Skip to content
Retirement of Legacy Authentication Methods Management in Microsoft Entra ID

Retirement of Legacy Authentication Methods Management in Microsoft Entra ID

Written By Anoop C Nair
Last Updated June 13, 2024
Posted In Entra
SHARE

Exciting News! Retirement of Legacy Authentication Methods Management in Microsoft Entra ID. Microsoft announced that legacy Multifactor Authentication (MFA) and Self-Service Password Reset (SSPR) policies in Microsoft Entra ID will retire on September 30, 2025.

Did you know that Microsoft Entra ID is a cloud-based solution for managing identity and access? It provides a comprehensive suite of authentication and authorization services for various Microsoft offerings, including Office 365, Dynamics 365, Azure, and many cloud-based applications.

Microsoft usually provides many updates and improvements on Microsoft Entra. Now, Microsoft has announced important news that affects Entra users. So, users must migrate their methods to the converged authentication methods policy.

Migration of authentication methods is very important. If users do not migrate authentication methods, they may affect service impact. In this blog post, I will help you learn more about retiring Legacy Authentication Methods Management in Microsoft Entra ID.

Patch My PC
Retirement of Legacy Authentication Methods Management in Microsoft Entra ID - Fig.1
Retirement of Legacy Authentication Methods Management in Microsoft Entra ID – Fig.1

Retirement of Legacy Authentication Methods Management in Microsoft Entra ID

As I mentioned, Microsoft Entra’s authentication methods will be changed in the upcoming year. IT Admins can migrate this to their organization. After migration, users can manage all authentication methods in the Authentication methods policy. This allows users to create tenant-wide authentication policies from a single configuration page in the Microsoft Entra admin center.

Retiring Authentication Methods
Legacy Multifactor Authentication Methods (MFA)
Self-Service Password Reset (SSPR)
Retirement of Legacy Authentication Methods Management in Microsoft Entra ID – Table.1

Before migrating, you should recognize which authentication methods your organization enabled in the Microsoft Entra ID. To do this, Log in to the Microsoft Entra admin center.

  • After that, select the Protection section on the left side of the Microsoft Entra admin center.
  • Then Click on the Authentication methods from Protection.
  • From the Authentication method, click on Policies, then click Microsoft Authenticator.
Retirement of Legacy Authentication Methods Management in Microsoft Entra ID - Fig.2
Retirement of Legacy Authentication Methods Management in Microsoft Entra ID – Fig.2

After that, you will get a new window of Microsoft Authenticator Settings. Then click on Enable and Select All users. After that click on the Save button from the below window.

Retirement of Legacy Authentication Methods Management in Microsoft Entra ID - Fig.3
Retirement of Legacy Authentication Methods Management in Microsoft Entra ID – Fig.3

After enabling the Microsoft Authenticator for all users from the previous window, you can see the changes in the Authentication method window. Enabling this option helps your organization migrate Authentication Methods for all users.

Retirement of Legacy Authentication Methods Management in Microsoft Entra ID - Fig.4
Retirement of Legacy Authentication Methods Management in Microsoft Entra ID – Fig.4

Migration of Authentication Methods (MFA)

Managing the migration of Authentication is very easy for users. Users can complete this process via Azure AD or Microsoft Entra portal. In the Authentication Method, select Policies, and this page shows Manage Migration.

Retirement of Legacy Authentication Methods Management in Microsoft Entra ID - Fig.5
Retirement of Legacy Authentication Methods Management in Microsoft Entra ID – Fig.5

On the Manage Migration page, you can see different options. Click on the Migration In Progress option. After clicking, you can see the blue button.

Retirement of Legacy Authentication Methods Management in Microsoft Entra ID - Fig.6
Retirement of Legacy Authentication Methods Management in Microsoft Entra ID – Fig.6

After disabling all methods in the legacy MFA and SSPR policies, you can click on the Migration Complete option on the Manage Migration page. Then, follow the steps to complete the migration.

  • Go to Microsoft Entra admin center
  • Click Protection > Authentication methods
  • Click Manage migration
  • Select Migration Complete
  • Click Save
Retirement of Legacy Authentication Methods Management in Microsoft Entra ID - Fig.7
Retirement of Legacy Authentication Methods Management in Microsoft Entra ID – Fig.7

We are on WhatsApp now. To get the latest step-by-step guides, news, and updates, Join our Channel. Click here. HTMD WhatsApp.

Author

Anoop C Nair is Microsoft MVP! He is a Device Management Admin with more than 20 years of experience (calculation done in 2021) in IT. He is a Blogger, Speaker, and Local User Group HTMD Community leader. His main focus is on Device Management technologies like SCCM 2012, Current Branch, and Intune. He writes about ConfigMgr, Windows 11, Windows 10, Azure AD, Microsoft Intune, Windows 365, AVD, etc.

Written by

Anoop C Nair is Workplace Technology solution architect with 25+ years of experience in global enterprise organizations such as JP Morgan, Capgemini, etc. Microsoft Certified Trainer. Microsoft MVP from 2015 onwards for consecutive 11+ years! He also conducts Intune and modern workplace tech training for enterprise organizations. He is Blogger, Speaker, and Founder of HTMD Community and HTMD Conference. His main focus is on Device Management technologies like Intune, Windows, Cloud PC. He writes about technologies like Intune, SCCM, Windows, Cloud PC, Windows, Entra, Microsoft Security.

Discussion

Join the discussion

Your email address will not be published. Required fields are marked *

Related guides

Entra

Entra ID SSPR Improves Security with Registered Authentication Methods | Impact on Unregistered Users Starting September 2026

Key Takeaway Entra ID SSPR Improves Security with Registered Authentication Methods! Starting September 7, 2026, Microsoft Entra ID Self-Service Password Reset (SSPR) will require users to verify their identity using explicitly registered authentication methods. Directory-sourced contact information, such as mobile phone numbers, business phone numbers, and alternate email addresses, will no longer be accepted for […]

AC Anoop C Nair 4 min read
Entra

Explicit Forward Proxy in Microsoft Entra Internet Access Helps Secure VDI BYOD and Clientless Browsing

Key Takeaways Explicit Forward Proxy in Microsoft Entra Internet Access! This feature allows organizations to use secure web and AI gateway capabilities without deploying the Global Secure Access client, making it useful for browser-based and lightly managed environments. It works with browsers that support Proxy Auto-Configuration (PAC) files. Since this is a prerelease feature, Microsoft […]

AC Anoop C Nair 3 min read
Cloud

Microsoft Enables Entra Writeback for Cloud-Managed Remote Mailboxes to Help Remove Last Exchange Server

Key Takeaways: Let’s discuss about Microsoft Unlocks Entra Writeback for Cloud-Managed Remote Mailboxes to Help Remove Last Exchange Server. For customers with no remaining dependency on their last Exchange Server, a guide for decommissioning your last Exchange Server. Microsoft announced the Public Preview of Cloud-Managed Remote Mailboxes. Microsoft is excited to share these two new milestones […]

AC Anoop C Nair 3 min read