What’s New in the Hybrid Data Center & Microsoft | December 2025

The eGroup Team

eGroup

Stay ahead of fast-moving changes across the hybrid data center and Microsoft cloud ecosystem. This month’s updates highlight major security patches, Azure and Copilot advancements, hardware innovations, and new governance requirements impacting IT admins and CISOs. Use this newsletter as a guide to quickly assess what needs attention now, and what to prepare for in upcoming rollouts.


Introducing Our New eGuides & Strategic Playbooks Hub

We’re excited to announce our NEW eGuides & Strategic Playbooks website page, a central hub with practical resources to help you modernize, secure, and optimize your technology investments. You’ll find configuration guides, security best practices, and strategic playbooks built for cloud, collaboration, and AI-driven transformation.

Be sure to download our NEW Operationalizing Teams Phone eGuide for frameworks and best practices to deliver reliable, enterprise-grade voice service.

Then check out how we helped Hawaii ETS simplify their calling infrastructure and boost collaboration with a successful Teams Phone migration, reducing their legacy phone costs and strengthening their emergency response readiness.


What’s New in the Hybrid Data Center?

Cisco

AI-Optimized Infrastructure & Critical Security Updates
Cisco introduces next-generation switching and security capabilities aimed at AI workloads, identity-based access, and micro-segmentation, alongside urgent vulnerability patches.

View full Cisco update

AI-Optimized Smart Switches (Silicon One E100 + AMD Pensando DPUs): New hardware accelerates micro-segmentation and east-west inspection using Cisco Hypershield. Ideal for data centers preparing for AI/ML workloads requiring line-rate security and telemetry.

Security Cloud Control with Universal ZTNA: Adds identity-based access to internal resources across hybrid environments. Supports gradual transition from VPN to ZTNA with centralized policy enforcement.

ThousandEyes Traffic Insights Enhancements: Expanded network observability enables deeper visibility into hybrid traffic flows, application latency, and path analytics. Strong value for troubleshooting multi-cloud performance.

Critical ASA Vulnerabilities Requiring Immediate Patching: Cisco released fixes for high-severity ASA software flaws. Admins should patch immediately and validate IPSec/SSL VPN posture to avoid exploitation.


Meraki

EoS Changes, AI Automation, and Next-Gen Switching
Meraki expands AI-driven management and visibility while announcing a multiyear MDM retirement timeline.

View full Meraki update

Meraki Systems Manager will reach end-of-sale on June 4, 2026, with full support continuing through June 4, 2029, requiring customers to plan alternative MDM strategies. 

Meraki introduces the Cisco AI Assistant for conversational network management and AI Canvas for unified cross-domain IT visibility.  

Recent releases include next-generation C9350 and C9610 Series Smart Switches optimized for AI workloads, comprehensive API enhancements, and expanded OAuth 2.0 support for secure 3rd-party integrations.  


Nutanix

AHV VDI Expansion, Kubernetes-Native Storage, and Disaggregated Architectures
Nutanix continues advancing multi-cloud flexibility with major updates across VDI, AOS, Kubernetes, and compute/storage separation..

View full Nutanix update

Omnissa Horizon on AHV (Limited GA): Supports automated provisioning and Instant Clone workflows, giving enterprises a validated VMware-independent VDI alternative.

Hybrid Azure Virtual Desktop Support: Announced at Ignite 2025, enabling AVD deployments that span cloud and on-prem.

Cloud Native AOS (GA): Allows Nutanix storage and data services to run directly as Kubernetes containers, enabling cloud-native app teams to consume storage through /NFS/S3.

150TB Direct Flash with Planned 300TB Drives: Large-capacity Flash modules introduce major density improvements; asynchronous replication support extends DR flexibility.

Nutanix Objects 5.2: Adds WCAG 2.2 Level AA accessibility, Prism Central DR, and advanced network segmentation for secure multi-tenant operations.

Disaggregated Architecture via NCI Compute + Dell PowerFlex Integration (GA): Lets customers scale compute independently of storage while remaining centrally managed under Nutanix Cloud Platform.


Cohesity

Major Azure Expansion & New High-Capacity Nodes
Cohesity pushes deeper into Azure-native data protection and threat detection.

View full Cohesity update

Expanded Azure Coverage Across Commercial and Government Clouds: Adds support for Azure VMs, SQL/MySQL/PostgreSQL databases, AKS, Blob, Data Lake, and Cosmos DB. Azure Blob Cold Tier is now available as an archive target.

