Introduction
As part of Microsoft’s ongoing Secure Future Initiative (SFI) (SFI), Microsoft Purview is enhancing protections for cmdlets that connect to other Microsoft 365 services such as SharePoint and Exchange. Starting August 31, 2025, a new connection parameter will be required when using Security & Compliance PowerShell to run specific eDiscovery-related cmdlets.
When this will happen
This change will take effect on August 31, 2025.
How this affects your organization
To maintain functionality and align with modern authentication standards, customers must use Exchange Online PowerShell v3.9.0 and later and include the -EnableSearchOnlySession parameter when running Connect-IPPSSession to execute the following cmdlets:
- New-ComplianceSearchAction
- New-CaseHoldPolicy, Set-CaseHoldPolicy, Remove-CaseHoldPolicy
- New-CaseHoldRule, Set-CaseHoldRule, Remove-CaseHoldRule
- New-ComplianceSecurityFilter, Set-ComplianceSecurityFilter, Get-ComplianceSecurityFilter, Remove-ComplianceSecurityFilter
This change does not impact users accessing eDiscovery through the Purview portal. These cmdlets also remain incompatible with Certificate-Based Authentication (CBA).
You are receiving this message because one or more users in your organization are actively using these eDiscovery features.
What you can do to prepare
- Update scripts and workflows to include the
-EnableSearchOnlySessionparameter when connecting to Security & Compliance PowerShell. - Ensure your organization is using Exchange Online PowerShell version 3.9.0 or later.
- For more information, visit: Learn about eDiscovery solutions in Microsoft Purview
Compliance considerations
No compliance considerations identified, review as appropriate for your organization.
Source: Microsoft
Latest Posts
- (Updated) Outlook: Delimiter setting admin policy [MC1239176]
![(Updated) Outlook: Delimiter setting admin policy [MC1239176] 2 pexels scottwebb 139205](data:image/svg+xml;base64,PHN2ZyB3aWR0aD0iMSIgaGVpZ2h0PSIxIiB4bWxucz0iaHR0cDovL3d3dy53My5vcmcvMjAwMC9zdmciPjwvc3ZnPg==)
- Amazon Redshift supports federated permissions with IAM Identity Center in multiple AWS Regions

- Cloudflare Tunnel, Cloudflare Tunnel for SASE – Stream logs from multiple replicas of Cloudflare Tunnel simultaneously

- Microsoft Teams: Recently used emojis sync across devices [MC1256307]
![Microsoft Teams: Recently used emojis sync across devices [MC1256307] 5 pexels brett sayles 2881229](data:image/svg+xml;base64,PHN2ZyB3aWR0aD0iMSIgaGVpZ2h0PSIxIiB4bWxucz0iaHR0cDovL3d3dy53My5vcmcvMjAwMC9zdmciPjwvc3ZnPg==)
![Microsoft Purview | eDiscovery cmdlet connectivity change [MC1131771] 1 Microsoft Purview | eDiscovery cmdlet connectivity change [MC1131771]](https://mwpro.co.uk/wp-content/uploads/2024/08/pexels-inspiredimages-133190-1024x683.webp)
![(Updated) Outlook: Delimiter setting admin policy [MC1239176] 2 pexels scottwebb 139205](https://mwpro.co.uk/wp-content/uploads/2024/08/pexels-scottwebb-139205-150x150.webp)


![Microsoft Teams: Recently used emojis sync across devices [MC1256307] 5 pexels brett sayles 2881229](https://mwpro.co.uk/wp-content/uploads/2024/08/pexels-brett-sayles-2881229-150x150.webp)
![Microsoft Word: “Transform to Web Page” feature retiring September 30, 2025 [MC1131776] 7 Microsoft Word: “Transform to Web Page” feature retiring September 30, 2025 [MC1131776]](https://mwpro.co.uk/wp-content/uploads/2024/08/pexels-anthony-derosa-39577-211816-150x150.webp)