What changed on this day
17 changes were tracked across 6 Microsoft Entra products. The leading updates include Conditional Access Grant; Identity Protection Policies; Deploy Microsoft Entra Tenant Governance end to end (preview).
Daily.Entra.News17 changes were tracked across 6 Microsoft Entra products. The leading updates include Conditional Access Grant; Identity Protection Policies; Deploy Microsoft Entra Tenant Governance end to end (preview).
1. Go to **Backup and recovery** > **Backups**. Select a backup from the list, and then select **Create difference report**.
After you determine the cause of the changes, validate whether the secrets for applications were impacted. Find changes to application secrets in the audit log. Look for events that indicate the application secret was changed or updated.
1. Go to **Backup and recovery** > **Difference reports**. Select a completed difference report.
1. Browse to **Backup and recovery**. The **Overview** page shows feature highlights, alerts, and recent activity.
**Service category:** MFA
If a recovery operation partially succeeds, the **Status** column shows **Completed with warnings**, allowing you to identify objects that weren't recovered. Select **Completed with warnings** to view the details of the changes that were not recovered.
Security Store is embedded in the Microsoft Entra admin center, so you can discover and deploy agents and solutions without leaving your identity management workflow.
**If the difference report is running for a long time:**
When user risk is detected, users can self-remediate by completing the appropriate remediation flow, regardless of their authentication method. The Microsoft-managed remediation policy in Conditional Access accommodates all authentication methods, including password-based and passwordless. For more information, see [Require risk remediation with Microsoft-managed remediation (preview)](../../id-protection/concept-identity-protection-policies.md#require-risk-remediation-control-preview).
Identifying risk-based Conditional Access policies
Learn how to deploy Microsoft Entra Tenant Governance from setup through tenant discovery, governance, and configuration monitoring
Learn about the signals and metrics used in Microsoft Entra Tenant Governance to identify and evaluate related tenants
Learn about Microsoft Entra Tenant Governance and how it helps organizations discover, manage, and govern tenants across their environment
<br/>**Source tenant**
To enable WAF for protection, configure a WAF policy and associate it with Azure Front Door Premium. Microsoft optimizes Azure Front Door premium for security and manages the rule sets provided by the WAF to protect against common vulnerabilities including cross-site scripting and JavaScript exploits. Additionally, Azure WAF provides rule sets that help protect against malicious bot activity and provide layer 7 DDoS protection for your application.
An app role assignment records when a user, group, or service principal is assigned an app role for an app. All properties of app role assignment are in scope. View all app role assignment details and properties in the [Microsoft Graph appRoleAssignment resource type](/graph/api/resources/approleassignment).