Microsoft Edge: Retiring legacy sign-in implementation on Windows

🚨 The Signal: Microsoft Edge is standardizing its authentication to OneAuth, deprecating a legacy sign-in method. This improves security diagnostics and consistency across M365 apps, but some users may need to re-authenticate.

The Impact

Organizations using Microsoft Edge on Windows are affected, with a low security risk of temporary authentication disruption for some users.

  • Edge users: May need to re-authenticate in rare cases.
  • Admins: Should identify and assist users with unmigrated profiles.
  • Security teams: Improved diagnostics for authentication issues.

The Action

  1. Review Microsoft Edge documentation for OneAuth migration guidance.
  2. Identify Edge profiles that have not yet automatically migrated to OneAuth.
  3. Communicate potential re-authentication needs to affected users.
  4. Ensure --disable-features=msOneAuthWAM is not explicitly enabled in your environment.

Domain: M365-Apps · Impact: low · Workload: M365 Apps · Essential Eight: User Application Hardening · ISM: ISM-1412, ISM-1485, ISM-1486, ISM-1542, ISM-1585, ISM-1667, ISM-1668, ISM-1669, ISM-1670, ISM-1823, ISM-1824, ISM-1859, ISM-1860