How to get the app verified
I have created an App Registration in the Azure portal. I have also verified my root domain but when a user hits the "Sign in with Microsoft" they are still seeing "unverified". How are you supposed to get verified? I saw some…
GSA private access, cross tenant use?
I have been using GSA private access successfully then I read somewhere that a tenants private access should work for guests etc, initially I tried adding a guest user as a member of the app etc but it the forwarding rules wouldn't update for the guest,…
Started receiving excessive interactive sign-in events all of a sudden and need it to stop.
I understand about refresh tokens and all; but these are non-interactive events showing up on the interactive portion of the sign-in log. It was not always this way - only started a week or so ago. Looking for a setting perhaps to revert to the original…
Error: Personal Microsoft accounts are not supported for this application
Hi, I'm trying to sign in to my web application using Microsoft SSO via the Oauth2 SDK provided by Steven Maguire (https://github.com/stevenmaguire/oauth2-microsoft). When I test this (in an incognito Chrome window) I get the error: AADSTS500200: User…
Guest Users can't access SharePoint Website if they are also delegated Admin (MS Partner)
Hi everybody, I found a confusing issue and I'd like to know if this is by design or an bug. I try to explain it: Let's assume I am a Microsoft CSP. My company name is contoso. I use the granular delegated admin permissions (GDAP) to administer my…
Auditing Unused Entra External ID information and usage
How can we audit and get detailed information about which Entra External ID and B2C tenants are no longer used? Because the https://portal.azure.com/#browse/Microsoft.AzureActiveDirectory%2Fb2cDirectories it does not show which Resource Group it is…


Application requires admin consent, it keeps getting approved but nothing
Hello, One of our enterprise clients on Microsoft is trying to do the OAuth flow for our application ID but is facing an approval wall. The user is prompted with the window 'Approval required'. They fill in the 'Enter justification for requesting this…
Authentication and User Management Challenges in Azure B2C
1- We are facing issues logging in users from our Azure B2C instance. We have created two user flows to handle authentication. However, we have encountered several issues after the user completes the sign-in process. Specifically, when a user signs in…
The core requirement is to map device attribute and send in SAML token along with all other user attributes.
We need to send one of the computer attribute (device.divison) to the SAML claim along with other user attributes in one of the enterprise application in Entra ID. The device is Azure AD hybrid joined and available in the Entra ID (Devices). In the…

Configure Google Workspace as an IdP for Microsoft Entra ID
Trying to Configure Google Workspace as an IdP for Microsoft Entra ID. Following the microsoft guide here: https://learn.microsoft.com/en-us/education/windows/configure-aad-google-trust#configure-google-workspace-as-an-idp-for-microsoft-entra-id The…
Migration from 1 IdP to another
Hi All, We recently migrated from one IdP to another and are having some trouble with seamless SSO. We have are a Hybrid environment with Entra connect sync. Issues we are noticing: We seem to notice that users are not receiving the AzurePRT token from…
EnableDirectorySyncTask Error: Directory synchronization is enabled for this directory, but has not yet taken effect. Please wait until directory synchronization is ready. Exception Data (Raw): System.Exception: Directory synchronization is enabled for th
EnableDirectorySyncTask Error: Directory synchronization is enabled for this directory, but has not yet taken effect. Please wait until directory synchronization is ready. Exception Data (Raw): System.Exception: Directory synchronization is enabled for…
How do I disable user to update their photos in their profile
How do I disable user to update their photos in their profile, either through M365 or through Azure portal
Unable Assign Contrubuter Role to Service Pricinple Name for Tenant Root Managent Group
Unable to Assign Service Principle (SPN) Contributor Role to Tenant Management Group I see SPN as Application in select member. Why Type is APP (Not SPN)
Microsoft_AAD_Connect_Provisioning Error
We are using Azure Portal's Owner Account but we are getting the permission error while going into cloud sync option in Azure Intra ID. Error Details as Follows, { "shellProps": { "sessionId":…
AADSTS900561: The endpoint only accepts POST, OPTIONS requests. Received a GET request.
AADSTS900561: The endpoint only accepts POST, OPTIONS requests. Received a GET request.OAuth 2.0 Client Credentials Grant to Snowflake with Entra
Entra Connect Sync not working
Sync will not work. Seems to be a DNS issue? DNS does seem to be working fine in my environment. PS C:\SCRIPTS> Start-ADSyncSyncCycle -PolicyType Delta Start-ADSyncSyncCycle : System.Management.Automation.CmdletInvocationException:…
I noticed that the account appears disabled in the MS Entra Admin Center, but it still shows as enabled in Azure AD. Is this expected behavior?"
I noticed that the account appears disabled in the MS Entra Admin Center, but it still shows as enabled in Azure AD. Is this expected behavior?"
Unable to open Azure Account
Hi, While opening Azure Account, I am receiving the following error: The same issue when I try to open with another mobile number or email id as well Please help.
Using E3 and E5 Licenses in GCC High
Hello, We have a GCC High cloud environment, and the users within our tenant hold E3, E5, and P2 licenses. We have noticed that the available applications appear to be the same in both GCC High and the commercial GCC. Some documentation suggests that E3…