Unable to sign in to Azure with my personal 365 account with MFA issue unable to be resolved by Business data protection team

LindaL 0 Reputation points
2026-09-03T00:50:00.9833333+00:00

I have an azure tenant links to my 365 personal account. From this year, I am unable to sign in to Azure due to MFA issue.

Account affected: (personal admin)

Issue:

The sign-in page asks me to verify using Microsoft Authenticator. The available options are:

  • Approve a request on my Microsoft Authenticator app
  • Use a verification code

However, I am not receiving any approval request in the Microsoft Authenticator app.

When I choose verification code, the sign-in page asks for a 6-digit code, but my Microsoft Authenticator app only shows an 8-digit one-time password code for this account.

There is no SMS or phone call option available.

I already raised two support tickets to resolve the re-registering MFA / authentication methods for this admin account so I can access the tenant again. All tickets were assigned to Microsoft 365 Data Protection Team who don't deal with personal 365 accounts, and so my support tickets were closed without fixed my issues..

In this case, I am unable to use my Azure tenant. I wondering that is it possible to transfer my Azure tenant to my business 365 account.

I can provide proof of domain ownership, billing/subscription information, or other verification details if required.

Microsoft Security | Microsoft Identity Manager
0 comments No comments

2 answers

Sort by: Most helpful
  1. LindaL 0 Reputation points
    2026-09-03T05:21:10.0666667+00:00

    Thx

    1. I already tried "Sign in another way" or "I can't use my Microsoft Authenticator app right now", and it doesn't show any other sign in method.
      I can sign in to MFA admin page with my work / business account but not my personal 365 account.
      Microsoft's Data Protection / Tenant Recovery team already reset the MFA registration in MFA under my business account, but still not resolved my personal account sign in to Azure tenant issue. This team not dealing with personal 365 account issue and seems no team in Microsoft supports personal 365 account any more.

    In this case, I prefer to transfer my apps resources in Azure tenant under my personal account to another Azure tenant with my business account.

    Was this answer helpful?

    0 comments No comments

  2. Rukshan edirisinghe 165 Reputation points
    2026-09-03T02:39:51.63+00:00

    Hi @LindaL ,

    The 6-digit vs. 8-digit mismatch actually tells us exactly what's wrong. An 8-digit code means that entry in Authenticator is registered to your personal Microsoft account. A 6-digit code request means the sign-in is being verified against a separate MFA registration inside your Azure (Entra) tenant. That tenant-side registration is stale, probably pointing at an old phone or app install, which is also why the approval requests never arrive. Your personal account itself is fine. The broken piece is the MFA registration for that account inside your tenant.

    That's also why your tickets keep getting closed. They were routed as a personal account MFA problem, which that team correctly can't handle. Your case is actually a tenant admin lockout, which is a different process entirely. Since you are the only Global Administrator, this falls under a tenant lockout scenario that Microsoft's Data Protection / Tenant Recovery team resolves after verifying ownership.

    What to do:

    1. Quick check first: on the verification screen, click "Sign in another way" or "I can't use my Microsoft Authenticator app right now" and see if any other method is listed (email, for example). If one works, sign in, go to aka.ms/mfasetup, delete the stale method, and re-register Authenticator. Done.
    2. If no other method exists, open a new support case, but frame it precisely like this: "Microsoft Entra ID tenant lockout. The sole Global Administrator cannot complete MFA because the tenant-side registration is stale. Requesting MFA / security info reset for this admin account at the tenant level via the Data Protection / Tenant Recovery process." Include your tenant ID or default .onmicrosoft.com domain, custom domain, subscription ID and billing details. You can also call the regional number from the Microsoft customer service phone numbers page, state it's an MFA lockout for an Azure tenant's only Global Administrator, and ask for escalation to Data Protection / Tenant Recovery. The proof of domain ownership and billing information you mentioned is exactly what they verify.
    3. Once they reset it, you'll be prompted to set up MFA from scratch at next sign-in, and this time the registration will be created correctly for the tenant. Then immediately add a second Global Administrator (your business account as an invited guest, or a dedicated emergency access account) so one broken registration can never lock the whole tenant again.

    On your transfer question: there is no supported way to transfer a tenant to another account. And every alternative (adding your business account as admin, or moving the subscription to your business tenant) requires a working admin sign-in first. So recovery has to happen either way. After you're back in, adding your business account as Global Admin gets you the same practical outcome.

    Was this answer helpful?


Your answer

Answers can be marked as 'Accepted' by the question author and 'Recommended' by moderators, which helps users know the answer solved the author's problem.