📋 Microsoft Entra Documentation Changes

Daily summary for changes since December 18th 2025, 7:21 PM PST

Report generated on December 19th 2025, 7:21 PM PST

📊 Summary

11
Total Commits
0
New Files
4
Modified Files
0
Deleted Files
6
Contributors

📝 Modified Documentation Files

Modified by Csilla Mulligan on Dec 19, 2025 11:17 AM
📖 View on learn.microsoft.com
+6 / -16 lines changed
Commit: Update how-to-configure-waf-integration.md
Changes:
Before
After
 
1. In the DNS console, for CNAME, enable the proxy setting.
 
:::image type="content" source="media/how-to-configure-cloudflare-integration/proxy-settings.png" alt-text="Screenshot of CNAME options." lightbox="media/how-to-configure-cloudflare-integration/proxy-settings-expanded.png":::
 
1. Under DNS, for **Proxy status**, select **Proxied**.
1. The status turns orange.
1. Select the **Protect apps from DDoS with WAF** tile by selecting **Get started**.
1. Under **Choose a WAF Provider** select **Cloudflare** and then select **Next**.
 
:::image type="content" source="media/how-to-configure-cloudflare-integration/choose-waf.png" alt-text="Screenshot of the choose WAF provider page.":::
 
1. Under **Configure Cloudflare WAF**, you can select an existing configuration or create a new one. If you're creating a new configuration, add the following information:
- **Configuration name**: A name for the WAF configuration.
- **API token**: The API token from your Cloudflare dashboard.
- **Zone ID**: The Zone ID for your domain, from your Cloudflare dashboard.
 
:::image type="content" source=" media/how-to-configure-cloudflare-integration/configure-waf-provider.png" alt-text="Screenshot of the configure WAF provider page.":::
 
1. Select **Next** to save your changes.
 
1. In the DNS console, for CNAME, enable the proxy setting.
 
:::image type="content" source="media/how-to-configure-cloudflare-integration/proxy-settings.png" alt-text="Screenshot of CNAME options." lightbox="media/how-to-configure-cloudflare-integration/proxy-settings-expanded.png":::
 
1. Under DNS, for **Proxy status**, select **Proxied**.
1. The status turns orange.
1. Select the **Protect apps from DDoS with WAF** tile by selecting **Get started**.
1. Under **Choose a WAF Provider** select **Cloudflare** and then select **Next**.
 
:::image type="content" source="media/how-to-configure-cloudflare-integration/choose-waf.png" alt-text="Screenshot of the choose WAF provider page.":::
 
1. Under **Configure Cloudflare WAF**, you can select an existing configuration or create a new one. If you're creating a new configuration, add the following information:
- **Configuration name**: A name for the WAF configuration.
- **API token**: The API token from your Cloudflare dashboard.
- **Zone ID**: The Zone ID for your domain, from your Cloudflare dashboard.
 
:::image type="content" source=" media/how-to-configure-cloudflare-integration/configure-waf-provider.png" alt-text="Screenshot of the configure WAF provider page.":::
 
1. Select **Next** to save your changes.
Modified by Ortagus Winfrey on Dec 19, 2025 11:33 AM
📖 View on learn.microsoft.com
+4 / -4 lines changed
Commit: Fixed sap link
Changes:
Before
After
---
title: include file
description: include file
author: billmath
ms.service: entra-id
ms.topic: include
ms.date: 08/06/2024
ms.author: billmath
ms.custom: include file
---
 
|[EM - Applications in access packages](~/id-governance/entitlement-management-access-package-resources.md#add-an-application-resource-role)||| :white_check_mark: | :white_check_mark: | :white_check_mark: |
|[EM - SharePoint sites in access packages](~/id-governance/entitlement-management-access-package-resources.md#add-a-sharepoint-site-resource-role)||| :white_check_mark: | :white_check_mark: | :white_check_mark: |
|[EM - Microsoft Entra Roles (Preview)](~/id-governance/entitlement-management-roles.md)|||| :white_check_mark: | :white_check_mark: |
|[EM - SAP Identity Access Governance (IAG) business roles (Preview)](~/id-governance/entitlement-management-access-package-resources.md)|||| :white_check_mark: | :white_check_mark: |
|[EM - API permissions in access packages](~/id-governance/entitlement-management-access-package-resources.md#add-an-api-permission-preview) - in [preview](~/id-governance/agent-id-governance-overview.md#license-requirements) as part of Microsoft Agent 365||||||
|**EM - Approval options**|**Free**|**Microsoft Entra ID P1**|**Microsoft Entra ID P2**|**Microsoft Entra ID Governance**| **Microsoft Entra Suite** |
|[EM - Multi-stage approvals with alternate approvers if no action is taken](~/id-governance/entitlement-management-access-package-approval-policy.md)||| :white_check_mark: | :white_check_mark: | :white_check_mark: |
---
title: include file
description: include file
author: owinfreyATL
ms.service: entra-id
ms.topic: include
ms.date: 12/19/2025
ms.author: owinfrey
ms.custom: include file
---
 
