Skip to content

Commit d44e4a6

Browse files
committed
update March entries
1 parent d9b49c0 commit d44e4a6

File tree

1 file changed

+7
-8
lines changed

1 file changed

+7
-8
lines changed

articles/active-directory/fundamentals/whats-new.md

Lines changed: 7 additions & 8 deletions
Original file line numberDiff line numberDiff line change
@@ -34,6 +34,7 @@ Azure AD receives improvements on an ongoing basis. To stay up to date with the
3434
This page is updated monthly, so revisit it regularly. If you're looking for items that are older than six months, you can find them in the [Archive for What's new in Azure Active Directory](whats-new-archive.md).
3535

3636
---
37+
3738
## March 2020
3839

3940
### Users with the default access role will be in scope for provisioning
@@ -66,13 +67,13 @@ The [emails](https://docs.microsoft.com/azure/active-directory/b2b/invitation-em
6667

6768
---
6869

69-
### Custom role creation for Azure RBAC, now in the Azure portal
70+
### HomeRealmDiscovery policy changes will appear in the audit logs
7071

71-
**Type:** New feature
72-
**Service category:** RBAC
73-
**Product capability:** Access Control
72+
**Type:** Fixed
73+
**Service category:** Audit
74+
**Product capability:** Monitoring & Reporting
7475

75-
We are happy to announce that you can now create, edit, or delete a custom role without ever leaving the Azure portal! In the past, this capability was only available through command line tools or the Azure Resource Manager API. For more information, see the [new portal-based documentation](https://docs.microsoft.com/azure/role-based-access-control/custom-roles-portal).
76+
We fixed a bug where changes to the [HomeRealmDiscovery policy](https://docs.microsoft.com/azure/active-directory/manage-apps/configure-authentication-for-federated-users-portal) were not included in the audit logs. You will now be able to see when and how the policy was changed, and by whom.
7677

7778
---
7879

@@ -151,7 +152,6 @@ Starting now, customers who have free tenants can access the [Azure AD sign-in l
151152
> [!NOTE]
152153
> Customers still need a premium license (Azure Active Directory Premium P1 or P2) to access the sign-in logs through Microsoft Graph API and Azure Monitor.
153154
154-
155155
---
156156

157157
### Deprecation of Directory-wide groups option from Groups General Settings on Azure portal
@@ -198,7 +198,7 @@ The following improvement actions will be added:
198198
- Require MFA for administrative roles
199199

200200
These new improvement actions will require registering your users or admins for MFA across your directory and establishing the right set of policies that fit your organizational needs. The main goal is to have flexibility while ensuring all your users and admins can authenticate with multiple factors or risk-based identity verification prompts. This can take the form of setting security defaults that let Microsoft decide when to challenge users for MFA, or having multiple policies that apply scoped decisions. As part of these improvement action updates, Baseline protection policies will no longer be included in scoring calculations. [Read more about what's coming in Microsoft Secure Score](https://docs.microsoft.com/microsoft-365/security/mtp/microsoft-secure-score-whats-coming?view=o365-worldwide).
201-
201+
202202
---
203203

204204
### Azure AD Domain Services SKU selection
@@ -211,7 +211,6 @@ We've heard feedback that Azure AD Domain Services customers want more flexibili
211211

212212
**No immediate customer action is required.** For existing customers, the dynamic tier that was in use on February 1, 2020, determines the new default tier. There is no pricing or performance impact as the result of this change. Going forward, Azure AD DS customers will need to evaluate performance requirements as their directory size and workload characteristics change. Switching between service tiers will continue to be a no-downtime operation, and we will no longer automatically move customers to new tiers based on the growth of their directory. Furthermore, there will be no price increases, and new pricing will align with our current billing model. For more information, see the [Azure AD DS SKUs documentation](https://docs.microsoft.com/azure/active-directory-domain-services/administration-concepts#azure-ad-ds-skus) and the [Azure AD Domain Services pricing page](https://azure.microsoft.com/pricing/details/active-directory-ds/).
213213

214-
215214
---
216215

217216
### New Federated Apps available in Azure AD App gallery - February 2020

0 commit comments

Comments
 (0)