You signed in with another tab or window. Reload to refresh your session.You signed out in another tab or window. Reload to refresh your session.You switched accounts on another tab or window. Reload to refresh your session.Dismiss alert
Privileged Identity Management (PIM) role activation has been expanded to the Billing and AD extensions in the Azure portal. Shortcuts have been added to Subscriptions (billing) and Access Control (AD) to allow users to activate PIM roles directly from these settings. From the Subscriptions settings, select **View eligible subscriptions** in the horizontal command menu to check your eligible, active, and expired assignments. From there, you can activate an eligible assignment in the same pane. In Access control (IAM) for a resource, you can now select **View my access** to see your currently active and eligible role assignments and activate directly. By integrating PIM capabilities into different Azure portal blades, this new feature allows users to gain temporary access to view or edit subscriptions and resources more easily.
41
+
42
+
43
+
For more information Microsoft cloud settings, see: [Activate my Azure resource roles in Privileged Identity Management](../privileged-identity-management/pim-resource-roles-activate-your-roles.md).
44
+
45
+
---
46
+
47
+
### General Availability - Follow Azure AD best practices with recommendations
48
+
49
+
**Type:** New feature
50
+
**Service category:** Reporting
51
+
**Product capability:** Monitoring & Reporting
52
+
53
+
Azure AD recommendations help you improve your tenant posture by surfacing opportunities to implement best practices. On a daily basis, Azure AD analyzes the configuration of your tenant. During this analysis, Azure AD compares the data of a recommendation with the actual configuration of your tenant. If a recommendation is flagged as applicable to your tenant, the recommendation appears in the Recommendations section of the Azure AD Overview.
54
+
55
+
This release includes our first 3 recommendations:
56
+
57
+
- Convert from per-user MFA to Conditional Access MFA
58
+
- Migration applications from AD FS to Azure AD
59
+
- Minimize MFA prompts from known devices
60
+
61
+
62
+
For more information, see:
63
+
64
+
-[What are Azure Active Directory recommendations?](../reports-monitoring/overview-recommendations.md)
65
+
-[Use the Azure AD recommendations API to implement Azure AD best practices for your tenant](/graph/api/resources/recommendations-api-overview)
66
+
67
+
---
68
+
69
+
### Public Preview - Azure AD PIM + Conditional Access integration
Now you can require users who are eligible for a role to satisfy Conditional Access policy requirements for activation: use specific authentication method enforced through Authentication Strengths, activate from Intune compliant device, comply with Terms of Use, and use 3rd party MFA and satisfy location requirements.
76
+
77
+
For more information, see: [Configure Azure AD role settings in Privileged Identity Management](../privileged-identity-management/pim-how-to-change-default-settings.md).
78
+
79
+
80
+
---
81
+
82
+
### General Availability - More information on why a sign-in was flagged as "unfamiliar"
Unfamiliar sign-in properties risk detection now provides risk reasons as to which properties are unfamiliar for customers to better investigate that risk.
89
+
90
+
Identity Protection now surfaces the unfamiliar properties in the Azure portal on UX and in API as *Additional Info* with a user-friendly description explaining that *the following properties are unfamiliar for this sign-in of the given user*.
91
+
92
+
There's no additional work to enable this feature, the unfamiliar properties are shown by default. For more information, see: [Sign-in risk](../identity-protection/concept-identity-protection-risks.md).
93
+
94
+
95
+
---
96
+
97
+
### General Availability - New Federated Apps available in Azure AD Application gallery - February 2023
98
+
99
+
100
+
101
+
**Type:** New feature
102
+
**Service category:** Enterprise Apps
103
+
**Product capability:** 3rd Party Integration
104
+
105
+
In February 2023 we've added the following 10 new applications in our App gallery with Federation support:
You can also find the documentation of all the applications from here https://aka.ms/AppsTutorial.
111
+
112
+
For listing your application in the Azure AD app gallery, read the details here https://aka.ms/AzureADAppRequest
113
+
114
+
---
115
+
116
+
### Public Preview - New provisioning connectors in the Azure AD Application Gallery - February 2023
117
+
118
+
**Type:** New feature
119
+
**Service category:** App Provisioning
120
+
**Product capability:** 3rd Party Integration
121
+
122
+
123
+
We've added the following new applications in our App gallery with Provisioning support. You can now automate creating, updating, and deleting of user accounts for these newly integrated apps:
For more information about how to better secure your organization by using automated user account provisioning, see: [Automate user provisioning to SaaS applications with Azure AD](../app-provisioning/user-provisioning.md).
129
+
130
+
131
+
---
132
+
133
+
32
134
## January 2023
33
135
34
136
### Public Preview - Cross-tenant synchronization
@@ -943,7 +1045,7 @@ Identity Protection risk detections (alerts) are now also available in Microsoft
943
1045
944
1046
In August 2022, we've added the following 40 new applications in our App gallery with Federation support
0 commit comments