The article updates navigation and steps for email notifications, server or service deletion, and role-based access control, with new screenshots.
Keep up with Microsoft Entra
Daily AI-generated highlights from Microsoft Learn and Message Center. Browse the archive from 15 April 2025 → About this project →
Microsoft sets February 2027 deadline for SMS first-factor sign-in retirement
Microsoft’s major update sets a worldwide February 1, 2027 start date for retiring SMS first-factor sign-in in Microsoft Entra ID workforce tenants. The period also adds preview-oriented ID Governance guidance for access drift and records the coming deprecation path for the AD FS Risky IP report. Most remaining changes refresh Microsoft Entra Connect Health navigation, monitoring, and troubleshooting procedures.
- SMS first-factor sign-in retirement begins February 1, 2027
Entra ID · Conditional Access
A Microsoft 365 Message Center major update says SMS first-factor sign-in will be retired for Microsoft Entra ID workforce tenants worldwide starting February 1, 2027. Microsoft advises identifying affected users, migrating them to phishing-resistant methods such as passkeys, and updating policies to prevent sign-in disruption.
- Entitlement Management guidance adds preview access package drift reporting
ID Governance · Governance
The updated guidance describes preview drift reports for groups and enterprise applications, including detection, remediation, export, refresh timing, and limitations. Viewing or downloading the reports requires Microsoft Entra ID Governance or Microsoft Entra Suite licensing and an appropriate directory role.
- The AD FS Risky IP report is moving toward deprecation
Entra ID · Monitoring
The Risky IP report guidance now notes that the AD FS report is being deprecated and points administrators to the Risky IP report workbook. It also documents Download Manager as the export path and limits export requests to one per hour.
- Connect Health guidance details guided remediation for duplicate attributes
Entra ID · Troubleshooting
The updated sync-error procedure directs administrators to find affected objects, open Error Details, select Troubleshoot, review proposed resolutions, and apply supported fixes. Cases outside the supported workflow still require manual resolution.
- A new ID Governance overview frames reconciliation and access drift
ID Governance · Fundamentals
The new overview defines access drift, account discovery, access package drift detection, and enforcement and remediation approaches for unmanaged, missing, or orphaned access, including tenant-wide analysis through drift reports.
This period briefing was generated by AI from the tracked Microsoft Learn and Message Center changes.
12 updates
Microsoft Entra ID
10 updatesConnect Health Adfs
Doc updateThe documentation now describes the AD FS service overview, updated alert filtering and details, and the revised Usage Analytics experience with time-range controls. Screenshots and metadata were also refreshed.
Connect Health Data Retrieval
Doc updateThe guide now uses the Microsoft Entra Connect Health Sync errors area to access notification settings, review Global Administrator and custom recipients, and export recorded sync errors as a CSV from the command bar.
The page now explains selecting an alert row to view its details, including detection times, affected servers, resolution guidance, and related documentation. It also replaces the alert screenshot and improves image descriptions.
The Risky IP report
RetirementThe documentation now notes that the AD FS Risky IP report is being deprecated and links to the Risky IP report workbook. It also updates portal navigation, export handling, notification settings, and threshold guidance.
The guide now documents the updated service overview, alert details and search, domain controller filtering and column options, replication error details, and 24-hour authentication performance charts.
The page now reflects the Sync services overview, updated alert and monitoring workflows, revised settings instructions, and expanded sync-error filtering, details, and CSV export guidance.
Sla Performance
Doc updateThe August row on the SLA performance reference page now shows 99.999% in the previously blank final metric column.
Microsoft is retiring SMS first-factor sign-in for Microsoft Entra ID workforce tenants worldwide starting February 1, 2027, to enhance security. Organizations must identify affected users, migrate them to phishing-resistant methods like passkeys, and update policies to avoid sign-in disruptions and comply with new requirements.
The article now documents the guided workflow for duplicate-attribute errors, including finding affected objects, opening Error Details, using Troubleshoot, reviewing proposed resolutions, and applying supported fixes. Status descriptions and diagnostic images were also updated.
Microsoft Entra ID Governance
2 updatesThe overview describes access drift, account discovery, access package drift detection, and enforcement and remediation approaches for aligning resource access with governance policies.
The documentation adds access package drift reporting for groups and enterprise applications, including detection, remediation, export, roles, licensing, refresh timing, and limitations. The reports are in preview.
