We would like to make you aware of an upcoming change announced by Microsoft that may affect how your users authenticate to Microsoft 365 and other Microsoft cloud services.
Microsoft has confirmed that it is retiring its native SMS and voice-call based authentication services within Microsoft Entra ID (formerly Azure Active Directory).
Starting 1 September 2026, Microsoft will begin promoting passkeys as the default authentication method for users currently relying on SMS or voice verification. From 1 February 2027, Microsoft will no longer provide SMS or voice authentication services directly through Entra ID.
What does this mean?
If your organisation currently uses:
- SMS verification codes (text messages)
- Voice-call verification codes
- SMS or voice methods for Self-Service Password Reset (SSPR)
These methods will no longer be supported by Microsoft’s built-in authentication service after 1 February 2027.
Microsoft is encouraging organisations to move to more secure, phishing-resistant authentication methods such as:
- Microsoft Authenticator
- Passkeys
- Windows Hello for Business
- FIDO2 security keys
These methods provide significantly stronger protection against phishing, SIM-swapping, and social engineering attacks.
What should you do?
We recommend reviewing your current authentication methods as soon as possible to identify any users who still rely on SMS or voice verification. Organisations should begin planning a migration to Microsoft Authenticator, passkeys, or another approved phishing-resistant authentication method well before February 2027.
How ADM can help
ADM can assist with:
- Reviewing your current Microsoft Entra authentication configuration
- Identifying users still using SMS or voice authentication
- Deploying Microsoft Authenticator
- Planning and implementing passkey adoption
- Updating authentication and password reset policies
- User communications and training
If you would like us to assess your environment or discuss the impact on your organisation, please contact our Service Desk or your Account Manager.
About ADM
Founded in 1984, ADM Computing is Kent’s largest and longest established IT services company specialising in IT support services that help to reduce IT costs as well as improve network efficiency. We have a long history of charity work and won’t be slowing down any time soon!
To keep up to date with all our latest updates, follow us on LinkedIn: ADM Computing LinkedIn
Blog Author
Andy Cox – Associate Technical Director – Security and Compliance
Andy joined ADM in 2010 as a First Line Engineer, bringing with him over a decade of IT experience from his time in the NHS. Since then, he has become a cornerstone of the ADM team, progressing to the role of Senior Engineer.
Andy works on customer projects with a focus on Microsoft 365, Azure, and security solutions. In addition to his client-facing role, Andy plays a pivotal part in ADM’s internal operations, particularly in security and compliance. He contributes as a key member of the ADM Security, Compliance, and ISO teams, ensuring the company meets the highest standards.
When he’s not solving complex technical challenges, Andy enjoys building scale model aircraft and playing guitar, showcasing his creativity and precision both in and outside of the workplace.

