Can't do a Domain Takeover in Microsoft Entra, after original Power BI user lost access to account

Juan Pinzon 40 Reputation points
2025-02-06T19:52:18.4+00:00

One of our users created a Power BI account some time ago using our company domain. He has lost access to his Microsoft account because he lost his 2FA device. Now I'm trying to do a domain takeover using the Custom Domain Names option in Azure Console, but it hasn't worked. I've ensured the TXT and MX settings in our domain, using CloudFlare, but still no success.Azure Entra instructions:

User's image

-------

Cloudflare DNS Configuration

User's image


TXT Lookup

User's image

Microsoft Entra
0 comments No comments
{count} votes

Accepted answer
  1. Janaki Kota 790 Reputation points Microsoft External Staff
    2025-02-07T12:03:56.5733333+00:00

    Hello Juan Pinzon,

    Thank you for reaching out to Microsoft Q&A. 

    We understand that one of our users created a Power BI account using your company domain to which they have lost access, so you would like to do domain takeover using the Custom Domain Names option in Azure Console, but it is throwing an error below: 

    “Unable to verify domain name. Ensure you have added the record above at the registrar and try again in a little while. Click here for more information.” 

    There are few scenarios where you will notice an error like above: 

    • A potential propagation delay. You need to wait at least an hour and try again. DNS records must propagate before you can verify the domain. This process can take an hour or more. 

    Go back to the domain name registrar site. Make sure the entry is there, and that it matches the DNS entry information provided in the Microsoft Entra admin center. 

    A domain name can only be verified in one directory. If your domain name is currently verified in another directory, it can't also be verified in the new directory. To fix this duplication problem, you must delete the domain name from the old directory. 

    • If your users have activated Power BI through self-service sign-up and created an unmanaged tenant for your organization, you must take over management as an internal or external admin, using PowerShell.   

    Source document for more information: https://learn.microsoft.com/en-us/entra/fundamentals/add-custom-domain

    Hope this helps. Do let us know if you any further queries.

    Thanks & Best Regards

    Janaki Kota


0 additional answers

Sort by: Most helpful

Your answer

Answers can be marked as Accepted Answers by the question author, which helps users to know the answer solved the author's problem.