What changed on this day
11 changes were tracked across 3 Microsoft Entra products. The leading updates include Identity Protection Policies; Howto Identity Protection Investigate Risk; Microsoft Entra ID attestation for FIDO2 security key vendors.
Daily.Entra.News11 changes were tracked across 3 Microsoft Entra products. The leading updates include Identity Protection Policies; Howto Identity Protection Investigate Risk; Microsoft Entra ID attestation for FIDO2 security key vendors.
> - Keep user attributes synchronized between Microsoft Entra ID and SAP ECC.
The following documentation provides configuration and tutorial information demonstrating how to provision users from Microsoft Entra ID into SAP ERP Central Component (SAP ECC, formerly SAP R/3) with NetWeaver 7.0 or later. If you're using other versions of SAP R/3, you can still use the guides provided in the [Connectors for Microsoft Identity Manager 2016](https://www.microsoft.com/download/details.aspx?id=51495) download as a reference to build your own template for provisioning.
The Microsoft Entra provisioning agent and generic web services connector provides connectivity to on-premises SAP ECC SOAP endpoints, including SAP BAPIs.
Log storage within Microsoft Entra varies by report type and license type. You can retain the audit and sign-in activity data for longer than the default retention period outlined in the previous table by routing it to an Azure storage account using Azure Monitor. For more information, see [Archive Microsoft Entra logs to an Azure storage account](./howto-archive-logs-to-storage-account.md).
Explains requirements to prepare FIDO2 hardware for attestation with Microsoft Entra ID
1. Select the **Resource** link to go directly to the app registration for the app.
Identifying risk-based Conditional Access policies
author: shlipsey3
If a user is prompted to use self-service password reset (SSPR) to remediate user risk, they are prompted to update their password as shown in the [Microsoft Entra ID Protection user experience](concept-identity-protection-user-experience.md) article. Once they update their password, the user risk is remediated. A secure password change (MFA and password change) can also remediate user risk. The user can then proceed to sign in with their new password. The risk state and risk details for the user, sign-ins, and corresponding risk detections are updated as follows:
Learn how to investigate risky users, detections, and sign-ins in Microsoft Entra ID Protection.
Once you have users in Microsoft Entra ID, you can provision those users from Microsoft Entra ID to SAP Cloud Identity Services or SAP ECC, to enable them to sign in to SAP applications. If you have [`SAP S/4HANA On-Premise`](https://help.sap.com/docs/identity-provisioning/identity-provisioning/target-sap-s-4hana-on-premise), then provision users from Microsoft Entra ID to SAP Cloud Identity Directory. SAP Cloud Identity Services then provisions the users originating from Microsoft Entra ID that are in the SAP Cloud Identity Directory into the downstream SAP applications to SAP S/4HANA On-Premise through the SAP cloud connector.