On September 30th, 2025 we will be retiring the ability to manage authentication methods in the legacy Multifactor Authentication (MFA) and Self-Service Password Reset (SSPR) policies in Entra ID. Organizations should migrate their methods to the converged authentication methods policy where methods can be managed centrally for all authentication scenarios including passwordless, multi-factor authentication and self-service password reset.
Entra ID sets 30 September 2025 deadline to leave legacy MFA and SSPR method management
The period’s only supplied update is a Microsoft 365 Message Center major update for Entra ID. Microsoft says it will retire the ability to manage authentication methods through the legacy Multifactor Authentication (MFA) and Self-Service Password Reset (SSPR) policies on 30 September 2025. This is a forward-looking retirement notice, not evidence of an immediate behavior change this week.
- Management of methods in the legacy policies will be retired
Entra ID · Authentication
On 30 September 2025, Entra ID will no longer support managing authentication methods in the legacy MFA and SSPR policies. The notice specifically describes retirement of management in those policies; it does not say that the authentication methods themselves will be removed on that date.
Administrators should plan to migrate methods managed through the legacy MFA and SSPR policies to the converged Authentication methods policy before the deadline. Microsoft describes that policy as the central management point for passwordless, multifactor authentication, and SSPR scenarios. The supplied notice does not include migration steps or technical prerequisites.
This period briefing was generated by AI from the tracked Microsoft Learn and Message Center changes.
