author: MicrosoftGuyJFlo
Android browser access becomes the default; Conditional Access documentation dominates an otherwise maintenance-heavy Entra week
The week of 21 July 2025 contained no new or removed documentation items: 254 items were updated, alongside one Microsoft 365 Message Center notice. The clearest service-level change was for Microsoft Entra ID on Android. Most of the remaining meaningful material was documentation or implementation guidance, especially for Conditional Access and provisioning; the supplied evidence does not establish a new feature launch or general-availability announcement for those areas.
- Android browser access is enabled by default and the old control is retired
Entra ID · Authentication
A Microsoft Entra ID Message Center major update says browser access will be enabled by default for all Android users. It retires the Enable Browser Access feature in Microsoft Authenticator and Company Portal as part of a hardware-bound device registration change. The rollout is automatic worldwide, requires no admin action, and can be ignored by organizations that do not use Android.
- Conditional Access guidance was refreshed across policy design, authentication, and resilience
Entra ID · Conditional Access
Updated Microsoft Learn pages cover targeting resources, actions and authentication contexts; assigning policies to users, groups and workload identities; application and device filters; grant controls; authentication flows, including Authentication transfer (Preview); session settings; resilience defaults; report-only mode; templates; insights; service dependencies; and troubleshooting. Related updates also cover Security Defaults, MFA and phishing-resistant MFA guidance, and blocking legacy authentication. These,
- iOS QR-code authentication guidance now directs apps to an MSAL device-information check
Entra ID · Authentication
The updated Microsoft identity platform guidance advises an app to call `getDeviceInformationWithParameters` in MSAL to determine whether an administrator configured QR code authentication. The app can then update its interface to show QR code authentication as an available sign-in option. This is implementation guidance, not evidence of a new tenant feature, availability change, or admin configuration requirement.
- Inbound Provisioning API permission requirements are spelled out
Entra ID · Fundamentals
Updated inbound provisioning guidance states that tenant administrators must grant API clients `SynchronizationData-User.Upload` and `ProvisioningLog.Read.All`, plus `SynchronizationData-User.Upload.OwnedBy` for ISVs. The companion access procedure points administrators to API permissions and Add a permission. The supplied record presents this as updated guidance and does not say that these permissions were newly introduced.
- Provisioning documentation adds safety and performance guidance
Entra ID · Provisioning
Separate Microsoft Entra provisioning updates describe enabling accidental-deletions prevention for applications and cross-tenant synchronization, and indexing the `employeeId` attribute in Active Directory to improve inbound-provisioning performance. Both are documented as updates; the evidence does not indicate a changed default, a retirement, or a newly announced availability milestone.
Android organizations do not need to change configuration: browser access will be enabled by default for Android users, the Enable Browser Access feature in Microsoft Authenticator and Company Portal is being retired, and the change will roll out automatically worldwide. Administrators working with Conditional Access or provisioning should consult the revised procedures where relevant, but the evidence does not support a tenant-wide action triggered by the documentation updates alone.
This period briefing was generated by AI from the tracked Microsoft Learn and Message Center changes.
Updates this week
Microsoft Entra ID
239 updatesauthor: MicrosoftGuyJFlo
A Microsoft Entra documentation page was updated: sfipillar: Protect engineering systems.
A Microsoft Entra documentation page was updated: sfipillar: Protect engineering systems.
A Microsoft Entra documentation page was updated: sfipillar: Protect engineering systems.
A Microsoft Entra documentation page was updated: sfipillar: Protect engineering systems.
manager: dougeby
A Microsoft Entra documentation page was updated: sfipillar: Protect engineering systems.
A Microsoft Entra documentation page was updated: sfipillar: Protect engineering systems.
A Microsoft Entra documentation page was updated: sfipillar: Protect engineering systems.
A Microsoft Entra documentation page was updated: sfipillar: Protect engineering systems.
A Microsoft Entra documentation page was updated: sfipillar: Protect engineering systems.
A Microsoft Entra documentation page was updated: sfipillar: Protect engineering systems.
A Microsoft Entra documentation page was updated: sfipillar: Protect engineering systems.
A Microsoft Entra documentation page was updated: sfipillar: Protect identities and secrets.
A Microsoft Entra documentation page was updated: sfipillar: Protect identities and secrets.
A Microsoft Entra documentation page was updated: sfipillar: Protect identities and secrets.
A Microsoft Entra documentation page was updated: sfipillar: Protect identities and secrets.
