Sophos Central sync to Entra - ADAL vs MSAL Library

We've been synching between Sophos Central and MS Entra for a couple years now without issue.  A couple days ago, MS sends an alert stating that the Enterprise App that was created for this synch is using ADAL and needs to be migrated to MSAL.  After jumping through the MS rabbit holes, there doesn't appear to be a clear migration (Click this button).  Our sophos partner thinks that we just need to recreate the app using the Sophos doc https://docs.sophos.com/central/Customer/help/en-us/PeopleAndDevices/DirectoryService/SetUpSynchronizationWithAzureAD/index.html

I see no reference to ADAL or MSAL during the creation process.  How do we know that the new app will be MSAL?  Curious if anyone else is having to do this.

Thanks,



Added tags
[edited by: GlennSen at 10:21 AM (GMT -8) on 4 Nov 2024]
Parents Reply Children
  • Glenn, is there any further update or information on this?  The Entra ID sync configuration steps do not appear to be able to distinguish between ADAL and MSAL so I am assuming it is the code within Sophos Central that will need to change?  Do we need to do anything in our own Sophos or Entra tenants to stop the alert about the sync still using ADAL or will this be an internal update within Sophos Central?  Cheers, Marc

  • I recreated the directed sync service in Sophos central and pointed it at a new registered app in Entra, thinking that just recreating the sync would migrate it to MSAL.  However, within days the application is now flagged as using ADAL.   Any updated on when this will be updated in Sophos Central?  Thanks.