At Skyhigh Security, our top priority is ensuring the highest level of protection and data integrity for your organization. As part of our commitment to maintaining modern security standards and defending against evolving cyber threats, we are writing to inform you of an upcoming change to our platform.
With the release of Skyhigh Security version 7.1.1, scheduled for late July 2026, we will officially deprecate and remove support for the MD5 hashing algorithm across our connectivity offerings.
Following this release, MD5 will no longer be supported for IPSec tunnels between Skyhigh SSE and customer edge devices. New or existing IPSec tunnel configurations using MD5 will fail to establish connectivity.
Why is this change happening?
The MD5 hashing algorithm is widely recognized by the cybersecurity industry as a legacy technology that is vulnerable to modern cryptographic attacks. To help ensure your environment remains secure and aligned with industry best practices, Skyhigh Security is transitioning exclusively to stronger and more secure cryptographic alternatives.
What does this mean for you?
If you do not use MD5:
No action is required. Your services will continue to operate normally after upgrading to version 7.1.1.
If you currently use MD5:
Any IPSec tunnel configurations relying on MD5 will cease to function after upgrading to version 7.1.1.
Recommended Next Steps
To prevent any disruption to your operations, we recommend taking the following actions before the July release:
- Review your current IPSec tunnel configurations and identify any tunnels that use MD5 for authentication or integrity verification.
- Migrate affected configurations to a supported and secure cryptographic algorithm.
- Validate connectivity after making configuration changes to ensure uninterrupted service.
If you have questions or require technical assistance during this transition, please contact your Account Manager or reach out to our Support Team.
Thank you for your continued partnership as we work together to keep your data secure.
Oct 30, 2026
At Skyhigh Security, we strive to deliver the best Cloud Data Protection solution to our customers, while maintaining a seamless integration with our Cloud Service Providers (CSPs).
Until now, Skyhigh has been using Microsoft's EWS (Exchange Web Services) APIs to perform Quarantine action as part of DLP Policies for Exchange Online. Microsoft has announced they are disabling the current EWS APIs for Exchange Online Services by October 2026.
As a result of this announcement, we have been advised by Microsoft to migrate to their newer Graph APIs for continued and smooth functioning of these services. Because Microsoft manages their Graph APIs as a different resource, new permissions will need to be granted as an added step.
As we move forward with the migration of our solution to use the new Graph APIs, we need you to re-enable the API instances in your Skyhigh dashboard and grant the required permission for the Skyhigh application by August 12, 2026. Failure to act will result in your Email DLP Quarantine operation not working as expected.
The detailed step-by-step guide is present at the bottom of this message to help you re-enable the Skyhigh application seamlessly. If you need additional assistance, please contact the Skyhigh Support team, your Customer Success Manager, or your respective Account teams who will be able to help with this task. We apologize for any inconvenience.
Please note: While we are currently in the process of this migration, Microsoft is expected to release the final production-ready version of these APIs by Q1 2026. Should Microsoft introduce changes as part of that release, Skyhigh may need to align our solution accordingly, and we will keep you updated on any further actions required.
End of Support Update: Legacy Data Identifiers features in CASB DLP - Important Update for Gov Cloud Customers
For CASB
June 30, 2026
We are writing to provide an important update to the End of Support dates for our legacy DLP Data Identifiers. We have extended the support timeline for our Gov Cloud customers until June 30, 2026.
This extended support timeline allows the completion of the transition of your tenant to an IAM-based login in Gov Cloud. This is a pre-requisite for the adoption of classifications which replace legacy DLP Data Identifiers.
Please reach out to your account representative or Skyhigh support to start with your IAM login transition.
Following the completion of IAM login transition, the migration away from legacy DLP Data Identifiers can begin. We encourage you to migrate in good time before the extended deadline to allow time for testing. Policies can be either migrated manually by your own teams, or Skyhigh can help by automatically cloning your existing policies to create copies using classifications.
Documentation >
Important Notice: End of Support for Logging Client – Action Required
For Logging Client
Skyhigh Security will officially end support for the Logging Client on June 30, 2026. The Logging Client, which currently collects SSE (Security Service Edge) web logs for analytics and investigations, will no longer receive feature updates or technical support after this date. However there would be no impact to the existing functionality.
Until March 31, 2026 – The Logging Client will continue to receive technical support. From April 1, 2026 to June 30, 2026 – Only critical security patches (CVE-related or high-severity vulnerabilities) will be provided.
After June 30, 2026 – No feature updates, regular fixes, or technical support will be available.
To ensure a seamless, secure, and scalable log ingestion experience, customers are advised to transition to its like-for-like replacement, the Log Collector, which provides equivalent functionality within the latest Skyhigh Cloud Connector. Alternatively, customers seeking a more modern, scalable, and streaming-ready architecture may choose to upgrade directly to Log Stream. Both Log Collector and log Stream are available under SIEM Integration (Inline) starting with Cloud Connector version 6.7.1 and above. These solutions offer unified log ingestion from SWG, RBI, Private Access, and Cloud Firewall, support multiple output formats (CSV, JSON, KVP) and transmission methods (Syslog, local storage, or direct streaming to SIEM/SOAR platforms), and align with ongoing SSE platform enhancements.
Action Required: Please initiate migration to the Log Collector or Log Stream at the earliest to ensure continued access to updates and future compatibility. Refer to the following resources to assist with migration and download:
- Migrate Logging Client to Log Collector – Documentation
- Log Stream - Documentation
- Download the latest Cloud Connector – Documentation
- Old Logging Client - Documentation
For assistance, contact Skyhigh Support or visit the Support Portal for further guidance.
After June 30, 2026, Skyhigh Security will not provide feature updates or technical support for the Logging Client beyond security vulnerability patches.