A Microsoft Entra documentation page was updated: sfipillar: Protect identities and secrets.
A Microsoft Entra documentation page was updated: sfipillar: Protect identities and secrets.
A Microsoft Entra documentation page was updated: sfipillar: Protect identities and secrets.
manager: dougeby
A Microsoft Entra documentation page was updated: sfipillar: Protect identities and secrets.
A Microsoft Entra documentation page was updated: sfipillar: Protect identities and secrets.
manager: dougeby
A Microsoft Entra documentation page was updated: sfipillar: Protect identities and secrets.
A Microsoft Entra documentation page was updated: sfipillar: Protect identities and secrets.
A Microsoft Entra documentation page was updated: sfipillar: Protect identities and secrets.
A Microsoft Entra documentation page was updated: sfipillar: Protect identities and secrets.
A Microsoft Entra documentation page was updated: sfipillar: Protect identities and secrets.
A Microsoft Entra documentation page was updated: sfipillar: Protect identities and secrets.
A Microsoft Entra documentation page was updated: sfipillar: Protect identities and secrets.
A Microsoft Entra documentation page was updated: sfipillar: Protect identities and secrets.
A Microsoft Entra documentation page was updated: sfipillar: Protect identities and secrets.
A Microsoft Entra documentation page was updated: sfipillar: Protect identities and secrets.
A Microsoft Entra documentation page was updated: sfipillar: Protect identities and secrets.
A Microsoft Entra documentation page was updated: sfipillar: Protect identities and secrets.
manager: dougeby
A Microsoft Entra documentation page was updated: sfipillar: Protect identities and secrets.
sfipillar: Protect networks
UpdatedA Microsoft Entra documentation page was updated: sfipillar: Protect networks.
sfipillar: Protect networks
UpdatedA Microsoft Entra documentation page was updated: sfipillar: Protect networks.
A Microsoft Entra documentation page was updated: sfipillar: Protect tenants and isolate production systems.
manager: dougeby
A Microsoft Entra documentation page was updated: sfipillar: Protect tenants and isolate production systems.
A Microsoft Entra documentation page was updated: sfipillar: Protect tenants and isolate production systems.
A Microsoft Entra documentation page was updated: sfipillar: Protect tenants and isolate production systems.
A Microsoft Entra documentation page was updated: sfipillar: Protect tenants and isolate production systems.
A Microsoft Entra documentation page was updated: sfipillar: Protect tenants and isolate production systems.
A Microsoft Entra documentation page was updated: sfipillar: Protect tenants and isolate production systems.
A Microsoft Entra documentation page was updated: sfipillar: Protect tenants and isolate production systems.
A Microsoft Entra documentation page was updated: sfipillar: Protect tenants and isolate production systems.
A Microsoft Entra documentation page was updated: sfipillar: Protect tenants and isolate production systems.
A Microsoft Entra documentation page was updated: sfipillar: Protect tenants and isolate production systems.
A Microsoft Entra documentation page was updated: sfipillar: Protect tenants and isolate production systems.
Learn how to get index the employeeId attribute to automate user account creation and updates from Inbound Provisioning to Active Directory
1. From the context menu **API permissions**, select the option **Add a permission**.
This article lists all releases of Microsoft Entra Connect Provisioning Agent and describes new features and fixed issues.
author: jenniferf-skc
A guide for independent software vendors for enabling automated provisioning in Microsoft Entra ID
Export a Microsoft Identity Manager connector for use with the Microsoft Entra ECMA Connector Host
UpdatedDescribes how to create and export a connector from MIM Sync to be used with the Microsoft Entra ECMA Connector Host.
Learn how to export your Application Provisioning configuration and roll back to a known good state for disaster recovery in Microsoft Entra ID.
Find out when a specific user is able to access an app in Microsoft Entra Application Provisioning
UpdatedHow to find out when a critically important user is able to access an application you have configured for user provisioning with Microsoft Entra ID.
Learn how to integrate Microsoft Entra Provisioning logs with Azure Monitor logs and use the associated workbooks.
Technical deep dive into SAP SuccessFactors-HR driven provisioning for Microsoft Entra ID.
This document describes how to configure Microsoft Entra ID to provision users into SAP ERP Central Component (SAP ECC, formerly SAP R/3) with NetWeaver AS ABAP 7.0 or later.
This document describes how to configure Microsoft Entra ID to provision users with external systems that offer REST and SOAP APIs.
This document describes how to configure Microsoft Entra ID to provision users with external systems that offer web services based APIs.
