MSAL.NET cache extensions (Microsoft.Identity.Client.Extensions.Msal) package has been moved to the main MSAL.NET repository (where any new issues should be created). The package version has been increased to match the main MSAL version. Along with this move, support for .NET 4.5 and .NET Core 3.1 was removed and this package now only supports .NET Standard 2.0. Additionally, Microsoft.Identity.Client.Extensions.Adal has been deprecated. See 3152, 4330.
Added AuthenticationResult.AuthenticationResultMetadata.Telemetry that currently contains telemetry from the Windows broker (WAM). See 4159.
Bug Fixes
Added throttling logic for acquiring tokens for managed identity (using AcquireTokenForManagedIdentity and WithAppTokenProvider) to prevent the throttling exceptions thrown by the managed identity endpoints. See 4196.
Enabled cache synchronization by default. This helps to keep the cache consistent when a singleton confidential client application (CCA) is used with enabled external token cache serialization. The cache synchronization has a negligible performance effect when CCA is created per request. See 4268.
Fixed an authority validation error in interactive flows when an Active Directory Federation Services (ADFS) authority with a tenant ID was used. See 4272.
Added clarity to the Windows broker logs. See 4318.
4.55.0
New Features
A user assigned managed identity can now be specified using its object ID. 4215.
Bug Fixes
WithTenantId now works with CIAM authorities. See 4191.
Improved the error message when cache serialization fails. See 4206.
Improved logging when using the Windows broker (WAM). See 4183.
4.54.1
New Features
The client-side telemetry API (ITelemetryClient) is now generally available. See 3784.
Added WithSearchInCacheForLongRunningProcess() modifier which allows InitiateLongRunningProcessInWebApi method to search in cache. This flag is intended only for rare legacy cases; for most cases, rely on the default behavior of InitiateLongRunningProcessInWebApi and AcquireTokenInLongRunningProcess. See 4124.
Bug Fixes
WithTenantId can now be used with dSTS authorities to overwrite the tenant. See 4144, 4145.
Fixed a bug in token serialization for rare cases when an ID token has no oid claim. See 4140.
Updated the managed identity API to specify the identity type when creating an ManagedIdentityApplication. See 4114.
When acquiring tokens with managed identity and using the default HTTP client, MSAL will retry the request for certain exception codes. See 4067.
Adds MsalManagedIdentityException class that represents any managed identity related exceptions. It includes general exception information including the Azure source from which the exception originates. See 4041.
MSAL will now proactively refresh tokens acquired with managed identity. See 4062.
MSAL will now proactively refresh tokens acquired using AppTokenProvider API. See 4074.
MsalException and derived exception classes now have a property AdditionalExceptionData, which holds any extra error information. Currently it is only populated for exceptions coming from the Windows authentication broker (WAM). See 4106.
For HTTP telemetry. added a new telemetry ID for long-running on-behalf-of requests. See 4099.
Bug Fixes
Fixed a JSON serialization issue in iOS apps that are built in release Ahead-Of-Time (AOT) compilation mode. See 4082.
MSAL.NET package now references correct Microsoft.iOS version. See 4091.
Microsoft.Identity.Client.Broker package can now be used in projects which rely on the older package.config. See 4108.
Fixed a user_mismatch error when WithAccount is specified when acquiring tokens interactively and selecting a different account in the account picker. See 3991.
MSAL.NET cache extensions (Microsoft.Identity.Client.Extensions.Msal) package has been moved to the main MSAL.NET repository (where any new issues should be created). The package version has been increased to match the main MSAL version. Along with this move, support for .NET 4.5 and .NET Core 3.1 was removed and this package now only supports .NET Standard 2.0. Additionally, Microsoft.Identity.Client.Extensions.Adal has been deprecated. See 3152, 4330.
Added AuthenticationResult.AuthenticationResultMetadata.Telemetry that currently contains telemetry from the Windows broker (WAM). See 4159.
Bug Fixes
Added throttling logic for acquiring tokens for managed identity (using AcquireTokenForManagedIdentity and WithAppTokenProvider) to prevent the throttling exceptions thrown by the managed identity endpoints. See 4196.
Enabled cache synchronization by default. This helps to keep the cache consistent when a singleton confidential client application (CCA) is used with enabled external token cache serialization. The cache synchronization has a negligible performance effect when CCA is created per request. See 4268.
Fixed an authority validation error in interactive flows when an Active Directory Federation Services (ADFS) authority with a tenant ID was used. See 4272.
