← Previous day

Next day →
Microsoft Entra daily update

What changed on this day

21 changes were tracked across 4 Microsoft Entra products. The leading updates include Configure Transport Layer Security inspection (preview); How to sign in users who are locked out by mandatory Microsoft Entra multifactor authentication (MFA); Transport Layer Security inspection (preview) overview.

21 updates

Authentication

5

Howto Sspr Windows

Updated

![Screenshot that shows examples of Windows sign-in screens with the SSPR link.](./media/howto-sspr-windows/windows-reset-password.png)

Fundamentals

3

How to verify that users are set up for mandatory MFA

Updated

This topic covers steps to verify that users in your organization are set up to meet Azure's mandatory MFA requirements. For more information about which applications and accounts are affected and how the rollout works, see [Planning for mandatory multifactor authentication for Azure and other admin portals](concept-mandatory-multifactor-authentication.md).

Provisioning

2

General

1

Security

1

Groups Create Rule

Updated

Group membership based on user or device properties is supported for security groups and Microsoft 365 groups. When you apply a rule for a dynamic membership group, user and device attributes are evaluated for matches with the membership rule. When an attribute changes for a user or device, all rules for dynamic membership groups in the organization are processed for changes. Users and devices are added or removed if they meet the conditions for a dynamic membership group. In Microsoft Entra ID, a single tenant can have a maximum of 15,000 dynamic membership groups.

Governance

1

Licensing Governance

Updated

|[LCW + Custom Extensions (Logic Apps)](~/id-governance/lifecycle-workflow-extensibility.md)|||| :white_check_mark: | :white_check_mark: |

Fundamentals

1

Cross Tenant Synchronization Overview

Updated

In the target tenant: Cross-tenant sync relies on the Microsoft Entra External ID billing model. To understand the external identities licensing model, see [MAU billing model for Microsoft Entra External ID](~/external-id/external-identities-pricing.md). You will also need at least one Microsoft Entra ID P1 license in the target tenant to enable auto-redemption.

General

1

Automatic Redemption Include

Updated

| Users must accept a [consent prompt](~/external-id/redemption-experience.md#consent-experience-for-the-guest) | No | No | No |

Provisioning

1

Fundamentals

4

Name Resolution

Removed

A Microsoft Entra documentation page was updated: Name Resolution.

Security

1

Configure Transport Layer Security inspection (preview)

Updated

A significant percentage of internet traffic is encrypted. By terminating Transport Layer Security (TLS) at the edge, Global Secure Access inspects and applies security policies to decrypted traffic, enabling threat detection, content filtering, and granular access controls.