Managing external identities to enable secure access for partners, customers, and other non-employees
Hello Lisa,
Thank you for the detailed information.
Regarding the custom background behavior, what you are currently seeing is expected with the newer Microsoft Entra External ID branding experience. After removing a custom background image, the sign-in page falls back to the default neutral/white background rather than restoring the previous Microsoft stock illustration. At this time, there is no supported configuration available to restore the old default Microsoft background image automatically.
For the identity provider behavior, the Google and Apple options appear because those identity providers are enabled within the same user flow. In Microsoft Entra External ID, all enabled identity providers configured for a user flow are automatically displayed on the Microsoft-hosted sign-in page.
Currently, there is no supported feature to selectively hide Google and Apple providers only from the Microsoft sign-in page while still keeping them enabled in the same user flow.
Your understanding regarding user flows is correct. An application can only be associated with one user flow through the standard configuration experience. Because of this limitation, if separate sign-in experiences are required (for example, Microsoft-only on one page and Google/Apple on another), this would typically require a custom implementation approach such as custom policies or a redesigned authentication flow architecture.
Reference documentation:
https://learn.microsoft.com/en-us/entra/external-id/customers/concept-branding-customers
https://learn.microsoft.com/en-us/entra/external-id/customers/how-to-user-flow-add-application