Configure Google Cloud / Google Workspace for automatic user provisioning with Microsoft Entra ID
UpdatedLearn how to automatically provision and deprovision user accounts from Microsoft Entra ID to Google Cloud or Google Workspace.
Daily.Entra.NewsFor the week of 22 December 2025, the supplied record shows 15 changes: one new page and 14 updates, with no removals or Message Center items. The most actionable content is in Global Secure Access: updated guidance distinguishes propagation windows for web content filtering and states that new threat-intelligence security profiles can take 60–90 minutes to apply. Entra ID updates mainly refresh provisioning, Conditional Access, app-integration, and reference documentation. Nothing supplied establishes a new feature, preview, general-availability milestone, retirement, or underlying service-behavior change.
The updated Configure Web Content Filtering guidance states that changes made in the Global Secure Access experience typically take effect in less than five minutes, while Conditional Access changes related to web content filtering take approximately one hour. This is an operational timing distinction in the documentation, not evidence of a new filtering capability or changed policy semantics. Administrators should use the path-specific window when validating a policy change.
The updated Configure Threat Intelligence guidance says that applying a new security profile can take up to 60–90 minutes because security profiles are enforced through access tokens. This is activation and validation guidance; the supplied evidence does not identify a new capability or preview/general-availability status. Allow for that window when assessing whether a profile change has taken effect.
The updated AWS Single Sign-On tutorial says that, after configuring AWS IAM Identity Center, administrators can enforce session control through Conditional Access. It points to Microsoft Defender for Cloud Apps guidance and describes the control as protecting sensitive data from exfiltration and infiltration in real time. This is integration and security guidance, not a stated feature launch or GA change.
Updated Entra documentation covers Google Cloud or Google Workspace user-account provisioning; AWS IAM Identity Center, Shopify Plus, and Dropbox for Business user/group provisioning and deprovisioning; Oracle HCM integration with on-premises Active Directory through the Inbound Provisioning API; Adobe Identity Management OIDC and SAML prerequisites; and Cernercentral system-account setup. These are setup-documentation updates. The supplied summaries do not indicate changed connector behavior, API availability, or,
The sole new item is titled Microsoft 365 Support Engineer, but the supplied text provides no role definition, permissions, or availability information. The Permissions Reference update includes a Message Center Reader entry describing the ability to read organizational Office 365 Message Center messages and updates, along with its identifier; the What's New update supplies only a table heading. These should be treated as documentation or reference clarification, not evidence of a new Entra role, permission change,
Use the documented Global Secure Access timing windows when testing or rolling out policy changes: typically under five minutes for web-content-filtering changes made in the Global Secure Access experience, approximately one hour for corresponding Conditional Access changes, and up to 60–90 minutes for a new threat-intelligence security profile. For the Entra integration updates, consult the current procedures when configuring or troubleshooting the named connectors. The evidence does not support a mandatory tenant-wide change, migration, or role reassignment.
This period briefing was generated by AI from the tracked Microsoft Learn and Message Center changes.
Learn how to automatically provision and deprovision user accounts from Microsoft Entra ID to Google Cloud or Google Workspace.
Integrating Oracle Fusion Cloud Human Capital Management (HCM) with Microsoft Entra ID and on-premises Active Directory using the Inbound Provisioning API.
This article describes the steps you need to perform in both AWS IAM Identity Center(successor to AWS single sign-On) and Microsoft Entra ID to configure automatic user provisioning. When configured, Microsoft Entra ID automatically provisions and de-provisions users and groups to [AWS IAM Identity Center](https://console.aws.amazon.com/singlesignon) using the Microsoft Entra provisioning service. For important details on what this service does, how it works, and frequently asked questions, see [Automate user provisioning and deprovisioning to SaaS applications with Microsoft Entra ID](~/identity/app-provisioning/user-provisioning.md). You can then use those users and groups in AWS IAM Admin Center for user access to other Amazon Web Services (AWS) applications or accounts.
* [A Microsoft Entra tenant](~/identity-platform/quickstart-create-new-tenant.md).
1. Next, a system account must be created for Microsoft Entra ID. Use the instructions below to request a System Account for your sandbox and production environments.
This article describes the steps you need to perform in both Shopify Plus and Microsoft Entra ID to configure automatic user provisioning. When configured, Microsoft Entra ID automatically provisions and de-provisions users and groups to [Shopify Plus](https://www.shopify.com/plus) using the Microsoft Entra provisioning service. For important details on what this service does, how it works, and frequently asked questions, see [Automate user provisioning and deprovisioning to SaaS applications with Microsoft Entra ID](~/identity/app-provisioning/user-provisioning.md).
The objective of this article is to demonstrate the steps to be performed in Dropbox for Business and Microsoft Entra ID to configure Microsoft Entra ID to automatically provision and de-provision users and/or groups to Dropbox for Business.
Microsoft 365 Support Engineer
> | [Message Center Reader](#message-center-reader) | Can read messages and updates for their organization in Office 365 Message Center only. | 790c1fb9-7f7d-4f88-86a1-ef1f95c05c1b |
| Date | Area | Description |
In this article, you learn how to integrate [Shopify Plus](https://www.shopify.com/plus) with Microsoft Entra ID. When you integrate Shopify Plus with Microsoft Entra ID, you can:
Once you configure AWS IAM Identity Center you can enforce session control, which protects exfiltration and infiltration of your organization’s sensitive data in real time. Session control extends from Conditional Access. [Learn how to enforce session control with Microsoft Defender for Cloud Apps](/cloud-app-security/proxy-deployment-any-app).
* [A Microsoft Entra tenant](~/identity-platform/quickstart-create-new-tenant.md).
> Configuration changes in the Global Secure Access experience related to web content filtering typically take effect in less than 5 minutes. Configuration changes in Conditional Access related to web content filtering take effect in approximately one hour.
> Applying a new security profile can take up to 60-90 minutes because security profiles are enforced via access tokens.