Microsoft to Block Legacy TLS Connections for Exchange Online in July 2026

Microsoft to Block Legacy TLS Connections for Exchange Online in July 2026

First seen 29 Apr 2026, 19:05 UTC BleepingcomputerTheregisterknowledge.workspace.google.comScworld 91% similarity 42.9

Article Content

Browse articles
ThreatCluster

Microsoft has announced plans to deprecate support for legacy TLS versions (TLS 1.0 and TLS 1.1) for POP and IMAP connections to Exchange Online, starting in July 2026. This change will require all connections to use TLS 1.2 or later, impacting users of older email clients and devices that do not support these newer protocols. Microsoft expects minimal disruption as most users already utilize modern TLS versions. However, users who have opted into legacy endpoints may face connection failures. The move aligns with broader industry efforts to enhance internet security by retiring outdated encryption protocols. Organizations are advised to ensure their email clients are updated to avoid potential issues. This deprecation follows years of warnings from Microsoft about the risks associated with legacy TLS versions.

Key Points: • Microsoft will block TLS 1.0 and 1.1 for Exchange Online POP and IMAP connections starting July 2026. • Users must ensure their email clients support TLS 1.2 or later to avoid connection issues. • The change is part of a broader industry trend to enhance security by retiring outdated encryption protocols.

ThreatCluster AI

Timeline

2020-01-01
Support for TLS 1.0 and 1.1 in Exchange Online officially ended.
2023-01-01
Microsoft announced plans to disable legacy TLS versions for POP3 and IMAP4.
2026-04-28
Microsoft confirmed deprecation of legacy TLS versions for Exchange Online.
2026-07-01
Blocking of legacy TLS connections for Exchange Online begins.

Community

Browse all →