Search

2022 CW 35 Microsoft 365 Message Center changes

from 08/22/2022 to 08/28/2022

365 Office 365 Message Center Items were changed and 18 Office 365 Message Center Items were added

Please note: Only common Message Center messages are in this list you should always check your Message Center for additional messages

Subscibe to cloudscout.one Enterprise plan to get individual reports for your Office 365 tenant

Changes

MC End Time changes

MC ID MC Title Old Value New Value MC Action required by
MC320163 (Updated) Updating default tenant-level tag management settings 10/31/2022 08:00:00 2022-09-09T09:00:00Z N/A
MC357317 (Updated) OneDrive iOS: New information architecture 09/09/2022 09:00:00 2022-10-02T09:00:00Z N/A
MC383873 (Updated) Expansion for Alert Generation for Alert Policy ‘A Potentially Malicious URL Click was Detected’ 10/17/2022 09:00:00 2022-11-24T08:00:00Z N/A
MC388232 (Updated) Microsoft Purview Information Protection: Configure Display Colors for Sensitivity Labels (preview) 09/23/2022 09:00:00 2022-11-21T08:00:00Z N/A
MC397438 (Updated) Microsoft Purview | DLP Document Fingerprinting support for additional workloads (preview) 10/17/2022 09:00:00 2023-01-31T08:00:00Z N/A
MC399073 (Updated) Microsoft Teams: Automatically end stale Teams meetings 12/31/2022 09:00:00 2023-04-24T10:00:00Z N/A
MC399074 (Updated) Enable Q&A in Teams Meetings via Meeting Options 08/31/2022 09:00:00 2022-12-31T08:00:00Z N/A
MC408435 (Updated) Microsoft Teams: Start a Teams Chat with Distribution Groups, Mail-Enabled Security Groups, and O365 Groups 09/30/2022 09:00:00 2022-11-30T08:00:00Z N/A
MC408437 (Updated) Microsoft Viva: Recommendations to Send Praise in Viva Insights 09/20/2022 09:00:00 2022-10-20T09:00:00Z N/A
MC414684 Introducing Widget notifications 08/16/2023 20:02:51 2023-08-23T23:37:50Z N/A

MC Messages changes

MC ID MC Title Old Value New Value MC Action required by
MC320163 (Updated) Updating default tenant-level tag management settings Updated June 10, 2022: We have updated the rollout timelines below. Thank you for your patience.

We’re updating the default tag management settings based on customer feedback. The new defaults eliminate the need for team members to ask owners to create or edit tags on their behalf.

This message is associated with Microsoft 365 Roadmap ID 88318

[Key points:]

Timing: This change will start to rollout in mid-August (previously late May), and we expect to complete the rollout by late September (previously early July).

Roll-out: tenant level

Control type: Team owner and team member control

Action: review and assess for appropriate experience

Updated August 26, 2022: Based on learnings from our early rings, we have made the decision to make additional changes before we proceed with the rollout. We will deliver a new Message center post once we re-start the rollout. Thank you for your patience.

We’re updating the default tag management settings based on customer feedback. The new defaults eliminate the need for team members to ask owners to create or edit tags on their behalf.

This message is associated with Microsoft 365 Roadmap ID 88318

[Key points:]

Timing: We will communicate via Message center when we are ready to proceed.

Roll-out: tenant level

Control type: Team owner and team member control

Action: review and assess for appropriate experience

N/A
MC357317 (Updated) OneDrive iOS: New information architecture Updated July 29, 2022: We have updated the rollout timeline below. Thank you for your patience.

This feature has started rolling out and we ask you to pardon that we did not provide adequate advance notice as is our customer commitment to you. This release adds a new bottom sheet menu to OneDrive for iOS to make options like share, annotations, delete, and bookmark easier to find.

This message is associated with Microsoft 365 Roadmap ID 85571

[When this will happen:]

Standard (select users and entire org): We began rolling this out in early March and expect to complete rollout in early August (previously late July).
Updated August 22, 2022: We have updated the rollout timeline below. Thank you for your patience.

This feature has started rolling out and we ask you to pardon that we did not provide adequate advance notice as is our customer commitment to you. This release adds a new bottom sheet menu to OneDrive for iOS to make options like share, annotations, delete, and bookmark easier to find.

This message is associated with Microsoft 365 Roadmap ID 85571

[When this will happen:]

Standard (select users and entire org): We began rolling this out in early March and expect to complete rollout in late August (previously early August).
N/A
MC383873 (Updated) Expansion for Alert Generation for Alert Policy ‘A Potentially Malicious URL Click was Detected’ Updated July 25, 2022: We have updated the rollout timeline below. Thank you for your patience.

The current default alert policy named 'A potentially malicious URL click was detected' generates an alert on URL clicks for specific scenarios. One of the primary scenarios is called verdict change. The URL in the email was identified as "good" when it was delivered to the Inbox, however, when the user clicked the URL, Time of Click validation identified the URL as "bad" (as conditions / actions of the URL changed since email delivery). This verdict flip now describes the previous user clicks as clicks on malicious URLs, however, no alert is currently generated for the previous clicks.

We are expanding on this scenario to identify any user clicks on URLs going back 48 hours from the time of the verdict change. This reevaluation gives SecOps teams more insight into the historic clicks on malicious URLs and takes the appropriate actions.

This message is associated with Microsoft 365 Roadmap ID 93300

[When this will happen:]

This update will begin rollout in mid-August (previously mid-July) and complete deployment by mid-September (previously late August).

Updated August 25, 2022: We have updated the rollout timeline below. Thank you for your patience.

The current default alert policy named 'A potentially malicious URL click was detected' generates an alert on URL clicks for specific scenarios. One of the primary scenarios is called verdict change. The URL in the email was identified as "good" when it was delivered to the Inbox, however, when the user clicked the URL, Time of Click validation identified the URL as "bad" (as conditions / actions of the URL changed since email delivery). This verdict flip now describes the previous user clicks as clicks on malicious URLs, however, no alert is currently generated for the previous clicks.

We are expanding on this scenario to identify any user clicks on URLs going back 48 hours from the time of the verdict change. This reevaluation gives SecOps teams more insight into the historic clicks on malicious URLs and takes the appropriate actions.

This message is associated with Microsoft 365 Roadmap ID 93300

[When this will happen:]

This update will begin rollout in mid-September (previously mid-August) and complete deployment by mid-October (previously mid-September).

N/A
MC388232 (Updated) Microsoft Purview Information Protection: Configure Display Colors for Sensitivity Labels (preview) Updated June 14, 2022: We have updated the rollout timeline below. Thank you for your patience.

We're simplifying the policy management experience and enhancing the user experience for seeing and selecting sensitivity labels within Office apps by enabling display color configuration for labels.

This message is associated with Microsoft 365 Roadmap IDs 88517 and 93217.

[When this will happen:]

Public preview: will begin rolling out in mid-July (previously mid-June) and is expected to be complete by mid-August (previously mid-July).
Updated August 25, 2022: We have updated the rollout timeline below. Thank you for your patience.

We're simplifying the policy management experience and enhancing the user experience for seeing and selecting sensitivity labels within Office apps by enabling display color configuration for labels.

This message is associated with Microsoft 365 Roadmap IDs 88517 and 93217.

[When this will happen:]

Public preview: will begin rolling out in mid-September (previously mid-July) and is expected to be complete by mid-October (previously mid-August).
N/A
MC394844 (Updated) Stream on SharePoint: Inline playback of videos in Hero web part Updated August 2, 2022: We have updated the rollout timeline below. Thank you for your patience.

When users click to play a video in the Hero web part section of a SharePoint site, the video will play inline. This feature allows users to watch a video without being taken off the SharePoint page and allows users to browse or scroll through the other contents of the page while the video plays.

This message is associated with Microsoft 365 Roadmap ID 93351

[When this will happen:]

We will begin rolling out by mid-July and expect to complete by mid-August 2022 (previously late July 2022).

Note: Some users may see this feature before other users within your organization.
Updated August 23, 2022: We have updated the rollout timeline below. Thank you for your patience.

When users click to play a video in the Hero web part section of a SharePoint site, the video will play inline. This feature allows users to watch a video without being taken off the SharePoint page and allows users to browse or scroll through the other contents of the page while the video plays.

This message is associated with Microsoft 365 Roadmap ID 93351

[When this will happen:]

We will begin rolling out by mid-July and expect to complete by early September 2022 (previously mid-August 2022).

Note: Some users may see this feature before other users within your organization.
N/A
MC397438 (Updated) Microsoft Purview | DLP Document Fingerprinting support for additional workloads (preview) Updated July 25, 2022: We have updated the rollout timeline below. Thank you for your patience.

Coming soon to public preview, we're extending Document Fingerprinting SITs in DLP policies to include support for additional workloads.

This message is associated with Microsoft 365 Roadmap ID 93280.

[When this will happen:]

Rollout will begin in mid-August (previously late July) and is expected to be complete by mid-September (previously late August).

Updated August 23, 2022: We have updated the rollout timeline below. Thank you for your patience.

Coming soon to public preview, we're extending Document Fingerprinting SITs in DLP policies to include support for additional workloads.

This message is associated with Microsoft 365 Roadmap ID 93280.

[When this will happen:]

Rollout will begin in early December (previously mid-August) and is expected to be complete by late December (previously mid-September).

N/A
MC399073 (Updated) Microsoft Teams: Automatically end stale Teams meetings Updated August 10, 2022: We have updated the rollout timeline below. Thank you for your patience.

Microsoft Teams is enabled with a new feature that will allow meetings to automatically end if they're identified as stale. If a user is the sole participant in a meeting 10 minutes after the scheduled meeting end time has passed, then a dialog will appear in the call prompting them to end the call or dismiss the notification. If no action is taken on the dialog within 3 minutes, the meeting will automatically end.

If there is more than 1 user on the call and/or the scheduled meeting end time has not passed yet, then the feature will not trigger.

If the user dismisses the notification, they will not see it again for the same meeting, and it will not be at risk to automatically end anymore.

This message is associated with Microsoft 365 Roadmap ID 96710

[When this will happen:]

We will begin rolling out to Production in mid-September 2022 (previously early August 2022) and expect to complete by late October (previously early September).

We will begin rolling out to GCC, GCC-H, and DoD in late October (previously late September) and expect to complete by late November (previously late October).

Updated August 25, 2022: We have updated the rollout timeline below. Thank you for your patience.

Microsoft Teams is enabled with a new feature that will allow meetings to automatically end if they're identified as stale. If a user is the sole participant in a meeting 10 minutes after the scheduled meeting end time has passed, then a dialog will appear in the call prompting them to end the call or dismiss the notification. If no action is taken on the dialog within 3 minutes, the meeting will automatically end.

If there is more than 1 user on the call and/or the scheduled meeting end time has not passed yet, then the feature will not trigger.

If the user dismisses the notification, they will not see it again for the same meeting, and it will not be at risk to automatically end anymore.

This message is associated with Microsoft 365 Roadmap ID 96710

[When this will happen:]

We will begin rolling out to Production in early December (previously mid-September 2022) and expect to complete by mid-December (previously late October).

We will begin rolling out to GCC, GCC-H, and DoD in mid-January (previously late October) and expect to complete by mid-March (previously late November).

N/A
MC399074 (Updated) Enable Q&A in Teams Meetings via Meeting Options Teams meetings organizers can soon set up Q&A in their meetings via Meeting Options. Q&A is perfect for large or structured meetings – such as trainings, town hall, all hands and more.

This message is associated with Microsoft 365 Roadmap ID 97020

[When this will happen:]

We expect to start rolling out in mid-July and expect to complete rollout by late July.

Updated August 23, 2022: We have updated this message to ensure visibility. The content below has not changed.

Teams meetings organizers can soon set up Q&A in their meetings via Meeting Options. Q&A is perfect for large or structured meetings – such as trainings, town hall, all hands and more.

This message is associated with Microsoft 365 Roadmap ID 97020

[When this will happen:]

We expect to start rolling out in mid-July and expect to complete rollout by late July.

N/A
MC408435 (Updated) Microsoft Teams: Start a Teams Chat with Distribution Groups, Mail-Enabled Security Groups, and O365 Groups You will now be able to start a Teams Chat with Distribution Groups, Mail-enabled Security Groups, and O365 Groups. This feature will respect the limits on members in a group chat, currently set to 250 members.

Organizations rely on Distribution Lists (DLs) as a tool to create groups of users that mirror organizational knowledge and workflows. Bringing this awareness to target audiences for specific content will enhance the core Teams experience. Allowing our customers to leverage DLs can increase workflow efficiency and bridge the gap between legacy knowledge of organization structure and a new Teams structure.

This message is associated with Microsoft 365 Roadmap ID 62354

[When this will happen:]

We will begin rollout in mid-August and expect to complete rollout by late August.

Updated August 25, 2022: We have updated the rollout timeline below. Thank you for your patience.

You will now be able to start a Teams Chat with Distribution Groups, Mail-enabled Security Groups, and O365 Groups. This feature will respect the limits on members in a group chat, currently set to 250 members.

Organizations rely on Distribution Lists (DLs) as a tool to create groups of users that mirror organizational knowledge and workflows. Bringing this awareness to target audiences for specific content will enhance the core Teams experience. Allowing our customers to leverage DLs can increase workflow efficiency and bridge the gap between legacy knowledge of organization structure and a new Teams structure.

This message is associated with Microsoft 365 Roadmap ID 62354

[When this will happen:]

We will begin rollout in late Septemer (previously mid-August) and expect to complete rollout by late October (previously late August).

N/A
MC408437 (Updated) Microsoft Viva: Recommendations to Send Praise in Viva Insights Praise in Microsoft Teams is designed to appreciate the effort that goes into the wide-ranging, collaborative work that Teams users do. Users can send praise to their colleagues through the messaging extension pinned to the Teams messaging bar or through the Microsoft Viva Insights app in Teams. For both, admins can use the Microsoft Teams admin center to enable/disable Praise.

Praise Recommendations is an enhancement coming to the Praise page in the Viva Insights app in Teams for all users with Exchange online mailboxes. Recommendations provide pre-populated suggestions to send praise based on signals such as collaboration activity.

This message is associated with Microsoft 365 Roadmap ID 93421

[When this will happen:]

Standard Release: We will begin rolling out in early August and expect to complete by mid-August.

Updated August 25, 2022: We have updated the rollout timeline below. Thank you for your patience.

Praise in Microsoft Teams is designed to appreciate the effort that goes into the wide-ranging, collaborative work that Teams users do. Users can send praise to their colleagues through the messaging extension pinned to the Teams messaging bar or through the Microsoft Viva Insights app in Teams. For both, admins can use the Microsoft Teams admin center to enable/disable Praise.

Praise Recommendations is an enhancement coming to the Praise page in the Viva Insights app in Teams for all users with Exchange online mailboxes. Recommendations provide pre-populated suggestions to send praise based on signals such as collaboration activity.

This message is associated with Microsoft 365 Roadmap ID 93421

[When this will happen:]

Standard Release: We will begin rolling out in late August (previously early August) and expect to complete by mid-September (previously mid-August).

N/A
MC412836 (Updated) Classic Global term store retirement – update In mid-November 2021 (MC289683), we announced the rollout of the modern experience of the global term store for Syntex & SharePoint admin center. Aligning with our modernization efforts, we will start retiring the classic experience of the term store and recommend all our users to use the modern term store

[When this will happen]

Targeted release: This is expected to start in early September and continue till mid-September

Production Release: This is expected to start in mid-September and continue till early October.

Updated August 23, 2022: We have updated the rollout timeline below. Thank you for your patience.

In mid-November 2021 (MC289683), we announced the rollout of the modern experience of the global term store for Syntex & SharePoint admin center. Aligning with our modernization efforts, we will start retiring the classic experience of the term store and recommend all our users to use the modern term store

[When this will happen]

Targeted release: This is expected to start in late October (previously early September) and continue till mid-November (previously mid-September).

Production Release: This is expected to start in mid-November (previously mid-September) and continue till late December (previously early October).

N/A
MC414684 Introducing Widget notifications Windows 11 is bringing you more live content on your taskbar. This change allows users to see live updates from other widgets such as sports, finance, and breaking news. Their taskbar should show the weather widget most of the time, but when something important happens related to one of their other widgets, they may see an announcement from that widget on their taskbar.

When will this happen:

This feature is available starting August 4, 2022.

Note: If users have the latest version of Windows but still don’t see all widgets features, it may be because some features are being rolled out to customers over several weeks and aren't available to all customers at once

Last updated: 8/19/22

Windows 11 is bringing you more live content on your taskbar. This change allows users to see live updates from other widgets such as sports, finance, and breaking news. Their taskbar should show the weather widget most of the time, but when something important happens related to one of their other widgets, they may see an announcement from that widget on their taskbar.

At this time, Widget notifications cannot be turned off. Microsoft is constantly listening and learning, and welcomes customer feedback that helps shape Windows.

When will this happen:

This feature is available starting August 4, 2022.

Note: If users have the latest version of Windows but still don’t see all widgets features, it may be because some features are being rolled out to customers over several weeks and aren't available to all customers at once

N/A

MC MessageTagNames changes

MC ID MC Title Old Value New Value MC Action required by
MC399074 (Updated) Enable Q&A in Teams Meetings via Meeting Options Feature update, User impact, Admin impact Updated message, Feature update, User impact, Admin impact N/A
MC408437 (Updated) Microsoft Viva: Recommendations to Send Praise in Viva Insights New feature, User impact Updated message, New feature, User impact N/A
MC412836 (Updated) Classic Global term store retirement – update Admin impact, Retirement Updated message, Admin impact, Retirement N/A

MC prepare changes

MC ID MC Title Old Value New Value MC Action required by
MC248201 (Updated) Quick Create – Easily Create Power BI Reports from Lists This feature is default on, but can turned off from the Power BI Admin Portal under Tenant settings.

If this feature is disabled for tenants, users will continue to see the Power BI submenu in the List command bar, but any attempt to create or view a report will result in an error page.

Note:

Certain complex column types in Lists such as Person, Location, Rich Text, Multi-select Choice, and Image are not currently supported when the Power BI report is autogenerated.

Learn more:

View and manage Power BI user licenses

Get started creating in the Power BI service

Quickly create reports in the Power BI service

Enable or disable self-service sign-up and purchasing

https://docs.microsoft.com/en-us/power-bi/create-reports/service-interact-with-a-report-in-editing-view

https://docs.microsoft.com/power-bi/admin/service-admin-disable-self-service

https://docs.microsoft.com/power-bi/admin/service-admin-manage-licenses

https://docs.microsoft.com/power-bi/admin/service-admin-portal

https://docs.microsoft.com/power-bi/fundamentals/service-get-started

https://powerbi.microsoft.com/blog/quickly-create-reports-power-bi-service/

https://powerbi.microsoft.com/power-bi-pro/

https://www.microsoft.com/microsoft-365/enterprise/e5

https://www.microsoft.com/microsoft-365/roadmap?filters=&searchterms=72175%2C

https://www.microsoft.com/microsoft-365/roadmap?rtc=1%26filters=&searchterms=93221
This feature is default on, but can turned off from the Power BI Admin Portal under Tenant settings.

If this feature is disabled for tenants, users will continue to see the Power BI submenu in the List command bar, but any attempt to create or view a report will result in an error page.

Note:

Certain complex column types in Lists such as Person, Location, Rich Text, Multi-select Choice, and Image are not currently supported when the Power BI report is autogenerated.

Learn more:

View and manage Power BI user licenses

Get started creating in the Power BI service

Quickly create reports in the Power BI service

Enable or disable self-service sign-up and purchasing

ps://docs.microsoft.com/en-us/power-bi/create-reports/service-interact-with-a-report-in-editing-vi

ps://docs.microsoft.com/power-bi/admin/service-admin-disable-self-ser

ps://docs.microsoft.com/power-bi/admin/service-admin-manage-lic

ps://docs.microsoft.com/power-bi/admin/service-admin-portal

ps://docs.microsoft.com/power-bi/fundamentals/servic

ps://powerbi.microsoft.com/blog/quickly-create-reports-power-bi-service/

ps://powerbi.microsoft.com/power-bi-pro/

ps://www.microsoft.com/microsoft-365/enterprise/e5

ps://www.microsoft.com/microsoft-365/roadmap?filters=&searchterms=72175

ps://www.microsoft.com/microsoft-365/roadmap?rtc=1%26filters=&searchterms=9322
N/A
MC267581 (Updated) Microsoft Lists: Custom list templates You might want to notify your users about this new capability and update your training and documentation as appropriate.

Learn more:

PowerShell Cmdlets documentation for custom list templates

Creating custom list templates

https://docs.microsoft.com/powershell/module/sharepoint-online/add-spositescript?view=sharepoint-ps

https://docs.microsoft.com/powershell/module/sharepoint-online/get-spositescriptfromlist?view=sharepoint-ps

https://docs.microsoft.com/powershell/module/sharepoint-online/grant-spositedesignrights?view=sharepoint-ps

https://docs.microsoft.com/sharepoint/dev/declarative-customization/site-design-overview

https://docs.microsoft.com/sharepoint/lists-custom-template

https://www.microsoft.com/microsoft-365/roadmap?filters=&searchterms=70753
You might want to notify your users about this new capability and update your training and documentation as appropriate.

Learn more:

PowerShell Cmdlets documentation for custom list templates

Creating custom list templates

ps://docs.microsoft.com/powershell/module/sharepoint-online/add-spositescript?view=sharepoint-p

ps://docs.microsoft.com/powershell/module/sharepoint-online/get-spositescriptfromlist?view=sharepoint-p

ps://docs.microsoft.com/powershell/module/sharepoint-online/grant-spositedesignrights?view=sharepoint-p

ps://docs.microsoft.com/sharepoint/dev/declarative-customization/site-design-overvi

ps://docs.microsoft.com/sharepoint/lists-custom-templ

ps://www.microsoft.com/microsoft-365/roadmap?filters=&searchterms=70753
N/A
MC279469 (Updated) 1:1 VOIP and PSTN call recording and transcription in Calls App V2 Teams admins will need to make sure that AllowCloudRecordingForCalls and AllowTranscriptionForCalling is turned on to enable recording and transcription of 1:1 VOIP and PSTN calls.

https://www.microsoft.com/microsoft-365/roadmap?filters=&searchterms=83497
Teams admins will need to make sure that AllowCloudRecordingForCalls and AllowTranscriptionForCalling is turned on to enable recording and transcription of 1:1 VOIP and PSTN calls.

ps://www.microsoft.com/microsoft-365/roadmap?filters=&searchterms=83497
N/A
MC281145 Retirement of (Azure AD) Graph and license assignment operations and updates to license management APIs and PowerShell https://docs.microsoft.com/graph/api/user-assignlicense?view=graph-rest-1.0&tabs=http

https://docs.microsoft.com/graph/migrate-azure-ad-graph-faq

https://docs.microsoft.com/graph/migrate-azure-ad-graph-overview

https://docs.microsoft.com/powershell/azure/active-directory/overview?view=azureadps-2.0

https://docs.microsoft.com/powershell/microsoftgraph/migration-steps?view=graph-powershell-1.0

https://docs.microsoft.com/powershell/microsoftgraph/migration-steps?view=graph-powershell-beta

https://docs.microsoft.com/powershell/module/microsoft.graph.users.actions/set-mguserlicense?view=graph-powershell-1.0

https://docs.microsoft.com/powershell/module/msonline/?view=azureadps-1.0

https://techcommunity.microsoft.com/t5/azure-active-directory-identity/automate-and-manage-azure-ad-tasks-at-scale-with-the-microsoft/ba-p/1942489

https://techcommunity.microsoft.com/t5/azure-active-directory-identity/migrate-your-apps-to-access-the-license-managements-apis-from/ba-p/2464366

https://techcommunity.microsoft.com/t5/azure-active-directory-identity/update-your-applications-to-use-microsoft-authentication-library/ba-p/1257363
ps://docs.microsoft.com/graph/api/user-assignlicense?view=graph-rest-1.0&tab

ps://docs.microsoft.com/graph/migrate-azure-ad-graph-faq

ps://docs.microsoft.com/graph/migrate-azure-ad-graph-overvi

ps://docs.microsoft.com/powershell/azure/active-directory/overview?view=azureadp

ps://docs.microsoft.com/powershell/microsoftgraph/migration-steps?view=graph-powershell

ps://docs.microsoft.com/powershell/microsoftgraph/migration-steps?view=graph-powershell-b

ps://docs.microsoft.com/powershell/module/microsoft.graph.users.actions/set-mguserlicense?view=graph-powershell

ps://docs.microsoft.com/powershell/module/msonline/?view=azureadp

ps://techcommunity.microsoft.com/t5/azure-active-directory-identity/automate-and-manage-azure-ad-tasks-at-scale-with-the-microsoft/ba-p/1942489

ps://techcommunity.microsoft.com/t5/azure-active-directory-identity/migrate-your-apps-to-access-the-license-managements-apis-from/ba-p/2464366

ps://techcommunity.microsoft.com/t5/azure-active-directory-identity/update-your-applications-to-use-microsoft-authentication-library/ba-p/1257363
08/26/2022
MC281838 Join the Security Update Validation Program https://techcommunity.microsoft.com/t5/windows-it-pro-blog/security-update-validation-program-the-early-bird-tests-the-worm/ba-p/2569392 ps://techcommunity.microsoft.com/t5/windows-it-pro-blog/security-update-validation-program-the-early-bird-tests-the-worm/ba-p/256939 N/A
MC282047 Windows 11: General availability on October 5, 2021 https://blogs.windows.com/windowsexperience/?p=176111 ps://blogs.windows.com/windowsexperience/?p=176 N/A
MC282441 Windows Server 2022 is now available Here are ways to get started:

Windows Server Evaluation Center offers options to try Windows Server in Azure or to download.

Windows Server on Azure Marketplace for running Virtual Machines on Azure.

Volume Licensing Service Center, where Volume License customers can download Windows Server 2022.

Refer to the pricing page for Windows Server 2022 editions and pricing details.

For more details, read the official announcement: Windows Server 2022 now generally available

For additional guidance, please see the following resources:

The Windows Server preview blog and tech documentation for deeper details on Windows Server 2022 preview features.

The complimentary digital event Windows Server Summit on September 16, 2021, for more information about Windows Server 2022.

https://aka.ms/smbcompression

https://aka.ms/ws2022gacontainerblog

https://azure.microsoft.com/services/azure-arc/

https://azuremarketplace.microsoft.com/marketplace/apps/microsoftwindowsserver.windowsserver?tab=Overview

https://cloudblogs.microsoft.com/windowsserver/?p=15165&preview=1&_ppp=74d7b6cd69

https://cloudblogs.microsoft.com/windowsserver/2021/03/02/announcing-windows-server-2022-now-in-preview/

https://docs.microsoft.com/windows-server/storage/file-server/smb-security

https://docs.microsoft.com/windows-server/windows-server-2022/get-started/whats-new

https://info.microsoft.com/ww-landing-windows-server-summit.html

https://www.microsoft.com/cloud-platform/windows-server-pricing

https://www.microsoft.com/evalcenter/evaluate-windows-server-2022

https://www.microsoft.com/Licensing/servicecenter/default.aspx

https://www.microsoft.com/security/blog/2021/03/02/microsoft-brings-advanced-hardware-security-to-server-and-edge-with-secured-core/

https://www.microsoft.com/windows-server/windows-admin-center?rtc=1

Here are ways to get started:

Windows Server Evaluation Center offers options to try Windows Server in Azure or to download.

Windows Server on Azure Marketplace for running Virtual Machines on Azure.

Volume Licensing Service Center, where Volume License customers can download Windows Server 2022.

Refer to the pricing page for Windows Server 2022 editions and pricing details.

For more details, read the official announcement: Windows Server 2022 now generally available

For additional guidance, please see the following resources:

The Windows Server preview blog and tech documentation for deeper details on Windows Server 2022 preview features.

The complimentary digital event Windows Server Summit on September 16, 2021, for more information about Windows Server 2022.

ps://aka.ms/smbcompr

ps://aka.ms/ws2022gacontainerbl

ps://azure.microsoft.com/services/azure-arc/

ps://azuremarketplace.microsoft.com/marketplace/apps/microsoftwindowsserver.windowsserver?tab=Overvi

ps://cloudblogs.microsoft.com/windowsserver/?p=15165&preview=1&_ppp=74d7b6cd69

ps://cloudblogs.microsoft.com/windowsserver/2021/03/02/announcing-windows-server-2022-now-in-preview/

ps://docs.microsoft.com/windows-server/storage/file-server/smb-security

ps://docs.microsoft.com/windows-server/windows-server-2022/get-started/wha

ps://info.microsoft.com/ww-landing-windows-server-summit.html

ps://www.microsoft.com/cloud-platform/windows-server-prici

ps://www.microsoft.com/evalcenter/evaluate-windows-server

ps://www.microsoft.com/Licensing/servicecenter/default.aspx

ps://www.microsoft.com/security/blog/2021/03/02/microsoft-brings-advanced-hardware-security-to-server-and-edge-with-secured-core/

ps://www.microsoft.com/windows-server/windows-admin-center?rtc

N/A
MC282497 August 2021 Windows non-security preview "C" release available all supported versions for Windows 10 https://support.microsoft.com/help/5005101

https://support.microsoft.com/help/5005102

https://support.microsoft.com/help/5005103

https://techcommunity.microsoft.com/t5/intune-customer-success/the-latest-in-group-policy-settings-parity-in-mobile-device/ba-p/2269167

https://techcommunity.microsoft.com/t5/windows-it-pro-blog/windows-quality-updates-primer/ba-p/2569385
ps://support.microsoft.com/help/500510

ps://support.microsoft.com/help/5005

ps://support.microsoft.com/help/5005103

ps://techcommunity.microsoft.com/t5/intune-customer-success/the-latest-in-group-policy-settings-parity-in-mobile-device/ba-p/2269167

ps://techcommunity.microsoft.com/t5/windows-it-pro-blog/windows-quality-updates-primer/ba-p/2569385
09/02/2021
MC282813 Windows 11 and Windows 10, version 21H2 feature update is released for commercial preview! Access commercial previews using Windows Update or Windows Update for Business:

Commercial devices configured for the Windows Insider Program Release Preview Channel via the Windows Update Settings page or via Windows Update for Business policy will automatically be offered Windows 11 as an optional upgrade provided that the device(s) meet the hardware requirements and have taken the September 1, 2021 optional cumulative update (KB5005101). If you do not wish to upgrade a device to Windows 11, simply select “Stay on Windows 10 for now”, at which point Windows 10, version 21H2 will be offered instead. Commercial devices in the Release Preview Channel that do not meet the hardware requirements necessary to support Windows 11 will instead be offered Windows 10, version 21H2 automatically. Both previews are completely optional.

If you are using Microsoft Intune, simply set “Servicing channel” to “Windows Insider – Release Preview” in the Microsoft Endpoint Manager admin center.

Access commercial previews using Windows Server Update Service (WSUS)

Both Windows 11 and Windows 10, version 21H2 are now available in the “Windows Insider Pre-release” category in WSUS and Configuration Manager. If you do not see them offered, simply sync the category and you will see them.

To access the Windows 11 preview build, devices must first take the September 1, 2021 optional cumulative update (KB 5005101). If a device is configured to send diagnostic data, but does not meet the hardware requirements, the Windows 11 upgrade will be marked as inapplicable in WSUS.

To access the Windows 10, version 21H2 preview build, devices running Windows 10, version 2004, version 20H2, or version 21H1 can leverage the enablement package path to update to version 21H2. Devices running versions prior to Windows 10, version 2004 will first need to do a full OS swap to receive Windows 10, version 21H2.

Access commercial previews from the Windows Insider Program ISO Download page

Go to the Windows Insider Program ISO Downloads site and select either the Windows 11 ISO (listed under Dev Channel and Beta Channel) or the Windows 10, version 21H2 ISO (listed under the Release Preview Channel).

Access commercial previews through Azure Marketplace

We have added a new Windows 11 Preview offering with various images. For Windows 10, version 21H2, simply check out the Windows 10 Preview offering.

For more details, read the official announcement: Commercial previews for Windows 11 and Windows 10, version 21H2.

For additional guidance, see the following resources:

Support for business (microsoft.com) to report an issue or provide feedback.

App Assure with Microsoft FastTrack for compatibility issues.

https://aka.ms/WIPISO

https://azuremarketplace.microsoft.com/marketplace/apps/microsoft-hyperv.windows10preview

https://azuremarketplace.microsoft.com/marketplace/apps/microsoftwindowsdesktop.windows-11-preview

https://docs.microsoft.com/windows/deployment/update/waas-manage-updates-wufb

https://docs.microsoft.com/windows/privacy/configure-windows-diagnostic-data-in-your-organization

https://docs.microsoft.com/windows/whats-new/windows-11-requirements

https://support.microsoft.com/help/5005101

https://support.serviceshub.microsoft.com/supportforbusiness/onboarding

https://techcommunity.microsoft.com/t5/windows-it-pro-blog/commercial-previews-for-windows-11-and-windows-10-version-21h2/ba-p/2676467

https://www.microsoft.com/fasttrack/microsoft-365/app-assure

Access commercial previews using Windows Update or Windows Update for Business:

Commercial devices configured for the Windows Insider Program Release Preview Channel via the Windows Update Settings page or via Windows Update for Business policy will automatically be offered Windows 11 as an optional upgrade provided that the device(s) meet the hardware requirements and have taken the September 1, 2021 optional cumulative update (KB5005101). If you do not wish to upgrade a device to Windows 11, simply select “Stay on Windows 10 for now”, at which point Windows 10, version 21H2 will be offered instead. Commercial devices in the Release Preview Channel that do not meet the hardware requirements necessary to support Windows 11 will instead be offered Windows 10, version 21H2 automatically. Both previews are completely optional.

If you are using Microsoft Intune, simply set “Servicing channel” to “Windows Insider – Release Preview” in the Microsoft Endpoint Manager admin center.

Access commercial previews using Windows Server Update Service (WSUS)

Both Windows 11 and Windows 10, version 21H2 are now available in the “Windows Insider Pre-release” category in WSUS and Configuration Manager. If you do not see them offered, simply sync the category and you will see them.

To access the Windows 11 preview build, devices must first take the September 1, 2021 optional cumulative update (KB 5005101). If a device is configured to send diagnostic data, but does not meet the hardware requirements, the Windows 11 upgrade will be marked as inapplicable in WSUS.

To access the Windows 10, version 21H2 preview build, devices running Windows 10, version 2004, version 20H2, or version 21H1 can leverage the enablement package path to update to version 21H2. Devices running versions prior to Windows 10, version 2004 will first need to do a full OS swap to receive Windows 10, version 21H2.

Access commercial previews from the Windows Insider Program ISO Download page

Go to the Windows Insider Program ISO Downloads site and select either the Windows 11 ISO (listed under Dev Channel and Beta Channel) or the Windows 10, version 21H2 ISO (listed under the Release Preview Channel).

Access commercial previews through Azure Marketplace

We have added a new Windows 11 Preview offering with various images. For Windows 10, version 21H2, simply check out the Windows 10 Preview offering.

For more details, read the official announcement: Commercial previews for Windows 11 and Windows 10, version 21H2.

For additional guidance, see the following resources:

Support for business (microsoft.com) to report an issue or provide feedback.

App Assure with Microsoft FastTrack for compatibility issues.

ps://aka.ms/WIPISO

ps://azuremarketplace.microsoft.com/marketplace/apps/microsoft-hyperv.windows10previ

ps://azuremarketplace.microsoft.com/marketplace/apps/microsoftwindowsdesktop.windows-11-previ

ps://docs.microsoft.com/windows/deployment/update/waas-manage-updates-wufb

ps://docs.microsoft.com/windows/privacy/configure-windows-diagnostic-data-in-your-organiz

ps://docs.microsoft.com/windows/whats-new/windows-11-requirem

ps://support.microsoft.com/help/500510

ps://support.serviceshub.microsoft.com/supportforbusiness/onboardi

ps://techcommunity.microsoft.com/t5/windows-it-pro-blog/commercial-previews-for-windows-11-and-windows-10-version-21h2/ba-p/2676467

ps://www.microsoft.com/fasttrack/microsoft-365/app-a

N/A
MC282814 Windows Thin PC ending support on October 12, 2021 https://docs.microsoft.com/lifecycle/faq/windows ps://docs.microsoft.com/lifecycle/faq/wind N/A
MC283874 Classic Exchange Admin Center (EAC) Retirement Announcement You can access the new EAC directly from https://admin.exchange.microsoft.com. Within the classic EAC, you will also find an opt-in toggle button, along with banners and links in the left navigation panel for the new EAC. Once you’ve opted in to moving to the new EAC, you’ll automatically be directed to the new EAC from the Microsoft 365 admin center. The new EAC can also be accessed from the Partner Center Portal.

For the features being moved, outlined above, we recommend that you start using the Microsoft 365 Defender portal to access these features.

https://admin.exchange.microsoft.com/

https://partner.microsoft.com/
You can access the new EAC directly from https://admin.exchange.microsoft.com. Within the classic EAC, you will also find an opt-in toggle button, along with banners and links in the left navigation panel for the new EAC. Once you’ve opted in to moving to the new EAC, you’ll automatically be directed to the new EAC from the Microsoft 365 admin center. The new EAC can also be accessed from the Partner Center Portal.

For the features being moved, outlined above, we recommend that you start using the Microsoft 365 Defender portal to access these features.

ps://admin.exchange.microsoft.com/

ps://partner.microsoft.com/
N/A
MC284160 Join us at Microsoft Ignite! https://ms-events.azureedge.net/ignite2021/Save_the_Date_Microsoft_Ignite.ics

https://myignite.microsoft.com/home
ps://ms-events.azureedge.net/ignite2021/Save_the_Date_Microsoft_Ignite.ic

ps://myignite.microsoft.com/
N/A
MC284963 Take action: September 2021 security update available for all supported versions of Windows https://msrc.microsoft.com/update-guide

https://support.microsoft.com/help/5005101

https://support.microsoft.com/help/5005565

https://support.microsoft.com/help/5005566

https://support.microsoft.com/help/5005568

https://support.microsoft.com/help/5005569

https://support.microsoft.com/help/5005573

https://support.microsoft.com/help/5005606

https://support.microsoft.com/help/5005607

https://support.microsoft.com/help/5005613

https://support.microsoft.com/help/5005615

https://support.microsoft.com/help/5005618

https://support.microsoft.com/help/5005623

https://support.microsoft.com/help/5005627

https://support.microsoft.com/help/5005633

https://techcommunity.microsoft.com/t5/windows-it-pro-blog/windows-quality-updates-primer/ba-p/2569385
ps://msrc.microsoft.com/upda

ps://support.microsoft.com/help/500510

ps://support.microsoft.com/help/5005565

ps://support.microsoft.com/help/5005566

ps://support.microsoft.com/help/5005568

ps://support.microsoft.com/help/5005569

ps://support.microsoft.com/help/5005573

ps://support.microsoft.com/help/5005606

ps://support.microsoft.com/help/5005607

ps://support.microsoft.com/help/5005613

ps://support.microsoft.com/help/5005615

ps://support.microsoft.com/help/5005618

ps://support.microsoft.com/help/5005623

ps://support.microsoft.com/help/5005627

ps://support.microsoft.com/help/5005633

ps://techcommunity.microsoft.com/t5/windows-it-pro-blog/windows-quality-updates-primer/ba-p/2569385
09/14/2021
MC286312 Resources to support Windows Server 2022 deployment For the security baseline package:

Please download the content from the Microsoft Security Compliance Toolkit. You can test with recommended configurations, and customize / implement as appropriate.

For more details, read the official announcement: Windows Server 2022 Security Baseline

To validate your applications against pre-release security updates for Windows Server 2022 operating systems on Test Base for Microsoft 365:

Sign up today to start using the Test Base service.

Log on to our self-service onboarding portal.

See the Test your apps on Windows Server 2022 with Test Base for Microsoft 365 post for a step-by-step guide on how to opt in your app for testing.

For additional guidance, see the following resources:

Windows Server release information

Microsoft Security Baselines

Microsoft Test Base

Test Base for Microsoft 365

https://aka.ms/testbaseportal

https://docs.microsoft.com/windows-server/get-started/windows-server-release-info

https://techcommunity.microsoft.com/t5/microsoft-security-baselines/bd-p/Security-Baselines

https://techcommunity.microsoft.com/t5/microsoft-security-baselines/windows-server-2022-security-baseline/ba-p/2724685

https://techcommunity.microsoft.com/t5/test-base-blog/test-your-apps-on-windows-server-2022-with-test-base-for/ba-p/2740701

https://techcommunity.microsoft.com/t5/test-base-for-microsoft-365/ct-p/UpdateStagingLab

https://www.microsoft.com/download/details.aspx?id=55319

https://www.microsoft.com/testbase

For the security baseline package:

Please download the content from the Microsoft Security Compliance Toolkit. You can test with recommended configurations, and customize / implement as appropriate.

For more details, read the official announcement: Windows Server 2022 Security Baseline

To validate your applications against pre-release security updates for Windows Server 2022 operating systems on Test Base for Microsoft 365:

Sign up today to start using the Test Base service.

Log on to our self-service onboarding portal.

See the Test your apps on Windows Server 2022 with Test Base for Microsoft 365 post for a step-by-step guide on how to opt in your app for testing.

For additional guidance, see the following resources:

Windows Server release information

Microsoft Security Baselines

Microsoft Test Base

Test Base for Microsoft 365

ps://aka.ms/testbaseportal

ps://docs.microsoft.com/windows-server/get-started/windows-server-release-inf

ps://techcommunity.microsoft.com/t5/microsoft-security-baselines/bd-p/Security-Baseli

ps://techcommunity.microsoft.com/t5/microsoft-security-baselines/windows-server-2022-security-baseline/ba-p/2724685

ps://techcommunity.microsoft.com/t5/test-base-blog/test-your-apps-on-windows-server-2022-with-test-base-for/ba-p/274070

ps://techcommunity.microsoft.com/t5/test-base-for-microsoft-365/ct-p/UpdateStagingLab

ps://www.microsoft.com/download/details.aspx?id=55319

ps://www.microsoft.com/testba

N/A
MC286339 (Updated) Yammer Topics APIs changes with Viva Topics If you use the Yammer API, review the Yammer Topic API changes blog to understand upcoming changes and how you might adapt.

https://aka.ms/YammerTopicsAPI

https://www.microsoft.com/en-ww/microsoft-365/roadmap?filters=&searchterms=72184
If you use the Yammer API, review the Yammer Topic API changes blog to understand upcoming changes and how you might adapt.

ps://aka.ms/YammerTopicsAPI

ps://www.microsoft.com/en-ww/microsoft-365/roadmap?filters=&searchterms=72184
N/A
MC286508 September 2021 Windows non-security preview "C" release is available for some versions for Windows 10 https://support.microsoft.com/help/5005103

https://support.microsoft.com/help/5005624

https://support.microsoft.com/help/5005625

https://techcommunity.microsoft.com/t5/windows-it-pro-blog/windows-quality-updates-primer/ba-p/2569385
ps://support.microsoft.com/help/5005103

ps://support.microsoft.com/help/5005624

ps://support.microsoft.com/help/5005625

ps://techcommunity.microsoft.com/t5/windows-it-pro-blog/windows-quality-updates-primer/ba-p/2569385
09/21/2021
MC286990 (Updated) Exchange Online and Basic Auth – September 2021 Update https://aka.ms/EXOBasicAuthLatest

https://techcommunity.microsoft.com/t5/exchange-team-blog/basic-authentication-and-exchange-online-february-2021-update/ba-p/2111904

https://techcommunity.microsoft.com/t5/exchange-team-blog/basic-authentication-and-exchange-online-june-2021-update/bc-p/2599824#M31057

https://techcommunity.microsoft.com/t5/exchange-team-blog/improving-security-together/ba-p/805892
ps://aka.ms/EXOBasicAuthLa

ps://techcommunity.microsoft.com/t5/exchange-team-blog/basic-authentication-and-exchange-online-february-2021-update/ba-p/2111904

ps://techcommunity.microsoft.com/t5/exchange-team-blog/basic-authentication-and-exchange-online-june-2021-update/bc-p/2599824#M31057

ps://techcommunity.microsoft.com/t5/exchange-team-blog/improving-security-together/ba-p/80589
10/22/2022
MC287353 (Updated) Hardware Support for AJA and Blackmagic Devices No changes will happen to any users aside from those who already have the ability to stream via NDI; they will see an update in their settings to show if they have attached compatible hardware.

https://www.microsoft.com/en-ww/microsoft-365/roadmap?filters=&searchterms=82812

https://www.microsoft.com/en-ww/microsoft-365/roadmap?filters=&searchterms=83486
No changes will happen to any users aside from those who already have the ability to stream via NDI; they will see an update in their settings to show if they have attached compatible hardware.

ps://www.microsoft.com/en-ww/microsoft-365/roadmap?filters=&searchterms=828

ps://www.microsoft.com/en-ww/microsoft-365/roadmap?filters=&searchterms=83486
N/A
MC287755 Update to language imaging in Windows 11 Starting with Windows 11, only language lp.cabs can be used for creating system images. For previous releases, you should use LXPs only for LIP languages.

End users can download languages and language-related features directly from the Settings app in Windows without needing to go to the Store. For more details, see Install a language.

https://docs.microsoft.com/windows-hardware/manufacture/desktop/available-language-packs-for-windows#language-interface-packs-lips

https://docs.microsoft.com/windows-hardware/manufacture/desktop/available-language-packs-for-windows#language-packs

https://support.microsoft.com/windows/install-a-language-for-windows-ccd853d3-9ecd-7da7-9ef0-72b4a055410a

Starting with Windows 11, only language lp.cabs can be used for creating system images. For previous releases, you should use LXPs only for LIP languages.

End users can download languages and language-related features directly from the Settings app in Windows without needing to go to the Store. For more details, see Install a language.

ps://docs.microsoft.com/windows-hardware/manufacture/desktop/available-language-packs-for-windows#language-interface-packs-lip

ps://docs.microsoft.com/windows-hardware/manufacture/desktop/available-language-packs-for-windows#language-pack

ps://support.microsoft.com/windows/install-a-language-for-windows-ccd853d3-9ecd-7da7-9ef0-72b4a0554

N/A
MC288421 September 2021 Windows non-security preview "C" release available all supported versions for Windows 10 https://support.microsoft.com/help/5005101

https://support.microsoft.com/help/5005611

https://support.microsoft.com/help/5005624

https://support.microsoft.com/help/5005625

https://techcommunity.microsoft.com/t5/windows-it-pro-blog/windows-quality-updates-primer/ba-p/2569385
ps://support.microsoft.com/help/500510

ps://support.microsoft.com/help/50056

ps://support.microsoft.com/help/5005624

ps://support.microsoft.com/help/5005625

ps://techcommunity.microsoft.com/t5/windows-it-pro-blog/windows-quality-updates-primer/ba-p/2569385
09/30/2021
MC288633 (Updated) Records Management, Information Governance & eDiscovery– Optimized behavior of file versions preserved You might want to notify your users or team responsible for eDiscovery, Information Governance and Records Management about this change and update your training and documentation as appropriate.

https://docs.microsoft.com/microsoft-365/compliance/create-ediscovery-holds?view=o365-worldwide#query-based-holds-placed-on-sites

https://www.microsoft.com/microsoft-365/roadmap?filters=&featureid=82062
You might want to notify your users or team responsible for eDiscovery, Information Governance and Records Management about this change and update your training and documentation as appropriate.

ps://docs.microsoft.com/microsoft-365/compliance/create-ediscovery-holds?view=o365-worldwide#query-based-holds-placed-on-si

ps://www.microsoft.com/microsoft-365/roadmap?filters=&featureid=8206
N/A
MC289196 Windows 11 now available https://aka.ms/How-To-Get-Windows-11

https://aka.ms/tools-for-Windows-11

https://blogs.windows.com/windowsexperience/?p=176228

https://docs.microsoft.com/lifecycle/faq/windows#windows-11

https://docs.microsoft.com/windows/release-health/status-windows-11-21H2

https://www.microsoft.com/microsoft-365/blog/2021/10/04/empower-your-hybrid-workforce-today-with-windows-11/

https://www.microsoft.com/security/blog/?p=98328
ps://aka.ms/How-To-Get-Wind

ps://aka.ms/tools-for-Wind

ps://blogs.windows.com/windowsexperience/?p=176228

ps://docs.microsoft.com/lifecycle/faq/windows#wind

ps://docs.microsoft.com/windows/release-health/status-windows-11-21H

ps://www.microsoft.com/microsoft-365/blog/2021/10/04/empower-your-hybrid-workforce-today-with-windows-11/

ps://www.microsoft.com/security/blog/?p=98328
N/A
MC291008 Take action: October 2021 security update available for all supported versions of Windows https://support.microsoft.com/help/5006667

https://support.microsoft.com/help/5006669

https://support.microsoft.com/help/5006670

https://support.microsoft.com/help/5006672

https://support.microsoft.com/help/5006674

https://support.microsoft.com/help/5006675

https://support.microsoft.com/help/5006714

https://support.microsoft.com/help/5006715

https://support.microsoft.com/help/5006728

https://support.microsoft.com/help/5006729

https://support.microsoft.com/help/5006732

https://support.microsoft.com/help/5006736

https://support.microsoft.com/help/5006739

https://support.microsoft.com/help/5006743

https://techcommunity.microsoft.com/t5/windows-it-pro-blog/windows-quality-updates-primer/ba-p/2569385
ps://support.microsoft.com/help/5006667

ps://support.microsoft.com/help/5006669

ps://support.microsoft.com/help/500667

ps://support.microsoft.com/help/500667

ps://support.microsoft.com/help/5006674

ps://support.microsoft.com/help/5006675

ps://support.microsoft.com/help/5006714

ps://support.microsoft.com/help/5006715

ps://support.microsoft.com/help/5006728

ps://support.microsoft.com/help/5006729

ps://support.microsoft.com/help/500673

ps://support.microsoft.com/help/5006736

ps://support.microsoft.com/help/5006739

ps://support.microsoft.com/help/5006743

ps://techcommunity.microsoft.com/t5/windows-it-pro-blog/windows-quality-updates-primer/ba-p/2569385
10/12/2021
MC292558 Reminder: End of service for Windows 10 version 2004 - December 14, 2021 https://docs.microsoft.com/lifecycle/products/?terms=windows

https://docs.microsoft.com/lifecycle/products/windows-10-enterprise-and-education

https://docs.microsoft.com/lifecycle/products/windows-10-home-and-pro
ps://docs.microsoft.com/lifecycle/products/?terms=wind

ps://docs.microsoft.com/lifecycle/products/windows-10-enterprise-and-ed

ps://docs.microsoft.com/lifecycle/products/windows-10-home-and
N/A
MC292559 October 2021 Windows non-security preview "C" release is available for Windows 10, version 1809 https://support.microsoft.com/help/5006744

https://techcommunity.microsoft.com/t5/windows-it-pro-blog/windows-quality-updates-primer/ba-p/2569385
ps://support.microsoft.com/help/5006744

ps://techcommunity.microsoft.com/t5/windows-it-pro-blog/windows-quality-updates-primer/ba-p/2569385
10/19/2021
MC292650 Windows update expiration policy explained Read Windows update expiration policy explained for answers to common questions we receive about our Windows update expiration policy.

https://techcommunity.microsoft.com/t5/windows-it-pro-blog/windows-update-expiration-policy-explained/ba-p/2860928
Read Windows update expiration policy explained for answers to common questions we receive about our Windows update expiration policy.

ps://techcommunity.microsoft.com/t5/windows-it-pro-blog/windows-update-expiration-policy-explained/ba-p/2860928
N/A
MC292796 (Updated) Co-organizer Meeting Role There is nothing you need to do. The “Choose co-organizers” meeting option will appear automatically on the meeting options page when the feature has rolled out.

https://www.microsoft.com/microsoft-365/roadmap?filters=&searchterms=81391
There is nothing you need to do. The “Choose co-organizers” meeting option will appear automatically on the meeting options page when the feature has rolled out.

ps://www.microsoft.com/microsoft-365/roadmap?filters=&searchterms=8139
N/A
MC292931 October 2021 Windows non-security preview "C" release is available for Windows 11 https://support.microsoft.com/help/5006744

https://support.microsoft.com/help/5006746

https://techcommunity.microsoft.com/t5/windows-it-pro-blog/windows-quality-updates-primer/ba-p/2569385
ps://support.microsoft.com/help/5006744

ps://support.microsoft.com/help/5006746

ps://techcommunity.microsoft.com/t5/windows-it-pro-blog/windows-quality-updates-primer/ba-p/2569385
10/21/2021
MC293575 Microsoft extends application compatibility promise to Windows 11 https://blogs.windows.com/windowsexperience/2019/01/15/application-compatibility-in-the-windows-ecosystem/

https://blogs.windows.com/windows-insider/2021/08/27/update-on-windows-11-minimum-system-requirements-and-the-pc-health-check-app/

https://docs.microsoft.com/en-us/microsoft-365/test-base/memory?view=o365-worldwide

https://techcommunity.microsoft.com/t5/test-base-blog/get-early-access-to-windows-11-validation-on-test-base-for/ba-p/2493525

https://techcommunity.microsoft.com/t5/video-hub/bring-your-apps-to-microsoft-edge-with-app-assure-tips-and/ba-p/2167619

https://techcommunity.microsoft.com/t5/windows-it-pro-blog/microsoft-extends-application-compatibility-promise-to-windows/ba-p/2810546

https://www.microsoft.com/en-us/fasttrack/microsoft-365/app-assure

https://www.microsoft.com/en-us/testbase
ps://blogs.windows.com/windowsexperience/2019/01/15/application-compatibility-in-the-windows-ecosystem/

ps://blogs.windows.com/windows-insider/2021/08/27/update-on-windows-11-minimum-system-requirements-and-the-pc-health-check-app/

ps://docs.microsoft.com/en-us/microsoft-365/test-base/memory?view=o365-world

ps://techcommunity.microsoft.com/t5/test-base-blog/get-early-access-to-windows-11-validation-on-test-base-for/ba-p/2493525

ps://techcommunity.microsoft.com/t5/video-hub/bring-your-apps-to-microsoft-edge-with-app-assure-tips-and/ba-p/2167619

ps://techcommunity.microsoft.com/t5/windows-it-pro-blog/microsoft-extends-application-compatibility-promise-to-windows/ba-p/2810546

ps://www.microsoft.com/en-us/fasttrack/microsoft-365/app-a

ps://www.microsoft.com/en-us/testba
N/A
MC293974 October 2021 Windows non-security preview "C" release available all supported versions for Windows https://support.microsoft.com/help/5005010

https://support.microsoft.com/help/5006674

https://support.microsoft.com/help/5006738

https://support.microsoft.com/help/5006744

https://support.microsoft.com/help/5006746

https://techcommunity.microsoft.com/t5/windows-it-pro-blog/windows-quality-updates-primer/ba-p/2569385
ps://support.microsoft.com/help/50050

ps://support.microsoft.com/help/5006674

ps://support.microsoft.com/help/5006738

ps://support.microsoft.com/help/5006744

ps://support.microsoft.com/help/5006746

ps://techcommunity.microsoft.com/t5/windows-it-pro-blog/windows-quality-updates-primer/ba-p/2569385
10/26/2021
MC293975 Windows 11 cumulative update improvements https://docs.microsoft.com/windows/deployment/update/psfxwhitepaper

https://docs.microsoft.com/windows-hardware/manufacture/desktop/add-language-packs-to-windows?view=windows-11

https://docs.microsoft.com/windows-hardware/manufacture/desktop/features-on-demand-v2--capabilities

https://techcommunity.microsoft.com/t5/windows-it-pro-blog/deploy-windows-ssus-and-lcus-together-with-one-cumulative-update/ba-p/1967887

https://techcommunity.microsoft.com/t5/windows-it-pro-blog/how-microsoft-reduced-windows-11-update-size-by-40/ba-p/2839794

https://techcommunity.microsoft.com/t5/windows-it-pro-blog/windows-11-cumulative-update-improvements-an-overview/ba-p/2842961
ps://docs.microsoft.com/windows/deployment/update/psfx

ps://docs.microsoft.com/windows-hardware/manufacture/desktop/add-language-packs-to-windows?view=wind

ps://docs.microsoft.com/windows-hardware/manufacture/desktop/features-on-demand-v2--capabiliti

ps://techcommunity.microsoft.com/t5/windows-it-pro-blog/deploy-windows-ssus-and-lcus-together-with-one-cumulative-update/ba-p/1967887

ps://techcommunity.microsoft.com/t5/windows-it-pro-blog/how-microsoft-reduced-windows-11-update-size-by-40/ba-p/2839794

ps://techcommunity.microsoft.com/t5/windows-it-pro-blog/windows-11-cumulative-update-improvements-an-overview/ba-p/284296
N/A
MC295027 (Updated) Rich text and images in Planner task notes If your organization has custom applications interacting with our Microsoft Graph Planner API, make sure to update the apps to support the rich text task notes field as soon as it is available to take advantage of the new notes capabilities. We will maintain support for the existing plain text task notes field in our Microsoft Graph Planner API for at least 36 months.

If your organization has applications or workflows which parse the task notes to trigger logic based off contents in the notes field, we recommend users continue to input only plain text in task notes and not apply text formatting or insert images into task notes. Such apps should also be updated to avoid parsing task notes or applying logic to contents in the task notes as these are not recommended uses of the task notes field in our API.

https://www.microsoft.com/en-us/microsoft-365/roadmap?filters=&searchterms=85688
If your organization has custom applications interacting with our Microsoft Graph Planner API, make sure to update the apps to support the rich text task notes field as soon as it is available to take advantage of the new notes capabilities. We will maintain support for the existing plain text task notes field in our Microsoft Graph Planner API for at least 36 months.

If your organization has applications or workflows which parse the task notes to trigger logic based off contents in the notes field, we recommend users continue to input only plain text in task notes and not apply text formatting or insert images into task notes. Such apps should also be updated to avoid parsing task notes or applying logic to contents in the task notes as these are not recommended uses of the task notes field in our API.

ps://www.microsoft.com/en-us/microsoft-365/roadmap?filters=&searchterms=85688
N/A
MC296570 Take action: Out-of-band update to address an issue with Snipping Tool and issues in S Mode https://docs.microsoft.com/windows/release-health/status-windows-11-21h2#2739msgdesc

https://support.microsoft.com/help/5006746

https://support.microsoft.com/help/5008295

https://support.microsoft.com/windows/update-windows-3c5ae7fc-9fb6-9af1-1984-b5e0412c556a
ps://docs.microsoft.com/windows/release-health/status-windows-11-21h2#2739msgd

ps://support.microsoft.com/help/5006746

ps://support.microsoft.com/help/5008295

ps://support.microsoft.com/windows/update-windows-3c5ae7fc-9fb6-9af1-1984-b5e0412c556
N/A
MC296611 (Updated) Microsoft Defender for Office 365: Introducing Built-In-Protection No security admin action is required. You will want to review the impact to users who are not already protected under a standard or strict preset or under an explicit Safe Links and Safe Attachment custom policy.

We will release the option to configure exceptions in the Microsoft 365 Defender portal in early November ahead of enabling the Built-In-Protection policy.

Although we do not recommend it, we recognize the need for some organizations to exclude certain users or groups from Built-In-Protection and admins will have the opportunity to configure these exceptions ahead of December rollout.

This is rolling out default on.

Learn more:

MDO blog announcing Built-In-Protection

Learn how to configure Built-in-Protection

See the specific settings set in Built-In-Protection

https://docs.microsoft.com/microsoft-365/security/office-365-security/preset-security-policies?view=o365-worldwide

https://docs.microsoft.com/microsoft-365/security/office-365-security/recommended-settings-for-eop-and-office365?view=o365-worldwide

https://docs.microsoft.com/microsoft-365/security/office-365-security/recommended-settings-for-eop-and-office365?view=o365-worldwide#safe-attachments-settings

https://www.microsoft.com/microsoft-365/roadmap?filters=&searchterms=72208
No security admin action is required. You will want to review the impact to users who are not already protected under a standard or strict preset or under an explicit Safe Links and Safe Attachment custom policy.

We will release the option to configure exceptions in the Microsoft 365 Defender portal in early November ahead of enabling the Built-In-Protection policy.

Although we do not recommend it, we recognize the need for some organizations to exclude certain users or groups from Built-In-Protection and admins will have the opportunity to configure these exceptions ahead of December rollout.

This is rolling out default on.

Learn more:

MDO blog announcing Built-In-Protection

Learn how to configure Built-in-Protection

See the specific settings set in Built-In-Protection

ps://docs.microsoft.com/microsoft-365/security/office-365-security/preset-security-policies?view=o365-world

ps://docs.microsoft.com/microsoft-365/security/office-365-security/recommended-settings-for-eop-and-office365?view=o365-world

ps://docs.microsoft.com/microsoft-365/security/office-365-security/recommended-settings-for-eop-and-office365?view=o365-worldwide#safe-attachments-setti

ps://www.microsoft.com/microsoft-365/roadmap?filters=&searchterms=72208
N/A
MC297537 Take action: November 2021 security update available for all supported versions of Windows https://support.microsoft.com/help/5006674

https://support.microsoft.com/help/5007186

https://support.microsoft.com/help/5007189

https://support.microsoft.com/help/5007192

https://support.microsoft.com/help/5007206

https://support.microsoft.com/help/5007207

https://support.microsoft.com/help/5007215

https://support.microsoft.com/help/5007233

https://support.microsoft.com/help/5007236

https://support.microsoft.com/help/5007245

https://support.microsoft.com/help/5007246

https://support.microsoft.com/help/5007247

https://support.microsoft.com/help/5007255

https://support.microsoft.com/help/5007260

https://support.microsoft.com/help/5007263

https://support.microsoft.com/windows/update-windows-3c5ae7fc-9fb6-9af1-1984-b5e0412c556a#WindowsVersion=Windows_11

https://techcommunity.microsoft.com/t5/windows-it-pro-blog/windows-quality-updates-primer/ba-p/2569385
ps://support.microsoft.com/help/5006674

ps://support.microsoft.com/help/5007186

ps://support.microsoft.com/help/5007189

ps://support.microsoft.com/help/500719

ps://support.microsoft.com/help/5007206

ps://support.microsoft.com/help/5007207

ps://support.microsoft.com/help/5007215

ps://support.microsoft.com/help/5007233

ps://support.microsoft.com/help/5007236

ps://support.microsoft.com/help/5007245

ps://support.microsoft.com/help/5007246

ps://support.microsoft.com/help/5007247

ps://support.microsoft.com/help/5007255

ps://support.microsoft.com/help/500726

ps://support.microsoft.com/help/5007263

ps://support.microsoft.com/windows/update-windows-3c5ae7fc-9fb6-9af1-1984-b5e0412c556a#WindowsVersion=Windows_

ps://techcommunity.microsoft.com/t5/windows-it-pro-blog/windows-quality-updates-primer/ba-p/2569385
N/A
MC297538 Take Action: An updated WSUS Scan cab is now available for environments using it for patch management https://docs.microsoft.com/mem/configmgr/

https://docs.microsoft.com/windows/win32/wua_sdk/using-wua-to-scan-for-updates-offline

https://docs.microsoft.com/windows-server/administration/windows-server-update-services/get-started/windows-server-update-services-wsus

https://techcommunity.microsoft.com/t5/windows-it-pro-blog/announcing-a-smaller-wsus-scan-cab/ba-p/2928256
ps://docs.microsoft.com/mem/configmgr/

ps://docs.microsoft.com/windows/win32/wua_sdk/using-wua-to-scan-for-updates-offl

ps://docs.microsoft.com/windows-server/administration/windows-server-update-services/get-started/windows-server-update-servic

ps://techcommunity.microsoft.com/t5/windows-it-pro-blog/announcing-a-smaller-wsus-scan-cab/ba-p/2928256
N/A
MC298198 Take action: Out-of-band update to address authentication issues on DCs relating to Kerberos delegation scenarios https://docs.microsoft.com/en-us/windows/release-health/status-windows-10-1809-and-windows-server-2019#2748msgdesc

https://docs.microsoft.com/windows-server/administration/windows-server-update-services/manage/wsus-and-the-catalog-site#the-microsoft-update-catalog-site

https://support.microsoft.com/help/5008601

https://support.microsoft.com/help/5008602

https://support.microsoft.com/help/5008603

https://support.microsoft.com/help/5008604

https://support.microsoft.com/help/5008605

https://support.microsoft.com/help/5008606
ps://docs.microsoft.com/en-us/windows/release-health/status-windows-10-1809-and-windows-server-2019#2748msgd

ps://docs.microsoft.com/windows-server/administration/windows-server-update-services/manage/wsus-and-the-catalog-site#the-microsoft-update-catal

ps://support.microsoft.com/help/500860

ps://support.microsoft.com/help/50086

ps://support.microsoft.com/help/5008603

ps://support.microsoft.com/help/5008604

ps://support.microsoft.com/help/5008605

ps://support.microsoft.com/help/5008606
N/A
MC298382 Reminder: End of servicing for Windows 10 version 2004 - December 14, 2021 https://docs.microsoft.com/lifecycle/products/?terms=windows

https://docs.microsoft.com/lifecycle/products/windows-10-enterprise-and-education

https://docs.microsoft.com/lifecycle/products/windows-10-home-and-pro

https://techcommunity.microsoft.com/t5/windows-it-pro-blog/reminder-end-of-servicing-for-windows-10-version-2004/ba-p/2943891
ps://docs.microsoft.com/lifecycle/products/?terms=wind

ps://docs.microsoft.com/lifecycle/products/windows-10-enterprise-and-ed

ps://docs.microsoft.com/lifecycle/products/windows-10-home-and

ps://techcommunity.microsoft.com/t5/windows-it-pro-blog/reminder-end-of-servicing-for-windows-10-version-2004/ba-p/294389
N/A
MC298488 Windows 10, version 21H2 is now available Windows 10, version 21H2 is engineered for fast and convenient delivery to users already in Windows 10, version 20H2 and 21H1. Devices currently on Windows 10, version 20H2 or newer can receive Windows 10, version 21H2 via an enablement package, resulting in a fast installation experience. This version will be offered to all in-support versions of Windows 10 as our rollout expands.

