Domain HTTPS Option Was Renamed

The domain HTTPS option, Salesforce serves the domain over HTTPS using a Salesforce content delivery network (CDN) partner and a shared or single HTTPS certificate, was renamed. It’s now called: Salesforce serves the domain over HTTPS using a Salesforce content delivery network (CDN) partner.

Where: This change applies to Lightning Experience and Salesforce Classic in Professional, Enterprise, Performance, and Unlimited editions.

Domain HTTPS Option Was Renamed (salesforce.com)


Enable Enhanced Domains (Release Update)

To comply with the latest browser and security standards, enable enhanced domains on your Salesforce org’s My Domain. With enhanced domains, your company-specific My Domain name is included in your URLs, including Salesforce Sites and Experience Cloud sites. Consistent domain formats improve the user experience and standardize URLs for use in custom code and API calls. Salesforce enhanced domains also comply with the latest browser requirements, allowing your users to access Salesforce using browsers that block third-party cookies. Because this update affects application URLs, including Experience Cloud sites, Salesforce Sites, and Visualforce pages, we recommend that you enable enhanced domains before this update is enforced. This update was first made available in Summer ’21.

Where: This change applies to Lightning Experience and Salesforce Classic in Group, Essentials, Professional, Enterprise, Performance, Unlimited, and Developer editions.

When: Enhanced domains are available in Hyperforce orgs and in orgs with a deployed My Domain routed through Salesforce Edge Network. For updates about the availability of this feature in other orgs and when it’s enabled by default in new orgs, join the My Domain and Enhanced Domains group in the Trailblazer Community.

Salesforce enforces this update in Winter ’23. To get the major release upgrade date for your instance, go to Trust Status, search for your instance, and click the maintenance tab.

Why: When you enable enhanced domains, all application URLs start with your My Domain name, and instance names are removed. The domain suffix (the part after the My Domain name) changes for Experience Cloud sites, Salesforce Sites, content files, Site.com Studio, Experience Builder, and Visualforce URLs. And sandbox URLs include the word sandbox, making them easy to identify.

Here are some My Domain URL formats with enhanced domains. The login URL is the same as without enhanced domains, but the rest of the URLs change.

Enable Enhanced Domains (Release Update) (salesforce.com)


Prepare for Your Custom Domain to Use Salesforce Edge Network

To deliver a consistent user experience regardless of a user’s location, Salesforce is migrating custom domains that serve Experience Cloud sites to the Salesforce Edge Network infrastructure. To prepare, update your allowlists to include the latest Salesforce IP ranges.

Where: This change applies to custom domains serving Aura, LWR, and Visualforce sites accessed through Lightning Experience and Salesforce Classic in Enterprise, Performance, Unlimited, and Developer editions. It applies only to custom domains with the HTTPS option, “Salesforce serves the domain over HTTPS on Salesforce’s servers using your HTTPS certificate.”

Prepare for Your Custom Domain to Use Salesforce Edge Network


Require SOAP API Calls to Log In with My Domain

By default, SOAP API calls can log in with a generic Salesforce login URL, such as https://login.salesforce.com, or your My Domain login URL, such as https://mycompany.my.salesforce.com. To further restrict access to your org, require that SOAP API logins use your My Domain login URL.

Where: This change applies to Lightning Experience and Salesforce Classic in Group, Essentials, Professional, Enterprise, Performance, Unlimited, and Developer editions.

How: This option is available through the doesApiLoginRequireOrgDomain field on the MyDomainSettings Metadata API type in API version 47.0 and later. In Winter ’22, you can enable this option from the My Domain Setup page.

From Setup, in the Quick Find box, enter My Domain, and then select My Domain. In the Policies section, click Edit. In production, select Prevent SOAP API login from https://login.salesforce.com. Or, in a sandbox, select Prevent SOAP API login from https://test.salesforce.com. Then save your changes.