AI-Powered Threat Scanning for Azure VMs: Malware scanning added to backup/recovery workflows, improving ransomware detection in cloud environments.

C6200 Series Nodes (C6208S/C6216S/C6224): New hardware with 96TB, 192TB, and 288TB raw capacity options for high-density environments.


Rubrik

Azure DevOps Protection & Urgent CLI Security Updates
Rubrik strengthens cloud-native DevOps protection while issuing mandatory security updates.

View full Rubrik update

Rubrik DevOps Protection for Azure DevOps (Available Now): Automatically discovers repositories and performs SLA-driven backups to WORM-protected Azure Blob Storage. Ensures compliance for DevOps pipelines and code artifacts.

High-Severity CLI Vulnerability Rubrik strongly advises customers to upgrade to the latest maintenance releases within their current CDM version to address a high severity security vulnerability in the Rubrik command line interface (CLI) that could be exploited.

Patch Requirements:

  • CDM 9.4 → upgrade to 9.4.2-p1 or later
  • CDM 9.3 → upgrade to 9.3.3-p4 or later
  • CDM 9.2 → upgrade to 9.2.3-p10 or later
    Immediate patching strongly recommended.

Hardened CLI Access Configuration: Disable CLI access for nonessential users; enforce SSH key pairs + MFA for all remaining admins.

 


Pure Storage

Azure-Native Block Storage and Expanded AI Automation
Pure continues improving Azure VMware Solution storage and cyber-resilience.

View full Pure Storage update

Azure Native Pure Storage Cloud (GA): Enterprise-grade block storage delivered natively through the Azure portal, optimized for Azure VMware Solution workloads requiring consistent latency and high availability.

Pure1 AI Copilot for Portworx: Adds natural language queries, automated troubleshooting, and Model Context Protocol server integration to enhance Kubernetes storage operations.

Pure Protect Recovery Zones with Veeam: Provides cyber-resilience as a service with proactive threat detection, recovery orchestration, and isolated recovery environments.


What’s New in Microsoft Cloud?

Azure

Microsoft expands AI-assisted SQL workloads, enables compliance-focused immutability, and introduces new DR and scalability features for cloud infrastructure teams.

Azure: AI-Enhanced Data Services, DR Improvements, and Scalable Networking

SQL Server 2025 (GA): Adds GitHub Copilot integration, vector data types, vector indexing, and Fabric replication support for hybrid analytics. Ideal for organizations modernizing data estates or preparing for advanced AI workloads.

Planned Failover for Azure Storage: Supports customer-managed DR testing for geo-redundant GPv2 accounts. When triggered, primary and secondary endpoints swap, enabling realistic DR validation with no forced failovers.

Immutability for Azure SQL LTR Backups: Locks long-term retention backups against modification or deletion until retention expiration. Strengthens ransomware mitigation for regulated industries.

Next-Gen General Purpose Tier for Managed Instance: Moves to Azure Elastic SAN backend, boosting performance, iS-like scalability, and integration across compute services.

ExpressRoute Scalable Gateway (ErGwScale): Delivers dynamic throughput scaling up to 40 Gbps. Supports elastic growth or fixed configurations for predictable network performance.

Azure Blob Storage SFTP Resume Support: Interrupted uploads now resume from last checkpoint, reducing bandwidth consumption and improving large-data transfer reliability.

Azure NetApp Files Granular File Recovery: Allows recovery of individual files from backup vaults without restoring entire volumes, lowering recovery time and storage costs.

Microsoft 365 Copilot

Major updates include free Security Copilot for E5 customers, new model defaults, navigation changes, and upcoming secure deployment guidance.

Microsoft 365 Copilot: Licensing Expansion, App Deployment, and New AI Features

Security Copilot Included for M365 E5 (Rolling Out Now): Requires no additional purchase. Provides SOC-level insights, guided remediation, and threat summarization.

Anthropic Models Enabled by Default (Jan 7): Governed by Microsoft Product Terms and Data Protection Addendum, ensuring enterprise-grade contractual protection for LLM use.

Secure Deployment Settings (Mid-January 2026): Provides centralized recommendations, governance settings, and secure configuration templates for safe Copilot rollout.

Automatic Meeting Rescheduling (GA): Copilot can reschedule 1:1 meetings and personal events based on user preferences.

