication)
 
 
These Microsoft-managed policies allow administrators to make simple modifications like excluding users or turning them from report-only mode to on or off. Organizations can't rename or delete any Microsoft-managed policies. As administrators get more comfortable with Conditional Access policy, they might choose to duplicate the policy to create custom versions.
 
As threats evolve, Microsoft might update these policies to use new features, functionality, or improve their effectiveness. Microsoft‑managed Conditional Access policies automatically adapt to changes within a tenant to maintain consistent security posture without requiring administrator action. As Microsoft identifies new users, groups, or workloads that meet the eligibility criteria for an existing MMP policy, they are automatically included in the policy’s scope. These updates do not modify the policy’s settings, conditions, or grant controls, and any admin‑configured exclusions are always preserved to prevent accidental lockouts. This ensures that coverage stays current as the tenant evolves, while maintaining predictable behavior for administrators. Microsoft communicates these updates through standard notification channels to keep tenants informed.
 
 
- [Block all high risk agents from accessing all resources](#block-all-high-risk-agents-from-accessing-all-resources-preview) (Preview)
- [Block legacy authentication](#block-legacy-authentication)
Modified by elenac-blabla on Jan 23, 2026 10:10 AM
đź“– View on learn.microsoft.com
+1 / -1 lines changed
Commit: Fix link to User Properties in pricing documentation
Changes:
Before
After
 
- External users in Microsoft Entra [external tenants](tenant-configurations.md#external-tenants), which includes consumers and business guests (users without directory roles), and admins (users with directory roles). MAU billing applies to all users in an external tenant regardless of their **UserType** setting.
 
For more info about the difference between internal and external Guests, please check here: [User Properties](https://learn.microsoft.com/en-us/entra/external-id/user-properties).
 
Billing is based on monthly active users (MAU), which is the count of unique external users who authenticate to your tenants within a calendar month. To determine the total number of MAUs, we combine MAUs from all workforce and external tenants that are linked to a subscription.
 
 
- External users in Microsoft Entra [external tenants](tenant-configurations.md#external-tenants), which includes consumers and business guests (users without directory roles), and admins (users with directory roles). MAU billing applies to all users in an external tenant regardless of their **UserType** setting.
 
For more info about the difference between internal and external Guests, please check here: [User Properties](user-properties.md).
 
Billing is based on monthly active users (MAU), which is the count of unique external users who authenticate to your tenants within a calendar month. To determine the total number of MAUs, we combine MAUs from all workforce and external tenants that are linked to a subscription.