Enterprise and Education editions will receive 30 months of servicing and support beginning today. Home and Pro editions of Windows 10, version 21H2 will receive 18 months of servicing and support. At least one version of Windows 10 will be in support through October 14, 2025.

Additional information:

We recommend that you read How to get Windows 10, version 21H2 for information on our rollout strategy and What's new for IT pros in Windows 10, version 21H2 for a list of commercial release channels, features, and deployment tools. The Windows 10 release information has also been updated, with a list of current Windows 10 versions by servicing option along with release dates, build numbers, end of service dates, and release history.

https://aka.ms/tools-to-support-21H2

https://blogs.windows.com/windowsexperience/?p=176473

https://docs.microsoft.com/windows/release-health/release-information

Windows 10, version 21H2 is engineered for fast and convenient delivery to users already in Windows 10, version 20H2 and 21H1. Devices currently on Windows 10, version 20H2 or newer can receive Windows 10, version 21H2 via an enablement package, resulting in a fast installation experience. This version will be offered to all in-support versions of Windows 10 as our rollout expands.

Enterprise and Education editions will receive 30 months of servicing and support beginning today. Home and Pro editions of Windows 10, version 21H2 will receive 18 months of servicing and support. At least one version of Windows 10 will be in support through October 14, 2025.

Additional information:

We recommend that you read How to get Windows 10, version 21H2 for information on our rollout strategy and What's new for IT pros in Windows 10, version 21H2 for a list of commercial release channels, features, and deployment tools. The Windows 10 release information has also been updated, with a list of current Windows 10 versions by servicing option along with release dates, build numbers, end of service dates, and release history.

ps://aka.ms/tools-to-support-21H

ps://blogs.windows.com/windowsexperience/?p=176473

ps://docs.microsoft.com/windows/release-health/release-inf

11/16/2021
MC298824 (Updated) Transcription in 1:1 VOIP Calls No action required but you may want to update your documentation as needed.

https://www.microsoft.com/en-ww/microsoft-365/roadmap?filters=&searchterms=68774
No action required but you may want to update your documentation as needed.

ps://www.microsoft.com/en-ww/microsoft-365/roadmap?filters=&searchterms=68774
N/A
MC299207 Manage Windows updates for cloud-connected devices using the Microsoft Graph PowerShell SDK https://docs.microsoft.com/graph/powershell/get-started

https://docs.microsoft.com/learn/modules/manage-windows-updates-cloud-devices/

https://docs.microsoft.com/windows/deployment/update/deployment-service-overview
ps://docs.microsoft.com/graph/powershell/

ps://docs.microsoft.com/learn/modules/manage-windows-updates-cloud-devices/

ps://docs.microsoft.com/windows/deployment/update/deployment-service-overvi
N/A
MC299387 Briefing Email from Microsoft Viva: Language Expansion (FR, DE, IT, PT) Review and assess the impact for your organization. Additionally, you might consider reviewing with your works council and updating your training and documentation as appropriate. Learn more about Briefing email from Microsoft Viva and how Microsoft protects your privacy.

https://docs.microsoft.com/office365/admin/security-and-compliance/gdpr-compliance?view=o365-worldwide

https://docs.microsoft.com/viva/insights/personal/Briefing/be-overview

https://docs.microsoft.com/viva/insights/personal/Briefing/be-privacy

https://www.microsoft.com/microsoft-365/roadmap?filters=&featureid=81999
Review and assess the impact for your organization. Additionally, you might consider reviewing with your works council and updating your training and documentation as appropriate. Learn more about Briefing email from Microsoft Viva and how Microsoft protects your privacy.

ps://docs.microsoft.com/office365/admin/security-and-compliance/gdpr-compliance?view=o365-world

ps://docs.microsoft.com/viva/insights/personal/Briefing/be-overvi

ps://docs.microsoft.com/viva/insights/personal/Briefing/be-privacy

ps://www.microsoft.com/microsoft-365/roadmap?filters=&featureid=81999
N/A
MC299723 November 2021 Windows non-security preview "C" release available all supported versions of Windows https://support.microsoft.com/help/5007253

https://support.microsoft.com/help/5007254

https://support.microsoft.com/help/5007262

https://support.microsoft.com/help/5007266

https://techcommunity.microsoft.com/t5/windows-it-pro-blog/windows-quality-updates-primer/ba-p/2569385
ps://support.microsoft.com/help/5007253

ps://support.microsoft.com/help/5007254

ps://support.microsoft.com/help/500726

ps://support.microsoft.com/help/5007266

ps://techcommunity.microsoft.com/t5/windows-it-pro-blog/windows-quality-updates-primer/ba-p/2569385
11/22/2021
MC301013 Plan for change: Improving Windows analytics in Microsoft Endpoint Manager First, ensure that your PCs are on a supported version of Windows 10. If you're using Configuration Manager, enable tenant attach and integrate your site with your Azure Active Directory tenant. You'll get several immediate benefits – such as access to the cloud console – and this will leave you well-positioned to benefit from additional upgrade and update readiness insights. After enabling tenant attach, or if you're already using Intune to manage PCs, onboard to Endpoint analytics to take advantage of Windows 11 hardware readiness insights. Understanding which managed devices meet the minimum system requirements is one of the first steps in planning for a Windows 11 upgrade.

Additional information:

We'll have more information about our investments in this area over the next several months. In the meantime, there are several resources you can review today.

A data-driven approach to managing devices in your organization

Work from anywhere report - Windows 11 hardware readiness

Microsoft Endpoint Manager tenant attach: Device sync and device actions

Overview of Windows as a service - Servicing tools

https://aka.ms/eagetstarted

https://docs.microsoft.com/mem/analytics/work-from-anywhere#bkmk_windows11

https://docs.microsoft.com/mem/configmgr/comanage/tutorial-co-manage-clients#set-up-hybrid-azure-ad

https://docs.microsoft.com/mem/configmgr/tenant-attach/device-sync-actions

https://docs.microsoft.com/windows/deployment/update/waas-overview#servicing-tools

https://nam06.safelinks.protection.outlook.com/?url=https%3A%2F%2Ftechcommunity.microsoft.com%2Ft5%2Fmicrosoft-endpoint-manager-blog%2Funderstanding-readiness-for-windows-11-with-microsoft-endpoint%2Fba-p%2F2770866&data=04%7C01%7Cv-frsilv%40microsoft.com%7C542c0d7211b2451490c308d9b44407e3%7C72f988bf86f141af91ab2d7cd011db47%7C1%7C0%7C637739026558181885%7CUnknown%7CTWFpbGZsb3d8eyJWIjoiMC4wLjAwMDAiLCJQIjoiV2luMzIiLCJBTiI6Ik1haWwiLCJXVCI6Mn0%3D%7C3000&sdata=7M8OIb8PXdeQIGB0Z8M9Bya7xraTRfqJfvOm9Xmqmb8%3D&reserved=0

https://techcommunity.microsoft.com/t5/microsoft-endpoint-manager-blog/understanding-readiness-for-windows-11-with-microsoft-endpoint/ba-p/2770866

https://techcommunity.microsoft.com/t5/windows-it-pro-blog/a-data-driven-approach-to-managing-devices-in-your-organization/ba-p/2932082

First, ensure that your PCs are on a supported version of Windows 10. If you're using Configuration Manager, enable tenant attach and integrate your site with your Azure Active Directory tenant. You'll get several immediate benefits – such as access to the cloud console – and this will leave you well-positioned to benefit from additional upgrade and update readiness insights. After enabling tenant attach, or if you're already using Intune to manage PCs, onboard to Endpoint analytics to take advantage of Windows 11 hardware readiness insights. Understanding which managed devices meet the minimum system requirements is one of the first steps in planning for a Windows 11 upgrade.

Additional information:

We'll have more information about our investments in this area over the next several months. In the meantime, there are several resources you can review today.

A data-driven approach to managing devices in your organization

Work from anywhere report - Windows 11 hardware readiness

Microsoft Endpoint Manager tenant attach: Device sync and device actions

Overview of Windows as a service - Servicing tools

ps://aka.ms/ea

ps://docs.microsoft.com/mem/analytics/work-from-anywhere#bkmk_wind

ps://docs.microsoft.com/mem/configmgr/comanage/tutorial-co-manage-clients#set-up-hybrid-azur

ps://docs.microsoft.com/mem/configmgr/tenant-attach/device-sync-acti

ps://docs.microsoft.com/windows/deployment/update/waas-overview#servicing-tool

ps://nam06.safelinks.protection.outlook.com/?url=https%3A%2F%2Ftechcommunity.microsoft.com%2Ft5%2Fmicrosoft-endpoint-manager-blog%2Funderstanding-readiness-for-windows-11-with-microsoft-endpoint%2Fba-p%2F2770866&data=04%7C01%7Cv-frsilv%40microsoft.com%7C542c0d7211b2451490c308d9b44407e3%7C72f988bf86f141af91ab2d7cd011db47%7C1%7C0%7C637739026558181885%7CUnknown%7CTWFpbGZsb3d8eyJWIjoiMC4wLjAwMDAiLCJQIjoiV2luMzIiLCJBTiI6Ik1haWwiLCJXVCI6Mn0%3D%7C3000&sdata=7M8OIb8PXdeQIGB0Z8M9Bya7xraTRfqJfvOm9Xmqmb8%3D&reserved

ps://techcommunity.microsoft.com/t5/microsoft-endpoint-manager-blog/understanding-readiness-for-windows-11-with-microsoft-endpoint/ba-p/2770866

ps://techcommunity.microsoft.com/t5/windows-it-pro-blog/a-data-driven-approach-to-managing-devices-in-your-organization/ba-p/293208

12/01/2021
MC302432 Windows Update for Business deployment service is coming to Microsoft Graph and Microsoft Endpoint Manager Watch the video on Commercial driver and firmware servicing with the Windows Update for Business deployment service for a closer look at the deployment service, then explore the following resources for more in-depth information:

Deployment service for driver updates public preview coming soon

Overview of Microsoft Graph

Introducing a new deployment service for driver and firmware updates

Video - Driver and firmware servicing in the enterprise

Get started with Update Compliance

https://docs.microsoft.com/graph/overview

https://docs.microsoft.com/windows/deployment/update/update-compliance-get-started

https://techcommunity.microsoft.com/t5/video-hub/commercial-driver-and-firmware-servicing-with-the-windows-update/ba-p/2908502

https://techcommunity.microsoft.com/t5/video-hub/driver-and-firmware-servicing-in-the-enterprise/ba-p/2177277

https://techcommunity.microsoft.com/t5/windows-it-pro-blog/deployment-service-for-driver-updates-public-preview-coming-soon/ba-p/2914212

https://techcommunity.microsoft.com/t5/windows-it-pro-blog/introducing-a-new-deployment-service-for-driver-and-firmware/ba-p/2176942

Watch the video on Commercial driver and firmware servicing with the Windows Update for Business deployment service for a closer look at the deployment service, then explore the following resources for more in-depth information:

Deployment service for driver updates public preview coming soon

Overview of Microsoft Graph

Introducing a new deployment service for driver and firmware updates

Video - Driver and firmware servicing in the enterprise

Get started with Update Compliance

ps://docs.microsoft.com/graph/overvi

ps://docs.microsoft.com/windows/deployment/update/update-complianc

ps://techcommunity.microsoft.com/t5/video-hub/commercial-driver-and-firmware-servicing-with-the-windows-update/ba-p/29085

ps://techcommunity.microsoft.com/t5/video-hub/driver-and-firmware-servicing-in-the-enterprise/ba-p/2177277

ps://techcommunity.microsoft.com/t5/windows-it-pro-blog/deployment-service-for-driver-updates-public-preview-coming-soon/ba-p/29142

ps://techcommunity.microsoft.com/t5/windows-it-pro-blog/introducing-a-new-deployment-service-for-driver-and-firmware/ba-p/217694

12/08/2021
MC305355 Take action: December 2021 security update available for all supported versions of Windows https://support.microsoft.com/help/5006674

https://support.microsoft.com/help/5008207

https://support.microsoft.com/help/5008212

https://support.microsoft.com/help/5008215

https://support.microsoft.com/help/5008218

https://support.microsoft.com/help/5008230

https://support.microsoft.com/help/5008244

https://support.microsoft.com/help/5008255

https://support.microsoft.com/help/5008263

https://support.microsoft.com/help/5008271

https://support.microsoft.com/help/5008274

https://support.microsoft.com/help/5008277

https://support.microsoft.com/help/5008282

https://support.microsoft.com/help/5008285

https://support.microsoft.com/windows/update-windows-3c5ae7fc-9fb6-9af1-1984-b5e0412c556a#WindowsVersion=Windows_11

https://techcommunity.microsoft.com/t5/windows-it-pro-blog/windows-quality-updates-primer/ba-p/2569385
ps://support.microsoft.com/help/5006674

ps://support.microsoft.com/help/5008207

ps://support.microsoft.com/help/50082

ps://support.microsoft.com/help/5008215

ps://support.microsoft.com/help/5008218

ps://support.microsoft.com/help/500823

ps://support.microsoft.com/help/5008244

ps://support.microsoft.com/help/5008255

ps://support.microsoft.com/help/5008263

ps://support.microsoft.com/help/500827

ps://support.microsoft.com/help/5008274

ps://support.microsoft.com/help/5008277

ps://support.microsoft.com/help/500828

ps://support.microsoft.com/help/5008285

ps://support.microsoft.com/windows/update-windows-3c5ae7fc-9fb6-9af1-1984-b5e0412c556a#WindowsVersion=Windows_

ps://techcommunity.microsoft.com/t5/windows-it-pro-blog/windows-quality-updates-primer/ba-p/2569385
12/14/2021
MC305356 Windows 10, version 2004 and Windows Server, version 2004 have reached end of servicing https://docs.microsoft.com/en-us/lifecycle/faq/windows

https://nam06.safelinks.protection.outlook.com/?url=https%3A%2F%2Fdocs.microsoft.com%2Flifecycle%2Fproducts%2Fwindows-10-enterprise-and-education&data=04%7C01%7CMabel.Gomes%40microsoft.com%7C1c9a7b7689324d568cbb08d9a889f499%7C72f988bf86f141af91ab2d7cd011db47%7C0%7C0%7C637726132742815043%7CUnknown%7CTWFpbGZsb3d8eyJWIjoiMC4wLjAwMDAiLCJQIjoiV2luMzIiLCJBTiI6Ik1haWwiLCJXVCI6Mn0%3D%7C3000&sdata=urxb5EVc5lozepU3k%2BN%2BoQtys%2FlfWPZ%2F5l0Xkv8GS7U%3D&reserved=0

https://nam06.safelinks.protection.outlook.com/?url=https%3A%2F%2Fdocs.microsoft.com%2Flifecycle%2Fproducts%2Fwindows-10-home-and-pro&data=04%7C01%7CMabel.Gomes%40microsoft.com%7C1c9a7b7689324d568cbb08d9a889f499%7C72f988bf86f141af91ab2d7cd011db47%7C0%7C0%7C637726132742805083%7CUnknown%7CTWFpbGZsb3d8eyJWIjoiMC4wLjAwMDAiLCJQIjoiV2luMzIiLCJBTiI6Ik1haWwiLCJXVCI6Mn0%3D%7C3000&sdata=w%2FCTeQb2jul5ploM1Zr2itMW2uUxpMFWUPqhcbqfouk%3D&reserved=0
ps://docs.microsoft.com/en-us/lifecycle/faq/wind

ps://nam06.safelinks.protection.outlook.com/?url=https%3A%2F%2Fdocs.microsoft.com%2Flifecycle%2Fproducts%2Fwindows-10-enterprise-and-education&data=04%7C01%7CMabel.Gomes%40microsoft.com%7C1c9a7b7689324d568cbb08d9a889f499%7C72f988bf86f141af91ab2d7cd011db47%7C0%7C0%7C637726132742815043%7CUnknown%7CTWFpbGZsb3d8eyJWIjoiMC4wLjAwMDAiLCJQIjoiV2luMzIiLCJBTiI6Ik1haWwiLCJXVCI6Mn0%3D%7C3000&sdata=urxb5EVc5lozepU3k%2BN%2BoQtys%2FlfWPZ%2F5l0Xkv8GS7U%3D&reserved

ps://nam06.safelinks.protection.outlook.com/?url=https%3A%2F%2Fdocs.microsoft.com%2Flifecycle%2Fproducts%2Fwindows-10-home-and-pro&data=04%7C01%7CMabel.Gomes%40microsoft.com%7C1c9a7b7689324d568cbb08d9a889f499%7C72f988bf86f141af91ab2d7cd011db47%7C0%7C0%7C637726132742805083%7CUnknown%7CTWFpbGZsb3d8eyJWIjoiMC4wLjAwMDAiLCJQIjoiV2luMzIiLCJBTiI6Ik1haWwiLCJXVCI6Mn0%3D%7C3000&sdata=w%2FCTeQb2jul5ploM1Zr2itMW2uUxpMFWUPqhcbqfouk%3D&reserved
N/A
MC306666 (Updated) Pairing naming convention between Teams channels and corresponding SharePoint folders You might want to notify your users about this new capability and update your training and documentation as appropriate.

Review any automated script dependency on channel folders in SharePoint.

https://www.microsoft.com/microsoft-365/roadmap?filters=&searchterms=72211
You might want to notify your users about this new capability and update your training and documentation as appropriate.

Review any automated script dependency on channel folders in SharePoint.

ps://www.microsoft.com/microsoft-365/roadmap?filters=&searchterms=722
N/A
MC309911 (Updated) Automatically Detect Music You might want to notify your users about this change and update your training and documentation as appropriate.

https://www.microsoft.com/microsoft-365/roadmap?filters=&searchterms=89016
You might want to notify your users about this change and update your training and documentation as appropriate.

ps://www.microsoft.com/microsoft-365/roadmap?filters=&searchterms=89016
N/A
MC311635 Take action: Out-of-band update to address a Windows Server issue https://docs.microsoft.com/en-us/windows-server/administration/windows-server-update-services/manage/wsus-and-the-catalog-site#the-microsoft-update-catalog-site

https://docs.microsoft.com/windows/release-health/status-windows-10-1809-and-windows-server-2019#2770msgdesc

https://support.microsoft.com/help/5010195

https://support.microsoft.com/help/5010196

https://support.microsoft.com/help/5010197

https://support.microsoft.com/help/5010215
ps://docs.microsoft.com/en-us/windows-server/administration/windows-server-update-services/manage/wsus-and-the-catalog-site#the-microsoft-update-catal

ps://docs.microsoft.com/windows/release-health/status-windows-10-1809-and-windows-server-2019#2770msgd

ps://support.microsoft.com/help/5010195

ps://support.microsoft.com/help/5010196

ps://support.microsoft.com/help/5010197

ps://support.microsoft.com/help/5010215
N/A
MC312070 (Updated) Connected Templates You might want to notify your users about this change and update your training and documentation as appropriate.

https://www.microsoft.com/microsoft-365/roadmap?filters=&searchterms=84724
You might want to notify your users about this change and update your training and documentation as appropriate.

ps://www.microsoft.com/microsoft-365/roadmap?filters=&searchterms=84724
N/A
MC313566 Take action: January 2022 security update available for all supported versions of Windows https://support.microsoft.com/help/5009543

https://support.microsoft.com/help/5009545

https://support.microsoft.com/help/5009546

https://support.microsoft.com/help/5009557

https://support.microsoft.com/help/5009566

https://support.microsoft.com/help/5009585

https://support.microsoft.com/help/5009586

https://support.microsoft.com/help/5009595

https://support.microsoft.com/help/5009601

https://support.microsoft.com/help/5009610

https://support.microsoft.com/help/5009619

https://support.microsoft.com/help/5009621

https://support.microsoft.com/help/5009624

https://support.microsoft.com/help/5009627

https://support.microsoft.com/windows/update-windows-3c5ae7fc-9fb6-9af1-1984-b5e0412c556a#WindowsVersion=Windows_11

https://techcommunity.microsoft.com/t5/windows-it-pro-blog/windows-quality-updates-primer/ba-p/2569385
ps://support.microsoft.com/help/5009543

ps://support.microsoft.com/help/5009545

ps://support.microsoft.com/help/5009546

ps://support.microsoft.com/help/5009557

ps://support.microsoft.com/help/5009566

ps://support.microsoft.com/help/5009585

ps://support.microsoft.com/help/5009586

ps://support.microsoft.com/help/5009595

ps://support.microsoft.com/help/500960

ps://support.microsoft.com/help/50096

ps://support.microsoft.com/help/5009619

ps://support.microsoft.com/help/500962

ps://support.microsoft.com/help/5009624

ps://support.microsoft.com/help/5009627

ps://support.microsoft.com/windows/update-windows-3c5ae7fc-9fb6-9af1-1984-b5e0412c556a#WindowsVersion=Windows_

ps://techcommunity.microsoft.com/t5/windows-it-pro-blog/windows-quality-updates-primer/ba-p/2569385
01/11/2022
MC313659 (Updated) Shared focus plan in Viva Insights Inform eligible users with the Viva Insights license of the new shared focus plan.

Enable easier access to the Viva Insights Teams app for your users by pinning the app on the left navigation pane of Teams user interface for quicker discovery of the My team tab.

Create a custom-app permission policy and assign it to select users and ensure the app is not blocked in the teams admin center.

If you wish to disable the Viva Insights app, for the whole organization or select users, you will be able to do so through Teams Admin center.

Review and assess the impact on your organization. Additionally, you might consider updating your training and documentation as appropriate. Learn more about Microsoft Viva Insights, MyAnalytics, Briefing email, and how Microsoft protects your privacy.

https://docs.microsoft.com/microsoftteams/manage-apps

https://docs.microsoft.com/microsoftteams/teams-app-permission-policies

https://docs.microsoft.com/viva/insights/personal/Briefing/be-overview

https://docs.microsoft.com/viva/insights/personal/Briefing/be-privacy

https://docs.microsoft.com/viva/insights/personal/MyA-landing-page

https://docs.microsoft.com/viva/insights/personal/teams/viva-teams-app#admin-tasks-quick-start-guide

https://docs.microsoft.com/viva/insights/personal/teams/viva-teams-app#pin-the-app

https://docs.microsoft.com/viva/insights/use/myteam

https://www.microsoft.com/microsoft-365/roadmap?filters=&searchterms=88839

https://www.microsoft.com/microsoft-viva/buy-insights?activetab=pivot:overviewtab

https://www.microsoft.com/microsoft-viva/insights
Inform eligible users with the Viva Insights license of the new shared focus plan.

Enable easier access to the Viva Insights Teams app for your users by pinning the app on the left navigation pane of Teams user interface for quicker discovery of the My team tab.

Create a custom-app permission policy and assign it to select users and ensure the app is not blocked in the teams admin center.

If you wish to disable the Viva Insights app, for the whole organization or select users, you will be able to do so through Teams Admin center.

Review and assess the impact on your organization. Additionally, you might consider updating your training and documentation as appropriate. Learn more about Microsoft Viva Insights, MyAnalytics, Briefing email, and how Microsoft protects your privacy.

ps://docs.microsoft.com/microsoftteams/manage-app

ps://docs.microsoft.com/microsoftteams/teams-app-permission-polici

ps://docs.microsoft.com/viva/insights/personal/Briefing/be-overvi

ps://docs.microsoft.com/viva/insights/personal/Briefing/be-privacy

ps://docs.microsoft.com/viva/insights/personal/MyA-landing-pa

ps://docs.microsoft.com/viva/insights/personal/teams/viva-teams-app#admin-tasks-quick-star

ps://docs.microsoft.com/viva/insights/personal/teams/viva-teams-app#pi

ps://docs.microsoft.com/viva/insights/use/my

ps://www.microsoft.com/microsoft-365/roadmap?filters=&searchterms=88839

ps://www.microsoft.com/microsoft-viva/buy-insights?activetab=pivot:overviewtab

ps://www.microsoft.com/microsoft-viva/insi
N/A
MC314460 Discover Universal Print by Microsoft Qualifying customers are able to begin with Universal Print today. If you have not tried it yet, you can start on the Universal Print portal. You don't have to buy new printers; most manufacturers have updates available to upgrade your existing printer to a Universal Print ready printer.

You can also study the resources available in the Additional Information section, below, to learn more.

Additional information:

Universal Print site portal: Learn about the partnerships and ongoing evolution of Universal Print.

Microsoft Ignite session on Universal Print: For a closer look at the printing from OneDrive and Excel for web using Microsoft 365 integration, as well as demonstrations of Microsoft Endpoint Manager administrator functions to deploy and set up Universal Print printers.

Microsoft Ignite session on What's new with Universal Print in Windows 11: To take a closer look at PSA and PIN releases.

Partner integrations site: Discover printers that are Universal Print-ready.

License Universal Print: Learn more about purchasing a standalone Universal Print subscription. Universal Print is already included with commercial and educational Microsoft 365 and Windows 10 subscriptions.

We are always listening to your feedback. Let us know what you think, or what additional features you need at the Techcommunity forums.

https://aka.ms/upintegrations

https://docs.microsoft.com/en-us/universal-print/fundamentals/universal-print-license

https://techcommunity.microsoft.com/t5/universal-print/ct-p/UniversalPrint

https://techcommunity.microsoft.com/t5/video-hub/universal-print-integration-with-microsoft-365/ba-p/2909519

https://techcommunity.microsoft.com/t5/video-hub/what-s-new-with-universal-print-in-windows-11/ba-p/2909647

https://www.microsoft.com/en-us/microsoft-365/windows/universal-print

Qualifying customers are able to begin with Universal Print today. If you have not tried it yet, you can start on the Universal Print portal. You don't have to buy new printers; most manufacturers have updates available to upgrade your existing printer to a Universal Print ready printer.

You can also study the resources available in the Additional Information section, below, to learn more.

Additional information:

Universal Print site portal: Learn about the partnerships and ongoing evolution of Universal Print.

Microsoft Ignite session on Universal Print: For a closer look at the printing from OneDrive and Excel for web using Microsoft 365 integration, as well as demonstrations of Microsoft Endpoint Manager administrator functions to deploy and set up Universal Print printers.

Microsoft Ignite session on What's new with Universal Print in Windows 11: To take a closer look at PSA and PIN releases.

Partner integrations site: Discover printers that are Universal Print-ready.

License Universal Print: Learn more about purchasing a standalone Universal Print subscription. Universal Print is already included with commercial and educational Microsoft 365 and Windows 10 subscriptions.

We are always listening to your feedback. Let us know what you think, or what additional features you need at the Techcommunity forums.

ps://aka.ms/upintegrati

ps://docs.microsoft.com/en-us/universal-print/fundamentals/universal-print-lic

ps://techcommunity.microsoft.com/t5/universal-print/ct-p/UniversalP

ps://techcommunity.microsoft.com/t5/video-hub/universal-print-integration-with-microsoft-365/ba-p/2909519

ps://techcommunity.microsoft.com/t5/video-hub/what-s-new-with-universal-print-in-windows-11/ba-p/2909647

ps://www.microsoft.com/en-us/microsoft-365/windows/universal

N/A
MC315398 Take action: Out-of-band update to address issues after installing the January Windows update https://docs.microsoft.com/windows/release-health/status-windows-11-21h2#2773msgdesc

https://docs.microsoft.com/windows/release-health/status-windows-8.1-and-windows-server-2012-r2#2776msgdesc

https://docs.microsoft.com/windows/release-health/status-windows-server-2022#2775msgdesc

https://support.microsoft.com/help/5010789

https://support.microsoft.com/help/5010790

https://support.microsoft.com/help/5010791

https://support.microsoft.com/help/5010792

https://support.microsoft.com/help/5010793

https://support.microsoft.com/help/5010794

https://support.microsoft.com/help/5010795

https://support.microsoft.com/help/5010796

https://support.microsoft.com/help/5010797

https://support.microsoft.com/help/5010798

https://support.microsoft.com/help/5010799

https://support.microsoft.com/topic/kb5010691-refs-formatted-removable-media-may-fail-to-mount-or-mounts-as-raw-after-installing-the-january-11-2022-windows-updates-7a959f37-91b6-4baf-a797-829b0ee86c65

https://support.microsoft.com/windows/update-windows-3c5ae7fc-9fb6-9af1-1984-b5e0412c556a#WindowsVersion=Windows_11
ps://docs.microsoft.com/windows/release-health/status-windows-11-21h2#2773msgd

ps://docs.microsoft.com/windows/release-health/status-windows-8.1-and-windows-server-2012-r2#2776msgd

ps://docs.microsoft.com/windows/release-health/status-windows-server-2022#2775msgd

ps://support.microsoft.com/help/5010789

ps://support.microsoft.com/help/501079

ps://support.microsoft.com/help/501079

ps://support.microsoft.com/help/501079

ps://support.microsoft.com/help/5010793

ps://support.microsoft.com/help/5010794

ps://support.microsoft.com/help/5010795

ps://support.microsoft.com/help/5010796

ps://support.microsoft.com/help/5010797

ps://support.microsoft.com/help/5010798

ps://support.microsoft.com/help/5010799

ps://support.microsoft.com/topic/kb5010691-refs-formatted-removable-media-may-fail-to-mount-or-mounts-as-raw-after-installing-the-january-11-2022-windows-updates-7a959f37-91b6-4baf-a797-829b0ee86c65

ps://support.microsoft.com/windows/update-windows-3c5ae7fc-9fb6-9af1-1984-b5e0412c556a#WindowsVersion=Windows_
01/18/2022
MC316426 Why you shouldn’t set these 25 Windows policies Check out this blog post, which provides background on why policies have evolved over time and a detailed table outlining which policies are not recommended (and why), and what you should be using instead.

https://techcommunity.microsoft.com/t5/windows-it-pro-blog/why-you-shouldn-t-set-these-25-windows-policies/ba-p/3066178
Check out this blog post, which provides background on why policies have evolved over time and a detailed table outlining which policies are not recommended (and why), and what you should be using instead.

ps://techcommunity.microsoft.com/t5/windows-it-pro-blog/why-you-shouldn-t-set-these-25-windows-policies/ba-p/3066178
N/A
MC317702 Accelerate application validation against pre-released Windows security and feature updates Learn more about Test Base for Microsoft 365 and read November's general availability announcement for a recap of the latest capabilities.

If you'd like to onboard your applications through the Azure portal and quickly view insights, such as test results, performance metrics, and crash/hang signals, visit https://aka.ms/testbaseportal to sign up for Test Base.

Additional resources:

Test Base FAQ

Test Base for Microsoft 365 documentation (including quick-start and how-to guides)

Test Base Blog

https://aka.ms/testbaseportal

https://docs.microsoft.com/en-us/microsoft-365/test-base/?view=o365-worldwide

https://docs.microsoft.com/en-us/microsoft-365/test-base/faq?view=o365-worldwide

https://techcommunity.microsoft.com/t5/test-base-blog/bg-p/USL-Blog

https://techcommunity.microsoft.com/t5/test-base-blog/test-base-for-microsoft-365-has-reached-general-availability/ba-p/2893854

https://www.microsoft.com/en-us/testbase

Learn more about Test Base for Microsoft 365 and read November's general availability announcement for a recap of the latest capabilities.

If you'd like to onboard your applications through the Azure portal and quickly view insights, such as test results, performance metrics, and crash/hang signals, visit https://aka.ms/testbaseportal to sign up for Test Base.

Additional resources:

Test Base FAQ

Test Base for Microsoft 365 documentation (including quick-start and how-to guides)

Test Base Blog

ps://aka.ms/testbaseportal

ps://docs.microsoft.com/en-us/microsoft-365/test-base/?view=o365-world

ps://docs.microsoft.com/en-us/microsoft-365/test-base/faq?view=o365-world

ps://techcommunity.microsoft.com/t5/test-base-blog/bg-p/USL-Bl

ps://techcommunity.microsoft.com/t5/test-base-blog/test-base-for-microsoft-365-has-reached-general-availability/ba-p/2893854

ps://www.microsoft.com/en-us/testba

N/A
MC317766 (Updated) Live Captions in all available languages and CART Captions on Teams Meetings on Web IT Admins should update documentation for their organization as necessary.

https://www.microsoft.com/en-ww/microsoft-365/roadmap?filters=&searchterms=84001

https://www.microsoft.com/microsoft-365/roadmap?filters=&searchterms=84906
IT Admins should update documentation for their organization as necessary.

ps://www.microsoft.com/en-ww/microsoft-365/roadmap?filters=&searchterms=8400

ps://www.microsoft.com/microsoft-365/roadmap?filters=&searchterms=84906
N/A
MC318291 January 2022 Windows non-security preview "C" release available all supported versions of Windows https://support.microsoft.com/help/5008353

https://support.microsoft.com/help/5009596

https://support.microsoft.com/help/5009608

https://support.microsoft.com/help/5009616

https://techcommunity.microsoft.com/t5/windows-it-pro-blog/windows-quality-updates-primer/ba-p/2569385
ps://support.microsoft.com/help/5008353

ps://support.microsoft.com/help/5009596

ps://support.microsoft.com/help/5009608

ps://support.microsoft.com/help/5009616

ps://techcommunity.microsoft.com/t5/windows-it-pro-blog/windows-quality-updates-primer/ba-p/2569385
01/25/2022
MC318451 Windows 11 upgrade offer designated for broad deployment If you have not yet started your Windows 11 deployment, see Prepare for Windows 11 for guidance on infrastructure and tools, cloud-based management, the importance of reviewing your servicing approach and policies, and tips on how to prepare a pilot deployment.

To learn more about the latest trends in PC demand and usage, and get a glimpse at what's next for Windows, read Panos Panay's blog post, A new era of the PC.

https://blogs.windows.com/windowsexperience/2022/01/26/a-new-era-of-the-pc/

https://docs.microsoft.com/en-us/windows/whats-new/windows-11-prepare

https://www.microsoft.com/en-us/windows/windows-11?r=1

If you have not yet started your Windows 11 deployment, see Prepare for Windows 11 for guidance on infrastructure and tools, cloud-based management, the importance of reviewing your servicing approach and policies, and tips on how to prepare a pilot deployment.

To learn more about the latest trends in PC demand and usage, and get a glimpse at what's next for Windows, read Panos Panay's blog post, A new era of the PC.

ps://blogs.windows.com/windowsexperience/2022/01/26/a-new-era-of-the-pc/

ps://docs.microsoft.com/en-us/windows/whats-new/wind

ps://www.microsoft.com/en-us/windows/windows-11?

N/A
MC319237 Protections included in the January 11, 2022 Windows update might block NTLM authentication In environments where Kerberos authentication for 3-part SPNs stops working following the installation of the January 11, 2022 updates, Microsoft recommends that admins triage to determine why Kerberos authentication for the 3-part SPN failed. For guidance, including common reasons for 3-part SPN Kerberos authentication failure, refer to the links and documentation in the Additional information section, below.

Additional information:

KB5011233: Protections in CVE-2022-21920 may block NTLM authentication if Kerberos authentication is not successful

CVE-2022-21920: Windows Kerberos Elevation of Privilege Vulnerability

https://msrc.microsoft.com/update-guide/vulnerability/CVE-2022-21920

https://support.microsoft.com/help/5011233

In environments where Kerberos authentication for 3-part SPNs stops working following the installation of the January 11, 2022 updates, Microsoft recommends that admins triage to determine why Kerberos authentication for the 3-part SPN failed. For guidance, including common reasons for 3-part SPN Kerberos authentication failure, refer to the links and documentation in the Additional information section, below.

Additional information:

KB5011233: Protections in CVE-2022-21920 may block NTLM authentication if Kerberos authentication is not successful

CVE-2022-21920: Windows Kerberos Elevation of Privilege Vulnerability

ps://msrc.microsoft.com/update-guide/vulnerability/CVE-2022-219

ps://support.microsoft.com/help/5011233

N/A
MC320162 (Updated) People centric search rollout update (SharePoint, Office.com) You might want to notify your users about this change and update your training and documentation as appropriate.

https://www.microsoft.com/microsoft-365/roadmap?filters=&searchterms=68783
You might want to notify your users about this change and update your training and documentation as appropriate.

ps://www.microsoft.com/microsoft-365/roadmap?filters=&searchterms=68783
N/A
MC320163 (Updated) Updating default tenant-level tag management settings No specific action is required but you will want to review your settings and update your documentation as necessary.

https://www.microsoft.com/microsoft-365/roadmap?filters=&searchterms=88318
No specific action is required but you will want to review your settings and update your documentation as necessary.

ps://www.microsoft.com/microsoft-365/roadmap?filters=&searchterms=88318
N/A
MC320462 (Updated) People-centric search in Microsoft Search You might want to notify your users about this new capability and update your training and documentation as appropriate.

https://www.microsoft.com/microsoft-365/roadmap?filters=&searchterms=68783
You might want to notify your users about this new capability and update your training and documentation as appropriate.

ps://www.microsoft.com/microsoft-365/roadmap?filters=&searchterms=68783
N/A
MC320691 (Updated) Forms distribution and email notification feature No specific action is required but you may want to update your internal documentation as necessary.

https://www.microsoft.com/en-ww/microsoft-365/roadmap?filters=&searchterms=88886
No specific action is required but you may want to update your internal documentation as necessary.

ps://www.microsoft.com/en-ww/microsoft-365/roadmap?filters=&searchterms=88886
N/A
MC320945 (Updated) Advanced eDiscovery: General availability of Communication templates and issuing officer settings Your organization must have the appropriate organization subscription for Advanced eDiscovery, and you must be an eDiscovery Administrator in your organization to manage communication templates and issuing officers.

Access the Advanced eDiscovery solution in the Microsoft 365 compliance center:

Microsoft 365 compliance center for WW and GCC

Microsoft 365 compliance center for GCC-High

Microsoft 365 compliance center for DoD

[Learn more]

Create a legal hold notice

Overview of Microsoft 365 Advanced eDiscovery

Manage custodian communications templates in Advanced eDiscovery

Manage issuing officers in Advanced eDiscovery

https://compliance.apps.mil/

https://compliance.microsoft.com/

https://compliance.microsoft.us/

https://docs.microsoft.com/microsoft-365/compliance/create-hold-notification?view=o365-worldwide

https://docs.microsoft.com/microsoft-365/compliance/overview-ediscovery-20?view=o365-worldwide

https://docs.microsoft.com/microsoft-365/compliance/overview-ediscovery-20?view=o365-worldwide#subscriptions-and-licensing

https://go.microsoft.com/fwlink/?linkid=2187242

https://go.microsoft.com/fwlink/?linkid=2187342

https://www.microsoft.com/microsoft-365/roadmap?filters=&searchterms=88813

Your organization must have the appropriate organization subscription for Advanced eDiscovery, and you must be an eDiscovery Administrator in your organization to manage communication templates and issuing officers.

Access the Advanced eDiscovery solution in the Microsoft 365 compliance center:

Microsoft 365 compliance center for WW and GCC

Microsoft 365 compliance center for GCC-High

Microsoft 365 compliance center for DoD

[Learn more]

Create a legal hold notice

Overview of Microsoft 365 Advanced eDiscovery

Manage custodian communications templates in Advanced eDiscovery

Manage issuing officers in Advanced eDiscovery

ps://compliance.apps.mil/

ps://compliance.microsoft.com/

ps://compliance.microsoft.us/

ps://docs.microsoft.com/microsoft-365/compliance/create-hold-notification?view=o365-world

ps://docs.microsoft.com/microsoft-365/compliance/overview-ediscovery-20?view=o365-world

ps://docs.microsoft.com/microsoft-365/compliance/overview-ediscovery-20?view=o365-worldwide#subscriptions-and-licensi

ps://go.microsoft.com/fwlink/?linkid=218724

ps://go.microsoft.com/fwlink/?linkid=218734

ps://www.microsoft.com/microsoft-365/roadmap?filters=&searchterms=88813

N/A
MC321214 Security enforcement changes coming April 2022 for Windows Domain Controllers Review and complete the steps detailed at KB5008380 - Authentication updates (CVE-2021-42287) to protect environments and avoid outages.

Additional information:

Please refer to the below links for detailed guidance.

KB5008380 - Authentication updates (CVE-2021-42287)

CVE-2021-42287: Active Directory Domain Services Elevation of Privilege Vulnerability

https://msrc.microsoft.com/update-guide/vulnerability/CVE-2021-42287

https://support.microsoft.com/help/5008380

Review and complete the steps detailed at KB5008380 - Authentication updates (CVE-2021-42287) to protect environments and avoid outages.

Additional information:

Please refer to the below links for detailed guidance.

KB5008380 - Authentication updates (CVE-2021-42287)

CVE-2021-42287: Active Directory Domain Services Elevation of Privilege Vulnerability

ps://msrc.microsoft.com/update-guide/vulnerability/CVE-2021-42287

ps://support.microsoft.com/help/500838

04/14/2022
MC321247 (Updated) Advanced eDiscovery: Enhanced import custodians wizard experience Your organization must have the appropriate organization subscription for Advanced eDiscovery, and you must be an eDiscovery Administrator in your organization to manage communication templates and issuing officers.

Access the Advanced eDiscovery solution in the Microsoft 365 compliance center:

Microsoft 365 compliance center for WW and GCC

Microsoft 365 compliance center for GCC-High

Microsoft 365 compliance center for DoD

[Learn more]

Import custodians to an Advanced eDiscovery case

Overview of Microsoft 365 Advanced eDiscovery

https://compliance.apps.mil/

https://compliance.microsoft.com/

https://compliance.microsoft.us/

https://docs.microsoft.com/microsoft-365/compliance/bulk-add-custodians?view=o365-worldwide

https://docs.microsoft.com/microsoft-365/compliance/overview-ediscovery-20?view=o365-worldwide

https://docs.microsoft.com/microsoft-365/compliance/overview-ediscovery-20?view=o365-worldwide#subscriptions-and-licensing

https://www.microsoft.com/microsoft-365/roadmap?filters=&searchterms=88814

Your organization must have the appropriate organization subscription for Advanced eDiscovery, and you must be an eDiscovery Administrator in your organization to manage communication templates and issuing officers.

Access the Advanced eDiscovery solution in the Microsoft 365 compliance center:

Microsoft 365 compliance center for WW and GCC

Microsoft 365 compliance center for GCC-High

Microsoft 365 compliance center for DoD

[Learn more]

Import custodians to an Advanced eDiscovery case

Overview of Microsoft 365 Advanced eDiscovery

ps://compliance.apps.mil/

ps://compliance.microsoft.com/

ps://compliance.microsoft.us/

ps://docs.microsoft.com/microsoft-365/compliance/bulk-add-custodians?view=o365-world

ps://docs.microsoft.com/microsoft-365/compliance/overview-ediscovery-20?view=o365-world

ps://docs.microsoft.com/microsoft-365/compliance/overview-ediscovery-20?view=o365-worldwide#subscriptions-and-licensi

ps://www.microsoft.com/microsoft-365/roadmap?filters=&searchterms=88814

N/A
MC322553 (Updated) Microsoft Office default change – Blocking VBA macros in files from the internet Enterprises should evaluate their use of macros in files obtained from the internet to determine how this new default behavior will affect their users.

To learn more about how to get ready for this change and recommendations for managing VBA macros in Office files, read this article for Office admins.

https://docs.microsoft.com/en-gb/DeployOffice/security/internet-macros-blocked#block-macros-from-running-in-office-files-from-the-internet

https://go.microsoft.com/fwlink/?linkid=2185272

https://go.microsoft.com/fwlink/p/?linkid=2185771

https://go.microsoft.com/fwlink/p/?linkid=2186005

https://nam06.safelinks.protection.outlook.com/?url=https%3A%2F%2Fdocs.microsoft.com%2Fen-gb%2FDeployOffice%2Fsecurity%2Finternet-macros-blocked&data=05%7C01%7Cwegon%40microsoft.com%7C26acaac2ea6449a7a45c08da64687c3d%7C72f988bf86f141af91ab2d7cd011db47%7C1%7C0%7C637932697207119680%7CUnknown%7CTWFpbGZsb3d8eyJWIjoiMC4wLjAwMDAiLCJQIjoiV2luMzIiLCJBTiI6Ik1haWwiLCJXVCI6Mn0%3D%7C3000%7C%7C%7C&sdata=FjkXwfFWls1ZL4l3xiwZU%2FTM%2FVRLyjmoNo62er9YIgc%3D&reserved=0"

https://nam06.safelinks.protection.outlook.com/?url=https%3A%2F%2Fsupport.microsoft.com%2Ftopic%2F0952faa0-37e7-4316-b61d-5b5ed6024216&data=05%7C01%7Cwegon%40microsoft.com%7C26acaac2ea6449a7a45c08da64687c3d%7C72f988bf86f141af91ab2d7cd011db47%7C1%7C0%7C637932697207119680%7CUnknown%7CTWFpbGZsb3d8eyJWIjoiMC4wLjAwMDAiLCJQIjoiV2luMzIiLCJBTiI6Ik1haWwiLCJXVCI6Mn0%3D%7C3000%7C%7C%7C&sdata=D68HLWrR3XuGkWm0m%2F5JES9cNLv6%2FZhoiMDj%2Fbuz2b8%3D&reserved=0"

https://www.microsoft.com/microsoft-365/roadmap?rtc=1%26filters=&searchterms=88883’
Enterprises should evaluate their use of macros in files obtained from the internet to determine how this new default behavior will affect their users.

To learn more about how to get ready for this change and recommendations for managing VBA macros in Office files, read this article for Office admins.

ps://docs.microsoft.com/en-gb/DeployOffice/security/internet-macros-blocked#block-macros-from-running-in-office-files-from

ps://go.microsoft.com/fwlink/?linkid=218527

ps://go.microsoft.com/fwlink/p/?linkid=218577

ps://go.microsoft.com/fwlink/p/?linkid=2186005

ps://nam06.safelinks.protection.outlook.com/?url=https%3A%2F%2Fdocs.microsoft.com%2Fen-gb%2FDeployOffice%2Fsecurity%2Finternet-macros-blocked&data=05%7C01%7Cwegon%40microsoft.com%7C26acaac2ea6449a7a45c08da64687c3d%7C72f988bf86f141af91ab2d7cd011db47%7C1%7C0%7C637932697207119680%7CUnknown%7CTWFpbGZsb3d8eyJWIjoiMC4wLjAwMDAiLCJQIjoiV2luMzIiLCJBTiI6Ik1haWwiLCJXVCI6Mn0%3D%7C3000%7C%7C%7C&sdata=FjkXwfFWls1ZL4l3xiwZU%2FTM%2FVRLyjmoNo62er9YIgc%3D&reserved=0

ps://nam06.safelinks.protection.outlook.com/?url=https%3A%2F%2Fsupport.microsoft.com%2Ftopic%2F0952faa0-37e7-4316-b61d-5b5ed6024216&data=05%7C01%7Cwegon%40microsoft.com%7C26acaac2ea6449a7a45c08da64687c3d%7C72f988bf86f141af91ab2d7cd011db47%7C1%7C0%7C637932697207119680%7CUnknown%7CTWFpbGZsb3d8eyJWIjoiMC4wLjAwMDAiLCJQIjoiV2luMzIiLCJBTiI6Ik1haWwiLCJXVCI6Mn0%3D%7C3000%7C%7C%7C&sdata=D68HLWrR3XuGkWm0m%2F5JES9cNLv6%2FZhoiMDj%2Fbuz2b8%3D&reserved=0

ps://www.microsoft.com/microsoft-365/roadmap?rtc=1%26filters=&searchterms=88883’
N/A
MC322810 Take action: .NET Framework Out-of-band update to address issues after installing the January Windows update https://docs.microsoft.com/dotnet/api/system.directoryservices

https://docs.microsoft.com/mem/configmgr/sum/get-started/synchronize-software-updates#import-updates-from-the-microsoft-update-catalog

https://docs.microsoft.com/windows-server/administration/windows-server-update-services/manage/wsus-and-the-catalog-site#the-microsoft-update-catalog-site

https://support.microsoft.com/help/5011257

https://support.microsoft.com/help/5011258

https://support.microsoft.com/help/5011259

https://support.microsoft.com/help/5011260

https://support.microsoft.com/help/5011261

https://support.microsoft.com/help/5011262

https://support.microsoft.com/help/5011263

https://support.microsoft.com/help/5011264

https://support.microsoft.com/help/5011265

https://support.microsoft.com/help/5011266

https://support.microsoft.com/help/5011329

https://www.catalog.update.microsoft.com/
ps://docs.microsoft.com/dotnet/api/system.directoryservic

ps://docs.microsoft.com/mem/configmgr/sum/get-started/synchronize-software-updates#import-updates-from-the-microsoft-update-catal

ps://docs.microsoft.com/windows-server/administration/windows-server-update-services/manage/wsus-and-the-catalog-site#the-microsoft-update-catal

ps://support.microsoft.com/help/5011257

ps://support.microsoft.com/help/5011258

ps://support.microsoft.com/help/5011259

ps://support.microsoft.com/help/501126

ps://support.microsoft.com/help/501126

ps://support.microsoft.com/help/501126

ps://support.microsoft.com/help/5011263

ps://support.microsoft.com/help/5011264

ps://support.microsoft.com/help/5011265

ps://support.microsoft.com/help/5011266

ps://support.microsoft.com/help/5011329

ps://www.catalog.update.microsoft.com/
02/08/2022
MC324011 Take action: February 2022 security update available for all supported versions of Windows https://support.microsoft.com/help/

https://support.microsoft.com/help/5010342

https://support.microsoft.com/help/5010345

https://support.microsoft.com/help/5010354

https://support.microsoft.com/help/5010358

https://support.microsoft.com/help/5010359

https://support.microsoft.com/help/5010384

https://support.microsoft.com/help/5010386

https://support.microsoft.com/help/5010392

https://support.microsoft.com/help/5010395

https://support.microsoft.com/help/5010403

https://support.microsoft.com/help/5010404

https://support.microsoft.com/help/5010412

https://support.microsoft.com/help/5010419

https://support.microsoft.com/help/5010422

https://support.microsoft.com/windows/update-windows-3c5ae7fc-9fb6-9af1-1984-b5e0412c556a#WindowsVersion=Windows_11

https://techcommunity.microsoft.com/t5/windows-it-pro-blog/windows-quality-updates-primer/ba-p/2569385
ps://support.microsoft.com/help/

ps://support.microsoft.com/help/501034

ps://support.microsoft.com/help/5010345

ps://support.microsoft.com/help/5010354

ps://support.microsoft.com/help/5010358

ps://support.microsoft.com/help/5010359

ps://support.microsoft.com/help/5010384

ps://support.microsoft.com/help/5010386

ps://support.microsoft.com/help/501039

ps://support.microsoft.com/help/5010395

ps://support.microsoft.com/help/5010403

ps://support.microsoft.com/help/5010404

ps://support.microsoft.com/help/50104

ps://support.microsoft.com/help/5010419

ps://support.microsoft.com/help/50104

ps://support.microsoft.com/windows/update-windows-3c5ae7fc-9fb6-9af1-1984-b5e0412c556a#WindowsVersion=Windows_

ps://techcommunity.microsoft.com/t5/windows-it-pro-blog/windows-quality-updates-primer/ba-p/2569385
02/08/2022
MC324459 Yammer Administrator Role in Azure Active Directory Admins can start to plan how they would like to use role-based access control in Azure Active Directory to manage Yammer admins within their organization.

https://www.microsoft.com/microsoft-365/roadmap?filters=&searchterms=82187
Admins can start to plan how they would like to use role-based access control in Azure Active Directory to manage Yammer admins within their organization.

ps://www.microsoft.com/microsoft-365/roadmap?filters=&searchterms=82187
N/A
MC329034 Plan for change: Our monthly Office Hours support your move to Windows 11 and the cloud Visit https://aka.ms/Windows/OfficeHours for details about this monthly series and a list of future dates. Click here to add the February event to your calendar.

https://aka.ms/Windows/OfficeHours

https://techcommunity.microsoft.com/t5/windows-events/windows-office-hours-february-17-2022/ev-p/3035161
Visit https://aka.ms/Windows/OfficeHours for details about this monthly series and a list of future dates. Click here to add the February event to your calendar.

ps://aka.ms/Windows/OfficeHour

ps://techcommunity.microsoft.com/t5/windows-events/windows-office-hours-february-17-2022/ev-p/303516
02/17/2022
MC332871 (Updated) Account Switching in Office mobile apps On iOS, you can test the feature today by participating in the Office Insider program by visitingJoin the Office Insider Program.

You might want to notify your users about this new capability and update your training and documentation as appropriate.

https://insider.office.com/en-us/join/iOS

https://www.microsoft.com/microsoft-365/roadmap?filters=&searchterms=88930%2C
On iOS, you can test the feature today by participating in the Office Insider program by visitingJoin the Office Insider Program.

You might want to notify your users about this new capability and update your training and documentation as appropriate.

ps://insider.office.com/en-us/join/iOS

ps://www.microsoft.com/microsoft-365/roadmap?filters=&searchterms=8893
N/A
MC333022 February 2022 Windows non-security preview "C" release available all supported versions of Windows https://support.microsoft.com/help/5010414

https://support.microsoft.com/help/5010415

https://support.microsoft.com/help/5010421

https://support.microsoft.com/help/5010427

https://techcommunity.microsoft.com/t5/windows-it-pro-blog/windows-quality-updates-primer/ba-p/2569385
ps://support.microsoft.com/help/5010414

ps://support.microsoft.com/help/5010415

ps://support.microsoft.com/help/501042

ps://support.microsoft.com/help/5010427

ps://techcommunity.microsoft.com/t5/windows-it-pro-blog/windows-quality-updates-primer/ba-p/2569385
02/15/2022
MC333227 Retirement of superseded Azure AD (Azure Active Directory) Connect Sync versions To upgrade your Azure AD Connect Sync server you can follow the steps that are given here: Azure AD Connect: Upgrade from an earlier version.

If you have any concerns about the retirement of superseded versions of Azure AD Connect Sync or have questions about upgrading to the latest version, please open a support request, mentioning “Directory Synchronization – Azure AD Connect” as your support topic.

Learn more:

Retiring Azure AD Connect 2.x versions

https://docs.microsoft.com/azure/active-directory/hybrid/reference-connect-version-history

https://docs.microsoft.com/azure/active-directory/hybrid/reference-connect-version-history#retiring-azure-ad-connect-2x-versions
To upgrade your Azure AD Connect Sync server you can follow the steps that are given here: Azure AD Connect: Upgrade from an earlier version.

If you have any concerns about the retirement of superseded versions of Azure AD Connect Sync or have questions about upgrading to the latest version, please open a support request, mentioning “Directory Synchronization – Azure AD Connect” as your support topic.

Learn more:

Retiring Azure AD Connect 2.x versions

ps://docs.microsoft.com/azure/active-directory/hybrid/reference-connect-version-history

ps://docs.microsoft.com/azure/active-directory/hybrid/reference-connect-version-history#retiring-azure-ad-connect-2x-versi
N/A
MC333941 (Updated) New Fluent Emoji style coming to Teams emojis and reactions You might want to notify your users about this change and update your training and documentation as appropriate.

Learn more:

An Emoji For Your Thoughts

https://medium.com/microsoft-design/emotionality-at-work-398182387adc

https://www.microsoft.com/microsoft-365/roadmap?filters=&searchterms=88277
You might want to notify your users about this change and update your training and documentation as appropriate.

Learn more:

An Emoji For Your Thoughts

ps://medium.com/microsoft-design/emotionality-at-work-398182387

ps://www.microsoft.com/microsoft-365/roadmap?filters=&searchterms=88277
N/A
MC335609 Retirement of Get/Set-PhishFilterPolicy PowerShell (legacy) to manage spoofed senders using new Tenant Allow Block list Instead of using "Get-PhishFilterPolicy" or "Set-PhishFilterPolicy" PowerShell cmdlets, we recommend using "Spoof intelligence insight" in order to view and "Tenant allow block lists-Spoofing" in order to manage spoofing activity respectively. Note that the new functionality has been fully available and functional in your tenant organization since it was launched in 2021(Refer to MC248392 and Roadmap: 70590) and will continue to the serve the purpose for Anti-Spoofing management within the tenant. Details are listed as below:

The rule called "Tenant Allow/Block Lists" in the list of Threat policies page, which will provide a page for "Spoofing" from where a Security Administrator can manage spoofed domains/users (i.e. email addresses) and allow or block them for the tenant.

As a Security Administrator, you can view, add, update, delete spoofed domain pairs using this policy or optionally using the below PowerShell cmdlets (Entries here will never expire, unless deleted by the Security Administrator):

Get-TenantAllowBlockListSpoofItems

New-TenantAllowBlockListSpoofItems

Set-TenantAllowBlockListSpoofItems

Remove-TenantAllowBlockListSpoofItems

Spoof intelligence insight will continue to provide the Spoofing activity automatically detected and marked as "Allowed" / "Blocked" by Spoof intelligence system. This can be viewed by clicking on the link "View spoofing activity" from Tenant Allow/Block Lists page-Spoofing tab. Optionally, 'Get-SpoofIntelligenceInsight' PowerShell cmdlet can be used to view this activity. Security Administrator can also override the Action (i.e. Allow/Block) using Spoof intelligence insight available on the Security Center. Once Action is changed (e.g. Block to Allow), the selected Spoof domain pair will appear on the "Tenant Allow/Block lists-Spoofing" page as this is now considered tenant specific spoof domain pair.

Spoof detections report (i.e. Spoof Mail report) and PowerShell cmdlet 'Get-SpoofMailReport' will continue to provide the detailed mail flow information about the spoofing activity along with the authentication results such as SPF, DKIM, DMARC (up to last 90 days).

Please review to learn more.

Learn more about the functionality being retired here: Manage spoofed senders using the spoof intelligence policy and spoof intelligence insight in EOP

To learn more about the new functionality already available in your tenant, please refer to the following articles:

Spoof intelligence insight in EOP

Manage the Tenant Allow/Block List: View spoofed sender entries

https://docs.microsoft.com/microsoft-365/security/office-365-security/learn-about-spoof-intelligence?view=o365-worldwide

https://docs.microsoft.com/microsoft-365/security/office-365-security/learn-about-spoof-intelligence?view=o365-worldwide#open-the-spoof-intelligence-insight-in-the-microsoft-365-defender-portal

https://docs.microsoft.com/microsoft-365/security/office-365-security/tenant-allow-block-list?view=o365-worldwide#view-spoofed-sender-entries

https://docs.microsoft.com/microsoft-365/security/office-365-security/walkthrough-spoof-intelligence-insight?view=o365-worldwide
Instead of using "Get-PhishFilterPolicy" or "Set-PhishFilterPolicy" PowerShell cmdlets, we recommend using "Spoof intelligence insight" in order to view and "Tenant allow block lists-Spoofing" in order to manage spoofing activity respectively. Note that the new functionality has been fully available and functional in your tenant organization since it was launched in 2021(Refer to MC248392 and Roadmap: 70590) and will continue to the serve the purpose for Anti-Spoofing management within the tenant. Details are listed as below:

The rule called "Tenant Allow/Block Lists" in the list of Threat policies page, which will provide a page for "Spoofing" from where a Security Administrator can manage spoofed domains/users (i.e. email addresses) and allow or block them for the tenant.

As a Security Administrator, you can view, add, update, delete spoofed domain pairs using this policy or optionally using the below PowerShell cmdlets (Entries here will never expire, unless deleted by the Security Administrator):

Get-TenantAllowBlockListSpoofItems

New-TenantAllowBlockListSpoofItems

Set-TenantAllowBlockListSpoofItems

Remove-TenantAllowBlockListSpoofItems

Spoof intelligence insight will continue to provide the Spoofing activity automatically detected and marked as "Allowed" / "Blocked" by Spoof intelligence system. This can be viewed by clicking on the link "View spoofing activity" from Tenant Allow/Block Lists page-Spoofing tab. Optionally, 'Get-SpoofIntelligenceInsight' PowerShell cmdlet can be used to view this activity. Security Administrator can also override the Action (i.e. Allow/Block) using Spoof intelligence insight available on the Security Center. Once Action is changed (e.g. Block to Allow), the selected Spoof domain pair will appear on the "Tenant Allow/Block lists-Spoofing" page as this is now considered tenant specific spoof domain pair.

Spoof detections report (i.e. Spoof Mail report) and PowerShell cmdlet 'Get-SpoofMailReport' will continue to provide the detailed mail flow information about the spoofing activity along with the authentication results such as SPF, DKIM, DMARC (up to last 90 days).

Please review to learn more.

Learn more about the functionality being retired here: Manage spoofed senders using the spoof intelligence policy and spoof intelligence insight in EOP

To learn more about the new functionality already available in your tenant, please refer to the following articles:

Spoof intelligence insight in EOP

Manage the Tenant Allow/Block List: View spoofed sender entries

ps://docs.microsoft.com/microsoft-365/security/office-365-security/learn-about-spoof-intelligence?view=o365-world

ps://docs.microsoft.com/microsoft-365/security/office-365-security/learn-about-spoof-intelligence?view=o365-worldwide#open-the-spoof-intelligence-insight-in-the-microsoft-365-defender-portal

ps://docs.microsoft.com/microsoft-365/security/office-365-security/tenant-allow-block-list?view=o365-worldwide#view-spoofed-sender-entri

ps://docs.microsoft.com/microsoft-365/security/office-365-security/walkthrough-spoof-intelligence-insight?view=o365-world
N/A
MC336858 (Updated) OneDrive and SharePoint: Access your Teams standard and private channel files This change will only impact SharePoint sites that are connected with a Team, and the “In channels” section will only be visible in the document library where Teams channels content is stored.

Standard channels will appear in both the “In channels” and “In site library” sections, while private channels will only appear in the "In channels" list..

This was based on customer feedback that duplication of entries between the list was confusing and made the “In site library” list unnecessarily long. The impact of this decision is that, if an end user expects to find a folder within the document library, they will now need to look under the “In channels” section.

You might want to notify your end users, update your user training and prepare your help desk as part of this change.

https://www.microsoft.com/microsoft-365/roadmap?filters=&searchterms=88911
This change will only impact SharePoint sites that are connected with a Team, and the “In channels” section will only be visible in the document library where Teams channels content is stored.

Standard channels will appear in both the “In channels” and “In site library” sections, while private channels will only appear in the "In channels" list..

This was based on customer feedback that duplication of entries between the list was confusing and made the “In site library” list unnecessarily long. The impact of this decision is that, if an end user expects to find a folder within the document library, they will now need to look under the “In channels” section.

You might want to notify your end users, update your user training and prepare your help desk as part of this change.

ps://www.microsoft.com/microsoft-365/roadmap?filters=&searchterms=889
N/A
MC337322 Hardening changes coming March 8: Windows DCOM Server Security Feature Bypass During the timeline phases in which hardening changes can be enabled or disabled (prior to March 14, 2023), users can use the following registry key:

Path: HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Ole\AppCompat

Value Name: "RequireIntegrityActivationAuthenticationLevel"

Type: dword

Value Data: default = 0x00000000 means disabled. 0x00000001 means enabled. If this value is not defined, it will default to disabled. You must enter Value Data in hexadecimal format.

Devices must be restarted after setting this registry key, for it to take effect. Enabling the registry key above will make DCOM servers enforce an Authentication-Level of RPC_C_AUTHN_LEVEL_PKT_INTEGRITY or higher for activation.

To help identify applications that might have compatibility issues after DCOM security hardening changes are enabled, new DCOM error events were added in the System log, and can be found with Message IDs 10036, 10037 and 10038.

If issues are encountered during testing, contact the vendor for the affected client or server software for an update or workaround.