AI-Generated File Summaries (January): Available in Windows Explorer and OneDrive Activity Center for licensed users.

Automatic Installation of Copilot App on Windows: Appears in Start menu; admins may opt out.

New Copilot Modes: Auto, Quick, Think Deeper: Defaults to GPT-5 with persistent user mode selection.

Excel Agent Mode (GA Dec–Feb): AI-assisted spreadsheet editing with web search; no admin changes required.

Expanded Free Copilot Chat Features (Jan–Mar): Adds inbox-wide Outlook support, Agent Mode in Office apps, and specialized agents powered by Claude models.

Hands-Free Activation (“Hey Copilot”): Off by default; can be enabled via Windows settings.

Voice Chat Across Desktop/Web/Mobile: Secure transcripts stored in Microsoft 365.

Explore Pane for Guided AI Navigation: Provides centralized help across Create, Search, and Notebooks.

Preview: User-Level Federated Connectors: Users can securely connect apps like Notion and Canva using their credentials. Admins manage via 365 Admin Center.

Simplified Navigation Menu: Rolling out through January. No admin action required.

Teams Channels now available in Context IQ Prompts: Expands AI-assisted content retrieval based on channel activity.

Copilot Agents

Microsoft 365 Copilot is expanding its agent capabilities, including enhanced document generation, a shift to a newer underlying model, and easier movement between lite and full versions of Copilot Studio. Additional governance and management features will also roll out by the end of the year.

Copilot Agents: Governance, Migration Options, and New Models

Document/Chart/Code Generation Agents: Studio Lite agents can generate Word, Excel, and PowerPoint artifacts using the “Generate documents, charts, and code” skillset.

All Custom Agents Moving to GPT-4.1 (Nov 26): Admins should validate agent behavior and outputs due to model change.

Migration from Studio Lite → Full Copilot Studio (Dec 18): Authors can copy agents into the full environment.

Microsoft Agent 365 (Frontier Program, Late December): Enables enterprise oversight with agent inventory, access control, behavioral monitoring, threat protection, and segmentation by license/creator.

Defender

Microsoft continues consolidating threat detection across XDR while adding AI-based automation and enhanced admin controls.  

Defender: AI-Powered Grading, Default ZAP Enablement, and XDR Alert Modernization

Zero-Hour Auto-Purge (ZAP) Default Enablement (Jan 6): Automatically moves malicious Teams messages to quarantine for Defender for Office 365 Plan 1.

Agentic AI Grading for Phishing: Large language models assess phish submissions with natural language explanations to accelerate triage.

Threat Actor Attribution Moved (Jan 12, 2026): Removed from Defender for Endpoint alert pages and moved to Incidents + Threat Intelligence.

Identity Alerts Transition to XDR Platform: Requires admins to update workflows, Detector IDs, and alert exclusion rules using XDR Alert Tuning.

New Security Recommendations (Preview): Includes blocking NTLM and Remote Registry Service to prevent common attack paths.

Edge

Edge for Business will support (free) Microsoft 365 Copilot Chat to summarize and provide context from browser tabs, Microsoft 365 documents, and YouTube videos. The feature is off by default, respects DLP and policy settings, and requires Entra ID sign-in and appropriate licensing.  

Exchange

Admins should plan for reporting migration and upcoming service access restrictions.

Exchange: Modern Message Trace & Upcoming EWS Blocking

Modern Message Trace (GA): Replaces legacy Message Trace. Legacy Reporting Web Service retires March 18, 2026.

EWS API Blocking for F1/F3/Kiosk Licenses (Mar 1, 2026): EWS access disabled for lower-tier licenses; admins must update integrations and workflows.

Fabric

Fabric accelerates analytics modernization with new integration points and LLM-assisted data operations.

Fabric: SQL/Cosmos GA, Document-to-Data Conversion, and Automation Enhancements

GA Support for SQL Database + Cosmos DB: Enables enterprise-grade relational and NoSQL workloads directly inside Fabric.

Copilot Sidecar Chat Tools: Conversational troubleshooting for pipelines, dataflows, and deployments.

Document → Analytics Conversion via OneLake Shortcuts: Converts Office files/PDFs into analytics-ready data without ETL.

GraphQL APIs for Materialized Views: Provides real-time data access for modern app development.

Warehouse Deployment Automation: Adds DacFx support and dependency resolution for multi-item rollouts.