Require SOAP API Calls to Log In with My Domain (salesforce.com)


Enable User Email Domain Restrictions

To restrict the email domains allowed in a user’s Email field, enable the email domain allowlist. Previously, you contacted Salesforce Support to enable this feature.

Where: This change applies to Lightning Experience and Salesforce Classic in all editions.

How: From Setup, in the Quick Find Box, enter User Management, and then select User Management Settings. Turn on Email Domain Allowlist. Then manage the permitted email domains for users from the Allowed Email Domains Setup page.

Enable User Email Domain Restrictions (salesforce.com)


Deploy a My Domain (Release Update)

To use the latest features and comply with browser requirements, all Salesforce orgs must have a My Domain. Deploy one, or we assign one for you based on your org ID. If you prefer to use a different My Domain name, you can change it. Because your My Domain affects all application URLs, we recommend that you test and deploy a My Domain before this update is enforced. This update was first made available in Winter ’21 and is enforced in Winter ’22.

Where: This change applies to Lightning Experience and Salesforce Classic in Group, Essentials, Professional, Enterprise, Performance, and Unlimited editions.

When: This update applies to orgs without a deployed My Domain. This update was first available in Winter ’21. For production orgs and related sandboxes, this update is enforced in Winter ’22. To get the major release upgrade date for your instance, go to Trust Status, search for your instance, and click the maintenance tab.

For information about when this update is enforced in demo, trial, free, and Developer Edition orgs and related sandboxes, join the My Domain and Enhanced Domains group in the Trailblazer Community.

Why: Deploying a My Domain brands your login URL with your chosen My Domain name. It also removes the instance name from your login URL, preventing user login disruption if your org moves to another Salesforce instance. You must have a My Domain to set a custom login policy that determines how users are authenticated, to set up single sign-on (SSO) with external vendors, and to use newer services like Customer 360 Data Manager. Some Lightning container components and web security protections require a My Domain as well.

How: We recommend that you deploy a My Domain in a sandbox and test connectivity across your org before deploying it in production.

To complete this update, from Setup, in the Quick Find box, enter Release Updates, and then select Release Updates. For Deploy a My Domain, follow the testing and activation steps. See My Domain in Salesforce Help for details on how to set up, test, and deploy a My Domain.

Deploy a My Domain (Release Update) (salesforce.com)


Domains

All Salesforce orgs must have a My Domain. Enable enhanced domains to meet the latest browser requirements. Restrict users’ email domains and require SOAP API calls to log in with My Domain. And we’re moving custom domains that serve Experience Cloud sites to Salesforce Edge Network.

  • Deploy a My Domain (Release Update)
    To use the latest features and comply with browser requirements, all Salesforce orgs must have a My Domain. Deploy one, or we assign one for you based on your org ID. If you prefer to use a different My Domain name, you can change it. Because your My Domain affects all application URLs, we recommend that you test and deploy a My Domain before this update is enforced. This update was first made available in Winter ’21 and is enforced in Winter ’22.
  • Enable User Email Domain Restrictions
    To restrict the email domains allowed in a user’s Email field, enable the email domain allowlist. Previously, you contacted Salesforce Support to enable this feature.
  • Require SOAP API Calls to Log In with My Domain
    By default, SOAP API calls can log in with a generic Salesforce login URL, such as https://login.salesforce.com, or your My Domain login URL, such as https://mycompany.my.salesforce.com. To further restrict access to your org, require that SOAP API logins use your My Domain login URL.
  • Prepare for Your Custom Domain to Use Salesforce Edge Network
    To deliver a consistent user experience regardless of a user’s location, Salesforce is migrating custom domains that serve Experience Cloud sites to the Salesforce Edge Network infrastructure. To prepare, update your allowlists to include the latest Salesforce IP ranges.
  • Enable Enhanced Domains (Release Update)
    To comply with the latest browser and security standards, enable enhanced domains on your Salesforce org’s My Domain. With enhanced domains, your company-specific My Domain name is included in your URLs, including Salesforce Sites and Experience Cloud sites. Consistent domain formats improve the user experience and standardize URLs for use in custom code and API calls. Salesforce enhanced domains also comply with the latest browser requirements, allowing your users to access Salesforce using browsers that block third-party cookies. Because this update affects application URLs, including Experience Cloud sites, Salesforce Sites, and Visualforce pages, we recommend that you enable enhanced domains before this update is enforced. This update was first made available in Summer ’21.
  • Domain HTTPS Option Was Renamed
    The domain HTTPS option, Salesforce serves the domain over HTTPS using a Salesforce content delivery network (CDN) partner and a shared or single HTTPS certificate, was renamed. It’s now called: Salesforce serves the domain over HTTPS using a Salesforce content delivery network (CDN) partner.

