31,270 questions with Microsoft Security | Microsoft Entra | Microsoft Entra ID tags

Sort by: Updated
0 answers

Email as alternate login ID Breaks Admin / Privileged Accounts

We have a tenant with the "email as alternate login ID" enabled so users can log in with the email address and not think about their UPN. Unfortunately, this breaks privileged accounts that don't have a mailbox enabled but still need to receive…

Microsoft Security | Microsoft Entra | Microsoft Entra ID
asked 2026-10-01T20:01:04.32+00:00
Smith, Daric 0 Reputation points
0 answers

Email as alternate login ID Breaks Admin / Privileged Accounts

We have a tenant with the "email as alternate login ID" enabled so users can log in with the email address and not think about their UPN. Unfortunately, this breaks privileged accounts that don't have a mailbox enabled but still need to receive…

Microsoft Security | Microsoft Entra | Microsoft Entra ID
asked 2026-10-01T19:56:38.91+00:00
Smith, Daric 0 Reputation points
1 answer One of the answers was accepted by the question author.

Is Azure AD a IaaS, SaaS, or a combination of both?

I've been trying to get to the bottom of this and can't find the real definitive answer anywhere. Personally, I'm leaning towards Azure AD is a SaaS service like Exchange Online. This is because your able to control and configure AD, but not Domain…

Microsoft Security | Microsoft Entra | Microsoft Entra ID
asked 2023-06-02T19:17:06.8966667+00:00
edited a comment 2026-10-01T19:11:17.3066667+00:00
Hritik Sharma 0 Reputation points
0 answers

Entra Tenant Object Quota Stuck at 500

I have an Entra tenant that was created a few days ago that has gone from the temporary object quota of 600 to 500, instead of the documented 50,000 object limit. I do not have an Azure subscription tied to this tenant and therefore do not have any…

Microsoft Security | Microsoft Entra | Microsoft Entra ID
asked 2026-10-01T18:33:58.6333333+00:00
Josh Garverick 0 Reputation points
0 answers

Personal Microsoft account locked out of Azure Portal: 6-digit MFA required, but Authenticator shows 8-digit code and no push arrives

I use a personal Microsoft account to access my Azure subscription. I can sign in to my Microsoft account normally, but I cannot complete sign-in to the Azure Portal. After entering my credentials, Azure asks for a code from Microsoft Authenticator. The…

Microsoft Security | Microsoft Entra | Microsoft Entra ID
asked 2026-10-01T17:42:17.0133333+00:00
Jie Gu 0 Reputation points
1 answer

Azure Free Account Created but $200 Credit and Entra ID Free License Not Showing

I created a new Azure account today specifically for learning and testing Azure services. The subscription is active and shows Azure Plan, but under Cost Management & Billing → Benefits/Azure Credits, no Azure credits are displayed. I also expected…

Microsoft Security | Microsoft Entra | Microsoft Entra ID
asked 2026-10-01T16:55:47.51+00:00
Sudhir Singh 0 Reputation points
answered 2026-10-01T16:56:06.2866667+00:00

AI answer

0 answers

Entra app registration rejects redirect URI on new domain: "The reply URL includes prohibited words or domains"

We are moving a consumer web app (sign-in with Xbox Live through the Microsoft identity platform) from xcore.gg to uzora.gg. Adding a redirect URI on the new domain to an app registration fails with: The reply URL includes prohibited words or…

Microsoft Security | Microsoft Entra | Microsoft Entra ID
asked 2026-10-01T15:16:10.1666667+00:00
Federico Ercole 0 Reputation points
1 answer One of the answers was accepted by the question author.

Configure Entra ID for Client Credentials Flow Access Token to contain Groups claim

Hi, I have been able to configure Microsoft Entra ID to emit the groups optional claim for User login Auth Code flow, but am struggling to replicate this using the Client Credential flow. Setup: App Registration A (the sign in Security Principal) …

Microsoft Security | Microsoft Entra | Microsoft Entra ID
asked 2025-02-17T15:44:47.8466667+00:00
Bjorn Ahlstedt 20 Reputation points
commented 2026-10-01T14:34:52.1466667+00:00
MikeN 0 Reputation points
0 answers

Azure AD Device Registration Failure: SCP Discovery Error (0x801c001d) Causing M365 Sign-In Loop on RDS Host

roblem Users on a Windows RDS host are stuck in a continuous M365 sign-in loop — error 53000, device compliance issue. Sign-in log Conditional Access details show a "Require Compliant Device" policy is the cause: everything matches except…

Microsoft Security | Microsoft Entra | Microsoft Entra ID
asked 2026-09-28T22:12:22.7333333+00:00
Chris Osborn 0 Reputation points
commented 2026-10-01T13:59:36.47+00:00
Saravana Kumar D 170 Reputation points Microsoft External Staff Moderator
1 answer

Error Message

Request Id: [Removed PII] Correlation Id: [Removed PII] Timestamp: 2026-09-13T14:15:01Z Message: AADSTS900144: The request body must contain the following parameter: 'client_id'.

Microsoft Security | Microsoft Entra | Microsoft Entra ID
asked 2026-09-13T14:18:48.7466667+00:00
Doug Dalgleish 0 Reputation points
edited the question 2026-10-01T10:18:54.66+00:00
Ana Mihaila (BLUEHAWK LLC) 0 Reputation points Microsoft External Staff Moderator
2 answers

Microsoft Entra ID: How are user passwords stored and protected in transit?