Additional Information:

It is important to ensure proper testing for this change. Please review the below documentation.

KB5004442: Manage changes for Windows DCOM Server Security Feature Bypass (CVE-2021-26414)

CVE-2021-26414: Windows DCOM Server Security Feature Bypass

Microsoft Docs: Distributed Component Object Model (DCOM) Remote Protocol

https://docs.microsoft.com/openspecs/windows_protocols/ms-dcom/4a893f3d-bd29-48cd-9f43-d9777a4415b0

https://msrc.microsoft.com/update-guide/vulnerability/CVE-2021-26414

https://support.microsoft.com/help/5004442

During the timeline phases in which hardening changes can be enabled or disabled (prior to March 14, 2023), users can use the following registry key:

Path: HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Ole\AppCompat

Value Name: "RequireIntegrityActivationAuthenticationLevel"

Type: dword

Value Data: default = 0x00000000 means disabled. 0x00000001 means enabled. If this value is not defined, it will default to disabled. You must enter Value Data in hexadecimal format.

Devices must be restarted after setting this registry key, for it to take effect. Enabling the registry key above will make DCOM servers enforce an Authentication-Level of RPC_C_AUTHN_LEVEL_PKT_INTEGRITY or higher for activation.

To help identify applications that might have compatibility issues after DCOM security hardening changes are enabled, new DCOM error events were added in the System log, and can be found with Message IDs 10036, 10037 and 10038.

If issues are encountered during testing, contact the vendor for the affected client or server software for an update or workaround.

Additional Information:

It is important to ensure proper testing for this change. Please review the below documentation.

KB5004442: Manage changes for Windows DCOM Server Security Feature Bypass (CVE-2021-26414)

CVE-2021-26414: Windows DCOM Server Security Feature Bypass

Microsoft Docs: Distributed Component Object Model (DCOM) Remote Protocol

ps://docs.microsoft.com/openspecs/windows_protocols/ms-dcom/4a893f3d-bd29-48cd-9f43-d9777a4415b

ps://msrc.microsoft.com/update-guide/vulnerability/CVE-2021-26414

ps://support.microsoft.com/help/500444

06/14/2022
MC337332 (Updated) Export feature in Teams Admin Center You might want to notify your Teams administrators about this new capability and update your training and documentation as appropriate.

https://www.microsoft.com/microsoft-365/roadmap?rtc=1%26filters=&searchterms=85704
You might want to notify your Teams administrators about this new capability and update your training and documentation as appropriate.

ps://www.microsoft.com/microsoft-365/roadmap?rtc=1%26filters=&searchterms=85704
N/A
MC337955 (Updated) Microsoft Stream: Improve audio quality with Noise suppression for Stream (on SharePoint) No action required. You may want to update your documentation as needed.

https://www.microsoft.com/en-ww/microsoft-365/roadmap?filters=&searchterms=88949
No action required. You may want to update your documentation as needed.

ps://www.microsoft.com/en-ww/microsoft-365/roadmap?filters=&searchterms=88949
N/A
MC338988 REST API for On-Premises Mailboxes Preview Ending https://docs.microsoft.com/exchange/client-developer/exchange-web-services/how-to-authenticate-an-ews-application-by-using-oauth

https://docs.microsoft.com/graph/graph-explorer/graph-explorer-overview

https://docs.microsoft.com/graph/use-the-api

https://techcommunity.microsoft.com/t5/exchange-team-blog/application-access-policy-support-in-ews/ba-p/2110361

https://techcommunity.microsoft.com/t5/exchange-team-blog/upcoming-changes-to-exchange-web-services-ews-api-for-office-365/ba-p/608055
ps://docs.microsoft.com/exchange/client-developer/exchange-web-services/how-to-authenticate-an-ews-application-by-using-oa

ps://docs.microsoft.com/graph/graph-explorer/graph-explorer-overvi

ps://techcommunity.microsoft.com/t5/exchange-team-blog/application-access-policy-support-in-ews/ba-p/211036

ps://techcommunity.microsoft.com/t5/exchange-team-blog/upcoming-changes-to-exchange-web-services-ews-api-for-office-365/ba-p/608055
N/A
MC339048 Take action: Microsoft Root Certificate changes starting March 22 Administrators should implement the "G2" root certificate before the "G1" root certificate is removed by the root certificate update. There are multiple ways to deploy the root store to enterprise devices.

Carefully review the documentation in the Additional information section of this entry, which provides details on the changes taking place and detailed migration instructions.

Additional information:

Removal of the U.S. Federal Common Policy CA certificate from the Microsoft trusted root | Microsoft Docs: Main article discussing the removal in detail, potential issues, steps to avoid issues, and troubleshoot and analysis guidance

Migrate to the Federal Common Policy CA G2 | FICAM Playbooks: Instructions to manually download and migrate to the "G2" root certificate

Obtain and verify a copy of the Federal Common Policy CA G2 certificate | FICAM Playbooks: Details on downloading and installing the "G2" root certificate on Windows workgroup, member, and domain controller computers

Distribute the certificate to operating systems | FICAM Playbooks: Guidance to deploy the root store to enterprise devices (see the "Microsoft Solutions" section)

Program Requirements - Microsoft Trusted Root Program | Microsoft Docs: Introduction to the Trusted Root Program, as well as general and technical requirements

https://docs.microsoft.com/security/trusted-root/program-requirements

https://docs.microsoft.com/troubleshoot/windows-server/windows-security/microsoft-trusted-root-store-removal-of-us-federal-common-policy

https://playbooks.idmanagement.gov/fpki/common/distribute-os/

https://playbooks.idmanagement.gov/fpki/common/migrate/

https://playbooks.idmanagement.gov/fpki/common/obtain-and-verify

https://www.idmanagement.gov/

Administrators should implement the "G2" root certificate before the "G1" root certificate is removed by the root certificate update. There are multiple ways to deploy the root store to enterprise devices.

Carefully review the documentation in the Additional information section of this entry, which provides details on the changes taking place and detailed migration instructions.

Additional information:

Removal of the U.S. Federal Common Policy CA certificate from the Microsoft trusted root | Microsoft Docs: Main article discussing the removal in detail, potential issues, steps to avoid issues, and troubleshoot and analysis guidance

Migrate to the Federal Common Policy CA G2 | FICAM Playbooks: Instructions to manually download and migrate to the "G2" root certificate

Obtain and verify a copy of the Federal Common Policy CA G2 certificate | FICAM Playbooks: Details on downloading and installing the "G2" root certificate on Windows workgroup, member, and domain controller computers

Distribute the certificate to operating systems | FICAM Playbooks: Guidance to deploy the root store to enterprise devices (see the "Microsoft Solutions" section)

Program Requirements - Microsoft Trusted Root Program | Microsoft Docs: Introduction to the Trusted Root Program, as well as general and technical requirements

ps://docs.microsoft.com/security/trusted-root/program-requirem

ps://docs.microsoft.com/troubleshoot/windows-server/windows-security/microsoft-trusted-root-store-removal-of-us-federal-common-policy

ps://playbooks.idmanagement.gov/fpki/common/distribute-os/

ps://playbooks.idmanagement.gov/fpki/common/migrate/

ps://playbooks.idmanagement.gov/fpki/common/obtain-and-verify

ps://www.idmanagement.gov/

03/22/2022
MC339117 (Updated) Preview - Enabling customization capabilities for SSPR, footer hyperlinks and favicon in Company Branding. You might want to familiarize yourself with how to add branding to your organization's Azure AD sign-in page and update your documentation accordingly.

https://www.microsoft.com/en-ww/microsoft-365/roadmap?filters=&searchterms=88928
You might want to familiarize yourself with how to add branding to your organization's Azure AD sign-in page and update your documentation accordingly.

ps://www.microsoft.com/en-ww/microsoft-365/roadmap?filters=&searchterms=88928
N/A
MC340717 Take action: March 2022 security update available for all supported versions of Windows https://docs.microsoft.com/windows/win32/fileio/reparse-points

https://support.microsoft.com/help/5011485

https://support.microsoft.com/help/5011487

https://support.microsoft.com/help/5011491

https://support.microsoft.com/help/5011493

https://support.microsoft.com/help/5011495

https://support.microsoft.com/help/5011497

https://support.microsoft.com/help/5011503

https://support.microsoft.com/help/5011525

https://support.microsoft.com/help/5011527

https://support.microsoft.com/help/5011529

https://support.microsoft.com/help/5011534

https://support.microsoft.com/help/5011535

https://support.microsoft.com/help/5011552

https://support.microsoft.com/help/5011560

https://support.microsoft.com/help/5011564

https://support.microsoft.com/windows/update-windows-3c5ae7fc-9fb6-9af1-1984-b5e0412c556a#WindowsVersion=Windows_11

https://techcommunity.microsoft.com/t5/windows-it-pro-blog/windows-quality-updates-primer/ba-p/2569385
ps://docs.microsoft.com/windows/win32/fileio/reparse-poi

ps://support.microsoft.com/help/5011485

ps://support.microsoft.com/help/5011487

ps://support.microsoft.com/help/501149

ps://support.microsoft.com/help/5011493

ps://support.microsoft.com/help/5011495

ps://support.microsoft.com/help/5011497

ps://support.microsoft.com/help/5011503

ps://support.microsoft.com/help/5011525

ps://support.microsoft.com/help/5011527

ps://support.microsoft.com/help/5011529

ps://support.microsoft.com/help/5011534

ps://support.microsoft.com/help/5011535

ps://support.microsoft.com/help/501155

ps://support.microsoft.com/help/501156

ps://support.microsoft.com/help/5011564

ps://support.microsoft.com/windows/update-windows-3c5ae7fc-9fb6-9af1-1984-b5e0412c556a#WindowsVersion=Windows_

ps://techcommunity.microsoft.com/t5/windows-it-pro-blog/windows-quality-updates-primer/ba-p/2569385
N/A
MC341572 (Updated) Microsoft Teams: Text Predictions for Teams Mobile (Android) Review your messaging policies and the policy setting for this feature.

https://www.microsoft.com/en-ww/microsoft-365/roadmap?filters=&searchterms=81573
Review your messaging policies and the policy setting for this feature.

ps://www.microsoft.com/en-ww/microsoft-365/roadmap?filters=&searchterms=81573
N/A
MC341683 (Updated) Upcoming changes to Office 365 Management API events for Microsoft Defender for Office 365 You should evaluate your use of the event deeplinks and make sure that you update your playbooks and workflows to work within the Microsoft 365 Defender portal. If you are still working fully or partially out of the Office 365 Security & Compliance center, we recommend that you plan your transition, to avoid interrupted experiences.

Learn more:

Microsoft Defender for Office 365 and Threat Investigation and Response schema

https://docs.microsoft.com/office/office-365-management-api/office-365-management-activity-api-schema#microsoft-defender-for-office-365-and-threat-investigation-and-response-schema
You should evaluate your use of the event deeplinks and make sure that you update your playbooks and workflows to work within the Microsoft 365 Defender portal. If you are still working fully or partially out of the Office 365 Security & Compliance center, we recommend that you plan your transition, to avoid interrupted experiences.

Learn more:

Microsoft Defender for Office 365 and Threat Investigation and Response schema

ps://docs.microsoft.com/office/office-365-management-api/office-365-management-activity-api-schema#microsoft-defender-for-office-365-and-threat-investigation-and-response-sc
N/A
MC341996 Search highlights for enterprise coming soon to Windows 10 and Windows 11 If you would like to take advantage of this latest Windows Search feature, no action is needed outside of receiving the required Windows updates. If you would like to manage this and other Windows search features, please refer to the Search management policies here: Policy CSP - Search.

Additional information:

Announcing Windows 11 Insider Preview Build 22572

Windows Search Overview

Microsoft Search in Bing Overview

Microsoft Search Admin Experience

https://blogs.windows.com/windows-insider/2022/03/09/announcing-windows-11-insider-preview-build-22572/

https://docs.microsoft.com/microsoftsearch/

https://docs.microsoft.com/microsoftsearch/overview-microsoft-search-bing

https://docs.microsoft.com/windows/client-management/mdm/policy-csp-search

https://support.microsoft.com/windows/search-for-anything-anywhere-b14cc5bf-c92a-1e73-ea18-2845891e6cc8

If you would like to take advantage of this latest Windows Search feature, no action is needed outside of receiving the required Windows updates. If you would like to manage this and other Windows search features, please refer to the Search management policies here: Policy CSP - Search.

Additional information:

Announcing Windows 11 Insider Preview Build 22572

Windows Search Overview

Microsoft Search in Bing Overview

Microsoft Search Admin Experience

ps://blogs.windows.com/windows-insider/2022/03/09/announcing-windows-11-insider-preview-build-22572/

ps://docs.microsoft.com/microsoftsearch/

ps://docs.microsoft.com/microsoftsearch/overview-microsoft-search-bi

ps://docs.microsoft.com/windows/client-management/mdm/policy-csp-searc

ps://support.microsoft.com/windows/search-for-anything-anywhere-b14cc5bf-c92a-1e73-ea18-2845891e6cc8

N/A
MC343073 Windows Office Hours: March 17, 2022 Add it to your calendar or visit https://aka.ms/Windows/OfficeHours to learn more. Questions can be posted anytime now through Thursday. Just visit http://aka.ms/JoinOfficeHours and select "Start a New Discussion."

https://aka.ms/JoinOfficeHours

https://aka.ms/Windows/OfficeHours

https://techcommunity.microsoft.com/t5/windows-events/windows-office-hours-march-17-2022/ev-p/3061071
Add it to your calendar or visit https://aka.ms/Windows/OfficeHours to learn more. Questions can be posted anytime now through Thursday. Just visit http://aka.ms/JoinOfficeHours and select "Start a New Discussion."

ps://aka.ms/JoinOfficeHour

ps://aka.ms/Windows/OfficeHour

ps://techcommunity.microsoft.com/t5/windows-events/windows-office-hours-march-17-2022/ev-p/306107
03/17/2022
MC343428 SharePoint app bar – Temporary window to disable is extended While the app bar plays an integral role in the overall modern SharePoint experience, we acknowledge that for some customers there is a continued desire to disable the app bar.

Learn more about how to use the new SharePoint app bar and set up global navigation.

https://support.microsoft.com/office/use-the-sharepoint-app-bar-b2ab82d5-9af7-445e-ad24-236c5a86b5f8?ui=en-US&rs=en-US&ad=US

https://www.microsoft.com/microsoft-365/roadmap?filters=&searchterms=70576
While the app bar plays an integral role in the overall modern SharePoint experience, we acknowledge that for some customers there is a continued desire to disable the app bar.

Learn more about how to use the new SharePoint app bar and set up global navigation.

ps://support.microsoft.com/office/use-the-sharepoint-app-bar-b2ab82d5-9af7-445e-ad24-236c5a86b5f8?ui=en-US&rs=en-US&ad=US

ps://www.microsoft.com/microsoft-365/roadmap?filters=&searchterms=70576
N/A
MC343720 Internet Explorer 11 desktop app retires June 15, 2022 To prepare, we recommend setting up Microsoft Edge in your organization. If your organization needs legacy browser support, you should set up IE mode in Microsoft Edge as soon as possible because this is a multi-step process.

View the Microsoft browser usage report in the Microsoft 365 Admin center to help size IE usage in your organization. Appropriate permissions required.

Use the Getting Started guide to set up IE mode in Microsoft Edge in your organization.

Start setting up IE mode by performing Site Discovery (typically 3-4 weeks). This is also available in the Configure IE mode guided experience in the Microsoft 365 admin center.

Learn more by joining a webinar.

Use IE Driver to automate end-to-end IE mode testing.

Disable IE11 to test IE mode in your environment.

FastTrack can help with deployment and configuration at no additional charge for customers with 150 or more seats of Windows 10.

For cost-free help with web app and site compatibility, especially if you have legacy site concerns after configuring IE mode, learn more about the App Assure program.

Additional information:

Read our FAQ to help answer your questions and use the troubleshooting guide during setup.

Visit the Internet Explorer mode website.

Watch our Ignite video to learn more about getting started.

Learn more about hosting your IE mode site list in an authenticated cloud endpoint in the Microsoft 365 admin center.

Read our announcement blog and our blog series for more information.

https://aka.ms/configureiemode

https://aka.ms/IEmodeblog

https://aka.ms/IEModeFAQ

https://aka.ms/IEModeGuide

https://aka.ms/IEmodewebinar

https://aka.ms/IEModeWebsite

https://aka.ms/ietoedge

https://docs.microsoft.com/deployedge/edge-ie-disable-ie11

https://docs.microsoft.com/deployedge/edge-ie-mode-faq

https://docs.microsoft.com/deployedge/edge-ie-mode-site-discovery

https://docs.microsoft.com/fasttrack/win-10-microsoft-edge-assistance-offered

https://docs.microsoft.com/microsoft-365/admin/activity-reports/browser-usage-report?view=o365-worldwide

https://docs.microsoft.com/microsoft-edge/webdriver-chromium/ie-mode?tabs=c-sharp

https://www.microsoft.com/fasttrack/microsoft-365/app-assure

https://youtu.be/MZt790ZVvBk

To prepare, we recommend setting up Microsoft Edge in your organization. If your organization needs legacy browser support, you should set up IE mode in Microsoft Edge as soon as possible because this is a multi-step process.

View the Microsoft browser usage report in the Microsoft 365 Admin center to help size IE usage in your organization. Appropriate permissions required.

Use the Getting Started guide to set up IE mode in Microsoft Edge in your organization.

Start setting up IE mode by performing Site Discovery (typically 3-4 weeks). This is also available in the Configure IE mode guided experience in the Microsoft 365 admin center.

Learn more by joining a webinar.

Use IE Driver to automate end-to-end IE mode testing.

Disable IE11 to test IE mode in your environment.

FastTrack can help with deployment and configuration at no additional charge for customers with 150 or more seats of Windows 10.

For cost-free help with web app and site compatibility, especially if you have legacy site concerns after configuring IE mode, learn more about the App Assure program.

Additional information:

Read our FAQ to help answer your questions and use the troubleshooting guide during setup.

Visit the Internet Explorer mode website.

Watch our Ignite video to learn more about getting started.

Learn more about hosting your IE mode site list in an authenticated cloud endpoint in the Microsoft 365 admin center.

Read our announcement blog and our blog series for more information.

ps://aka.ms/confi

ps://aka.ms/IEmodebl

ps://aka.ms/IEModeFAQ

ps://aka.ms/IEModeG

ps://aka.ms/IEmodeweb

ps://aka.ms/IEModeWeb

ps://aka.ms/ietoed

ps://docs.microsoft.com/deployedge/edge-ie-disable-i

ps://docs.microsoft.com/deployedge/edge-ie-mode-faq

ps://docs.microsoft.com/deployedge/edge-ie-mode-site-discovery

ps://docs.microsoft.com/fasttrack/win-10-microsoft-edge-assistance-off

ps://docs.microsoft.com/microsoft-365/admin/activity-reports/browser-usage-report?view=o365-world

ps://docs.microsoft.com/microsoft-edge/webdriver-chromium/ie-mode?tabs=c

ps://www.microsoft.com/fasttrack/microsoft-365/app-a

ps://youtu.be/MZt790ZVvBk

06/16/2022
MC343794 Office TLS Certificate Changes For more details on how to determine if you are affected by this change as well as the details of the new Root CAs, please refer to the technical guidance at Office TLS Certificate Changes.

https://docs.microsoft.com/en-us/microsoft-365/compliance/encryption-office-365-tls-certificates-changes?view=o365-worldwide
For more details on how to determine if you are affected by this change as well as the details of the new Root CAs, please refer to the technical guidance at Office TLS Certificate Changes.

ps://docs.microsoft.com/en-us/microsoft-365/compliance/encryption-office-365-tls-certificates-changes?view=o365-world
06/30/2022
MC343797 (Updated) Microsoft Purview compliance portal: Announcing data purge capabilities for Microsoft Teams content Access the eDiscovery solution in the Microsoft Purview compliance portal

Learn more:

Search for and delete chat messages in Teams - Microsoft Purview | Microsoft Docs

https://compliance.microsoft.com/

https://docs.microsoft.com/microsoft-365/compliance/close-or-delete-case?view=o365-worldwide

https://docs.microsoft.com/microsoft-365/compliance/search-and-delete-teams-chat-messages?view=o365-worldwideEykQkPYe1M3RIOfhDI%3D&reserved=0

https://www.microsoft.com/microsoft-365/roadmap?filters=&searchterms=82125
Access the eDiscovery solution in the Microsoft Purview compliance portal

Learn more:

Search for and delete chat messages in Teams - Microsoft Purview | Microsoft Docs

ps://compliance.microsoft.com/

ps://docs.microsoft.com/microsoft-365/compliance/close-or-delete-case?view=o365-world

ps://docs.microsoft.com/microsoft-365/compliance/search-and-delete-teams-chat-messages?view=o365-worldwideEykQkPYe1M3RIOfhDI%3D&reserved

ps://www.microsoft.com/microsoft-365/roadmap?filters=&searchterms=82125
N/A
MC344412 Retirement announcement for Network Discovery service feature (part of AIP Scanner) If you have Network scan jobs configured, be sure that you have no dependent services that rely on data collected by Network Discovery service by September 30th.

If you do not have Network scan jobs configured, no action is required.

Learn more:

Network Discovery documentation

AIP Scanner configuration

AIP removed and deprecated services

Detailed information on our Yammer post

https://aka.ms/AIPAuditLogsYammerPost

https://docs.microsoft.com/en-us/azure/information-protection/deploy-aip-scanner-configure-install?tabs=azure-portal-only

https://docs.microsoft.com/en-us/azure/information-protection/removed-deprecated-services

If you have Network scan jobs configured, be sure that you have no dependent services that rely on data collected by Network Discovery service by September 30th.

If you do not have Network scan jobs configured, no action is required.

Learn more:

Network Discovery documentation

AIP Scanner configuration

AIP removed and deprecated services

Detailed information on our Yammer post

ps://aka.ms/AIPAuditLogsYammerP

ps://docs.microsoft.com/en-us/azure/information-protection/deploy-aip-scanner-configure-install?tabs=azure-portal-only

ps://docs.microsoft.com/en-us/azure/information-protection/removed-deprecated-servic

N/A
MC344413 Retirement announcement for AIP Audit Logs pipeline forwarding audit logs to Azure Log Analytics workspaces We encourage you to learn more about Microsoft 365 compliance center enhanced reporting and analytics capabilities, and learn how to get started with:

Activity explorer

Content explorer

Learn more:

AIP Audit logs (preview) documentation

AIP removed and deprecated services

Detailed information on our Yammer post

https://aka.ms/AIPAuditLogsYammerPost

https://docs.microsoft.com/azure/information-protection/removed-deprecated-services

https://docs.microsoft.com/microsoft-365/compliance/data-classification-activity-explorer

https://docs.microsoft.com/microsoft-365/compliance/data-classification-content-explore
We encourage you to learn more about Microsoft 365 compliance center enhanced reporting and analytics capabilities, and learn how to get started with:

Activity explorer

Content explorer

Learn more:

AIP Audit logs (preview) documentation

AIP removed and deprecated services

Detailed information on our Yammer post

ps://aka.ms/AIPAuditLogsYammerP

ps://docs.microsoft.com/azure/information-protection/removed-deprecated-servic

ps://docs.microsoft.com/microsoft-365/compliance/data-classification-activity-expl

ps://docs.microsoft.com/microsoft-365/compliance/data-classification-content-expl
N/A
MC345763 March 2022 Windows non-security preview "C" release available for all supported versions of Windows 10 https://support.microsoft.com/help/5011543

https://support.microsoft.com/help/5011551

https://support.microsoft.com/help/5011558

https://techcommunity.microsoft.com/t5/windows-it-pro-blog/windows-quality-updates-primer/ba-p/2569385
ps://support.microsoft.com/help/5011543

ps://support.microsoft.com/help/501155

ps://support.microsoft.com/help/5011558

ps://techcommunity.microsoft.com/t5/windows-it-pro-blog/windows-quality-updates-primer/ba-p/2569385
03/22/2022
MC345824 (Updated) MailTips will recommend addressing accessibility issues before sending email messages No action required but you may want to update your documentation accordingly.

https://www.microsoft.com/en-ww/microsoft-365/roadmap?filters=&searchterms=93191
No action required but you may want to update your documentation accordingly.

ps://www.microsoft.com/en-ww/microsoft-365/roadmap?filters=&searchterms=9319
N/A
MC345862 Gradual rollouts with the Windows Update for Business deployment service To benefit from this feature, simply set the correct policy and configure gradual rollouts without affecting your existing Windows for Business Update policies. We also provide recommendations on what to do between the deployment waves to ensure update success. Read Gradual rollouts with the Windows Update for Business deployment service for step-by-step guidance.

Additional information:

To learn more about the Windows Update for Business deployment service, stay tuned for the follow-up posts in this blog series and see the following resources:

Announcing the Windows Update for Business deployment service

Windows Update for Business deployment service - Windows Deployment | Microsoft Docs

Deployment service for driver updates public preview coming soon

New additions to the Windows Update for Business deployment service

Safeguard holds overview

Access safeguard hold details with Updated Compliance

Microsoft 365 Enterprise Licensing Guide

https://docs.microsoft.com/windows/deployment/update/deployment-service-overview

https://docs.microsoft.com/windows/deployment/update/safeguard-holds

https://download.microsoft.com/download/3/D/4/3D42BDC2-6725-4B29-B75A-A5B04179958B/Licensing_guide_Microsoft_365_Enterprise.pdf

https://techcommunity.microsoft.com/t5/windows-it-pro-blog/access-safeguard-hold-details-with-update-compliance/ba-p/1809652

https://techcommunity.microsoft.com/t5/windows-it-pro-blog/announcing-the-windows-update-for-business-deployment-service/ba-p/2178419

https://techcommunity.microsoft.com/t5/windows-it-pro-blog/deployment-service-for-driver-updates-public-preview-coming-soon/ba-p/2914212

https://techcommunity.microsoft.com/t5/windows-it-pro-blog/gradual-rollouts-with-the-windows-update-for-business-deployment/ba-p/3263847

https://techcommunity.microsoft.com/t5/windows-it-pro-blog/new-additions-to-the-windows-update-for-business-deployment/ba-p/2913718

To benefit from this feature, simply set the correct policy and configure gradual rollouts without affecting your existing Windows for Business Update policies. We also provide recommendations on what to do between the deployment waves to ensure update success. Read Gradual rollouts with the Windows Update for Business deployment service for step-by-step guidance.

Additional information:

To learn more about the Windows Update for Business deployment service, stay tuned for the follow-up posts in this blog series and see the following resources:

Announcing the Windows Update for Business deployment service

Windows Update for Business deployment service - Windows Deployment | Microsoft Docs

Deployment service for driver updates public preview coming soon

New additions to the Windows Update for Business deployment service

Safeguard holds overview

Access safeguard hold details with Updated Compliance

Microsoft 365 Enterprise Licensing Guide

ps://docs.microsoft.com/windows/deployment/update/deployment-service-overvi

ps://docs.microsoft.com/windows/deployment/update/safeguard-hold

ps://download.microsoft.com/download/3/D/4/3D42BDC2-6725-4B29-B75A-A5B04179958B/Licensing_guide_Microsoft_365_Enterprise.pdf

ps://techcommunity.microsoft.com/t5/windows-it-pro-blog/access-safeguard-hold-details-with-update-compliance/ba-p/180965

ps://techcommunity.microsoft.com/t5/windows-it-pro-blog/announcing-the-windows-update-for-business-deployment-service/ba-p/2178419

ps://techcommunity.microsoft.com/t5/windows-it-pro-blog/deployment-service-for-driver-updates-public-preview-coming-soon/ba-p/29142

ps://techcommunity.microsoft.com/t5/windows-it-pro-blog/gradual-rollouts-with-the-windows-update-for-business-deployment/ba-p/3263847

ps://techcommunity.microsoft.com/t5/windows-it-pro-blog/new-additions-to-the-windows-update-for-business-deployment/ba-p/2913718

N/A
MC346909 (Updated) Customer Lockbox for Microsoft Teams If Customer Lockbox is already enabled for your organization, then there is no additional configuration you need to make for this update.

Learn more:

Customer Lockbox in Office 365

https://docs.microsoft.com/microsoft-365/compliance/customer-lockbox-requests?view=o365-worldwide

https://www.microsoft.com/microsoft-365/roadmap?filters=&searchterms=86190
If Customer Lockbox is already enabled for your organization, then there is no additional configuration you need to make for this update.

Learn more:

Customer Lockbox in Office 365

ps://docs.microsoft.com/microsoft-365/compliance/customer-lockbox-requests?view=o365-world

ps://www.microsoft.com/microsoft-365/roadmap?filters=&searchterms=8619
N/A
MC346913 (Updated) Adding a restore option to the Manage Tags Tab You might want to notify your users (especially your Team Owners) about this change and update your training and documentation as appropriate.

https://www.microsoft.com/microsoft-365/roadmap?filters=Microsoft%20Teams&searchterms=88318
You might want to notify your users (especially your Team Owners) about this change and update your training and documentation as appropriate.

ps://www.microsoft.com/microsoft-365/roadmap?filters=Microsoft%20Teams&searchterms=88318
N/A
MC348185 March 2022 Windows non-security preview "C" release available for all supported versions of Windows https://support.microsoft.com/help/5011543

https://support.microsoft.com/help/5011551

https://support.microsoft.com/help/5011558

https://support.microsoft.com/help/5011563

https://techcommunity.microsoft.com/t5/windows-it-pro-blog/windows-quality-updates-primer/ba-p/2569385
ps://support.microsoft.com/help/5011543

ps://support.microsoft.com/help/501155

ps://support.microsoft.com/help/5011558

ps://support.microsoft.com/help/5011563

ps://techcommunity.microsoft.com/t5/windows-it-pro-blog/windows-quality-updates-primer/ba-p/2569385
N/A
MC348214 (Updated) Microsoft Information Protection: Feedback Loop for Content explorer and DLP alerts No action is needed to enable this optional feature.

Learn more about sensitive information types

https://compliance.microsoft.com/

https://docs.microsoft.com/microsoft-365/compliance/sensitive-information-type-learn-about?view=o365-worldwide

https://www.microsoft.com/microsoft-365/roadmap?filters=&searchterms=93210
No action is needed to enable this optional feature.

Learn more about sensitive information types

ps://compliance.microsoft.com/

ps://docs.microsoft.com/microsoft-365/compliance/sensitive-information-type-learn-about?view=o365-world

ps://www.microsoft.com/microsoft-365/roadmap?filters=&searchterms=932
N/A
MC348869 Enablement of combined security information registration for Azure Active Directory If your organization has not adopted the combined security information experience for end users in Azure Active Directory, you can enable it prior to September 30th.

To review your organization’s current setting and enable combined registration for all users, complete these steps:

Sign into the Azure portal as a user administrator or global administrator.

Go to Azure Active Directory > User settings > Manage user feature settings.

Under Users can use the combined security information registration experience, choose to enable for All users.

Learn more:

Combined security information registration for Azure Active Directory overview

https://support.microsoft.com/account-billing/change-your-two-step-verification-method-and-settings-c801d5ad-e0fc-4711-94d5-33ad5d4630f7
If your organization has not adopted the combined security information experience for end users in Azure Active Directory, you can enable it prior to September 30th.

To review your organization’s current setting and enable combined registration for all users, complete these steps:

Sign into the Azure portal as a user administrator or global administrator.

Go to Azure Active Directory > User settings > Manage user feature settings.

Under Users can use the combined security information registration experience, choose to enable for All users.

Learn more:

Combined security information registration for Azure Active Directory overview

ps://support.microsoft.com/account-billing/change-your-two-step-verification-method-and-settings-c801d5ad-e0fc-4711-94d5-33ad5d4630f7
N/A
MC349675 Skype for Business online contacts retirement https://docs.microsoft.com/microsoftteams/skype-for-business-online-retirement

https://docs.microsoft.com/skypeforbusiness/audio-conferencing-in-office-365/setting-up-the-meeting-migration-service-mms#trigger-meeting-migration-manually-via-powershell-cmdlet
ps://docs.microsoft.com/microsoftteams/skype-for-business-onli

ps://docs.microsoft.com/skypeforbusiness/audio-conferencing-in-office-365/setting-up-the-meeting-migration-service-mms#trigger-meeting-migration-manually-via-powershell-cmdl
06/30/2022
MC350659 Retirement of older Windows Embedded Compact content To be compliant with SHA256, customers using Windows Embedded Compact 2013 have six months to update to the June 2021 update or later, with the most recent being the December 2021 update.

If you wish to continue to have access to the updates that are being discontinued, it is recommended that you download the updates and store them in a secure location for use as needed after the updates have been removed.

Additional information:

For more information, please see the Windows Embedded Blog and leverage the following resources:

Download Windows Embedded Compact 2013 Updates from Official Microsoft Download Center

KB5008656: Security update for Windows Embedded Compact 2013: December 2021 (microsoft.com)

SHA2 and Windows - Microsoft Tech Community

https://devicepartner.microsoft.com/en-us/assets/detail/windows-embedded-compact-2013-december-2021-download-img

https://support.microsoft.com/en-us/topic/kb5008656-security-update-for-windows-embedded-compact-2013-december-2021-c51fb380-c0f4-428e-9cfc-defaed07ecca

https://techcommunity.microsoft.com/t5/core-infrastructure-and-security/sha2-and-windows/ba-p/1128617

https://techcommunity.microsoft.com/t5/windows-embedded-blog/older-windows-embedded-compact-content-is-being-retired/ba-p/3270974

https://www.microsoft.com/en-us/download/details.aspx?id=42027

To be compliant with SHA256, customers using Windows Embedded Compact 2013 have six months to update to the June 2021 update or later, with the most recent being the December 2021 update.

If you wish to continue to have access to the updates that are being discontinued, it is recommended that you download the updates and store them in a secure location for use as needed after the updates have been removed.

Additional information:

For more information, please see the Windows Embedded Blog and leverage the following resources:

Download Windows Embedded Compact 2013 Updates from Official Microsoft Download Center

KB5008656: Security update for Windows Embedded Compact 2013: December 2021 (microsoft.com)

SHA2 and Windows - Microsoft Tech Community

ps://devicepartner.microsoft.com/en-us/assets/detail/windows-embedded-compact-2013-december-2021-download-im

ps://support.microsoft.com/en-us/topic/kb5008656-security-update-for-windows-embedded-compact-2013-december-2021-c51fb380-c0f4-428e-9cfc-defaed07

ps://techcommunity.microsoft.com/t5/core-infrastructure-and-security/sha2-and-windows/ba-p/1128617

ps://techcommunity.microsoft.com/t5/windows-embedded-blog/older-windows-embedded-compact-content-is-being-retired/ba-p/3270974

ps://www.microsoft.com/en-us/download/details.aspx?id=42027

04/01/2022
MC350681 The Windows Update policies you should set and why Start with the default set of update policies. Based on the reference industry characteristics and needs, add or reconfigure recommended policies that meet the unique requirements for your organization and your desired end user experience. Bookmark The Windows Update policies you should set and why for a convenient list of recommended policies for different use cases and device types.

Additional information:

For more details on CSP policies supporting update management, see our documentation:

Policy CSP - Update. For a list of policies not to set, and why, see Why you shouldn’t set these 25 Windows policies.

To learn more about managing updates for Microsoft Teams Rooms devices, see Manage Windows Updates for Microsoft Teams Rooms.

https://docs.microsoft.com/en-us/microsoftteams/rooms/updates

https://docs.microsoft.com/en-us/windows/client-management/mdm/policy-csp-update

https://techcommunity.microsoft.com/t5/windows-it-pro-blog/the-windows-update-policies-you-should-set-and-why/ba-p/3270914

https://techcommunity.microsoft.com/t5/windows-it-pro-blog/why-you-shouldn-t-set-these-25-windows-policies/ba-p/3066178

Start with the default set of update policies. Based on the reference industry characteristics and needs, add or reconfigure recommended policies that meet the unique requirements for your organization and your desired end user experience. Bookmark The Windows Update policies you should set and why for a convenient list of recommended policies for different use cases and device types.

Additional information:

For more details on CSP policies supporting update management, see our documentation:

Policy CSP - Update. For a list of policies not to set, and why, see Why you shouldn’t set these 25 Windows policies.

To learn more about managing updates for Microsoft Teams Rooms devices, see Manage Windows Updates for Microsoft Teams Rooms.

ps://docs.microsoft.com/en-us/microsoftteams/rooms/upda

ps://docs.microsoft.com/en-us/windows/client-management/mdm/policy-csp

ps://techcommunity.microsoft.com/t5/windows-it-pro-blog/the-windows-update-policies-you-should-set-and-why/ba-p/3270914

ps://techcommunity.microsoft.com/t5/windows-it-pro-blog/why-you-shouldn-t-set-these-25-windows-policies/ba-p/3066178

04/01/2022
MC350768 (Updated) SharePoint: Create from the SharePoint app bar You do not need to do anything to prepare. The SharePoint app bar cannot be customized. If you have not already enabled and customized global navigation in the SharePoint app bar, it’s highly recommended that you do so to take advantage of the best navigational experience for end users.

Learn more:

Use the new SharePoint app bar and set up global navigation

https://docs.microsoft.com/SharePoint/sharepoint-app-bar

https://www.microsoft.com/microsoft-365/roadmap?filters=&searchterms=82160%2C
You do not need to do anything to prepare. The SharePoint app bar cannot be customized. If you have not already enabled and customized global navigation in the SharePoint app bar, it’s highly recommended that you do so to take advantage of the best navigational experience for end users.

Learn more:

Use the new SharePoint app bar and set up global navigation

ps://docs.microsoft.com/SharePoint/sharepoint-app-b

ps://www.microsoft.com/microsoft-365/roadmap?filters=&searchterms=8216
N/A
MC352543 .NET Framework 4.5.2, 4.6, 4.6.1 will reach end of support in 2022 Starting May 2022, if a device has .NET Framework 4.5.2, 4.6, or 4.6.1 installed, it might become unsecure, but applications that run on top of these versions will continue to run. Additionally, if you experience any issue and need technical support, you will be asked to first upgrade to a supported version.

We strongly recommend you validate that the functionality of your app is unaffected when running on the newer runtime version before you deploy the updated runtime in your production environment. To check out the complete guide on this upgrade, see the blog post .NET Framework 4.5.2, 4.6, and 4.6.1 will reach End of Support on Apr 26, 2022.

More resources

NET Framework 4.5.2, 4.6, 4.6.1 end of support FAQ

.NET Framework retiring SHA-1 content

.NET Framework Downloads

.NET Framework Application Compatibility

Runtime changes between .NET Framework 4.5.2 and .NET Framework 4.6.2

.NET Framework Migration Guide

https://devblogs.microsoft.com/dotnet/dotnet-framework-45-46-461-end-of-support/

https://nam06.safelinks.protection.outlook.com/?url=https%3A%2F%2Faka.ms%2Fframework-452-46-461-eos-faq&data=04%7C01%7Cv-keilac%40microsoft.com%7C25c6e070157943c2ca9f08da0e7fff40%7C72f988bf86f141af91ab2d7cd011db47%7C1%7C0%7C637838240152036886%7CUnknown%7CTWFpbGZsb3d8eyJWIjoiMC4wLjAwMDAiLCJQIjoiV2luMzIiLCJBTiI6Ik1haWwiLCJXVCI6Mn0%3D%7C3000&sdata=jZFOjPll4fh76WrGXeq53dak7liLPJronjCQNfbBXjA%3D&reserved=0

https://nam06.safelinks.protection.outlook.com/?url=https%3A%2F%2Faka.ms%2Fframework-sha1-retirement&data=04%7C01%7Cv-keilac%40microsoft.com%7C25c6e070157943c2ca9f08da0e7fff40%7C72f988bf86f141af91ab2d7cd011db47%7C1%7C0%7C637838240152086876%7CUnknown%7CTWFpbGZsb3d8eyJWIjoiMC4wLjAwMDAiLCJQIjoiV2luMzIiLCJBTiI6Ik1haWwiLCJXVCI6Mn0%3D%7C3000&sdata=f3xBZ7d2kpvXfEBfwZO4ud0KN86NEyPu6ZPjV9FKzKw%3D&reserved=0

https://nam06.safelinks.protection.outlook.com/?url=https%3A%2F%2Fdocs.microsoft.com%2Fdotnet%2Fframework%2Fmigration-guide%2F&data=04%7C01%7Cv-keilac%40microsoft.com%7C25c6e070157943c2ca9f08da0e7fff40%7C72f988bf86f141af91ab2d7cd011db47%7C1%7C0%7C637838240152086876%7CUnknown%7CTWFpbGZsb3d8eyJWIjoiMC4wLjAwMDAiLCJQIjoiV2luMzIiLCJBTiI6Ik1haWwiLCJXVCI6Mn0%3D%7C3000&sdata=JRu0j1178jL2IZJuabyk7wOW2JaWz5AxkeRFs2EgnHc%3D&reserved=0

https://nam06.safelinks.protection.outlook.com/?url=https%3A%2F%2Fdocs.microsoft.com%2Fdotnet%2Fframework%2Fmigration-guide%2Fapplication-compatibility&data=04%7C01%7Cv-keilac%40microsoft.com%7C25c6e070157943c2ca9f08da0e7fff40%7C72f988bf86f141af91ab2d7cd011db47%7C1%7C0%7C637838240152086876%7CUnknown%7CTWFpbGZsb3d8eyJWIjoiMC4wLjAwMDAiLCJQIjoiV2luMzIiLCJBTiI6Ik1haWwiLCJXVCI6Mn0%3D%7C3000&sdata=IWc%2B%2FAzn0WBs7xoEeTPukFna4zVZOQd1rYc%2FKlpwUtg%3D&reserved=0

https://nam06.safelinks.protection.outlook.com/?url=https%3A%2F%2Fdocs.microsoft.com%2Fdotnet%2Fframework%2Fmigration-guide%2Fruntime%2F4.5.2-4.6.2&data=04%7C01%7Cv-keilac%40microsoft.com%7C25c6e070157943c2ca9f08da0e7fff40%7C72f988bf86f141af91ab2d7cd011db47%7C1%7C0%7C637838240152086876%7CUnknown%7CTWFpbGZsb3d8eyJWIjoiMC4wLjAwMDAiLCJQIjoiV2luMzIiLCJBTiI6Ik1haWwiLCJXVCI6Mn0%3D%7C3000&sdata=w3hsxeBZcdZIovGImwuvOgQoxjnjaDYw240KxZ3EN1M%3D&reserved=0

https://nam06.safelinks.protection.outlook.com/?url=https%3A%2F%2Fdocs.microsoft.com%2Flifecycle%2Ffaq%2Fdotnet-framework&data=04%7C01%7Cv-keilac%40microsoft.com%7C25c6e070157943c2ca9f08da0e7fff40%7C72f988bf86f141af91ab2d7cd011db47%7C1%7C0%7C637838240152036886%7CUnknown%7CTWFpbGZsb3d8eyJWIjoiMC4wLjAwMDAiLCJQIjoiV2luMzIiLCJBTiI6Ik1haWwiLCJXVCI6Mn0%3D%7C3000&sdata=YHVlCW1kDym3gnfCPLncN2cb4POOMbJ0kqtsftrUE2A%3D&reserved=0

https://nam06.safelinks.protection.outlook.com/?url=https%3A%2F%2Fdotnet.microsoft.com%2Fdownload%2Fdotnet-framework&data=04%7C01%7Cv-keilac%40microsoft.com%7C25c6e070157943c2ca9f08da0e7fff40%7C72f988bf86f141af91ab2d7cd011db47%7C1%7C0%7C637838240152086876%7CUnknown%7CTWFpbGZsb3d8eyJWIjoiMC4wLjAwMDAiLCJQIjoiV2luMzIiLCJBTiI6Ik1haWwiLCJXVCI6Mn0%3D%7C3000&sdata=5Na4KAJReBcMtYcKpkfXCNwvmWSVwCE1cAxeTbzMaQk%3D&reserved=0

Starting May 2022, if a device has .NET Framework 4.5.2, 4.6, or 4.6.1 installed, it might become unsecure, but applications that run on top of these versions will continue to run. Additionally, if you experience any issue and need technical support, you will be asked to first upgrade to a supported version.

We strongly recommend you validate that the functionality of your app is unaffected when running on the newer runtime version before you deploy the updated runtime in your production environment. To check out the complete guide on this upgrade, see the blog post .NET Framework 4.5.2, 4.6, and 4.6.1 will reach End of Support on Apr 26, 2022.

More resources

NET Framework 4.5.2, 4.6, 4.6.1 end of support FAQ

.NET Framework retiring SHA-1 content

.NET Framework Downloads

.NET Framework Application Compatibility

Runtime changes between .NET Framework 4.5.2 and .NET Framework 4.6.2

.NET Framework Migration Guide

ps://devblogs.microsoft.com/dotnet/dotnet-framework-45-46-461-end-of-support/

ps://nam06.safelinks.protection.outlook.com/?url=https%3A%2F%2Faka.ms%2Fframework-452-46-461-eos-faq&data=04%7C01%7Cv-keilac%40microsoft.com%7C25c6e070157943c2ca9f08da0e7fff40%7C72f988bf86f141af91ab2d7cd011db47%7C1%7C0%7C637838240152036886%7CUnknown%7CTWFpbGZsb3d8eyJWIjoiMC4wLjAwMDAiLCJQIjoiV2luMzIiLCJBTiI6Ik1haWwiLCJXVCI6Mn0%3D%7C3000&sdata=jZFOjPll4fh76WrGXeq53dak7liLPJronjCQNfbBXjA%3D&reserved

ps://nam06.safelinks.protection.outlook.com/?url=https%3A%2F%2Faka.ms%2Fframework-sha1-retirement&data=04%7C01%7Cv-keilac%40microsoft.com%7C25c6e070157943c2ca9f08da0e7fff40%7C72f988bf86f141af91ab2d7cd011db47%7C1%7C0%7C637838240152086876%7CUnknown%7CTWFpbGZsb3d8eyJWIjoiMC4wLjAwMDAiLCJQIjoiV2luMzIiLCJBTiI6Ik1haWwiLCJXVCI6Mn0%3D%7C3000&sdata=f3xBZ7d2kpvXfEBfwZO4ud0KN86NEyPu6ZPjV9FKzKw%3D&reserved

ps://nam06.safelinks.protection.outlook.com/?url=https%3A%2F%2Fdocs.microsoft.com%2Fdotnet%2Fframework%2Fmigration-guide%2F&data=04%7C01%7Cv-keilac%40microsoft.com%7C25c6e070157943c2ca9f08da0e7fff40%7C72f988bf86f141af91ab2d7cd011db47%7C1%7C0%7C637838240152086876%7CUnknown%7CTWFpbGZsb3d8eyJWIjoiMC4wLjAwMDAiLCJQIjoiV2luMzIiLCJBTiI6Ik1haWwiLCJXVCI6Mn0%3D%7C3000&sdata=JRu0j1178jL2IZJuabyk7wOW2JaWz5AxkeRFs2EgnHc%3D&reserved

ps://nam06.safelinks.protection.outlook.com/?url=https%3A%2F%2Fdocs.microsoft.com%2Fdotnet%2Fframework%2Fmigration-guide%2Fapplication-compatibility&data=04%7C01%7Cv-keilac%40microsoft.com%7C25c6e070157943c2ca9f08da0e7fff40%7C72f988bf86f141af91ab2d7cd011db47%7C1%7C0%7C637838240152086876%7CUnknown%7CTWFpbGZsb3d8eyJWIjoiMC4wLjAwMDAiLCJQIjoiV2luMzIiLCJBTiI6Ik1haWwiLCJXVCI6Mn0%3D%7C3000&sdata=IWc%2B%2FAzn0WBs7xoEeTPukFna4zVZOQd1rYc%2FKlpwUtg%3D&reserved

ps://nam06.safelinks.protection.outlook.com/?url=https%3A%2F%2Fdocs.microsoft.com%2Fdotnet%2Fframework%2Fmigration-guide%2Fruntime%2F4.5.2-4.6.2&data=04%7C01%7Cv-keilac%40microsoft.com%7C25c6e070157943c2ca9f08da0e7fff40%7C72f988bf86f141af91ab2d7cd011db47%7C1%7C0%7C637838240152086876%7CUnknown%7CTWFpbGZsb3d8eyJWIjoiMC4wLjAwMDAiLCJQIjoiV2luMzIiLCJBTiI6Ik1haWwiLCJXVCI6Mn0%3D%7C3000&sdata=w3hsxeBZcdZIovGImwuvOgQoxjnjaDYw240KxZ3EN1M%3D&reserved

ps://nam06.safelinks.protection.outlook.com/?url=https%3A%2F%2Fdocs.microsoft.com%2Flifecycle%2Ffaq%2Fdotnet-framework&data=04%7C01%7Cv-keilac%40microsoft.com%7C25c6e070157943c2ca9f08da0e7fff40%7C72f988bf86f141af91ab2d7cd011db47%7C1%7C0%7C637838240152036886%7CUnknown%7CTWFpbGZsb3d8eyJWIjoiMC4wLjAwMDAiLCJQIjoiV2luMzIiLCJBTiI6Ik1haWwiLCJXVCI6Mn0%3D%7C3000&sdata=YHVlCW1kDym3gnfCPLncN2cb4POOMbJ0kqtsftrUE2A%3D&reserved

ps://nam06.safelinks.protection.outlook.com/?url=https%3A%2F%2Fdotnet.microsoft.com%2Fdownload%2Fdotnet-framework&data=04%7C01%7Cv-keilac%40microsoft.com%7C25c6e070157943c2ca9f08da0e7fff40%7C72f988bf86f141af91ab2d7cd011db47%7C1%7C0%7C637838240152086876%7CUnknown%7CTWFpbGZsb3d8eyJWIjoiMC4wLjAwMDAiLCJQIjoiV2luMzIiLCJBTiI6Ik1haWwiLCJXVCI6Mn0%3D%7C3000&sdata=5Na4KAJReBcMtYcKpkfXCNwvmWSVwCE1cAxeTbzMaQk%3D&reserved

04/26/2022
MC353485 Microsoft Stream: View and edit video/audio file information You might want to notify your users about this change and update your training and documentation as appropriate.

https://www.microsoft.com/microsoft-365/roadmap?filters=&searchterms=93224

https://www.microsoft.com/microsoft-365/roadmap?filters=&searchterms=93225
You might want to notify your users about this change and update your training and documentation as appropriate.

ps://www.microsoft.com/microsoft-365/roadmap?filters=&searchterms=93224

ps://www.microsoft.com/microsoft-365/roadmap?filters=&searchterms=93225
N/A
MC354016 Get your questions answered: Tech Community Live, Windows edition – April 7th Anyone can watch the event. To actively participate and post a question, you need to be a member of the Tech Community. If you haven’t already signed up, click Sign In in the top right corner of the Tech Community and join the Windows community today.

Additional information:

If you want to catch up on the new and upcoming features in Windows that will help your organization (and IT team) support hybrid work across efficiently and securely, watch the April 5th Windows event, Windows Powers the Future of Hybrid Work, featuring Chairman and CEO Satya Nadella, Windows Executive VP and Chief Product Officer Panos Panay—along with Windows engineering leaders and makers.

https://aka.ms/TCL/Windows

https://aka.ms/WindowsEvent

https://techcommunity.microsoft.com/

Anyone can watch the event. To actively participate and post a question, you need to be a member of the Tech Community. If you haven’t already signed up, click Sign In in the top right corner of the Tech Community and join the Windows community today.

Additional information:

If you want to catch up on the new and upcoming features in Windows that will help your organization (and IT team) support hybrid work across efficiently and securely, watch the April 5th Windows event, Windows Powers the Future of Hybrid Work, featuring Chairman and CEO Satya Nadella, Windows Executive VP and Chief Product Officer Panos Panay—along with Windows engineering leaders and makers.

ps://aka.ms/TCL/Wind

ps://aka.ms/WindowsE

ps://techcommunity.microsoft.com/

N/A
MC354543 Reminder: Windows Distributed Component Object Model (DCOM) Hardening changes coming June 14 During the timeline phases in which hardening changes can be enabled or disabled (prior to March 14, 2023), users can use the following registry key:

Path: HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Ole\AppCompat

Value Name: "RequireIntegrityActivationAuthenticationLevel"

Type: dword

Value Data: default = 0x00000000 means disabled. 0x00000001 means enabled. If this value is not defined, it will default to disabled. You must enter Value Data in hexadecimal format.

Devices must be restarted after setting this registry key, for it to take effect. Enabling the registry key above will make DCOM servers enforce an Authentication-Level of RPC_C_AUTHN_LEVEL_PKT_INTEGRITY or higher for activation.

To help identify applications that might have compatibility issues after DCOM security hardening changes are enabled, new DCOM error events were added in the System log, and can be found with Message IDs 10036, 10037 and 10038.

If issues are encountered during testing, contact the vendor for the affected client or server software for an update or workaround.

Additional Information:

It is important to ensure proper testing for this change. Please review the below documentation.

KB5004442: Manage changes for Windows DCOM Server Security Feature Bypass (CVE-2021-26414)

CVE-2021-26414: Windows DCOM Server Security Feature Bypass

https://nam06.safelinks.protection.outlook.com/?url=https%3A%2F%2Fmsrc.microsoft.com%2Fupdate-guide%2Fvulnerability%2FCVE-2021-26414&data=04%7C01%7CMabel.Gomes%40microsoft.com%7C502abf7ef93c484d785108d9fb12f0dc%7C72f988bf86f141af91ab2d7cd011db47%7C0%7C0%7C637816881046259912%7CUnknown%7CTWFpbGZsb3d8eyJWIjoiMC4wLjAwMDAiLCJQIjoiV2luMzIiLCJBTiI6Ik1haWwiLCJXVCI6Mn0%3D%7C3000&sdata=5ab3ltoii45jKILARgQxIbzYtP1hrSTrL4qVdNt%2FdJg%3D&reserved=0

https://nam06.safelinks.protection.outlook.com/?url=https%3A%2F%2Fsupport.microsoft.com%2Fhelp%2F5004442&data=04%7C01%7CMabel.Gomes%40microsoft.com%7C502abf7ef93c484d785108d9fb12f0dc%7C72f988bf86f141af91ab2d7cd011db47%7C0%7C0%7C637816881046259912%7CUnknown%7CTWFpbGZsb3d8eyJWIjoiMC4wLjAwMDAiLCJQIjoiV2luMzIiLCJBTiI6Ik1haWwiLCJXVCI6Mn0%3D%7C3000&sdata=ZvEM51z9%2BpIs6kwmQnxei2WvCBGCEKSxzj7TuSuN7sM%3D&reserved=0

During the timeline phases in which hardening changes can be enabled or disabled (prior to March 14, 2023), users can use the following registry key:

Path: HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Ole\AppCompat

Value Name: "RequireIntegrityActivationAuthenticationLevel"

Type: dword

Value Data: default = 0x00000000 means disabled. 0x00000001 means enabled. If this value is not defined, it will default to disabled. You must enter Value Data in hexadecimal format.

Devices must be restarted after setting this registry key, for it to take effect. Enabling the registry key above will make DCOM servers enforce an Authentication-Level of RPC_C_AUTHN_LEVEL_PKT_INTEGRITY or higher for activation.

To help identify applications that might have compatibility issues after DCOM security hardening changes are enabled, new DCOM error events were added in the System log, and can be found with Message IDs 10036, 10037 and 10038.

If issues are encountered during testing, contact the vendor for the affected client or server software for an update or workaround.

Additional Information:

It is important to ensure proper testing for this change. Please review the below documentation.

KB5004442: Manage changes for Windows DCOM Server Security Feature Bypass (CVE-2021-26414)

CVE-2021-26414: Windows DCOM Server Security Feature Bypass

ps://nam06.safelinks.protection.outlook.com/?url=https%3A%2F%2Fmsrc.microsoft.com%2Fupdate-guide%2Fvulnerability%2FCVE-2021-26414&data=04%7C01%7CMabel.Gomes%40microsoft.com%7C502abf7ef93c484d785108d9fb12f0dc%7C72f988bf86f141af91ab2d7cd011db47%7C0%7C0%7C637816881046259912%7CUnknown%7CTWFpbGZsb3d8eyJWIjoiMC4wLjAwMDAiLCJQIjoiV2luMzIiLCJBTiI6Ik1haWwiLCJXVCI6Mn0%3D%7C3000&sdata=5ab3ltoii45jKILARgQxIbzYtP1hrSTrL4qVdNt%2FdJg%3D&reserved

ps://nam06.safelinks.protection.outlook.com/?url=https%3A%2F%2Fsupport.microsoft.com%2Fhelp%2F5004442&data=04%7C01%7CMabel.Gomes%40microsoft.com%7C502abf7ef93c484d785108d9fb12f0dc%7C72f988bf86f141af91ab2d7cd011db47%7C0%7C0%7C637816881046259912%7CUnknown%7CTWFpbGZsb3d8eyJWIjoiMC4wLjAwMDAiLCJQIjoiV2luMzIiLCJBTiI6Ik1haWwiLCJXVCI6Mn0%3D%7C3000&sdata=ZvEM51z9%2BpIs6kwmQnxei2WvCBGCEKSxzj7TuSuN7sM%3D&reserved

06/14/2022
MC355028 Seamless update experience for organizations on Windows 11 Make sure the devices are running Windows Insider Preview Build 21277 or later. To try out these features before the release, you must be part of the Technical Preview. Consult additional prerequisites for organizations using the Configuration Manager or Windows Update for Business within the blog.

Additional information:

To learn more, preview, and prepare for these new capabilities, consider the following resources:

Use Windows Update native experience with Configuration Manager Technical Preview 2105.2

If you are not yet part of the Technical Preview, sign up to test out these features and provide feedback.

https://aka.ms/Windows/SeamlessUpdates

https://docs.microsoft.com/en-us/mem/configmgr/core/get-started/technical-preview

https://techcommunity.microsoft.com/t5/configuration-manager-blog/use-windows-update-native-experience-with-configuration-manager/ba-p/2396549#:~:text=%20To%20enable%20the%20Windows%20Update%20native%20experience%3A,allowed%20to%20be%20pending%20a%20restart...%20More%20

Make sure the devices are running Windows Insider Preview Build 21277 or later. To try out these features before the release, you must be part of the Technical Preview. Consult additional prerequisites for organizations using the Configuration Manager or Windows Update for Business within the blog.

Additional information:

To learn more, preview, and prepare for these new capabilities, consider the following resources:

Use Windows Update native experience with Configuration Manager Technical Preview 2105.2

If you are not yet part of the Technical Preview, sign up to test out these features and provide feedback.

ps://aka.ms/Windows/SeamlessUpda

ps://docs.microsoft.com/en-us/mem/configmgr/core/get-started/technical-previ

ps://techcommunity.microsoft.com/t5/configuration-manager-blog/use-windows-update-native-experience-with-configuration-manager/ba-p/2396549#:~:text=%20To%20enable%20the%20Windows%20Update%20native%20experience%3A,allowed%20to%20be%20pending%20a%20restart...%20M

N/A
MC355037 Reminder: End of servicing for Windows 10, version 1909, and Windows 10, version 20H2 - May 10, 2022 https://blogs.windows.com/windowsexperience/2021/10/04/how-to-get-windows-11/

https://blogs.windows.com/windowsexperience/2021/11/16/how-to-get-the-windows-10-november-2021-update/

https://docs.microsoft.com/en-us/lifecycle/products/?terms=windows

https://docs.microsoft.com/en-us/lifecycle/products/windows-10-enterprise-and-education

https://docs.microsoft.com/en-us/lifecycle/products/windows-10-home-and-pro

https://docs.microsoft.com/lifecycle/products/windows-10-home-and-pro
ps://blogs.windows.com/windowsexperience/2021/10/04/how-to-get-windows-11/

ps://blogs.windows.com/windowsexperience/2021/11/16/how-to-get-the-windows-10-november-2021-update/

ps://docs.microsoft.com/en-us/lifecycle/products/?terms=wind

ps://docs.microsoft.com/en-us/lifecycle/products/windows-10-enterprise-and-ed

ps://docs.microsoft.com/en-us/lifecycle/products/windows-10-home-and

ps://docs.microsoft.com/lifecycle/products/windows-10-home-and
N/A
MC355215 (Updated) Microsoft Defender for Office 365: New default (URL click) alert policy If you’re exporting these alerts to external systems for processing (via APIs), you will also need to set up the export of the new policy.

https://www.microsoft.com/en-ww/microsoft-365/roadmap?filters=&searchterms=93211
If you’re exporting these alerts to external systems for processing (via APIs), you will also need to set up the export of the new policy.

ps://www.microsoft.com/en-ww/microsoft-365/roadmap?filters=&searchterms=932
N/A
MC357317 (Updated) OneDrive iOS: New information architecture You might want to notify your users about this new capability and update your training and documentation as appropriate.

https://www.microsoft.com/microsoft-365/roadmap?filters=&searchterms=85571
You might want to notify your users about this new capability and update your training and documentation as appropriate.

ps://www.microsoft.com/microsoft-365/roadmap?filters=&searchterms=8557
N/A
MC357684 Take action: April 2022 security update available for all supported versions of Windows https://support.microsoft.com/help/5012591

https://support.microsoft.com/help/5012592

https://support.microsoft.com/help/5012596

https://support.microsoft.com/help/5012599

https://support.microsoft.com/help/5012626

https://support.microsoft.com/help/5012632

https://support.microsoft.com/help/5012639

https://support.microsoft.com/help/5012647

https://support.microsoft.com/help/5012649

https://support.microsoft.com/help/5012650

https://support.microsoft.com/help/5012653

https://support.microsoft.com/help/5012658

https://support.microsoft.com/help/5012666

https://support.microsoft.com/help/5012670

https://support.microsoft.com/windows/update-windows-3c5ae7fc-9fb6-9af1-1984-b5e0412c556a#WindowsVersion=Windows_11

https://techcommunity.microsoft.com/t5/windows-it-pro-blog/windows-quality-updates-primer/ba-p/2569385
ps://support.microsoft.com/help/501259

ps://support.microsoft.com/help/501259

ps://support.microsoft.com/help/5012596

ps://support.microsoft.com/help/5012599

ps://support.microsoft.com/help/5012626

ps://support.microsoft.com/help/501263

ps://support.microsoft.com/help/5012639

ps://support.microsoft.com/help/5012647

ps://support.microsoft.com/help/5012649

ps://support.microsoft.com/help/501265

ps://support.microsoft.com/help/5012653

ps://support.microsoft.com/help/5012658

ps://support.microsoft.com/help/5012666

ps://support.microsoft.com/help/501267

ps://support.microsoft.com/windows/update-windows-3c5ae7fc-9fb6-9af1-1984-b5e0412c556a#WindowsVersion=Windows_

ps://techcommunity.microsoft.com/t5/windows-it-pro-blog/windows-quality-updates-primer/ba-p/2569385
04/12/2022
MC357842 Office 2013 end of support: Reduce your exposure to security risks by moving to a newer version of Office Please start upgrading to Microsoft 365 Apps, which is designed to receive regular updates, and will help you stay current by getting security updates and our latest features.

Alternatively, if your organization requires a static, unchanging product, consider moving to Office LTSC 2021. When evaluating your options, keep in mind the end of support dates for Office clients connecting to Microsoft 365 services (learn more).

Here are some resources to help you plan your upgrade:

For an overview of how to move from Office 2013 to Microsoft 365 Apps, see Office 2013 upgrade guidance.

For help from Microsoft resources to move to Microsoft 365 Apps and cloud-based services, see Microsoft FastTrack.

Thanks for being a Microsoft customer!

https://docs.microsoft.com/deployoffice/endofsupport/microsoft-365-services-connectivity

https://docs.microsoft.com/deployoffice/endofsupport/microsoft-365-services-connectivity#additional-information-about-connectivity-to-microsoft-365-services

https://docs.microsoft.com/lifecycle/policies/fixed

https://docs.microsoft.com/lifecycle/products/microsoft-office-2013

https://www.microsoft.com/fasttrack/microsoft-365/office-365?rtc=1
Please start upgrading to Microsoft 365 Apps, which is designed to receive regular updates, and will help you stay current by getting security updates and our latest features.

Alternatively, if your organization requires a static, unchanging product, consider moving to Office LTSC 2021. When evaluating your options, keep in mind the end of support dates for Office clients connecting to Microsoft 365 services (learn more).

Here are some resources to help you plan your upgrade:

For an overview of how to move from Office 2013 to Microsoft 365 Apps, see Office 2013 upgrade guidance.

For help from Microsoft resources to move to Microsoft 365 Apps and cloud-based services, see Microsoft FastTrack.

