Threads
Loading user profile...
+1 from a Microsoft Entra ID user. Entra app registrations accept certificate credentials (private_key_jwt), and client secrets are capped at 24 months in the portal, so a missed renewal takes sign-in down for everyone. Please include the built-in Azure provider in this, not only custom OIDC providers. Longer term, support for Entra federated identity credentials (client_assertion from a workload identity token) would remove stored credentials entirely.