Configure Google Workspace as an IdP for Microsoft Entra ID
Trying to Configure Google Workspace as an IdP for Microsoft Entra ID. Following the microsoft guide here: https://learn.microsoft.com/en-us/education/windows/configure-aad-google-trust#configure-google-workspace-as-an-idp-for-microsoft-entra-id The…
Auditing Unused Entra External ID information and usage
How can we audit and get detailed information about which Entra External ID and B2C tenants are no longer used? Because the https://portal.azure.com/#browse/Microsoft.AzureActiveDirectory%2Fb2cDirectories it does not show which Resource Group it is…

Hello I am not able to access any free azure market place service.
Selected user account does not exist in tenant 'Microsoft Services' and cannot access the application '0a2057a8-149c-40ca-859e-98de032535fb' in that tenant. The account needs to be added as an external user in the tenant first. Please use a different…
Azure AD B2C vs External ID
I’m trying to find answers regarding the transition from Azure AD B2C to Microsoft Entra External ID, and it would be great if someone could shed some light on this, especially considering the recent announcement that new Azure AD B2C tenants will no…
How to invite external users to setup an Azure AD B2C (Local account)?
Based on our understanding of the Azure AD B2C, below are the possible options to invite external users to setup an Azure AD B2C (Local account) using user flows: Sign up user flow - We manually send email to users with sign-up user flow endpoint. …
I have Entra federated with Okta. One of my users is getting this error: AADSTS50105: The signed in user is blocked because they are not a direct member of a group with access. My problem is that they are a member of a group with access and assigned app.
Hi, One of my users is getting this error when trying to log in to the other IDP using Entra federation: Message: AADSTS50105: Your administrator has configured the application to block users unless they are specifically granted ('assigned') access to…
AADSTS50013: Assertion failed signature validation. Key was found, but use of the key to verify the signature failed.
I am trying to authenticate on behalf of a user using an access token. Flow: My backend receives an access token from the frontend (next js using the AzureAd provider for NextAuth). I want to use that access token to acquire an access token to use…
Entra External ID - User Flows - Questions
Hi, I need to plan for a solution based in EEID vs AAD B2C. I know the answers for B2C but for EEID (which is our preferred solution), I need to know the following: -Is it possible to configure the password complexity and how? -Is it possible to…
The jwt token created by my External entra id tenant keeps changing issuer format
When looking at the issuer in the https://<tenant>.ciamlogin.com/<tenant-id>/v2.0/.well-known/openid-configuration endpoint, it comes back as: https://<tenant-id>.ciamlogin.com/<tenant-id>/v2.0 Sometimes, this is indeed the issuer…
Automated Automation Rule Deployment - Stuck with Service Principle Permissions via Lighthouse
(Sorry for the tag, i couldnt find somthing closer to Microsoft Sentinel via Service Principal through Lighthouse) Hi, I am trying to create a product where we essentially automatically deploy resources to customer environments for MSSP support. One of…
SAML External Provider via Keycloak (Keycloak is IdP) - AADSTS50034 [govt cloud]
Good morning, I'm trying to get my SAML External Provider via Keycloak (Keycloak is IdP) up and running in govt cloud. I have configured Keycloak as an external provider following these instructions:…
Unable to Signup Microsoft Azure Portal Service
I am having a really painful week since i am not able to signup for azure portal with my first time used indian physical sim phone number for verification and even for the matter of sake any other phone number. nothing is been verified. IT gives me below…
Invitations are blocked for this directory due to suspicious activity
When uploading a csv file with about 3000 users to invite in the Entra Admin UI using the bulk invite functionality I get the error message: Request was unsuccessful. Details: Invitations are blocked for this directory due to suspicious activity. Please…
Intermittent but regular certificate errors on calls to login.microsoftonline.com
Our SAAS application allows users to authenticate via OIDC. In the last week, we have started to see calls to the well-known endpoint failing with the error: com.microsoft.aad.msal4j.MsalClientException: javax.net.ssl.SSLHandshakeException: PKIX path…
How to fix 'Cannot use MFA service, please try again later.' with Azure B2C custom policies
How to fix 'Cannot use MFA service, please try again later.' with Azure B2C custom policies Hello, I am experiencing an issue related to Azure AD B2C MFA with TOTP using an authenticator app. I have successfully created the custom policies and enabled…
Unable to select Australia as location for new CIAM External ID tenant
Hi all, I am setting up a new Entra ID External CIAM tenant. Under the 'Location' section, I am unable to find Australia. Is it possible to select Australia as a location for the tenant? We need data to stay within the country to be within our privacy…
Unable to Switch to another Entra tenant due to MFA, No way to reset MFA
{ "shellProps": { "sessionId": "7726ee29d36b4c78a57fd96b4fc4efa3", "extName": "Microsoft_AAD_IAM", "contentName": "DirectoryDetailsBlade", "code": 403 }, …
Entra External Id User Flow Labels not working
I am using Entra External Id and I need to change the display name of the built-in "Given Name" and "Surname" user attributes to "First Name" and "Last Name". The documentation suggests that this can be done by…
Unable to Access Azure Portal & Leave Organization Due to Lost MFA for a B2C Tenant
Hi, I have an issue with my Microsoft account related to a previous B2C tenant. Here's the situation: My primary account is ******@maincompany.com (from maincompany). A long time ago, I was added to companyB's B2C tenant as part of a PoC (proof of…

entraId google federation error
Trying to configure federation between Google Workspace and Microsoft Entra ID. following this guide from…