This document describes how to configure Microsoft Entra ID to provision users into an LDAP directory.
This tutorial describes how to provision users from Microsoft Entra ID into a SQL database.
Preparing for Microsoft Entra provisioning to Active Directory Lightweight Directory Services
UpdatedThis document describes how to configure Microsoft Entra ID to provision users into Active Directory Lightweight Directory Services as an example of an LDAP directory.
Learn how to provision users on demand in Microsoft Entra ID.
Provisioning users into SQL based applications using the ECMA Connector host
When you've configured an application for automatic user provisioning, learn what a provisioning status of Quarantine means and how to clear it.
Learn how to retrieve pronoun information from Workday
Learn which attributes from SuccessFactors are supported by SuccessFactors-HR driven provisioning in Microsoft Entra ID.
Learn how to use scoping filters to define attribute-based rules that determine which users or groups are provisioned in Microsoft Entra ID.
Learn how to override the default behavior of deprovisioning out of scope users in Microsoft Entra ID.
When configuring user provisioning with Microsoft Entra ID and SaaS apps, use the directory extension feature to add source attributes that aren't synchronized by default.
Understand how Application Provisioning works in Microsoft Entra ID.
Understand how expression builder works with Application Provisioning in Microsoft Entra ID.
Use partner driven integrations to provision accounts into all your applications.
Learn how to manage user account provisioning for enterprise apps using the Microsoft Entra ID.
Learn which attributes that you can fetch from Workday using XPATH queries in Microsoft Entra ID.
Learn how to implement API-driven inbound provisioning with Azure Logic Apps.
Learn how to implement API-driven inbound provisioning with a PowerShell script.
Learn how to configure API-driven inbound provisioning app.
Learn how to extend API-driven inbound provisioning to sync custom attributes.
Learn how to grant access to the inbound provisioning API.
This tutorial provides step-by-step instructions so you can get started with API-driven inbound provisioning using cURL.
Learn more about the capabilities and integration scenarios supported by API-driven inbound provisioning.
Learn how to get started quickly with API-driven inbound provisioning using Graph Explorer
The Microsoft Entra provisioning service matches users in Microsoft Entra ID with users already in an application. In some cases, an application may have users that do not match with any in Microsoft Entra ID.
This document describes how to configure Microsoft Entra ID to provision users with external systems that offer Windows PowerShell based APIs.
Plan Auto User Provisioning
UpdatedGuidance for planning and executing automatic user provisioning in Microsoft Entra ID
Learn how to bring identities from SAP SuccessFactors and other sources into Microsoft Entra ID and give them access to SAP ECC, SAP S/4HANA, and other apps.
Learn how to simplify user provisioning with Expression Builder, handle duplicate users, and transform user attributes for seamless integration.
This article describes the Azure Monitor workbook for provisioning.
Reference for writing expressions for attribute mappings in Microsoft Entra Application Provisioning
UpdatedLearn how to use expression mappings to transform attribute values into an acceptable format during automated provisioning of SaaS app objects in Microsoft Entra ID. Includes a reference list of functions.
Learn about attribute mappings for Software as a Service (SaaS) apps in Microsoft Entra Application Provisioning. Learn what attributes are and how you can modify them to address your business needs.
Technical deep dive into Workday-HR driven provisioning in Microsoft Entra ID
Learn how to configure Conditional Access policies to target specific resources, actions, and authentication contexts in Microsoft Entra ID.
author: MicrosoftGuyJFlo
author: MicrosoftGuyJFlo
author: MicrosoftGuyJFlo
Create a custom Conditional Access policy to block access to resources by IP location.
Create a custom Conditional Access policy require approved app or app protection policy
author: MicrosoftGuyJFlo
author: MicrosoftGuyJFlo
author: MicrosoftGuyJFlo
Conditional Access Grant
Updatedauthor: MicrosoftGuyJFlo
Conditional Access Policies
Updatedauthor: MicrosoftGuyJFlo
author: MicrosoftGuyJFlo
author: MicrosoftGuyJFlo
author: MicrosoftGuyJFlo
author: MicrosoftGuyJFlo
author: MicrosoftGuyJFlo
author: MicrosoftGuyJFlo
Conditional Access: Session
Updatedauthor: MicrosoftGuyJFlo
author: MicrosoftGuyJFlo
author: MicrosoftGuyJFlo
author: MicrosoftGuyJFlo
author: MicrosoftGuyJFlo
author: MicrosoftGuyJFlo
author: MicrosoftGuyJFlo
author: MicrosoftGuyJFlo
What is Conditional Access?