Hello, We are conducting an internal privacy and security compliance review and would like to confirm how Microsoft Entra ID stores and protects user passwords and authentication information. Service / Environment Microsoft Entra ID Microsoft Entra…

Microsoft Security | Microsoft Entra | Microsoft Entra ID
asked 2026-09-30T05:46:07.4066667+00:00
Sang Min RA/나상민 0 Reputation points
answered 2026-10-01T06:33:37.79+00:00
Aaron Mathias 85 Reputation points
4 answers One of the answers was accepted by the question author.

Issue while logging in to Azure/Entra portal - AADSTS160021/AADSTS16000/AADSTS50020

When trying to access the Azure portal getting below Errors: AADSTS160021/AADSTS16000(Interaction required)

Microsoft Security | Microsoft Entra | Microsoft Entra ID
Microsoft Security | Microsoft Entra | Other
asked 2023-09-29T06:27:45.6333333+00:00
Givary-MSFT 35,916 Reputation points Microsoft Employee Moderator
answered 2026-10-01T01:03:59.61+00:00
Ruy Perez 0 Reputation points
0 answers

Sole Global Administrator locked out by Azure mandatory MFA (personal Microsoft account) – need Data Protection / tenant recovery

I am the sole Global Administrator of my personal Entra tenant. Tenant ID: f1b864de-081d-4996-a640-a322a8148fd1 The admin account is a personal Microsoft account (Hotmail) – I can share it privately. Since the Azure mandatory MFA enforcement (I received…

Microsoft Security | Microsoft Entra | Microsoft Entra ID
asked 2026-09-30T22:02:15.1933333+00:00
Donovan Schmit 0 Reputation points
1 answer

How to regain access to my Azure account?

I have one Microsoft personal account created in the early 2010s. Later, around 2016, I created a Windows developer account with the same email address. And around 2018 I used the same address to create an Azure account. During troubleshooting of another…

Microsoft Security | Microsoft Entra | Microsoft Entra ID
asked 2026-09-29T19:21:30.92+00:00
Julien Shepherd 0 Reputation points
commented 2026-09-30T15:04:54.0633333+00:00
Julien Shepherd 0 Reputation points
1 answer

SMS/Voice Authentication Available Despite Being Disabled in Authentication Methods Policy

We have configured the Microsoft Entra ID Authentication Methods Policy and disabled SMS and Voice calls authentication methods. The tenant's legacy authentication methods policy migration status is also Complete. However, we are observing different…

Microsoft Security | Microsoft Entra | Microsoft Entra ID
asked 2026-09-30T14:53:16.0433333+00:00
Dey, Dipronil 0 Reputation points
answered 2026-09-30T14:53:42.6433333+00:00

AI answer

1 answer

EntraID: The session has expired or is invalid due to sign-in frequency checks by conditional access.

Hello Experts, We have one case where users are suddenly getting the below error while accessing a Desktop Phone application that uses AWS Connect, which is onboarded in Microsoft Entra ID as a SAML application Expected authentication flow: Phone → AWS…

Microsoft Security | Microsoft Entra | Microsoft Entra ID
asked 2026-09-30T11:51:26.55+00:00
AJAY PRAJAPATI 60 Reputation points
answered 2026-09-30T11:51:52.7566667+00:00

AI answer

1 answer

Microsoft Entra External ID guest invitations repeatedly blocked due to suspicious activity

We are experiencing a recurring tenant-wide block when creating external users through the Microsoft Graph invitations API. Our Azure Function uses application authentication and the Microsoft Graph POST /invitations endpoint to invite external users.…

Microsoft Security | Microsoft Entra | Microsoft Entra ID
asked 2026-09-29T07:26:46.6933333+00:00
Hai Pham 0 Reputation points
answered 2026-09-30T11:02:13.4+00:00
Egiziago Cioffi 181 Reputation points
0 answers

Publisher verification fails with MPNAccountNotVetted although account is fully verified

Calling POST /applications/{objectId}/setVerifiedPublisher with verifiedPublisherId xxx returns HTTP 400: "The MPN ID (xxx) you provided has not completed the vetting process." The Entra portal shows the same as a generic "temporary…

Microsoft Security | Microsoft Entra | Microsoft Entra ID
asked 2026-09-30T10:06:04.91+00:00
F&Q 0 Reputation points
2 answers One of the answers was accepted by the question author.

Entra ID Connect sync Auto upgrade Not working as expected currently on N-1

Hi Experts, We had a situation where we manually upgraded the Entra ID Connect Sync tool because it was on the Stage server. Since auto-upgrade only functions on the Primary Server, we switched the Stage Server to become the Primary Server after two days…

Microsoft Security | Microsoft Entra | Microsoft Entra ID
asked 2026-06-23T13:53:09.2333333+00:00
AJAY PRAJAPATI 60 Reputation points
accepted 2026-09-30T09:52:35.7766667+00:00
AJAY PRAJAPATI 60 Reputation points
2 answers One of the answers was accepted by the question author.

How to update the proxyAddresses of a Cloud-only Entra ID user without a Mailbox (not an Exchange Recipient)

I currently have a client with an Entra ID user (not migrated from on-premises) that is cloud-based, but has proxyAddresses values assigned. Now, I want to update the proxyAddresses through the Graph Explorer and have used this link as a guide:…

Microsoft Security | Microsoft Entra | Microsoft Entra ID
asked 2025-09-17T12:09:18.0566667+00:00
Jason Smyth 26 Reputation points
answered 2026-09-30T06:19:20.6033333+00:00
Bendik Thorbjørnsen 0 Reputation points