MondayMon
TuesdayTue
WednesdayWed
ThursdayThu
FridayFri
SaturdaySat
SundaySun
222324252627282930311231ID Governance45671Entra ID894Entra IDID Protection101112131415161Entra ID1718192021222324252627282930311
Month in brief

Tenant MFA deadline leads August: privileged approval bypass ends and Edge mobile Copilot retires

August’s supplied Entra record is operational rather than documentation-led: all seven entries are Microsoft 365 Message Center notices, with no new, updated, or removed documentation items. The highest-impact item is the requirement to enable tenant MFA by 15 October 2024 to preserve access to three admin centers. Two other behavior changes affect users and privileged administrators: Copilot in Edge mobile retires for Entra ID users with version 128 in late August, and Entitlement Management will enforce access-package approvals for Global Administrators and Identity Governance Administrators from 26 August. The remaining substantive notices are general-availability rollouts for ID Protection detection, AD FS application migration, and Red Hat Enterprise Linux device-based Conditional Access.

  • Tenant MFA is required for admin-portal access by 15 OctoberEntra ID

    This is security-enforcement guidance, not a new capability: tenants must enable MFA by 15 October 2024 to access the Azure portal, Microsoft Entra admin center, and Microsoft Intune admin center. The notice says tenants may set up MFA early or apply to postpone enforcement; without MFA, administrative access will be restricted.

  • Entitlement Management removes privileged-administrator approval bypassID Governance

    This behavior change takes effect on 26 August 2024: Global Administrators and Identity Governance Administrators can no longer bypass the approval settings configured in access package policies. Microsoft describes the update as automatic and says no organizational action is needed.

  • Copilot in Edge mobile is retired for Entra ID usersEntra ID

    This is a retirement, not a rollout: Copilot leaves the Microsoft Edge mobile application for Entra ID users with version 128 in late August 2024. No admin action is required, but Microsoft recommends informing affected users and directing them to the Microsoft 365 mobile app for work or to web chat.

  • Attacker in the Middle detection reaches general availability in ID ProtectionID Protection

    The security detection feature is scheduled to reach general availability by late August 2024. Its detection alert is intended to identify compromised user accounts in Microsoft Entra ID Protection. The notice states that no admin action is required before rollout.

  • AD FS migration and RHEL device-based Conditional Access reach general availabilityEntra ID

    The AD FS application migration wizard reaches general availability in mid-to-late August and provides a guided experience for migrating AD FS relying-party applications. Device-based Conditional Access for Microsoft 365 and Azure on Red Hat Enterprise Linux also goes generally available, including Entra ID registration, Conditional Access, SSO, Intune compliance, and Red Hat RPM package support. Neither notice requires action before rollout.

For Entra administrators

Enable MFA before 15 October, or use the stated postponement option if necessary; without it, access to the Azure portal, Microsoft Entra admin center, and Microsoft Intune admin center will be restricted. No pre-rollout action is stated for the general-availability notices or the automatic Entitlement Management change, but administrators should expect configured access-package approval requirements to apply to the two named privileged roles. For the Edge retirement, Microsoft recommends informing users and pointing them to the Microsoft 365 mobile app for work or web chat. The separate Dynamics 365 deletion notice confirms availability but provides too little detail to support a cleanup or configuration recommendation.

This period briefing was generated by AI from the tracked Microsoft Learn and Message Center changes.

7 updates by product

Authentication

1

Developer

1

Monitoring

1

Standards

1

Troubleshooting

1

Fundamentals

1

Governance

1

Enforce policy approval settings for admins

New

Starting August 26, 2024, changes to Entitlement Management will enforce approval settings for Global Administrators and Identity Governance Administrators, preventing them from bypassing access package policy approvals. No action is needed from your organization as this is an automatic update.

3 August 2024
Message CenterMC847883 on mc.merill.net ↗Stay informed