Thanks for being a Microsoft customer!

ps://docs.microsoft.com/deployoffice/endofsupport/microsoft-365-services-connectivity

ps://docs.microsoft.com/deployoffice/endofsupport/microsoft-365-services-connectivity#additional-information-about-connectivity-to-microsoft-365-servic

ps://docs.microsoft.com/lifecycle/policies/fix

ps://docs.microsoft.com/lifecycle/products/microsoft-office-2013

ps://www.microsoft.com/fasttrack/microsoft-365/office-365?rtc
04/11/2023
MC358528 (Updated) Update on who can manage sensitive attributes of user objects We will align the behavior of managing user attributes with that mentioned above. So, some older roles that were also allowed to manage user attributes (for ex - Directory Writer) will no longer work. Please work with your Privileged Role Admin or Global Admin if new role assignments are needed to avoid any impact on your business operations.

https://docs.microsoft.com/azure/active-directory/roles/permissions-reference#password-reset-permissions
We will align the behavior of managing user attributes with that mentioned above. So, some older roles that were also allowed to manage user attributes (for ex - Directory Writer) will no longer work. Please work with your Privileged Role Admin or Global Admin if new role assignments are needed to avoid any impact on your business operations.

ps://docs.microsoft.com/azure/active-directory/roles/permissions-reference#password-reset-permissi
N/A
MC358532 (Updated) Forms: Enable templates for commercial users No action required but you may want to update your documentation accordingly.

https://www.microsoft.com/en-ww/microsoft-365/roadmap?filters=&searchterms=88946
No action required but you may want to update your documentation accordingly.

ps://www.microsoft.com/en-ww/microsoft-365/roadmap?filters=&searchterms=88946
N/A
MC358962 (Updated) Temporarily disable Viva Connections First Run Experience in the Desktop experience No action is necessary. This change will take effect automatically in your tenant. If you are planning to roll out Viva Connections to new users in your tenant, you can consider informing them of the capabilities that Connections provides for them, including access to your organization's intranet in Teams, ability to access relevant content and resources including global navigation, and simpler content sharing and collaboration. If you would like to take advantage of content, we have made available to help communicate Viva rollouts, see relevant items here: https://adoption.microsoft.com/viva.

https://adoption.microsoft.com/viva
No action is necessary. This change will take effect automatically in your tenant. If you are planning to roll out Viva Connections to new users in your tenant, you can consider informing them of the capabilities that Connections provides for them, including access to your organization's intranet in Teams, ability to access relevant content and resources including global navigation, and simpler content sharing and collaboration. If you would like to take advantage of content, we have made available to help communicate Viva rollouts, see relevant items here: https://adoption.microsoft.com/viva.

ps://adoption.microsoft.com/vi
N/A
MC360646 (Updated) Exchange Online Protection: Anti-malware policy notification settings change Review the 'Quarantine Policy' selection in your current anti-malware policies. With this feature change, for default and all existing policies,

The selection in the 'Quarantine Policy' dropdown will be used for any recipient notifications.

For the new settings in 'Common attachment filter detections', the selection will be set to 'Quarantine the message' option (which is the same as the Quarantine policy dropdown).

Review the following resources below to learn more:

Create anti-malware policy

Quarantine policy

Quarantine policies in anti-malware policies

Use quarantine notifications to release and report quarantined

https://admin.microsoft.com/AdminPortal/Home?#/MessageCenter/:/messages/MC303513

https://docs.microsoft.com/microsoft-365/security/office-365-security/configure-anti-malware-policies#use-the-microsoft-365-defender-portal-to-create-anti-malware-policies

https://docs.microsoft.com/microsoft-365/security/office-365-security/quarantine-policies

https://docs.microsoft.com/microsoft-365/security/office-365-security/quarantine-policies#anti-malware-policies

https://docs.microsoft.com/microsoft-365/security/office-365-security/use-spam-notifications-to-release-and-report-quarantined-messages

https://www.microsoft.com/microsoft-365/roadmap?filters=&searchterms=93212

Review the 'Quarantine Policy' selection in your current anti-malware policies. With this feature change, for default and all existing policies,

The selection in the 'Quarantine Policy' dropdown will be used for any recipient notifications.

For the new settings in 'Common attachment filter detections', the selection will be set to 'Quarantine the message' option (which is the same as the Quarantine policy dropdown).

Review the following resources below to learn more:

Create anti-malware policy

Quarantine policy

Quarantine policies in anti-malware policies

Use quarantine notifications to release and report quarantined

ps://admin.microsoft.com/AdminPortal/Home?#/MessageCenter/:/messages/MC303513

ps://docs.microsoft.com/microsoft-365/security/office-365-security/configure-anti-malware-policies#use-the-microsoft-365-defender-portal-to-create-anti-malware-polici

ps://docs.microsoft.com/microsoft-365/security/office-365-security/quarantine-polici

ps://docs.microsoft.com/microsoft-365/security/office-365-security/quarantine-policies#anti-malware-polici

ps://docs.microsoft.com/microsoft-365/security/office-365-security/use-spam-notifications-to-release-and-report-quarantined-messa

ps://www.microsoft.com/microsoft-365/roadmap?filters=&searchterms=932

N/A
MC360766 (Updated) Loop components in Outlook Mail Preview Loop components are enabled by default to organizations. Loop components do not currently support eDiscovery workflows. If your organization leverages eDiscovery workflows, evaluate the risks. To disable this feature for your organization, follow the instruction outlined in this article: Manage Loop components in SharePoint

To learn more about loop components and how your organization could better leverage them. Consider reading: First things to know about Loop components

https://docs.microsoft.com/sharepoint/manage-loop-components

https://support.microsoft.com/office/first-things-to-know-about-loop-components-ee2a584b-5785-4dd6-8a2d-956131a29c81

https://www.microsoft.com/microsoft-365/roadmap?rtc=1%26filters=&searchterms=93234
Loop components are enabled by default to organizations. Loop components do not currently support eDiscovery workflows. If your organization leverages eDiscovery workflows, evaluate the risks. To disable this feature for your organization, follow the instruction outlined in this article: Manage Loop components in SharePoint

To learn more about loop components and how your organization could better leverage them. Consider reading: First things to know about Loop components

ps://docs.microsoft.com/sharepoint/manage-loop-comp

ps://support.microsoft.com/office/first-things-to-know-about-loop-components-ee2a584b-5785-4dd6-8a2d-956131a29c8

ps://www.microsoft.com/microsoft-365/roadmap?rtc=1%26filters=&searchterms=93234
N/A
MC361750 (Updated) MyAnalytics dashboard and Briefing email settings changes Review and assess the impact for your organization. You might want to notify your users about this change and update your training and documentation as appropriate.

Review Configure access at the tenant level to configure access to MyAnalytics dashboard, Microsoft Viva Digest emails, and Viva Insights Outlook add-in.

https://cortana.office.com/

https://docs.microsoft.com/viva/insights/personal/setup/configure#configure-access-at-the-tenant-level

https://www.microsoft.com/microsoft-365/roadmap?filters=&searchterms=88994
Review and assess the impact for your organization. You might want to notify your users about this change and update your training and documentation as appropriate.

Review Configure access at the tenant level to configure access to MyAnalytics dashboard, Microsoft Viva Digest emails, and Viva Insights Outlook add-in.

ps://cortana.office.com/

ps://docs.microsoft.com/viva/insights/personal/setup/configure#configure-access-at-the-tenant-level

ps://www.microsoft.com/microsoft-365/roadmap?filters=&searchterms=88994
N/A
MC362276 Daily Briefing Emails for users with Outlook language setting as null Review and assess the impact on your organization. Additionally, you might consider updating your training and documentation as appropriate.

Learn more:

Privacy guide for Briefing emails

https://docs.microsoft.com/microsoft-365/admin/security-and-compliance/gdpr-compliance?view=o365-worldwide

https://docs.microsoft.com/viva/insights/personal/briefing/be-languages

https://docs.microsoft.com/viva/insights/personal/Briefing/be-privacy
Review and assess the impact on your organization. Additionally, you might consider updating your training and documentation as appropriate.

Learn more:

Privacy guide for Briefing emails

ps://docs.microsoft.com/microsoft-365/admin/security-and-compliance/gdpr-compliance?view=o365-world

ps://docs.microsoft.com/viva/insights/personal/briefing/be-langua

ps://docs.microsoft.com/viva/insights/personal/Briefing/be-privacy
N/A
MC362277 (Updated) Display a message to Stream (Classic) end users You might want to notify your users about this change and update your training and documentation as appropriate. Change 2 is releasing "default on", however, it is completely optional for users to upload on new Stream. In case your organization wishes to opt-out of the process, raise a support ticket with subject by completing the following steps;

Select the following link, which will populate a help query in the admin center: Disable Upload to Stream on SharePoint

At the bottom of the pane, select Contact Support

Leave Description blank.

Fill out the remaining info and select Contact me.

Learn more:

aka.ms/newStream

https://aka.ms/DisableUploadtoStreamOnSPO
You might want to notify your users about this change and update your training and documentation as appropriate. Change 2 is releasing "default on", however, it is completely optional for users to upload on new Stream. In case your organization wishes to opt-out of the process, raise a support ticket with subject by completing the following steps;

Select the following link, which will populate a help query in the admin center: Disable Upload to Stream on SharePoint

At the bottom of the pane, select Contact Support

Leave Description blank.

Fill out the remaining info and select Contact me.

Learn more:

aka.ms/newStream

ps://aka.ms/DisableUploadtoStreamOnSPO
N/A
MC362283 (Updated) Updates to the Zero-hour auto purge (ZAP) alerts Review the following resources below to learn more:

Microsoft 365 alert policies

Zero-hour auto purge in Microsoft Defender for Office 365

https://docs.microsoft.com/en-us/microsoft-365/security/office-365-security/zero-hour-auto-purge?msclkid=069c1f5cbb5e11ecbc98fe2b7b4d1c02&view=o365-worldwide

https://docs.microsoft.com/microsoft-365/compliance/alert-policies?view=o365-worldwide#:~:text=Default%20alert%20policies%20%20%20%20Default%20alert,Office%203%20...%20%2010%20more%20rows%20

https://docs.microsoft.com/microsoft-365/security/office-365-security/office-365-air?view=o365-worldwide

https://security.microsoft.com/alertpolicies

https://www.microsoft.com/microsoft-365/roadmap?filters=&searchterms=93206
Review the following resources below to learn more:

Microsoft 365 alert policies

Zero-hour auto purge in Microsoft Defender for Office 365

ps://docs.microsoft.com/en-us/microsoft-365/security/office-365-security/zero-hour-auto-purge?msclkid=069c1f5cbb5e11ecbc98fe2b7b4d1c02&view=o365-world

ps://docs.microsoft.com/microsoft-365/compliance/alert-policies?view=o365-worldwide#:~:text=Default%20alert%20policies%20%20%20%20Default%20alert,Office%203%20...%20%2010%20more%20r

ps://docs.microsoft.com/microsoft-365/security/office-365-security/office-365-air?view=o365-world

ps://security.microsoft.com/alertpolici

ps://www.microsoft.com/microsoft-365/roadmap?filters=&searchterms=93206
N/A
MC362284 (Updated) OneDrive sync app will automatically configure accounts Ensure that your OneDrive is set up to run in the background. On macOS you can confirm this by setting the "OpenAtLogin" plist. OneDrive already runs in the background on Windows.

If you would like to disable this, then there is a new policy and plist item in build 22.065 called "DisableAutoConfig". If you set this to 1, it will disable this new automatic account configuration.

https://www.microsoft.com/en-us/microsoft-365/roadmap?filters=&searchterms=93242
Ensure that your OneDrive is set up to run in the background. On macOS you can confirm this by setting the "OpenAtLogin" plist. OneDrive already runs in the background on Windows.

If you would like to disable this, then there is a new policy and plist item in build 22.065 called "DisableAutoConfig". If you set this to 1, it will disable this new automatic account configuration.

ps://www.microsoft.com/en-us/microsoft-365/roadmap?filters=&searchterms=9324
N/A
MC362743 April 2022 Windows non-security preview "C" release available for Windows 10, version 1809 https://support.microsoft.com/help/5012636

https://techcommunity.microsoft.com/t5/windows-it-pro-blog/windows-quality-updates-primer/ba-p/2569385
ps://support.microsoft.com/help/5012636

ps://techcommunity.microsoft.com/t5/windows-it-pro-blog/windows-quality-updates-primer/ba-p/2569385
N/A
MC364261 April 2022 Windows non-security preview "C" release available for all supported versions of Windows https://support.microsoft.com/help/5011831

https://support.microsoft.com/help/5012636

https://support.microsoft.com/help/5012637

https://support.microsoft.com/help/5012643

https://techcommunity.microsoft.com/t5/windows-it-pro-blog/windows-quality-updates-primer/ba-p/2569385
ps://support.microsoft.com/help/501183

ps://support.microsoft.com/help/5012636

ps://support.microsoft.com/help/5012637

ps://support.microsoft.com/help/5012643

ps://techcommunity.microsoft.com/t5/windows-it-pro-blog/windows-quality-updates-primer/ba-p/2569385
04/25/2022
MC364307 (Updated) Show As now available in Teams Meetings No action required but you may want to update your documentation accordingly.

https://www.microsoft.com/microsoft-365/roadmap?filters=&searchterms=93145
No action required but you may want to update your documentation accordingly.

ps://www.microsoft.com/microsoft-365/roadmap?filters=&searchterms=93145
N/A
MC365410 (Updated) Suspicious Connector Activity Alert Impacted customers are recommended to become familiar with the following instructions before rollout happens.

Responding to a Compromised Connector

Remove Blocked Connector From Restricted Entities Portal

https://docs.microsoft.com/exchange/mail-flow-best-practices/use-connectors-to-configure-mail-flow/use-connectors-to-configure-mail-flow

https://docs.microsoft.com/microsoft-365/security/office-365-security/remove-blocked-connectors?view=o365-worldwide

https://docs.microsoft.com/microsoft-365/security/office-365-security/respond-compromised-connector?view=o365-worldwide
Impacted customers are recommended to become familiar with the following instructions before rollout happens.

Responding to a Compromised Connector

Remove Blocked Connector From Restricted Entities Portal

ps://docs.microsoft.com/exchange/mail-flow-best-practices/use-connectors-to-configure-mail-flow/use-connectors-to-configure-mail-fl

ps://docs.microsoft.com/microsoft-365/security/office-365-security/remove-blocked-connectors?view=o365-world

ps://docs.microsoft.com/microsoft-365/security/office-365-security/respond-compromised-connector?view=o365-world
N/A
MC365747 Making Widgets content more dynamic You may want to inform your users about this upcoming change and update your training or documentation as appropriate. You can also learn more about this change by reviewing the guidance in the Additional Information section.

Additional information:

Please review the following resources:

Stay up to date with widgets

How to update the Windows Web Experience Pack in the Microsoft Store

https://support.microsoft.com/en-us/windows/how-to-update-the-windows-web-experience-pack-in-the-microsoft-store-a16c9bf1-f042-4dc9-a523-740cca1e1e60

https://support.microsoft.com/en-us/windows/stay-up-to-date-with-widgets-7ba79aaa-dac6-4687-b460-ad16a06be6e4

You may want to inform your users about this upcoming change and update your training or documentation as appropriate. You can also learn more about this change by reviewing the guidance in the Additional Information section.

Additional information:

Please review the following resources:

Stay up to date with widgets

How to update the Windows Web Experience Pack in the Microsoft Store

ps://support.microsoft.com/en-us/windows/how-to-update-the-windows-web-experience-pack-in-the-microsoft-store-a16c9bf1-f042-4dc9-a523-740cca1e1e6

ps://support.microsoft.com/en-us/windows/stay-up-to-date-with-widgets-7ba79aaa-dac6-4687-b460-ad16a06be6e4

04/30/2022
MC365786 (Updated) Configuration Change in Name parameter for Exchange Online We recommend that Administrators evaluate any scripts or other automation that may rely on the Name property and update them accordingly.

For additional details please refer Change in naming convention of user’s Name parameter.

https://techcommunity.microsoft.com/t5/exchange-team-blog/change-in-naming-convention-of-user-s-name-parameter/ba-p/3284733/

We recommend that Administrators evaluate any scripts or other automation that may rely on the Name property and update them accordingly.

For additional details please refer Change in naming convention of user’s Name parameter.

ps://techcommunity.microsoft.com/t5/exchange-team-blog/change-in-naming-convention-of-user-s-name-parameter/ba-p/3284733/

09/01/2022
MC371268 New Admin PowerShell control for Loop components No automatic change in your environment with this new release of the SharePoint Online Management Shell. We simply provide the ability to control Loop components independently from other experiences.

To turn off Loop components while leaving Whiteboard on:

Upgrade to the latest SPO Management Shell

Update-Module -Name Microsoft.Online.SharePoint.PowerShell

Run Get-SPOTenant without any arguments.

Verify that you can see IsLoopEnabled in the list of property. If you don’t see this property yet, please upgrade and check again on May 1st, 2022.

Verify that value of IsWBFluidEnabled is true. If false, then run Set-SPOTenant -IsWBFluidEnabled $true to enable the new Whiteboard in OneDrive.

Disable Loop Component using the Set-SPOTenant cmdlet.

Set-SPOTenant -IsLoopEnabled $false

These changes take approximately 60 minutes to apply across your tenancy.

Learn more about Loop's settings management

https://docs.microsoft.com/en-us/sharepoint/manage-loop-components

https://docs.microsoft.com/sharepoint/manage-loop-components#settings-management

https://www.microsoft.com/download/details.aspx?id=35588
No automatic change in your environment with this new release of the SharePoint Online Management Shell. We simply provide the ability to control Loop components independently from other experiences.

To turn off Loop components while leaving Whiteboard on:

Upgrade to the latest SPO Management Shell

Update-Module -Name Microsoft.Online.SharePoint.PowerShell

Run Get-SPOTenant without any arguments.

Verify that you can see IsLoopEnabled in the list of property. If you don’t see this property yet, please upgrade and check again on May 1st, 2022.

Verify that value of IsWBFluidEnabled is true. If false, then run Set-SPOTenant -IsWBFluidEnabled $true to enable the new Whiteboard in OneDrive.

Disable Loop Component using the Set-SPOTenant cmdlet.

Set-SPOTenant -IsLoopEnabled $false

These changes take approximately 60 minutes to apply across your tenancy.

Learn more about Loop's settings management

ps://docs.microsoft.com/en-us/sharepoint/manage-loop-comp

ps://docs.microsoft.com/sharepoint/manage-loop-components#settings-mana

ps://www.microsoft.com/download/details.aspx?id=35588
N/A
MC371299 Customizing Windows-related notifications Your apps can access the Windows communications data on behalf of a signed-in user, or without any signed-in user in the tenant, if you set up the appropriate delegated or application permissions.

In addition, you can view Windows-related notifications in the message center and customize your notification preferences just as you would for any other product or service in the Microsoft 365 admin center. If you have applicable licensing subscriptions and do not automatically see Windows content, select Message center and then Preferences. Once you're there, select Microsoft Windows in the Custom View tab.

You can also opt-in to receive weekly digests and immediate alerts for major updates via email by selecting the Email tab in Preferences. The weekly digest email is sent on Mondays and includes links to all messages published over the past week regarding the products and services you choose. The major update email alerts bring you relevant announcements, such as the release of an out-of-band update or availability of new Windows versions. These alerts are sent on the same day the announcement is published. For a quick setup tutorial, see Email preferences on the Microsoft 365 admin center.

Note: New admins, specifically those with the roles of Global Admin or Message Center Privacy Reader, will be subscribed to a four-week trial period for the Message center weekly digest and can choose to stay subscribed once the trial has concluded by using the Message center preferences menu.

Additional information:

For details on how to use the service communications API in Microsoft Graph, see Overview for accessing service health and communications through Microsoft Graph.

For more information on access tokens, app registration, and delegated and application permissions, see Authentication and authorization basics

https://docs.microsoft.com/graph/auth/auth-concepts

https://docs.microsoft.com/graph/permissions-reference#service-communications-permissions

https://docs.microsoft.com/graph/service-communications-concept-overview

https://youtu.be/COQ9VWq3-J0

Your apps can access the Windows communications data on behalf of a signed-in user, or without any signed-in user in the tenant, if you set up the appropriate delegated or application permissions.

In addition, you can view Windows-related notifications in the message center and customize your notification preferences just as you would for any other product or service in the Microsoft 365 admin center. If you have applicable licensing subscriptions and do not automatically see Windows content, select Message center and then Preferences. Once you're there, select Microsoft Windows in the Custom View tab.

You can also opt-in to receive weekly digests and immediate alerts for major updates via email by selecting the Email tab in Preferences. The weekly digest email is sent on Mondays and includes links to all messages published over the past week regarding the products and services you choose. The major update email alerts bring you relevant announcements, such as the release of an out-of-band update or availability of new Windows versions. These alerts are sent on the same day the announcement is published. For a quick setup tutorial, see Email preferences on the Microsoft 365 admin center.

Note: New admins, specifically those with the roles of Global Admin or Message Center Privacy Reader, will be subscribed to a four-week trial period for the Message center weekly digest and can choose to stay subscribed once the trial has concluded by using the Message center preferences menu.

Additional information:

For details on how to use the service communications API in Microsoft Graph, see Overview for accessing service health and communications through Microsoft Graph.

For more information on access tokens, app registration, and delegated and application permissions, see Authentication and authorization basics

ps://docs.microsoft.com/graph/auth/auth-concep

ps://docs.microsoft.com/graph/permissions-reference#service-communications-permissi

ps://docs.microsoft.com/graph/service-communications-concept-overvi

ps://youtu.be/COQ9VWq3-J

N/A
MC373880 (Updated) Migrating the Safe Links Block List to Tenant Allow Block List In June an update to this Message center post will be sent notifying organizations that the first migration has been completed and they will need to review their Safe Links Block Lists for potential actions.

https://docs.microsoft.com/microsoft-365/security/office-365-security/tenant-allow-block-list?view=o365-worldwiden%20you're%20finished%2C%20click%20Add.
In June an update to this Message center post will be sent notifying organizations that the first migration has been completed and they will need to review their Safe Links Block Lists for potential actions.

ps://docs.microsoft.com/microsoft-365/security/office-365-security/tenant-allow-block-list?view=o365-worldwiden%20you're%20finished%2C%20click%20A
N/A
MC373889 (Updated) Upcoming behavior change to the "DoNotRewrite" List Review your "DoNotRewrite" URLs list(s) and ensure you have not added entries to it for uses other than to skip wrapping of URLs.

https://docs.microsoft.com/microsoft-365/security/office-365-security/safe-links?view=o365-worldwide#do-not-rewrite-the-following-urls-lists-in-safe-links-policies
Review your "DoNotRewrite" URLs list(s) and ensure you have not added entries to it for uses other than to skip wrapping of URLs.

ps://docs.microsoft.com/microsoft-365/security/office-365-security/safe-links?view=o365-worldwide#do-not-rewrite-the-following-urls-lists-in-safe-links-polici
N/A
MC375228 Azure AD required for Update Compliance after October 15, 2022 Follow the guidance referenced in Azure AD required for Update Compliance after October 15, 2022 to enroll your devices in Azure AD or hybrid Azure AD join before October 15, 2022—and to enroll in and configure Update Compliance. Then, stay tuned for additional steps to register your Azure AD tenant ID with the Update Compliance service in the coming months.

Additional information:

Learn more about Update Compliance, the Windows diagnostic data processor configuration, and Azure AD from the following resources:

Configure Windows diagnostic data in your organization

What is an Azure AD joined device?

Plan your Azure Active Directory join deployment

Plan your hybrid Azure Active Directory join deployment

Get started with Update Compliance

https://docs.microsoft.com/en-us/azure/active-directory/devices/azureadjoin-plan

https://docs.microsoft.com/en-us/azure/active-directory/devices/concept-azure-ad-join

https://docs.microsoft.com/en-us/azure/active-directory/devices/hybrid-azuread-join-plan

https://docs.microsoft.com/en-us/windows/deployment/update/update-compliance-get-started#get-your-commercialid

https://docs.microsoft.com/en-us/windows/privacy/configure-windows-diagnostic-data-in-your-organization

https://docs.microsoft.com/windows/privacy/configure-windows-diagnostic-data-in-your-organization#enable-windows-diagnostic-data-processor-configuration

https://techcommunity.microsoft.com/t5/windows-it-pro-blog/azure-ad-required-for-update-compliance-after-october-15-2022/ba-p/3301621

Follow the guidance referenced in Azure AD required for Update Compliance after October 15, 2022 to enroll your devices in Azure AD or hybrid Azure AD join before October 15, 2022—and to enroll in and configure Update Compliance. Then, stay tuned for additional steps to register your Azure AD tenant ID with the Update Compliance service in the coming months.

Additional information:

Learn more about Update Compliance, the Windows diagnostic data processor configuration, and Azure AD from the following resources:

Configure Windows diagnostic data in your organization

What is an Azure AD joined device?

Plan your Azure Active Directory join deployment

Plan your hybrid Azure Active Directory join deployment

Get started with Update Compliance

ps://docs.microsoft.com/en-us/azure/active-directory/devices/azureadjoin-pl

ps://docs.microsoft.com/en-us/azure/active-directory/devices/concept-azure-ad-j

ps://docs.microsoft.com/en-us/azure/active-directory/devices/hybrid-azuread-join-pl

ps://docs.microsoft.com/en-us/windows/deployment/update/update-compliance-get-started#get-your-commercial

ps://docs.microsoft.com/en-us/windows/privacy/configure-windows-diagnostic-data-in-your-organiz

ps://docs.microsoft.com/windows/privacy/configure-windows-diagnostic-data-in-your-organization#enable-windows-diagnostic-data-processor-confi

ps://techcommunity.microsoft.com/t5/windows-it-pro-blog/azure-ad-required-for-update-compliance-after-october-15-2022/ba-p/330162

10/14/2022
MC375736 (Updated) Basic Authentication Deprecation in Exchange Online – May 2022 Update Any client (user app, script, integration, etc.) using Basic Auth for one of the affected protocols will be unable to connect. The app will receive an HTTP 401 error: bad username or password.

Any app using Modern Auth for these same protocols will be unaffected.

To read more on what can be done to switch apps from Basic to Modern auth please view our main documentation page and our latest blog.

https://docs.microsoft.com/exchange/clients-and-mobile-in-exchange-online/authenticated-client-smtp-submission

https://docs.microsoft.com/exchange/clients-and-mobile-in-exchange-online/disable-basic-authentication-in-exchange-online

https://techcommunity.microsoft.com/t5/exchange-team-blog/basic-authentication-and-exchange-online-september-2021-update/ba-p/2772210
Any client (user app, script, integration, etc.) using Basic Auth for one of the affected protocols will be unable to connect. The app will receive an HTTP 401 error: bad username or password.

Any app using Modern Auth for these same protocols will be unaffected.

To read more on what can be done to switch apps from Basic to Modern auth please view our main documentation page and our latest blog.

ps://docs.microsoft.com/exchange/clients-and-mobile-in-exchange-online/authenticated-client-smtp-submi

ps://docs.microsoft.com/exchange/clients-and-mobile-in-exchange-online/disable-basic-authentication-in-exchange-onl

ps://techcommunity.microsoft.com/t5/exchange-team-blog/basic-authentication-and-exchange-online-september-2021-update/ba-p/27722
10/01/2022
MC375740 (Updated) Bookings with me in Outlook Bookings with me will be enabled by default for users that meet the licensing requirements. To disable access to creating a Bookings with me page for your organization or select users, follow these instructions.

https://www.microsoft.com/microsoft-365/roadmap?filters=&searchterms=93239%2C
Bookings with me will be enabled by default for users that meet the licensing requirements. To disable access to creating a Bookings with me page for your organization or select users, follow these instructions.

ps://www.microsoft.com/microsoft-365/roadmap?filters=&searchterms=93239
N/A
MC376180 Reminder: Windows Distributed Component Object Model (DCOM) Hardening changes coming June 14 During the timeline phases in which hardening changes can be enabled or disabled (prior to March 14, 2023), users can use the following registry key:

Path: HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Ole\AppCompat

Value Name: "RequireIntegrityActivationAuthenticationLevel"

Type: dword

Value Data: default = 0x00000000 means disabled. 0x00000001 means enabled. If this value is not defined, it will default to disabled. You must enter Value Data in hexadecimal format.

Devices must be restarted after setting this registry key, for it to take effect. Enabling the registry key above will make DCOM servers enforce an Authentication-Level of RPC_C_AUTHN_LEVEL_PKT_INTEGRITY or higher for activation.

To help identify applications that might have compatibility issues after DCOM security hardening changes are enabled, new DCOM error events were added in the System log, and can be found with Message IDs 10036, 10037 and 10038.

If issues are encountered during testing, contact the vendor for the affected client or server software for an update or workaround.

Additional Information:

It is important to ensure proper testing for this change. Please review the below documentation.

\[MS-DCOM\]: Distributed Component Object Model (DCOM) Remote Protocol | Microsoft Docs

KB5004442: Manage changes for Windows DCOM Server Security Feature Bypass (CVE-2021-26414)

CVE-2021-26414: Windows DCOM Server Security Feature Bypass

https://docs.microsoft.com/en-us/openspecs/windows_protocols/ms-dcom/4a893f3d-bd29-48cd-9f43-d9777a4415b0

https://msrc.microsoft.com/update-guide/vulnerability/CVE-2021-26414

https://support.microsoft.com/en-us/topic/kb5004442-manage-changes-for-windows-dcom-server-security-feature-bypass-cve-2021-26414-f1400b52-c141-43d2-941e-37ed901c769c?preview=true

During the timeline phases in which hardening changes can be enabled or disabled (prior to March 14, 2023), users can use the following registry key:

Path: HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Ole\AppCompat

Value Name: "RequireIntegrityActivationAuthenticationLevel"

Type: dword

Value Data: default = 0x00000000 means disabled. 0x00000001 means enabled. If this value is not defined, it will default to disabled. You must enter Value Data in hexadecimal format.

Devices must be restarted after setting this registry key, for it to take effect. Enabling the registry key above will make DCOM servers enforce an Authentication-Level of RPC_C_AUTHN_LEVEL_PKT_INTEGRITY or higher for activation.

To help identify applications that might have compatibility issues after DCOM security hardening changes are enabled, new DCOM error events were added in the System log, and can be found with Message IDs 10036, 10037 and 10038.

If issues are encountered during testing, contact the vendor for the affected client or server software for an update or workaround.

Additional Information:

It is important to ensure proper testing for this change. Please review the below documentation.

\[MS-DCOM\]: Distributed Component Object Model (DCOM) Remote Protocol | Microsoft Docs

KB5004442: Manage changes for Windows DCOM Server Security Feature Bypass (CVE-2021-26414)

CVE-2021-26414: Windows DCOM Server Security Feature Bypass

ps://docs.microsoft.com/en-us/openspecs/windows_protocols/ms-dcom/4a893f3d-bd29-48cd-9f43-d9777a4415b

ps://msrc.microsoft.com/update-guide/vulnerability/CVE-2021-26414

ps://support.microsoft.com/en-us/topic/kb5004442-manage-changes-for-windows-dcom-server-security-feature-bypass-cve-2021-26414-f1400b52-c141-43d2-941e-37ed901c769c?preview=t

06/14/2022
MC376250 (Updated) Forms: Brand new first-run experiences for Forms new users You may consider updating your training and documentation as appropriate.

https://www.microsoft.com/microsoft-365/roadmap?rtc=1%26filters=&searchterms=88947
You may consider updating your training and documentation as appropriate.

ps://www.microsoft.com/microsoft-365/roadmap?rtc=1%26filters=&searchterms=88947
N/A
MC376706 (Updated) Microsoft Project usage data in Microsoft Admin Center No preparation needed. When we roll out this update, you will see Project data in your Microsoft Admin Center Usage reports section.

https://www.microsoft.com/microsoft-365/roadmap?filters=&searchterms=93278%2C
No preparation needed. When we roll out this update, you will see Project data in your Microsoft Admin Center Usage reports section.

ps://www.microsoft.com/microsoft-365/roadmap?filters=&searchterms=93278
N/A
MC377766 Action required: Microsoft Root Certificate removal taking place May 24 Before May 24, the "G2" root certificate must be implemented on environments that require the change. There are multiple ways to deploy the root store to enterprise devices.

Carefully review the documentation in the Additional information section below, which provides details on the changes taking place along with detailed migration instructions.

Additional information:

Removal of the U.S. Federal Common Policy CA certificate from the Microsoft trusted root | Microsoft Docs: Main article discussing the removal in detail, potential issues, steps to avoid issues, and troubleshoot and analysis guidance

Migrate to the Federal Common Policy CA G2 | FICAM Playbooks: Instructions to manually download and migrate to the "G2" root certificate

Obtain and verify a copy of the Federal Common Policy CA G2 certificate | FICAM Playbooks: Details on downloading and installing the "G2" root certificate on Windows workgroup, member, and domain controller computers

Distribute the certificate to operating systems | FICAM Playbooks: Guidance to deploy the root store to enterprise devices (see the "Microsoft Solutions" section)

Program Requirements - Microsoft Trusted Root Program | Microsoft Docs: Introduction to the Trusted Root Program, as well as general and technical requirements

https://docs.microsoft.com/security/trusted-root/program-requirements

https://docs.microsoft.com/troubleshoot/windows-server/windows-security/microsoft-trusted-root-store-removal-of-us-federal-common-policy

https://playbooks.idmanagement.gov/fpki/common/distribute-os/

https://playbooks.idmanagement.gov/fpki/common/migrate/

https://playbooks.idmanagement.gov/fpki/common/obtain-and-verify

https://www.idmanagement.gov/

Before May 24, the "G2" root certificate must be implemented on environments that require the change. There are multiple ways to deploy the root store to enterprise devices.

Carefully review the documentation in the Additional information section below, which provides details on the changes taking place along with detailed migration instructions.

Additional information:

Removal of the U.S. Federal Common Policy CA certificate from the Microsoft trusted root | Microsoft Docs: Main article discussing the removal in detail, potential issues, steps to avoid issues, and troubleshoot and analysis guidance

Migrate to the Federal Common Policy CA G2 | FICAM Playbooks: Instructions to manually download and migrate to the "G2" root certificate

Obtain and verify a copy of the Federal Common Policy CA G2 certificate | FICAM Playbooks: Details on downloading and installing the "G2" root certificate on Windows workgroup, member, and domain controller computers

Distribute the certificate to operating systems | FICAM Playbooks: Guidance to deploy the root store to enterprise devices (see the "Microsoft Solutions" section)

Program Requirements - Microsoft Trusted Root Program | Microsoft Docs: Introduction to the Trusted Root Program, as well as general and technical requirements

ps://docs.microsoft.com/security/trusted-root/program-requirem

ps://docs.microsoft.com/troubleshoot/windows-server/windows-security/microsoft-trusted-root-store-removal-of-us-federal-common-policy

ps://playbooks.idmanagement.gov/fpki/common/distribute-os/

ps://playbooks.idmanagement.gov/fpki/common/migrate/

ps://playbooks.idmanagement.gov/fpki/common/obtain-and-verify

ps://www.idmanagement.gov/

05/23/2022
MC378267 Take action: May 2022 security update available for all supported versions of Windows https://support.microsoft.com/help/5012592

https://support.microsoft.com/help/5012599

https://support.microsoft.com/help/5013941

https://support.microsoft.com/help/5013942

https://support.microsoft.com/help/5013943

https://support.microsoft.com/help/5013945

https://support.microsoft.com/help/5013952

https://support.microsoft.com/help/5013963

https://support.microsoft.com/help/5013999

https://support.microsoft.com/help/5014001

https://support.microsoft.com/help/5014006

https://support.microsoft.com/help/5014010

https://support.microsoft.com/help/5014011

https://support.microsoft.com/help/5014012

https://support.microsoft.com/help/5014017

https://support.microsoft.com/help/5014018

https://support.microsoft.com/windows/update-windows-3c5ae7fc-9fb6-9af1-1984-b5e0412c556a#WindowsVersion=Windows_11

https://techcommunity.microsoft.com/t5/windows-it-pro-blog/windows-quality-updates-primer/ba-p/2569385
ps://support.microsoft.com/help/501259

ps://support.microsoft.com/help/5012599

ps://support.microsoft.com/help/501394

ps://support.microsoft.com/help/501394

ps://support.microsoft.com/help/5013943

ps://support.microsoft.com/help/5013945

ps://support.microsoft.com/help/501395

ps://support.microsoft.com/help/5013963

ps://support.microsoft.com/help/5013999

ps://support.microsoft.com/help/501400

ps://support.microsoft.com/help/5014006

ps://support.microsoft.com/help/50140

ps://support.microsoft.com/help/50140

ps://support.microsoft.com/help/50140

ps://support.microsoft.com/help/5014017

ps://support.microsoft.com/help/5014018

ps://support.microsoft.com/windows/update-windows-3c5ae7fc-9fb6-9af1-1984-b5e0412c556a#WindowsVersion=Windows_

ps://techcommunity.microsoft.com/t5/windows-it-pro-blog/windows-quality-updates-primer/ba-p/2569385
N/A
MC378268 Reminder: Internet Explorer 11 desktop application retires on June 15, 2022 To prepare, we recommend setting up Microsoft Edge in your organization. If your organization needs legacy browser support, you should set up IE mode in Microsoft Edge as soon as possible because this is a multi-step process.

View the Microsoft browser usage report in the Microsoft 365 Admin center to help size IE usage in your organization. Appropriate permissions required.

Use the Getting Started guide to set up IE mode in Microsoft Edge in your organization.

Start setting up IE mode by performing Site Discovery (typically 3-4 weeks). This is also available in the Configure IE mode guided set up experience.

Learn more by joining a webinar.

Use IE Driver to automate end-to-end IE mode testing.

Disable IE11 to test IE mode in your environment.

FastTrack can help with deployment and configuration at no additional charge for customers with 150 or more seats of Windows 10.

For cost-free help with web app and site compatibility, especially if you have legacy site concerns after configuring IE mode, learn more about the App Assure program.

Additional Information:

Read our FAQ to help answer your questions and use the troubleshooting guide during setup.

Visit the Internet Explorer mode website.

Watch videos from our IE retirement YouTube playlist to learn more.

Learn more about hosting your IE mode site list in an authenticated cloud endpoint in the M365 admin center.

Read our announcement blog and browse our blog series for more information.

https://aka.ms/configureiemode

https://aka.ms/IEmodeblog

https://aka.ms/IEModeFAQ

https://aka.ms/IEModeGuide

https://aka.ms/IEmodewebinar

https://aka.ms/IEModeWebsite

https://aka.ms/ietoedge

https://docs.microsoft.com/deployedge/deploy-edge-plan-deployment

https://docs.microsoft.com/deployedge/edge-ie-disable-ie11

https://docs.microsoft.com/deployedge/edge-ie-mode-faq

https://docs.microsoft.com/deployedge/edge-ie-mode-site-discovery

https://docs.microsoft.com/en-us/microsoft-365/admin/activity-reports/browser-usage-report?view=o365-worldwide

https://docs.microsoft.com/fasttrack/win-10-microsoft-edge-assistance-offered

https://docs.microsoft.com/microsoft-edge/webdriver-chromium/ie-mode?tabs=c-sharp

https://techcommunity.microsoft.com/t5/windows-it-pro-blog/don-t-wait-for-june-15th-set-your-own-ie-retirement-date/ba-p/3298143

https://techcommunity.microsoft.com/t5/windows-it-pro-blog/host-ie-mode-site-lists-in-the-cloud/ba-p/3035479#M3571

https://www.microsoft.com/fasttrack/microsoft-365/app-assure

https://youtube.com/playlist?list=PL4z1-7pjJU6wgq5AIvd4_jJssxtbyJFXn

To prepare, we recommend setting up Microsoft Edge in your organization. If your organization needs legacy browser support, you should set up IE mode in Microsoft Edge as soon as possible because this is a multi-step process.

View the Microsoft browser usage report in the Microsoft 365 Admin center to help size IE usage in your organization. Appropriate permissions required.

Use the Getting Started guide to set up IE mode in Microsoft Edge in your organization.

Start setting up IE mode by performing Site Discovery (typically 3-4 weeks). This is also available in the Configure IE mode guided set up experience.

Learn more by joining a webinar.

Use IE Driver to automate end-to-end IE mode testing.

Disable IE11 to test IE mode in your environment.

FastTrack can help with deployment and configuration at no additional charge for customers with 150 or more seats of Windows 10.

For cost-free help with web app and site compatibility, especially if you have legacy site concerns after configuring IE mode, learn more about the App Assure program.

Additional Information:

Read our FAQ to help answer your questions and use the troubleshooting guide during setup.

Visit the Internet Explorer mode website.

Watch videos from our IE retirement YouTube playlist to learn more.

Learn more about hosting your IE mode site list in an authenticated cloud endpoint in the M365 admin center.

Read our announcement blog and browse our blog series for more information.

ps://aka.ms/confi

ps://aka.ms/IEmodebl

ps://aka.ms/IEModeFAQ

ps://aka.ms/IEModeG

ps://aka.ms/IEmodeweb

ps://aka.ms/IEModeWeb

ps://aka.ms/ietoed

ps://docs.microsoft.com/deployedge/deploy-edge-plan-deploy

ps://docs.microsoft.com/deployedge/edge-ie-disable-i

ps://docs.microsoft.com/deployedge/edge-ie-mode-faq

ps://docs.microsoft.com/deployedge/edge-ie-mode-site-discovery

ps://docs.microsoft.com/en-us/microsoft-365/admin/activity-reports/browser-usage-report?view=o365-world

ps://docs.microsoft.com/fasttrack/win-10-microsoft-edge-assistance-off

ps://docs.microsoft.com/microsoft-edge/webdriver-chromium/ie-mode?tabs=c

ps://techcommunity.microsoft.com/t5/windows-it-pro-blog/don-t-wait-for-june-15th-set-your-own-ie-retirement-date/ba-p/3298143

ps://techcommunity.microsoft.com/t5/windows-it-pro-blog/host-ie-mode-site-lists-in-the-cloud/ba-p/3035479#M357

ps://www.microsoft.com/fasttrack/microsoft-365/app-a

ps://youtube.com/playlist?list=PL4z1-7pjJU6wgq5AIvd4_jJssxtbyJFX

06/15/2022
MC378271 Reminder: IE11 desktop application retires in 1 month on June 15, 2022 – Set up IE mode today (non-LTSC, non-Server) To prepare, we recommend setting up Microsoft Edge in your organization. If your organization needs legacy browser support, you should set up IE mode in Microsoft Edge as soon as possible because this is a multi-step process.

View the Microsoft browser usage report in the Microsoft 365 Admin center to help size IE usage in your organization. Appropriate permissions required.

Use the Getting Started guide to set up IE mode in Microsoft Edge in your organization.

Start setting up IE mode by performing Site Discovery (typically 3-4 weeks). This is also available in the Configure IE mode guided set up experience.

Learn more by watching our webinar.

Use IE Driver to automate end-to-end IE mode testing.

Disable IE11 to test IE mode in your environment.

FastTrack can help with deployment and configuration at no additional charge for customers with 150 or more seats of Windows 10.

For cost-free help with web app and site compatibility, especially if you have legacy site concerns after configuring IE mode, learn more about the App Assure program.

Additional Information

Read our FAQ to help answer your questions and use the troubleshooting guide during setup.

Visit the Internet Explorer mode website.

Watch videos from our IE retirement YouTube playlist to learn more.

Learn more about hosting your IE mode site list in an authenticated cloud endpoint in the M365 admin center.

Read our announcement blog and browse our blog series for more information.

We always value feedback and questions from our customers. Please feel free to submit either feedback or questions via Message Center.

https://aka.ms/IEmodeblog

https://aka.ms/IEModeFAQ

https://aka.ms/IEModeGuide

https://aka.ms/IEModeWebsite

https://aka.ms/ietoedge

https://docs.microsoft.com/deployedge/deploy-edge-plan-deployment

https://docs.microsoft.com/deployedge/edge-ie-disable-ie11

https://docs.microsoft.com/deployedge/edge-ie-mode-faq

https://docs.microsoft.com/deployedge/edge-ie-mode-site-discovery

https://docs.microsoft.com/fasttrack/win-10-microsoft-edge-assistance-offered

https://docs.microsoft.com/microsoft-365/admin/activity-reports/browser-usage-report?view=o365-worldwide

https://docs.microsoft.com/microsoft-edge/webdriver-chromium/ie-mode?tabs=c-sharp

https://techcommunity.microsoft.com/t5/windows-it-pro-blog/don-t-wait-for-june-15th-set-your-own-ie-retirement-date/ba-p/3298143

https://techcommunity.microsoft.com/t5/windows-it-pro-blog/host-ie-mode-site-lists-in-the-cloud/ba-p/3035479#M3571

https://www.microsoft.com/fasttrack/microsoft-365/app-assure

https://youtu.be/A2o0x9-0urE

https://youtube.com/playlist?list=PL4z1-7pjJU6wgq5AIvd4_jJssxtbyJFXn
To prepare, we recommend setting up Microsoft Edge in your organization. If your organization needs legacy browser support, you should set up IE mode in Microsoft Edge as soon as possible because this is a multi-step process.

View the Microsoft browser usage report in the Microsoft 365 Admin center to help size IE usage in your organization. Appropriate permissions required.

Use the Getting Started guide to set up IE mode in Microsoft Edge in your organization.

Start setting up IE mode by performing Site Discovery (typically 3-4 weeks). This is also available in the Configure IE mode guided set up experience.

Learn more by watching our webinar.

Use IE Driver to automate end-to-end IE mode testing.

Disable IE11 to test IE mode in your environment.

FastTrack can help with deployment and configuration at no additional charge for customers with 150 or more seats of Windows 10.

For cost-free help with web app and site compatibility, especially if you have legacy site concerns after configuring IE mode, learn more about the App Assure program.

Additional Information

Read our FAQ to help answer your questions and use the troubleshooting guide during setup.

Visit the Internet Explorer mode website.

Watch videos from our IE retirement YouTube playlist to learn more.

Learn more about hosting your IE mode site list in an authenticated cloud endpoint in the M365 admin center.

Read our announcement blog and browse our blog series for more information.

We always value feedback and questions from our customers. Please feel free to submit either feedback or questions via Message Center.

ps://aka.ms/IEmodebl

ps://aka.ms/IEModeFAQ

ps://aka.ms/IEModeG

ps://aka.ms/IEModeWeb

ps://aka.ms/ietoed

ps://docs.microsoft.com/deployedge/deploy-edge-plan-deploy

ps://docs.microsoft.com/deployedge/edge-ie-disable-i

ps://docs.microsoft.com/deployedge/edge-ie-mode-faq

ps://docs.microsoft.com/deployedge/edge-ie-mode-site-discovery

ps://docs.microsoft.com/fasttrack/win-10-microsoft-edge-assistance-off

ps://docs.microsoft.com/microsoft-365/admin/activity-reports/browser-usage-report?view=o365-world

ps://docs.microsoft.com/microsoft-edge/webdriver-chromium/ie-mode?tabs=c

ps://techcommunity.microsoft.com/t5/windows-it-pro-blog/don-t-wait-for-june-15th-set-your-own-ie-retirement-date/ba-p/3298143

ps://techcommunity.microsoft.com/t5/windows-it-pro-blog/host-ie-mode-site-lists-in-the-cloud/ba-p/3035479#M357

ps://www.microsoft.com/fasttrack/microsoft-365/app-a

ps://youtu.be/A2o0x9-0urE

ps://youtube.com/playlist?list=PL4z1-7pjJU6wgq5AIvd4_jJssxtbyJFX
06/15/2022
MC378975 Microsoft Evaluation Center availability has been resolved https://techcommunity.microsoft.com/t5/windows-11/accessing-trials-and-kits-for-windows-eval-center-workaround/m-p/3361125

https://www.microsoft.com/EvalCente
ps://techcommunity.microsoft.com/t5/windows-11/accessing-trials-and-kits-for-windows-eval-center-workaround/m-p/3361125

ps://www.microsoft.com/Eval
N/A
MC379024 Suggested Replies in Teams Desktop This feature ships default on; review Manage messaging policies in Teams.

If you wish to disable this feature in your tenant, please disable the Suggested Replies setting that is found in Messaging Policies.

Users also have a setting within the app so they can disable the feature.

https://docs.microsoft.com/microsoftteams/messaging-policies-in-teams?msclkid=d7563491d14811ecabb24fc16aea1fcc

https://www.microsoft.com/microsoft-365/roadmap?rtc=1%26filters=&searchterms=92674
This feature ships default on; review Manage messaging policies in Teams.

If you wish to disable this feature in your tenant, please disable the Suggested Replies setting that is found in Messaging Policies.

Users also have a setting within the app so they can disable the feature.

ps://docs.microsoft.com/microsoftteams/messaging-policies-in-teams?msclkid=d7563491d14811ecabb24fc16aea1f

ps://www.microsoft.com/microsoft-365/roadmap?rtc=1%26filters=&searchterms=92674
N/A
MC379407 (Updated) Exchange Online-Add, edit custom file types in Anti-malware policy https://docs.microsoft.com/microsoft-365/security/office-365-security/configure-anti-malware-policies

https://docs.microsoft.com/powershell/module/exchange/set-malwarefilterpolicy

https://www.microsoft.com/microsoft-365/roadmap?rtc=1%26filters=&searchterms=85611
ps://docs.microsoft.com/microsoft-365/security/office-365-security/configure-anti-malware-polici

ps://docs.microsoft.com/powershell/module/exchange/set-malwarefilterpolicy

ps://www.microsoft.com/microsoft-365/roadmap?rtc=1%26filters=&searchterms=856
N/A
MC379408 (Updated) Exchange Online-Updates to the file type list in the common attachment filter Review existing anti-malware policies and add the recommended file types to the block list. Since the default policy will now cover more file types, it’s likely that the expanded list of files in the default policy will block messages. If you do not want the new list of file types to be active, create a custom anti-malware policy (soon, before this feature deployment) with the file types that meet your needs. Review the following resources below to learn more:

Anti-malware policy

Anti-malware policy protection FAQ

Current list of file types in pre-populated list

Current list of default file type selection

The list of file types:

7z, 7zip,

a, accdb, accde,ace, action, ade, adp, apk, app, appx, appxbundle, arj, asf, asp, aspx, ani, avi,

bat, bin, bundle, bz, bz2, bzip2,

cab, caction, cer, chm, cmd, com, command, cpl, crt, csh, css,

deb, der, dex, dgz, dll, dmg, doc, docm, docx, dot, dotm, dtox, dylib,

elf, exe,

font,

gz, gzip,

hlp, hta, htm, html,

img, imp, inf, ins, ipa, iso, isp, its,

jar, jnlp, js, jse,

kext, ksh,

lha, lib, library, lnk, lqy, lzh,

macho, mad, maf, mag, mam, maq, mar, mas, mat, mav, maw, mda, mdb, mde, mdt, mdw, mdz, mht,

mhtml, msc, mscompress, msh, msh1, msh1xml, msh2, msh2xml, mshxml, msi, msix, msixbundle, msp, mst,

o, obj, odp, ods, odt, one, onenote, ops,

package, pages, pbix, pdb, pdf, php, pif, pkg, plugin, ppa, ppam, pps, ppsm, ppsx, ppt, pptm, pptx, prf,

prg, ps1, ps1xml, ps2, ps2xml, psc1, psc2, pst, pub, py,

rar, reg, rev, rpm, rtf,

scf, scpt, scr, sct, service, sh, shx, shb, shtm, so, sys,

tar, tarz, terminal, tgz, tool,

uif, url,

vb, vbe, vbs, vhd, vsd, vsdm, vsdx, vsmacros, vss, vssx, vst, vstm, vstx, vsw, vxd,

workflow, ws, wsc, wsf, wsh,

xhtml, xla, xlam, xll, xls, xlsb, xlsm, xlsx, xlt, xltm, xltx, xz,

z, zi, zip, zipx,

The default selection from the above file type list is:

ace, apk, app, appx, ani, arj,

bat,

cab, cmd,com,

deb, dex, dll, docm,

elf, exe,

hta,

img, iso,

jar, jnlp,

kext,

lha, lib, library, lnk, lzh

macho, msc, msi, msix, msp, mst

pif, ppa, ppam,

reg, rev,

scf, scr, sct, sys,

uif,

vb, vbe, vbs, vxd

wsc, wsf, wsh

xll, xz

z

https://docs.microsoft.com/microsoft-365/security/office-365-security/anti-malware-protection#anti-malware-policies

https://docs.microsoft.com/microsoft-365/security/office-365-security/anti-malware-protection-faq-eop?view=o365-worldwide

https://www.microsoft.com/microsoft-365/roadmap?rtc=1%26filters=&searchterms=85611

Review existing anti-malware policies and add the recommended file types to the block list. Since the default policy will now cover more file types, it’s likely that the expanded list of files in the default policy will block messages. If you do not want the new list of file types to be active, create a custom anti-malware policy (soon, before this feature deployment) with the file types that meet your needs. Review the following resources below to learn more:

Anti-malware policy

Anti-malware policy protection FAQ

Current list of file types in pre-populated list

Current list of default file type selection

The list of file types:

7z, 7zip,

a, accdb, accde,ace, action, ade, adp, apk, app, appx, appxbundle, arj, asf, asp, aspx, ani, avi,

bat, bin, bundle, bz, bz2, bzip2,

cab, caction, cer, chm, cmd, com, command, cpl, crt, csh, css,

deb, der, dex, dgz, dll, dmg, doc, docm, docx, dot, dotm, dtox, dylib,

elf, exe,

font,

gz, gzip,

hlp, hta, htm, html,

img, imp, inf, ins, ipa, iso, isp, its,

jar, jnlp, js, jse,

kext, ksh,

lha, lib, library, lnk, lqy, lzh,

macho, mad, maf, mag, mam, maq, mar, mas, mat, mav, maw, mda, mdb, mde, mdt, mdw, mdz, mht,

mhtml, msc, mscompress, msh, msh1, msh1xml, msh2, msh2xml, mshxml, msi, msix, msixbundle, msp, mst,

o, obj, odp, ods, odt, one, onenote, ops,

package, pages, pbix, pdb, pdf, php, pif, pkg, plugin, ppa, ppam, pps, ppsm, ppsx, ppt, pptm, pptx, prf,

prg, ps1, ps1xml, ps2, ps2xml, psc1, psc2, pst, pub, py,

rar, reg, rev, rpm, rtf,

scf, scpt, scr, sct, service, sh, shx, shb, shtm, so, sys,

tar, tarz, terminal, tgz, tool,

uif, url,

vb, vbe, vbs, vhd, vsd, vsdm, vsdx, vsmacros, vss, vssx, vst, vstm, vstx, vsw, vxd,

workflow, ws, wsc, wsf, wsh,

xhtml, xla, xlam, xll, xls, xlsb, xlsm, xlsx, xlt, xltm, xltx, xz,

z, zi, zip, zipx,

The default selection from the above file type list is:

ace, apk, app, appx, ani, arj,

bat,

cab, cmd,com,

deb, dex, dll, docm,

elf, exe,

hta,

img, iso,

jar, jnlp,

kext,

lha, lib, library, lnk, lzh

macho, msc, msi, msix, msp, mst

pif, ppa, ppam,

reg, rev,

scf, scr, sct, sys,

uif,

vb, vbe, vbs, vxd

wsc, wsf, wsh

xll, xz

z

ps://docs.microsoft.com/microsoft-365/security/office-365-security/anti-malware-protection#anti-malware-polici

ps://docs.microsoft.com/microsoft-365/security/office-365-security/anti-malware-protection-faq-eop?view=o365-world

ps://www.microsoft.com/microsoft-365/roadmap?rtc=1%26filters=&searchterms=856

N/A
MC379409 An updated version of the May 2022 security update Scan Cab for Windows Server Update Services is available Administrators may re-deploy the updated Scan Cab via their usual WSUS processes. For detailed guidance, see the Additional Information section below.

Additional information:

Updated Scan Cab: Download the new Scan Cab here

Announcing a smaller WSUS Scan Cab - Microsoft Tech Community: Learn more about WSUS and the Scan Cab process

Using WUA to Scan for Updates Offline - Win32 apps | Microsoft Docs: Windows Update Agent (WUA) can be used to scan computers for security updates without connecting to Windows Update

WSUS and the Catalog Site | Microsoft Docs: The Catalog Site used by WSUS to import updates and drivers

Description of the security update for Microsoft Exchange Server 2016 and 2019: May 10, 2022: Details on the vulnerability addressed in the new Scan Cab

https://docs.microsoft.com/windows/win32/wua_sdk/using-wua-to-scan-for-updates-offline

https://docs.microsoft.com/windows-server/administration/windows-server-update-services/manage/wsus-and-the-catalog-site

https://download.windowsupdate.com/microsoftupdate/v6/wsusscan/wsusscn2.cab

https://support.microsoft.com/topic/description-of-the-security-update-for-microsoft-exchange-server-2016-and-2019-may-10-2022-kb5014261-cd5ecb59-a0eb-47ef-ae35-f62b13c8b817

https://techcommunity.microsoft.com/t5/windows-it-pro-blog/announcing-a-smaller-wsus-scan-cab/ba-p/2928256?msclkid=256145ccd0c011ec9266b53af8d0aca1

Administrators may re-deploy the updated Scan Cab via their usual WSUS processes. For detailed guidance, see the Additional Information section below.

Additional information:

Updated Scan Cab: Download the new Scan Cab here

Announcing a smaller WSUS Scan Cab - Microsoft Tech Community: Learn more about WSUS and the Scan Cab process

Using WUA to Scan for Updates Offline - Win32 apps | Microsoft Docs: Windows Update Agent (WUA) can be used to scan computers for security updates without connecting to Windows Update

WSUS and the Catalog Site | Microsoft Docs: The Catalog Site used by WSUS to import updates and drivers

Description of the security update for Microsoft Exchange Server 2016 and 2019: May 10, 2022: Details on the vulnerability addressed in the new Scan Cab

ps://docs.microsoft.com/windows/win32/wua_sdk/using-wua-to-scan-for-updates-offl

ps://docs.microsoft.com/windows-server/administration/windows-server-update-services/manage/wsus-and-the-catal

ps://download.windowsupdate.com/microsoftupdate/v6/wsusscan/wsusscn2.cab

ps://support.microsoft.com/topic/description-of-the-security-update-for-microsoft-exchange-server-2016-and-2019-may-10-2022-kb5014261-cd5ecb59-a0eb-47ef-ae35-f62b13c8b817

ps://techcommunity.microsoft.com/t5/windows-it-pro-blog/announcing-a-smaller-wsus-scan-cab/ba-p/2928256?msclkid=256145ccd0c011ec9266b53af8d0aca

N/A
MC379710 (Updated) General availability of Advanced Message Encryption - Office 365 Message Encryption portal access logs This feature is not available by default unless you have enabled auditing.

To enable the feature, go to Microsoft Purview compliance portal > Audit log search page and select Turn on auditing.

You can enable the portal logs using Exchange PowerShell:

Set-IrmConfiguration -EnablePortalTrackingLogs $true

Learn more:

Search the audit log in the Microsoft Purview compliance portal

Advanced Message Encryption

https://docs.microsoft.com/microsoft-365/compliance/ome-advanced-message-encryption?view=o365-worldwide

https://docs.microsoft.com/microsoft-365/compliance/search-the-audit-log-in-security-and-compliance?view=o365-worldwide

https://purview.microsoft.com/compliance

https://www.microsoft.com/microsoft-365/roadmap?filters=&searchterms=88914
This feature is not available by default unless you have enabled auditing.

To enable the feature, go to Microsoft Purview compliance portal > Audit log search page and select Turn on auditing.

You can enable the portal logs using Exchange PowerShell:

Set-IrmConfiguration -EnablePortalTrackingLogs $true

Learn more:

Search the audit log in the Microsoft Purview compliance portal

Advanced Message Encryption

ps://docs.microsoft.com/microsoft-365/compliance/ome-advanced-message-encryption?view=o365-world

ps://docs.microsoft.com/microsoft-365/compliance/search-the-audit-log-in-security-and-compliance?view=o365-world

ps://purview.microsoft.com/compl

ps://www.microsoft.com/microsoft-365/roadmap?filters=&searchterms=88914
N/A
MC380874 Windows release notes survey No action is needed other than to fill out the short survey questions: https://aka.ms/Windows/RelNotesSurvey.

Additional information:

This survey asks about your experience with the following:

Windows 11 release notes

Windows 10 release notes

Security Update Guide: https://msrc.microsoft.com/update-guide

https://aka.ms/Windows/RelNotesSurvey

https://msrc.microsoft.com/update-guide

https://support.microsoft.com/topic/windows-10-update-history-857b8ccb-71e4-49e5-b3f6-7073197d98fb

https://support.microsoft.com/topic/windows-11-update-history-a19cd327-b57f-44b9-84e0-26ced7109ba9

No action is needed other than to fill out the short survey questions: https://aka.ms/Windows/RelNotesSurvey.

Additional information:

This survey asks about your experience with the following:

Windows 11 release notes

Windows 10 release notes

Security Update Guide: https://msrc.microsoft.com/update-guide

ps://aka.ms/Windows/RelNotesSurvey

ps://msrc.microsoft.com/upda

ps://support.microsoft.com/topic/windows-10-update-history-857b8ccb-71e4-49e5-b3f6-7073197d98fb

ps://support.microsoft.com/topic/windows-11-update-history-a19cd327-b57f-44b9-84e0-26ced7109ba9

N/A
MC381943 (Updated) General availability of Microsoft Defender for Endpoint alerts in Insider Risk Management You'll need to have Microsoft Defender for Endpoint configured in your organization and enable Defender for Endpoint for insider risk management integration in the Defender Security Center to import security violation alerts. For more information on configuring Defender for Endpoint for insider risk management integration, see Configure advanced features in Microsoft Defender for Endpoint.

You can access the Insider Risk Management solution in the Microsoft Purview compliance portal:

Microsoft Purview compliance portal for WW and GCC cloud environments

Microsoft Purview compliance portal for GCC-High cloud environments

Microsoft Purview compliance portal for DoD cloud environments

Learn more:

Microsoft Defender for Endpoint

https://compliance.apps.mil/

https://compliance.microsoft.us/

https://docs.microsoft.com/microsoft-365/compliance/insider-risk-management-settings?view=o365-worldwide#microsoft-defender-for-endpoint-preview

https://docs.microsoft.com/microsoft-365/security/defender-endpoint/advanced-features?view=o365-worldwide#share-endpoint-alerts-with-microsoft-compliance-center

https://purview.microsoft.com/compliance

https://www.microsoft.com/microsoft-365/roadmap?filters=&searchterms=83965

You'll need to have Microsoft Defender for Endpoint configured in your organization and enable Defender for Endpoint for insider risk management integration in the Defender Security Center to import security violation alerts. For more information on configuring Defender for Endpoint for insider risk management integration, see Configure advanced features in Microsoft Defender for Endpoint.

You can access the Insider Risk Management solution in the Microsoft Purview compliance portal:

Microsoft Purview compliance portal for WW and GCC cloud environments

Microsoft Purview compliance portal for GCC-High cloud environments

Microsoft Purview compliance portal for DoD cloud environments

Learn more:

Microsoft Defender for Endpoint

ps://compliance.apps.mil/

ps://compliance.microsoft.us/

ps://docs.microsoft.com/microsoft-365/compliance/insider-risk-management-settings?view=o365-worldwide#microsoft-defender-for-endpoint-previ

ps://docs.microsoft.com/microsoft-365/security/defender-endpoint/advanced-features?view=o365-worldwide#share-endpoint-alerts-with-microsoft-complianc

ps://purview.microsoft.com/compl

ps://www.microsoft.com/microsoft-365/roadmap?filters=&searchterms=83965

N/A
MC381948 Configure the existing Stream tile in Microsoft 365 app launcher to go to the new Stream app on Office.com To set the Stream tile destination in the Microsoft 365 app launcher:

Go to the Settings page of SharePoint admin center and sign in with an account that has admin permissions.

Select App launcher tile.

Select the option you want to set as the default destination for the Stream tile in the Microsoft 365 app launcher.

Select Save. It takes about 5 minutes for this change to take effect.

Learn more:

Direct the Stream app tile launcher to Stream (on SharePoint)

https://docs.microsoft.com/en-us/stream/streamnew/start#direct-the-stream-app-tile-launcher-to-stream-on-sharepoint

https://go.microsoft.com/fwlink/?linkid=2185219

https://www.microsoft.com/microsoft-365/roadmap?filters=&searchterms=88823
To set the Stream tile destination in the Microsoft 365 app launcher:

Go to the Settings page of SharePoint admin center and sign in with an account that has admin permissions.

Select App launcher tile.

Select the option you want to set as the default destination for the Stream tile in the Microsoft 365 app launcher.

Select Save. It takes about 5 minutes for this change to take effect.

