← Previous day

Next day →
Plain-English daily brief

What changed on this day

9 changes were tracked across 3 Microsoft Entra products. The leading updates include How to migrate to Transport Layer Security (TLS) 1.2 enforcement for Microsoft Entra Domain Services; Custom Url Domain; Howto Use Recommendations.

9 updates

Fundamentals

3

Howto Use Recommendations

Updated

Most recommendations follow the same pattern. You're provided information about how the recommendation works, its value, and some action steps to address the recommendation. This section provides an overview of the details provided in a recommendation, but aren't specific to one recommendation.

General

3

Standards

1

How to migrate to Transport Layer Security (TLS) 1.2 enforcement for Microsoft Entra Domain Services

Updated

Microsoft is enhancing security by disabling TLS versions 1.0 and 1.1 as communicated on November 10, 2023. While the Microsoft implementation of TLS 1.0 and TLS 1.1 versions is not known to have vulnerabilities, TLS 1.2 or later versions provide improved security features, including perfect forward secrecy and stronger cipher suites. This change helps protect customer data and ensures compliance with industry standards.

General

1

Custom Url Domain

Updated

1. Sign in to the [Microsoft Entra admin center](https://entra.microsoft.com) as at least a [Domain Name Administrator](~/identity/role-based-access-control/permissions-reference.md#domain-name-administrator).

Microsoft identity platform

1

Workload Identity Federation Config App Trust Managed Identity

Updated

- *issuer*, *subject* are the key pieces of information needed to set up the trust relationship. When the Azure workload requests Microsoft identity platform to exchange the managed identity token for an Entra app access token, the *issuer* and *subject* values of the federated identity credential are checked against the `issuer` and `subject` claims provided in the Managed Identity token. If that validation check passes, Microsoft identity platform issues an access token to the external software workload.