{"id":13902,"date":"2025-11-20T09:02:16","date_gmt":"2025-11-20T00:02:16","guid":{"rendered":"https:\/\/m365jp.net\/?p=13902"},"modified":"2025-11-20T09:06:06","modified_gmt":"2025-11-20T00:06:06","slug":"mc1188230-microsoft-entra-id-retirement-of-duplicative-properties-in-passkey-fido2-authentication-methods-policy","status":"publish","type":"post","link":"https:\/\/m365jp.net\/index.php\/2025-11-20-mc1188230-microsoft-entra-id-retirement-of-duplicative-properties-in-passkey-fido2-authentication-methods-policy","title":{"rendered":"MC1188230 | Microsoft Entra ID: Retirement of duplicative properties in passkey (FIDO2) authentication methods policy"},"content":{"rendered":"<div class=\"postie-post\">\n<div>\n<hr>\n<table id=\"section\">\n<tbody>\n<tr>\n<th width=\"95%\">MC1188230 | Microsoft Entra ID: Retirement of duplicative properties in passkey (FIDO2) authentication methods policy<\/th>\n<\/tr>\n<\/tbody>\n<\/table>\n<hr>\n<table id=\"data\">\n<tbody>\n<tr>\n<th>Classification<\/th>\n<td>planForChange<\/td>\n<\/tr>\n<tr>\n<th>Last Updated<\/th>\n<td>11\/19\/2025 23:34:30<\/td>\n<\/tr>\n<tr>\n<th>Start Time<\/th>\n<td>11\/19\/2025 23:33:48<\/td>\n<\/tr>\n<tr>\n<th>End Time<\/th>\n<td>12\/31\/2027 08:00:00<\/td>\n<\/tr>\n<tr>\n<th>Action Required By Date<\/th>\n<td>2027-10-14T07:00:00Z<\/td>\n<\/tr>\n<tr>\n<th>Message Content<\/th>\n<td>\n<p><b>Introduction<\/b>  <\/p>\n<p>Starting October 2027 and ending November 2027, we <b>will retire<\/b> the<code> isAttestationEnforced<\/code> and  <code>keyRestrictions<\/code>properties from the existing<b> <\/b><a href=\"https:\/\/learn.microsoft.com\/graph\/api\/resources\/fido2authenticationmethodconfiguration?view=graph-rest-1.0\" target=\"_blank\">fido2AuthenticationMethodConfiguration API  <\/a>schema. This change aligns with the latest update to the passkey policy API schema, which introduces support for granular group-based configurations with passkey profiles.<\/p>\n<p>  <\/p>\n<p>During the retirement period,<code> isAttestationEnforced<\/code> and <code>keyRestrictions  <\/code>will remain in sync with their counterparts <code>attestationEnforcement<\/code> and  <code>keyRestrictions<\/code> within the Default passkey profile.<\/p>\n<p><b>When this will happen<\/b>&nbsp;<\/p>\n<p>Retirement begins in mid-October 2027 and is expected to complete by early November 2027.<\/p>\n<p><b>How this affects your organization:<\/b><\/p>\n<p>You are receiving this message because our reporting indicates your organization may be using this feature.  <\/p>\n<p><b>Who is affected:<\/b> Admins managing FIDO2 authentication configurations and any custom automations or third-party integrations using these properties.  <\/p>\n<p><b>What will happen<\/b><\/p>\n<ul>  <\/p>\n<li><code>isAttestationEnforced<\/code> and <code>keyRestrictions <\/code>properties  <b>will be retired<\/b>.<\/li>\n<p>  <\/p>\n<li>New properties are available in the <i>updated passkey policy API schema<\/i>.<\/li>\n<p>  <\/p>\n<li>Existing properties will sync with new ones during the transition period.<\/li>\n<p>  <\/p>\n<li>Automations or integrations using retired properties will stop working after the change.<\/li>\n<p>  <\/ul>\n<p>  <\/p>\n<p><b>What you can do to prepare<\/b><\/p>\n<ul>  <\/p>\n<li>Review your current configuration.<\/li>\n<p>  <\/p>\n<li>Update any custom automations and third-party integrations to support the new schema.<\/li>\n<p>  <\/p>\n<li>Notify your admins and update internal documentation.<\/li>\n<\/ul>\n<p><i>Screenshot &#8211; The read arrows indicate the properties to be retired:<\/i><\/p>\n<p><img decoding=\"async\" style=\"width: 400px;\" alt=\"user settings\" src=\"https:\/\/cxcs.microsoft.net\/static\/public\/messagecenter\/neutral\/65c62f67-4892-44ab-bf96-5faf5aee8b82\/a6b6140797dc388d8500339a8f389c62566d3321.png\"><\/p>\n<ul>  <\/ul>\n<p>Learn more: <a href=\"https:\/\/learn.microsoft.com\/graph\/api\/resources\/fido2authenticationmethodconfiguration?view=graph-rest-1.0\">  fido2AuthenticationMethodConfiguration resource type | Microsoft Graph | Microsoft Learn<\/a><\/p>\n<p><b>Compliance considerations:<\/b>  <\/p>\n<p>No compliance considerations identified, review as appropriate for your organization.<\/p>\n<\/td>\n<\/tr>\n<tr>\n<th>Machine Translation<\/th>\n<td>\n<p><b>\u7d39\u4ecb<\/b>  <\/p>\n<p>2027\u5e7410\u6708\u304b\u308911\u6708\u307e\u3067\u3001\u65e2\u5b58\u306e<b><\/b><a href=\"https:\/\/learn.microsoft.com\/graph\/api\/resources\/fido2authenticationmethodconfiguration?view=graph-rest-1.0\" target=\"_blank\">fido2AuthenticationMethodConfig<\/a>\u30b9\u30ad\u30fc\u30de\u304b\u3089<code> isAttestationEnforced<\/code>\u30d7\u30ed\u30d1\u30c6\u30a3\u3068<code>keyRestrictions<\/code>\u30d7\u30ed\u30d1\u30c6\u30a3\u3092<b>\u5ec3\u6b62\u3057\u307e\u3059<\/b>\u3002\u3053\u306e\u5909\u66f4\u306f\u3001\u30d1\u30b9\u30ad\u30fc\u30dd\u30ea\u30b7\u30fcAPI\u30b9\u30ad\u30fc\u30de\u306e\u6700\u65b0\u30a2\u30c3\u30d7\u30c7\u30fc\u30c8\u3068\u4e00\u81f4\u3057\u3066\u304a\u308a\u3001\u30d1\u30b9\u30ad\u30fc\u30d7\u30ed\u30d5\u30a1\u30a4\u30eb\u3092\u7528\u3044\u305f\u7d30\u5206\u306a\u30b0\u30eb\u30fc\u30d7\u30d9\u30fc\u30b9\u306e\u69cb\u6210\u306e\u30b5\u30dd\u30fc\u30c8\u304c\u5c0e\u5165\u3055\u308c\u307e\u3057\u305f\u3002<\/p>\n<p>  <\/p>\n<p>\u9000\u8077\u671f\u9593\u4e2d\u3001<code> isAttestationEnforced<\/code> \u3068 <code>keyRestrictions <\/code>\u306f\u30c7\u30d5\u30a9\u30eb\u30c8\u306e\u30d1\u30b9\u30ad\u30fc\u30d7\u30ed\u30d5\u30a1\u30a4\u30eb\u5185\u306e\u5bfe\u5fdc\u3059\u308b\u3082\u306e\u3068\u540c\u671f\u3057\u3001  <code>attestationEnforcement<\/code> \u304a\u3088\u3073 <code>keyRestrictions<\/code> \u3055\u308c\u307e\u3059\u3002<\/p>\n<p><b>\u305d\u308c\u304c\u3044\u3064\u8d77\u3053\u308b<\/b>&nbsp;\u306e\u304b<\/p>\n<p>\u9000\u8077\u306f2027\u5e7410\u6708\u4e2d\u65ec\u304b\u3089\u59cb\u307e\u308a\u30012027\u5e7411\u6708\u521d\u65ec\u307e\u3067\u306b\u5b8c\u4e86\u3059\u308b\u4e88\u5b9a\u3067\u3059\u3002<\/p>\n<p><b>\u3053\u308c\u304c\u3042\u306a\u305f\u306e\u7d44\u7e54\u306b\u4e0e\u3048\u308b\u5f71\u97ff:<\/b><\/p>\n<p>\u3053\u306e\u30e1\u30c3\u30bb\u30fc\u30b8\u3092\u53d7\u3051\u53d6\u3063\u3066\u3044\u308b\u306e\u306f\u3001\u79c1\u305f\u3061\u306e\u5831\u544a\u306b\u3088\u308b\u3068\u8cb4\u7d44\u7e54\u304c\u3053\u306e\u6a5f\u80fd\u3092\u5229\u7528\u3057\u3066\u3044\u308b\u53ef\u80fd\u6027\u304c\u3042\u308b\u305f\u3081\u3067\u3059\u3002<\/p>\n<p><b>\u5f71\u97ff\u3092\u53d7\u3051\u308b\u4eba\u7269:<\/b> \u7ba1\u7406\u8005\u304cFIDO2\u8a8d\u8a3c\u306e\u8a2d\u5b9a\u3084\u3001\u3053\u308c\u3089\u306e\u30d7\u30ed\u30d1\u30c6\u30a3\u3092\u4f7f\u3063\u305f\u30ab\u30b9\u30bf\u30e0\u30aa\u30fc\u30c8\u30e1\u30fc\u30b7\u30e7\u30f3\u3084\u30b5\u30fc\u30c9\u30d1\u30fc\u30c6\u30a3\u306e\u7d71\u5408\u3092\u7ba1\u7406\u3057\u3066\u3044\u307e\u3059\u3002<\/p>\n<p><b>\u4f55\u304c\u8d77\u3053\u308b\u306e\u304b<\/b><\/p>\n<ul>  <\/p>\n<li><code>isAttestationEnforced<\/code><code>keyRestrictions <\/code>\u7269\u4ef6<b>\u306f\u5f15\u9000\u3055\u308c\u307e\u3059<\/b>\u3002<\/li>\n<p>  <\/p>\n<li>\u65b0\u3057\u3044\u30d7\u30ed\u30d1\u30c6\u30a3\u306f <i>\u66f4\u65b0\u3055\u308c\u305f\u30d1\u30b9\u30ad\u30fc\u30dd\u30ea\u30b7\u30fcAPI\u30b9\u30ad\u30fc\u30de<\/i>\u3067\u5229\u7528\u53ef\u80fd\u3067\u3059\u3002<\/li>\n<p>  <\/p>\n<li>\u79fb\u884c\u671f\u9593\u4e2d\u306b\u65e2\u5b58\u306e\u7269\u4ef6\u3068\u65b0\u3057\u3044\u7269\u4ef6\u304c\u540c\u671f\u3055\u308c\u307e\u3059\u3002<\/li>\n<p>  <\/p>\n<li>\u30ea\u30bf\u30a4\u30a2\u3057\u305f\u30d7\u30ed\u30d1\u30c6\u30a3\u3092\u4f7f\u3063\u305f\u81ea\u52d5\u5316\u3084\u7d71\u5408\u306f\u3001\u5909\u66f4\u5f8c\u306b\u52d5\u4f5c\u3057\u306a\u304f\u306a\u308a\u307e\u3059\u3002<\/li>\n<p>  <\/ul>\n<p>  <\/p>\n<p><b>\u6e96\u5099\u306e\u305f\u3081\u306b\u3067\u304d\u308b\u3053\u3068<\/b><\/p>\n<ul>  <\/p>\n<li>\u73fe\u5728\u306e\u69cb\u6210\u3092\u898b\u76f4\u3057\u3066\u304f\u3060\u3055\u3044\u3002<\/li>\n<p>  <\/p>\n<li>\u30ab\u30b9\u30bf\u30e0\u30aa\u30fc\u30c8\u30e1\u30fc\u30b7\u30e7\u30f3\u3084\u30b5\u30fc\u30c9\u30d1\u30fc\u30c6\u30a3\u306e\u7d71\u5408\u3092\u65b0\u3057\u3044\u30b9\u30ad\u30fc\u30de\u306b\u5bfe\u5fdc\u3059\u308b\u3088\u3046\u306b\u66f4\u65b0\u3057\u3066\u304f\u3060\u3055\u3044\u3002<\/li>\n<p>  <\/p>\n<li>\u7ba1\u7406\u8005\u306b\u901a\u77e5\u3057\u3001\u5185\u90e8\u30c9\u30ad\u30e5\u30e1\u30f3\u30c8\u3092\u66f4\u65b0\u3057\u3066\u304f\u3060\u3055\u3044\u3002<\/li>\n<\/ul>\n<p><i>\u30b9\u30af\u30ea\u30fc\u30f3\u30b7\u30e7\u30c3\u30c8 &#8211; \u8aad\u307f\u53d6\u308a\u77e2\u5370\u306f\u5ec3\u6b62\u3059\u3079\u304d\u30d7\u30ed\u30d1\u30c6\u30a3\u3092\u793a\u3057\u3066\u3044\u307e\u3059:<\/i><\/p>\n<p><img decoding=\"async\" style=\"width: 400px;\" alt=\"user settings\" src=\"https:\/\/cxcs.microsoft.net\/static\/public\/messagecenter\/neutral\/65c62f67-4892-44ab-bf96-5faf5aee8b82\/a6b6140797dc388d8500339a8f389c62566d3321.png\"><\/p>\n<ul>  <\/ul>\n<p>\u8a73\u3057\u304f\u306f\u3053\u3061\u3089: <a href=\"https:\/\/learn.microsoft.com\/graph\/api\/resources\/fido2authenticationmethodconfiguration?view=graph-rest-1.0\">  fido2AuthenticationMethodConfiguration \u30ea\u30bd\u30fc\u30b9\u30bf\u30a4\u30d7 |Microsoft Graph |Microsoft Learn<\/a><\/p>\n<p><b>\u30b3\u30f3\u30d7\u30e9\u30a4\u30a2\u30f3\u30b9\u306e\u8003\u616e\u4e8b\u9805:<\/b>  <\/p>\n<p>\u30b3\u30f3\u30d7\u30e9\u30a4\u30a2\u30f3\u30b9\u4e0a\u306e\u61f8\u5ff5\u4e8b\u9805\u306f\u7279\u5b9a\u3055\u308c\u305a\u3001\u7d44\u7e54\u306b\u5fdc\u3058\u3066\u30ec\u30d3\u30e5\u30fc\u3057\u3066\u304f\u3060\u3055\u3044\u3002<\/p>\n<\/td>\n<\/tr>\n<\/tbody>\n<\/table><\/div>\n<\/div>\n","protected":false},"excerpt":{"rendered":"<p>MC1188230 | Microsoft Entra ID: Retirement of duplicative properties in passkey (FIDO2) authentication methods [&hellip;]<\/p>\n","protected":false},"author":1,"featured_media":0,"comment_status":"closed","ping_status":"open","sticky":false,"template":"","format":"standard","meta":{"footnotes":""},"categories":[1],"tags":[],"class_list":["post-13902","post","type-post","status-publish","format-standard","hentry","category-uncategorized"],"_links":{"self":[{"href":"https:\/\/m365jp.net\/index.php\/wp-json\/wp\/v2\/posts\/13902","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/m365jp.net\/index.php\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/m365jp.net\/index.php\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/m365jp.net\/index.php\/wp-json\/wp\/v2\/users\/1"}],"replies":[{"embeddable":true,"href":"https:\/\/m365jp.net\/index.php\/wp-json\/wp\/v2\/comments?post=13902"}],"version-history":[{"count":0,"href":"https:\/\/m365jp.net\/index.php\/wp-json\/wp\/v2\/posts\/13902\/revisions"}],"wp:attachment":[{"href":"https:\/\/m365jp.net\/index.php\/wp-json\/wp\/v2\/media?parent=13902"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/m365jp.net\/index.php\/wp-json\/wp\/v2\/categories?post=13902"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/m365jp.net\/index.php\/wp-json\/wp\/v2\/tags?post=13902"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}