Learn more:

Direct the Stream app tile launcher to Stream (on SharePoint)

ps://docs.microsoft.com/en-us/stream/streamnew/start#direct-the-stream-app-tile-launcher-to-stream

ps://go.microsoft.com/fwlink/?linkid=2185219

ps://www.microsoft.com/microsoft-365/roadmap?filters=&searchterms=88823
N/A
MC382408 Take action: Out-of-band update to address issues after installing the May Windows update https://docs.microsoft.com/windows/release-health/status-windows-10-20h2#2826msgdesc

https://docs.microsoft.com/windows/release-health/status-windows-10-21h2#2830msgdesc

https://support.microsoft.com/help/5014986

https://support.microsoft.com/help/5014987

https://support.microsoft.com/help/5014990

https://support.microsoft.com/help/5014991

https://support.microsoft.com/help/5015013

https://support.microsoft.com/help/5015018

https://support.microsoft.com/help/5015019

https://support.microsoft.com/help/5015020
ps://docs.microsoft.com/windows/release-health/status-windows-10-20h2#2826msgd

ps://docs.microsoft.com/windows/release-health/status-windows-10-21h2#2830msgd

ps://support.microsoft.com/help/5014986

ps://support.microsoft.com/help/5014987

ps://support.microsoft.com/help/501499

ps://support.microsoft.com/help/501499

ps://support.microsoft.com/help/5015013

ps://support.microsoft.com/help/5015018

ps://support.microsoft.com/help/5015019

ps://support.microsoft.com/help/5015
N/A
MC382821 (Updated) Custom organization branding for quarantine notification (custom sender address and Custom subject) You might want to notify your users about this change and update your training and documentation as appropriate.

https://www.microsoft.com/microsoft-365/roadmap?filters=&searchterms=93301
You might want to notify your users about this change and update your training and documentation as appropriate.

ps://www.microsoft.com/microsoft-365/roadmap?filters=&searchterms=9330
N/A
MC382822 (Updated) Insider Risk Management: General availability of security policy violations templates You'll need to have Microsoft Defender for Endpoint configured in your organization and enable Defender for Endpoint for insider risk management integration in the Defender Security Center to import security violation alerts. For more information on configuring Defender for Endpoint for insider risk management integration, see Configure advanced features in Microsoft Defender for Endpoint.

Microsoft Purview Insider Risk Management correlates various signals to identify potential malicious or inadvertent insider risks, such as IP theft, security and policy violations, and more. Built with privacy by design, users are pseudonymized by default, and role-based access controls and audit logs are in place to help ensure user-level privacy.

You can access the Insider Risk Management solution:

Microsoft Purview compliance portal for WW and GCC cloud environments

Microsoft Purview compliance portal for GCC-High cloud environments

Microsoft Purview compliance portal for DoD cloud environments

Learn more:

General security policy violations

Security policy violations by priority users

Security policy violations by departing users

https://compliance.apps.mil/

https://compliance.microsoft.us/

https://docs.microsoft.com/microsoft-365/compliance/insider-risk-management-policies?view=o365-worldwide#general-security-policy-violations-preview

https://docs.microsoft.com/microsoft-365/compliance/insider-risk-management-policies?view=o365-worldwide#security-policy-violations-by-departing-users-preview

https://docs.microsoft.com/microsoft-365/compliance/insider-risk-management-policies?view=o365-worldwide#security-policy-violations-by-priority-users-preview

https://docs.microsoft.com/microsoft-365/security/defender-endpoint/advanced-features?view=o365-worldwide#share-endpoint-alerts-with-microsoft-compliance-center

https://purview.microsoft.com/compliance

https://www.microsoft.com/microsoft-365/roadmap?filters=&searchterms=83961

https://www.microsoft.com/microsoft-365/roadmap?filters=&searchterms=83962

https://www.microsoft.com/microsoft-365/roadmap?filters=&searchterms=83963

You'll need to have Microsoft Defender for Endpoint configured in your organization and enable Defender for Endpoint for insider risk management integration in the Defender Security Center to import security violation alerts. For more information on configuring Defender for Endpoint for insider risk management integration, see Configure advanced features in Microsoft Defender for Endpoint.

Microsoft Purview Insider Risk Management correlates various signals to identify potential malicious or inadvertent insider risks, such as IP theft, security and policy violations, and more. Built with privacy by design, users are pseudonymized by default, and role-based access controls and audit logs are in place to help ensure user-level privacy.

You can access the Insider Risk Management solution:

Microsoft Purview compliance portal for WW and GCC cloud environments

Microsoft Purview compliance portal for GCC-High cloud environments

Microsoft Purview compliance portal for DoD cloud environments

Learn more:

General security policy violations

Security policy violations by priority users

Security policy violations by departing users

ps://compliance.apps.mil/

ps://compliance.microsoft.us/

ps://docs.microsoft.com/microsoft-365/compliance/insider-risk-management-policies?view=o365-worldwide#general-security-policy-violations-previ

ps://docs.microsoft.com/microsoft-365/compliance/insider-risk-management-policies?view=o365-worldwide#security-policy-violations-by-departing-users-previ

ps://docs.microsoft.com/microsoft-365/compliance/insider-risk-management-policies?view=o365-worldwide#security-policy-violations-by-priority-users-previ

ps://docs.microsoft.com/microsoft-365/security/defender-endpoint/advanced-features?view=o365-worldwide#share-endpoint-alerts-with-microsoft-complianc

ps://purview.microsoft.com/compl

ps://www.microsoft.com/microsoft-365/roadmap?filters=&searchterms=8396

ps://www.microsoft.com/microsoft-365/roadmap?filters=&searchterms=8396

ps://www.microsoft.com/microsoft-365/roadmap?filters=&searchterms=83963

N/A
MC383873 (Updated) Expansion for Alert Generation for Alert Policy ‘A Potentially Malicious URL Click was Detected’ There is no action needed from you at this time. You may want to consider updating your training and documentation as appropriate.

Learn More:

A Potentially Malicious URL Click was Detected

Alert Policies in Microsoft 365

https://docs.microsoft.com/microsoft-365/compliance/alert-policies#default-alert-policies

https://docs.microsoft.com/microsoft-365/compliance/alert-policies?view=o365-worldwide#default-alert-policies

https://www.microsoft.com/microsoft-365/roadmap?filters=&searchterms=93300
There is no action needed from you at this time. You may want to consider updating your training and documentation as appropriate.

Learn More:

A Potentially Malicious URL Click was Detected

Alert Policies in Microsoft 365

ps://docs.microsoft.com/microsoft-365/compliance/alert-policies#default-alert-polici

ps://docs.microsoft.com/microsoft-365/compliance/alert-policies?view=o365-worldwide#default-alert-polici

ps://www.microsoft.com/microsoft-365/roadmap?filters=&searchterms=933
N/A
MC383875 (Updated) Microsoft Defender for Office 365: updates to quarantine folder storage The goal for this communication is mostly for informational awareness. You may consider updating your training and documentation as appropriate.

https://www.microsoft.com/microsoft-365/roadmap?filters=&searchterms=93302
The goal for this communication is mostly for informational awareness. You may consider updating your training and documentation as appropriate.

ps://www.microsoft.com/microsoft-365/roadmap?filters=&searchterms=933
N/A
MC383876 (Updated) Collaborative Annotations on Presenter Shared Screen This feature is enabled by default so there is no action needed.

Note: Annotation is powered by Microsoft Whiteboard. If Microsoft Whiteboard is disabled, it will also disable Annotations.

Learn More:

Enable Microsoft Whiteboard for your Organization

https://support.microsoft.com/office/enable-microsoft-whiteboard-for-your-organization-1caaa2e2-5c18-4bdf-b878-2d98f1da4b24?ui=en-us&rs=en-us&ad=us

https://www.microsoft.com/microsoft-365/roadmap?filters=&searchterms=86732
This feature is enabled by default so there is no action needed.

Note: Annotation is powered by Microsoft Whiteboard. If Microsoft Whiteboard is disabled, it will also disable Annotations.

Learn More:

Enable Microsoft Whiteboard for your Organization

ps://support.microsoft.com/office/enable-microsoft-whiteboard-for-your-organization-1caaa2e2-5c18-4bdf-b878-2d98f1da4b24?ui=en-us&rs=en-us&ad

ps://www.microsoft.com/microsoft-365/roadmap?filters=&searchterms=8673
N/A
MC383901 (Updated) Microsoft Defender for Office 365: Hourly option for notifications You might want to notify your users about this change and update your training and documentation as appropriate.

https://www.microsoft.com/microsoft-365/roadmap?filters=&searchterms=93304
You might want to notify your users about this change and update your training and documentation as appropriate.

ps://www.microsoft.com/microsoft-365/roadmap?filters=&searchterms=93304
N/A
MC384240 Final Notice: Microsoft "G1" Root Certificate removal - May 24, 2022 The "G2" root certificate must be implemented on environments that require the change. There are multiple ways to deploy the root store to enterprise devices.

Carefully review the documentation in the Additional information section below, which provides details on the changes taking place along with detailed migration instructions.

Additional information:

Removal of the U.S. Federal Common Policy CA certificate from the Microsoft trusted root | Microsoft Docs: Main article discussing the removal in detail, potential issues, steps to avoid issues, and troubleshoot and analysis guidance

Migrate to the Federal Common Policy CA G2 | FICAM Playbooks: Instructions to manually download and migrate to the "G2" root certificate

Obtain and verify a copy of the Federal Common Policy CA G2 certificate | FICAM Playbooks: Details on downloading and installing the "G2" root certificate on Windows workgroup, member, and domain controller computers

Distribute the certificate to operating systems | FICAM Playbooks: Guidance to deploy the root store to enterprise devices (see the "Microsoft Solutions" section)

Program Requirements - Microsoft Trusted Root Program | Microsoft Docs: Introduction to the Trusted Root Program, as well as general and technical requirements

https://docs.microsoft.com/security/trusted-root/program-requirements

https://docs.microsoft.com/troubleshoot/windows-server/windows-security/microsoft-trusted-root-store-removal-of-us-federal-common-policy

https://playbooks.idmanagement.gov/fpki/common/distribute-os/

https://playbooks.idmanagement.gov/fpki/common/migrate/

https://playbooks.idmanagement.gov/fpki/common/obtain-and-verify

https://www.idmanagement.gov/

The "G2" root certificate must be implemented on environments that require the change. There are multiple ways to deploy the root store to enterprise devices.

Carefully review the documentation in the Additional information section below, which provides details on the changes taking place along with detailed migration instructions.

Additional information:

Removal of the U.S. Federal Common Policy CA certificate from the Microsoft trusted root | Microsoft Docs: Main article discussing the removal in detail, potential issues, steps to avoid issues, and troubleshoot and analysis guidance

Migrate to the Federal Common Policy CA G2 | FICAM Playbooks: Instructions to manually download and migrate to the "G2" root certificate

Obtain and verify a copy of the Federal Common Policy CA G2 certificate | FICAM Playbooks: Details on downloading and installing the "G2" root certificate on Windows workgroup, member, and domain controller computers

Distribute the certificate to operating systems | FICAM Playbooks: Guidance to deploy the root store to enterprise devices (see the "Microsoft Solutions" section)

Program Requirements - Microsoft Trusted Root Program | Microsoft Docs: Introduction to the Trusted Root Program, as well as general and technical requirements

ps://docs.microsoft.com/security/trusted-root/program-requirem

ps://docs.microsoft.com/troubleshoot/windows-server/windows-security/microsoft-trusted-root-store-removal-of-us-federal-common-policy

ps://playbooks.idmanagement.gov/fpki/common/distribute-os/

ps://playbooks.idmanagement.gov/fpki/common/migrate/

ps://playbooks.idmanagement.gov/fpki/common/obtain-and-verify

ps://www.idmanagement.gov/

N/A
MC384247 May 2022 Windows non-security preview "C" release available for Windows 11 and some versions of Windows https://support.microsoft.com/help/5014019

https://support.microsoft.com/help/5014021

https://support.microsoft.com/help/5014022

https://techcommunity.microsoft.com/t5/windows-it-pro-blog/windows-quality-updates-primer/ba-p/2569385
ps://support.microsoft.com/help/5014019

ps://support.microsoft.com/help/501402

ps://support.microsoft.com/help/5014

ps://techcommunity.microsoft.com/t5/windows-it-pro-blog/windows-quality-updates-primer/ba-p/2569385
N/A
MC384326 (Updated) Microsoft Defender for Office 365: Quarantine asynchronous update The goal for this communication is mostly for informational awareness. You may consider updating your training and documentation as appropriate.

https://www.microsoft.com/microsoft-365/roadmap?filters=&searchterms=93303
The goal for this communication is mostly for informational awareness. You may consider updating your training and documentation as appropriate.

ps://www.microsoft.com/microsoft-365/roadmap?filters=&searchterms=93303
N/A
MC384330 (Updated) Microsoft Defender for Office 365: Password protected download of quarantined messages You might want to notify your users about this change and update your training and documentation as appropriate.

https://www.microsoft.com/microsoft-365/roadmap?filters=&searchterms=93305
You might want to notify your users about this change and update your training and documentation as appropriate.

ps://www.microsoft.com/microsoft-365/roadmap?filters=&searchterms=93305
N/A
MC384784 (Updated) Azure Active Directory: Customize Organizations’ Sign-In and Sign-Up Pages in Company Branding Adding custom branding requires you to have either Azure Active Directory Premium 1, Premium 2, or Office 365 (for Office 365 apps) licenses.

Learn More:

Add Branding to your Organization's Azure Active Directory Sign-on Page

https://docs.microsoft.com/azure/active-directory/fundamentals/customize-branding

https://www.microsoft.com/microsoft-365/roadmap?filters=&searchterms=93320
Adding custom branding requires you to have either Azure Active Directory Premium 1, Premium 2, or Office 365 (for Office 365 apps) licenses.

Learn More:

Add Branding to your Organization's Azure Active Directory Sign-on Page

ps://docs.microsoft.com/azure/active-directory/fundamentals/customize-brandi

ps://www.microsoft.com/microsoft-365/roadmap?filters=&searchterms=933
N/A
MC384788 Mover retirement of specific cloud migration scenarios Click here to learn more about the retirement plan including what scenarios will continue to be supported.

Individuals or students: You may continue to use Mover, learn how!

https://aka.ms/ODSP-MM

https://app.mover.io/

https://docs.microsoft.com/sharepointmigration/mover-retirement-timeline

https://support.microsoft.com/en-us/office/move-your-school-files-when-you-graduate-7dbda93c-71e6-483f-8914-ad445554cd31

https://www.microsoft.com/fasttrack/fasttrack-data-migration
Click here to learn more about the retirement plan including what scenarios will continue to be supported.

Individuals or students: You may continue to use Mover, learn how!

ps://aka.ms/ODSP-MM

ps://app.mover.io/

ps://docs.microsoft.com/sharepointmigration/mover-retirement-timel

ps://support.microsoft.com/en-us/office/move-your-school-files-when-you-graduate-7dbda93c-71e6-483f-8914-ad445554cd3

ps://www.microsoft.com/fasttrack/fasttrack-data-mi
N/A
MC385452 (Updated) Math Assistant: Math Ink Recognizer and Math Solver Service This is a connected experience that is enabled for users when admins have turned on the connected experiences toggle.

Learn More:

Connected experiences in Office

https://docs.microsoft.com/deployoffice/privacy/connected-experienceszFyMRfLqJ8jEWZTPYKZY%3D&reserved=0

https://www.microsoft.com/microsoft-365/roadmap?filters=&searchterms=93227

https://www.microsoft.com/microsoft-365/roadmap?filters=&searchterms=93228
This is a connected experience that is enabled for users when admins have turned on the connected experiences toggle.

Learn More:

Connected experiences in Office

ps://docs.microsoft.com/deployoffice/privacy/connected-experienceszFyMRfLqJ8jEWZTPYKZY%3D&reserved

ps://www.microsoft.com/microsoft-365/roadmap?filters=&searchterms=93227

ps://www.microsoft.com/microsoft-365/roadmap?filters=&searchterms=93228
N/A
MC387036 (Updated) Teams Meeting Poll New Question Type - Rating You may want to update internal documentation and/or training material to let people know about the new feature and how to use it.

https://www.microsoft.com/microsoft-365/roadmap?filters=&searchterms=93991
You may want to update internal documentation and/or training material to let people know about the new feature and how to use it.

ps://www.microsoft.com/microsoft-365/roadmap?filters=&searchterms=9399
N/A
MC387038 (Updated) Call control with bluetooth headsets and speakerphones You might want to notify your users about this change and update your training and documentation as appropriate. Watch for announcements soon about full certification for native Bluetooth headsets which will validate device performance for things like audio quality, and Teams button support.

https://www.microsoft.com/microsoft-365/roadmap?filters=&searchterms=84309
You might want to notify your users about this change and update your training and documentation as appropriate. Watch for announcements soon about full certification for native Bluetooth headsets which will validate device performance for things like audio quality, and Teams button support.

ps://www.microsoft.com/microsoft-365/roadmap?filters=&searchterms=84309
N/A
MC387165 Ensuring a successful Windows quality update experience  Follow the references in the blog if you wish to sign up for any of the testing and communication opportunities.

Additional information:

For additional information, please see the Windows IT Pro blog post Ensuring a successful Windows quality update experience and learn more about the opportunities we recommend for early testing:

Security Update Validation Program: the early bird tests the worm

Register for the Windows 10 Insider Program for Business

Test Base for Microsoft 365 has reached general availability

App Assure with Microsoft FastTrack

https://docs.microsoft.com/en-us/windows-insider/business/register

https://techcommunity.microsoft.com/t5/test-base-blog/test-base-for-microsoft-365-has-reached-general-availability/ba-p/2893854#:~:text=Test%20Base%20for%20Microsoft%20365%20has%20reached%20general,is%20moving%20from%20public%20preview%20to%20general%20availability.

https://techcommunity.microsoft.com/t5/windows-it-pro-blog/ensuring-a-successful-windows-quality-update-experience/ba-p/3451774

https://techcommunity.microsoft.com/t5/windows-it-pro-blog/security-update-validation-program-the-early-bird-tests-the-worm/ba-p/2569392

https://www.microsoft.com/en-us/fasttrack/microsoft-365/app-assure

Follow the references in the blog if you wish to sign up for any of the testing and communication opportunities.

Additional information:

For additional information, please see the Windows IT Pro blog post Ensuring a successful Windows quality update experience and learn more about the opportunities we recommend for early testing:

Security Update Validation Program: the early bird tests the worm

Register for the Windows 10 Insider Program for Business

Test Base for Microsoft 365 has reached general availability

App Assure with Microsoft FastTrack

ps://docs.microsoft.com/en-us/windows-insider/business/regi

ps://techcommunity.microsoft.com/t5/test-base-blog/test-base-for-microsoft-365-has-reached-general-availability/ba-p/2893854#:~:text=Test%20Base%20for%20Microsoft%20365%20has%20reached%20general,is%20moving%20from%20public%20preview%20to%20general%20availability

ps://techcommunity.microsoft.com/t5/windows-it-pro-blog/ensuring-a-successful-windows-quality-update-experience/ba-p/3451774

ps://techcommunity.microsoft.com/t5/windows-it-pro-blog/security-update-validation-program-the-early-bird-tests-the-worm/ba-p/256939

ps://www.microsoft.com/en-us/fasttrack/microsoft-365/app-a

N/A
MC387220 (Updated) Meeting Chat Bubbles on Android You might want to notify your users about this change and update your training and documentation as appropriate.

https://www.microsoft.com/microsoft-365/roadmap?filters=&searchterms=89817
You might want to notify your users about this change and update your training and documentation as appropriate.

ps://www.microsoft.com/microsoft-365/roadmap?filters=&searchterms=89817
N/A
MC387226 Communication Compliance: Expanded optical character recognition support (GA) Microsoft Purview Communication Compliance helps organizations detect explicit code of conduct and regulatory compliance violations, such as harassing or threatening language, sharing of adult content, and inappropriate sharing of sensitive information. Built with privacy by design, usernames are pseudonymized by default, role-based access controls are built in, investigators are explicitly opted in by an admin, and audit logs are in place to ensure user-level privacy.

You can access the Communication Compliance solution here:

Microsoft Purview compliance portal for WW and GCC cloud environments

Microsoft Purview compliance portal for GCC-High cloud environments

Microsoft Purview compliance portal for DoD cloud environments

Learn more:

Learn about Communication Compliance

Learn more about optical character recognition

https://compliance.apps.mil/

https://compliance.microsoft.us/

https://docs.microsoft.com/microsoft-365/compliance/communication-compliance?view=o365-worldwide

https://docs.microsoft.com/microsoft-365/compliance/communication-compliance-policies?view=o365-worldwide#optical-character-recognition-ocr

https://purview.microsoft.com/compliance

https://www.microsoft.com/microsoft-365/roadmap?filters=&searchterms=88920

https://www.microsoft.com/microsoft-365/roadmap?filters=&searchterms=93194

Microsoft Purview Communication Compliance helps organizations detect explicit code of conduct and regulatory compliance violations, such as harassing or threatening language, sharing of adult content, and inappropriate sharing of sensitive information. Built with privacy by design, usernames are pseudonymized by default, role-based access controls are built in, investigators are explicitly opted in by an admin, and audit logs are in place to ensure user-level privacy.

You can access the Communication Compliance solution here:

Microsoft Purview compliance portal for WW and GCC cloud environments

Microsoft Purview compliance portal for GCC-High cloud environments

Microsoft Purview compliance portal for DoD cloud environments

Learn more:

Learn about Communication Compliance

Learn more about optical character recognition

ps://compliance.apps.mil/

ps://compliance.microsoft.us/

ps://docs.microsoft.com/microsoft-365/compliance/communication-compliance?view=o365-world

ps://docs.microsoft.com/microsoft-365/compliance/communication-compliance-policies?view=o365-worldwide#optical-character-recogniti

ps://purview.microsoft.com/compl

ps://www.microsoft.com/microsoft-365/roadmap?filters=&searchterms=889

ps://www.microsoft.com/microsoft-365/roadmap?filters=&searchterms=93194

N/A
MC387227 (Updated) Communication Compliance - Gain context around ML model policy matches (preview) Microsoft Purview Communication Compliance helps organizations detect explicit code of conduct and regulatory compliance violations, such as harassing or threatening language, sharing of adult content, and inappropriate sharing of sensitive information. Built with privacy by design, usernames are pseudonymized by default, role-based access controls are built in, investigators are explicitly opted in by an admin, and audit logs are in place to help ensure user-level privacy.

Access the Communication Compliance solution in the Microsoft Purview compliance portal.

Learn more:

Learn about Communication Compliance

https://compliance.microsoft.com/

https://docs.microsoft.com/microsoft-365/compliance/communication-compliance?view=o365-worldwide

https://www.microsoft.com/microsoft-365/roadmap?filters=&searchterms=88917
Microsoft Purview Communication Compliance helps organizations detect explicit code of conduct and regulatory compliance violations, such as harassing or threatening language, sharing of adult content, and inappropriate sharing of sensitive information. Built with privacy by design, usernames are pseudonymized by default, role-based access controls are built in, investigators are explicitly opted in by an admin, and audit logs are in place to help ensure user-level privacy.

Access the Communication Compliance solution in the Microsoft Purview compliance portal.

Learn more:

Learn about Communication Compliance

ps://compliance.microsoft.com/

ps://docs.microsoft.com/microsoft-365/compliance/communication-compliance?view=o365-world

ps://www.microsoft.com/microsoft-365/roadmap?filters=&searchterms=88917
N/A
MC387639 (Updated) Microsoft Purview Information Protection: Maintain protection when creating PDFs (preview) To enable users to label PDFs created in Office, admins can create sensitivity labels and define policies and settings in the Microsoft Purview compliance portal.

To try this functionality in a test tenant and provide early feedback to Microsoft, we invite you to join a limited private preview. Sign up at https://aka.ms/MIP/PreviewRing.

Learn more:

Learn about sensitivity labels

https://aka.ms/MIP/PreviewRing

https://docs.microsoft.com/microsoft-365/compliance/sensitivity-labels?view=o365-worldwide

https://purview.microsoft.com/compliance

https://www.microsoft.com/microsoft-365/roadmap?filters=&searchterms=88516
To enable users to label PDFs created in Office, admins can create sensitivity labels and define policies and settings in the Microsoft Purview compliance portal.

To try this functionality in a test tenant and provide early feedback to Microsoft, we invite you to join a limited private preview. Sign up at https://aka.ms/MIP/PreviewRing.

Learn more:

Learn about sensitivity labels

ps://aka.ms/MIP/PreviewRi

ps://docs.microsoft.com/microsoft-365/compliance/sensitivity-labels?view=o365-world

ps://purview.microsoft.com/compl

ps://www.microsoft.com/microsoft-365/roadmap?filters=&searchterms=88516
N/A
MC387640 (Updated) Dynamic Caller ID in Calls app for Call Queue Agents The resource account used for calling ID purposes must have a Microsoft Teams Phone System Virtual User license and one of the following assigned:

A Calling Plan license and a phone number assigned

An Operator Connect phone number assigned

An online voice routing policy (phone number assignment is optional when using Direct Routing)

Learn More:

Create a Call Queue

https://docs.microsoft.com/microsoftteams/create-a-phone-system-call-queue

https://www.microsoft.com/microsoft-365/roadmap?filters=&searchterms=86992
The resource account used for calling ID purposes must have a Microsoft Teams Phone System Virtual User license and one of the following assigned:

A Calling Plan license and a phone number assigned

An Operator Connect phone number assigned

An online voice routing policy (phone number assignment is optional when using Direct Routing)

Learn More:

Create a Call Queue

ps://docs.microsoft.com/microsoftteams/create-a-phone-system-call-q

ps://www.microsoft.com/microsoft-365/roadmap?filters=&searchterms=8699
N/A
MC387682 New opt-in setting for Microsoft Defender for Identity Ensure your security teams are familiar with Defender for Identity’s features and settings as they are represented in Microsoft 365 Defender. If your security teams need help, please direct them to the updated documentation available here.

https://docs.microsoft.com/defender-for-identity/deploy-defender-identity
Ensure your security teams are familiar with Defender for Identity’s features and settings as they are represented in Microsoft 365 Defender. If your security teams need help, please direct them to the updated documentation available here.

ps://docs.microsoft.com/defender-for-identity/deploy-defender-identity
N/A
MC387684 (Updated) Upcoming feature release: Teams Button long press to Raise Hand during meeting There is no action required from the IT Admin or user to enable this feature. All of your Teams certified peripherals will automatically support this feature once the rollout is complete.

https://www.microsoft.com/microsoft-365/roadmap?filters=&searchterms=90738
There is no action required from the IT Admin or user to enable this feature. All of your Teams certified peripherals will automatically support this feature once the rollout is complete.

ps://www.microsoft.com/microsoft-365/roadmap?filters=&searchterms=90738
N/A
MC387924 May 2022 Windows non-security preview "C" release available for all supported versions of Windows https://support.microsoft.com/help/5014019

https://support.microsoft.com/help/5014023

https://techcommunity.microsoft.com/t5/windows-it-pro-blog/windows-quality-updates-primer/ba-p/2569385
ps://support.microsoft.com/help/5014019

ps://support.microsoft.com/help/5014023

ps://techcommunity.microsoft.com/t5/windows-it-pro-blog/windows-quality-updates-primer/ba-p/2569385
N/A
MC388228 (Updated) Announcing option to automatically turn on Microsoft Purview Information Protection auto-labeling policy To learn more about auto-labeling, see Automatically apply a sensitivity label in Microsoft 365

To learn more about the default auto-labeling policy: Learn about the default labels and policies to protect your data

https://docs.microsoft.com/microsoft-365/compliance/apply-sensitivity-label-automatically?view=o365-worldwide

https://docs.microsoft.com/microsoft-365/compliance/mip-easy-trials?view=o365-worldwide#service-side-auto-labeling

https://www.microsoft.com/microsoft-365/roadmap?filters=&searchterms=93330
To learn more about auto-labeling, see Automatically apply a sensitivity label in Microsoft 365

To learn more about the default auto-labeling policy: Learn about the default labels and policies to protect your data

ps://docs.microsoft.com/microsoft-365/compliance/apply-sensitivity-label-automatically?view=o365-world

ps://docs.microsoft.com/microsoft-365/compliance/mip-easy-trials?view=o365-worldwide#service-side-auto-labeli

ps://www.microsoft.com/microsoft-365/roadmap?filters=&searchterms=9333
N/A
MC388229 Microsoft Defender for Office 365 Preset Security Policies Review your existing Anti-Phishing policies within threat policies and consider creating/updating preset policies with custom users and/or custom domains to protect against impersonation attacks. We recommend updating your necessary training documents accordingly.

Learn More:

Preset Security Policies in EOP and Microsoft Defender for Office 365

Recommended Settings for EOP and Microsoft Defender for Office 365 Security

New-AntiPhishPolicy

Configurable Impersonation Protection and Scope for Preset Security Policies

https://docs.microsoft.com/microsoft-365/security/defender/microsoft-365-defender?view=o365-worldwide

https://docs.microsoft.com/microsoft-365/security/office-365-security/defender-for-office-365?view=o365-worldwide

https://docs.microsoft.com/microsoft-365/security/office-365-security/preset-security-policies?view=o365-worldwide

https://docs.microsoft.com/microsoft-365/security/office-365-security/recommended-settings-for-eop-and-office365?view=o365-worldwide#impersonation-settings-in-anti-phishing-policies-in-microsoft-defender-for-office-365

https://docs.microsoft.com/powershell/module/exchange/New-AntiPhishPolicy?view=exchange-ps

https://techcommunity.microsoft.com/t5/microsoft-defender-for-office/configurable-impersonation-protection-and-scope-for-preset/ba-p/3294459

https://www.microsoft.com/microsoft-365/roadmap?filters=&searchterms=93262
Review your existing Anti-Phishing policies within threat policies and consider creating/updating preset policies with custom users and/or custom domains to protect against impersonation attacks. We recommend updating your necessary training documents accordingly.

Learn More:

Preset Security Policies in EOP and Microsoft Defender for Office 365

Recommended Settings for EOP and Microsoft Defender for Office 365 Security

New-AntiPhishPolicy

Configurable Impersonation Protection and Scope for Preset Security Policies

ps://docs.microsoft.com/microsoft-365/security/defender/microsoft-365-defender?view=o365-world

ps://docs.microsoft.com/microsoft-365/security/office-365-security/defender-for-office-365?view=o365-world

ps://docs.microsoft.com/microsoft-365/security/office-365-security/preset-security-policies?view=o365-world

ps://docs.microsoft.com/microsoft-365/security/office-365-security/recommended-settings-for-eop-and-office365?view=o365-worldwide#impersonation-settings-in-anti-phishing-policies-in-microsoft-defender-for-office-365

ps://docs.microsoft.com/powershell/module/exchange/New-AntiPhishPolicy?view=exchange-p

ps://techcommunity.microsoft.com/t5/microsoft-defender-for-office/configurable-impersonation-protection-and-scope-for-preset/ba-p/3294459

ps://www.microsoft.com/microsoft-365/roadmap?filters=&searchterms=9326
N/A
MC388232 (Updated) Microsoft Purview Information Protection: Configure Display Colors for Sensitivity Labels (preview) For built-in labeling to display label colors in Word, Excel, and PowerPoint applications, the label color must first be configured by the admin. You can opt into this preview experience by configuring your label policy to display specific colors for sensitivity labels.

View sensitivity label settings in the Microsoft Purview compliance portal.

Learn more:

Custom configurations - Azure Information Protection unified labeling client | Microsoft Docs

https://compliance.microsoft.com/

https://docs.microsoft.com/azure/information-protection/rms-client/clientv2-admin-guide-customizations?msclkid=f0fb4cb0c1bf11ec934f859dd1690d6b%22%20%5Cl%20%22specify-a-color-for-the-label

https://www.microsoft.com/microsoft-365/roadmap?filters=&searchterms=88517%2C

https://www.microsoft.com/microsoft-365/roadmap?filters=&searchterms=93217%2C

For built-in labeling to display label colors in Word, Excel, and PowerPoint applications, the label color must first be configured by the admin. You can opt into this preview experience by configuring your label policy to display specific colors for sensitivity labels.

View sensitivity label settings in the Microsoft Purview compliance portal.

Learn more:

Custom configurations - Azure Information Protection unified labeling client | Microsoft Docs

ps://compliance.microsoft.com/

ps://docs.microsoft.com/azure/information-protection/rms-client/clientv2-admin-guide-customizations?msclkid=f0fb4cb0c1bf11ec934f859dd1690d6b%22%20%5Cl%20%22specify-a-color-for-the-label

ps://www.microsoft.com/microsoft-365/roadmap?filters=&searchterms=88517

ps://www.microsoft.com/microsoft-365/roadmap?filters=&searchterms=93217

N/A
MC388541 Microsoft Project trial for Microsoft 365 users To manage self-service trials, review your current self-service configuration and ensure it is set appropriately for the in-app trial experience appropriate for your organization.

Discover more on how to manage self-service licenses acquired by users in your organization by reviewing Manage self-service purchases (Admins) | Microsoft Docs.

https://docs.microsoft.com/microsoft-365/commerce/subscriptions/manage-self-service-purchases-admins?view=o365-worldwide
To manage self-service trials, review your current self-service configuration and ensure it is set appropriately for the in-app trial experience appropriate for your organization.

Discover more on how to manage self-service licenses acquired by users in your organization by reviewing Manage self-service purchases (Admins) | Microsoft Docs.

ps://docs.microsoft.com/microsoft-365/commerce/subscriptions/manage-self-service-purchases-admins?view=o365-world
N/A
MC389614 (Updated) Join Meetings by a Meeting ID and Passcode You may want to notify your users about this new capability to join meetings and update your training and documentation as appropriate. Meeting ID and Passcode can be used on the app and Teams website link to join a meeting. There will continue to be individual separate sections for existing Video conferencing ID and Dial in by Phone, which are independent of Meeting ID.

https://www.microsoft.com/microsoft-365/roadmap?filters=&searchterms=80668
You may want to notify your users about this new capability to join meetings and update your training and documentation as appropriate. Meeting ID and Passcode can be used on the app and Teams website link to join a meeting. There will continue to be individual separate sections for existing Video conferencing ID and Dial in by Phone, which are independent of Meeting ID.

ps://www.microsoft.com/microsoft-365/roadmap?filters=&searchterms=80668
N/A
MC389615 (Updated) Microsoft Feed on the Outlook Mobile Search Page Admins can turn on and off the Microsoft Feed feature through the existing Discover feature in MDM. This means they can deploy app settings to the devices in the tenant. More details and instructions can be found in the documentation here. When turned off, users will see the old section view on the Search page. To prepare for this update, please read the updated Outlook Mobile Support Documentation. You may want to notify your users about this change and update your training and documentation as appropriate.

https://docs.microsoft.com/exchange/clients-and-mobile-in-exchange-online/outlook-for-ios-and-android/outlook-for-ios-and-android-configuration-with-microsoft-intune

https://www.microsoft.com/microsoft-365/roadmap?filters=&searchterms=93317
Admins can turn on and off the Microsoft Feed feature through the existing Discover feature in MDM. This means they can deploy app settings to the devices in the tenant. More details and instructions can be found in the documentation here. When turned off, users will see the old section view on the Search page. To prepare for this update, please read the updated Outlook Mobile Support Documentation. You may want to notify your users about this change and update your training and documentation as appropriate.

ps://docs.microsoft.com/exchange/clients-and-mobile-in-exchange-online/outlook-for-ios-and-android/outlook-for-ios-and-android-configuration-with-microsoft-i

ps://www.microsoft.com/microsoft-365/roadmap?filters=&searchterms=93317
N/A
MC389620 Consistently block delegates or shared mailbox members from accessing protected messages in Outlook If you do not do any cmdlet settings, there will be no impact on your existing delegate or shared mailbox protected message reading experience. But if you choose to block some of the full access delegate or shared mailbox members to read the protected email, you could configure through the cmdlet above.

https://www.microsoft.com/microsoft-365/roadmap?ms.url=m365comroadmap&rtc=1&filters=&searchterms=88888
If you do not do any cmdlet settings, there will be no impact on your existing delegate or shared mailbox protected message reading experience. But if you choose to block some of the full access delegate or shared mailbox members to read the protected email, you could configure through the cmdlet above.

ps://www.microsoft.com/microsoft-365/roadmap?ms.url=m365comroadmap&rtc=1&filters=&searchterms=88888
N/A
MC389915 Preview of Windows 11, version 22H2 now available Follow the blog guidance on how to upgrade to the preview of Windows 11, version 22H2 using any of the standard channels, such as Windows Update, Windows Update for Business, Windows Server Update Services (WSUS), Windows Insider Preview Downloads page, or Azure Marketplace.

Additional information:

For free support for commercial organizations running these preview builds, visit the Services Hub.

For future updates on preview releases and features, follow the Windows Insider Blog.

For free support offerings, see the new blog, Preview of Windows 11, version 22H2 now available.

https://support.microsoft.com/en-us/windows/update-windows-3c5ae7fc-9fb6-9af1-1984-b5e0412c556a#WindowsVersion=Windows_11

https://support.serviceshub.microsoft.com/supportforbusiness/onboarding?origin=/supportforbusiness/create

https://techcommunity.microsoft.com/t5/windows-it-pro-blog/preview-of-windows-11-version-22h2-now-available/ba-p/3478084

Follow the blog guidance on how to upgrade to the preview of Windows 11, version 22H2 using any of the standard channels, such as Windows Update, Windows Update for Business, Windows Server Update Services (WSUS), Windows Insider Preview Downloads page, or Azure Marketplace.

Additional information:

For free support for commercial organizations running these preview builds, visit the Services Hub.

For future updates on preview releases and features, follow the Windows Insider Blog.

For free support offerings, see the new blog, Preview of Windows 11, version 22H2 now available.

ps://support.microsoft.com/en-us/windows/update-windows-3c5ae7fc-9fb6-9af1-1984-b5e0412c556a#WindowsVersion=Windows_

ps://support.serviceshub.microsoft.com/supportforbusiness/onboarding?origin=/supportforbusiness/

ps://techcommunity.microsoft.com/t5/windows-it-pro-blog/preview-of-windows-11-version-22h2-now-available/ba-p/3478084

N/A
MC390004 SharePoint: Updates to Channel Site to Display Site Permissions You may want to notify your users about this change and update your training and documentation as appropriate.

Learn More:

Overview of Teams and SharePoint Integration

https://docs.microsoft.com/sharepoint/teams-connected-sites

https://www.microsoft.com/microsoft-365/roadmap?filters=&searchterms=93240
You may want to notify your users about this change and update your training and documentation as appropriate.

Learn More:

Overview of Teams and SharePoint Integration

ps://docs.microsoft.com/sharepoint/teams-connected-si

ps://www.microsoft.com/microsoft-365/roadmap?filters=&searchterms=9324
N/A
MC390405 We're improving search usage reports with Microsoft Search Review the Microsoft Search documentation for usage reports at Microsoft Search Usage Reports.

https://docs.microsoft.com/microsoftsearch/usage-reports
Review the Microsoft Search documentation for usage reports at Microsoft Search Usage Reports.

ps://docs.microsoft.com/microsoftsearch/usage-repo
N/A
MC390406 Inline Suggestions Available While Composing an Email or Meeting Invitation in Outlook on the Web Review and assess the impact for your organization. You might want to notify your users about this new capability and update your training and documentation as appropriate.

Learn More:

Configure Personal Insights

Deploy Personal Insights

Inline Suggestions in Outlook

https://docs.microsoft.com/viva/insights/personal/overview/plans-environments

https://docs.microsoft.com/viva/insights/personal/Setup/configure

https://docs.microsoft.com/viva/insights/personal/setup/deployment-guide#roll-out-viva-insights

https://docs.microsoft.com/viva/insights/personal/use/mya-notifications#opt-out-of-inline-suggestions

https://www.microsoft.com/microsoft-365/roadmap?filters=&searchterms=93350

Review and assess the impact for your organization. You might want to notify your users about this new capability and update your training and documentation as appropriate.

Learn More:

Configure Personal Insights

Deploy Personal Insights

Inline Suggestions in Outlook

ps://docs.microsoft.com/viva/insights/personal/overview/plans-environm

ps://docs.microsoft.com/viva/insights/personal/Setup/confi

ps://docs.microsoft.com/viva/insights/personal/setup/deployment-guide#roll-out-viva-insi

ps://docs.microsoft.com/viva/insights/personal/use/mya-notifications#opt-out-of-inline-suggesti

ps://www.microsoft.com/microsoft-365/roadmap?filters=&searchterms=9335

N/A
MC390407 (Updated) New Location for Key Functions and Direct Access to Other Microsoft 365 Apps in Outlook You may want to notify your org of this update as we encourage users to try the experience soon through the Coming Soon pane, before it becomes the default experience.

https://www.microsoft.com/microsoft-365/roadmap?filters=&searchterms=88848
You may want to notify your org of this update as we encourage users to try the experience soon through the Coming Soon pane, before it becomes the default experience.

ps://www.microsoft.com/microsoft-365/roadmap?filters=&searchterms=88848
N/A
MC390413 Microsoft Teams Connect shared channels general availability You may consider updating your user training; notifying your help desk; and updating your user level policy around shared channel creation.

You can manage shared channels and external collaboration for your organization via the policy managed through the Teams Admin Center or via PowerShell (New-CsTeamsChannelsPolicy).

Who can create shared channels (-AllowSharedChannelCreation)

Who can invite external users to a shared channel (-AllowChannelSharingToExternalUser)

Who can participate in an external shared channel (-AllowUserToParticipateInExternalSharedChannel)

Note: Public preview customers - Once GA rollout is complete users will no longer need to opt-in to public preview to create shared channels. There will be no impact on existing shared channels.

Admin: Shared channels in Microsoft Teams | B2B direct connect overview

Users: What is a shared channel in Teams?

https://docs.microsoft.com/en-us/azure/active-directory/external-identities/b2b-direct-connect-overview

https://docs.microsoft.com/microsoftteams/shared-channels

https://support.microsoft.com/office/what-is-a-shared-channel-in-teams-e70a8c22-fee4-4d6e-986f-9e0781d7d11d

https://www.microsoft.com/microsoft-365/roadmap?ms.url=m365comroadmap&rtc=1&filters=&searchterms=94820

You may consider updating your user training; notifying your help desk; and updating your user level policy around shared channel creation.

You can manage shared channels and external collaboration for your organization via the policy managed through the Teams Admin Center or via PowerShell (New-CsTeamsChannelsPolicy).

Who can create shared channels (-AllowSharedChannelCreation)

Who can invite external users to a shared channel (-AllowChannelSharingToExternalUser)

Who can participate in an external shared channel (-AllowUserToParticipateInExternalSharedChannel)

Note: Public preview customers - Once GA rollout is complete users will no longer need to opt-in to public preview to create shared channels. There will be no impact on existing shared channels.

Admin: Shared channels in Microsoft Teams | B2B direct connect overview

Users: What is a shared channel in Teams?

ps://docs.microsoft.com/en-us/azure/active-directory/external-identities/b2b-direct-connect-overvi

ps://docs.microsoft.com/microsoftteams/shared-channel

ps://support.microsoft.com/office/what-is-a-shared-channel-in-teams-e70a8c22-fee4-4d6e-986f-9e0781d7d

ps://www.microsoft.com/microsoft-365/roadmap?ms.url=m365comroadmap&rtc=1&filters=&searchterms=948

N/A
MC390416 (Update) Teams Chat with self You may consider updating your training and documentation as appropriate.

https://www.microsoft.com/microsoft-365/roadmap?filters=&searchterms=88066
You may consider updating your training and documentation as appropriate.

ps://www.microsoft.com/microsoft-365/roadmap?filters=&searchterms=88066
N/A
MC390417 Plan for Change: Intune moving to support iOS 14/iPadOS 14 and higher later this year Check your Intune reporting to see what devices or users may be affected. For devices with mobile device management (MDM) go to Devices > All devices and filter by OS. For devices with app protection policies go to Apps > Monitor > App protection status > App Protection report: iOS, Android.

To manage the supported OS version in your organization, you can use Microsoft Endpoint Manager controls for both MDM and APP. For more information, please review: Manage operating system versions with Intune - Microsoft Intune | Microsoft Doc.

https://aka.ms/ADE_userless_support

https://docs.microsoft.com/mem/intune/fundamentals/manage-os-versions?WT.mc_id=Portal-Microsoft_Intune_DeviceSettings

https://docs.microsoft.com/mem/intune/fundamentals/supported-devices-browsers?WT.mc_id=Portal-Microsoft_Intune_DeviceSettings

https://support.apple.com/guide/ipad/supported-models-ipad213a25b2/14.0/ipados/14.0

https://support.apple.com/guide/iphone/supported-models-iphe3fa5df43/14.0/ios/14.0
Check your Intune reporting to see what devices or users may be affected. For devices with mobile device management (MDM) go to Devices > All devices and filter by OS. For devices with app protection policies go to Apps > Monitor > App protection status > App Protection report: iOS, Android.

To manage the supported OS version in your organization, you can use Microsoft Endpoint Manager controls for both MDM and APP. For more information, please review: Manage operating system versions with Intune - Microsoft Intune | Microsoft Doc.

ps://aka.ms/ADE_userless_

ps://docs.microsoft.com/mem/intune/fundamentals/manage-os-versions?WT.mc_id=Portal-Microsoft_Intune_DeviceSetti

ps://docs.microsoft.com/mem/intune/fundamentals/supported-devices-browsers?WT.mc_id=Portal-Microsoft_Intune_DeviceSetti

ps://support.apple.com/guide/ipad/supported-models-ipad213a25b2/14.0/ipados/14

ps://support.apple.com/guide/iphone/supported-models-iphe3fa5df43/14.0/ios/14
N/A
MC390752 SharePoint multilingual feature can be applied to team sites There will not be any changes to your existing instances of multilingual on SharePoint communication sites or how the multilingual feature functions overall. To prepare for this change, let site owners know that they will be able to create team sites in more than one language. Learn more about how to create multilingual SharePoint sites and editing site content.

https://www.microsoft.com/microsoft-365/roadmap?filters=&searchterms=93332
There will not be any changes to your existing instances of multilingual on SharePoint communication sites or how the multilingual feature functions overall. To prepare for this change, let site owners know that they will be able to create team sites in more than one language. Learn more about how to create multilingual SharePoint sites and editing site content.

ps://www.microsoft.com/microsoft-365/roadmap?filters=&searchterms=9333
N/A
MC390953 Preview app and driver compatibility insights in Endpoint Manager Use of these new reports requires specific Windows licensing and require that your devices be running a supported version of Windows 10 or later with the latest cumulative update. Review the blog post for details and additional guidance to ensure that:

Devices are Azure AD joined or hybrid Azure AD joined

Devices are managed by Intune (including co-managed) or a supported version of Configuration Manager with tenant attach enabled

Windows diagnostic data is enabled for your organization at the ‘Required’ level or higher and in the processor configuration

Additional information:

For additional information, please see:

Preview app and driver compatibility insights in Endpoint Manager (Windows IT Pro Blog)

Use Windows compatibility reports for Windows 10 and Windows 11 updates in Intune (Microsoft Docs)

https://docs.microsoft.com/en-us/mem/intune/protect/windows-update-compatibility-reports

https://techcommunity.microsoft.com/t5/windows-it-pro-blog/preview-app-and-driver-compatibility-insights-in-endpoint/ba-p/3482136

Use of these new reports requires specific Windows licensing and require that your devices be running a supported version of Windows 10 or later with the latest cumulative update. Review the blog post for details and additional guidance to ensure that:

Devices are Azure AD joined or hybrid Azure AD joined

Devices are managed by Intune (including co-managed) or a supported version of Configuration Manager with tenant attach enabled

Windows diagnostic data is enabled for your organization at the ‘Required’ level or higher and in the processor configuration

Additional information:

For additional information, please see:

Preview app and driver compatibility insights in Endpoint Manager (Windows IT Pro Blog)

Use Windows compatibility reports for Windows 10 and Windows 11 updates in Intune (Microsoft Docs)

ps://docs.microsoft.com/en-us/mem/intune/protect/windows-update-compatibility-repor

ps://techcommunity.microsoft.com/t5/windows-it-pro-blog/preview-app-and-driver-compatibility-insights-in-endpoint/ba-p/3482136

N/A
MC391072 Microsoft Purview Audit: Preview of New Search functionality New Search will be enabled for all tenants automatically during Public Preview. To use New Search, click on the New Search (preview) tab in the search tool on the Audit homepage. To utilize the existing Search functionality (Classic Search), click on the Search tab instead.

You can access the Audit solution in the Microsoft Purview compliance portal.

Learn more: Auditing solutions in Microsoft Purview

https://docs.microsoft.com/microsoft-365/compliance/auditing-solutions-overview?view=o365-worldwide

https://purview.microsoft.com/compliance

https://www.microsoft.com/microsoft-365/roadmap?rtc=1%26filters=&searchterms=93236
New Search will be enabled for all tenants automatically during Public Preview. To use New Search, click on the New Search (preview) tab in the search tool on the Audit homepage. To utilize the existing Search functionality (Classic Search), click on the Search tab instead.

You can access the Audit solution in the Microsoft Purview compliance portal.

Learn more: Auditing solutions in Microsoft Purview

ps://docs.microsoft.com/microsoft-365/compliance/auditing-solutions-overview?view=o365-world

ps://purview.microsoft.com/compl

ps://www.microsoft.com/microsoft-365/roadmap?rtc=1%26filters=&searchterms=93236
N/A
MC391866 Reminder: Significant changes coming to the Windows Diagnostic data processor configuration Ensure that you meet the prerequisites for Windows diagnostic data processor configuration, join your devices to Azure AD, and keep your devices secure and up to date with quality updates. If you're outside of the EU or EFTA, the organization must sign up for any of the following enterprise services:

Update Compliance

Windows Update for Business deployment service

Microsoft Managed Desktop

Endpoint analytics (in Microsoft Endpoint Manager)

(Additional licensing requirements may apply to use these services.)

If you don’t sign up for any of these enterprise services, Microsoft will act as the controller for the diagnostic data.

Note: In all cases, enrollment in the Windows diagnostic data processor configuration requires a device to be joined to an Azure AD tenant. If a device is not properly enrolled, Microsoft will be the controller of diagnostic data processed in connection with Windows in accordance with the Microsoft Privacy Statement (aka.ms/privacy), and the Data Protection Addendum (aka.ms/DPA) terms will not apply.

Additional information:

For details on these changes and how to enable the Windows diagnostic data processor configuration option, see Significant changes coming to the Windows diagnostic data processor configuration documentation topic.

https://blogs.microsoft.com/eupolicy/2021/05/06/eu-data-boundary/

https://docs.microsoft.com/en-us/windows/privacy/changes-to-windows-diagnostic-data-collection#significant-changes-coming-to-the-windows-diagnostic-data-processor-configuration

https://docs.microsoft.com/en-us/windows/privacy/configure-windows-diagnostic-data-in-your-organization

https://docs.microsoft.com/en-us/windows-insider/flighting#dev-channel

https://docs.microsoft.com/windows-insider/flighting#dev-channel

https://nam06.safelinks.protection.outlook.com/?url=https%3A%2F%2Faka.ms%2FDPA&data=05%7C01%7CAlbert.Cabello%40microsoft.com%7C86bc5a1a771b4a74fc8508da4b0067e2%7C72f988bf86f141af91ab2d7cd011db47%7C1%7C0%7C637904762393315046%7CUnknown%7CTWFpbGZsb3d8eyJWIjoiMC4wLjAwMDAiLCJQIjoiV2luMzIiLCJBTiI6Ik1haWwiLCJXVCI6Mn0%3D%7C3000%7C%7C%7C&sdata=viUXAaNDrNdTUmtzLYTPMwZdrohro%2BIkaDhRB31Yhlk%3D&reserved=0%22%20\t%20%22_blank

https://privacy.microsoft.com/en-us/privacystatement

https://privacy.microsoft.com/privacystatement

https://review.docs.microsoft.com/en-us/managed-desktop/intro/

https://review.docs.microsoft.com/en-us/mem/analytics/overview

https://review.docs.microsoft.com/en-us/windows/deployment/update/deployment-service-overview

https://review.docs.microsoft.com/en-us/windows/deployment/update/update-compliance-monitor

https://www.microsoft.com/licensing/docs/view/Microsoft-Products-and-Services-Data-Protection-Addendum-DPA

https://www.microsoft.com/licensing/terms/product/Glossary/all

Ensure that you meet the prerequisites for Windows diagnostic data processor configuration, join your devices to Azure AD, and keep your devices secure and up to date with quality updates. If you're outside of the EU or EFTA, the organization must sign up for any of the following enterprise services:

Update Compliance

Windows Update for Business deployment service

Microsoft Managed Desktop

Endpoint analytics (in Microsoft Endpoint Manager)

(Additional licensing requirements may apply to use these services.)

If you don’t sign up for any of these enterprise services, Microsoft will act as the controller for the diagnostic data.

Note: In all cases, enrollment in the Windows diagnostic data processor configuration requires a device to be joined to an Azure AD tenant. If a device is not properly enrolled, Microsoft will be the controller of diagnostic data processed in connection with Windows in accordance with the Microsoft Privacy Statement (aka.ms/privacy), and the Data Protection Addendum (aka.ms/DPA) terms will not apply.

Additional information:

For details on these changes and how to enable the Windows diagnostic data processor configuration option, see Significant changes coming to the Windows diagnostic data processor configuration documentation topic.

ps://blogs.microsoft.com/eupolicy/2021/05/06/eu-data-boundary/

ps://docs.microsoft.com/en-us/windows/privacy/changes-to-windows-diagnostic-data-collection#significant-changes-coming-to-the-windows-diagnostic-data-processor-confi

ps://docs.microsoft.com/en-us/windows/privacy/configure-windows-diagnostic-data-in-your-organiz

ps://docs.microsoft.com/en-us/windows-insider/flighting#dev-channel

ps://docs.microsoft.com/windows-insider/flighting#dev-channel

ps://nam06.safelinks.protection.outlook.com/?url=https%3A%2F%2Faka.ms%2FDPA&data=05%7C01%7CAlbert.Cabello%40microsoft.com%7C86bc5a1a771b4a74fc8508da4b0067e2%7C72f988bf86f141af91ab2d7cd011db47%7C1%7C0%7C637904762393315046%7CUnknown%7CTWFpbGZsb3d8eyJWIjoiMC4wLjAwMDAiLCJQIjoiV2luMzIiLCJBTiI6Ik1haWwiLCJXVCI6Mn0%3D%7C3000%7C%7C%7C&sdata=viUXAaNDrNdTUmtzLYTPMwZdrohro%2BIkaDhRB31Yhlk%3D&reserved=0%22%20\t%20%22_blank

ps://privacy.microsoft.com/en-us/privacy

ps://privacy.microsoft.com/privacy

ps://review.docs.microsoft.com/en-us/managed-desktop/intro/

ps://review.docs.microsoft.com/en-us/mem/analytics/overvi

ps://review.docs.microsoft.com/en-us/windows/deployment/update/deployment-service-overvi

ps://review.docs.microsoft.com/en-us/windows/deployment/update/update-complianc

ps://www.microsoft.com/licensing/docs/view/Microsoft-Products-and-Services-Data-Protection-Addendum-DPA

ps://www.microsoft.com/licensing/terms/product/Glossary/all

N/A
MC391948 Apply default sensitivity label to unlabeled files uploaded to SharePoint document library (preview) Library owners can turn this feature on or off using the “Edit library settings” option within the SharePoint document library.

Learn more: Use sensitivity labels with Microsoft Teams, Microsoft 365 Groups, and SharePoint sites

https://docs.microsoft.com/microsoft-365/compliance/sensitivity-labels-teams-groups-sites?view=o365-worldwide

https://www.microsoft.com/en-us/microsoft-365/roadmap?filters=&searchterms=85621
Library owners can turn this feature on or off using the “Edit library settings” option within the SharePoint document library.

Learn more: Use sensitivity labels with Microsoft Teams, Microsoft 365 Groups, and SharePoint sites

ps://docs.microsoft.com/microsoft-365/compliance/sensitivity-labels-teams-groups-sites?view=o365-world

ps://www.microsoft.com/en-us/microsoft-365/roadmap?filters=&searchterms=8562
N/A
MC391950 (Updated) Viva Topics in Teams There is nothing you need to do to prepare for this change. The topics being displayed will be the same topics that are shown in Outlook Web and SharePoint.

https://www.microsoft.com/microsoft-365/roadmap?filters=&searchterms=72189
There is nothing you need to do to prepare for this change. The topics being displayed will be the same topics that are shown in Outlook Web and SharePoint.

ps://www.microsoft.com/microsoft-365/roadmap?filters=&searchterms=72189
N/A
MC391951 (Updated) Bing Image Search for Microsoft Whiteboard No change is necessary, unless you wish to disable the Bing Image Search functionality (and other optional connected experiences) in Whiteboard. To do this, you can use the Office cloud policy service in the Microsoft 365 Apps admin center.

Sign in to https://config.office.com/ with your Microsoft 365 admin credentials

Select Customization from the left pane.

Select Policy Management

Create a new policy configuration or edit an existing one.

In Choose the scope, choose the security group for which you want to apply the policy.

In Configure Settings, choose Allow the use of additional optional connected experiences in Office.

In configuration setting, choose either – enabled, disabled, or not configured. The implication of each of these options is mentioned below:

Enabled: Optional connected experiences are available to users

Disabled: Optional connected experiences aren't available to users

Not configured: Optional connected experiences are available to users

Save the policy configuration.

Reassign priority for any security group if required. (If two or more policy configurations are applicable to the same set of users, the one with the higher priority is applied)

In case you create a new policy configuration or change the configuration for an existing policy, there will be a delay in the change being reflected as mentioned below:

-> If there were existing policy configurations prior to the change, then it will take 90 mins for the change to be reflected

-> If there were no policy configurations prior to the change, then it will take 24 hours for the change to be reflected

https://www.microsoft.com/microsoft-365/roadmap?filters=&searchterms=93341
No change is necessary, unless you wish to disable the Bing Image Search functionality (and other optional connected experiences) in Whiteboard. To do this, you can use the Office cloud policy service in the Microsoft 365 Apps admin center.

Sign in to https://config.office.com/ with your Microsoft 365 admin credentials

Select Customization from the left pane.

Select Policy Management

Create a new policy configuration or edit an existing one.

In Choose the scope, choose the security group for which you want to apply the policy.

In Configure Settings, choose Allow the use of additional optional connected experiences in Office.

In configuration setting, choose either – enabled, disabled, or not configured. The implication of each of these options is mentioned below:

Enabled: Optional connected experiences are available to users

Disabled: Optional connected experiences aren't available to users

Not configured: Optional connected experiences are available to users

Save the policy configuration.

Reassign priority for any security group if required. (If two or more policy configurations are applicable to the same set of users, the one with the higher priority is applied)

In case you create a new policy configuration or change the configuration for an existing policy, there will be a delay in the change being reflected as mentioned below:

-> If there were existing policy configurations prior to the change, then it will take 90 mins for the change to be reflected

-> If there were no policy configurations prior to the change, then it will take 24 hours for the change to be reflected

ps://www.microsoft.com/microsoft-365/roadmap?filters=&searchterms=9334
N/A
MC391952 Microsoft 365 Assessment tool for SharePoint 2013 workflows available now! Review the documentation and update internal documentation as appropriate.

Modernize SharePoint 2013 workflows

Guidance: Migrate from classic workflows to Power Automate flows in SharePoint

Microsoft 365 Assessment tool

Microsoft 365 Assessment tool blog post

https://aka.ms/modernize-workflows

https://aka.ms/sp-workflows-guidance
Review the documentation and update internal documentation as appropriate.

Modernize SharePoint 2013 workflows

Guidance: Migrate from classic workflows to Power Automate flows in SharePoint

Microsoft 365 Assessment tool

Microsoft 365 Assessment tool blog post

ps://aka.ms/modernize-workfl

ps://aka.ms/sp-workfl
N/A
MC392196 Take action: June 2022 security update available for all supported versions of Windows https://support.microsoft.com/help/5014692

https://support.microsoft.com/help/5014697

https://support.microsoft.com/help/5014699

https://support.microsoft.com/help/5014702

https://support.microsoft.com/help/5014710

https://support.microsoft.com/help/5014738

https://support.microsoft.com/help/5014741

https://support.microsoft.com/help/5014742

https://support.microsoft.com/help/5014743

https://support.microsoft.com/help/5014746

https://support.microsoft.com/help/5014748

https://support.microsoft.com/help/5014752

https://support.microsoft.com/windows/update-windows-3c5ae7fc-9fb6-9af1-1984-b5e0412c556a#WindowsVersion=Windows_11

https://techcommunity.microsoft.com/t5/windows-it-pro-blog/windows-quality-updates-primer/ba-p/2569385

https://www.microsoft.com/en-us/videoplayer/embed/RE4ZibU
ps://support.microsoft.com/help/501469

ps://support.microsoft.com/help/5014697

ps://support.microsoft.com/help/5014699

ps://support.microsoft.com/help/50147

ps://support.microsoft.com/help/50147

ps://support.microsoft.com/help/5014738

ps://support.microsoft.com/help/501474

ps://support.microsoft.com/help/501474

ps://support.microsoft.com/help/5014743

ps://support.microsoft.com/help/5014746

ps://support.microsoft.com/help/5014748

ps://support.microsoft.com/help/501475

ps://support.microsoft.com/windows/update-windows-3c5ae7fc-9fb6-9af1-1984-b5e0412c556a#WindowsVersion=Windows_

ps://techcommunity.microsoft.com/t5/windows-it-pro-blog/windows-quality-updates-primer/ba-p/2569385

ps://www.microsoft.com/en-us/videoplayer/embed/RE4ZibU
N/A
MC392289 Reminder Installation of .Net 4.8 and WebView2 required for Teams Meeting Add-In in Outlook Review the following resources and ensure .Net 4.8 and WebView2 are installed to run the Teams Meeting Add-in in Outlook:

Use the Microsoft Teams Meeting add-in in Outlook - Microsoft Teams | Microsoft Docs

Troubleshoot the Teams Meeting add-in in Outlook for Windows (microsoft.com)

https://docs.microsoft.com/microsoftteams/teams-add-in-for-outlook

https://support.microsoft.com/office/troubleshoot-the-teams-meeting-add-in-in-outlook-for-windows-d3f8819e-7993-43c7-a124-02b336273779
Review the following resources and ensure .Net 4.8 and WebView2 are installed to run the Teams Meeting Add-in in Outlook:

Use the Microsoft Teams Meeting add-in in Outlook - Microsoft Teams | Microsoft Docs

Troubleshoot the Teams Meeting add-in in Outlook for Windows (microsoft.com)

ps://docs.microsoft.com/microsoftteams/teams-add-in-for-outlook

ps://support.microsoft.com/office/troubleshoot-the-teams-meeting-add-in-in-outlook-for-windows-d3f8819e-7993-43c7-a124-02b336273779
N/A
MC392292 E-signature Approval Requests Creation on Mobile There is nothing you need to do to prepare. You may want to update your documentation as needed.

Learn More:

Teams Approvals Application Availability

Create an eSign Approval Request

https://docs.microsoft.com/microsoftteams/approval-admin#enable-or-disable-e-signature-providers

https://support.microsoft.com/office/create-an-e-sign-approval-request-e94cd617-b48e-433c-94c3-7f944a3a8579

https://www.microsoft.com/microsoft-365/roadmap?filters=&searchterms=92940
There is nothing you need to do to prepare. You may want to update your documentation as needed.

Learn More:

Teams Approvals Application Availability

Create an eSign Approval Request

ps://docs.microsoft.com/microsoftteams/approval-admin#enable-or-disable-e-signature-provider

ps://support.microsoft.com/office/create-an-e-sign-approval-request-e94cd617-b48e-433c-94c3-7f944a3a8579

ps://www.microsoft.com/microsoft-365/roadmap?filters=&searchterms=9294
N/A
MC392295 Disable chat write access for anonymous or unauthenticated users There are two ways IT admins can disable chat write access for non-federated users and unauthenticated users who join Teams meetings through a link:

PowerShell: Admins can run the syntax [-MeetingChatEnabledType ] with current supported values Enabled, Disabled, or EnabledExceptAnonymous.

Teams Admin Portal: Admins can select the option, "Turn it on for everyone but anonymous users" in the "Chat in meetings" dropdown and apply this meeting policy to a subset or all tenant users.

Note: the scope of EnabledExceptAnonymous or "Turn it on for everyone but anonymous users" is limited to disabled write access. Once this meeting chat policy is applied to user/s, an organizer cannot override this policy through meeting options.

https://www.microsoft.com/microsoft-365/roadmap?rtc=1%26filters=&searchterms=91142

There are two ways IT admins can disable chat write access for non-federated users and unauthenticated users who join Teams meetings through a link:

PowerShell: Admins can run the syntax [-MeetingChatEnabledType ] with current supported values Enabled, Disabled, or EnabledExceptAnonymous.

