This release introduces a preview of Entra-only customer management, time-based Active Directory group memberships in WorkSpace, and side drawers for editing customers and users.
Entra-Only customer and user management is for managing your Microsoft 365 Tenants without our previous reliance on Active Directory. This is a big step forward for our product, and includes the ability to license users without previous issues of User Plans. We have also re-written the synchronisation process for licensing and users, so it is much more responsive. If you would like a demo of this, please reach out to our customer success team.
We've also improved day-to-day administration, with fixes across the new UI, Microsoft Online, sign-in, provisioning, and upgrade tools.
Microsoft Entra ID
NEW FEATURE Entra-only customer management (Preview) - We're introducing a preview of managing customers and users through Microsoft Entra ID without requiring on-premises Active Directory. You can connect Microsoft tenants and create, edit, synchronise, and deprovision Entra-only customers and users. The preview includes sync policies, licence synchronisation, and billing records for customers, users, and assigned licences.
For more information, see our docs here - Entra Only Management - Preview
WorkSpace
NEW FEATURE Time-based group memberships - You can now configure temporary Active Directory group memberships for WorkSpace items using a duration in days and hours. Set defaults on an item type and override them for individual items; repeat provisioning respects the existing expiry time. This feature applies to on-premises Active Directory and requires Sync with Active Directory and Privileged Access Management (PAM) to be enabled.
For more information, see our docs here - Workspace Items - Temporary Group Membership
NEW FEATURE Assign reseller lists through the API - You can now assign WorkSpace lists under the reseller service through the REST API and Atria.Tools, supporting scripted WorkSpace setup.
FIX Clearer private group import errors - Private group imports now report actionable errors when a group member has missing account details, instead of showing only a generic failure.
FIX Missing user plan feedback - Provisioning WorkSpace without a selected or default user plan now displays a clear error instead of returning you to the user overview.
Customer and User Management
New Feature Side Drawer in the New UI (Preview) - We've introduced a new way of managing Customers and Users in the new UI. This is a 'Popout' from the right hand side of screen instead of redirecting to another page.
Microsoft Online
IMPROVEMENT Clearer Partner Center connection checks - Before connecting a customer tenant, we now check for an active GDAP relationship and show a clear message if one is missing. This check supports relationships with reduced roles; individual operations still require their relevant permissions.
FIX Tier 2 licence synchronisation - Missing products in the Tier 2 catalogue now produce a clear catalogue-related message instead of a Partner Center “Forbidden” error.
FIX Connect existing tenants - We've fixed an issue where connecting an existing tenant failed to generate the Azure AD service provisioning request.
FIX Tenant provisioning errors - We've resolved an ETag mismatch error that prevented Azure AD service provisioning for affected tenants.
FIX Microsoft Cloud Agreement processing - We've corrected the provisioning sequence so subscription synchronisation no longer runs before the required agreement is completed.
Sign-in and Session Management
IMPROVEMENT Clearer sign-in diagnostics - We've improved session diagnostics to help investigate unexpected sign-outs without recording sensitive authentication values.
FIX Unexpected sign-outs - We've fixed an issue where navigating between Atria pages could unexpectedly sign you out.
FIX OIDC sign-in - We've fixed an issue where completing OIDC sign-in returned you to the login page.
FIX Recognise active sessions - Opening the Atria web address while signed in now takes you to your default landing page instead of returning you to login.
Provisioning and Permissions
FIX User Group provisioning permissions - The legacy user Provision action now correctly honours permissions granted through User Groups for the user's organisational unit.
FIX Service schema administrator access - Administrators with the relevant service schema permissions can now import schemas and extensions without an incorrect “401 Unauthorized” error.
FIX Service administrator group lookups - Service administrator membership processing no longer fails because the provisioning account cannot read unrelated groups.
Installation and Administration Tools
IMPROVEMENT Windows service path security - Installations and upgrades now apply correctly quoted executable paths to Atria Windows services. We've also updated WorkSpace path handling so provisioning continues to work with these paths.
FIX Bulk component updates - Update-AtriaOutOfDateComponents now handles duplicate component metadata without failing.
FIX Atria.Tools error messages - Atria.Tools now displays the underlying API error instead of returning a blank message when using the Workspace API cmdlets.