Microsoft Purview: Information Protection - Rights Management connector – Certificate-based authentication Beta
Data as of 1 hour ago (9 September 2026)
Description
The Microsoft Rights Management (RMS) connector is moving from shared-secret authentication to certificate-based authentication, improving its security posture. With this update, administrators configure their own Microsoft Entra app registration and certificate, then use the new PowerShell module to configure the certificate for each workload (Connector, Exchange, SharePoint, and FCI). New PowerShell cmdlets handle certificate import, registry configuration, private-key permissions, and validation. As part of this change, the connector setup no longer provisions an Entra service principal or issues a shared secret on the customer's behalf. Customers should plan to register an Entra ID application and upload a certificate before installing or upgrading the connector.
Change history
Added to the roadmap 3 June 2026. Tracked here since 1 September 2026. Earliest target we recorded: September 2026 (since tracked — Microsoft may have moved it before we started watching).
- 3 September 2026 Release month September 2026 January 2027 +4 mo