← Previous day

Next day →
Plain-English daily brief

What changed on this day

16 changes were tracked across 4 Microsoft Entra products. The leading updates include Microsoft Entra: Cross-tenant security group synchronization; Conditional Access Grant; Knowbe4 Security Awareness Training Provisioning Tutorial.

16 updates

Provisioning

5

Kpn Grip Provisioning Tutorial

Updated

1. Sign in to the [Microsoft Entra admin center](https://entra.microsoft.com) as at least a [Cloud Application Administrator](~/identity/role-based-access-control/permissions-reference.md#cloud-application-administrator).

Authentication

1

Connect Password Hash Synchronization

Updated

You can continue to sign in to your cloud services by using a synchronized password that is expired in your on-premises environment. Your cloud password is updated the next time you change the password in the on-premises environment.

Fundamentals

1

Whats New

Updated

**Service category:** Identity Protection

General

1

Fundamentals

1

Conditional Access Grant

Updated

When user risk is detected, users can self-remediate by completing the appropriate remediation flow, regardless of their authentication method. The Microsoft-managed remediation policy in Conditional Access accommodates all authentication methods, including password-based and passwordless. For more information, see [Require risk remediation control](../../id-protection/concept-identity-protection-policies.md#require-risk-remediation-control).

Troubleshooting

1

Fundamentals

1

Microsoft Entra: Cross-tenant security group synchronization

New

Microsoft Entra introduces cross-tenant security group synchronization to simplify collaboration and centralize group management across tenants. Public preview starts late January 2026; general availability by end of May 2026. Admins can enable sync by updating attribute mappings and access policies. No compliance issues identified.

Message CenterMC1198077 on mc.merill.net ↗Stay informed

General

2

Security

2

Tutorial Internet Access Application Discovery

Updated

*Shadow IT* refers to applications and services that are used by employees without the IT department's knowledge or approval. This use creates risk such as the following examples.

Tutorial: Configure content policies

Updated

Network content filtering in Microsoft Entra Internet Access allows administrators to use content policies to prevent the transport of specific file types over the network. This feature helps protect sensitive data by blocking uploads and downloads of certain file formats (such as .doc, .docx, .pdf, and .zip) to and from web applications like ChatGPT, Gmail, and file-sharing apps. It can also use Microsoft Purview to scan files and apply network-level policies based on document sensitivity labels.

Fundamentals

1