RSA June 2026 Release Announcements
a day ago

Cloud Access Service Updates

The following subsections outline the new and enhanced features of the Cloud Access Service (CAS).

Agent Inventory Report Accuracy Improvements

The Agent Inventory report has been enhanced to improve reporting accuracy in environments with pre-installed Windows MFA agents. Updated logic now recognizes systems that share the same software ID, ensuring more complete and accurate inventory visibility across deployments. This enhancement provides more reliable inventory data for improved operational visibility and reporting accuracy.

 

Migrated to a New Device Option for Credential Recovery

The Credential Recovery list now includes the Migrated to new device option. You can now accurately report Migrated to new device as the reason for Credential Recovery, making it easier for administrators to audit Credential Recovery usage related to device upgrades. 

 

ID Verification Support for User Authentication

ID Verification methods are now supported for user authentication. This enhancement enables you to authenticate during primary authentication or step-up authentication, including Live Verify scenarios. This capability helps improve authentication flexibility and provides an additional verification option for users who can and cannot access their registered authenticator device. You can configure and view this feature while creating or editing a policy in the Primary Authentication section by navigating to the Cloud Administration Console > Access > Policies.

 

Note: This feature is available in private preview. To request access to this feature, contact your RSA account manager or customer support.

 
 

Simplified User Attribute Synchronization UI for Active Directory (AD) and LDAP Identity Sources

Legacy configuration options for synchronizing user attributes from AD and LDAP identity sources required an administrator to enable synchronization through three separate configuration settings. With this enhancement, synchronization settings are condensed.
In the Cloud Administration Console, the following options are now enabled automatically:
  • Identity Source > User Attributes tab> Synchronize the selected attributes with the Cloud Authentication Service (required for CAS to function)
  • Identity Source > Synchronize User Attributes tab> Synchronize user attributes (these attributes are now controlled by the checkbox in the Policies column.)
Note: These changes are applied automatically  when no pending publish changes exist. 
 

Event Monitor Navigation Updates

Event Monitor pages are now consolidated under Users > Reports to simplify navigation and improve accessibility within the Cloud Administration Console.

The following navigation items are removed:

  • Users User Event Monitor
  • Platform > Admin Event Monitor
  • Platform > System Event Monitor

You can now access all three Event Monitors from Users > Reports.

 

Use of Company-Specific URLs Required

As a follow-up to the November 2024 Release Announcement, support for non-company-specific URLs will be permanently shut down on July 30, 2026. You must update all affected service URLs to use your designated company-specific URLs before this date. For more information, see the Company-Specific Administrative URLs Update Instructions and Permanent Shutdown of Non-Company-Specific URLs. You must use your designated company-specific URLs for all access, including API interactions, Authentication Manager (AM) configurations, SCIM configurations, or redirected URLs from identity providers (IdPs). Access through non-company specific URLs is not yet blocked; however, when it is blocked, it results in loss of functionality (for example, https://access.securid.com or https://na2.access.securid.com).

To ensure uninterrupted access, you should promptly verify that all connectivity is routed through the appropriate company-specific URLs and update their configurations as needed. If your Identity Router (IDR) software version is earlier than 12.22.0.0.32, you must Update Identity Router Software to the latest version to avoid any disruptions when non-company-specific URLs are permanently shut down.  

Starting with the June 2025 release, a banner warning appears for 24 hours whenever a non-company-specific URL is used for the following:

  • Logging in to the Cloud Administration Console via password or third-party IdP.
  • Accessing the Cloud Administration REST APIs.

In addition, an audit event is logged once per day whenever a non-company-specific URL is used for third-party IdP login and Cloud Administration REST API. You can view this event from the Cloud Administration Console by navigating to Platform > Admin Event Viewer.

As part of the effort to permanently shut down non-company-specific URLs, the Software and Adapter Repository URLs used by IDRs will be updated to company-specific URLs starting with the June release. As a result, customers are advised to review their network configurations and ensure that the new URLs are whitelisted, if applicable.

Old URL format:

New URL format (Whitelisted):

GOV Deployment

Old URL format:

New URL format (Whitelisted):

Status Monitor is already available to validate connectivity. If the status is healthy, no action will be required after the change.

You can verify this from the Cloud Administration Console by navigating to Platform > Identity Router and expanding the Identity Router section to view the status indicators. For more information, refer to this IDR Advisory.

 

Upcoming End of Primary Support (EOPS) Details

The following table provides details of the RSA products reaching the end of support within the next six months:

ProductVersionEOPS DateExtended Support Level 1/Level 2
RSA Authentication Manager 
8.7 SP1 
June 2026June 2027/ June 2028 

 

Authenticator for iOS & Android

 

4.4

June 2026

 

4.5

October 2026

 

MFA Agent for Microsoft Windows

2.3.3/ 2.3.4/ 2.3.5

December 2026 

 

 

Subscribe to status.securid.com for the Cloud Access Service Status Updates

For information about all service incidents and scheduled maintenance windows for the Cloud Access Service, subscribe to https://status.securid.com.

 

Announcement