On September 30th, 2025 we will be retiring the ability to manage authentication methods in the legacy Multifactor Authentication (MFA) and Self-Service Password Reset (SSPR) policies in Entra ID. Organizations should migrate their methods to the converged authentication methods policy where methods can be managed centrally for all authentication scenarios including passwordless, multi-factor authentication and self-service password reset.
Entra ID announces a 30 September 2025 retirement deadline for legacy MFA and SSPR method management
September’s supplied record contains one consequential change: a Microsoft 365 Message Center major update issued on 29 September 2023. Microsoft says administrators will no longer be able to manage authentication methods through the legacy Multifactor Authentication (MFA) and Self-Service Password Reset (SSPR) policies after 30 September 2025. This is a forward-looking retirement notice, not evidence of an immediate behavior change, new feature launch, preview, or general-availability milestone.
- Management is moving from separate legacy policies to the converged Authentication methods policyEntra ID
The announced retirement changes where authentication methods are managed: the legacy MFA and SSPR policies will lose that management capability on 30 September 2025, while Microsoft directs organizations to the converged Authentication methods policy for centralized management across passwordless, MFA, and SSPR scenarios.
Administrators should plan to move authentication methods managed in the legacy MFA and SSPR policies to Entra ID’s converged Authentication methods policy before the deadline. Microsoft describes the converged policy as the central management point for passwordless, multifactor authentication, and SSPR scenarios. The supplied notice does not provide migration steps or technical prerequisites, so more specific implementation guidance cannot be inferred.
This period briefing was generated by AI from the tracked Microsoft Learn and Message Center changes.
