← Previous day

Next day →
Plain-English daily brief

What changed on this day

26 changes were tracked across 6 Microsoft Entra products. The leading updates include Run a Registration Campaign to Set Up a Passkey or Microsoft Authenticator; Enable Combined Security Information Registration; Microsoft Entra ID attestation for FIDO2 security key vendors.

26 updates

Authentication

6

General

3

Assign App Owners

Updated

"@odata.id" = "https://graph.microsoft.com/v1.0/directoryObjects/aaaaaaaa-0000-1111-2222-bbbbbbbbbbbb"

Standards

3

Breaking Changes

Updated

`https://login.microsoftonline.com/contoso.com/oauth2/authorize?resource=https://gateway.contoso.com/api&response_type=token&client_id=00001111-aaaa-2222-bbbb-3333cccc4444&...`

Conditional Access Agent Optimization Settings

Updated

The agent settings described in this article cover standard options like triggers, notifications, and scope. But the settings also include advanced options like custom instructions, Intune integrations, and permissions.

Conditional Access

1

Developer

1

Howto Update Permissions

Updated

1. Identify the permissions your app requires, their permission IDs, and whether they're app roles (application permissions) or delegated permissions. For example, if you want to request Microsoft Graph permissions, see [Microsoft Graph permissions](/graph/permissions-reference#permission-scenarios) for a list of permissions and their IDs.

Fundamentals

1

Microsoft identity platform

1

What If Tool

Updated

The [What If Evaluation API](/graph/api/conditionalaccessroot-evaluate) is a Microsoft Graph API that is called by the Conditional Access experience. The API is different from the legacy What If evaluation in a few ways:

Provisioning

1

Troubleshooting

1

Conditional Access

1

Target agent identities in Conditional Access policies

Updated

Conditional Access policies for agent identities let you control how AI agents access corporate resources. As your organization deploys more agents, you need policies that target the right agents, evaluate the right signals, and enforce the right controls. To learn more about how Conditional Access policies for agents work for different scenarios, see [Conditional Access policies for agents](agent-id.md).

Fundamentals

1

Agent Id

Updated

- High-level overview of Conditional Access: [What is Conditional Access?](overview.md)

Fundamentals

1

Identity Protection Policies

Updated

- **Require authentication strength** and **Sign-in frequency - Every time** are automatically applied to the policy to ensure that after session revocation, end users are immediately prompted to reauthenticate with the specified authentication strength.

Governance

1

Standards

2

Add OIDC for customer sign-in

Updated

Learn how to set up OpenID Connect as an external identity provider in Microsoft Entra External ID, enabling users to sign in using their existing accounts.

Set up claims mapping for OIDC

Updated

Learn how to configure the standard OpenID Connect claims with the claims your identity provider provides in your external tenant.

General

1

Authentication

1

Idv Partners

Updated

| 1Kosmos | [1Kosmos offer](https://aka.ms/1kosmos) | [VerifiedIdentity](https://verifiedid.did.msidentity.com/v1.0/tenants/8108e610-606c-4dc3-ae95-d3ad8be3b24c/verifiableCredentials/contracts/1197e066-a9a2-2dc5-f245-4c31d1f4b456/manifest) | 1Kosmos and Microsoft Entra Verified ID unite to deliver trusted, privacy-preserving identity verification that empowers secure, passwordless access across ecosystems. |