← Previous day

Next day →
Plain-English daily brief

What changed on this day

7 changes were tracked across 3 Microsoft Entra products. The leading updates include Passkeys by default and retirement of Microsoft-provided SMS and voice authentication; Configure HTTP header session management (preview); Host custom Proxy Automatic Configuration files for Explicit Forward Proxy in Microsoft Entra Internet Access.

7 updates

Fundamentals

1

General

1

Fundamentals

3

Explicit Forward Proxy session management

Updated

Explicit Forward Proxy uses Microsoft Entra ID authentication and authorization to validate user access before allowing network traffic. This validation method allows for adaptive policies in Microsoft Entra Conditional Access, modern credentials like passkeys, and Continuous Access Evaluation with session revocation. Classic proxy authorization methods, such as basic, digest, NTLM, or Kerberos, aren't supported.

Proxy Automatic Configuration Files

Updated

For unmanaged devices, you can instruct users to manually enter the PAC file location in browser settings or rely on a network-provided configuration. A network-provided configuration might be Dynamic Host Configuration Protocol (DHCP) or Web Proxy Auto-Discovery (WPAD).

Explicit Forward Proxy overview

Updated

Explicit Forward Proxy is a traffic acquisition mechanism that's useful in scenarios where installation of the Global Secure Access client is difficult or not possible. Explicit Forward Proxy helps protect internet traffic when users use browsers to access resources from:

Authentication

1

Configure HTTP header session management (preview)

Updated

You can configure Explicit Forward Proxy (preview) to rely on the private IP addresses of devices on your network to associate authenticated users with their devices. To use HTTP header session management with Explicit Forward Proxy, you need to securely communicate the private IP address of the device to the Explicit Forward Proxy feature.

Developer

1