Fabric Data Agents for Unstructured Data: LLM-powered reasoning over PDFs and documents using Azure AI Search indexes.

Intune

Key updates require preparation for data retention changes and app SDK updates.

Intune: Architectural Changes, App Compatibility Requirements, and Compliance Risks

-Intune Data Warehouse Architecture Update (Mid-February): Resets historical data to ~30 days, modifies licensing definitions, and regenerates surrogate keys. Reporting teams should prepare for schema changes.

Mandatory App SDK Updates (Jan 19 Deadline): iOS SDK, iOS Wrapper, and Android Company Portal must be updated to prevent app-launch blocks. Conditional Launch policies recommended.

OneDrive

OneDrive: Simplified Offboarding File Transfer
A streamlined file-transfer workflow improves compliance and data retention clarity during employee departures.

Planner 

Sensitivity Label Support (Dec 15, 2025)
Planner tasks and plans will support Microsoft Information Protection sensitivity labels for encryption, access control, and compliance enforcement.

Power Platform

Organizations gain stronger governance and faster solution design options.

Power Platform: Agent Governance + AI-Generated Solution Plans

Copilot Agent Governance (Dec 21): Admins can enforce authentication rules, policies, and environment-level governance before agents interact with Power Platform data.

AI-Generated Structured Plans from Solutions: Power Apps can now convert existing solutions into structured blueprints (objectives, roles, data models). Simplifies redesigns and documentation.

Purview

Purview delivers deeper investigative context and stronger cross-app security.

Purview: New AI Investigation Tools, DLP Expansions, and IRM Enhancements

AI-Powered Data Security Investigations (Preview → GA Mar 2026): Adds vector search, content categorization, NLQ search, and expanded investigative details.

DLP + Edge for Business Integration: Provides inline protection for file uploads to unmanaged GenAI apps.

New Insider Risk Triggers: Flags outbound attachments to free public domains or personal emails.

Priority Cleanup Policies: Allows pre-retention deletion of SharePoint/OneDrive content.

-Auto Archive for Exchange: Moves the oldest mailbox items to archive automatically when usage hits 96%, by default for mailboxes with archives. 

SharePoint

Enhances accessibility and accelerates content creation workflows.

SharePoint: New Dark Themes + Page-Building Copilot Agent

Dark Teal & Dark Blue Themes (Mid-December): Two new Microsoft-designed dark themes (Dark Teal, Dark Blue) will be available for SharePoint sites starting mid-December to enhance visual experience, and support accessibility. 

SharePoint Page Agent: The SharePoint page agent, a declarative Copilot agent, enables users with Microsoft 365 Copilot licenses to create and refine SharePoint pages using natural language within supported apps.  

Teams

Teams Chat — Impersonation Alerts and Safer File Handling

Security and communication improvements for external interactions.

  • Tenant-Owned Domain Impersonation Warnings: Alerts users when external contacts appear suspicious. Enabled by default.
  • Malicious URL Protection (Complete as of Nov 2025): Warns users before opening harmful links.
  • Blocked Weaponizable Files: Executables and similar file types blocked automatically to reduce malware propagation.
  • User Reporting for False Positives: Requires Defender for O365 P2 + TAC/Defender portal configuration.
Teams Meetings — Presenter Chat, AI Summaries, and Multi-Language Interpretation

Enhances facilitation in large or structured meetings.

  • Organizer/Presenter Private Chat (January): Unified backroom chat for structured meetings, webinars, and town halls.
  • Custom AI Summaries in Meeting Recap (Mid-Jan 2026): Templates and instructions enable personalized recap generation for Copilot users.
  • Real-Time Interpretation for Teams Rooms on Windows: 9 supported languages, 20 hours/month per room for Pro-licensed rooms.
  • Collaborative Annotation Requests: Participants can request annotation during screen sharing.
Teams Phone — Faster Startup and Enhanced Calling Controls

Admins must prepare for a new calling process and upcoming features.

