← Previous day

Next day →
Microsoft Entra daily update

What changed on this day

13 changes were tracked across 4 Microsoft Entra products. The leading updates include Authenticate to Microsoft Entra ID using Application Identity; Configure Security; Whats New.

13 updates

Authentication

2

Howto Mfa Reporting

Updated

The **Authentication Details** tab provides the following information, for each authentication attempt:

Admin Audit Logging

Updated

|2519|Reinitialize Entra ID Connector account password| Shows that the AD Sync service account password was reset|

Fundamentals

2

Configure Security

Updated

A Microsoft Entra documentation page was updated: Configure Security.

General

2

Standards

2

Authenticate to Microsoft Entra ID using Application Identity

Updated

Entra Connect uses the [Microsoft Entra Connector account](reference-connect-accounts-permissions#accounts-used-for-microsoft-entra-connect.md) to authenticate and sync identities from Active Directorty to Entra ID. This account uses username and password to authenticate requests. To enhance the security of the service, we are rolling out an application identity that uses Oauth 2.0 client credential flow with certificate credentials. In this new method, Entra or Administrator will create a single tenant 3rd party application in Entra ID and use one of the relevant certificate management options below for the credentials.

OAuth 2.0 and OpenID Connect protocols

Updated

Learn about OAuth 2.0 and OpenID Connect in Microsoft identity platform. Explore authentication flows, endpoints, and secure user authentication.

Microsoft identity platform

1

Troubleshooting

1

21809

Updated

**Remediation action**

Governance

1

General

1

Tenant Restrictions V2

Updated

- Allow the use of unenlightened apps, but block them from accessing Microsoft resources using a special WDAC policy, called an “AppIdTagging policy”.

Fundamentals

1

Private Name Resolution

Updated

1. User requests a DNS query for `app.contoso.com`. If not cached locally, the DNS query is sent to the DNS proxy at the GSA edge.