Domains (salesforce.com)


Add and Remove Permission Set License Assignments Faster

Save time by assigning multiple users to a permission set license together or by removing multiple users all at once. On each permission set license detail page, you can select multiple users to complete bulk assignment operations. Previously, you added or removed users individually from each user’s detail page.

Where: This change applies to Lightning Experience and Salesforce Classic in Professional, Enterprise, Performance, Unlimited, and Developer editions.

How: Before you remove the permission set license, you must remove the related assigned permissions from the user. Then, from Setup, in the Quick Find box, enter Company Information, and select Company Information. Scroll down to the permission set licenses related list, and click the name of the permission set license that you want to assign users to or remove users from. To see and remove current assignments, click View Users. To assign users, click Assign Users.

Add and Remove Permission Set License Assignments Faster (salesforce.com)


See More Information About Permission Set Licenses

See key details about your permission set licenses on the Company Information Setup page. In the permission set licenses related list, you get a snapshot of your licenses, their expiration dates, and the number of remaining seats. On each license’s detail page, you now see which user, object, and custom permissions are available for the license. From this detail page, you can also view and manage user assignments.

Where: This change applies to Lightning Experience and Salesforce Classic in Professional, Enterprise, Performance, Unlimited, and Developer editions.

How: From Setup, in the Quick Find box, enter Company Information, and then select Company Information. Scroll down to the Permission Set Licenses related list for a quick glance at your licenses. For more details about a specific permission set license and to manage assignments, click the license name.

See More Information About Permission Set Licenses (salesforce.com)


Update More Fields from the Report Run Page with Expanded Inline Editing (Beta)

Update your reports more efficiently without losing your place by clicking back and forth. Inline editing is now supported for date, picklist, and lookup fields. When your report data gets out of date, you can edit it right on the report run page. For example, sales reps can update opportunity statuses directly from their pipeline reports. Previously, inline editing was supported only for text and numeric fields.

Where: These changes apply to Lightning Experience in Group, Essentials, Professional, Enterprise, Performance, Unlimited, and Developer editions.

How: From Setup, in the Quick Find box, enter Reports and Dashboards, and then select Reports and Dashboards Settings. Select Enable Inline Editing in Reports (Lightning Experience only), and save your changes.

Now open a report and hover over the field that you want to edit. If you see a pencil icon, click it, modify the value, and save. The field value is updated on the report and in the source record, and the report reruns automatically.

Inline editing isn’t supported for these fields and field types.

  • Task and event object fields
  • Owner fields
  • System fields, such as Record ID and Created Date
  • Compound fields, including name and address fields
  • Encrypted text fields
  • Formula fields
  • Polymorphic fields
  • Standard fields of type auto number, rollup summary, record type, master-detail, long text area, rich text, and hierarchy
  • Fields in a Salesforce object that doesn’t have a record type

Other factors also determine whether inline editing is supported for a field:

  • Object permissions: The user’s profile must include edit access to the object that the column is coming from.
  • Field Level Security: The user’s profile must include edit access to the field that the column is associated with.
  • Page Layout: The page layout associated with the object and the user's profile must include the field, and the field can't be marked read-only.

Update More Fields from the Report Run Page with Expanded Inline Editing (Beta) (salesforce.com)


Privacy Preference Center