Hardening updates for Microsoft Entra Connect Sync
In brief
The minimum-version deadline for Microsoft Entra Connect Sync is extended from September 30, 2026, to April 7, 2027. Version 2.5.79.0 or later is required.
What Entra admins need to know
Upgrade to version 2.5.79.0 or later by April 7, 2027, or synchronization services will fail until the upgrade is completed.
This editorial summary was generated by AI from the documentation changes. Verify important details in the full Microsoft Learn article.
Documentation change
The comparison below shows only the changed extract. Use the full-page view for complete context.
title: Hardening updates for Microsoft Entra Connect Sync
description: Learn how to upgrade Microsoft Entra Connect Sync to meet the minimum version requirements and prevent synchronization failures after September 30, 2026.April 7, 2027.
ms.reviewer: sharonrutto
ms.date: 09/19/202530/2026
ms.topic: concept-article
ms.subservice: hybrid-connect
As part of increasing the security posture of Microsoft Entra Connect, Microsoft deployed a dedicated first-party application to enable the synchronization between Active Directory and Microsoft Entra ID. This new application will manifest as a first party service principal called the "Microsoft Entra AD Synchronization Service" (Application Id: 6bf85cfa-ac8a-4be5-b5de-425a0d0dc016) and will be visible in the Enterprise Applications experience within the Microsoft Entra admin center. This application is critical for the continued operation of on-premises to Microsoft Entra ID synchronization functionality through Entra Connect.
We have since released a new version (2.5.79.0) of Microsoft Entra Connect that contains this service change. All customers are required to upgrade to the minimum versions by September 30, 2026April 7, 2027, to avoid service disruptions.
Expected impacts
All synchronization services in Microsoft Entra Connect Sync will fail.
Minimum versions
To avoid any service impact, customers should be on the following version by April 7, 2027:
Version 2.5.79.0 or higher.
The Microsoft Entra Connect Sync .msi installation file for this version is exclusively available on Microsoft Entra Admin Center under Microsoft Entra Connect.
To assist customers with the upgrade process, we occasionally auto upgrade customers where supported. If you would like to be auto upgraded, ensure you have the auto upgrade feature configured. For auto upgrade to work, you should be on version 2.3.20.0 or higher.
Consider moving to Microsoft Entra Cloud Sync
@@ -1,8 +1,8 @@ --- title: Hardening updates for Microsoft Entra Connect Sync-description: Learn how to upgrade Microsoft Entra Connect Sync to meet the minimum version requirements and prevent synchronization failures after September 30, 2026.+description: Learn how to upgrade Microsoft Entra Connect Sync to meet the minimum version requirements and prevent synchronization failures after April 7, 2027. ms.reviewer: sharonrutto-ms.date: 09/19/2025+ms.date: 09/30/2026 ms.topic: concept-article ms.subservice: hybrid-connect @@ -12,7 +12,7 @@ ms.subservice: hybrid-connect As part of increasing the security posture of Microsoft Entra Connect, Microsoft deployed a dedicated first-party application to enable the synchronization between Active Directory and Microsoft Entra ID. This new application will manifest as a first party service principal called the "Microsoft Entra AD Synchronization Service" (Application Id: `6bf85cfa-ac8a-4be5-b5de-425a0d0dc016`) and will be visible in the Enterprise Applications experience within the Microsoft Entra admin center. This application is critical for the continued operation of on-premises to Microsoft Entra ID synchronization functionality through Entra Connect. -We have since released a new version (2.5.79.0) of Microsoft Entra Connect that contains this service change. All customers are required to upgrade to the minimum versions by September 30, 2026 to avoid service disruptions.+We have since released a new version (2.5.79.0) of Microsoft Entra Connect that contains this service change. All customers are required to upgrade to the minimum versions by April 7, 2027, to avoid service disruptions. ## Expected impacts @@ -21,25 +21,25 @@ If you aren’t upgraded to the minimum required version (2.5.79.0), you might e All synchronization services in Microsoft Entra Connect Sync will fail. > [!NOTE]-> If you’re unable to upgrade by the deadline, you can restore the impacted functionalities by upgrading to the latest version. However, **all synchronization services will fail** during the period between **September 30, 2026, and when you upgrade**.+> If you’re unable to upgrade by the deadline, you can restore the impacted functionalities by upgrading to the latest version. However, **all synchronization services will fail** during the period between **April 7, 2027, and when you upgrade**. ## Minimum versions -To avoid any service impact, customers should be on the following version by September 30, 2026:+To avoid any service impact, customers should be on the following version by April 7, 2027: -Version [2.5.79.0](/entra/identity/hybrid/connect/reference-connect-version-history#25790) or higher.+Version [2.5.79.0](/entra/identity/hybrid/connect/reference-connect-version-history#25790) or higher. The Microsoft Entra Connect Sync .msi installation file for this version is exclusively available on Microsoft Entra Admin Center under [Microsoft Entra Connect](https://entra.microsoft.com/#view/Microsoft_AAD_Connect_Provisioning/AADConnectMenuBlade/%7E/GetStarted). > [!IMPORTANT]-> Make sure you familiarize yourself with the [minimum requirements](/entra/identity/hybrid/connect/how-to-connect-install-prerequisites) for the versions, including but not limited to:+> Make sure you familiarize yourself with the [minimum requirements](/entra/identity/hybrid/connect/how-to-connect-install-prerequisites) for the versions, including but not limited to: - [.NET framework of 4.7.2](https://dotnet.microsoft.com/en-us/download/dotnet-framework/net472#:~:text=Downloads%20for%20building%20and%20running%20applications%20with%20.NET%20Framework%204.7.2) - [TLS1.2](/entra/identity/hybrid/connect/reference-connect-tls-enforcement) -To assist customers with the upgrade process, we occasionally auto upgrade customers where supported. If you would like to be auto upgraded, ensure you have the [auto upgrade feature](/entra/identity/hybrid/connect/how-to-connect-install-automatic-upgrade) configured.-For [auto upgrade to work](/entra/identity/hybrid/connect/security-updates-pks), you should be on version [2.3.20.0](/entra/identity/hybrid/connect/reference-connect-version-history#23200) or higher.+To assist customers with the upgrade process, we occasionally auto upgrade customers where supported. If you would like to be auto upgraded, ensure you have the [auto upgrade feature](/entra/identity/hybrid/connect/how-to-connect-install-automatic-upgrade) configured.+For [auto upgrade to work](/entra/identity/hybrid/connect/security-updates-pks), you should be on version [2.3.20.0](/entra/identity/hybrid/connect/reference-connect-version-history#23200) or higher. ## Consider moving to Microsoft Entra Cloud Sync 