Updatedauthor: MicrosoftGuyJFlo
Token Protection
UpdatedThe following devices and applications support accessing resources on which a token protection Conditional Access policy is applied:
Learn how Conditional Access templates provide preconfigured policies to secure your environment, aligned with Microsoft recommendations.
Discover how to use Conditional Access filters for applications to streamline policy management and enhance security in Microsoft Entra ID.
Understand the phases of Conditional Access policy enforcement in Microsoft Entra and how to apply them to secure user access.
Set up Microsoft Entra terms of use with Conditional Access to require policy acceptance before resource access. Complete guide with prerequisites, step-by-step configuration, and troubleshooting tips.
Conditional Access Grant
UpdatedOrganizations that deploy Intune can use the information returned from their devices to identify devices that meet specific policy compliance requirements. Intune sends compliance information to Microsoft Entra ID so Conditional Access can decide to grant or block access to resources. For more information about compliance policies, see [Set rules on devices to allow access to resources in your organization by using Intune](/mem/intune/protect/device-compliance-get-started).
Permissions Reference
UpdatedA Microsoft Entra documentation page was updated: Permissions Reference.
Global Administrator
Updated> | microsoft.directory/bitlockerKeys/key/read | Read bitlocker metadata and key on devices<br/>[](../privileged-roles-permissions.md) |
author: MicrosoftGuyJFlo
author: shlipsey3
Agent Optimization
Updatedauthor: MicrosoftGuyJFlo
Scopes Oidc
Updatedauthor: omondiatieno
Block access example policy
Updatedauthor: MicrosoftGuyJFlo
author: MicrosoftGuyJFlo
author: MicrosoftGuyJFlo
Controls
Updatedauthor: MicrosoftGuyJFlo
Entra Policy Exclude User
Updatedauthor: MicrosoftGuyJFlo
Entra Zero Trust
Updatedauthor: MicrosoftGuyJFlo
Managed Policies
Updatedauthor: MicrosoftGuyJFlo
author: MicrosoftGuyJFlo
author: MicrosoftGuyJFlo
author: MicrosoftGuyJFlo
author: MicrosoftGuyJFlo
author: MicrosoftGuyJFlo
Terms Of Use
Updatedauthor: MicrosoftGuyJFlo
What If Tool
Updatedauthor: MicrosoftGuyJFlo
A Microsoft Entra documentation page was updated: Common include file for referencing highly privileged roles accounts..
Emergency Access Accounts
UpdatedA Microsoft Entra documentation page was updated: Emergency Access Accounts.
- **Service plans included (friendly names)**: A list of service plans (friendly names) in the product that correspond to the string ID and GUID
Migrate Approved Client App
Updatedauthor: MicrosoftGuyJFlo
Connect Staged Rollout
Updatedmanager: mwongerapk
author: shlipsey3
author: MicrosoftGuyJFlo
author: MicrosoftGuyJFlo
It's advised to call the `getDeviceInformationWithParameters` API in MSAL to find out if the admin has configured QR code authentication method. If it has, an app can update its UI to indicate that QR code authentication method is available as a sign-in option.
Authentication Qr Code
Updatedauthor: aanjusingh
Backup Authentication System
Updatedauthor: MicrosoftGuyJFlo
author: MicrosoftGuyJFlo
author: MicrosoftGuyJFlo
author: MicrosoftGuyJFlo
author: MicrosoftGuyJFlo
author: MicrosoftGuyJFlo
author: MicrosoftGuyJFlo
author: MicrosoftGuyJFlo
author: MicrosoftGuyJFlo
Microsoft Entra will enable browser access by default for all Android users, retiring the "Enable Browser Access" feature in Microsoft Authenticator and Company Portal apps. This hardware-bound device registration change requires no admin action and will roll out automatically worldwide. Organizations not using Android can ignore this update.
Howto Mfa Mfasettings
Updatedauthor: justinha
Explore the resilience features of Microsoft Entra ID's backup authentication system, designed to maintain authentication availability for users and services.
author: shlipsey3
This document describes how to configure Microsoft Entra ID to provision users into an LDAP directory so that the users can then sign into a Linux or other POSIX system using pluggable authentication.
After entering the sign-in credentials, the consent screen appears. The consent screen provides information about the application and the permissions it requires.
Enable Microsoft Entra ID security defaults to strengthen your organization's security posture with preconfigured MFA requirements and legacy authentication protection.