  • New ms-teams_modulehost.exe Process: MSFT is improving startup time of calling features in the Teams Desktop Client for Windows by introducing a new child process named ms-teams_modulehost.exe to handle the calling stack separately from the main application (ms-teams.exe). Update endpoint management and security software to allowlist ms-teams_modulehost.exe alongside ms-teams.exe and communicate this change to helpdesk staff to avoid confusion during troubleshooting. 
  • Teams Queues Shared Call History (Feb): Teams Queues app will introduce shared call history for queue members to view all call events through February. The feature is disabled by default and requires Teams Premium license.
  • Network Strength Indicator (Early Feb): Teams will introduce a Network Strength Indicator displaying connection quality with 3 bars (Good, Poor, Bad) starting early February.  
  • DTMF-Based PSTN Merge to Meetings (Feb): Teams will enable consulting and merging PSTN callers into meetings via DTMF navigation through IVR systems in February. 
Teams Admin Center — App Governance, Block Lists, and Enrollment Visibility

Stronger administrative controls for security and compliance.

  • Rule-Based App Controls in Teams Admin Center: Admins can manage Microsoft 365 certified Teams apps using rule-based controls under org-wide settings, customizing app availability based on permissions and publisher requirements.
  • Defender for Office 365 Tenant Allow/Block List Integration: Teams now integrates with the Tenant Allow/Block List, enabling centralized blocking of external domains, preventing communication, deleting existing messages, and auditing domain-block actions.
  • Malicious URL Protection (Rolled Out November 2025): Teams now warns users about unsafe links in chats and channels. Admins may configure settings via Teams Admin Center or PowerShell.
  • Blocking Weaponizable File Types (Starting November): Teams will automatically block messages containing executable or similarly dangerous file types to prevent malware propagation.
  • User Reporting for False-Flagged Threat Messages: Users will be able to report messages incorrectly flagged as security threats. Requires Defender for Office 365 Plan 2 and must be enabled in both TAC and the Defender portal.
  • Voice/Face Enrollment Dashboard (January): A new dashboard will provide visibility into AI-related enrollment data, including options for reviewing and deleting stored voice or facial enrollment artifacts.

Windows

Critical upcoming platform changes require admin attention across Secure Boot, Windows Update reliability, and legacy protocol deprecation.

Windows: Certificate Expirations, Update Failures, and WINS Retirement

Secure Boot Certificate Expiration (June 2026): Secure Boot uses cryptographic certificate authorities (CAs) to validate trusted firmware. These certificates—embedded in many Windows systems for ~15 years—will begin expiring June 2026, requiring organizations to assess firmware update readiness and OEM guidance.

Windows 10 22H2 ESU Update Failure (Nov 2025 Update): Some commercial devices enrolled in Extended Security Updates may fail to install the November 2025 patch. Admins should review deployment logs, validate ESU licensing, and prepare remediation steps for affected devices.

Windows 11 Enterprise 25H2 Hotpatch Loop (KB5068966): Devices using hotpatching may repeatedly download and reinstall the same KB5068966 update released on November 11, 2025. Investigation and corrective action are required to break the update loop.

WINS Removal After Windows Server 2025: Windows Internet Name Service (WINS) will be removed from all Windows Server releases following Windows Server 2025. Organizations relying on WINS for legacy applications must plan migration to modern name resolution mechanisms.

Microsoft Licensing

Microsoft will eliminate renewal grace periods and raise prices across key SMB and Enterprise SKUs. Admins must prepare for automatic monthly-conversion penalties and upcoming per-user cost increases.

Microsoft Licensing: Grace Period Removal & July 2026 Price Increases

Grace Period Removal (April 1, 2026): Microsoft will no longer provide a renewal grace period. If a customer does not renew or cancel by their renewal date, the subscription automatically converts to a monthly paid/monthly commit model at a 23% premium. Licenses will not shut off, but billing increases immediately.

Proactive Renewal Support from eGroup: eGroup will contact customers 60–90 days before renewal to prevent unintentional premium charges and ensure renewals are properly executed.

Price Increases Effective July 1, 2026: Subscriptions starting or renewing on/after July 1 will reflect the new pricing below:

SKUCurrent PriceNew Price
Business Basic$6.00$7.00
Business Standard$12.50$14.00
Office 365 E3$23.00$26.00
Microsoft 365 E3*$36.00$39.00
Microsoft 365 E5*$57.00$60.00
Microsoft 365 F1$2.25$3.00
Microsoft 365 F3$8.00$10.00

*  Select Intune Suite capabilities will be included in Microsoft 365 E3 and Microsoft 365 E5 subscription plans.

Get in Touch with Us

Connect with an expert to learn what we can do for your business.

Request Access to Win Wires

Enter your work email to request access to the eGroup Win Wires repository.

By requesting access, you confirm you are using an approved business email domain. You’ll receive a secure, one-time login link after returning to the Win Wires page.