| MC1184649 | Microsoft SharePoint: Retirement of IDCRL authentication protocol and enforcement of OpenID Connect and OAuth protocols |
|---|
| Classification | planForChange |
|---|---|
| Last Updated | 11/11/2025 00:38:05 |
| Start Time | 11/11/2025 00:37:53 |
| End Time | 06/01/2026 07:00:00 |
| Action Required By Date | 2026-01-30T08:00:00Z |
| Message Content |
[Introduction:] As part of the Microsoft Secure Future Initiative (SFI) and in alignment with the “Secure by Default” principle, we’re retiring the legacy IDCRL (Identity Client Run Time Library) authentication protocol in SharePoint Online and OneDrive for Business. This change helps strengthen your organization’s security posture by enforcing modern authentication standards—OpenID Connect and OAuth—which reduce exposure to outdated and vulnerable authentication methods. [When this will happen:]
[How this affects your organization:] Who is affected:
What will happen:
[What you can do to prepare:] We recommend migrating from legacy authentication protocols to modern authentication as soon as possible. To prepare for this retirement:
[Compliance considerations:] No compliance considerations identified, review as appropriate for your organization. |