Learn how to protect organizational identities with Microsoft Entra ID. Discover security recommendations, multifactor authentication setup, and Zero Trust implementation strategies.
Sspr Writeback
Updatedauthor: justinha
1. When you see the configuration finish, select **Exit**.
author: MicrosoftGuyJFlo
author: MicrosoftGuyJFlo
Describes how to troubleshoot various issues you might encounter when you install and use the ECMA Connector Host.
Troubleshoot common issues faced when a user isn't appearing in a Microsoft Entra Gallery Application configured for user provisioning with Microsoft Entra ID.
Learn how to check the status of automatic user account provisioning jobs, and how to troubleshoot the provisioning of individual users.
Learn how to troubleshoot attribute retrieval issues with HR provisioning
Learn how to troubleshoot InsufficientAccessRights error when provisioning to on-premises Active Directory.
This article provides potential issues and resolutions that guide you in how to troubleshoot issues with the inbound provisioning API.
This article provides potential issues and resolutions that show you how to troubleshoot manager update issues with HR provisioning
How to troubleshoot common issues faced when configuring user provisioning to an application already listed in the Microsoft Entra application gallery.
Learn how to troubleshoot user creation issues with HR provisioning
Learn how to troubleshoot user update issues with HR provisioning
This article provides potential issues and resolutions so you can troubleshoot writeback issues with HR provisioning.
A Microsoft Entra documentation page was updated: sfipillar: Accelerate response and remediation.
A Microsoft Entra documentation page was updated: sfipillar: Accelerate response and remediation.
manager: dougeby
Security Defaults
Updatedauthor: MicrosoftGuyJFlo
- Tenant admins must grant API clients interacting with this provisioning app the Graph permissions `SynchronizationData-User.Upload`, `SynchronizationData-User.Upload.OwnedBy` (for ISVs), and `ProvisioningLog.Read.All`.
Assignment Network
Updatedauthor: MicrosoftGuyJFlo
Continuous Access Evaluation
Updatedauthor: MicrosoftGuyJFlo
author: MicrosoftGuyJFlo
Filter For Applications
Updatedauthor: MicrosoftGuyJFlo
Secure Remote Workers
Updatedauthor: MicrosoftGuyJFlo
Token Protection
Updatedauthor: MicrosoftGuyJFlo
Users Default Permissions
Updated| **Allow users to connect work or school account with LinkedIn** | Setting this option to **No** prevents users from connecting their work or school account with their LinkedIn account. For more information, see [LinkedIn account connections data sharing and consent](~/identity/users/linkedin-user-consent.md). |
Learn how continuous access evaluation in Microsoft Entra enhances security by responding to user state changes in near real time.
author: ploegert
An introduction to how you can use Microsoft Entra ID to automatically provision, deprovision, and continuously update user accounts across multiple third-party applications.
Describes overview of HR driven provisioning.
An overview of API-driven inbound provisioning.
author: MicrosoftGuyJFlo
Global Reader
Updated> | microsoft.directory/auditLogs/allProperties/read | Read all properties on audit logs, excluding custom security attributes audit logs |
Security Administrator
Updated> | microsoft.directory/auditLogs/allProperties/read | Read all properties on audit logs, excluding custom security attributes audit logs |
author: shlipsey3
A Microsoft Entra documentation page was updated: sfipillar: Monitor and detect cyberthreats.
A Microsoft Entra documentation page was updated: sfipillar: Monitor and detect cyberthreats.
manager: dougeby
A Microsoft Entra documentation page was updated: sfipillar: Monitor and detect cyberthreats.
A Microsoft Entra documentation page was updated: sfipillar: Monitor and detect cyberthreats.
A Microsoft Entra documentation page was updated: sfipillar: Monitor and detect cyberthreats.
A Microsoft Entra documentation page was updated: sfipillar: Monitor and detect cyberthreats.
A Microsoft Entra documentation page was updated: sfipillar: Monitor and detect cyberthreats.
A Microsoft Entra documentation page was updated: sfipillar: Monitor and detect cyberthreats.
A Microsoft Entra documentation page was updated: sfipillar: Monitor and detect cyberthreats.
Learn to develop a SCIM endpoint, integrate your SCIM API with Microsoft Entra ID, and automatically provision users and groups into your cloud applications.
