How does this affect me?
Dataverse user access is transitioning to CAE-enabled authentication, where user sessions are continuously evaluated based on Conditional Access policy signals rather than only during initial sign-in.
As part of this rollout, user sign-in traffic to Dataverse may originate from managed locations that must be permitted and compliant with your organization’s CAE Conditional Access policies. We advise that you review your user-focused CAE policies to ensure continued access to Dataverse.
You will be affected by this change if you have:
- CAE-enabled Conditional Access policies applied to users.
- Location-based conditions in user CAE policies.
- Sign-in frequency, session controls, or risk-based policies for Dataverse users.
Note: This change applies only to interactive user sign-in flows.
What do I need to do to prepare?
Please take the following actions for user access scenarios:
- Review your user-targeted CAE Conditional Access policies.
- Ensure these policies allow Dataverse user traffic from locations that are compliant with your CAE policies.
- Avoid overly restrictive location conditions that could unintentionally block user sessions.
- Validate interactive user sign-in scenarios:
- Test Dataverse access for end users under current CAE policies.
- Review the policies enforcing location, device, or risk conditions.
No action is required if your existing user CAE policies already permit Dataverse access from managed locations.