|[EM - Applications in access packages](~/id-governance/entitlement-management-access-package-resources.md#add-an-application-resource-role)||| :white_check_mark: | :white_check_mark: | :white_check_mark: |
|[EM - SharePoint sites in access packages](~/id-governance/entitlement-management-access-package-resources.md#add-a-sharepoint-site-resource-role)||| :white_check_mark: | :white_check_mark: | :white_check_mark: |
|[EM - Microsoft Entra Roles (Preview)](~/id-governance/entitlement-management-roles.md)|||| :white_check_mark: | :white_check_mark: |
|[EM - SAP Identity Access Governance (IAG) business roles (Preview)](~/id-governance/entitlement-management-sap-integration.md)|||| :white_check_mark: | :white_check_mark: |
|[EM - API permissions in access packages](~/id-governance/entitlement-management-access-package-resources.md#add-an-api-permission-preview) - in [preview](~/id-governance/agent-id-governance-overview.md#license-requirements) as part of Microsoft Agent 365||||||
|**EM - Approval options**|**Free**|**Microsoft Entra ID P1**|**Microsoft Entra ID P2**|**Microsoft Entra ID Governance**| **Microsoft Entra Suite** |
|[EM - Multi-stage approvals with alternate approvers if no action is taken](~/id-governance/entitlement-management-access-package-approval-policy.md)||| :white_check_mark: | :white_check_mark: | :white_check_mark: |
Modified by Csilla Mulligan on Dec 19, 2025 10:37 AM
📖 View on learn.microsoft.com
+2 / -2 lines changed
Commit: Fix image syntax in Akamai integration guide
Changes:
Before
After
1. Select the **Protect apps from DDoS with WAF** tile by selecting **Get started**.
1. Under **Choose a WAF Provider** select **Akamai** and then select **Next**.
 
:::image type="content" source="media\how-to-configure-akamai-integration\choose-waf-provider.png" alt-text="Screenshot of the choose WAF provider page.":::
 
1. Create an Akamai account. If you don't have an account yet, create and purchase one in the [Security Store](https://securitystore.microsoft.com/solutions/akamai-technologies.akamai_wapplusion_public). Then return here to complete the setup.
1. Under **Configure Akamai WAF**, you can select an existing configuration or create a new one. If you're creating a new configuration, add the following information:
1. Select **Verify domain** to start the verification process.
1. Select the custom URL domains you want to protect with Akamai WAF and then select **Verify**.
 
:::image type="content" source="media\how-to-configure-akamai-integration\verify-domain.png" alt-text="Screenshot of the verify domain page.":::
 
3. After verification, select **Done** to complete the process.
 
1. Select the **Protect apps from DDoS with WAF** tile by selecting **Get started**.
1. Under **Choose a WAF Provider** select **Akamai** and then select **Next**.
 
:::image type="content" source="media\how-to-configure-akamai-integration\choose-waf-provider.png" alt-text="Screenshot of the choose WAF provider page.":::
 
1. Create an Akamai account. If you don't have an account yet, create and purchase one in the [Security Store](https://securitystore.microsoft.com/solutions/akamai-technologies.akamai_wapplusion_public). Then return here to complete the setup.
1. Under **Configure Akamai WAF**, you can select an existing configuration or create a new one. If you're creating a new configuration, add the following information:
1. Select **Verify domain** to start the verification process.
1. Select the custom URL domains you want to protect with Akamai WAF and then select **Verify**.
 
:::image type="content" source="media\how-to-configure-akamai-integration\verify-domain.png" alt-text="Screenshot of the verify domain page.":::
 
3. After verification, select **Done** to complete the process.
 
Modified by Ortagus Winfrey on Dec 19, 2025 5:36 PM
📖 View on learn.microsoft.com
+1 / -1 lines changed
Commit: Updates to licensing article
Changes:
Before
After
## App provisioning
 
[!INCLUDE [App provisioning](../includes/licensing-app-provisioning.md)]
https://dev.azure.com/msft-skilling/Content/_workitems/edit/438678
## Authentication
 
[!INCLUDE [Authentication](../includes/licensing-authentication.md)]
## App provisioning
 
[!INCLUDE [App provisioning](../includes/licensing-app-provisioning.md)]
 
## Authentication
 
[!INCLUDE [Authentication](../includes/licensing-authentication.md)]