← Previous day

Day in brief

Private Access sensor 2.2.79 adds OTA updates; passkey samples flag production risks

The period’s meaningful changes center on Private Access operations and identity-developer guidance. Sensor version 2.2.79 adds over-the-air updates and Kerberos diagnostics, while passkey documentation now covers listing and registration with an explicit warning about a high-privilege deletion flow. External ID guidance also clarifies SMS availability, and Agent ID access-package instructions better define API-permission setup. Most other updates were spelling, metadata, formatting, or wording corrections.

This period briefing was generated by AI from the tracked Microsoft Learn and Message Center changes.

58 updates

8

Sso Admin Control

Doc update

The documentation fixes minor formatting in the scope notes and corrects the image text from `HKEY_LOCAL_MACHIEN` to `HKEY_LOCAL_MACHINE`.

5
4
4

Connect Version History

Doc update

The version history page was updated with spelling fixes in existing release and feature descriptions.

Recover Objects

Doc update

Changed “cancelation” to “cancellation” in the recovery job instructions.

2

Microsoft Entra Health

Doc update

Corrected a spelling error and updated punctuation in the Microsoft Entra Health article.

Zero Trust Ai

Doc update

The page no longer includes the ms.author, author, or manager metadata fields.

2
2

Credential Management Api

Doc updateAction required

The article now links to a sample app demonstrating passkey listing and registration with delegated permissions and warns that its deletion flow uses high-privilege application permissions and a client secret in browser code.

1

Multi Tenant Common Considerations

Doc update

The documentation corrects wording and spacing in guidance about cross-tenant access policies, guest self-service sign-up, Conditional Access sign-in frequency, and governance.

1
1
3

Agent Access Packages

Doc update

The documentation now states more clearly that an agent needs assigned OAuth delegated permissions to assist a user when accessing a target resource’s APIs.

Agent Access Packages

Doc updateAction required

The documentation now states that agent identities need delegated OAuth permissions for target resources, such as Microsoft Graph or an application, to assist users with API access.

Integrate N8n Agent

Doc update

The n8n agent integration page no longer includes the `author` and `ms.author` metadata fields.

1

Call Api Azure Services

Doc update

The documentation corrects spelling errors, including “credentials,” and adds missing punctuation to a step describing token credentials and Azure SDK clients.

1

Entitlement Management Access Package Resources

Doc update

The documentation now identifies the resource role as applying to an AI agent’s service principal or agent ID and adds numbered steps for selecting API permissions, permission type, required permissions, and updating the configuration.

1

Agent Id Governance Overview

Doc update

The documentation now describes the linked guidance as covering delegated and application permissions for Microsoft Graph and applications.

1
4
1
3

Sign In With Passkey

Doc update

The documentation now describes a sample where signed-in customers list and register their own passkeys. It warns that the deletion flow uses high-privilege permissions and a client secret, so the sample is for test tenants only.

Faq Customers

Feature update

The documentation now states that SMS is unavailable only for first-factor authentication in external tenants, indicating availability for self-service password reset. SMS remains available for second-factor verification at additional cost.

1

Samples and guides for integrating apps with External ID

Doc update

The page now links to a sample for listing and registering passkeys and documents delegated permissions for those operations. It also warns that deletion uses high-privilege application permissions and a client secret in browser code.

1
1

Palo Alto Coexistence

Doc update

The service connection link text now uses “configuring” instead of the misspelled “configurating.”

2

Private Access Sensor Release History

Feature updateAction required

Version 2.2.79, released September 29, 2026, adds over-the-air sensor updates, enhanced Kerberos security and diagnostics, SID-based service matching, and corrected wildcard matching.

1

Managed Identities Faq

Doc update

The FAQ now uses “towards” instead of the misspelled “torwards” in its soft-deleted objects quota guidance.

4
1
1
1

Secure Web Ai Gateway Agents

Doc update

The documentation corrects “Web respositories” to “Web repositories” in an example of security rules.

Daily Entra.News

Get daily email updates

Get a concise summary of the latest Microsoft Entra updates delivered straight to your inbox.

Loading the secure signup form…