24,664 questions with Microsoft Entra-related tags

Sort by: Updated
1 answer

Azure B2C - Maintain a login session and manage access tokens in a SPA (React)

Hi 1) We are using Azure B2C to manage external users sign in, sign up, password reset, MFA for a Single page app . Currently we are using MSAL 2.2.0 (tried 2.4.1 as well) to login the user using the msal.loginredirect flow. Once the user is logged in ,…

Microsoft Entra External ID
Microsoft Entra External ID
A modern identity solution for securing access to customer, citizen and partner-facing apps and services. It is the converged platform of Azure AD External Identities B2B and B2C. Replaces Azure Active Directory External Identities.
2,851 questions
asked 2020-11-09T04:20:16.07+00:00
Sharat Menon 1 Reputation point
commented 2020-11-26T00:29:01.747+00:00
James Hamil 24,481 Reputation points Microsoft Employee
1 answer

Enterprise Applications vs All Applications

I think understand the difference. But here is one scenario I don't get. Let's say Tenant-Blue has BlueApp, clientID is "blue". Now I goto Tenant-Yellow and search for "BlueApp". (It was rumored that an admin of Tenant-Yellow…

Azure App Service
Azure App Service
Azure App Service is a service used to create and deploy scalable, mission-critical web apps.
7,679 questions
Microsoft Entra ID
Microsoft Entra ID
A Microsoft Entra identity service that provides identity management and access control capabilities. Replaces Azure Active Directory.
21,449 questions
asked 2020-11-09T06:00:31.157+00:00
JAL 591 Reputation points
commented 2020-11-26T00:28:52.863+00:00
James Hamil 24,481 Reputation points Microsoft Employee
1 answer

MFA setup not going through.

Verify your identity Sorry, we're having trouble verifying your account. Please try again. View details The call to verify option isn't responding too. Then, the troubleshooting information shows this; If you contact your administrator, send this…

Microsoft Entra ID
Microsoft Entra ID
A Microsoft Entra identity service that provides identity management and access control capabilities. Replaces Azure Active Directory.
21,449 questions
asked 2020-11-18T11:34:01.837+00:00
Michael Ekweogwu 1 Reputation point
commented 2020-11-26T00:26:36.707+00:00
JamesTran-MSFT 36,606 Reputation points Microsoft Employee
1 answer One of the answers was accepted by the question author.

Location mapped to IP in MCAS (Microsoft Cloud App Security) is different from Azure AD Sign-ins

I've seen several instances where the location mapped to IP in MCAS (Microsoft Cloud App Security) is different from Azure AD. For example, MCAS mapped IP 185.247.70.52 to Romania and Azure AD mapped location to Dallas, TX. This triggered false positive…

Microsoft Entra ID
Microsoft Entra ID
A Microsoft Entra identity service that provides identity management and access control capabilities. Replaces Azure Active Directory.
21,449 questions
asked 2020-11-11T14:58:05.417+00:00
Pablo Gallegos 21 Reputation points
accepted 2020-11-26T00:26:29.34+00:00
Pablo Gallegos 21 Reputation points
1 answer

Azure Active Directory Domain Services with a file server

Hey Everyone, i am have used Azure Active Directory Domain Services with azure file shares but never before with an actual file server. I know i can attach the new file server vm to the Azure Active Directory Domain Services domain, but can i set up…

Microsoft Entra
Microsoft Entra ID
Microsoft Entra ID
A Microsoft Entra identity service that provides identity management and access control capabilities. Replaces Azure Active Directory.
21,449 questions
Microsoft Entra
Microsoft Entra ID
Microsoft Entra ID
A Microsoft Entra identity service that provides identity management and access control capabilities. Replaces Azure Active Directory.
21,449 questions
asked 2020-11-09T18:13:50.373+00:00
stavros mitchell 56 Reputation points
commented 2020-11-26T00:24:24.923+00:00
James Hamil 24,481 Reputation points Microsoft Employee
1 answer

Azure Active Directory Domain Services with a file server

Hey Everyone, i am have used Azure Active Directory Domain Services with azure file shares but never before with an actual file server. I know i can attach the new file server vm to the Azure Active Directory Domain Services domain, but can i set up…

Microsoft Entra
Microsoft Entra ID
Microsoft Entra ID
A Microsoft Entra identity service that provides identity management and access control capabilities. Replaces Azure Active Directory.
21,449 questions
Microsoft Entra
Microsoft Entra ID
Microsoft Entra ID
A Microsoft Entra identity service that provides identity management and access control capabilities. Replaces Azure Active Directory.
21,449 questions
asked 2020-11-09T18:13:50.373+00:00
stavros mitchell 56 Reputation points
commented 2020-11-26T00:24:24.923+00:00
James Hamil 24,481 Reputation points Microsoft Employee
1 answer

Where can I download my MFA recovery token codes ?

Greetings, When activating TOTP on my account, there was no link to download my recovery tokens (as codes). Searching through my profile and official documentation, nothing to be found. It means that, if my device is lost, or if the database…

Microsoft Entra ID
Microsoft Entra ID
A Microsoft Entra identity service that provides identity management and access control capabilities. Replaces Azure Active Directory.
21,449 questions
asked 2020-11-11T00:09:20.84+00:00
Jules (ArchPhoenix Team) 16 Reputation points
commented 2020-11-26T00:24:01.947+00:00
Jules (ArchPhoenix Team) 16 Reputation points
0 answers

Azure Active Directory Domain Services (AADDS) - Replica Sets preview duration

I have a need to enable AADDS Replica Sets, which is currently in preview. I am having a hard time figuring out how long this preview will last and whether we should use this or not. I know that guessing at Preview duration is a fool's errand, but I…

Microsoft Entra
Microsoft Entra ID
Microsoft Entra ID
A Microsoft Entra identity service that provides identity management and access control capabilities. Replaces Azure Active Directory.
21,449 questions
Microsoft Entra
Microsoft Entra ID
Microsoft Entra ID
A Microsoft Entra identity service that provides identity management and access control capabilities. Replaces Azure Active Directory.
21,449 questions
asked 2020-11-09T20:03:43.863+00:00
NWMikeG 1 Reputation point
commented 2020-11-26T00:23:47.337+00:00
James Hamil 24,481 Reputation points Microsoft Employee
0 answers

Azure Active Directory Domain Services (AADDS) - Replica Sets preview duration

I have a need to enable AADDS Replica Sets, which is currently in preview. I am having a hard time figuring out how long this preview will last and whether we should use this or not. I know that guessing at Preview duration is a fool's errand, but I…

Microsoft Entra
Microsoft Entra ID
Microsoft Entra ID
A Microsoft Entra identity service that provides identity management and access control capabilities. Replaces Azure Active Directory.
21,449 questions
Microsoft Entra
Microsoft Entra ID
Microsoft Entra ID
A Microsoft Entra identity service that provides identity management and access control capabilities. Replaces Azure Active Directory.
21,449 questions
asked 2020-11-09T20:03:43.863+00:00
NWMikeG 1 Reputation point
commented 2020-11-26T00:23:47.337+00:00
James Hamil 24,481 Reputation points Microsoft Employee
1 answer

Looking for a Python/Django/Djano-REST-Framework library to verify access_token from Azure AD

This has been a real frustrating struggle for several days now and I need to get it wrapped up. So in my app, and how I understand this should work in all microservice applications, the flow is the following: User navigates to…

Microsoft Entra ID
Microsoft Entra ID
A Microsoft Entra identity service that provides identity management and access control capabilities. Replaces Azure Active Directory.
21,449 questions
asked 2020-11-09T20:09:34.067+00:00
cjones 21 Reputation points
commented 2020-11-26T00:23:31.873+00:00
James Hamil 24,481 Reputation points Microsoft Employee
1 answer

acquireTokenSilent() returns an access token signed by the wrong key

I have an SPA that uses MSAL (msal-browser@2.7.0) to authenticate against Azure AD B2C. I call loginRedirect() and everything works as expected. Once the redirect comes back, I save the account information in handleRedirectPromise() and then use…

Microsoft Entra External ID
Microsoft Entra External ID
A modern identity solution for securing access to customer, citizen and partner-facing apps and services. It is the converged platform of Azure AD External Identities B2B and B2C. Replaces Azure Active Directory External Identities.
2,851 questions
asked 2020-11-24T20:05:11.757+00:00
Mark 1 Reputation point
commented 2020-11-26T00:21:15.657+00:00
1 answer

How is the sub claim in the userinfo OpenID endpoint established?

Hi, When I register an app in AAD, and then perform an OAuth2 / OpenID authentication, and then query the OpenID userinfo endpoint (https://graph.microsoft.com/oidc/userinfo) with the access_token, it returns a JSON like this: { …

Microsoft Entra ID
Microsoft Entra ID
A Microsoft Entra identity service that provides identity management and access control capabilities. Replaces Azure Active Directory.
21,449 questions
asked 2020-11-18T14:50:18.417+00:00
Ted van der Voorde 1 Reputation point
commented 2020-11-26T00:19:47.57+00:00
JamesTran-MSFT 36,606 Reputation points Microsoft Employee
1 answer

Azure Active Directory - Logout ( Mendix )

We are trying Create Single Sign On application using Azure Active Directory and Mendix The SAML Configuration is given below. ![38570-saml.jpg][1] We are able to login with the Microsoft account but the actual problem comes when we tried to…

Microsoft Entra ID
Microsoft Entra ID
A Microsoft Entra identity service that provides identity management and access control capabilities. Replaces Azure Active Directory.
21,449 questions
asked 2020-11-10T10:56:18.75+00:00
Giridharan M 6 Reputation points
commented 2020-11-26T00:18:54.087+00:00
James Hamil 24,481 Reputation points Microsoft Employee
1 answer

Input-Field "Who can consent?" is missing in edit/new pane of custom scope. "AD B2C"/"Exposed API"/"Add Scope":

If i edit/add a "scope" of an "exposed api", normally i have to choose between "Admin" or "User and Admin". The Input-Field is missing, so i just can add a "Admin" scope. For me it looks like an…

Microsoft Entra External ID
Microsoft Entra External ID
A modern identity solution for securing access to customer, citizen and partner-facing apps and services. It is the converged platform of Azure AD External Identities B2B and B2C. Replaces Azure Active Directory External Identities.
2,851 questions
asked 2020-11-10T11:19:27.207+00:00
Norman Philipp 1 Reputation point
commented 2020-11-26T00:18:44.613+00:00
James Hamil 24,481 Reputation points Microsoft Employee
1 answer

Azure AD B2C using access token produced by password reset policy

I have a custom password reset policy in Azure B2C. Q1: is that possible to use access token emitted by the policy in my FE application (MSAL.js v2)? Q2: is that possible to include email address as a claim of the token produced by my policy?

Microsoft Entra External ID
Microsoft Entra External ID
A modern identity solution for securing access to customer, citizen and partner-facing apps and services. It is the converged platform of Azure AD External Identities B2B and B2C. Replaces Azure Active Directory External Identities.
2,851 questions
asked 2020-11-10T15:59:55.147+00:00
Vasilii Aleksandrov 16 Reputation points
commented 2020-11-26T00:18:02.25+00:00
James Hamil 24,481 Reputation points Microsoft Employee
1 answer

MSAL - AcquireTokenInteractive - different user experience

I am performing an oauth flow for signing into EWS using MSAL (4.22) and AcquireTokenInteractive. This is working but it is offering a different and much less convenient sign-in experience from that in a 3rd party off-the-shelf tool that is also…

Microsoft Entra ID
Microsoft Entra ID
A Microsoft Entra identity service that provides identity management and access control capabilities. Replaces Azure Active Directory.
21,449 questions
asked 2020-11-19T04:20:03.733+00:00
Andrew McDonald 1 Reputation point
commented 2020-11-26T00:17:37.827+00:00
JamesTran-MSFT 36,606 Reputation points Microsoft Employee
1 answer

Enable Azure Security Defaults

I receive the following error when trying to enable Azure Security Defaults: "It looks like you have Identity Protection policies enabled. Enabling Identity Protection policies prevents you from enabling Security defaults." I have disabled…

Microsoft Defender for Cloud
Microsoft Defender for Cloud
An Azure service that provides threat protection for workloads running in Azure, on-premises, and in other clouds. Previously known as Azure Security Center and Azure Defender.
1,352 questions
Microsoft Entra ID
Microsoft Entra ID
A Microsoft Entra identity service that provides identity management and access control capabilities. Replaces Azure Active Directory.
21,449 questions
asked 2020-11-10T23:20:53.98+00:00
Rob Brien 1 Reputation point
commented 2020-11-26T00:17:10.267+00:00
James Hamil 24,481 Reputation points Microsoft Employee
1 answer

Azure AD Users Fields Length

Hi We would like to know what would be the maximum number of characters are allowed for the following fields of users in Azure Active Directory UserName Email Address First Name Last Name Thanks, Subbu

Microsoft Entra ID
Microsoft Entra ID
A Microsoft Entra identity service that provides identity management and access control capabilities. Replaces Azure Active Directory.
21,449 questions
asked 2020-11-19T13:26:13.667+00:00
Subramanyam k 251 Reputation points
commented 2020-11-26T00:16:17.2+00:00
JamesTran-MSFT 36,606 Reputation points Microsoft Employee
1 answer

While deploying MFA for users, why are users getting repeat password prompts in Outlook app?

My company is trying to implement text-based MFA for our users across our company. However, Whenever I enable MFA for a user, then they proceed through registration and status updates to Enforced, Outlook desktop app starts freaking out and repeatedly…

Microsoft Entra ID
Microsoft Entra ID
A Microsoft Entra identity service that provides identity management and access control capabilities. Replaces Azure Active Directory.
21,449 questions
asked 2020-11-11T14:48:44.247+00:00
Joshua C 1 Reputation point
commented 2020-11-26T00:15:10.607+00:00
James Hamil 24,481 Reputation points Microsoft Employee
1 answer

Migrate Custom Domain Name from AAD with Self-Service Users

I haven't been able to find much information about this scenario so any help is appreciated. I want to migrate the custom domain on one tenant to a new tenant. Users have been created in our current tenant through self-service (creation type:…

Microsoft Entra ID
Microsoft Entra ID
A Microsoft Entra identity service that provides identity management and access control capabilities. Replaces Azure Active Directory.
21,449 questions
asked 2020-11-19T21:42:03.05+00:00
Jesse 1 Reputation point
commented 2020-11-26T00:14:47.803+00:00
JamesTran-MSFT 36,606 Reputation points Microsoft Employee