Teams Admin Portal: Admins can select the option, "Turn it on for everyone but anonymous users" in the "Chat in meetings" dropdown and apply this meeting policy to a subset or all tenant users.

Note: the scope of EnabledExceptAnonymous or "Turn it on for everyone but anonymous users" is limited to disabled write access. Once this meeting chat policy is applied to user/s, an organizer cannot override this policy through meeting options.

ps://www.microsoft.com/microsoft-365/roadmap?rtc=1%26filters=&searchterms=9114

N/A
MC392299 Reminder: Windows Distributed Component Object Model (DCOM) hardening changes as of June 14, 2022 During the timeline phases in which hardening changes can be enabled or disabled (prior to March 14, 2023), users can use the following registry key:

Path: HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Ole\AppCompat

Value Name: "RequireIntegrityActivationAuthenticationLevel"

Type: dword

Value Data: default = 0x00000000 means disabled. 0x00000001 means enabled. If this value is not defined, it will default to disabled. You must enter Value Data in hexadecimal format.

Devices must be restarted after setting this registry key, for it to take effect.

Note: Enabling the registry key above will make DCOM servers enforce an Authentication-Level of RPC_C_AUTHN_LEVEL_PKT_INTEGRITY or higher for activation.

To help identify the applications that might have compatibility issues after we enable DCOM security hardening changes, we added new DCOM error events in the System log:

Event 10036 is logged on the DCOM server and contains the IP address of the DCOM client.

Events 10037 and 10038 are logged on the DCOM client, not the DCOM Server machine.

The system will log these events if it detects that a DCOM client application is trying to activate a DCOM server using an authentication level that is less than RPC_C_AUTHN_LEVEL_PKT_INTEGRITY. The client device can be traced from the server-side event log and the client-side event logs can be used to find the application.

If issues are encountered during testing, contact the vendor for the affected client or server software for an update or workaround, and see the DCOM errors supported by all Windows platforms.

Additional Information:

It is important to ensure proper testing for this change. Please review the below documentation.

\[MS-DCOM\]: Distributed Component Object Model (DCOM) Remote Protocol | Microsoft Docs

KB5004442: Manage changes for Windows DCOM Server Security Feature Bypass (CVE-2021-26414)

CVE-2021-26414: Windows DCOM Server Security Feature Bypass

https://docs.microsoft.com/en-us/windows/win32/rpc/authentication-level-constants

https://docs.microsoft.com/openspecs/windows_protocols/ms-dcom/4a893f3d-bd29-48cd-9f43-d9777a4415b0

https://docs.microsoft.com/windows/win32/rpc/authentication-level-constants

https://msrc.microsoft.com/update-guide/vulnerability/CVE-2021-26414

https://support.microsoft.com/en-us/topic/kb5004442-manage-changes-for-windows-dcom-server-security-feature-bypass-cve-2021-26414-f1400b52-c141-43d2-941e-37ed901c769c

https://support.microsoft.com/topic/kb5004442-manage-changes-for-windows-dcom-server-security-feature-bypass-cve-2021-26414-f1400b52-c141-43d2-941e-37ed901c769c

During the timeline phases in which hardening changes can be enabled or disabled (prior to March 14, 2023), users can use the following registry key:

Path: HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Ole\AppCompat

Value Name: "RequireIntegrityActivationAuthenticationLevel"

Type: dword

Value Data: default = 0x00000000 means disabled. 0x00000001 means enabled. If this value is not defined, it will default to disabled. You must enter Value Data in hexadecimal format.

Devices must be restarted after setting this registry key, for it to take effect.

Note: Enabling the registry key above will make DCOM servers enforce an Authentication-Level of RPC_C_AUTHN_LEVEL_PKT_INTEGRITY or higher for activation.

To help identify the applications that might have compatibility issues after we enable DCOM security hardening changes, we added new DCOM error events in the System log:

Event 10036 is logged on the DCOM server and contains the IP address of the DCOM client.

Events 10037 and 10038 are logged on the DCOM client, not the DCOM Server machine.

The system will log these events if it detects that a DCOM client application is trying to activate a DCOM server using an authentication level that is less than RPC_C_AUTHN_LEVEL_PKT_INTEGRITY. The client device can be traced from the server-side event log and the client-side event logs can be used to find the application.

If issues are encountered during testing, contact the vendor for the affected client or server software for an update or workaround, and see the DCOM errors supported by all Windows platforms.

Additional Information:

It is important to ensure proper testing for this change. Please review the below documentation.

\[MS-DCOM\]: Distributed Component Object Model (DCOM) Remote Protocol | Microsoft Docs

KB5004442: Manage changes for Windows DCOM Server Security Feature Bypass (CVE-2021-26414)

CVE-2021-26414: Windows DCOM Server Security Feature Bypass

ps://docs.microsoft.com/en-us/windows/win32/rpc/authentication-level-consta

ps://docs.microsoft.com/openspecs/windows_protocols/ms-dcom/4a893f3d-bd29-48cd-9f43-d9777a4415b

ps://docs.microsoft.com/windows/win32/rpc/authentication-level-consta

ps://msrc.microsoft.com/update-guide/vulnerability/CVE-2021-26414

ps://support.microsoft.com/en-us/topic/kb5004442-manage-changes-for-windows-dcom-server-security-feature-bypass-cve-2021-26414-f1400b52-c141-43d2-941e-37ed901c769

ps://support.microsoft.com/topic/kb5004442-manage-changes-for-windows-dcom-server-security-feature-bypass-cve-2021-26414-f1400b52-c141-43d2-941e-37ed901c769

N/A
MC392477 IE11 desktop application has retired and is out of support as of June 15, 2022 (non-LTSC, non-Server) To continue using a supported browser, transition to Microsoft Edge.

To continue using legacy IE-based sites and apps in Windows 10 and Windows 11, you will need to configure those sites and apps to open in Microsoft Edge using Internet Explorer mode.

You can use the IE driver for automatic, end-to-end site testing in IE mode.

Use policy to disable the IE11 application and ensure you’re prepared for retirement.

To take action, we recommend setting up Microsoft Edge in your organization. If your organization needs legacy browser support, you should set up IE mode in Microsoft Edge as soon as possible because this is a multi-step process.

Use the Configure IE mode guided set up experience to set up IE mode in Microsoft Edge for your environment.

Create an initial enterprise site list with sites you know are IE-dependent.

Run Site Discovery in parallel to identify any unknown IE dependencies and add them to your enterprise list as you identify them.

Get helpful setup tips by watching our IE mode set-up webinar and reading our troubleshooting guide.

Use IE Driver to automate end-to-end IE mode testing.

Follow the steps here to manage your organization’s transition from IE11 to Microsoft Edge with IE mode.

Additional information:

For cost-free help with web app and site compatibility, especially if you have legacy site concerns after configuring IE mode, learn more about the App Assure program.

Read our June 15th retirement blog here.

Read our FAQ to help answer your questions and use the troubleshooting guide during setup.

Visit the Internet Explorer mode website.

Watch videos from our IE retirement YouTube playlist to learn more.

Learn more about hosting your IE mode site list in an authenticated cloud endpoint in the M365 admin center.

Read our announcement blog and browse our blog series for more information.

We always value feedback and questions from our customers. Feel free to submit either feedback or questions via Message Center.

https://aka.ms/configureiemode

https://aka.ms/IEmodeblog

https://aka.ms/IEModeFAQ

https://aka.ms/IEmodewebinar

https://aka.ms/IEModeWebsite

https://aka.ms/ietoedge

https://blogs.windows.com/windowsexperience/?p=177285

https://docs.microsoft.com/deployedge/edge-ie-disable-ie11

https://docs.microsoft.com/deployedge/edge-ie-mode-faq

https://docs.microsoft.com/en-us/deployedge/deploy-edge-plan-deployment

https://docs.microsoft.com/microsoft-edge/webdriver-chromium/ie-mode?tabs=c-sharp

https://techcommunity.microsoft.com/t5/windows-it-pro-blog/don-t-wait-for-june-15th-set-your-own-ie-retirement-date/ba-p/3298143

https://techcommunity.microsoft.com/t5/windows-it-pro-blog/host-ie-mode-site-lists-in-the-cloud/ba-p/3035479#M3571

https://techcommunity.microsoft.com/t5/windows-it-pro-blog/internet-explorer-11-desktop-app-retirement-faq/ba-p/2366549

https://www.microsoft.com/fasttrack/microsoft-365/app-assure

https://youtube.com/playlist?list=PL4z1-7pjJU6wgq5AIvd4_jJssxtbyJFXn

To continue using a supported browser, transition to Microsoft Edge.

To continue using legacy IE-based sites and apps in Windows 10 and Windows 11, you will need to configure those sites and apps to open in Microsoft Edge using Internet Explorer mode.

You can use the IE driver for automatic, end-to-end site testing in IE mode.

Use policy to disable the IE11 application and ensure you’re prepared for retirement.

To take action, we recommend setting up Microsoft Edge in your organization. If your organization needs legacy browser support, you should set up IE mode in Microsoft Edge as soon as possible because this is a multi-step process.

Use the Configure IE mode guided set up experience to set up IE mode in Microsoft Edge for your environment.

Create an initial enterprise site list with sites you know are IE-dependent.

Run Site Discovery in parallel to identify any unknown IE dependencies and add them to your enterprise list as you identify them.

Get helpful setup tips by watching our IE mode set-up webinar and reading our troubleshooting guide.

Use IE Driver to automate end-to-end IE mode testing.

Follow the steps here to manage your organization’s transition from IE11 to Microsoft Edge with IE mode.

Additional information:

For cost-free help with web app and site compatibility, especially if you have legacy site concerns after configuring IE mode, learn more about the App Assure program.

Read our June 15th retirement blog here.

Read our FAQ to help answer your questions and use the troubleshooting guide during setup.

Visit the Internet Explorer mode website.

Watch videos from our IE retirement YouTube playlist to learn more.

Learn more about hosting your IE mode site list in an authenticated cloud endpoint in the M365 admin center.

Read our announcement blog and browse our blog series for more information.

We always value feedback and questions from our customers. Feel free to submit either feedback or questions via Message Center.

ps://aka.ms/confi

ps://aka.ms/IEmodebl

ps://aka.ms/IEModeFAQ

ps://aka.ms/IEmodeweb

ps://aka.ms/IEModeWeb

ps://aka.ms/ietoed

ps://blogs.windows.com/windowsexperience/?p=177285

ps://docs.microsoft.com/deployedge/edge-ie-disable-i

ps://docs.microsoft.com/deployedge/edge-ie-mode-faq

ps://docs.microsoft.com/en-us/deployedge/deploy-edge-plan-deploy

ps://docs.microsoft.com/microsoft-edge/webdriver-chromium/ie-mode?tabs=c

ps://techcommunity.microsoft.com/t5/windows-it-pro-blog/don-t-wait-for-june-15th-set-your-own-ie-retirement-date/ba-p/3298143

ps://techcommunity.microsoft.com/t5/windows-it-pro-blog/host-ie-mode-site-lists-in-the-cloud/ba-p/3035479#M357

ps://techcommunity.microsoft.com/t5/windows-it-pro-blog/internet-explorer-11-desktop-app-retirement-faq/ba-p/2366549

ps://www.microsoft.com/fasttrack/microsoft-365/app-a

ps://youtube.com/playlist?list=PL4z1-7pjJU6wgq5AIvd4_jJssxtbyJFX

06/15/2022
MC392478 IE11 desktop application has retired and is out of support as of June 15, 2022 (non-LTSC, non-Server) https://aka.ms/configureiemode

https://aka.ms/IEmodeblog

https://aka.ms/IEmodeFAQ

https://aka.ms/IEmodewebinar

https://aka.ms/IEModeWebsite

https://aka.ms/ietoedge

https://blogs.windows.com/windowsexperience/?p=177285

https://docs.microsoft.com/deployedge/deploy-edge-plan-deployment

https://docs.microsoft.com/deployedge/edge-ie-disable-ie11

https://docs.microsoft.com/deployedge/edge-ie-mode-faq

https://docs.microsoft.com/microsoft-edge/webdriver-chromium/ie-mode?tabs=c-sharp

https://techcommunity.microsoft.com/t5/windows-it-pro-blog/don-t-wait-for-june-15th-set-your-own-ie-retirement-date/ba-p/3298143

https://techcommunity.microsoft.com/t5/windows-it-pro-blog/host-ie-mode-site-lists-in-the-cloud/ba-p/3035479#M3571

https://www.microsoft.com/fasttrack/microsoft-365/app-assure

https://youtube.com/playlist?list=PL4z1-7pjJU6wgq5AIvd4_jJssxtbyJFXn
ps://aka.ms/confi

ps://aka.ms/IEmodebl

ps://aka.ms/IEmodeFAQ

ps://aka.ms/IEmodeweb

ps://aka.ms/IEModeWeb

ps://aka.ms/ietoed

ps://blogs.windows.com/windowsexperience/?p=177285

ps://docs.microsoft.com/deployedge/deploy-edge-plan-deploy

ps://docs.microsoft.com/deployedge/edge-ie-disable-i

ps://docs.microsoft.com/deployedge/edge-ie-mode-faq

ps://docs.microsoft.com/microsoft-edge/webdriver-chromium/ie-mode?tabs=c

ps://techcommunity.microsoft.com/t5/windows-it-pro-blog/don-t-wait-for-june-15th-set-your-own-ie-retirement-date/ba-p/3298143

ps://techcommunity.microsoft.com/t5/windows-it-pro-blog/host-ie-mode-site-lists-in-the-cloud/ba-p/3035479#M357

ps://www.microsoft.com/fasttrack/microsoft-365/app-a

ps://youtube.com/playlist?list=PL4z1-7pjJU6wgq5AIvd4_jJssxtbyJFX
N/A
MC392640 E-signature Approvals Fully Embedded Within Team Approvals for a Streamlined Experience There is nothing you need to do to prepare. You may want to update your documentation as needed.

Learn More:

Teams Approvals App Availability

Create An E-Sign Approval Request

https://docs.microsoft.com/microsoftteams/approval-admin#enable-or-disable-e-signature-providers

https://support.microsoft.com/office/create-an-e-sign-approval-request-e94cd617-b48e-433c-94c3-7f944a3a8579

https://www.microsoft.com/microsoft-365/roadmap?filters=&searchterms=92941
There is nothing you need to do to prepare. You may want to update your documentation as needed.

Learn More:

Teams Approvals App Availability

Create An E-Sign Approval Request

ps://docs.microsoft.com/microsoftteams/approval-admin#enable-or-disable-e-signature-provider

ps://support.microsoft.com/office/create-an-e-sign-approval-request-e94cd617-b48e-433c-94c3-7f944a3a8579

ps://www.microsoft.com/microsoft-365/roadmap?filters=&searchterms=9294
N/A
MC393184 Records Management – Configure a record label to start unlocked for user-driven records declaration There is nothing you need to do to receive this feature and it will not affect your existing record labels. You may consider updating any training or reference material for your Records Management administrators and evaluate if you would like to use this new capability.

You can access the Records Management solution here:

Microsoft Purview compliance portal for WW and GCC cloud environments

Microsoft Purview compliance portal for GCC-High cloud environments

Microsoft Purview compliance portal for DoD cloud environments

https://compliance.apps.mil/

https://compliance.microsoft.us/

https://docs.microsoft.com/microsoft-365/compliance/records-management?view=o365-worldwide#compare-restrictions-for-what-actions-are-allowed-or-blocked

https://purview.microsoft.com/compliance

https://www.microsoft.com/microsoft-365/roadmap?filters=&searchterms=88509
There is nothing you need to do to receive this feature and it will not affect your existing record labels. You may consider updating any training or reference material for your Records Management administrators and evaluate if you would like to use this new capability.

You can access the Records Management solution here:

Microsoft Purview compliance portal for WW and GCC cloud environments

Microsoft Purview compliance portal for GCC-High cloud environments

Microsoft Purview compliance portal for DoD cloud environments

ps://compliance.apps.mil/

ps://compliance.microsoft.us/

ps://docs.microsoft.com/microsoft-365/compliance/records-management?view=o365-worldwide#compare-restrictions-for-what-actions-are-allowed-or-block

ps://purview.microsoft.com/compl

ps://www.microsoft.com/microsoft-365/roadmap?filters=&searchterms=88509
N/A
MC393185 (Updated) Reminder: Microsoft Office default change – Blocking VBA macros in files from the internet Enterprises should evaluate their use of macros in files obtained from the internet to determine how this new default behavior will affect their users.

To learn more about how to get ready for this change and recommendations for managing VBA macros in Office files, read this article for Office admins.

https://docs.microsoft.com/en-gb/DeployOffice/security/internet-macros-blocked#block-macros-from-running-in-office-files-from-the-internet

https://go.microsoft.com/fwlink/?linkid=2185272

https://go.microsoft.com/fwlink/p/?linkid=2185771

https://go.microsoft.com/fwlink/p/?linkid=2186005

https://nam06.safelinks.protection.outlook.com/?url=https%3A%2F%2Fdocs.microsoft.com%2Fen-gb%2FDeployOffice%2Fsecurity%2Finternet-macros-blocked&data=05%7C01%7Cwegon%40microsoft.com%7C26acaac2ea6449a7a45c08da64687c3d%7C72f988bf86f141af91ab2d7cd011db47%7C1%7C0%7C637932697207119680%7CUnknown%7CTWFpbGZsb3d8eyJWIjoiMC4wLjAwMDAiLCJQIjoiV2luMzIiLCJBTiI6Ik1haWwiLCJXVCI6Mn0%3D%7C3000%7C%7C%7C&sdata=FjkXwfFWls1ZL4l3xiwZU%2FTM%2FVRLyjmoNo62er9YIgc%3D&reserved=0"

https://nam06.safelinks.protection.outlook.com/?url=https%3A%2F%2Fsupport.microsoft.com%2Ftopic%2F0952faa0-37e7-4316-b61d-5b5ed6024216&data=05%7C01%7Cwegon%40microsoft.com%7C26acaac2ea6449a7a45c08da64687c3d%7C72f988bf86f141af91ab2d7cd011db47%7C1%7C0%7C637932697207119680%7CUnknown%7CTWFpbGZsb3d8eyJWIjoiMC4wLjAwMDAiLCJQIjoiV2luMzIiLCJBTiI6Ik1haWwiLCJXVCI6Mn0%3D%7C3000%7C%7C%7C&sdata=D68HLWrR3XuGkWm0m%2F5JES9cNLv6%2FZhoiMDj%2Fbuz2b8%3D&reserved=0"

https://www.microsoft.com/microsoft-365/roadmap?rtc=1%26filters=&searchterms=88883
Enterprises should evaluate their use of macros in files obtained from the internet to determine how this new default behavior will affect their users.

To learn more about how to get ready for this change and recommendations for managing VBA macros in Office files, read this article for Office admins.

ps://docs.microsoft.com/en-gb/DeployOffice/security/internet-macros-blocked#block-macros-from-running-in-office-files-from

ps://go.microsoft.com/fwlink/?linkid=218527

ps://go.microsoft.com/fwlink/p/?linkid=218577

ps://go.microsoft.com/fwlink/p/?linkid=2186005

ps://nam06.safelinks.protection.outlook.com/?url=https%3A%2F%2Fdocs.microsoft.com%2Fen-gb%2FDeployOffice%2Fsecurity%2Finternet-macros-blocked&data=05%7C01%7Cwegon%40microsoft.com%7C26acaac2ea6449a7a45c08da64687c3d%7C72f988bf86f141af91ab2d7cd011db47%7C1%7C0%7C637932697207119680%7CUnknown%7CTWFpbGZsb3d8eyJWIjoiMC4wLjAwMDAiLCJQIjoiV2luMzIiLCJBTiI6Ik1haWwiLCJXVCI6Mn0%3D%7C3000%7C%7C%7C&sdata=FjkXwfFWls1ZL4l3xiwZU%2FTM%2FVRLyjmoNo62er9YIgc%3D&reserved=0

ps://nam06.safelinks.protection.outlook.com/?url=https%3A%2F%2Fsupport.microsoft.com%2Ftopic%2F0952faa0-37e7-4316-b61d-5b5ed6024216&data=05%7C01%7Cwegon%40microsoft.com%7C26acaac2ea6449a7a45c08da64687c3d%7C72f988bf86f141af91ab2d7cd011db47%7C1%7C0%7C637932697207119680%7CUnknown%7CTWFpbGZsb3d8eyJWIjoiMC4wLjAwMDAiLCJQIjoiV2luMzIiLCJBTiI6Ik1haWwiLCJXVCI6Mn0%3D%7C3000%7C%7C%7C&sdata=D68HLWrR3XuGkWm0m%2F5JES9cNLv6%2FZhoiMDj%2Fbuz2b8%3D&reserved=0

ps://www.microsoft.com/microsoft-365/roadmap?rtc=1%26filters=&searchterms=88883
N/A
MC393818 Add DKIM Domain in Sending Infrastructure for Tenant Allow Block Lists-Spoofing There is nothing you need to do to prepare for this change. You may want to notify your users about this change and update your training and documentation as appropriate.

https://docs.microsoft.com/microsoft-365/security/office-365-security/tenant-allow-block-list?view=o365-worldwide#domain-pair-syntax-for-spoofed-sender-entries-in-the-tenant-allowblock-list

https://www.microsoft.com/microsoft-365/roadmap?filters=&searchterms=93359
There is nothing you need to do to prepare for this change. You may want to notify your users about this change and update your training and documentation as appropriate.

ps://docs.microsoft.com/microsoft-365/security/office-365-security/tenant-allow-block-list?view=o365-worldwide#domain-pair-syntax-for-spoofed-sender-entries-in-the-tenant-allowblock-li

ps://www.microsoft.com/microsoft-365/roadmap?filters=&searchterms=93359
N/A
MC393821 (Updated) Modern Meetings and Calls on Teams Web Client There is nothing you need to do to prepare for this change. You should see the update in the normal course of using Teams.

https://www.microsoft.com/microsoft-365/roadmap?filters=&searchterms=92928
There is nothing you need to do to prepare for this change. You should see the update in the normal course of using Teams.

ps://www.microsoft.com/microsoft-365/roadmap?filters=&searchterms=92928
N/A
MC394275 Take action: Out-of-band security update to address an issue with Azure Active Directory services on Arm-based devices https://docs.microsoft.com/windows/deployment/update/waas-manage-updates-wufb

https://docs.microsoft.com/windows/release-health/resolved-issues-windows-11-21h2#2847msgdesc

https://docs.microsoft.com/windows-server/administration/windows-server-update-services/get-started/windows-server-update-services-wsus

https://support.microsoft.com/help/5016138

https://support.microsoft.com/help/5016139

https://support.microsoft.com/windows/update-windows-3c5ae7fc-9fb6-9af1-1984-b5e0412c556a

https://www.catalog.update.microsoft.com/
ps://docs.microsoft.com/windows/deployment/update/waas-manage-updates-wufb

ps://docs.microsoft.com/windows/release-health/resolved-issues-windows-11-21h2#2847msgd

ps://docs.microsoft.com/windows-server/administration/windows-server-update-services/get-started/windows-server-update-servic

ps://support.microsoft.com/help/5016138

ps://support.microsoft.com/help/5016139

ps://support.microsoft.com/windows/update-windows-3c5ae7fc-9fb6-9af1-1984-b5e0412c556

ps://www.catalog.update.microsoft.com/
06/20/2022
MC394511 Microsoft Purview: eDiscovery (Premium and Standard) - Jobs limit update Assess whether the changes will change your organization’s eDiscovery workflow. If so, update internal documentation. Provide training to all eDiscovery users in your organization and update relevant documentation if needed.

Access the eDiscovery solution in the Microsoft Purview compliance portal.

Learn more: Microsoft Purview eDiscovery solutions

https://docs.microsoft.com/microsoft-365/compliance/ediscovery?view=o365-worldwide

https://purview.microsoft.com/compliance

https://www.microsoft.com/en-us/microsoft-365/roadmap?filters=&searchterms=85583

Assess whether the changes will change your organization’s eDiscovery workflow. If so, update internal documentation. Provide training to all eDiscovery users in your organization and update relevant documentation if needed.

Access the eDiscovery solution in the Microsoft Purview compliance portal.

Learn more: Microsoft Purview eDiscovery solutions

ps://docs.microsoft.com/microsoft-365/compliance/ediscovery?view=o365-world

ps://purview.microsoft.com/compl

ps://www.microsoft.com/en-us/microsoft-365/roadmap?filters=&searchterms=85583

N/A
MC394515 Moodle Learning Management System (LMS) integration with Microsoft Teams Users of Moodle LMS will be able to integrate Microsoft Teams LTI apps in their Moodle LMS. To learn more about Moodle integration with Teams, please visit- Teams-Moodle Integration | Microsoft docs

https://docs.microsoft.com/microsoft-365/lti/moodle-plugin-configuration?view=o365-worldwide

https://www.microsoft.com/microsoft-365/roadmap?rtc=1%26filters=&searchterms=95675
Users of Moodle LMS will be able to integrate Microsoft Teams LTI apps in their Moodle LMS. To learn more about Moodle integration with Teams, please visit- Teams-Moodle Integration | Microsoft docs

ps://docs.microsoft.com/microsoft-365/lti/moodle-plugin-configuration?view=o365-world

ps://www.microsoft.com/microsoft-365/roadmap?rtc=1%26filters=&searchterms=95675
N/A
MC394517 Run team-owned Office Scripts in Excel for the web If you do not want users to be able to save their scripts to a SharePoint site so that others can view and run their scripts, please visit the Office Scripts admin pane to disable the feature by late July.

Learn More:

Manage Office Script settings

Office Scripts File Storage and Ownership

https://docs.microsoft.com/microsoft-365/admin/manage/manage-office-scripts-settings?view=o365-worldwide

https://docs.microsoft.com/office/dev/scripts/overview/script-storage

https://www.microsoft.com/microsoft-365/roadmap?filters=&searchterms=93767
If you do not want users to be able to save their scripts to a SharePoint site so that others can view and run their scripts, please visit the Office Scripts admin pane to disable the feature by late July.

Learn More:

Manage Office Script settings

Office Scripts File Storage and Ownership

ps://docs.microsoft.com/microsoft-365/admin/manage/manage-office-scripts-settings?view=o365-world

ps://docs.microsoft.com/office/dev/scripts/overview/script-stora

ps://www.microsoft.com/microsoft-365/roadmap?filters=&searchterms=93767
07/29/2022
MC394519 Intune moving to support macOS 11.6 and higher later this year Check your Intune reporting to see which devices or users may be affected. Go to Devices > All devices and filter by macOS. You can add in additional columns to help identify who in your organization has devices running macOS 10.15 or below. Request that your users upgrade their devices to a supported OS version before this change.

[Related information]

Plan for Change: iOS/iPadOS moving to support iOS/iPadOS 14

https://docs.microsoft.com/mem/intune/fundamentals/whats-new#plan-for-change-intune-is-moving-to-support-iosipados-14-and-later

https://support.apple.com/HT211238
Check your Intune reporting to see which devices or users may be affected. Go to Devices > All devices and filter by macOS. You can add in additional columns to help identify who in your organization has devices running macOS 10.15 or below. Request that your users upgrade their devices to a supported OS version before this change.

[Related information]

Plan for Change: iOS/iPadOS moving to support iOS/iPadOS 14

ps://docs.microsoft.com/mem/intune/fundamentals/whats-new#plan-for-change-intune-is-moving-to-support-iosipados-14-and-l

ps://support.apple.com/HT211238
N/A
MC394674 An updated version of the June 2022 security update Scan Cab is available for Arm-based devices Administrators may re-deploy the updated Scan Cab via their usual WSUS processes. For Microsoft Endpoint Configuration Manager to detect changes related to an updated Scan Cab file, a software update synchronization needs to occur. See the Additional Information section below for guidance.

Additional information:

Updated Scan Cab: Download the new Scan Cab here

Out-of-band security update to address an issue with Azure Active Directory services on Arm-based devices: Details on the issue addressed in the new Scan Cab

Setting up Update Synchronizations: Guidance on synchronization needed for deployment of Scan Cab via WSUS

Synchronize software updates / Manually start software updates synchronization: Detect a Scan Cab change using Configuration Manager

Announcing a smaller WSUS Scan Cab: Learn more about WSUS and the Scan Cab process

Using WUA to Scan for Updates Offline: Windows Update Agent (WUA) can be used to scan computers for security updates without connecting to Windows Update

WSUS and the Catalog Site: The Catalog Site used by WSUS to import updates and drivers

https://docs.microsoft.com/mem/configmgr/sum/get-started/synchronize-software-updates#manually-start-software-updates-synchronization

https://docs.microsoft.com/windows/release-health/windows-message-center#2851

https://docs.microsoft.com/windows/win32/wua_sdk/using-wua-to-scan-for-updates-offline

https://docs.microsoft.com/windows-server/administration/windows-server-update-services/manage/setting-up-update-synchronizations

https://docs.microsoft.com/windows-server/administration/windows-server-update-services/manage/wsus-and-the-catalog-site

https://download.windowsupdate.com/microsoftupdate/v6/wsusscan/wsusscn2.cab

https://techcommunity.microsoft.com/t5/windows-it-pro-blog/announcing-a-smaller-wsus-scan-cab/ba-p/2928256

Administrators may re-deploy the updated Scan Cab via their usual WSUS processes. For Microsoft Endpoint Configuration Manager to detect changes related to an updated Scan Cab file, a software update synchronization needs to occur. See the Additional Information section below for guidance.

Additional information:

Updated Scan Cab: Download the new Scan Cab here

Out-of-band security update to address an issue with Azure Active Directory services on Arm-based devices: Details on the issue addressed in the new Scan Cab

Setting up Update Synchronizations: Guidance on synchronization needed for deployment of Scan Cab via WSUS

Synchronize software updates / Manually start software updates synchronization: Detect a Scan Cab change using Configuration Manager

Announcing a smaller WSUS Scan Cab: Learn more about WSUS and the Scan Cab process

Using WUA to Scan for Updates Offline: Windows Update Agent (WUA) can be used to scan computers for security updates without connecting to Windows Update

WSUS and the Catalog Site: The Catalog Site used by WSUS to import updates and drivers

ps://docs.microsoft.com/mem/configmgr/sum/get-started/synchronize-software-updates#manually-start-software-updates-synchroniz

ps://docs.microsoft.com/windows/release-health/windows-message-center#285

ps://docs.microsoft.com/windows/win32/wua_sdk/using-wua-to-scan-for-updates-offl

ps://docs.microsoft.com/windows-server/administration/windows-server-update-services/manage/setting-up-update-synchronizati

ps://docs.microsoft.com/windows-server/administration/windows-server-update-services/manage/wsus-and-the-catal

ps://download.windowsupdate.com/microsoftupdate/v6/wsusscan/wsusscn2.cab

ps://techcommunity.microsoft.com/t5/windows-it-pro-blog/announcing-a-smaller-wsus-scan-cab/ba-p/2928256

N/A
MC394781 Plan for Change: Significant changes comes to the Windows Diagnostic data processor configuration Ensure that you meet the prerequisites for Windows diagnostic data processor configuration, join your devices to Azure AD, and keep your devices secure and up to date with quality updates. If you're outside of the EU or EFTA, the organization must sign up for any of the following enterprise services:

Update Compliance

Windows Update for Business deployment service

Microsoft Managed Desktop

Endpoint analytics (in Microsoft Endpoint Manager)

(Additional licensing requirements may apply to use these services.)

If you don’t sign up for any of these enterprise services, Microsoft will act as the controller for the diagnostic data in accordance with the Microsoft Privacy Statement and the Data Protection Addendum terms won't apply. Please review the detailed documentation in MC391866 for additional information.

https://aka.ms/configwddenterprise

https://blogs.microsoft.com/eupolicy/2021/05/06/eu-data-boundary/

https://docs.microsoft.com/azure/cost-management-billing/manage/change-azure-account-profile

https://docs.microsoft.com/en-us/windows/privacy/configure-windows-diagnostic-data-in-your-organization

https://docs.microsoft.com/managed-desktop/intro/

https://docs.microsoft.com/mem/analytics/overview

https://docs.microsoft.com/windows/deployment/update/deployment-service-overview

https://docs.microsoft.com/windows/deployment/update/update-compliance-monitor

https://docs.microsoft.com/windows/release-health/windows-message-center#2837

https://docs.microsoft.com/windows-insider/flighting#dev-channel

https://privacy.microsoft.com/privacystatement

https://www.microsoft.com/licensing/docs/view/Microsoft-Products-and-Services-Data-Protection-Addendum-DPA
Ensure that you meet the prerequisites for Windows diagnostic data processor configuration, join your devices to Azure AD, and keep your devices secure and up to date with quality updates. If you're outside of the EU or EFTA, the organization must sign up for any of the following enterprise services:

Update Compliance

Windows Update for Business deployment service

Microsoft Managed Desktop

Endpoint analytics (in Microsoft Endpoint Manager)

(Additional licensing requirements may apply to use these services.)

If you don’t sign up for any of these enterprise services, Microsoft will act as the controller for the diagnostic data in accordance with the Microsoft Privacy Statement and the Data Protection Addendum terms won't apply. Please review the detailed documentation in MC391866 for additional information.

ps://aka.ms/configwddenterpri

ps://blogs.microsoft.com/eupolicy/2021/05/06/eu-data-boundary/

ps://docs.microsoft.com/azure/cost-management-billing/manage/change-azure-account-profil

ps://docs.microsoft.com/en-us/windows/privacy/configure-windows-diagnostic-data-in-your-organiz

ps://docs.microsoft.com/managed-desktop/intro/

ps://docs.microsoft.com/mem/analytics/overvi

ps://docs.microsoft.com/windows/deployment/update/deployment-service-overvi

ps://docs.microsoft.com/windows/deployment/update/update-complianc

ps://docs.microsoft.com/windows/release-health/windows-message-center#2837

ps://docs.microsoft.com/windows-insider/flighting#dev-channel

ps://privacy.microsoft.com/privacy

ps://www.microsoft.com/licensing/docs/view/Microsoft-Products-and-Services-Data-Protection-Addendum-DPA
N/A
MC394785 (Updated) Speaker Coach in Microsoft Teams Meetings You may want to notify your users about this new capability and update your training and documentation as appropriate.

Learn More:

PowerPoint’s Presenter Coach Expands to Microsoft Teams and Takes on the New Name Speaker Coach

Meeting policy settings - Speaker Coach

https://docs.microsoft.com/microsoftteams/meeting-policies-in-teams-general?OCID=usoc_TWITTER_MicrosoftTeams_M365_spl100003205805139#speaker-coach

https://techcommunity.microsoft.com/t5/microsoft-365-blog/powerpoint-s-presenter-coach-expands-to-microsoft-teams-and/ba-p/2686087

https://www.microsoft.com/microsoft-365/roadmap?filters=&searchterms=88253
You may want to notify your users about this new capability and update your training and documentation as appropriate.

Learn More:

PowerPoint’s Presenter Coach Expands to Microsoft Teams and Takes on the New Name Speaker Coach

Meeting policy settings - Speaker Coach

ps://docs.microsoft.com/microsoftteams/meeting-policies-in-teams-general?OCID=usoc_TWITTER_MicrosoftTeams_M365_spl100003205805139#speaker-coac

ps://techcommunity.microsoft.com/t5/microsoft-365-blog/powerpoint-s-presenter-coach-expands-to-microsoft-teams-and/ba-p/2686087

ps://www.microsoft.com/microsoft-365/roadmap?filters=&searchterms=88253
N/A
MC394813 June 2022 Windows non-security preview "C" release available for all supported versions of Windows https://support.microsoft.com/help/5014668

https://support.microsoft.com/help/5014669

https://techcommunity.microsoft.com/t5/windows-it-pro-blog/windows-quality-updates-primer/ba-p/2569385

https://twitter.com/windowsupdate
ps://support.microsoft.com/help/5014668

ps://support.microsoft.com/help/5014669

ps://techcommunity.microsoft.com/t5/windows-it-pro-blog/windows-quality-updates-primer/ba-p/2569385

ps://twitter.com/wind
N/A
MC394824 New! Introducing the search highlights feature To manage search highlights with Group Policy on either Windows 10 or Windows 11, locate: Edit group policy > Computer Configuration > Administrative Templates > Windows Components > Search > Allow search highlights.

Through this policy, you can disable or enable the search highlights experience. If you leave the setting as “Not configured” the experience will be enabled by default.

Additional information:

For additional information, see

Search highlights coming to Windows 11 (Windows IT Pro Blog)

Windows quality updates primer (Tech Community)

Policy CSP - Search (Microsoft Docs)

https://aka.ms/Windows11/SearchHighlights

https://docs.microsoft.com/windows/client-management/mdm/policy-csp-search

https://techcommunity.microsoft.com/t5/windows-it-pro-blog/group-configuration-search-highlights-in-windows/ba-p/3263989

https://techcommunity.microsoft.com/t5/windows-it-pro-blog/windows-quality-updates-primer/ba-p/2569385

To manage search highlights with Group Policy on either Windows 10 or Windows 11, locate: Edit group policy > Computer Configuration > Administrative Templates > Windows Components > Search > Allow search highlights.

Through this policy, you can disable or enable the search highlights experience. If you leave the setting as “Not configured” the experience will be enabled by default.

Additional information:

For additional information, see

Search highlights coming to Windows 11 (Windows IT Pro Blog)

Windows quality updates primer (Tech Community)

Policy CSP - Search (Microsoft Docs)

ps://aka.ms/Windows11/SearchHighli

ps://docs.microsoft.com/windows/client-management/mdm/policy-csp-searc

ps://techcommunity.microsoft.com/t5/windows-it-pro-blog/group-configuration-search-highlights-in-windows/ba-p/3263989

ps://techcommunity.microsoft.com/t5/windows-it-pro-blog/windows-quality-updates-primer/ba-p/2569385

N/A
MC394835 eDiscovery (Premium) Records Management – Discover the document version that has been shared (preview) Access the eDiscovery (Premium) and Records Management solutions within the Microsoft Purview compliance portal.

Learn more:

Auto-apply labels to cloud attachments

Collect Cloud attachments in Microsoft Purview eDiscovery (Premium)

https://docs.microsoft.com/microsoft-365/compliance/advanced-ediscovery-cloud-attachments?view=o365-worldwide

https://docs.microsoft.com/microsoft-365/compliance/apply-retention-labels-automatically?view=o365-worldwide#auto-apply-labels-to-cloud-attachments

https://purview.microsoft.com/compliance

https://www.microsoft.com/microsoft-365/roadmap?filters=&searchterms=70580

https://www.microsoft.com/microsoft-365/roadmap?filters=&searchterms=70718
Access the eDiscovery (Premium) and Records Management solutions within the Microsoft Purview compliance portal.

Learn more:

Auto-apply labels to cloud attachments

Collect Cloud attachments in Microsoft Purview eDiscovery (Premium)

ps://docs.microsoft.com/microsoft-365/compliance/advanced-ediscovery-cloud-attachments?view=o365-world

ps://docs.microsoft.com/microsoft-365/compliance/apply-retention-labels-automatically?view=o365-worldwide#auto-apply-labels-to-cloud-attachm

ps://purview.microsoft.com/compl

ps://www.microsoft.com/microsoft-365/roadmap?filters=&searchterms=7058

ps://www.microsoft.com/microsoft-365/roadmap?filters=&searchterms=70718
N/A
MC394844 (Updated) Stream on SharePoint: Inline playback of videos in Hero web part You may consider updating your training and documentation as appropriate.

https://www.microsoft.com/microsoft-365/roadmap?filters=&searchterms=93351
You may consider updating your training and documentation as appropriate.

ps://www.microsoft.com/microsoft-365/roadmap?filters=&searchterms=9335
N/A
MC394845 Remove from Call History View You may consider updating your training and documentation as appropriate.

https://www.microsoft.com/microsoft-365/roadmap?rtc=1%26filters=&searchterms=94200
You may consider updating your training and documentation as appropriate.

ps://www.microsoft.com/microsoft-365/roadmap?rtc=1%26filters=&searchterms=94
N/A
MC394930 (Updated) Select Lists templates include Power Automate flows You might want to notify your users about these new capabilities in list templates and update your training and documentation as appropriate.

[Learn more:]

Create a business application from a list template

Manage a flow that was created from a list template

Overview of solution-aware flows

Power Platform solution concepts

https://docs.microsoft.com/power-automate/overview-solution-flows

https://docs.microsoft.com/power-platform/alm/solution-concepts-alm

https://support.microsoft.com/office/manage-a-flow-that-was-created-from-a-list-template-7cbb31e4-cefb-4a53-9a0a-668a96cb7245

https://www.microsoft.com/microsoft-365/roadmap?rtc=1%26filters=&searchterms=88906

You might want to notify your users about these new capabilities in list templates and update your training and documentation as appropriate.

[Learn more:]

Create a business application from a list template

Manage a flow that was created from a list template

Overview of solution-aware flows

Power Platform solution concepts

ps://docs.microsoft.com/power-automate/overview-solution-fl

ps://docs.microsoft.com/power-platform/alm/solution-concepts-al

ps://support.microsoft.com/office/manage-a-flow-that-was-created-from-a-list-template-7cbb31e4-cefb-4a53-9a0a-668a96cb7245

ps://www.microsoft.com/microsoft-365/roadmap?rtc=1%26filters=&searchterms=88906

N/A
MC394931 (Updated) Microsoft 365 admin center: Reports in the Admin Center – API available to manage user, group, and site names There is no specific action required, but you may want to update your documentation as needed.

https://docs.microsoft.com/graph/api/reportroot-getsharepointsiteusagedetail?view=graph-rest-1.0

https://docs.microsoft.com/graph/api/resources/report?view=graph-rest-1.0

https://docs.microsoft.com/graph/api/resources/report?view=graph-rest-beta

https://docs.microsoft.com/microsoft-365/admin/activity-reports/activity-reports?view=o365-worldwide

https://docs.microsoft.com/microsoftteams/teams-analytics-and-reports/teams-reporting-reference

https://www.microsoft.com/microsoft-365/roadmap?rtc=1%26filters=&searchterms=93313
There is no specific action required, but you may want to update your documentation as needed.

ps://docs.microsoft.com/graph/api/reportroot-getsharepointsiteusagedetail?view=graph-r

ps://docs.microsoft.com/graph/api/resources/report?view=graph-r

ps://docs.microsoft.com/graph/api/resources/report?view=graph-rest-b

ps://docs.microsoft.com/microsoft-365/admin/activity-reports/activity-reports?view=o365-world

ps://docs.microsoft.com/microsoftteams/teams-analytics-and-reports/teams-reporting-ref

ps://www.microsoft.com/microsoft-365/roadmap?rtc=1%26filters=&searchterms=93313
N/A
MC395208 Public preview: Configure a label to apply S/MIME protection in Outlook Learn more: Manage sensitivity labels in Office apps

https://docs.microsoft.com/microsoft-365/compliance/sensitivity-labels-office-apps?view=o365-worldwide

https://purview.microsoft.com/compliance

https://www.microsoft.com/microsoft-365/roadmap?filters=&searchterms=93199
Learn more: Manage sensitivity labels in Office apps

ps://docs.microsoft.com/microsoft-365/compliance/sensitivity-labels-office-apps?view=o365-world

ps://purview.microsoft.com/compl

ps://www.microsoft.com/microsoft-365/roadmap?filters=&searchterms=93199
N/A
MC395209 Microsoft Purview Information Protection – Manually apply and edit sensitivity labels on PDFs in Adobe Acrobat (preview) This feature is being released in partnership with Adobe. We are bundling Microsoft Purview Information Protection capabilities with the default Acrobat installer, meaning that users no longer need to install a separate plug-in to access these capabilities in Acrobat.

The preview client will be available for download from the Adobe pre-release portal. For additional details, including how to sign up for preview access, refer to our recent blog post.

View the recent announcements:

Microsoft Build | Microsoft Purview Ecosystem: Information Protection and Data Lifecycle Management

Adobe blog: Adobe and Microsoft announce new, deeper integrations to turbocharge the modern workplace

Microsoft blog: Extending Microsoft Purview Ecosystem with new APIs, Power Automate and built-in integrations

https://adobe.ly/3sQwkcL

https://aka.ms/BuildMay22/PurviewEcosys

https://lnkd.in/gvbXe3HC

https://www.adobeprerelease.com/beta/407d03ba-6df0-41ab-eb1e-76fa4599fce3

https://www.microsoft.com/microsoft-365/roadmap?filters=&searchterms=93331

This feature is being released in partnership with Adobe. We are bundling Microsoft Purview Information Protection capabilities with the default Acrobat installer, meaning that users no longer need to install a separate plug-in to access these capabilities in Acrobat.

The preview client will be available for download from the Adobe pre-release portal. For additional details, including how to sign up for preview access, refer to our recent blog post.

View the recent announcements:

Microsoft Build | Microsoft Purview Ecosystem: Information Protection and Data Lifecycle Management

Adobe blog: Adobe and Microsoft announce new, deeper integrations to turbocharge the modern workplace

Microsoft blog: Extending Microsoft Purview Ecosystem with new APIs, Power Automate and built-in integrations

ps://adobe.ly/3sQwkcL

ps://aka.ms/BuildMay22/PurviewEcosy

ps://lnkd.in/gvbXe3H

ps://www.adobeprerelease.com/beta/407d03ba-6df0-41ab-eb1e-76fa4599fce3

ps://www.microsoft.com/microsoft-365/roadmap?filters=&searchterms=9333

N/A
MC395210 (Updated) Microsoft Defender for Office 365: Recipient Block Using Tenant Allow/Block List Senders We advise you to cross check the existing sender block in Tenant Allow/Block list to ensure that it does not affect any sender that you want your users to send emails to, but can't because of this change.

https://www.microsoft.com/microsoft-365/roadmap?filters=&searchterms=93363
We advise you to cross check the existing sender block in Tenant Allow/Block list to ensure that it does not affect any sender that you want your users to send emails to, but can't because of this change.

ps://www.microsoft.com/microsoft-365/roadmap?filters=&searchterms=93363
N/A
MC395211 Outlook to block new attachment file types to improve security There are several ways to send and receive a blocked file. You can save the file to the cloud and send a link to the file, use a file compression utility like WinZip, or even rename the file with another extension, then have your recipient change the name back to the original name after they receive the file.

[What file extensions will be added to the BlockedFileTypes list with this change?]

Outlook Win32: ".cab",

Outlook on Web: "application", "bgi", "img", ".iso", "cab"

New Outlook on Mac, Outlook Android, Outlook iOS: ".appref-ms", ".cdxml", ".mht", .mhtml", ".pssc", ".udl", ".wsb" ".cab"

[Where is the fu​ll list of Outlook client block file types?]

Outlook Win32: Blocked attachments in Outlook (microsoft.com)

Outlook on Web: Changes to File Types Blocked in Outlook on the web - Microsoft Tech Community

New Outlook on Mac, Outlook Android, Outlook iOS

https://support.microsoft.com/en-us/office/blocked-attachments-in-outlook-434752e1-02d3-4e90-9124-8b81e49a8519

https://support.microsoft.com/office/blocked-attachments-in-outlook-mobile-759ec27e-a7e6-432d-b319-cc446c165225?storagetype=live

https://techcommunity.microsoft.com/t5/exchange-team-blog/changes-to-file-types-blocked-in-outlook-on-the-web/ba-p/874451

There are several ways to send and receive a blocked file. You can save the file to the cloud and send a link to the file, use a file compression utility like WinZip, or even rename the file with another extension, then have your recipient change the name back to the original name after they receive the file.

[What file extensions will be added to the BlockedFileTypes list with this change?]

Outlook Win32: ".cab",

Outlook on Web: "application", "bgi", "img", ".iso", "cab"

New Outlook on Mac, Outlook Android, Outlook iOS: ".appref-ms", ".cdxml", ".mht", .mhtml", ".pssc", ".udl", ".wsb" ".cab"

[Where is the fu​ll list of Outlook client block file types?]

Outlook Win32: Blocked attachments in Outlook (microsoft.com)

Outlook on Web: Changes to File Types Blocked in Outlook on the web - Microsoft Tech Community

New Outlook on Mac, Outlook Android, Outlook iOS

ps://support.microsoft.com/en-us/office/blocked-attachments-in-outlook-434752e1-02d3-4e90-9124-8b81e49a8519

ps://support.microsoft.com/office/blocked-attachments-in-outlook-mobile-759ec27e-a7e6-432d-b319-cc446c165225?storagetype=li

ps://techcommunity.microsoft.com/t5/exchange-team-blog/changes-to-file-types-blocked-in-outlook-on-the-web/ba-p/87445

N/A
MC395384 June 2022 Windows non-security preview "C" release available for all supported versions of Windows https://support.microsoft.com/help/5014666

https://support.microsoft.com/help/5014668

https://techcommunity.microsoft.com/t5/windows-it-pro-blog/windows-quality-updates-primer/ba-p/2569385
ps://support.microsoft.com/help/5014666

ps://support.microsoft.com/help/5014668

ps://techcommunity.microsoft.com/t5/windows-it-pro-blog/windows-quality-updates-primer/ba-p/2569385
N/A
MC395422 (Updated) Cameo in PowerPoint Live You may consider updating your training and documentation as appropriate.

https://www.microsoft.com/microsoft-365/roadmap?filters=&searchterms=87725
You may consider updating your training and documentation as appropriate.

ps://www.microsoft.com/microsoft-365/roadmap?filters=&searchterms=87725
N/A
MC395424 Microsoft Purview: Insider Risk Management – Sequence detection (GA) Microsoft Purview Insider Risk Management correlates various signals to identify potential malicious or inadvertent insider risks, such as IP theft, security and policy violations, and more. Insider Risk Management enables customers to create policies based on their own internal policies, governance, and organizational requirements. Built with privacy by design, users are pseudonymized by default, and role-based access controls and audit logs are in place to help ensure user-level privacy.

Access the Insider Risk Management solution in the Microsoft Purview compliance portal:

Microsoft Purview compliance portal for WW and GCC cloud environments

Microsoft Purview compliance portal for GCC-High cloud environments

Microsoft Purview compliance portal for DoD cloud environments

Learn more: Investigate insider risk management activities

https://compliance.apps.mil/

https://compliance.microsoft.us/

https://docs.microsoft.com/microsoft-365/compliance/insider-risk-management-activities?view=o365-worldwide#user-activity

https://purview.microsoft.com/compliance

https://www.microsoft.com/microsoft-365/roadmap?filters=&searchterms=93319

Microsoft Purview Insider Risk Management correlates various signals to identify potential malicious or inadvertent insider risks, such as IP theft, security and policy violations, and more. Insider Risk Management enables customers to create policies based on their own internal policies, governance, and organizational requirements. Built with privacy by design, users are pseudonymized by default, and role-based access controls and audit logs are in place to help ensure user-level privacy.

Access the Insider Risk Management solution in the Microsoft Purview compliance portal:

Microsoft Purview compliance portal for WW and GCC cloud environments

Microsoft Purview compliance portal for GCC-High cloud environments

Microsoft Purview compliance portal for DoD cloud environments

Learn more: Investigate insider risk management activities

ps://compliance.apps.mil/

ps://compliance.microsoft.us/

ps://docs.microsoft.com/microsoft-365/compliance/insider-risk-management-activities?view=o365-worldwide#user-activity

ps://purview.microsoft.com/compl

ps://www.microsoft.com/microsoft-365/roadmap?filters=&searchterms=93319

N/A
MC395599 Microsoft Purview | Data Loss Prevention – Ability to clone DLP policies (GA) Access the Data Loss Prevention solution in the Microsoft Purview compliance portal:

Microsoft Purview compliance portal for WW and GCC cloud environments

Microsoft Purview compliance portal for GCC-High cloud environments

Microsoft Purview compliance portal for DoD cloud environments

Learn more: Create, test, and tune a DLP policy

https://compliance.apps.mil/

https://compliance.microsoft.us/

https://docs.microsoft.com/microsoft-365/compliance/create-test-tune-dlp-policy?view=o365-worldwide

https://purview.microsoft.com/compliance

https://www.microsoft.com/microsoft-365/roadmap?filters=&searchterms=93312

Access the Data Loss Prevention solution in the Microsoft Purview compliance portal:

Microsoft Purview compliance portal for WW and GCC cloud environments

Microsoft Purview compliance portal for GCC-High cloud environments

Microsoft Purview compliance portal for DoD cloud environments

Learn more: Create, test, and tune a DLP policy

ps://compliance.apps.mil/

ps://compliance.microsoft.us/

ps://docs.microsoft.com/microsoft-365/compliance/create-test-tune-dlp-policy?view=o365-world

ps://purview.microsoft.com/compl

ps://www.microsoft.com/microsoft-365/roadmap?filters=&searchterms=933

N/A
MC396179 Admin app in Microsoft Teams https://aka.ms/MSTeamsStore ps://aka.ms/MSTeamsS N/A
MC397430 (Updated) Stream on SharePoint: Video Collections Page There is nothing you need to do to prepare for this change. You may want to notify your users about this change and update your training and documentation as appropriate.

https://www.microsoft.com/microsoft-365/roadmap?filters=&searchterms=93352
There is nothing you need to do to prepare for this change. You may want to notify your users about this change and update your training and documentation as appropriate.

ps://www.microsoft.com/microsoft-365/roadmap?filters=&searchterms=9335
N/A
MC397438 (Updated) Microsoft Purview | DLP Document Fingerprinting support for additional workloads (preview) Access the Data Loss Prevention solution in the Microsoft Purview compliance portal.

Learn more: Learn about Document Fingerprinting

https://docs.microsoft.com/microsoft-365/compliance/document-fingerprinting?view=o365-worldwide

https://purview.microsoft.com/compliance

https://www.microsoft.com/microsoft-365/roadmap?filters=&searchterms=93280
Access the Data Loss Prevention solution in the Microsoft Purview compliance portal.

Learn more: Learn about Document Fingerprinting

ps://docs.microsoft.com/microsoft-365/compliance/document-fingerprinting?view=o365-world

ps://purview.microsoft.com/compl

ps://www.microsoft.com/microsoft-365/roadmap?filters=&searchterms=9328
N/A
MC397444 Microsoft Purview compliance portal: eDiscovery (Premium) supports Teams reactions (GA) Get started by visiting the eDiscovery (Premium) solution in the Microsoft Purview compliance portal.

Learn more:

eDiscovery (Premium) workflow for content in Microsoft Teams

Learn about collections in eDiscovery (Premium)

https://docs.microsoft.com/microsoft-365/compliance/collections-overview?view=o365-worldwide

https://docs.microsoft.com/microsoft-365/compliance/teams-workflow-in-advanced-ediscovery?view=o365-worldwide

https://purview.microsoft.com/compliance

https://www.microsoft.com/microsoft-365/roadmap?filters=&searchterms=65130
Get started by visiting the eDiscovery (Premium) solution in the Microsoft Purview compliance portal.

Learn more:

eDiscovery (Premium) workflow for content in Microsoft Teams

Learn about collections in eDiscovery (Premium)

ps://docs.microsoft.com/microsoft-365/compliance/collections-overview?view=o365-world

ps://docs.microsoft.com/microsoft-365/compliance/teams-workflow-in-advanced-ediscovery?view=o365-world

ps://purview.microsoft.com/compl

ps://www.microsoft.com/microsoft-365/roadmap?filters=&searchterms=6513
N/A
MC397450 Microsoft Purview Records Management – Apply a new retention label at end of retention period (GA) No action is needed to enable this change. However, you may want to communicate this change to your administrators or team responsible for Records Management at your organization.

Access the Records Management solution in the Microsoft Purview compliance portal:

Microsoft Purview compliance portal for WW and GCC cloud environments

Microsoft Purview compliance portal for GCC-High cloud environments

Microsoft Purview compliance portal for DoD cloud environments

To learn more about supported scenarios and cases, please visit our documentation: Configure retention settings to automatically retain or delete content

https://compliance.apps.mil/

https://compliance.microsoft.us/

https://purview.microsoft.com/compliance

https://www.microsoft.com/microsoft-365/roadmap?filters=&searchterms=88827

No action is needed to enable this change. However, you may want to communicate this change to your administrators or team responsible for Records Management at your organization.

Access the Records Management solution in the Microsoft Purview compliance portal:

Microsoft Purview compliance portal for WW and GCC cloud environments

Microsoft Purview compliance portal for GCC-High cloud environments

Microsoft Purview compliance portal for DoD cloud environments

To learn more about supported scenarios and cases, please visit our documentation: Configure retention settings to automatically retain or delete content

ps://compliance.apps.mil/

ps://compliance.microsoft.us/

ps://purview.microsoft.com/compl

ps://www.microsoft.com/microsoft-365/roadmap?filters=&searchterms=88827

N/A
MC397458 (Updated) Outlook Mac now supports retention Policy You do not need do anything to prepare this.

https://www.microsoft.com/microsoft-365/roadmap?rtc=1%26filters=&searchterms=88849
You do not need do anything to prepare this.

ps://www.microsoft.com/microsoft-365/roadmap?rtc=1%26filters=&searchterms=88849
N/A
MC397469 Microsoft 365 Admin Center: Release of the Software Update Page (preview) The information presented on this page relies on diagnostic data being sent to Microsoft. To view the information, you must be assigned one of the following roles:

Global admin

Global reader

Office apps admin

Reports reader

Usage summary reports reader

Intune administrator

Exchange admin

You can find all this information in our current documentation for both Office and Windows.

https://admin.microsoft.com/Adminportal/Home#/softwareupdates

https://docs.microsoft.com/DeployOffice/updates/software-update-status

https://docs.microsoft.com/windows/deployment/update/update-status-admin-center

https://www.microsoft.com/microsoft-365/roadmap?filters=&searchterms=82148

https://www.microsoft.com/microsoft-365/roadmap?filters=&searchterms=88951
The information presented on this page relies on diagnostic data being sent to Microsoft. To view the information, you must be assigned one of the following roles:

Global admin

Global reader

Office apps admin

Reports reader

Usage summary reports reader

Intune administrator

Exchange admin

You can find all this information in our current documentation for both Office and Windows.

ps://admin.microsoft.com/Adminportal/Home#/softwareupda

ps://docs.microsoft.com/DeployOffice/updates/software-update-sta

ps://docs.microsoft.com/windows/deployment/update/update-status-admi

ps://www.microsoft.com/microsoft-365/roadmap?filters=&searchterms=82148

ps://www.microsoft.com/microsoft-365/roadmap?filters=&searchterms=8895
N/A
MC397476 (Updated) Unassign Policies in Bulk in Microsoft Teams Admin Center We recommend reviewing how the policy assignment for users and groups work. You can then review various policies that were intended to be applied to groups, but were also applied to users directly via the Manage users tab available in the Microsoft Teams admin center. Once you have identified policies that need to be cleaned up from individual assignments, go to ‘Users > Manage users’, in the top right corner of the page, select ‘Unassign policies in bulk’ from the Actions drop-down menu. Select a policy type and click ‘Load data’ for a policy. This will give the number of users that are directly assigned to the policy. You can decide whether un-assignment is needed or not.

https://www.microsoft.com/microsoft-365/roadmap?filters=&searchterms=90705
We recommend reviewing how the policy assignment for users and groups work. You can then review various policies that were intended to be applied to groups, but were also applied to users directly via the Manage users tab available in the Microsoft Teams admin center. Once you have identified policies that need to be cleaned up from individual assignments, go to ‘Users > Manage users’, in the top right corner of the page, select ‘Unassign policies in bulk’ from the Actions drop-down menu. Select a policy type and click ‘Load data’ for a policy. This will give the number of users that are directly assigned to the policy. You can decide whether un-assignment is needed or not.

ps://www.microsoft.com/microsoft-365/roadmap?filters=&searchterms=90705
N/A
MC397993 (Updated) Changes for the Microsoft Feedback Portal Please review the policy updates and make the appropriate configurations for your organization.

If you would like to change anything, configure policies at https://config.office.com. Search for Feedback portal and configure for AAD groups as you see fit.

Learn more:

Overview of Office Cloud Policy Service

Learn about Microsoft feedback for your organization

https://docs.microsoft.com/deployoffice/admincenter/overview-office-cloud-policy-service

https://docs.microsoft.com/en-us/microsoft-365/admin/manage/manage-feedback-ms-org?view=o365-worldwide#configure-policies

https://docs.microsoft.com/microsoft-365/admin/misc/feedback-user-control?view=o365-worldwide

Please review the policy updates and make the appropriate configurations for your organization.

If you would like to change anything, configure policies at https://config.office.com. Search for Feedback portal and configure for AAD groups as you see fit.

Learn more:

Overview of Office Cloud Policy Service

Learn about Microsoft feedback for your organization

ps://docs.microsoft.com/deployoffice/admincenter/overview-office-cloud-policy-ser

ps://docs.microsoft.com/en-us/microsoft-365/admin/manage/manage-feedback-ms-org?view=o365-worldwide#configure-polici

ps://docs.microsoft.com/microsoft-365/admin/misc/feedback-user-control?view=o365-world

N/A
MC398248 Microsoft Stream: Stream Web App Admins do not need to take any action. If you're organization is storing videos in Stream (classic) there will be no change to how you view those videos or publish changes to them. Videos stored in Stream (classic) will continue to open and play in the Stream (classic) player.

Most organizations currently store Teams Meeting recording in OneDrive and SharePoint, and these, along with any other videos stored in OneDrive or SharePoint will automatically be played by the Stream web app.

https://www.microsoft.com/microsoft-365/roadmap?rtc=1%26filters=&searchterms=93294
Admins do not need to take any action. If you're organization is storing videos in Stream (classic) there will be no change to how you view those videos or publish changes to them. Videos stored in Stream (classic) will continue to open and play in the Stream (classic) player.

Most organizations currently store Teams Meeting recording in OneDrive and SharePoint, and these, along with any other videos stored in OneDrive or SharePoint will automatically be played by the Stream web app.

ps://www.microsoft.com/microsoft-365/roadmap?rtc=1%26filters=&searchterms=93294
N/A
MC398250 Intelligent Chat Message Translation in Teams iOS and Android Since this update will be turned on automatically, there is no action needed from you. We recommend making your users aware of this feature and updating any necessary documentation if required. https://docs.microsoft.com/en-us/microsoftteams/inline-message-translation-teams

Learn More:

Turn Off Inline Message Translations

Translate A Message in Teams

https://docs.microsoft.com/microsoftteams/inline-message-translation-teams

https://support.microsoft.com/office/translate-a-message-in-teams-d8926ce9-d6a6-47df-a416-f1adb62d3194

https://www.microsoft.com/microsoft-365/roadmap?filters=&searchterms=96481

https://www.microsoft.com/microsoft-365/roadmap?filters=&searchterms=96545

https://www.microsoft.com/translator/business/notrace/
Since this update will be turned on automatically, there is no action needed from you. We recommend making your users aware of this feature and updating any necessary documentation if required. https://docs.microsoft.com/en-us/microsoftteams/inline-message-translation-teams

Learn More:

Turn Off Inline Message Translations

Translate A Message in Teams

ps://docs.microsoft.com/microsoftteams/inline-message-translation-team

ps://support.microsoft.com/office/translate-a-message-in-teams-d8926ce9-d6a6-47df-a416-f1adb62d3194

ps://www.microsoft.com/microsoft-365/roadmap?filters=&searchterms=9648

ps://www.microsoft.com/microsoft-365/roadmap?filters=&searchterms=96545

ps://www.microsoft.com/translator/business/notrace/
N/A
MC399073 (Updated) Microsoft Teams: Automatically end stale Teams meetings https://www.microsoft.com/microsoft-365/roadmap?filters=&searchterms=96710 ps://www.microsoft.com/microsoft-365/roadmap?filters=&searchterms=967 N/A
MC399074 (Updated) Enable Q&A in Teams Meetings via Meeting Options Please inform Meeting Organizers at your organization, who have added the Q&A app via the App Store, to remove the Q&A app from their meetings and only enable Q&A through Meeting Options using these instructions.

Your organization may have requirements to limit which organizers can enable Q&A. You can use PowerShell to manage which organizers can enable Q&A. Please note that the controls to manage the Q&A policy in the Teams admin center is coming in late-July.

https://www.microsoft.com/microsoft-365/roadmap?filters=&searchterms=97020
Please inform Meeting Organizers at your organization, who have added the Q&A app via the App Store, to remove the Q&A app from their meetings and only enable Q&A through Meeting Options using these instructions.

Your organization may have requirements to limit which organizers can enable Q&A. You can use PowerShell to manage which organizers can enable Q&A. Please note that the controls to manage the Q&A policy in the Teams admin center is coming in late-July.

ps://www.microsoft.com/microsoft-365/roadmap?filters=&searchterms=97
N/A
MC399079 Update to ProcessorArchictecture column in device export report for Windows and macOS devices Update your documentation and reporting as needed.

