The umbrella brand covering Microsoft's identity and network access portfolio. Internet Access, Private Access, External ID and ID Governance all belong to it, built on top of the core directory service, Entra ID.
Read more: Microsoft Learn
In the Ultra Transcenders books
Each book explains Microsoft Entra in context, with comparison tables and the common traps.
Terms in this definition
- IDENTITY
A column property, written IDENTITY(seed, increment), that gives each new row the next number in a rising sequence. SCOPE_IDENTITY reports the latest value created in the current scope, and a rolled-back transaction still uses up the numbers it took.
- External
API Management virtual network mode in which the gateway stays public but can call private back ends inside the VNet.
- Microsoft Entra ID Governance
Set of features, and the licence for them, covering lifecycle workflows, entitlement management and access reviews.
- ALL
A DAX function that ignores any filters and gives back every row of a table or every value of the named columns. Used within CALCULATE, it works as a modifier that clears filters, although REMOVEFILTERS states that intent more clearly where it is available.
- Microsoft Entra ID
Cloud identity service from Microsoft, previously named Azure AD, which provides the tenant behind Microsoft 365 and Azure.
Related terms
- AADSignInEventsBeta
An advanced hunting table holding both interactive and non-interactive Microsoft Entra sign-ins, available with Entra ID P2. From 19 October 2026 EntraIdSignInEvents takes over from it, and existing queries move across automatically.
- AAGUID
Passkey profiles and authentication strengths can permit or refuse particular authenticators by this value. It is a 128-bit ID handed over by the passkey (FIDO2) maker when a key is registered, telling Microsoft Entra which make and model it is.
- Active Directory - Password
SSMS sign-in choice, since renamed Microsoft Entra Password, that prompts for a Microsoft Entra user name and password.
- Additional local administrators
Microsoft Entra ID P1 device setting that grants selected users local administrator rights across all Microsoft Entra joined devices. Targeting only some devices is not possible.
- Admin user
A built-in account on each Azure Container Registry, switched off unless you enable it, that can push and pull everything and has two passwords you can regenerate. It is meant for one person testing; Microsoft Entra identities are the better choice, partly because every admin request is throttled together.
- Administrative unit
Used to confine a role assignment to a subset of a Microsoft Entra directory, such as just one region's users for a local helpdesk. A unit holds users, groups or devices; units cannot be nested, and including a group does not make its individual members part of the scope.
- Agent Application
Resource that Azure creates on publishing an agent version; it has a stable endpoint plus its own Microsoft Entra agent identity and blueprint. Role assignments held by the project identity do not carry over and need to be granted again.
- Agent ID Administrator
Privileged role in Microsoft Entra for managing agent identities and blueprints across their lifecycle. Approving partner agent permissions and granting admin consent are beyond it.