Microsoft Entra Global Secure Access
Security

Migrate Web Content Filtering Policies

In brief

The guide now presents the V1-to-V2 migration procedure and migration options as numbered steps.

What Entra admins need to know

The sequence is clearer to follow; no administrator action is required.

This editorial summary was generated by AI from the documentation changes. Verify important details in the full Microsoft Learn article.

Documentation change

The comparison below shows only the changed extract. Use the full-page view for complete context.

For each eligible security profile, migration performs the following actions:

    1. Creates a single new, enabled V2 web filtering policy.
    2. Adds each linked V1 policy as a rule under that V2 policy, preserving its destinations, action, and priority.
    3. Links the new V2 policy to the security profile and removes the V1 policy links, so there's no gap in enforcement.

Naming applied to migrated objects

Migration is delivered in two phases:

    1. Self-service migration: You migrate your own eligible security profiles by using the guided experience.
    2. Microsoft-managed migration: After V1 deprecation is announced and a timeline is published, Microsoft migrates any remaining profiles on your behalf, including attached and unattached V1 policies, so all tenants are transitioned to V2 with no loss of policy data and no interruption to enforcement.

Next steps

Daily Entra.News

Get daily email updates

Get a concise summary of the latest Microsoft Entra updates delivered straight to your inbox.

Loading the secure signup form…