[Additional information]

Intune Graph API - Reports and properties

https://docs.microsoft.com/mem/intune/fundamentals/reports-export-graph-available-reports#deviceswithinventory
Update your documentation and reporting as needed.

[Additional information]

Intune Graph API - Reports and properties

ps://docs.microsoft.com/mem/intune/fundamentals/reports-export-graph-available-reports#deviceswithinventory
N/A
MC399488 Microsoft Defender for Endpoint on Linux and MacOS – Mandatory Update to ‘Required’ URLs List To ensure Microsoft Defender Antivirus cloud-delivered protection works correctly, your security/IT team must configure your network/proxy/internet settings to allow connections between your endpoints and certain Microsoft URLs. To support the new Microsoft Defender for Endpoint on Linux and macOS anti-malware engine enhancements, you must allow-list within the proxy ecosystem in your environment the following URL endpoints:

go.microsoft.com

definitionupdates.microsoft.com

https://www.microsoft.com/security/encyclopedia/adlpackages.aspx

*.wdcp.microsoft.com

*.wd.microsoft.com

Additional information is available in our documentation and also on our blog.

Version Requirements: Minimum version requirements to enable a smooth transition:

The minimum Microsoft Defender for Endpoint version number must be 101.62.64 [Feb 2022 build]

Soon after migration begins, versions older than 101.62.64 will stop getting protection updates

Note: Additionally, to support definitions storage in non-standard locations (outside of /var) for definition updates please ensure that you are at version 101.71.18.

https://docs.microsoft.com/microsoft-365/security/defender-endpoint/configure-proxy-internet?view=o365-worldwide#enable-access-to-microsoft-defender-for-endpoint-service-urls-in-the-proxy-serve
To ensure Microsoft Defender Antivirus cloud-delivered protection works correctly, your security/IT team must configure your network/proxy/internet settings to allow connections between your endpoints and certain Microsoft URLs. To support the new Microsoft Defender for Endpoint on Linux and macOS anti-malware engine enhancements, you must allow-list within the proxy ecosystem in your environment the following URL endpoints:

go.microsoft.com

definitionupdates.microsoft.com

https://www.microsoft.com/security/encyclopedia/adlpackages.aspx

*.wdcp.microsoft.com

*.wd.microsoft.com

Additional information is available in our documentation and also on our blog.

Version Requirements: Minimum version requirements to enable a smooth transition:

The minimum Microsoft Defender for Endpoint version number must be 101.62.64 [Feb 2022 build]

Soon after migration begins, versions older than 101.62.64 will stop getting protection updates

Note: Additionally, to support definitions storage in non-standard locations (outside of /var) for definition updates please ensure that you are at version 101.71.18.

ps://docs.microsoft.com/microsoft-365/security/defender-endpoint/configure-proxy-internet?view=o365-worldwide#enable-access-to-microsoft-defender-for-endpoint-service-urls-in-the-proxy-se
07/30/2022
MC399491 Pop Out Shared Content Into a Separate Window You may want to notify your users about this new capability and update your training and documentation as appropriate.

https://www.microsoft.com/microsoft-365/roadmap?filters=&searchterms=86948
You may want to notify your users about this new capability and update your training and documentation as appropriate.

ps://www.microsoft.com/microsoft-365/roadmap?filters=&searchterms=86948
N/A
MC399708 Take action: July 2022 security update available for all supported versions of Windows https://support.microsoft.com/help/5015807

https://support.microsoft.com/help/5015808

https://support.microsoft.com/help/5015811

https://support.microsoft.com/help/5015814

https://support.microsoft.com/help/5015832

https://support.microsoft.com/help/5015861

https://support.microsoft.com/help/5015862

https://support.microsoft.com/help/5015863

https://support.microsoft.com/help/5015866

https://support.microsoft.com/help/5015870

https://support.microsoft.com/help/5015874

https://support.microsoft.com/help/5015875

https://support.microsoft.com/help/5015877

https://support.microsoft.com/windows/update-windows-3c5ae7fc-9fb6-9af1-1984-b5e0412c556a#WindowsVersion=Windows_11

https://techcommunity.microsoft.com/t5/windows-it-pro-blog/windows-quality-updates-primer/ba-p/2569385

https://www.microsoft.com/en-us/videoplayer/embed/RE50TxI
ps://support.microsoft.com/help/5015807

ps://support.microsoft.com/help/5015808

ps://support.microsoft.com/help/50158

ps://support.microsoft.com/help/5015814

ps://support.microsoft.com/help/501583

ps://support.microsoft.com/help/501586

ps://support.microsoft.com/help/501586

ps://support.microsoft.com/help/5015863

ps://support.microsoft.com/help/5015866

ps://support.microsoft.com/help/501587

ps://support.microsoft.com/help/5015874

ps://support.microsoft.com/help/5015875

ps://support.microsoft.com/help/5015877

ps://support.microsoft.com/windows/update-windows-3c5ae7fc-9fb6-9af1-1984-b5e0412c556a#WindowsVersion=Windows_

ps://techcommunity.microsoft.com/t5/windows-it-pro-blog/windows-quality-updates-primer/ba-p/2569385

ps://www.microsoft.com/en-us/videoplayer/embed/RE50TxI
N/A
MC399860 Enhancing Windows 10 21H2 Experience with Universal Print Qualifying customers are able to begin with Universal Print today. If you have not tried it yet, you can start on the Universal Print portal. You don't have to buy new printers; most manufacturers have updates available to upgrade your existing printer to a Universal Print ready printer.

You can also study the resources available in the Additional Information section, below, to learn more.

[Additional information:]

Universal Print information and latest updates

Universal Print technical overview and demonstrations

What's new with Universal Print in Windows 11

Universal Print ready printers and partner integrations

License Universal Print

https://admin.microsoft.com/adminportal/home?ref=MessageCenter/:/messages/MC314460

https://aka.ms/upintegrations

https://aka.ms/uplicensing

https://docs.microsoft.com/universal-print/fundamentals/universal-print-license

https://https/aka.ms/uplicensing

https://techcommunity.microsoft.com/t5/microsoft-endpoint-manager-blog/universal-print-settings-available-in-microsoft-endpoint-manager/ba-p/3478710

https://techcommunity.microsoft.com/t5/video-hub/universal-print-integration-with-microsoft-365/ba-p/2909519

https://techcommunity.microsoft.com/t5/video-hub/what-s-new-with-universal-print-in-windows-11/ba-p/2909647

https://www.microsoft.com/microsoft-365/windows/universal-print
Qualifying customers are able to begin with Universal Print today. If you have not tried it yet, you can start on the Universal Print portal. You don't have to buy new printers; most manufacturers have updates available to upgrade your existing printer to a Universal Print ready printer.

You can also study the resources available in the Additional Information section, below, to learn more.

[Additional information:]

Universal Print information and latest updates

Universal Print technical overview and demonstrations

What's new with Universal Print in Windows 11

Universal Print ready printers and partner integrations

License Universal Print

ps://admin.microsoft.com/adminportal/home?ref=MessageCenter/:/messages/MC31446

ps://aka.ms/upintegrati

ps://aka.ms/uplicensi

ps://docs.microsoft.com/universal-print/fundamentals/universal-print-lic

ps://https/aka.ms/uplicensi

ps://techcommunity.microsoft.com/t5/microsoft-endpoint-manager-blog/universal-print-settings-available-in-microsoft-endpoint-manager/ba-p/34787

ps://techcommunity.microsoft.com/t5/video-hub/universal-print-integration-with-microsoft-365/ba-p/2909519

ps://techcommunity.microsoft.com/t5/video-hub/what-s-new-with-universal-print-in-windows-11/ba-p/2909647

ps://www.microsoft.com/microsoft-365/windows/universal
N/A
MC399863 Content Type Deletion - Improved Error Messages This does not change/add any new flow to the existing delete operation. We will provide more additional information in case the delete operation fails for content types.

You may want to add this to any documentation or user training and share this with users with relevant permission and who are familiar with using custom content types in your organization.

https://www.microsoft.com/microsoft-365/roadmap?filters=&searchterms=93379
This does not change/add any new flow to the existing delete operation. We will provide more additional information in case the delete operation fails for content types.

You may want to add this to any documentation or user training and share this with users with relevant permission and who are familiar with using custom content types in your organization.

ps://www.microsoft.com/microsoft-365/roadmap?filters=&searchterms=93379
N/A
MC399868 Outlook on the Web: User Experience Update for RSVP There is nothing you need to do to prepare for this change as this update will happen automatically for those using Outlook on the Web. You may want to notify your users about this change and update your training and documentation as appropriate.

https://www.microsoft.com/microsoft-365/roadmap?filters=&searchterms=93326
There is nothing you need to do to prepare for this change as this update will happen automatically for those using Outlook on the Web. You may want to notify your users about this change and update your training and documentation as appropriate.

ps://www.microsoft.com/microsoft-365/roadmap?filters=&searchterms=93326
N/A
MC400168 Hardening changes coming 07/2022: Smart card authentication might cause print and scan failures You must have your non-compliant devices updated and compliant, or replaced by July 19, 2022, when the temporary mitigation will not be usable in security updates.

Additional information:

It is important to ensure that you have your non-compliant devices updated and compliant or replaced. Review the below documentation

KB5005408: Smart card authentication might cause print and scan failures.

CVE-2021-33764: Windows Key Distribution Center Information Disclosure Vulnerability

RFC 4556 specification

https://msrc.microsoft.com/update-guide/vulnerability/CVE-2021-33764

https://support.microsoft.com/topic/kb5005408-smart-card-authentication-might-cause-print-and-scan-failures-514f0bc5-ecde-4e5e-8c5a-2a776d7fb89a

https://www.ietf.org/rfc/rfc4556.txt

You must have your non-compliant devices updated and compliant, or replaced by July 19, 2022, when the temporary mitigation will not be usable in security updates.

Additional information:

It is important to ensure that you have your non-compliant devices updated and compliant or replaced. Review the below documentation

KB5005408: Smart card authentication might cause print and scan failures.

CVE-2021-33764: Windows Key Distribution Center Information Disclosure Vulnerability

RFC 4556 specification

ps://msrc.microsoft.com/update-guide/vulnerability/CVE-2021-33764

ps://support.microsoft.com/topic/kb5005408-smart-card-authentication-might-cause-print-and-scan-failures-514f0bc5-ecde-4e5e-8c5a-2a776d7fb89

ps://www.ietf.org/rfc/rfc4556.tx

07/19/2022
MC400204 Microsoft Teams: External Access Chat Invitation Flow for Managed Organizations There is nothing you need to do to prepare for this change. You may want to notify your users about this change and update your training and documentation as appropriate.

https://www.microsoft.com/microsoft-365/roadmap?filters=&searchterms=94646
There is nothing you need to do to prepare for this change. You may want to notify your users about this change and update your training and documentation as appropriate.

ps://www.microsoft.com/microsoft-365/roadmap?filters=&searchterms=94646
N/A
MC400205 Microsoft Teams and Forms: Ranking Poll There is nothing you need to do to prepare for this change. You may want to notify your users about this change and update your training and documentation as appropriate.

https://www.microsoft.com/microsoft-365/roadmap?filters=&searchterms=94764
There is nothing you need to do to prepare for this change. You may want to notify your users about this change and update your training and documentation as appropriate.

ps://www.microsoft.com/microsoft-365/roadmap?filters=&searchterms=94764
N/A
MC400206 (Updated) Microsoft Teams: Usability Improvements to In-Meeting Notifications There is nothing you need to do to prepare for this change. You may want to notify your users about this change and update your training and documentation as appropriate.

https://www.microsoft.com/microsoft-365/roadmap?filters=&searchterms=96283
There is nothing you need to do to prepare for this change. You may want to notify your users about this change and update your training and documentation as appropriate.

ps://www.microsoft.com/microsoft-365/roadmap?filters=&searchterms=96283
N/A
MC400207 Microsoft Purview Data Loss Prevention: Support for trainable classifiers (preview) Access the Data Loss Prevention solution in the Microsoft Purview compliance portal.

Learn more:

Learn about data loss prevention

Learn about trainable classifiers

What DLP policy templates include

https://docs.microsoft.com/microsoft-365/compliance/classifier-learn-about?view=o365-worldwide

https://docs.microsoft.com/microsoft-365/compliance/dlp-learn-about-dlp?view=o365-worldwide

https://docs.microsoft.com/microsoft-365/compliance/what-the-dlp-policy-templates-include?view=o365-worldwide

https://purview.microsoft.com/compliance

https://www.microsoft.com/microsoft-365/roadmap?filters=&searchterms=88937

Access the Data Loss Prevention solution in the Microsoft Purview compliance portal.

Learn more:

Learn about data loss prevention

Learn about trainable classifiers

What DLP policy templates include

ps://docs.microsoft.com/microsoft-365/compliance/classifier-learn-about?view=o365-world

ps://docs.microsoft.com/microsoft-365/compliance/dlp-learn-about-dlp?view=o365-world

ps://docs.microsoft.com/microsoft-365/compliance/what-the-dlp-policy-templates-include?view=o365-world

ps://purview.microsoft.com/compl

ps://www.microsoft.com/microsoft-365/roadmap?filters=&searchterms=88937

N/A
MC400565 Suggested Replies in Group Chats on Teams Desktop This feature ships default on; review Manage messaging policies in Teams.

If you wish to disable this feature in your tenant, please disable the Suggested Replies setting that is found in Messaging Policies.

Users also have a setting within the app so they can disable the feature.

https://www.microsoft.com/microsoft-365/roadmap?filters=&searchterms=95618
This feature ships default on; review Manage messaging policies in Teams.

If you wish to disable this feature in your tenant, please disable the Suggested Replies setting that is found in Messaging Policies.

Users also have a setting within the app so they can disable the feature.

ps://www.microsoft.com/microsoft-365/roadmap?filters=&searchterms=95618
N/A
MC400566 (Updated) General Availability of Outlook Lite for Android Depending on your organization's needs, you can evaluate and recommend the right Outlook app to your users (existing Outlook Mobile app on Android or Outlook Lite).

Note: Outlook Lite currently does not support Android Work Profile and Mobile Application Management (MAM), it is only applicable to organizations that do not require the same.

https://www.microsoft.com/microsoft-365/roadmap?filters=&searchterms=93383
Depending on your organization's needs, you can evaluate and recommend the right Outlook app to your users (existing Outlook Mobile app on Android or Outlook Lite).

Note: Outlook Lite currently does not support Android Work Profile and Mobile Application Management (MAM), it is only applicable to organizations that do not require the same.

ps://www.microsoft.com/microsoft-365/roadmap?filters=&searchterms=93383
N/A
MC400567 (Updated) Microsoft Purview: New cmdlet for exporting Activity explorer logs (preview) Learn more: Get started with Activity explorer

https://docs.microsoft.com/microsoft-365/compliance/data-classification-activity-explorer?view=o365-worldwide

https://purview.microsoft.com/compliance

https://www.microsoft.com/microsoft-365/roadmap?filters=&searchterms=93281
Learn more: Get started with Activity explorer

ps://docs.microsoft.com/microsoft-365/compliance/data-classification-activity-explorer?view=o365-world

ps://purview.microsoft.com/compl

ps://www.microsoft.com/microsoft-365/roadmap?filters=&searchterms=9328
N/A
MC400568 Microsoft Purview | eDiscovery Premium - Collections progress, statistics, and workflow enhancements (preview) Get started by visiting the eDiscovery (Premium) solution in the Microsoft Purview compliance portal.

Learn more: Learn about collections in eDiscovery (Premium)

https://docs.microsoft.com/microsoft-365/compliance/collections-overview?view=o365-worldwide

https://purview.microsoft.com/compliance

https://www.microsoft.com/microsoft-365/roadmap?filters=&searchterms=93380
Get started by visiting the eDiscovery (Premium) solution in the Microsoft Purview compliance portal.

Learn more: Learn about collections in eDiscovery (Premium)

ps://docs.microsoft.com/microsoft-365/compliance/collections-overview?view=o365-world

ps://purview.microsoft.com/compl

ps://www.microsoft.com/microsoft-365/roadmap?filters=&searchterms=9338
N/A
MC400569 Graph API for Teams Meetings Transcripts Org-wide Application permissions:

Review and accept permissions for apps that require access to Teams Meetings transcripts in your organization (both app and delegated context) through the AAD portal through Enterprise Applications > App Name > Permissions.

Meeting specific RSC Application Permissions:

• Read this to understand how you can control whether you want to allow resource owners to grant RSC permission for apps in meetings directly.

• You can also view the list of RSC permissions for a Teams app in the Teams Admin Center (Team Apps ->Manage apps-> -> Permissions tab).

• Take into consideration whether to notify your users about this new capability and update your training and documentation as appropriate.

https://admin.teams.microsoft.com/

https://docs.microsoft.com/en-us/graph/permissions-reference#online-meetings-permissions

https://docs.microsoft.com/en-us/microsoftteams/platform/graph-api/rsc/resource-specific-consent#resource-specific-permissions-for-a-chat

https://portal.azure.com/

https://www.microsoft.com/microsoft-365/roadmap?filters=&searchterms=95788

Org-wide Application permissions:

Review and accept permissions for apps that require access to Teams Meetings transcripts in your organization (both app and delegated context) through the AAD portal through Enterprise Applications > App Name > Permissions.

Meeting specific RSC Application Permissions:

• Read this to understand how you can control whether you want to allow resource owners to grant RSC permission for apps in meetings directly.

• You can also view the list of RSC permissions for a Teams app in the Teams Admin Center (Team Apps ->Manage apps-> -> Permissions tab).

• Take into consideration whether to notify your users about this new capability and update your training and documentation as appropriate.

ps://admin.teams.microsoft.com/

ps://docs.microsoft.com/en-us/graph/permissions-reference#online-meetings-permissi

ps://docs.microsoft.com/en-us/microsoftteams/platform/graph-api/rsc/resource-specific-consent#resource-specific-permissions-for-a-c

ps://portal.azure.com/

ps://www.microsoft.com/microsoft-365/roadmap?filters=&searchterms=95788

N/A
MC400951 (Updated) Microsoft Teams: Microsoft Teams Rooms on Windows store application 4.13 update You might want to notify your users about this updated experience and update your training and documentation as appropriate.

https://docs.microsoft.com/microsoftteams/rooms/xml-config-file

https://docs.microsoft.com/microsoftteams/teams-end-to-end-encryption

https://support.microsoft.com/office/reduce-background-noise-in-teams-meetings-1a9c6819-137d-4b3b-a1c8-4ab20b234c0d

https://techcommunity.microsoft.com/t5/exchange-team-blog/basic-authentication-deprecation-in-exchange-online-may-2022/ba-p/3301866

https://www.microsoft.com/microsoft-365/roadmap?rtc=1%26filters=&searchterms=95257
You might want to notify your users about this updated experience and update your training and documentation as appropriate.

ps://docs.microsoft.com/microsoftteams/rooms/xml-config-fil

ps://docs.microsoft.com/microsoftteams/teams-end-to-end-encry

ps://support.microsoft.com/office/reduce-background-noise-in-teams-meetings-1a9c6819-137d-4b3b-a1c8-4ab20b234

ps://techcommunity.microsoft.com/t5/exchange-team-blog/basic-authentication-deprecation-in-exchange-online-may-2022/ba-p/3301866

ps://www.microsoft.com/microsoft-365/roadmap?rtc=1%26filters=&searchterms=95257
N/A
MC400977 Record a New Video on the Stream Start Page in Office Web Since this feature will be automatically available, there is nothing you need to do to prepare for this change. In order to try out this new experience, please visit stream.office.com. Visit this page if you have any issues with camera or microphone access.

https://www.microsoft.com/microsoft-365/roadmap?filters=&searchterms=88522
Since this feature will be automatically available, there is nothing you need to do to prepare for this change. In order to try out this new experience, please visit stream.office.com. Visit this page if you have any issues with camera or microphone access.

ps://www.microsoft.com/microsoft-365/roadmap?filters=&searchterms=885
N/A
MC402119 (Updated) OneDrive/SharePoint: Review mode for Word documents You might want to notify your users about this new capability and update your training and documentation as appropriate.

https://www.microsoft.com/microsoft-365/roadmap?filters=&searchterms=93400
You might want to notify your users about this new capability and update your training and documentation as appropriate.

ps://www.microsoft.com/microsoft-365/roadmap?filters=&searchterms=934
N/A
MC402120 Enable media logs remotely with PowerShell cmdlets https://docs.microsoft.com/microsoftteams/log-files#media-logs

https://docs.microsoft.com/powershell/module/teams/get-csteamsmedialoggingpolicy

https://docs.microsoft.com/powershell/module/teams/grant-csteamsmedialoggingpolicy
ps://docs.microsoft.com/microsoftteams/log-files#media-l

ps://docs.microsoft.com/powershell/module/teams/get-csteamsmedialoggingpolicy

ps://docs.microsoft.com/powershell/module/teams/grant-csteamsmedialoggingpolicy
N/A
MC402122 (Updated) Assign Seats in Together Mode We suggest you notify your users about this change and update your training and documentation as appropriate.

https://www.microsoft.com/microsoft-365/roadmap?filters=&searchterms=83648
We suggest you notify your users about this change and update your training and documentation as appropriate.

ps://www.microsoft.com/microsoft-365/roadmap?filters=&searchterms=83648
N/A
MC402123 Microsoft Purview Information Protection – Public preview of Credential SITs Access the Information Protection solution in the Microsoft Purview compliance portal.

Learn more:

Protect your sensitive data with Microsoft Purview

Sensitive information type entity definitions

https://docs.microsoft.com/microsoft-365/compliance/information-protection?view=o365-worldwide

https://docs.microsoft.com/microsoft-365/compliance/sensitive-information-type-entity-definitions?view=o365-worldwide

https://purview.microsoft.com/compliance

https://www.microsoft.com/microsoft-365/roadmap?filters=&searchterms=88941

Access the Information Protection solution in the Microsoft Purview compliance portal.

Learn more:

Protect your sensitive data with Microsoft Purview

Sensitive information type entity definitions

ps://docs.microsoft.com/microsoft-365/compliance/information-protection?view=o365-world

ps://docs.microsoft.com/microsoft-365/compliance/sensitive-information-type-entity-definitions?view=o365-world

ps://purview.microsoft.com/compl

ps://www.microsoft.com/microsoft-365/roadmap?filters=&searchterms=8894

N/A
MC402124 Teams on Mac Universal Binary PKG and Native Apple Silicon Support The is no work required to prepare for this change.

https://www.microsoft.com/microsoft-365/roadmap?filters=Microsoft%20Teams&searchterms=94836
The is no work required to prepare for this change.

ps://www.microsoft.com/microsoft-365/roadmap?filters=Microsoft%20Teams&searchterms=94836
N/A
MC402415 July 2022 Windows non-security preview "C" release available for Windows Server 2022 https://support.microsoft.com/help/5015879

https://techcommunity.microsoft.com/t5/windows-it-pro-blog/windows-quality-updates-primer/ba-p/2569385

https://twitter.com/windowsupdate
ps://support.microsoft.com/help/5015879

ps://techcommunity.microsoft.com/t5/windows-it-pro-blog/windows-quality-updates-primer/ba-p/2569385

ps://twitter.com/wind
N/A
MC402423 (Updated) Ability to manage third-party app subscriptions from Teams Admin Consider updating your end-user documentation and alert your help desk of this upcoming feature.

https://www.microsoft.com/microsoft-365/roadmap?rtc=1%26filters=&searchterms=92484

https://www.microsoft.com/microsoft-365/roadmap?rtc=1%26filters=&searchterms=95920
Consider updating your end-user documentation and alert your help desk of this upcoming feature.

ps://www.microsoft.com/microsoft-365/roadmap?rtc=1%26filters=&searchterms=92484

ps://www.microsoft.com/microsoft-365/roadmap?rtc=1%26filters=&searchterms=959
N/A
MC402427 Viva Engage, replacing Yammer Communities app for Teams Update any existing internal information you may have prepared for your organization regarding the Communities app in Teams to reflect the new Viva Engage app in Teams. Viva Engage will be included in the current Yammer pricing model at no additional cost.

Learn more:

Microsoft Viva Blog post

Yammer Blog post

https://aka.ms/VivaEngage

https://techcommunity.microsoft.com/t5/yammer-blog/introducing-viva-engage/ba-p/3571377

https://www.microsoft.com/microsoft-365/roadmap?rtc=1&searchterms=91117&filters=&searchterms=93409

https://www.youtube.com/watch?v=E_xTiWClwYc
Update any existing internal information you may have prepared for your organization regarding the Communities app in Teams to reflect the new Viva Engage app in Teams. Viva Engage will be included in the current Yammer pricing model at no additional cost.

Learn more:

Microsoft Viva Blog post

Yammer Blog post

ps://aka.ms/VivaEnga

ps://techcommunity.microsoft.com/t5/yammer-blog/introducing-viva-engage/ba-p/3571377

ps://www.microsoft.com/microsoft-365/roadmap?rtc=1&searchterms=91117&filters=&searchterms=93409

ps://www.youtube.com/watch?v=E_xTiWClwY
N/A
MC402707 Windows Subsystem for Linux (WSL) 2 type distros now available on Windows Server 2022 You can start using WSL 2 type distros after installing updates released July 14, 2022 (KB5014678) or later on Windows Server 2022. For guidance and more information, please see WSL 2 distros are now supported on Windows Server.

Additional information:

What is the Windows Subsystem for Linux?

Comparing WSL 1 and WSL 2

https://devblogs.microsoft.com/commandline/wsl-2-distros-are-now-supported-on-windows-server/#wsl-2-distros-are-now-supported-on-windows-server

https://docs.microsoft.com/windows/wsl/about

https://docs.microsoft.com/windows/wsl/compare-versions

https://support.microsoft.com/help/5014678

You can start using WSL 2 type distros after installing updates released July 14, 2022 (KB5014678) or later on Windows Server 2022. For guidance and more information, please see WSL 2 distros are now supported on Windows Server.

Additional information:

What is the Windows Subsystem for Linux?

Comparing WSL 1 and WSL 2

ps://devblogs.microsoft.com/commandline/wsl-2-distros-are-now-supported-on-windows-server/#wsl-2-distros-are-now-supported-on-windows-ser

ps://docs.microsoft.com/windows/wsl/ab

ps://docs.microsoft.com/windows/wsl/compare-versi

ps://support.microsoft.com/help/5014678

N/A
MC402708 Reminder: End of servicing for Windows Server, version 20H2 on August 9, 2022 https://docs.microsoft.com/azure-stack/hci/

https://docs.microsoft.com/lifecycle/announcements/windows-server-20h2-retiring

https://docs.microsoft.com/windows-server/get-started/servicing-channels-comparison#semi-annual-channel

https://docs.microsoft.com/windows-server/get-started/windows-server-release-info
ps://docs.microsoft.com/azure-stack/hci/

ps://docs.microsoft.com/lifecycle/announcements/windows-server-20h2-retiri

ps://docs.microsoft.com/windows-server/get-started/servicing-channels-comparison#semi-annual-channel

ps://docs.microsoft.com/windows-server/get-started/windows-server-release-inf
N/A
MC402939 Windows 7 Devices Will Stop Receiving Security Updates for Microsoft 365 Apps in 6 Months To continue receiving security updates, we recommend that you migrate devices running Windows 7 to a supported OS before January 2023. View the Windows and Office configuration support matrix.

https://docs.microsoft.com/lifecycle/policies/modern

https://go.microsoft.com/fwlink/p/?linkid=2111390

https://www.microsoft.com/microsoft-365/microsoft-365-and-office-resources
To continue receiving security updates, we recommend that you migrate devices running Windows 7 to a supported OS before January 2023. View the Windows and Office configuration support matrix.

ps://docs.microsoft.com/lifecycle/policies/

ps://go.microsoft.com/fwlink/p/?linkid=211139

ps://www.microsoft.com/microsoft-365/microsoft-365-and-office-resourc
01/01/2023
MC402940 Language Interpretation in Microsoft Teams You may want to notify your users about this new capability and update your training and documentation as appropriate.

Learn More:

Now in Public Preview: Language Interpretation

https://techcommunity.microsoft.com/t5/microsoft-teams-public-preview/now-in-public-preview-language-interpretation/m-p/3391876#M717

https://www.microsoft.com/microsoft-365/roadmap?filters=&searchterms=87547
You may want to notify your users about this new capability and update your training and documentation as appropriate.

Learn More:

Now in Public Preview: Language Interpretation

ps://techcommunity.microsoft.com/t5/microsoft-teams-public-preview/now-in-public-preview-language-interpretation/m-p/3391876#M717

ps://www.microsoft.com/microsoft-365/roadmap?filters=&searchterms=87547
N/A
MC403454 Reminder: Removal of temporary mitigation in Windows updates will require compliant printing and scanning devices You must have your devices updated and compliant with this hardening, or replaced by July 21, 2022, when the temporary mitigation will not be usable in security updates.

Additional information:

Review the below documentation

KB5005408: Smart card authentication might cause print and scan failures.

CVE-2021-33764: Windows Key Distribution Center Information Disclosure Vulnerability

RFC 4556 specification

https://msrc.microsoft.com/update-guide/vulnerability/CVE-2021-33764

https://support.microsoft.com/topic/kb5005408-smart-card-authentication-might-cause-print-and-scan-failures-514f0bc5-ecde-4e5e-8c5a-2a776d7fb89a

https://www.ietf.org/rfc/rfc4556.txt

You must have your devices updated and compliant with this hardening, or replaced by July 21, 2022, when the temporary mitigation will not be usable in security updates.

Additional information:

Review the below documentation

KB5005408: Smart card authentication might cause print and scan failures.

CVE-2021-33764: Windows Key Distribution Center Information Disclosure Vulnerability

RFC 4556 specification

ps://msrc.microsoft.com/update-guide/vulnerability/CVE-2021-33764

ps://support.microsoft.com/topic/kb5005408-smart-card-authentication-might-cause-print-and-scan-failures-514f0bc5-ecde-4e5e-8c5a-2a776d7fb89

ps://www.ietf.org/rfc/rfc4556.tx

N/A
MC403644 (Updated) OneDrive: Sharing Experience - Share Menu Dropdown There is no action needed from you at this time. You may want to notify your users about this new capability and update your training and documentation as appropriate.

https://www.microsoft.com/microsoft-365/roadmap?filters=&searchterms=83727
There is no action needed from you at this time. You may want to notify your users about this new capability and update your training and documentation as appropriate.

ps://www.microsoft.com/microsoft-365/roadmap?filters=&searchterms=83727
N/A
MC403645 Microsoft Viva Insights App in Teams: UI Updates, Insights Web App Updates, and End-User Opt Out There is nothing you need to do to prepare for this change. You may want to notify your users about this change and update your training and documentation as appropriate. Users can continue to access documentation at Viva Insights in Microsoft Teams | Microsoft Docs for updates.

Note: Documentation will be updated on an on-going basis until this feature is completely rolled out.

https://community.vivainsights.microsoft.com/t5/General/Viva-Insights-app-in-Teams-UI-refresh/td-p/1918#.YthOmfDaiJY.link

https://www.microsoft.com/microsoft-365/roadmap?filters=&searchterms=93346
There is nothing you need to do to prepare for this change. You may want to notify your users about this change and update your training and documentation as appropriate. Users can continue to access documentation at Viva Insights in Microsoft Teams | Microsoft Docs for updates.

Note: Documentation will be updated on an on-going basis until this feature is completely rolled out.

ps://community.vivainsights.microsoft.com/t5/General/Viva-Insights-app-in-Teams-UI-refresh/td-p/1918#.YthOmfDaiJY.link

ps://www.microsoft.com/microsoft-365/roadmap?filters=&searchterms=93346
N/A
MC403909 Prevent/Fix (Detected): Enable Conditional Access (CA) policy for Outlook Lite on Android Update your documentation and notify your helpdesk as needed. We recommend creating an app-based CA policy with Grant access > Require app protection policy selected, to ensure only managed apps can access your organizations resources.

Additional information

Microsoft Intune protected apps

https://docs.microsoft.com/mem/intune/apps/apps-supported-intune-apps

https://docs.microsoft.com/mem/intune/protect/app-based-conditional-access-intune

https://docs.microsoft.com/mem/intune/protect/app-based-conditional-access-intune-create#to-create-an-app-based-conditional-access-policy

Update your documentation and notify your helpdesk as needed. We recommend creating an app-based CA policy with Grant access > Require app protection policy selected, to ensure only managed apps can access your organizations resources.

Additional information

Microsoft Intune protected apps

ps://docs.microsoft.com/mem/intune/apps/apps-supported-intune-app

ps://docs.microsoft.com/mem/intune/protect/app-based-conditional-access-i

ps://docs.microsoft.com/mem/intune/protect/app-based-conditional-access-intune-create#to-create-an-app-based-conditional-access-policy

N/A
MC403916 Microsoft Viva: Meeting Category Insights Coming to the Viva Insights App in Teams Review and assess the impact for your organization. Consider updating documentation as appropriate. To categorize meetings in Outlook to access these insights, see the following: Assign a color category to a calendar appointment

https://support.microsoft.com/office/assign-a-color-category-to-a-calendar-appointment-meeting-or-event-750596d9-707d-4412-8c0e-7fdc0fc52527

https://www.microsoft.com/microsoft-365/roadmap?filters=&searchterms=93410

https://www.microsoft.com/microsoft-viva/buy-insights?rtc=1&activetab=pivot:overviewta
Review and assess the impact for your organization. Consider updating documentation as appropriate. To categorize meetings in Outlook to access these insights, see the following: Assign a color category to a calendar appointment

ps://support.microsoft.com/office/assign-a-color-category-to-a-calendar-appointment-meeting-or-event-750596d9-707d-4412-8c0e-7fdc0fc52527

ps://www.microsoft.com/microsoft-365/roadmap?filters=&searchterms=934

ps://www.microsoft.com/microsoft-viva/buy-insights?rtc=1&activetab=pivot:overviewta
N/A
MC403922 Plan for Change: Ending support for Windows 8.1 Upgrade your Windows 8.1 devices, if applicable. To determine which users’ devices are running Windows 8.1 navigate to Microsoft Endpoint Manager admin center > Devices > Windows > Windows devices, Filter by OS.

[Additional information]

Windows support lifecycle

Manage operating system versions with Intune

Sideload line of business (LOB) apps in Windows client devices

https://docs.microsoft.com/lifecycle/faq/windows

https://docs.microsoft.com/mem/intune/fundamentals/manage-os-versions

https://docs.microsoft.com/windows/application-management/sideload-apps-in-windows-10

Upgrade your Windows 8.1 devices, if applicable. To determine which users’ devices are running Windows 8.1 navigate to Microsoft Endpoint Manager admin center > Devices > Windows > Windows devices, Filter by OS.

[Additional information]

Windows support lifecycle

Manage operating system versions with Intune

Sideload line of business (LOB) apps in Windows client devices

ps://docs.microsoft.com/lifecycle/faq/wind

ps://docs.microsoft.com/mem/intune/fundamentals/manage-os-versi

ps://docs.microsoft.com/windows/application-management/sideload-apps-in-wind

10/21/2022
MC403935 Preview Unified Update Platform for on-premises update management Act now to register for the UUP on premises private preview by following the steps outlined in the blog post Preview Unified Update Platform for on-premises update management. If not participating in the private preview, consider the outlined steps and capabilities for the public preview and general availability that are coming up next.

Additional information:

Read the blog post for further information: Preview Unified Update Platform for on-premises update management

Sign up for the limited-time preview of UUP on premises: https://aka.ms/UUPPrivatePreview

Learn more about Migrating and acquiring Windows optional content

Look back at Introducing Unified Update Platform (UUP)

https://aka.ms/UUPPrivatePreview

https://blogs.windows.com/windows-insider/2016/11/03/introducing-unified-update-platform-uup/

https://docs.microsoft.com/windows/deployment/update/optional-content

https://techcommunity.microsoft.com/t5/windows-it-pro-blog/preview-unified-update-platform-for-on-premises-update/ba-p/3579889

Act now to register for the UUP on premises private preview by following the steps outlined in the blog post Preview Unified Update Platform for on-premises update management. If not participating in the private preview, consider the outlined steps and capabilities for the public preview and general availability that are coming up next.

Additional information:

Read the blog post for further information: Preview Unified Update Platform for on-premises update management

Sign up for the limited-time preview of UUP on premises: https://aka.ms/UUPPrivatePreview

Learn more about Migrating and acquiring Windows optional content

Look back at Introducing Unified Update Platform (UUP)

ps://aka.ms/UUPPrivatePrevi

ps://blogs.windows.com/windows-insider/2016/11/03/introducing-unified-update-platform-uup/

ps://docs.microsoft.com/windows/deployment/update/optional

ps://techcommunity.microsoft.com/t5/windows-it-pro-blog/preview-unified-update-platform-for-on-premises-update/ba-p/3579889

N/A
MC405566 Multiple-Linked Entity Support in Microsoft To Do There is nothing you need to do to prepare for this change. You may want to notify your users about this change and update your training and documentation as appropriate.

https://www.microsoft.com/microsoft-365/roadmap?filters=&searchterms=93396
There is nothing you need to do to prepare for this change. You may want to notify your users about this change and update your training and documentation as appropriate.

ps://www.microsoft.com/microsoft-365/roadmap?filters=&searchterms=93396
N/A
MC405567 Net Promoter Score Survey for Whiteboard No change is necessary, unless you wish to disable the NPS functionality in Whiteboard. To do this, you can use the Office cloud policy service in the Microsoft 365 Apps admin center.

Sign in to https://config.office.com/ with your Microsoft 365 admin credentials.

Select Customization from the left pane.

Select Policy Management.

Create a new policy configuration or edit an existing one.

In Choose the scope, choose the security group for which you want to apply the policy.

In Configure Settings, choose Allow users to receive and respond to in-product surveys from Microsoft.

In configuration setting, choose either – enabled, disabled, or not configured. The implication of each of these options is mentioned below:

Enabled: NPS survey is available to users

Disabled: NPS survey isn't available to users

Not configured: NPS survey is available to users

Save the policy configuration.

Reassign priority for any security group if required (If two or more policy configurations are applicable to the same set of users, the one with the higher priority is applied).

In case you create a new policy configuration or change the configuration for an existing policy, there will be a delay in the change being reflected as mentioned below:

If there were existing policy configurations prior to the change, then it will take 90 mins for the change to be reflected.

If there were no policy configurations prior to the change then it will take 24 hours for the change to be reflected.

To learn more, visit the Privacy settings in Microsoft Whiteboard page.

https://config.office.com/

https://docs.microsoft.com/deployoffice/admincenter/overview-cloud-policy

https://support.microsoft.com/office/privacy-and-compliance-ed9f0de9-71be-44c2-837d-e0f448660be1#optional

https://www.microsoft.com/microsoft-365/roadmap?filters=&searchterms=93393
No change is necessary, unless you wish to disable the NPS functionality in Whiteboard. To do this, you can use the Office cloud policy service in the Microsoft 365 Apps admin center.

Sign in to https://config.office.com/ with your Microsoft 365 admin credentials.

Select Customization from the left pane.

Select Policy Management.

Create a new policy configuration or edit an existing one.

In Choose the scope, choose the security group for which you want to apply the policy.

In Configure Settings, choose Allow users to receive and respond to in-product surveys from Microsoft.

In configuration setting, choose either – enabled, disabled, or not configured. The implication of each of these options is mentioned below:

Enabled: NPS survey is available to users

Disabled: NPS survey isn't available to users

Not configured: NPS survey is available to users

Save the policy configuration.

Reassign priority for any security group if required (If two or more policy configurations are applicable to the same set of users, the one with the higher priority is applied).

In case you create a new policy configuration or change the configuration for an existing policy, there will be a delay in the change being reflected as mentioned below:

If there were existing policy configurations prior to the change, then it will take 90 mins for the change to be reflected.

If there were no policy configurations prior to the change then it will take 24 hours for the change to be reflected.

To learn more, visit the Privacy settings in Microsoft Whiteboard page.

ps://config.office.com/

ps://docs.microsoft.com/deployoffice/admincenter/overview-cloud-policy

ps://support.microsoft.com/office/privacy-and-compliance-ed9f0de9-71be-44c2-837d-e0f448660be1#optional

ps://www.microsoft.com/microsoft-365/roadmap?filters=&searchterms=93393
N/A
MC405568 (Updated) Addition of Shared Mailboxes to the Mailbox Usage Report There is no action needed to prepare for this change. You may want to notify your users about this change and update any relevant documentation as appropriate.

https://docs.microsoft.com/microsoft-365/admin/activity-reports/mailbox-usage?view=o365-worldwide

https://www.microsoft.com/microsoft-365/roadmap?filters=&searchterms=93398
There is no action needed to prepare for this change. You may want to notify your users about this change and update any relevant documentation as appropriate.

ps://docs.microsoft.com/microsoft-365/admin/activity-reports/mailbox-usage?view=o365-world

ps://www.microsoft.com/microsoft-365/roadmap?filters=&searchterms=93398
N/A
MC405571 Microsoft Purview | eDiscovery API for Microsoft Graph now generally available Learn more:

Manage your eDiscovery workflows

Use the Microsoft Graph eDiscovery API

The following licenses provide the rights to the APIs for eDiscovery (Premium) capabilities:

Microsoft 365 E5/A5

Microsoft 365 E5/A5/F5 Compliance and F5 Security & Compliance

Microsoft 365 E5/A5/F5 eDiscovery and Audit

Microsoft 365 Office E5/A5

Note: The use of the ‘addToReviewSet’ API requires an E5 license (listed above) which provides a seeded capacity without consumption cost until the seeded capacity is reached. Seeded capacity is how much volume an app can consume before having to pay usage fees. Capacity is pooled at the tenant level—the seeded capacity for all users in the tenant is added up and compared against the app's usage in the tenant. Once seeded capacity is exceeded, consumption meters will kick in. Consumption meter charges for the ‘addToReviewSet’ API usage beyond available seeded capacity is planned to commence in CY2023. A 90-day notice will be provided before these charges go into effect.

APISeeded capacityPrice for additional useExample

addToReviewSet 1 GB per licensed user per month – pooled at the tenant level $15/GBAn organization with 10,000 E5 licenses will get 10,000 GB per month pooled at the tenant level.

If the organization uses 10,500 GB a month they will be charged $7,500 (500 GB x $15/GB).

If the organization uses 9500 GB a month, they will not get charged any additional fee for the API usage and there is no carry over of 500 GB to the following month.

https://docs.microsoft.com/en-us/graph/api/resources/security-ediscoveryfile?view=graph-rest-beta

https://docs.microsoft.com/graph/api/resources/security-ediscoverycase?view=graph-rest-1.0

https://docs.microsoft.com/graph/api/resources/security-ediscoveryexportoperation?view=graph-rest-beta

https://docs.microsoft.com/graph/api/resources/security-ediscoveryholdpolicy?view=graph-rest-beta

https://docs.microsoft.com/graph/api/security-ediscoveryexportoperation-getdownloadurl?view=graph-rest-beta

https://docs.microsoft.com/graph/api/security-ediscoveryreviewset-addtoreviewset?view=graph-rest-1.0&tabs=http

https://docs.microsoft.com/graph/api/security-ediscoveryreviewset-export?view=graph-rest-beta&tabs=http

https://docs.microsoft.com/graph/api/security-ediscoveryreviewsetquery-run?view=graph-rest-beta&tabs=http

https://docs.microsoft.com/graph/api/security-ediscoverysearch-purgedata?view=graph-rest-beta&tabs=http

https://docs.microsoft.com/graph/security-concept-overview#build-custom-ediscovery-workflows-with-microsoft-graph

https://www.microsoft.com/en-us/microsoft-365/roadmap?filters=&searchterms=63068

Learn more:

Manage your eDiscovery workflows

Use the Microsoft Graph eDiscovery API

The following licenses provide the rights to the APIs for eDiscovery (Premium) capabilities:

Microsoft 365 E5/A5

Microsoft 365 E5/A5/F5 Compliance and F5 Security & Compliance

Microsoft 365 E5/A5/F5 eDiscovery and Audit

Microsoft 365 Office E5/A5

Note: The use of the ‘addToReviewSet’ API requires an E5 license (listed above) which provides a seeded capacity without consumption cost until the seeded capacity is reached. Seeded capacity is how much volume an app can consume before having to pay usage fees. Capacity is pooled at the tenant level—the seeded capacity for all users in the tenant is added up and compared against the app's usage in the tenant. Once seeded capacity is exceeded, consumption meters will kick in. Consumption meter charges for the ‘addToReviewSet’ API usage beyond available seeded capacity is planned to commence in CY2023. A 90-day notice will be provided before these charges go into effect.

APISeeded capacityPrice for additional useExample

addToReviewSet 1 GB per licensed user per month – pooled at the tenant level $15/GBAn organization with 10,000 E5 licenses will get 10,000 GB per month pooled at the tenant level.

If the organization uses 10,500 GB a month they will be charged $7,500 (500 GB x $15/GB).

If the organization uses 9500 GB a month, they will not get charged any additional fee for the API usage and there is no carry over of 500 GB to the following month.

ps://docs.microsoft.com/en-us/graph/api/resources/security-ediscoveryfile?view=graph-rest-b

ps://docs.microsoft.com/graph/api/resources/security-ediscoverycase?view=graph-r

ps://docs.microsoft.com/graph/api/resources/security-ediscoveryexportoperation?view=graph-rest-b

ps://docs.microsoft.com/graph/api/resources/security-ediscoveryholdpolicy?view=graph-rest-b

ps://docs.microsoft.com/graph/api/security-ediscoveryexportoperation-getdownloadurl?view=graph-rest-b

ps://docs.microsoft.com/graph/api/security-ediscoveryreviewset-addtoreviewset?view=graph-rest-1.0&tab

ps://docs.microsoft.com/graph/api/security-ediscoveryreviewset-export?view=graph-rest-beta&tab

ps://docs.microsoft.com/graph/api/security-ediscoveryreviewsetquery-run?view=graph-rest-beta&tab

ps://docs.microsoft.com/graph/api/security-ediscoverysearch-purgedata?view=graph-rest-beta&tab

ps://docs.microsoft.com/graph/security-concept-overview#build-custom-ediscovery-workflows-with-microsoft-grap

ps://www.microsoft.com/en-us/microsoft-365/roadmap?filters=&searchterms=63068

N/A
MC405572 Microsoft Purview Data Lifecycle If you have retention labels that are only published to SharePoint site locations and need them to be visible for group-connected sites, make sure that the Microsoft 365 Groups location is selected on the policy.

If you have retention labels that you would like to only show on non-group connected SharePoint sites, confirm that the Microsoft 365 Groups location is not selected on the policy.

Labels published to Microsoft 365 Groups will apply to group-connected SharePoint sites as well as the group mailboxes. If you do not wish to have labels available in the group mailboxes, this can be configured by using PowerShell cmdlets. Learn more here: Create and publish retention labels by using PowerShell

No action is needed to enable this change; however you may want to communicate this change to your users or team responsible for Data Lifecycle Management and Records Management at your organization.

You can access the Data Lifecycle Management and Records Management solutions in the Microsoft Purview compliance portal.

https://docs.microsoft.com/microsoft-365/compliance/bulk-create-publish-labels-using-powershell?view=o365-worldwide

https://purview.microsoft.com/compliance
If you have retention labels that are only published to SharePoint site locations and need them to be visible for group-connected sites, make sure that the Microsoft 365 Groups location is selected on the policy.

If you have retention labels that you would like to only show on non-group connected SharePoint sites, confirm that the Microsoft 365 Groups location is not selected on the policy.

Labels published to Microsoft 365 Groups will apply to group-connected SharePoint sites as well as the group mailboxes. If you do not wish to have labels available in the group mailboxes, this can be configured by using PowerShell cmdlets. Learn more here: Create and publish retention labels by using PowerShell

No action is needed to enable this change; however you may want to communicate this change to your users or team responsible for Data Lifecycle Management and Records Management at your organization.

You can access the Data Lifecycle Management and Records Management solutions in the Microsoft Purview compliance portal.

ps://docs.microsoft.com/microsoft-365/compliance/bulk-create-publish-labels-using-powershell?view=o365-world

ps://purview.microsoft.com/compl
N/A
MC405984 Site Limits for SharePoint Lists, Libraries, and Subsites Share these limits with people who manage SharePoint sites in your organization. If the sites in your tenant are below the limits, this change will not impact you.

It is uncommon for the organic growth of site to reach these limits. However, there is a possibility that custom solutions can generate a high volume of lists and libraries. In that situation, our recommendation is to work with their solution providers to prepare an alternative solution in order to stay compliant with these limits.

Additional Information:

SharePoint limits - Service Descriptions | Microsoft Docs

https://docs.microsoft.com/office365/servicedescriptions/sharepoint-online-service-description/sharepoint-online-limits#lists-and-libraries
Share these limits with people who manage SharePoint sites in your organization. If the sites in your tenant are below the limits, this change will not impact you.

It is uncommon for the organic growth of site to reach these limits. However, there is a possibility that custom solutions can generate a high volume of lists and libraries. In that situation, our recommendation is to work with their solution providers to prepare an alternative solution in order to stay compliant with these limits.

Additional Information:

SharePoint limits - Service Descriptions | Microsoft Docs

ps://docs.microsoft.com/office365/servicedescriptions/sharepoint-online-service-description/sharepoint-online-limits#lists-and-librari
N/A
MC405987 Microsoft Teams Real-Time Analytics - Extended Telemetry Preview During this time, we encourage IT admins to continue to use Real-Time Analytics to support Microsoft Teams users in their organizations and evaluate the advantages provided by the extended history. IT admins who wish to continue using the extended history should consider acquiring the Advanced Communications add-on license.

https://docs.microsoft.com/microsoftteams/teams-add-on-licensing/advanced-communications
During this time, we encourage IT admins to continue to use Real-Time Analytics to support Microsoft Teams users in their organizations and evaluate the advantages provided by the extended history. IT admins who wish to continue using the extended history should consider acquiring the Advanced Communications add-on license.

ps://docs.microsoft.com/microsoftteams/teams-add-on-licensing/advanced-communicati
N/A
MC405990 Communication Compliance: Accelerate onboarding with step-by-step guidance (preview) You can access the Communication Compliance solution in the Microsoft Purview compliance portal.

Learn more:

Learn about Communication Compliance

Get started with Communication Compliance

https://docs.microsoft.com/microsoft-365/compliance/communication-compliance?view=o365-worldwide

https://docs.microsoft.com/microsoft-365/compliance/communication-compliance-configure?view=o365-worldwide

https://purview.microsoft.com/compliance

https://www.microsoft.com/microsoft-365/roadmap?filters=&searchterms=88919

You can access the Communication Compliance solution in the Microsoft Purview compliance portal.

Learn more:

Learn about Communication Compliance

Get started with Communication Compliance

ps://docs.microsoft.com/microsoft-365/compliance/communication-compliance?view=o365-world

ps://docs.microsoft.com/microsoft-365/compliance/communication-compliance-configure?view=o365-world

ps://purview.microsoft.com/compl

ps://www.microsoft.com/microsoft-365/roadmap?filters=&searchterms=88919

N/A
MC405999 July 2022 Windows non-security preview "C" release available for all supported versions of Windows https://support.microsoft.com/help/5015878

https://support.microsoft.com/help/5015879

https://support.microsoft.com/help/5015880

https://support.microsoft.com/help/5015882

https://techcommunity.microsoft.com/t5/windows-it-pro-blog/windows-quality-updates-primer/ba-p/2569385

https://twitter.com/windowsupdate
ps://support.microsoft.com/help/5015878

ps://support.microsoft.com/help/5015879

ps://support.microsoft.com/help/501588

ps://support.microsoft.com/help/501588

ps://techcommunity.microsoft.com/t5/windows-it-pro-blog/windows-quality-updates-primer/ba-p/2569385

ps://twitter.com/wind
N/A
MC406226 Plan for Change: Significant changes coming to the Windows Diagnostic data processor configuration Ensure that you meet the prerequisites for Windows diagnostic data processor configuration, join your devices to Azure AD, and keep your devices secure and up to date with quality updates. If you're outside of the EU or EFTA, the organization must sign up for any of the following enterprise services:

Update Compliance

Windows Update for Business deployment service

Microsoft Managed Desktop

Endpoint analytics (in Microsoft Endpoint Manager)

(Additional licensing requirements may apply to use these services.)

If you don’t sign up for any of these enterprise services, Microsoft will act as the controller for the diagnostic data in accordance with the Microsoft Privacy Statement and the Data Protection Addendum terms won't apply. Please review the detailed documentation in MC391866 for additional information.

https://aka.ms/configwddenterprise

https://blogs.microsoft.com/eupolicy/2021/05/06/eu-data-boundary/

https://docs.microsoft.com/azure/cost-management-billing/manage/change-azure-account-profile

https://docs.microsoft.com/en-us/windows/privacy/configure-windows-diagnostic-data-in-your-organization

https://docs.microsoft.com/managed-desktop/intro/

https://docs.microsoft.com/mem/analytics/overview

https://docs.microsoft.com/windows/deployment/update/deployment-service-overview

https://docs.microsoft.com/windows/deployment/update/update-compliance-monitor

https://docs.microsoft.com/windows/release-health/windows-message-center#2837

https://docs.microsoft.com/windows-insider/flighting#dev-channel

https://privacy.microsoft.com/privacystatement

https://www.microsoft.com/licensing/docs/view/Microsoft-Products-and-Services-Data-Protection-Addendum-DPA
Ensure that you meet the prerequisites for Windows diagnostic data processor configuration, join your devices to Azure AD, and keep your devices secure and up to date with quality updates. If you're outside of the EU or EFTA, the organization must sign up for any of the following enterprise services:

Update Compliance

Windows Update for Business deployment service

Microsoft Managed Desktop

Endpoint analytics (in Microsoft Endpoint Manager)

(Additional licensing requirements may apply to use these services.)

If you don’t sign up for any of these enterprise services, Microsoft will act as the controller for the diagnostic data in accordance with the Microsoft Privacy Statement and the Data Protection Addendum terms won't apply. Please review the detailed documentation in MC391866 for additional information.

ps://aka.ms/configwddenterpri

ps://blogs.microsoft.com/eupolicy/2021/05/06/eu-data-boundary/

ps://docs.microsoft.com/azure/cost-management-billing/manage/change-azure-account-profil

ps://docs.microsoft.com/en-us/windows/privacy/configure-windows-diagnostic-data-in-your-organiz

ps://docs.microsoft.com/managed-desktop/intro/

ps://docs.microsoft.com/mem/analytics/overvi

ps://docs.microsoft.com/windows/deployment/update/deployment-service-overvi

ps://docs.microsoft.com/windows/deployment/update/update-complianc

ps://docs.microsoft.com/windows/release-health/windows-message-center#2837

ps://docs.microsoft.com/windows-insider/flighting#dev-channel

ps://privacy.microsoft.com/privacy

ps://www.microsoft.com/licensing/docs/view/Microsoft-Products-and-Services-Data-Protection-Addendum-DPA
N/A
MC406232 Microsoft Office Translator Add-in retiring in September 2022 There is nothing you need to do to prepare for this change. You may want to notify your users about this change and update your training and documentation as appropriate.

https://appsource.microsoft.com/product/office/WA104124372
There is nothing you need to do to prepare for this change. You may want to notify your users about this change and update your training and documentation as appropriate.

ps://appsource.microsoft.com/product/office/WA10412437
N/A
MC406234 (Updated) Customizable dashboard in Teams admin center You might want to notify your Teams administrators about this new capability and update your training and documentation as appropriate.

https://www.microsoft.com/microsoft-365/roadmap?filters=&searchterms=85703
You might want to notify your Teams administrators about this new capability and update your training and documentation as appropriate.

ps://www.microsoft.com/microsoft-365/roadmap?filters=&searchterms=85703
N/A
MC406239 Share to Teams from a Teams Personal App or Tab You may consider updating your training and documentation as appropriate.

Learn more: Share to Teams from personal app or tab

https://docs.microsoft.com/microsoftteams/platform/concepts/build-and-test/share-to-teams-from-personal-app-or-tab

https://www.microsoft.com/microsoft-365/roadmap?rtc=1%26filters=&searchterms=91117
You may consider updating your training and documentation as appropriate.

Learn more: Share to Teams from personal app or tab

ps://docs.microsoft.com/microsoftteams/platform/concepts/build-and-test/share-to-teams-from-personal-app-or-tab

ps://www.microsoft.com/microsoft-365/roadmap?rtc=1%26filters=&searchterms=91117
N/A
MC406259 (Updated) Forms: Distribute your forms by using Teams as a new channel You may consider updating your training and documentation as appropriate.

https://www.microsoft.com/microsoft-365/roadmap?rtc=1&searchterms=91117&filters=&searchterms=93394
You may consider updating your training and documentation as appropriate.

ps://www.microsoft.com/microsoft-365/roadmap?rtc=1&searchterms=91117&filters=&searchterms=93394
N/A
MC406648 Microsoft Teams Integration in Open LMS To begin using Microsoft Teams meetings in your LMS, please visit this page. Please visit this page to learn more about setup.

https://docs.microsoft.com/microsoft-365/lti/open-lms-plugin-configuration?view=o365-worldwide

https://support.microsoft.com/topic/use-microsoft-teams-meetings-in-your-lms-11b6095d-f90b-42b9-ab77-4dcff2bb3b76#ID0EBD=Open_LMS

https://www.microsoft.com/microsoft-365/roadmap?filters=&searchterms=96666
To begin using Microsoft Teams meetings in your LMS, please visit this page. Please visit this page to learn more about setup.

ps://docs.microsoft.com/microsoft-365/lti/open-lms-plugin-configuration?view=o365-world

ps://support.microsoft.com/topic/use-microsoft-teams-meetings-in-your-lms-11b6095d-f90b-42b9-ab77-4dcff2bb3b76#ID0EBD=Open_LMS

ps://www.microsoft.com/microsoft-365/roadmap?filters=&searchterms=96666
N/A
MC406657 What’s new in the Microsoft Intune Service Update for July 2022 https://aka.ms/MEMServiceChangeBlog

https://aka.ms/MEMWN2207

https://techcommunity.microsoft.com/t5/intune-customer-success/microsoft-intune-service-updates/ba-p/358728
ps://aka.ms/MEMServiceChangeBl

ps://aka.ms/MEMWN2207

ps://techcommunity.microsoft.com/t5/intune-customer-success/microsoft-intune-service-updates/ba-p/358728
N/A
MC407049 Microsoft Purview eDiscovery (Premium): Use Graph connectors as a data source (preview) Access the eDiscovery (Premium) solution in the Microsoft Purview compliance portal.

Learn more: Microsoft Purview eDiscovery Graph connectors

https://docs.microsoft.com/microsoft-365/compliance/ediscovery-graph-connector?view=o365-worldwide

https://purview.microsoft.com/compliance

https://www.microsoft.com/microsoft-365/roadmap?filters=&searchterms=93414
Access the eDiscovery (Premium) solution in the Microsoft Purview compliance portal.

Learn more: Microsoft Purview eDiscovery Graph connectors

ps://docs.microsoft.com/microsoft-365/compliance/ediscovery-graph-connector?view=o365-world

ps://purview.microsoft.com/compl

ps://www.microsoft.com/microsoft-365/roadmap?filters=&searchterms=93414
N/A
MC407050 Retirement of Exchange Online PowerShell with MFA We recommend using the Exchange Online PowerShell V2 module (EXO V2 module), which uses modern authentication, and supports accounts with or without MFA.

For installation and connection instructions, see Install and maintain the EXO V2 module and Connect to Exchange Online PowerShell.

For more information about the different versions of Exchange Online PowerShell modules, see Understanding the Different Versions of Exchange Online PowerShell Modules and Basic Auth.

https://docs.microsoft.com/powershell/exchange/connect-to-exchange-online-powershell?view=exchange-ps

https://docs.microsoft.com/powershell/exchange/v1-module-mfa-connect-to-exo-powershell?view=exchange-ps

https://techcommunity.microsoft.com/t5/exchange-team-blog/understanding-the-different-versions-of-exchange-online/ba-p/3394487

We recommend using the Exchange Online PowerShell V2 module (EXO V2 module), which uses modern authentication, and supports accounts with or without MFA.

For installation and connection instructions, see Install and maintain the EXO V2 module and Connect to Exchange Online PowerShell.

For more information about the different versions of Exchange Online PowerShell modules, see Understanding the Different Versions of Exchange Online PowerShell Modules and Basic Auth.

ps://docs.microsoft.com/powershell/exchange/connect-to-exchange-online-powershell?view=exchange-p

ps://docs.microsoft.com/powershell/exchange/v1-module-mfa-connect-to-exo-powershell?view=exchange-p

ps://techcommunity.microsoft.com/t5/exchange-team-blog/understanding-the-different-versions-of-exchange-online/ba-p/3394487

12/31/2022
MC407051 Migration of compliance management features from Classic EAC to Microsoft Purview Data Lifecycle Management No action is needed to enable this change. However, you may want to communicate this change to your Exchange administrators or team responsible for working on Exchange compliance management at your organization. The users of these features will want to get acquainted with the new UI experience in the Microsoft Purview compliance portal.

You can access the Insider Risk Management solution here:

Microsoft Purview compliance portal for WW and GCC cloud environments

Microsoft Purview compliance portal for GCC-High cloud environments

Microsoft Purview compliance portal for DoD cloud environments

Learn more: Learn about retention policies & labels to automatically retain or delete content

https://compliance.apps.mil/

https://compliance.microsoft.us/

https://docs.microsoft.com/microsoft-365/compliance/retention?view=o365-worldwide

https://purview.microsoft.com/compliance

https://www.microsoft.com/microsoft-365/roadmap?filters=&searchterms=93284

No action is needed to enable this change. However, you may want to communicate this change to your Exchange administrators or team responsible for working on Exchange compliance management at your organization. The users of these features will want to get acquainted with the new UI experience in the Microsoft Purview compliance portal.

You can access the Insider Risk Management solution here:

Microsoft Purview compliance portal for WW and GCC cloud environments

Microsoft Purview compliance portal for GCC-High cloud environments

Microsoft Purview compliance portal for DoD cloud environments

Learn more: Learn about retention policies & labels to automatically retain or delete content

ps://compliance.apps.mil/

ps://compliance.microsoft.us/

ps://docs.microsoft.com/microsoft-365/compliance/retention?view=o365-world

ps://purview.microsoft.com/compl

ps://www.microsoft.com/microsoft-365/roadmap?filters=&searchterms=93284

N/A
MC408406 Reminder: Active Directory Domain Services Elevation of Privilege Vulnerability hardening changes as of April 11, 2023 To protect your environment and avoid outages, please complete the following steps:

Update all devices that host the Active Directory domain controller role by installing the latest Windows updates. This implements the changes in Audit mode by default.

Monitor the Directory Service event log for 3044-3056 events on domain controllers that have the November 9, 2021, or later Windows updates released before programmatic Enforcement mode. Logged events indicate that a user might have excessive privileges to create computer accounts with arbitrary security-sensitive attributes. Report any unexpected scenarios to Microsoft using a Premier or Unified Support case or the Feedback Hub. See the "Newly added events" section in the KB5008383: Active Directory permissions updates (CVE-2021-42291).

If Audit mode does not detect any unexpected privileges for a sufficient length of time, switch to Enforcement mode to ensure that no negative results occur. Report any unexpected scenarios to Microsoft using a Premier or Unified Support case or the Feedback Hub. Important Enforcement mode will be turned on by default in an upcoming update no sooner than April 11, 2023.

Additional information:

Active Directory Domain Services Elevation of Privilege Vulnerability

Active Directory permissions updates.

KB5008383: Active Directory permissions updates (CVE-2021-42291)

https://msrc.microsoft.com/update-guide/vulnerability/CVE-2021-42291

https://support.microsoft.com/en-us/topic/536d5555-ffba-4248-a60e-d6cbc849cde1

https://support.microsoft.com/en-us/topic/kb5008383-active-directory-permissions-updates-cve-2021-42291-536d5555-ffba-4248-a60e-d6cbc849cde1

To protect your environment and avoid outages, please complete the following steps:

Update all devices that host the Active Directory domain controller role by installing the latest Windows updates. This implements the changes in Audit mode by default.

Monitor the Directory Service event log for 3044-3056 events on domain controllers that have the November 9, 2021, or later Windows updates released before programmatic Enforcement mode. Logged events indicate that a user might have excessive privileges to create computer accounts with arbitrary security-sensitive attributes. Report any unexpected scenarios to Microsoft using a Premier or Unified Support case or the Feedback Hub. See the "Newly added events" section in the KB5008383: Active Directory permissions updates (CVE-2021-42291).