How to solve common protocol compatibility issues faced when adding a non-gallery application that supports SCIM 2.0 to Microsoft Entra ID
System for Cross-domain Identity Management (SCIM) standardizes automatic user provisioning. In this tutorial, you learn to develop a SCIM endpoint, integrate your SCIM API with Microsoft Entra ID, and start automating provisioning users and groups into your cloud applications.
Tutorial - Test your SCIM endpoint for compatibility with the Microsoft Entra provisioning service.
UpdatedThis tutorial describes how to use the Microsoft Entra SCIM Validator to validate that your provisioning server is compatible with the Azure SCIM client.
Use SCIM, Microsoft Graph, and Microsoft Entra ID to provision users and enrich apps with data
UpdatedUsing SCIM and the Microsoft Graph together to provision users and enrich your application with the data it needs in Microsoft Entra ID.
This article describes how to use the Microsoft Entra provisioning service to provision users into an on-premises app that's SCIM enabled.
author: MicrosoftGuyJFlo
author: MicrosoftGuyJFlo
- A relying party STS, such as Active Directory Federation Services (AD FS) or PingFederate, with HTTPS endpoints
You can see a sample request to the REST API:
Plan Cloud Hr Provision
UpdatedThis article describes the deployment process of integrating cloud HR systems, such as Workday and SuccessFactors, with Microsoft Entra ID. Integrating Microsoft Entra ID with your cloud HR system results in a complete identity lifecycle management system.
Plan Cloud Hr Provision
UpdatedThis article describes the deployment process of integrating cloud HR systems, such as Workday and SuccessFactors, with Microsoft Entra ID. Integrating Microsoft Entra ID with your cloud HR system results in a complete identity lifecycle management system.
Presents an overview of on-premises application provisioning architecture.
Learn how to save time by using the Microsoft Graph APIs to automate the configuration of automatic provisioning.
Microsoft Entra Agent ID
1 updateAgent Optimization
UpdatedIf the agent identifies something that wasn't previously suggested, it takes the following steps. **The agent action steps consume SCUs.**
Microsoft Entra ID Protection
2 updatesSecurity Reader
UpdatedThis is a [privileged role](../privileged-roles-permissions.md). Users with this role have global read-only access on security-related feature, including all information in Microsoft 365 Defender portal, Microsoft Entra ID Protection, Privileged Identity Management, and the ability to read Microsoft Entra sign-in reports and audit logs, and in Microsoft Purview compliance portal. For more information about Office 365 permissions, see [Roles and role groups in Microsoft Defender for Office 365 and Microsoft Purview compliance](/microsoft-365/security/office-365-security/scc-permissions).
Security Operator
UpdatedThis is a [privileged role](../privileged-roles-permissions.md). Users with this role can manage alerts and have global read-only access on security-related features, including all information in Microsoft 365 Defender portal, Microsoft Entra ID Protection, Privileged Identity Management, and Microsoft Purview portal. For more information about Office 365 permissions, see [Roles and role groups in Microsoft Defender for Office 365 and Microsoft Purview](/microsoft-365/security/office-365-security/scc-permissions).
Microsoft Entra ID Governance
3 updates- Tailspin creates a second access review for a security group with 300 guest users with the user-to-group affiliation feature enabled.
This approval will use the same approval settings that you specified on the **Requests** tab.
The visibility change will only impact how end-users can discover access packages via the "Available" tab, the "View all" option, or when using the search bar within these sections to find requestable access packages. The change won't impact the visibility logic for other tabs like "Suggested," "Active," or "Expired" (even when using search within those tabs), nor does it impact other My Access portal sections such as "Request history" or "Approvals."
Microsoft Entra External ID
2 updatesEnable accidental deletions prevention in the Microsoft Entra provisioning service for applications and cross-tenant synchronization.
Known Issues
UpdatedLearn about known issues when you work with automated application provisioning or cross-tenant synchronization in Microsoft Entra ID.
Microsoft Entra Workload ID
5 updatesauthor: MicrosoftGuyJFlo
author: MicrosoftGuyJFlo
Configure Conditional Access user assignments in Microsoft Entra ID. Target specific users, groups, directory roles, and workload identities while avoiding administrator lockout with proper exclusions.
author: MicrosoftGuyJFlo
Managed Identities Faq
UpdatedYou can find the list of resources that have a system-assigned managed identity by using the following Azure CLI Command:
Microsoft Entra Global Secure Access
2 updatesPartner Ecosystems Overview
Updatedauthor: kenwith
Configure Domain Controllers
Updatedmanager: dougeby
Security Copilot + Entra
1 updateauthor: MicrosoftGuyJFlo