Added clarity to the Windows broker logs. See 4318.
4.55.0
New Features
A user-assigned managed identity can now be specified using its object ID. See 4215.
Improved the error message when cache serialization fails. See 4206.
Improved logging when using the Windows broker (WAM). See 4183.
4.54.1
New Features
The client-side telemetry API (ITelemetryClient) is now generally available. See 3784.
Added WithSearchInCacheForLongRunningProcess() modifier which allows InitiateLongRunningProcessInWebApi method to search in cache. This flag is intended only for rare legacy cases; for most cases, rely on the default behavior of InitiateLongRunningProcessInWebApi and AcquireTokenInLongRunningProcess. See 4124.
Bug Fixes
WithTenantId can now be used with dSTS authorities to overwrite the tenant. See 4144, 4145.
Fixed a bug in token serialization for rare cases when an ID token has no oid claim. See 4140.
Updated the managed identity API to specify the identity type when creating an ManagedIdentityApplication. See 4114.
When acquiring tokens with managed identity and using the default HTTP client, MSAL will retry the request for certain exception codes. See 4067.
Adds MsalManagedIdentityException class that represents any managed identity related exceptions. It includes general exception information including the Azure source from which the exception originates. See 4041.
MSAL will now proactively refresh tokens acquired with managed identity. See 4062.
MSAL will now proactively refresh tokens acquired using AppTokenProvider API. See 4074.
MsalException and derived exception classes now have a property AdditionalExceptionData, which holds any extra error information. Currently it is only populated for exceptions coming from the Windows authentication broker (WAM). See 4106.
For HTTP telemetry. added a new telemetry ID for long-running on-behalf-of requests. See 4099.
Bug Fixes
Fixed a JSON serialization issue in iOS apps that are built in release Ahead-Of-Time (AOT) compilation mode. See 4082.
MSAL.NET package now references correct Microsoft.iOS version. See 4091.
Microsoft.Identity.Client.Broker package can now be used in projects which rely on the older package.config. See 4108.
Fixed a user_mismatch error when WithAccount is specified when acquiring tokens interactively and selecting a different account in the account picker. See 3991.
Dependabot will resolve any conflicts with this PR as long as you don't alter it yourself. You can also trigger a rebase manually by commenting @dependabot rebase.
Dependabot commands and options
You can trigger Dependabot actions by commenting on this PR:
- `@dependabot rebase` will rebase this PR
- `@dependabot recreate` will recreate this PR, overwriting any edits that have been made to it
- `@dependabot merge` will merge this PR after your CI passes on it
- `@dependabot squash and merge` will squash and merge this PR after your CI passes on it
- `@dependabot cancel merge` will cancel a previously requested merge and block automerging
- `@dependabot reopen` will reopen this PR if it is closed
- `@dependabot close` will close this PR and stop Dependabot recreating it. You can achieve the same result by closing it manually
- `@dependabot show ignore conditions` will show all of the ignore conditions of the specified dependency
- `@dependabot ignore this major version` will close this PR and stop Dependabot creating any more for this major version (unless you reopen the PR or upgrade to it yourself)
- `@dependabot ignore this minor version` will close this PR and stop Dependabot creating any more for this minor version (unless you reopen the PR or upgrade to it yourself)
- `@dependabot ignore this dependency` will close this PR and stop Dependabot creating any more for this dependency (unless you reopen the PR or upgrade to it yourself)
Bumps Microsoft.Identity.Client.Extensions.Msal from 2.32.0 to 4.56.0.
Release notes
Sourced from Microsoft.Identity.Client.Extensions.Msal's releases.
... (truncated)
Changelog
Sourced from Microsoft.Identity.Client.Extensions.Msal's changelog.
... (truncated)
Commits
Dependabot will resolve any conflicts with this PR as long as you don't alter it yourself. You can also trigger a rebase manually by commenting
@dependabot rebase
.Dependabot commands and options
You can trigger Dependabot actions by commenting on this PR: - `@dependabot rebase` will rebase this PR - `@dependabot recreate` will recreate this PR, overwriting any edits that have been made to it - `@dependabot merge` will merge this PR after your CI passes on it - `@dependabot squash and merge` will squash and merge this PR after your CI passes on it - `@dependabot cancel merge` will cancel a previously requested merge and block automerging - `@dependabot reopen` will reopen this PR if it is closed - `@dependabot close` will close this PR and stop Dependabot recreating it. You can achieve the same result by closing it manually - `@dependabot show