If Audit mode does not detect any unexpected privileges for a sufficient length of time, switch to Enforcement mode to ensure that no negative results occur. Report any unexpected scenarios to Microsoft using a Premier or Unified Support case or the Feedback Hub. Important Enforcement mode will be turned on by default in an upcoming update no sooner than April 11, 2023.

Additional information:

Active Directory Domain Services Elevation of Privilege Vulnerability

Active Directory permissions updates.

KB5008383: Active Directory permissions updates (CVE-2021-42291)

ps://msrc.microsoft.com/update-guide/vulnerability/CVE-2021-4229

ps://support.microsoft.com/en-us/topic/536d5555-ffba-4248-a60e-d6cbc849cd

ps://support.microsoft.com/en-us/topic/kb5008383-active-directory-permissions-updates-cve-2021-42291-536d5555-ffba-4248-a60e-d6cbc849cd

04/11/2023
MC408435 (Updated) Microsoft Teams: Start a Teams Chat with Distribution Groups, Mail-Enabled Security Groups, and O365 Groups There is nothing you need to do to prepare for this change. You may want to notify your users about this change and update your training and documentation as appropriate.

https://www.microsoft.com/microsoft-365/roadmap?filters=&searchterms=62354
There is nothing you need to do to prepare for this change. You may want to notify your users about this change and update your training and documentation as appropriate.

ps://www.microsoft.com/microsoft-365/roadmap?filters=&searchterms=62354
N/A
MC408437 (Updated) Microsoft Viva: Recommendations to Send Praise in Viva Insights There is nothing you need to do to prepare for this change. You may want to notify your users about this change and update your training and documentation as appropriate.

Pleas refer to Praise with Viva Insights | Microsoft Docs for more information, which will be updated in sync with this roll out.

https://www.microsoft.com/microsoft-365/roadmap?rtc=1%26filters=&searchterms=93421
There is nothing you need to do to prepare for this change. You may want to notify your users about this change and update your training and documentation as appropriate.

Pleas refer to Praise with Viva Insights | Microsoft Docs for more information, which will be updated in sync with this roll out.

ps://www.microsoft.com/microsoft-365/roadmap?rtc=1%26filters=&searchterms=9342
N/A
MC408687 Pre-assign Channel members to Breakout Rooms There is no action needed to prepare for this change. You may want to notify your users about this change and update any relevant documentation as appropriate

https://www.microsoft.com/microsoft-365/roadmap?filters=&searchterms=96350
There is no action needed to prepare for this change. You may want to notify your users about this change and update any relevant documentation as appropriate

ps://www.microsoft.com/microsoft-365/roadmap?filters=&searchterms=9635
N/A
MC408689 View Video Recordings and Attendance Reports Inside LMS There is nothing you need to do to prepare for this change. You may want to notify your users about this change and update your training and documentation as appropriate. Scroll down to item seven in this link to learn more about LTI and LMS integrations.

https://techcommunity.microsoft.com/t5/education-blog/what-s-new-in-microsoft-teams-for-education-june-2022/ba-p/3500661#ltilms

https://www.microsoft.com/microsoft-365/roadmap?filters=&searchterms=96402
There is nothing you need to do to prepare for this change. You may want to notify your users about this change and update your training and documentation as appropriate. Scroll down to item seven in this link to learn more about LTI and LMS integrations.

ps://techcommunity.microsoft.com/t5/education-blog/what-s-new-in-microsoft-teams-for-education-june-2022/ba-p/3500661#ltilm

ps://www.microsoft.com/microsoft-365/roadmap?filters=&searchterms=964
N/A
MC408694 New 'Activity' Column in OneDrive 'My Files' list view There is nothing you need to do to prepare for this change. You may want to notify your users about this change and update your training and documentation as appropriate.

https://www.microsoft.com/microsoft-365/roadmap?filters=&searchterms=88913
There is nothing you need to do to prepare for this change. You may want to notify your users about this change and update your training and documentation as appropriate.

ps://www.microsoft.com/microsoft-365/roadmap?filters=&searchterms=88913
N/A
MC408994 (Updated) Private drafts for SharePoint pages and news You do not need to do anything to prepare for this update, but you may want to let your users know about these improvements.

More information available here: Create a private SharePoint page or news post

https://support.microsoft.com/office/create-a-private-sharepoint-page-or-news-post-e9aa12cc-1ced-4152-bc1b-85dc0192fafe

https://www.microsoft.com/microsoft-365/roadmap?filters=&searchterms=85629
You do not need to do anything to prepare for this update, but you may want to let your users know about these improvements.

More information available here: Create a private SharePoint page or news post

ps://support.microsoft.com/office/create-a-private-sharepoint-page-or-news-post-e9aa12cc-1ced-4152-bc1b-85dc0192faf

ps://www.microsoft.com/microsoft-365/roadmap?filters=&searchterms=85629
N/A
MC408995 Link Unfurling in Share to Teams Admins, Tenants and Users don't need to do anything to enable this feature. If App based link unfurling is enabled for normal Teams messages, it will be auto enabled in 'Share to Teams'.

https://www.microsoft.com/en-us/microsoft-365/roadmap?rtc=1&searchterms=88849&filters=&searchterms=91118
Admins, Tenants and Users don't need to do anything to enable this feature. If App based link unfurling is enabled for normal Teams messages, it will be auto enabled in 'Share to Teams'.

ps://www.microsoft.com/en-us/microsoft-365/roadmap?rtc=1&searchterms=88849&filters=&searchterms=91118
N/A
MC409010 Safeguard holds with the Windows Update for Business deployment service If you already use the Windows Update for Business deployment service and meet basic prerequisites, safeguard holds apply to your deployments by default. To check your prerequisites and enable safeguard hold protections, configure devices to share diagnostic data with Microsoft as described in the blog post Safeguard holds with the Windows Update for Business deployment service. If you do not yet use Windows Update for Business deployment service, consider enrolling today.

Additional information:

Learn more about safeguard holds for known issues and likely issues, as well as how to monitor them:

Safeguard holds with the Windows Update for Business deployment service (IT Pro Blog)

Windows Update for Business deployment service (Docs)

Access safeguard hold details with Update Compliance (Windows IT Pro Blog)

Safeguard holds (Docs)

https://docs.microsoft.com/windows/deployment/update/deployment-service-overview#how-to-enable-deployment-protections

https://docs.microsoft.com/windows/deployment/update/safeguard-holds

https://techcommunity.microsoft.com/t5/windows-it-pro-blog/access-safeguard-hold-details-with-update-compliance/ba-p/1809652

https://techcommunity.microsoft.com/t5/windows-it-pro-blog/safeguard-holds-with-the-windows-update-for-business-deployment/ba-p/3590463

If you already use the Windows Update for Business deployment service and meet basic prerequisites, safeguard holds apply to your deployments by default. To check your prerequisites and enable safeguard hold protections, configure devices to share diagnostic data with Microsoft as described in the blog post Safeguard holds with the Windows Update for Business deployment service. If you do not yet use Windows Update for Business deployment service, consider enrolling today.

Additional information:

Learn more about safeguard holds for known issues and likely issues, as well as how to monitor them:

Safeguard holds with the Windows Update for Business deployment service (IT Pro Blog)

Windows Update for Business deployment service (Docs)

Access safeguard hold details with Update Compliance (Windows IT Pro Blog)

Safeguard holds (Docs)

ps://docs.microsoft.com/windows/deployment/update/deployment-service-overview#how-to-enable-deployment-protecti

ps://docs.microsoft.com/windows/deployment/update/safeguard-hold

ps://techcommunity.microsoft.com/t5/windows-it-pro-blog/access-safeguard-hold-details-with-update-compliance/ba-p/180965

ps://techcommunity.microsoft.com/t5/windows-it-pro-blog/safeguard-holds-with-the-windows-update-for-business-deployment/ba-p/3590463

N/A
MC409422 SharePoint: New Site Templates for Team Sites There is nothing you need to do to prepare for this change. You may want to notify your users about this change and update your training and documentation as appropriate.

Share this template guide with end-users: Learn how to apply and customize SharePoint site templates.

https://support.microsoft.com/office/apply-and-customize-sharepoint-site-templates-39382463-0e45-4d1b-be27-0e96aeec8398#ID0EDBJ=Team_site_templates

https://www.microsoft.com/microsoft-365/roadmap?filters=&searchterms=93423
There is nothing you need to do to prepare for this change. You may want to notify your users about this change and update your training and documentation as appropriate.

Share this template guide with end-users: Learn how to apply and customize SharePoint site templates.

ps://support.microsoft.com/office/apply-and-customize-sharepoint-site-templates-39382463-0e45-4d1b-be27-0e96aeec8398#ID0EDBJ=Team_site_templa

ps://www.microsoft.com/microsoft-365/roadmap?filters=&searchterms=93423
N/A
MC409856 IPv6 by default for SharePoint Online This is for your information.

For additional information please visit IPv6 support in Microsoft 365 service

https://aka.ms/o365ip6
This is for your information.

For additional information please visit IPv6 support in Microsoft 365 service

ps://aka.ms/o365ip6
N/A
MC409858 Insider Risk Management: Policy wizard updates, Quick policies, Risky browser usage policy templates (Preview) Microsoft Purview Insider Risk Management correlates various signals to identify potential malicious or inadvertent insider risks, such as IP theft, data leakage and security violations. Insider Risk Management enables customers to create policies that help to manage security and compliance. Built with privacy by design, users are pseudonymized by default, and role-based access controls and audit logs are in place to help ensure user-level privacy.

Access the Insider Risk Management solution in the Microsoft Purview compliance portal for WW cloud environments.

[Learn more:]

Learn more: Investigate insider risk management activities

Learn more about indicators in Insider Risk Management: Insider risk management settings

https://docs.microsoft.com/microsoft-365/compliance/insider-risk-management-activities?view=o365-worldwide#user-activity

https://docs.microsoft.com/microsoft-365/compliance/insider-risk-management-settings?view=o365-worldwide

https://purview.microsoft.com/compliance

https://www.microsoft.com/en-us/microsoft-365/roadmap?filters=&searchterms=82144

https://www.microsoft.com/microsoft-365/roadmap?filters=&searchterms=93356

https://www.microsoft.com/microsoft-365/roadmap?filters=&searchterms=93357
Microsoft Purview Insider Risk Management correlates various signals to identify potential malicious or inadvertent insider risks, such as IP theft, data leakage and security violations. Insider Risk Management enables customers to create policies that help to manage security and compliance. Built with privacy by design, users are pseudonymized by default, and role-based access controls and audit logs are in place to help ensure user-level privacy.

Access the Insider Risk Management solution in the Microsoft Purview compliance portal for WW cloud environments.

[Learn more:]

Learn more: Investigate insider risk management activities

Learn more about indicators in Insider Risk Management: Insider risk management settings

ps://docs.microsoft.com/microsoft-365/compliance/insider-risk-management-activities?view=o365-worldwide#user-activity

ps://docs.microsoft.com/microsoft-365/compliance/insider-risk-management-settings?view=o365-world

ps://purview.microsoft.com/compl

ps://www.microsoft.com/en-us/microsoft-365/roadmap?filters=&searchterms=82144

ps://www.microsoft.com/microsoft-365/roadmap?filters=&searchterms=93356

ps://www.microsoft.com/microsoft-365/roadmap?filters=&searchterms=93357
N/A
MC411428 Microsoft Exchange Online: Change to soft-deleted period for inactive mailboxes No action is needed to enable this change.

Learn more: Delete an inactive mailbox

https://docs.microsoft.com/microsoft-365/compliance/delete-an-inactive-mailbox?view=o365-worldwide#more-information
No action is needed to enable this change.

Learn more: Delete an inactive mailbox

ps://docs.microsoft.com/microsoft-365/compliance/delete-an-inactive-mailbox?view=o365-worldwide#more-inf
N/A
MC411429 Outlook Cross Profile Calendar Sync for Android Managed Devices No action needed to prepare. Please share any questions or comments here – we are happy to address.

[More Information]

You can learn more about Google’s Connected Apps SDK here.

https://developers.google.com/android/work/connected-apps

https://www.microsoft.com/microsoft-365/roadmap?filters=&searchterms=92463

No action needed to prepare. Please share any questions or comments here – we are happy to address.

[More Information]

You can learn more about Google’s Connected Apps SDK here.

ps://developers.google.com/android/work/connected-app

ps://www.microsoft.com/microsoft-365/roadmap?filters=&searchterms=92463

N/A
MC411431 Microsoft Defender for Office 365: Actions from the email entity page You need the "search and purge" role to take email purge actions from email entity page.

More reference-

Permissions in the Microsoft 365 Defender portal

https://docs.microsoft.com/microsoft-365/security/office-365-security/permissions-microsoft-365-security-center?view=o365-worldwide

https://www.microsoft.com/microsoft-365/roadmap?rtc=1%26filters=&searchterms=93295
You need the "search and purge" role to take email purge actions from email entity page.

More reference-

Permissions in the Microsoft 365 Defender portal

ps://docs.microsoft.com/microsoft-365/security/office-365-security/permissions-microsoft-365-security-center?view=o365-world

ps://www.microsoft.com/microsoft-365/roadmap?rtc=1%26filters=&searchterms=93295
N/A
MC411434 Viva Topics expands language support to French, German and Spanish Same as English content, should you have any SharePoint sites that you don't want AI to process and mine Topics from, please exclude them from Viva Topics settings.

Heads-up to your users about this feature and remind them to configure preferred language if they would like to consume topics in those languages.

https://www.microsoft.com/microsoft-365/roadmap?filters=&searchterms=72186
Same as English content, should you have any SharePoint sites that you don't want AI to process and mine Topics from, please exclude them from Viva Topics settings.

Heads-up to your users about this feature and remind them to configure preferred language if they would like to consume topics in those languages.

ps://www.microsoft.com/microsoft-365/roadmap?filters=&searchterms=72186
N/A
MC411463 Microsoft Teams user request configuration to external systems (URL redirect) Configure the User requests section when it becomes available with the link to the in-house user request systems and/or customize the instructional message.

https://www.microsoft.com/microsoft-365/roadmap?rtc=1%26filters=&searchterms=89288
Configure the User requests section when it becomes available with the link to the in-house user request systems and/or customize the instructional message.

ps://www.microsoft.com/microsoft-365/roadmap?rtc=1%26filters=&searchterms=89288
N/A
MC411579 Security update for Secure Boot DBX: August 9, 2022 Make sure you have the latest servicing stack update (SSU) installed. For information about the latest SSU for your operating system, see ADV990001 | Latest Servicing Stack Updates.

This update will be downloaded and installed automatically from Windows Update. To get the standalone package for this update, go to the Microsoft Update Catalog website.

This update will automatically synchronize with WSUS if you configure Products and Classifications as follows:

Product: Windows Server 2012, Windows 8.1, Windows Server 2012 R2, Windows Server 2016, Windows Server 2019, Windows Server 2022, Windows 10, version 1903 and later, Windows 11, Azure Stack HCI, Azure Data Box

Classification: Security Updates

Additional information:

CVE-2022-34301 | Eurosoft Boot Loader Bypass

CVE-2022-34302 | New Horizon Data Systems Inc Boot Loader Bypass

CVE-2022-34303 | Crypto Pro Boot Loader Bypass

KB5012170: Security update for Secure Boot DBX: August 9, 2022

https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2022-34301

https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2022-34302

https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2022-34303

https://portal.msrc.microsoft.com/security-guidance/advisory/ADV990001

https://support.microsoft.com/help/5012170

https://www.catalog.update.microsoft.com/Search.aspx?q=KB5012170

Make sure you have the latest servicing stack update (SSU) installed. For information about the latest SSU for your operating system, see ADV990001 | Latest Servicing Stack Updates.

This update will be downloaded and installed automatically from Windows Update. To get the standalone package for this update, go to the Microsoft Update Catalog website.

This update will automatically synchronize with WSUS if you configure Products and Classifications as follows:

Product: Windows Server 2012, Windows 8.1, Windows Server 2012 R2, Windows Server 2016, Windows Server 2019, Windows Server 2022, Windows 10, version 1903 and later, Windows 11, Azure Stack HCI, Azure Data Box

Classification: Security Updates

Additional information:

CVE-2022-34301 | Eurosoft Boot Loader Bypass

CVE-2022-34302 | New Horizon Data Systems Inc Boot Loader Bypass

CVE-2022-34303 | Crypto Pro Boot Loader Bypass

KB5012170: Security update for Secure Boot DBX: August 9, 2022

ps://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2022-3430

ps://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2022-343

ps://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2022-34303

ps://portal.msrc.microsoft.com/security-guidance/advisory/ADV99000

ps://support.microsoft.com/help/501217

ps://www.catalog.update.microsoft.com/Search.aspx?q=KB501217

N/A
MC411580 Take action: August 2022 security update available for all supported versions of Windows https://support.microsoft.com/help/5016616

https://support.microsoft.com/help/5016622

https://support.microsoft.com/help/5016623

https://support.microsoft.com/help/5016629

https://support.microsoft.com/help/5016639

https://support.microsoft.com/help/5016669

https://support.microsoft.com/help/5016672

https://support.microsoft.com/help/5016676

https://support.microsoft.com/help/5016679

https://support.microsoft.com/help/5016681

https://support.microsoft.com/help/5016683

https://support.microsoft.com/help/5016684

https://support.microsoft.com/help/5016686

https://support.microsoft.com/windows/update-windows-3c5ae7fc-9fb6-9af1-1984-b5e0412c556a#WindowsVersion=Windows_11

https://techcommunity.microsoft.com/t5/windows-it-pro-blog/windows-quality-updates-primer/ba-p/2569385

https://www.microsoft.com/en-us/videoplayer/embed/RE53z8h
ps://support.microsoft.com/help/5016616

ps://support.microsoft.com/help/50166

ps://support.microsoft.com/help/5016623

ps://support.microsoft.com/help/5016629

ps://support.microsoft.com/help/5016639

ps://support.microsoft.com/help/5016669

ps://support.microsoft.com/help/501667

ps://support.microsoft.com/help/5016676

ps://support.microsoft.com/help/5016679

ps://support.microsoft.com/help/501668

ps://support.microsoft.com/help/5016683

ps://support.microsoft.com/help/5016684

ps://support.microsoft.com/help/5016686

ps://support.microsoft.com/windows/update-windows-3c5ae7fc-9fb6-9af1-1984-b5e0412c556a#WindowsVersion=Windows_

ps://techcommunity.microsoft.com/t5/windows-it-pro-blog/windows-quality-updates-primer/ba-p/2569385

ps://www.microsoft.com/en-us/videoplayer/embed/RE53z8
N/A
MC411581 Windows Server, version 20H2 has reached end of servicing https://docs.microsoft.com/azure-stack/hci/

https://docs.microsoft.com/lifecycle/announcements/windows-server-20h2-retiring

https://docs.microsoft.com/windows-server/get-started/servicing-channels-comparison#semi-annual-channel

https://docs.microsoft.com/windows-server/get-started/windows-server-release-info
ps://docs.microsoft.com/azure-stack/hci/

ps://docs.microsoft.com/lifecycle/announcements/windows-server-20h2-retiri

ps://docs.microsoft.com/windows-server/get-started/servicing-channels-comparison#semi-annual-channel

ps://docs.microsoft.com/windows-server/get-started/windows-server-release-inf
N/A
MC411583 Reminder: Removal of temporary mitigation in Windows updates requires compliant printing and scanning devices Firmware on Smartcard-authenticating printers and scanners must be compatible with section 3.2.1 of the RFC 4556 specification required for CVE-2021-33764 prior to installing Windows updates released on August 9, 2022 or later on Active Directory domain controllers.

Additional information:

Review the below documentation

KB5005408: Smart card authentication might cause print and scan failures.

CVE-2021-33764: Windows Key Distribution Center Information Disclosure Vulnerability

RFC 4556 specification

https://msrc.microsoft.com/update-guide/vulnerability/CVE-2021-33764

https://support.microsoft.com/topic/kb5005408-smart-card-authentication-might-cause-print-and-scan-failures-514f0bc5-ecde-4e5e-8c5a-2a776d7fb89a

https://www.ietf.org/rfc/rfc4556.txt

Firmware on Smartcard-authenticating printers and scanners must be compatible with section 3.2.1 of the RFC 4556 specification required for CVE-2021-33764 prior to installing Windows updates released on August 9, 2022 or later on Active Directory domain controllers.

Additional information:

Review the below documentation

KB5005408: Smart card authentication might cause print and scan failures.

CVE-2021-33764: Windows Key Distribution Center Information Disclosure Vulnerability

RFC 4556 specification

ps://msrc.microsoft.com/update-guide/vulnerability/CVE-2021-33764

ps://support.microsoft.com/topic/kb5005408-smart-card-authentication-might-cause-print-and-scan-failures-514f0bc5-ecde-4e5e-8c5a-2a776d7fb89

ps://www.ietf.org/rfc/rfc4556.tx

N/A
MC411668 (Updated) Updates to Minimum Supported Outlook Desktop Versions for Actionable Messages We recommend the following course of action for Outlook Desktop users:

If you are an Outlook user using an older version of Outlook Desktop client, please update your Microsoft 365 version to continue benefitting from the rich and powerful AM email experiences.

If you are an organization’s administrator, please update the Microsoft 365 version in your tenant to enhance the productivity of your employees via AM, helping them accomplish tasks from within Outlook.

The AM experiences in other Outlook clients remain unaltered and Microsoft 365 users can continue to benefit from AM like before. For additional information on this upgrade please reach out to onboardoam@microsoft.com. To learn more about Actionable Messages and the developer dashboard, please visit this link.

https://docs.microsoft.com/officeupdates/update-history-microsoft365-apps-by-date
We recommend the following course of action for Outlook Desktop users:

If you are an Outlook user using an older version of Outlook Desktop client, please update your Microsoft 365 version to continue benefitting from the rich and powerful AM email experiences.

If you are an organization’s administrator, please update the Microsoft 365 version in your tenant to enhance the productivity of your employees via AM, helping them accomplish tasks from within Outlook.

The AM experiences in other Outlook clients remain unaltered and Microsoft 365 users can continue to benefit from AM like before. For additional information on this upgrade please reach out to onboardoam@microsoft.com. To learn more about Actionable Messages and the developer dashboard, please visit this link.

ps://docs.microsoft.com/officeupdates/update-history-microsoft365-apps-by
N/A
MC411669 Retiring Resume Assistant in Word No action is required. You may want to circulate the support article among your help desk which provides more context and alternative solutions in case users contact them. Use Resume Assistant and LinkedIn for great resumes

https://templates.office.com/resume-templates

https://www.linkedin.com/help/linkedin/answer/a551182
No action is required. You may want to circulate the support article among your help desk which provides more context and alternative solutions in case users contact them. Use Resume Assistant and LinkedIn for great resumes

ps://templates.office.com/resume-templa

ps://www.linkedin.com/help/linkedin/answer/a55118
N/A
MC411677 Microsoft Information Protection: Maintain label and protection when creating PDF files from VBA in Office apps Users can update their VBA calls to Office code to request a PDF and prepare to handle encryption by default, or opt-out where possible. Read more here.

https://devblogs.microsoft.com/microsoft365dev/changes-in-export-to-pdf-with-sensitivity-labelling-and-encryption-in-office-add-ins/

https://www.microsoft.com/microsoft-365/roadmap?filters=&searchterms=93406
Users can update their VBA calls to Office code to request a PDF and prepare to handle encryption by default, or opt-out where possible. Read more here.

ps://devblogs.microsoft.com/microsoft365dev/changes-in-export-to-pdf-with-sensitivity-labelling-and-encryption-in-office-add-ins/

ps://www.microsoft.com/microsoft-365/roadmap?filters=&searchterms=93406
N/A
MC411678 Convert Word/Pdf form or quiz to Microsoft Forms You may want to notify your users about this change and update your training and documentation as appropriate.

https://www.microsoft.com/microsoft-365/roadmap?filters=&searchterms=93411
You may want to notify your users about this change and update your training and documentation as appropriate.

ps://www.microsoft.com/microsoft-365/roadmap?filters=&searchterms=934
N/A
MC412375 Microsoft Purview Information Protection: Sensitivity labels now apply to modified documents (WXP on PC and Mac) View sensitivity labels and their policies and settings in the Microsoft Purview compliance portal:

Microsoft Purview compliance portal for WW and GCC cloud environments

Microsoft Purview compliance portal for GCC-High cloud environments

Microsoft Purview compliance portal for DoD cloud environments

Learn more:

Get started with sensitivity labels

Learn about the default labels and policies to protect your data

https://compliance.apps.mil/

https://compliance.microsoft.us/

https://docs.microsoft.com/microsoft-365/compliance/get-started-with-sensitivity-labels?view=o365-worldwide

https://docs.microsoft.com/microsoft-365/compliance/mip-easy-trials?view=o365-worldwide

https://purview.microsoft.com/compliance

https://www.microsoft.com/microsoft-365/roadmap?filters=&searchterms=93209

View sensitivity labels and their policies and settings in the Microsoft Purview compliance portal:

Microsoft Purview compliance portal for WW and GCC cloud environments

Microsoft Purview compliance portal for GCC-High cloud environments

Microsoft Purview compliance portal for DoD cloud environments

Learn more:

Get started with sensitivity labels

Learn about the default labels and policies to protect your data

ps://compliance.apps.mil/

ps://compliance.microsoft.us/

ps://docs.microsoft.com/microsoft-365/compliance/get-started-with-sensitivity-labels?view=o365-world

ps://docs.microsoft.com/microsoft-365/compliance/mip-easy-trials?view=o365-world

ps://purview.microsoft.com/compl

ps://www.microsoft.com/microsoft-365/roadmap?filters=&searchterms=93209

N/A
MC412378 Microsoft Purview compliance portal: Exact Data Match updated UI wizard To explore the updated EDM wizard, visit the Microsoft Purview compliance portal > Data classification > Exact data matches, and use the toggle to switch between the legacy UI and the new EDM experience.

Microsoft Purview compliance portal for Worldwide and GCC cloud environments

Microsoft Purview compliance portal for GCC-High cloud environments

Microsoft Purview compliance portal for DoD cloud environments

Learn more: Get started with Exact Data Match

https://compliance.apps.mil/

https://compliance.microsoft.us/

https://docs.microsoft.com/microsoft-365/compliance/sit-get-started-exact-data-match-based-sits-overview?view=o365-worldwide

https://purview.microsoft.com/compliance

https://www.microsoft.com/microsoft-365/roadmap?filters=&searchterms=88895

To explore the updated EDM wizard, visit the Microsoft Purview compliance portal > Data classification > Exact data matches, and use the toggle to switch between the legacy UI and the new EDM experience.

Microsoft Purview compliance portal for Worldwide and GCC cloud environments

Microsoft Purview compliance portal for GCC-High cloud environments

Microsoft Purview compliance portal for DoD cloud environments

Learn more: Get started with Exact Data Match

ps://compliance.apps.mil/

ps://compliance.microsoft.us/

ps://docs.microsoft.com/microsoft-365/compliance/sit-get-started-exact-data-match-based-sits-overview?view=o365-world

ps://purview.microsoft.com/compl

ps://www.microsoft.com/microsoft-365/roadmap?filters=&searchterms=88895

N/A
MC412381 Plan for Change: Intune moving to support iOS 14/iPadOS 14 and higher later this year Check your Intune reporting to see what devices or users may be affected. For devices with mobile device management (MDM) go to Devices > All devices and filter by OS. For devices with app protection policies go to Apps > Monitor > App protection status > App Protection report: iOS, Android.

To manage the supported OS version in your organization, you can use Microsoft Endpoint Manager controls for both MDM and APP. For more information, please review: Manage operating system versions with Intune - Microsoft Intune | Microsoft Doc.

https://aka.ms/ADE_userless_support

https://docs.microsoft.com/mem/intune/fundamentals/manage-os-versions

https://docs.microsoft.com/mem/intune/fundamentals/supported-devices-browsers

https://support.apple.com/guide/ipad/supported-models-ipad213a25b2/14.0/ipados/14.0

https://support.apple.com/guide/iphone/supported-models-iphe3fa5df43/14.0/ios/14.0
Check your Intune reporting to see what devices or users may be affected. For devices with mobile device management (MDM) go to Devices > All devices and filter by OS. For devices with app protection policies go to Apps > Monitor > App protection status > App Protection report: iOS, Android.

To manage the supported OS version in your organization, you can use Microsoft Endpoint Manager controls for both MDM and APP. For more information, please review: Manage operating system versions with Intune - Microsoft Intune | Microsoft Doc.

ps://aka.ms/ADE_userless_

ps://docs.microsoft.com/mem/intune/fundamentals/manage-os-versi

ps://docs.microsoft.com/mem/intune/fundamentals/supported-devices-browser

ps://support.apple.com/guide/ipad/supported-models-ipad213a25b2/14.0/ipados/14

ps://support.apple.com/guide/iphone/supported-models-iphe3fa5df43/14.0/ios/14
N/A
MC412383 Plan for Change: Intune moving to support macOS 11.6 and higher later this year Check your Intune reporting to see which devices or users may be affected. Go to Devices > All devices and filter by macOS. You can add in additional columns to help identify who in your organization has devices running macOS 10.15 or below. Request that your users upgrade their devices to a supported OS version before this change.

https://support.apple.com/HT211238
Check your Intune reporting to see which devices or users may be affected. Go to Devices > All devices and filter by macOS. You can add in additional columns to help identify who in your organization has devices running macOS 10.15 or below. Request that your users upgrade their devices to a supported OS version before this change.

ps://support.apple.com/HT211238
N/A
MC412835 Microsoft Purview | Information protection: Co-authoring encrypted documents on mobile devices (GA) To use this feature, install or update Office Mobile, Word, Excel, or PowerPoint to version 16.0.14931 or higher on Android or 2.58.207 or higher on iOS.

Note: This feature is gated by the ‘Co-authoring for files with sensitivity labels’ setting for your tenant in the Microsoft Purview compliance portal (Global admin rights required).

If you have already enabled the setting to use co-authoring on Desktop apps, mobile support will be enabled automatically on the supported versions.

If you have not, you can opt-in to the setting to enable Co-authoring for both Desktop and Mobile apps when ready

To get started, visit the Microsoft Purview compliance portal:

Microsoft Purview compliance portal for WW commercial and GCC cloud environments

Microsoft Purview compliance portal for GCC-High cloud environments

Microsoft Purview compliance portal for DoD cloud environments

Learn more: Enable co-authoring for encrypted documents

https://compliance.apps.mil/

https://compliance.microsoft.us/

https://docs.microsoft.com/microsoft-365/compliance/sensitivity-labels-coauthoring?view=o365-worldwide

https://purview.microsoft.com/compliance

https://techcommunity.microsoft.com/t5/security-compliance-and-identity/announcing-general-availability-of-sensitivity-labels-with/ba-p/1356224

https://techcommunity.microsoft.com/t5/security-compliance-and-identity/co-authoring-on-microsoft-information-protection-encrypted/ba-p/2693718

https://www.microsoft.com/microsoft-365/roadmap?filters=&searchterms=98089

To use this feature, install or update Office Mobile, Word, Excel, or PowerPoint to version 16.0.14931 or higher on Android or 2.58.207 or higher on iOS.

Note: This feature is gated by the ‘Co-authoring for files with sensitivity labels’ setting for your tenant in the Microsoft Purview compliance portal (Global admin rights required).

If you have already enabled the setting to use co-authoring on Desktop apps, mobile support will be enabled automatically on the supported versions.

If you have not, you can opt-in to the setting to enable Co-authoring for both Desktop and Mobile apps when ready

To get started, visit the Microsoft Purview compliance portal:

Microsoft Purview compliance portal for WW commercial and GCC cloud environments

Microsoft Purview compliance portal for GCC-High cloud environments

Microsoft Purview compliance portal for DoD cloud environments

Learn more: Enable co-authoring for encrypted documents

ps://compliance.apps.mil/

ps://compliance.microsoft.us/

ps://docs.microsoft.com/microsoft-365/compliance/sensitivity-labels-coauthoring?view=o365-world

ps://purview.microsoft.com/compl

ps://techcommunity.microsoft.com/t5/security-compliance-and-identity/announcing-general-availability-of-sensitivity-labels-with/ba-p/1356224

ps://techcommunity.microsoft.com/t5/security-compliance-and-identity/co-authoring-on-microsoft-information-protection-encrypted/ba-p/2693718

ps://www.microsoft.com/microsoft-365/roadmap?filters=&searchterms=98089

N/A
MC414260 Disabling Transport Layer Security (TLS) 1.0 and 1.1 by default for Internet Explorer and EdgeHTML While these protocols will remain available for customers to re-enable as needed, we recommend that all organizations move off of TLS 1.0 and TLS 1.1 as soon as it is practical. Newer versions of the TLS protocol enable more modern cryptography and are broadly supported across modern browsers, such as the new Microsoft Edge.

Additional information:

Plan for change: TLS 1.0 and TLS 1.1 soon to be disabled by default

WebView Class

Microsoft Edge Legacy desktop application end of support

Group Policy

https://admx.help/?Category=InternetExplorer&Policy=Microsoft.Policies.InternetExplorer::Advanced_SetWinInetProtocols

https://blogs.windows.com/msedgedev/2020/03/31/tls-1-0-tls-1-1-schedule-update-edge-ie11/

https://blogs.windows.com/msedgedev/2021/03/09/microsoft-edge-legacy-end-of-support/

https://docs.microsoft.com/en-us/uwp/api/windows.ui.xaml.controls.webview?view=winrt-19041

https://www.microsoft.com/en-us/edge/

While these protocols will remain available for customers to re-enable as needed, we recommend that all organizations move off of TLS 1.0 and TLS 1.1 as soon as it is practical. Newer versions of the TLS protocol enable more modern cryptography and are broadly supported across modern browsers, such as the new Microsoft Edge.

Additional information:

Plan for change: TLS 1.0 and TLS 1.1 soon to be disabled by default

WebView Class

Microsoft Edge Legacy desktop application end of support

Group Policy

ps://admx.help/?Category=InternetExplorer&Policy=Microsoft.Policies.InternetExplorer::Advanced_SetWinInetProtocol

ps://blogs.windows.com/msedgedev/2020/03/31/tls-1-0-tls-1-1-schedule-update-edge-ie11/

ps://blogs.windows.com/msedgedev/2021/03/09/microsoft-edge-legacy-end-of-support/

ps://docs.microsoft.com/en-us/uwp/api/windows.ui.xaml.controls.webview?view=winrt-1904

ps://www.microsoft.com/en-us/edge/

09/13/2022
MC414458 Devices supporting the newest Vector Advanced Encryption Standard instruction set might be susceptible to data damage If this affects you, we strongly urge you to install the May 24, 2022 preview release as soon as possible to prevent further damage. Performance will be restored after you install the June 23, 2022 preview release or later releases. See below:

June 23, 2022 preview release:

Windows 11 (original release) - KB5014668

Windows Server 2022 - KB5014665

July 12, 2022 security release:

Windows 11 (original release) - KB5015814

Windows Server 2022 - KB5015827

Additional information:

KB5017259—Windows devices that have the newest supported processors might be susceptible to data damage

https://support.microsoft.com/en-gb/topic/july-12-2022-kb5015814-os-build-22000-795-74e7676e-4182-4747-8f73-bbe0c497dc2a

https://support.microsoft.com/en-gb/topic/july-12-2022-kb5015827-os-build-20348-825-b115183f-66b8-4eea-a631-5255a39b5991

https://support.microsoft.com/en-gb/topic/june-23-2022-kb5014665-os-build-20348-803-preview-feebab2b-1851-4119-a531-89ca80300b10

https://support.microsoft.com/en-gb/topic/june-23-2022-kb5014668-os-build-22000-778-preview-2b5f1da6-d602-48b4-b443-96b460e3c38d

https://support.microsoft.com/en-gb/topic/kb5017259-windows-devices-that-have-the-newest-supported-processors-might-be-susceptible-to-data-damage-d5e7c0cb-6e0a-4865-81ed-c82e91657a24

If this affects you, we strongly urge you to install the May 24, 2022 preview release as soon as possible to prevent further damage. Performance will be restored after you install the June 23, 2022 preview release or later releases. See below:

June 23, 2022 preview release:

Windows 11 (original release) - KB5014668

Windows Server 2022 - KB5014665

July 12, 2022 security release:

Windows 11 (original release) - KB5015814

Windows Server 2022 - KB5015827

Additional information:

KB5017259—Windows devices that have the newest supported processors might be susceptible to data damage

ps://support.microsoft.com/en-gb/topic/july-12-2022-kb5015814-os-build-22000-795-74e7676e-4182-4747-8f73-bbe0c497

ps://support.microsoft.com/en-gb/topic/july-12-2022-kb5015827-os-build-20348-825-b115183f-66b8-4eea-a631-5255a39b599

ps://support.microsoft.com/en-gb/topic/june-23-2022-kb5014665-os-build-20348-803-preview-feebab2b-1851-4119-a531-89ca80300b

ps://support.microsoft.com/en-gb/topic/june-23-2022-kb5014668-os-build-22000-778-preview-2b5f1da6-d602-48b4-b443-96b460e3c38

ps://support.microsoft.com/en-gb/topic/kb5017259-windows-devices-that-have-the-newest-supported-processors-might-be-susceptible-to-data-damage-d5e7c0cb-6e0a-4865-81ed-c82e91657a24

N/A
MC414474 Microsoft Teams Meeting Auto-Transcription If transcription is on in your tenant, this feature will be automatically enabled, to review and change the transcription policy, please follow admin documentation for meetings.

Notify your users about this change and update your training and documentation as appropriate.

https://docs.microsoft.com/microsoftteams/cloud-recording#turn-on-or-turn-off-recording-transcription

https://www.microsoft.com/microsoft-365/roadmap?filters=&searchterms=97842
If transcription is on in your tenant, this feature will be automatically enabled, to review and change the transcription policy, please follow admin documentation for meetings.

Notify your users about this change and update your training and documentation as appropriate.

ps://docs.microsoft.com/microsoftteams/cloud-recording#turn-on-or-turn-off-recording-tra

ps://www.microsoft.com/microsoft-365/roadmap?filters=&searchterms=9784
N/A
MC414684 Introducing Widget notifications You may want to inform your users about this upcoming change and update your training or documentation as appropriate. You can also learn more about this change by reviewing the guidance in the Additional Information section.

Additional information:

Please review the following resources:

Stay up to date with widgets

How to update the Windows Web Experience Pack in the Microsoft Store

https://support.microsoft.com/en-us/windows/how-to-update-the-windows-web-experience-pack-in-the-microsoft-store-a16c9bf1-f042-4dc9-a523-740cca1e1e60

https://support.microsoft.com/en-us/windows/stay-up-to-date-with-widgets-7ba79aaa-dac6-4687-b460-ad16a06be6e4

You may want to inform your users about this upcoming change and update your training or documentation as appropriate. You can also learn more about this change by reviewing the guidance in the Additional Information section.

Additional information:

Please review the following resources:

Stay up to date with widgets

How to update the Windows Web Experience Pack in the Microsoft Store

https://support.microsoft.com/windows/how-to-update-the-windows-web-experience-pack-in-the-microsoft-store-a16c9bf1-f042-4dc9-a523-740cca1e1e60

https://support.microsoft.com/windows/stay-up-to-date-with-widgets-7ba79aaa-dac6-4687-b460-ad16a06be6e4

N/A
MC414684 Introducing Widget notifications You may want to inform your users about this upcoming change and update your training or documentation as appropriate. You can also learn more about this change by reviewing the guidance in the Additional Information section.

Additional information:

Please review the following resources:

Stay up to date with widgets

How to update the Windows Web Experience Pack in the Microsoft Store

https://support.microsoft.com/windows/how-to-update-the-windows-web-experience-pack-in-the-microsoft-store-a16c9bf1-f042-4dc9-a523-740cca1e1e60

https://support.microsoft.com/windows/stay-up-to-date-with-widgets-7ba79aaa-dac6-4687-b460-ad16a06be6e4

You may want to inform your users about this upcoming change and update your training or documentation as appropriate. You can also learn more about this change by reviewing the guidance in the Additional Information section.

Additional information:

Please review the following resources:

Stay up to date with widgets

How to update the Windows Web Experience Pack in the Microsoft Store

ps://support.microsoft.com/windows/how-to-update-the-windows-web-experience-pack-in-the-microsoft-store-a16c9bf1-f042-4dc9-a523-740cca1e1e6

ps://support.microsoft.com/windows/stay-up-to-date-with-widgets-7ba79aaa-dac6-4687-b460-ad16a06be6e4

N/A
MC414707 August 2022 Windows non-security preview "C" release is available for Windows Server 2022 https://support.microsoft.com/help/5016693

https://techcommunity.microsoft.com/t5/windows-it-pro-blog/windows-quality-updates-primer/ba-p/2569385
ps://support.microsoft.com/help/5016693

ps://techcommunity.microsoft.com/t5/windows-it-pro-blog/windows-quality-updates-primer/ba-p/2569385
N/A
MC414798 Microsoft Teams: View attendance report on Microsoft Teams for Android and iOS You can choose to enable or disable attendance report via "Allow engagement report" policy.

https://www.microsoft.com/microsoft-365/roadmap?filters=&searchterms=97466
You can choose to enable or disable attendance report via "Allow engagement report" policy.

ps://www.microsoft.com/microsoft-365/roadmap?filters=&searchterms=97466
N/A
MC414799 Improvements to SharePoint pages authoring – New and updated web parts There is no work required to prepare for the updates listed for SharePoint Pages authoring, however you might want to notify your users about this change and update your training and documentation as needed.

https://www.microsoft.com/microsoft-365/roadmap?filters=&searchterms=93479
There is no work required to prepare for the updates listed for SharePoint Pages authoring, however you might want to notify your users about this change and update your training and documentation as needed.

ps://www.microsoft.com/microsoft-365/roadmap?filters=&searchterms=93479
N/A
MC414800 Updates coming to Daily Briefing Emails Review and assess the impact on your organization. Additionally, you might consider updating your training and documentation as appropriate. Learn more about Briefing email from Microsoft Viva, and how Microsoft protects your privacy

https://docs.microsoft.com/en-us/microsoft-365/admin/security-and-compliance/gdpr-compliance?view=o365-worldwide

https://docs.microsoft.com/viva/insights/personal/Briefing/be-overview

https://docs.microsoft.com/viva/insights/personal/Briefing/be-privacy

https://outlook.office.com/mail/options/calendar/view

https://outlook.office.com/mail/options/general/timeAndLanguage

https://www.microsoft.com/microsoft-365/roadmap?filters=&searchterms=93392
Review and assess the impact on your organization. Additionally, you might consider updating your training and documentation as appropriate. Learn more about Briefing email from Microsoft Viva, and how Microsoft protects your privacy

ps://docs.microsoft.com/en-us/microsoft-365/admin/security-and-compliance/gdpr-compliance?view=o365-world

ps://docs.microsoft.com/viva/insights/personal/Briefing/be-overvi

ps://docs.microsoft.com/viva/insights/personal/Briefing/be-privacy

ps://outlook.office.com/mail/options/calendar/vi

ps://outlook.office.com/mail/options/general/timeAndLangua

ps://www.microsoft.com/microsoft-365/roadmap?filters=&searchterms=9339
N/A
MC414802 Quiet Time Settings in Viva, Teams, and Outlook No additional action is required. You may want to notify your users about this change and update your training and documentation as appropriate.

Learn more:

Quiet time documentation

https://docs.microsoft.com/viva/insights/personal/teams/viva-insights-protect-time#configure-quiet-time

https://www.microsoft.com/microsoft-365/roadmap?filters=&searchterms=85627
No additional action is required. You may want to notify your users about this change and update your training and documentation as appropriate.

Learn more:

Quiet time documentation

ps://docs.microsoft.com/viva/insights/personal/teams/viva-insights-protect-time#configure-qui

ps://www.microsoft.com/microsoft-365/roadmap?filters=&searchterms=85627
N/A
MC414834 New simplified flow for Graph connectors for Microsoft Search To learn more about Graph connectors, see Microsoft Graph connectors overview for Microsoft Search.

To learn more about the Enterprise Websites connector, see Enterprise websites Microsoft Graph connector.

https://aka.ms/AddGraphConnector

https://docs.microsoft.com/microsoft-365/admin/manage/release-options-in-office-365

https://docs.microsoft.com/microsoftsearch/enterprise-web-connecto
To learn more about Graph connectors, see Microsoft Graph connectors overview for Microsoft Search.

To learn more about the Enterprise Websites connector, see Enterprise websites Microsoft Graph connector.

ps://aka.ms/AddGrap

ps://docs.microsoft.com/microsoft-365/admin/manage/release-options-in-office-365

ps://docs.microsoft.com/microsoftsearch/enterprise-we
N/A
MC415083 Announcement of automatic deletion of inactive Microsoft Dataverse for Teams environments https://docs.microsoft.com/en-us/power-platform/admin/about-teams-environment

https://docs.microsoft.com/en-us/power-platform/admin/inactive-teams-environment

https://docs.microsoft.com/en-us/power-platform/admin/inactive-teams-environment#reactivate-and-re-enable-a-dataverse-for-teams-environment

https://docs.microsoft.com/en-us/power-platform/admin/inactive-teams-environment#set-dataverse-for-teams-environment-deletion-policy
ps://docs.microsoft.com/en-us/power-platform/admin/about-team

ps://docs.microsoft.com/en-us/power-platform/admin/inactive-team

ps://docs.microsoft.com/en-us/power-platform/admin/inactive-teams-environment#reactivate-and-re-enable-a-dataverse-for-team

ps://docs.microsoft.com/en-us/power-platform/admin/inactive-teams-environment#set-dataverse-for-teams-environment-deletion-policy
N/A
MC415185 Microsoft Teams: View meeting transcripts on Microsoft Teams for Android and iOS You can choose to enable or disable meeting transcription via "Allow transcription" policy.

https://www.microsoft.com/microsoft-365/roadmap?filters=&searchterms=97693
You can choose to enable or disable meeting transcription via "Allow transcription" policy.

ps://www.microsoft.com/microsoft-365/roadmap?filters=&searchterms=97693
N/A
MC415186 Microsoft Defender for Office 365:Enforce Authentication to Pass on AntiSpam Allowed Domains To prepare for this change it is recommended that you review the spoof intelligence report and ensure that any intra-org messages where the sender/sending domain is part of your accepted domain pass authentication as expected. Note you do not need to update items where authentication fails and that failure is expected. Review your existing Anti-Spam policies within threat policies and consider updating the list of Allowed domains / Allowed senders to allow whom you trust. We recommend updating your necessary training documents accordingly.

Learn More:

Configure your anti-spam filter policies

Create allowed spoofed sender entries using Tenant allow block list - Spoofing

Spoof intelligence insight

Spoof detections report

https://docs.microsoft.com/microsoft-365/security/defender/microsoft-365-defender?view=o365-worldwide

https://docs.microsoft.com/microsoft-365/security/office-365-security/allow-block-email-spoof?view=o365-worldwide#create-allowed-spoofed-sender-entries

https://docs.microsoft.com/microsoft-365/security/office-365-security/configure-your-spam-filter-policies?view=o365-worldwide#use-the-microsoft-365-defender-portal-to-create-anti-spam-policies

https://docs.microsoft.com/microsoft-365/security/office-365-security/defender-for-office-365?view=o365-worldwide

https://docs.microsoft.com/microsoft-365/security/office-365-security/exchange-online-protection-overview?view=o365-worldwide

https://docs.microsoft.com/microsoft-365/security/office-365-security/learn-about-spoof-intelligence?view=o365-worldwide

https://docs.microsoft.com/microsoft-365/security/office-365-security/view-email-security-reports?view=o365-worldwide#spoof-detections-report

https://www.microsoft.com/microsoft-365/roadmap?owM365RoadmapSearchInput=93436&owM365RoadmapSearchButton=&filters=&searchterms=93436
To prepare for this change it is recommended that you review the spoof intelligence report and ensure that any intra-org messages where the sender/sending domain is part of your accepted domain pass authentication as expected. Note you do not need to update items where authentication fails and that failure is expected. Review your existing Anti-Spam policies within threat policies and consider updating the list of Allowed domains / Allowed senders to allow whom you trust. We recommend updating your necessary training documents accordingly.

Learn More:

Configure your anti-spam filter policies

Create allowed spoofed sender entries using Tenant allow block list - Spoofing

Spoof intelligence insight

Spoof detections report

ps://docs.microsoft.com/microsoft-365/security/defender/microsoft-365-defender?view=o365-world

ps://docs.microsoft.com/microsoft-365/security/office-365-security/allow-block-email-spoof?view=o365-worldwide#create-allowed-spoofed-sender-entri

ps://docs.microsoft.com/microsoft-365/security/office-365-security/configure-your-spam-filter-policies?view=o365-worldwide#use-the-microsoft-365-defender-portal-to-create-anti-spam-polici

ps://docs.microsoft.com/microsoft-365/security/office-365-security/defender-for-office-365?view=o365-world

ps://docs.microsoft.com/microsoft-365/security/office-365-security/exchange-online-protection-overview?view=o365-world

ps://docs.microsoft.com/microsoft-365/security/office-365-security/learn-about-spoof-intelligence?view=o365-world

ps://docs.microsoft.com/microsoft-365/security/office-365-security/view-email-security-reports?view=o365-worldwide#spoof-detecti

ps://www.microsoft.com/microsoft-365/roadmap?owM365RoadmapSearchInput=93436&owM365RoadmapSearchButton=&filters=&searchterms=93436
N/A
MC415187 Get Adobe PDF experience in Microsoft Teams Note: This does not automatically impact your organization. Only if Adobe Acrobat is preinstalled via a policy in Teams Admin Center, the Acrobat app will be set as the default PDF viewer in Teams. Step (2) triggers a signal that is used to set the app as the default file handler for PDF files in Teams.

For more details and FAQs please refer to this documentation.

For any queries, you can reach us at filesteamsfeedback@microsoft.com.

https://admin.teams.microsoft.com/policies/app-setup

https://aka.ms/Adobe4TeamsPDF

https://docs.microsoft.com/en-us/microsoftteams/teams-app-permission-policies

https://www.microsoft.com/microsoft-365/roadmap?filters=&searchterms=95128
Note: This does not automatically impact your organization. Only if Adobe Acrobat is preinstalled via a policy in Teams Admin Center, the Acrobat app will be set as the default PDF viewer in Teams. Step (2) triggers a signal that is used to set the app as the default file handler for PDF files in Teams.

For more details and FAQs please refer to this documentation.

For any queries, you can reach us at filesteamsfeedback@microsoft.com.

ps://admin.teams.microsoft.com/policies/app

ps://aka.ms/Adobe4TeamsPDF

ps://docs.microsoft.com/en-us/microsoftteams/teams-app-permission-polici

ps://www.microsoft.com/microsoft-365/roadmap?filters=&searchterms=95128
N/A
MC415433 Public Preview of Azure Workbooks for Update Compliance  Follow the steps outlined in the blog post to enable Update Compliance public preview through the Microsoft 365 admin center.

Additional information:

For more information, visit Public Preview of Azure Workbooks for Update Compliance.

For additional context, see the following documentation:

Get started with Update Compliance

Azure Workbooks Overview

https://docs.microsoft.com/windows/deployment/update/update-compliance-get-started

https://docs.microsoft.com/windows/deployment/update/update-compliance-v2-workbook

https://techcommunity.microsoft.com/t5/windows-it-pro-blog/public-preview-of-azure-workbooks-for-update-compliance/ba-p/3601310

Follow the steps outlined in the blog post to enable Update Compliance public preview through the Microsoft 365 admin center.

Additional information:

For more information, visit Public Preview of Azure Workbooks for Update Compliance.

For additional context, see the following documentation:

Get started with Update Compliance

Azure Workbooks Overview

ps://docs.microsoft.com/windows/deployment/update/update-complianc

ps://docs.microsoft.com/windows/deployment/update/update-compliance-v2-workbook

ps://techcommunity.microsoft.com/t5/windows-it-pro-blog/public-preview-of-azure-workbooks-for-update-compliance/ba-p/36013

N/A
MC415900 Microsoft Purview | Data Lifecycle Management and Records Management – Microsoft Graph APIs for extensibility (preview) [Permissions]

Currently, these APIs are supported through delegated permissions only, which are managed through the Graph interface. We are introducing two new permissions which you will need to access these APIs:

recordsmanagement.read.all

recordsmanagement.readwrite.all

[Licensing]

Access to Data Lifecycle Management and Records Management features varies based on your Microsoft 365 license level. See Microsoft 365 guidance for security & compliance - Service Descriptions | Microsoft Docs for licensing requirement details.

You can find the Data Lifecycle and Records Management solutions in the Microsoft Purview compliance portal.

[Learn more]

Learn more about retention labels: Create retention labels for exceptions - Microsoft Purview (compliance) | Microsoft Docs

Learn more about event-based retention: Start retention when an event occurs - Microsoft Purview (compliance) | Microsoft Docs

DLM and RM Graph APIs at Microsoft Build 2022: Automate and customize retention and deletion scenarios (microsoft.com)

Graph explorer platform: Graph Explorer | Try Microsoft Graph APIs - Microsoft Graph

https://developer.microsoft.com/graph/graph-explorer

https://docs.microsoft.com/microsoft-365/compliance/create-retention-labels-data-lifecycle-management?view=o365-worldwide

https://docs.microsoft.com/office365/servicedescriptions/microsoft-365-service-descriptions/microsoft-365-tenantlevel-services-licensing-guidance/microsoft-365-security-compliance-licensing-guidance#microsoft-purview-data-lifecycle-management--microsoft-purview-records-management

https://mybuild.microsoft.com/sessions/d64152b0-e4fc-4c1a-919e-e718028ac475?source=sessions

https://purview.microsoft.com/compliance

https://www.microsoft.com/microsoft-365/roadmap?filters=&searchterms=88276

[Permissions]

Currently, these APIs are supported through delegated permissions only, which are managed through the Graph interface. We are introducing two new permissions which you will need to access these APIs:

recordsmanagement.read.all

recordsmanagement.readwrite.all

[Licensing]

Access to Data Lifecycle Management and Records Management features varies based on your Microsoft 365 license level. See Microsoft 365 guidance for security & compliance - Service Descriptions | Microsoft Docs for licensing requirement details.

You can find the Data Lifecycle and Records Management solutions in the Microsoft Purview compliance portal.

[Learn more]

Learn more about retention labels: Create retention labels for exceptions - Microsoft Purview (compliance) | Microsoft Docs

Learn more about event-based retention: Start retention when an event occurs - Microsoft Purview (compliance) | Microsoft Docs

DLM and RM Graph APIs at Microsoft Build 2022: Automate and customize retention and deletion scenarios (microsoft.com)

Graph explorer platform: Graph Explorer | Try Microsoft Graph APIs - Microsoft Graph

ps://developer.microsoft.com/graph/graph-expl

ps://docs.microsoft.com/microsoft-365/compliance/create-retention-labels-data-lifecycle-management?view=o365-world

ps://docs.microsoft.com/office365/servicedescriptions/microsoft-365-service-descriptions/microsoft-365-tenantlevel-services-licensing-guidance/microsoft-365-security-compliance-licensing-guidance#microsoft-purview-data-lifecycle-management--microsoft-purview-records-mana

ps://mybuild.microsoft.com/sessions/d64152b0-e4fc-4c1a-919e-e718028ac475?source=sessi

ps://purview.microsoft.com/compl

ps://www.microsoft.com/microsoft-365/roadmap?filters=&searchterms=88276

N/A
MC415902 SharePoint: Configure Navigation Links to Open in a New Tab You do not need to do anything to prepare. Your navigation links will continue to open as they do normally today, until you make a change to their behavior using the new control.

Learn More:

Customize the navigation on your SharePoint site

https://support.microsoft.com/office/customize-the-navigation-on-your-sharepoint-site-3cd61ae7-a9ed-4e1e-bf6d-4655f0bf25ca

https://www.microsoft.com/microsoft-365/roadmap?filters=&searchterms=93318
You do not need to do anything to prepare. Your navigation links will continue to open as they do normally today, until you make a change to their behavior using the new control.

Learn More:

Customize the navigation on your SharePoint site

ps://support.microsoft.com/office/customize-the-navigation-on-your-sharepoint-site-3cd61ae7-a9ed-4e1e-bf6d-4655f0bf25

ps://www.microsoft.com/microsoft-365/roadmap?filters=&searchterms=93318
N/A
MC415921 What’s new in the Microsoft Intune Service Update for August 2022 https://aka.ms/MEMServiceChangeBlog

https://aka.ms/MEMWN2208

https://techcommunity.microsoft.com/t5/intune-customer-success/microsoft-intune-service-updates/ba-p/358728
ps://aka.ms/MEMServiceChangeBl

ps://aka.ms/MEMWN2208

ps://techcommunity.microsoft.com/t5/intune-customer-success/microsoft-intune-service-updates/ba-p/358728
N/A
MC415922 New Required Diagnostic Data (RDD) for Viva Learning Review settings to ensure the appropriate experience for your organization. We recommend updating your training documentation as appropriate. For additional information, please visit this page.

https://docs.microsoft.com/deployoffice/privacy/overview-privacy-controls#diagnostic-data-sent-from-microsoft-365-apps-for-enterprise-to-microsoft
Review settings to ensure the appropriate experience for your organization. We recommend updating your training documentation as appropriate. For additional information, please visit this page.

ps://docs.microsoft.com/deployoffice/privacy/overview-privacy-controls#diagnostic-data-sent-from-microsoft-365-apps-for-enterprise-to-microsof
N/A
MC417898 Microsoft Viva: Recurring Time Booking for Breaks, Learning, and Message Catch Up in Viva Insights You may want to notify your users about this new capability and update your training and documentation as appropriate. Learn more about the Briefing email from Microsoft Viva, and how Microsoft protects your privacy.

https://docs.microsoft.com/viva/insights/personal/briefing/be-overview

https://www.microsoft.com/microsoft-365/roadmap?filters=&searchterms=93424
You may want to notify your users about this new capability and update your training and documentation as appropriate. Learn more about the Briefing email from Microsoft Viva, and how Microsoft protects your privacy.

ps://docs.microsoft.com/viva/insights/personal/briefing/be-overvi

ps://www.microsoft.com/microsoft-365/roadmap?filters=&searchterms=93424
N/A
MC418600 August 2022 Windows non-security preview "C" release available for Windows 10, version 1809 https://support.microsoft.com/help/5016690

https://techcommunity.microsoft.com/t5/windows-it-pro-blog/windows-quality-updates-primer/ba-p/2569385
ps://support.microsoft.com/help/501669

ps://techcommunity.microsoft.com/t5/windows-it-pro-blog/windows-quality-updates-primer/ba-p/2569385
N/A
MC419386 Retirement of Trello & Yelp add-ins for Outlook Communicate this change with users as appropriate.

https://appsource.microsoft.com/product/office/WA104379897?tab=Overview

https://appsource.microsoft.com/product/office/WA104380626?tab=Overview
Communicate this change with users as appropriate.

ps://appsource.microsoft.com/product/office/WA104379897?tab=Overvi

ps://appsource.microsoft.com/product/office/WA104380626?tab=Overvi
N/A
MC419387 Upcoming changes as we prepare for transition from Stream (classic) to Stream (on SharePoint) 1. No action is needed with regards to provisioning of Stream classic.

2. If you do not want your users automatically directed to the new experience, you’ll need to take action to change the setting for your organization.

To set the Stream tile destination in the Microsoft 365 app launcher:

Go to the Settings page of SharePoint admin center and sign in with an account that has admin permissions

Select Stream App launcher tile

Select Stream (Classic) if you want your users to remain navigating to Stream (Classic) from the Stream tile.

Select Save. It takes about 5 minutes for this change to take effect.

Learn more:

Direct the Stream app tile launcher to Stream (on SharePoint)

https://docs.microsoft.com/stream/streamnew/start#direct-the-stream-app-tile-launcher-to-stream-on-sharepoint

https://go.microsoft.com/fwlink/?linkid=2185219
1. No action is needed with regards to provisioning of Stream classic.

2. If you do not want your users automatically directed to the new experience, you’ll need to take action to change the setting for your organization.

To set the Stream tile destination in the Microsoft 365 app launcher:

Go to the Settings page of SharePoint admin center and sign in with an account that has admin permissions

Select Stream App launcher tile

Select Stream (Classic) if you want your users to remain navigating to Stream (Classic) from the Stream tile.

Select Save. It takes about 5 minutes for this change to take effect.

Learn more:

Direct the Stream app tile launcher to Stream (on SharePoint)

ps://docs.microsoft.com/stream/streamnew/start#direct-the-stream-app-tile-launcher-to-stream

ps://go.microsoft.com/fwlink/?linkid=2185219
N/A
MC419910 August 2022 Windows non-security preview "C" release available for Windows 11 https://support.microsoft.com/help/5016691

https://techcommunity.microsoft.com/t5/windows-it-pro-blog/windows-quality-updates-primer/ba-p/2569385
ps://support.microsoft.com/help/501669

ps://techcommunity.microsoft.com/t5/windows-it-pro-blog/windows-quality-updates-primer/ba-p/2569385
N/A

MC Start Time changes

MC ID MC Title Old Value New Value MC Action required by
MC414684 Introducing Widget notifications 08/16/2022 20:02:51 2022-08-23T23:37:50Z N/A

MC Title changes

MC ID MC Title Old Value New Value MC Action required by
MC399074 (Updated) Enable Q&A in Teams Meetings via Meeting Options Enable Q&A in Teams Meetings via Meeting Options (Updated) Enable Q&A in Teams Meetings via Meeting Options N/A
MC408435 (Updated) Microsoft Teams: Start a Teams Chat with Distribution Groups, Mail-Enabled Security Groups, and O365 Groups Microsoft Teams: Start a Teams Chat with Distribution Groups, Mail-Enabled Security Groups, and O365 Groups (Updated) Microsoft Teams: Start a Teams Chat with Distribution Groups, Mail-Enabled Security Groups, and O365 Groups N/A
MC408437 (Updated) Microsoft Viva: Recommendations to Send Praise in Viva Insights Microsoft Viva: Recommendations to Send Praise in Viva Insights (Updated) Microsoft Viva: Recommendations to Send Praise in Viva Insights N/A
MC412836 (Updated) Classic Global term store retirement – update Classic Global term store retirement – update (Updated) Classic Global term store retirement – update N/A

CW35 New Office 365 Message Center items

MC ID MC Title MC Category MC Workload MC Major Change MC Action required by
MC417898 Microsoft Viva: Recurring Time Booking for Breaks, Learning, and Message Catch Up in Viva Insights Stay Informed Microsoft Viva False N/A
MC418600 August 2022 Windows non-security preview "C" release available for Windows 10, version 1809 Prevent Or Fix Issue Windows False N/A
MC419387 Upcoming changes as we prepare for transition from Stream (classic) to Stream (on SharePoint) Plan For Change SharePoint Online, Microsoft 365 Apps, Microsoft Stream False N/A
MC419386 Retirement of Trello & Yelp add-ins for Outlook Plan For Change Microsoft 365 Apps False N/A
MC419910 August 2022 Windows non-security preview "C" release available for Windows 11 Prevent Or Fix Issue Windows False N/A
MC419812 Microsoft 365 Admin Center: Introducing Adoption Score Stay Informed Microsoft 365 suite False N/A
MC420447 Guidance for installing the security update for Secure Boot DBX: August 9, 2022 Prevent Or Fix Issue Windows True N/A
MC420400 Reminder of helpful resources for Windows 11 upgrade and experience Stay Informed Windows False N/A
MC420399 August 2022 Windows non-security preview "C" release available for all supported versions of Windows Prevent Or Fix Issue Windows False N/A
MC420351 Microsoft Purview | Communication Compliance: Analyze policy matches over Teams shared channels (GA) Stay Informed Microsoft 365 suite False N/A
MC420062 In Development for Microsoft Intune is now available Stay Informed Microsoft Intune False N/A
MC420060 Microsoft Teams: Leave a Meeting From All of Your Devices Stay Informed Microsoft Teams False N/A
MC420059 Custom Download Location for Files in Teams Stay Informed Microsoft Teams False N/A
MC420058 Microsoft Purview | Information Protection: New out-of-the-box trainable classifiers with auto-labeling support Stay Informed Microsoft 365 suite False N/A
MC420056 Microsoft Teams: Microsoft Teams Rooms on Windows store application 4.14 update Plan For Change Microsoft Teams False N/A
MC420054 Microsoft Purview | Data Loss Prevention: Support for complex conditions (preview) Stay Informed Microsoft 365 suite False N/A
MC420052 Microsoft Purview Information Protection: Maintain protection when creating PDF files from Office apps (GA) Stay Informed Microsoft 365 suite False N/A
MC420049 Live Translated Captions in Meetings and Calls Stay Informed Microsoft Teams False N/A

Share to MS Teams

Login to your account

Welcome Back, We Missed You!