Microsoft Entra ID Update Version May 2026
Your rating
Rate update installation process
Risk factor
A total of 1 users have rated this update.
AI enhanced content
Update Summary
New preview and GA capabilities across device management, groups, provisioning, MFA, and governance. Highlights include soft-delete for device objects, sensitivity labels for security groups, cross-tenant group synchronization, and expanded passkey support.
Update Details
Security
- System-preferred authentication now extends to the first factor in Microsoft-managed configurations, helping prioritize stronger, phishing-resistant methods such as passkeys.
- Passkeys (FIDO2) are now supported in Microsoft Entra ID registration campaigns, enabling admins to nudge users toward stronger authentication.
- Expanded passkey policy storage and increased passkey profile limits help organizations configure and adopt passkeys at scale.
- Sensitivity labels can now be applied to Microsoft Entra security groups to govern settings such as guest access.
Bug Fixes
- The redesigned Organizations page resolves a longstanding issue where users were unable to successfully leave an organization.
- Device soft-delete reduces the impact of accidental deletions by allowing device objects to be restored within a retention period.
New Features
- Public preview for soft-delete of Microsoft Entra device objects, preserving device identity and security artifacts for recovery.
- Public preview for applying Microsoft Purview sensitivity labels to Microsoft Entra cloud security groups.
- General availability of account discovery for connected applications in Microsoft Entra ID Governance.
- General availability of cross-tenant group synchronization for security groups across Microsoft Entra tenants.
- General availability of redesigned My Account pages for Devices, Personal Info, and Organizations.
- Public preview for automating set or clear user attribute values in Lifecycle Workflows.
- Public preview for governing Azure role assignments through Entitlement Management access packages.
- General availability of High Scale Compatibility (HSC) mode for Microsoft Entra External ID.
- General availability of managing Agent ID sponsorship lifecycle with Lifecycle Workflows.
Hints
- Device soft-delete supports Microsoft Entra joined, registered, and hybrid joined devices.
- Account discovery requires a Microsoft Entra ID Governance or Microsoft Entra Suite license.
- Cross-tenant group synchronization requires Microsoft Entra ID Governance licenses; existing user synchronization licensing remains unchanged.
- The redesigned My Account pages will be available to all Microsoft Entra ID customers by end of June 2026, and no admin action is required.
- System-preferred authentication changes apply only to Microsoft-managed configurations and rollout completes by the end of June.
- The passkey registration campaign rollout is optimized for users in a passkey profile without restrictions.
- Expanded passkey policy storage allocates a dedicated 20-KB limit to the FIDO2 policy and increases passkey profiles per tenant from 3 to 10.
- HSC mode is intended for organizations migrating from Azure AD B2C and may limit some advanced customization capabilities.
Links
-
Account discovery documentation
https://aka.ms/accountDiscoveryDocumentation
-
Cross-tenant synchronization overview
https://learn.microsoft.com/entra/identity/multi-tenant-organizations/cross-tenant-synchronization-overview
Product Information
Vendor: Microsoft
Product: Entra ID
Product type: Other
Platform: Web
Version: May 2026
Vendor release date: Jun 2, 2026
Original release notes: View on vendor site
Published on updatealert.io: Jun 2, 2026
Description: Identity and access management platform for authentication and access control.