← Previous day

Next day →
Plain-English daily brief

What changed on this day

48 changes were tracked across 4 Microsoft Entra products. The leading updates include userimpact: Low; userimpact: Low; Export and use Microsoft Entra ID Protection data.

48 updates

Security

5

Identity Risk Management Agent

Updated

Learn about the Identity Risk Management Agent and its role in identifying and mitigating risks within Microsoft Entra ID Protection.

Fundamentals

4

ID Protection Risk Reports

Updated

Learn how to access, filter, and use the Microsoft Entra ID Protection risk reports to mark users and sign-ins as risky or confirmed compromised.

What are risk detections?

Updated

Explore the full list of risk detections and their corresponding risk event types, along with a description of each risk event type.

Authentication

1

Monitoring

1

Troubleshooting

1

Provisioning

1

userimpact: Low

Updated

Global Secure Access requires specific Microsoft Entra licenses to function, including Microsoft Entra Internet Access and Microsoft Entra Private Access, both of which require Microsoft Entra ID P1 as a prerequisite. Without valid licenses provisioned in the tenant, administrators can't configure traffic forwarding profiles, security policies, or remote network connections. If you don't assign licenses to users, their traffic doesn't route through Global Secure Access, and remains unprotected by security controls.

Security

15

Admin Api

Updated

Learn how to manage your verifiable credential deployment using Admin API.

General

12

Upgrade signing keys

Updated

Learn how to upgrade Microsoft Entra Verified ID signing keys to become FIPS compliant.

Architecture

3

Developer

2

Vc Network Api

Updated

Learn how to use the Microsoft Entra Verified ID Network API

Authentication

1

Troubleshooting

1

Error Codes

Updated

Reference of error codes for Microsoft Entra Verified ID APIs

Security

1

userimpact: Low

Updated

Comprehensive deployment of the Global Secure Access client is foundational to achieving Zero Trust network security. If you don't deploy the Global Secure Access client to managed endpoints, those devices operate outside the organization's Security Service Edge controls. Threat actors can exploit unprotected endpoints to establish initial access, move laterally, or exfiltrate data without triggering network-level security policies.