The error AADSTS5000225: This tenant has been blocked due to inactivity means the Azure/Microsoft Entra tenant is in an inactive state and sign-ins are blocked.
Key points from the tenant lifecycle behavior:
- When a tenant is marked inactive, sign-in attempts return
AADSTS5000225.
- Administrators can request reactivation only within 20 days after the tenant becomes inactive.
- If the tenant remains inactive for more than 20 days, it is permanently deleted and cannot be recovered.
To proceed:
- If administrator access to this tenant exists and the block started less than 20 days ago, the admin must contact Microsoft support to request reactivation. Use the global support phone numbers listed in the documentation.
- Do not open multiple support cases for the same tenant while one is already in progress.
- If the tenant has been blocked for more than 20 days, the tenant is deleted and cannot be restored; a new tenant must be created.
If access to the Azure portal is needed to open a support case and the primary tenant is blocked, sign-in can be attempted directly with the tenant ID or tenant name in the portal URL (for example, https://portal.azure.com/<TenantId> or https://portal.azure.com/<yourTenantName>.onmicrosoft.com) as described in the Q&A example, but if the tenant is already beyond the 20‑day window, only creating/using another tenant remains.
References: