SHD / MC Checker

MC1454234 | Power Platform C New Continuous Access Evaluation (CAE) announcement



MC1454234 | Power Platform C New Continuous Access Evaluation (CAE) announcement

Classification stayInformed
Last Updated 08/13/2026 17:37:47
Start Time 08/13/2026 17:35:55
End Time 09/13/2026 17:35:55
Message Content We are announcing Continuous Access Evaluation (CAE) rollout for user sign-in flows to Dataverse as part of ongoing security enhancements for Power Platform. This change affects interactive user access to Dataverse and relies on Microsoft Entra Conditional Access policies for near real-time session evaluation. This rollout will begin on August 17, 2026, starting with early release environments in GCC. We will progressively expand to the remaining sovereign environments ― including GCC, GCC High, DoD, and Mooncake – in a staged manner over the subsequent 4 weeks, following our safe deployment process. Full rollout across sovereign environments is anticipated to complete by mid-September 2026. With this rollout, continuous access evaluation becomes generally available for Dataverse and is enabled by default for all customers.

As noted, Continuous Access Evaluation will be enabled in GCC Early Release environments the week of August 17th enabling customers to use this period to validate their Conditional Access policies. The roll-out will continue with standard sandbox and production environments the week of August 24th. With this update, there is no longer a requirement to submit an enablement request for this feature.

Users are advised to review their user-focused CAE Conditional Access policies to ensure alignment to business and security requirements for their Dataverse applications and no unintentional loss of access.

How does this affect me?
Dataverse user access is transitioning to CAE-enabled authentication, where user sessions are continuously evaluated based on Conditional Access policy signals rather than only at the initial sign-in.

As part of this rollout, user sign-in traffic to Dataverse may originate from managed locations that must be permitted and compliant with your organization’s CAE Conditional Access policies.

Note: This change applies only to interactive user sign-in flows.

Who is Impacted?
Customers with:

  • CAE-enabled Conditional Access policies applied to users.
  • Location-based conditions in user CAE policies.
  • Sign-in frequency, session controls, or risk-based policies for Dataverse users.

What do I need to do to prepare?
Customers should take the following actions for user access scenarios:

  1. Review user-targeted CAE Conditional Access policies
    1. Ensure policies allow Dataverse user traffic from locations which are compliant as per your CAE policies.
    2. Avoid overly restrictive location conditions that could unintentionally block user sessions.

  2. Validate interactive user sign-in scenarios
    1. Test Dataverse access for end users under current CAE policies.
    2. Review the policies enforcing location, device, or risk conditions.

No action is required if existing user CAE policies already permit Dataverse access from managed locations.

Resources:
Continuous access evaluation- Power Platform
Continuous access evaluation in Microsoft Entra – Microsoft Entra ID

Machine Translation Power Platformの@A的なセキュリティ化の一hとして、Dataverseへのユ`ザ`サインインフロ`にする@A的アクセスu(CAE)の展_をk表します。この涓Dataverseへのインタラクティブなユ`ザ`アクセスに影を与え、ほぼリアルタイムのセッションu摔 Microsoft Entraの条件付きアクセス ポリシ`に依存しています。この展_は2026年8月17日に_始され、GCCの 早期リリ`スh境 から始まります。安全な展_プロセスをUて、今後4Lgにわたり段A的に残りのソブリンh境(GCC、GCC High、DoD、Mooncakeなど)へ段A的に大していきます。ソブリンh境全体での全面展_は2026年9月中旬までに完了するzみです。この展_により、Dataverseの@Aアクセスu话愕睦每赡埭趣胜辍工伽皮晤客でデフォルトで有炕丹欷蓼埂

前述の通り、GCC ア`リ`リリ`ス h境では8月17日のLに@Aアクセスu郡摔胜辍㈩客はこの期gを利用して条件付きアクセスポリシ`の试^が可能です。展_は8月24日のLから圣单螗丧堀氓工瑜颖痉h境で@Aされます。このアップデ`トにより、このC能の有炕螭蛱岢訾工氡匾悉胜胜辘蓼筏俊

ユ`ザ`は、Dataverseアプリケ`ションのビジネスおよびセキュリティ要件にm合し、意恧筏胜ぅ互适Г胜い瑜Α ユ`ザ`中心のCAE条件付きアクセス ポリシ`を_Jすることをお幛幛筏蓼埂

これが私にどう影するのでしょうか?
Dataverseのユ`ザ`アクセスは CAEJ^へと移行しており、ユ`ザ`セッションは初期サインインrだけでなく条件付きアクセスポリシ`のシグナルに基づいて@A的にu丹欷蓼埂

この展_の一hとして、Dataverseへのユ`ザ`のサインイントラフィックは、MのCAE条件付きアクセスポリシ`にしS可されている管理された鏊榘k生する龊悉辘蓼埂

注:この涓膝ぅ螗骏楗匹%证圣姗`ザ`サインインフロ`にのみm用されます。

影を受けたのはlですか?
客は以下の通りです:

  • CAEの条件付きアクセスポリシ`がユ`ザ`にm用されました。
  • ユ`ザ`CAEポリシ`における位置ベ`スの条件。
  • Dataverseユ`ザ`向けのサインインl度、セッション制御、またはリスクベ`スのポリシ`。

浃韦郡幛撕韦颏工欷肖いい扦工?
客はユ`ザ`アクセスのシナリオで以下の行婴蛉・毪伽扦埂

  1. ユ`ザ`タ`ゲットのCAE条件付きアクセスポリシ`をレビュ`してください
    1. ポリシ`がCAEポリシ`にした鏊椁Dataverseユ`ザ`トラフィックをS可していることを_Jしてください。
    2. ユ`ザ`のセッションを意恧护亥芝恁氓筏皮筏蓼^度に制限されたロケ`ション条件は避けましょう。

  2. インタラクティブなユ`ザ`サインインシナリオの试^
    1. F在のCAEポリシ`の下でエンドユ`ザ`のDataverseアクセスをテストします。
    2. 鏊C器、リスク条件をà工毳荪辚珐`を_Jしてください。

既存のユ`ザ`CAEポリシ`が管理象地域からのDataverseアクセスをS可している龊悉稀⒑韦も必要ありません。

リソ`ス:
@A的アクセスu – Power Platform
Microsoft Entraにおける@A的アクセスu – Microsoft Entra ID