20,374 questions with Microsoft Entra ID tags

Sort by: Updated
1 answer

How to fix : AADSTS500126: External ID token from issuer '{issuer}' failed signature verification. KeyID of token is '{keyid}'.

I am working on creating external authentication method using OpenID connect flow. Now I am looking for the last step where the generated id_token from issuer need to verify by Microsoft Entra ID. However, I am getting the following error :…

Microsoft Entra ID
Microsoft Entra ID
A Microsoft Entra identity service that provides identity management and access control capabilities. Replaces Azure Active Directory.
20,374 questions
asked 2024-07-08T07:15:13.5+00:00
vrk 0 Reputation points
answered 2024-07-08T20:57:52.61+00:00
Marilee Turscak-MSFT 36,156 Reputation points Microsoft Employee
0 answers

SAML Authentication on multiple Service Principals (SPs) with only one login

Hi. I have two firewalls acting as proxies. Each firewall has different resources behind them. This firewalls are configured as SAML SP's and Azure as SAML IdP to get authentication with Microsoft credentials before access any resource behind the…

Microsoft Entra ID
Microsoft Entra ID
A Microsoft Entra identity service that provides identity management and access control capabilities. Replaces Azure Active Directory.
20,374 questions
asked 2024-07-05T19:53:39.19+00:00
Juan Manuel Castro 0 Reputation points
commented 2024-07-08T20:38:12.05+00:00
Juan Manuel Castro 0 Reputation points
1 answer

Access review in Azure is set to start tomorrow and it currently shows "Not started" with 0 users listed

I have created an access review in Azure, which is set to start tomorrow, and it currently shows "Not started" with 0 users listed. why is this so? Is this expected behaviour?

Microsoft Entra ID
Microsoft Entra ID
A Microsoft Entra identity service that provides identity management and access control capabilities. Replaces Azure Active Directory.
20,374 questions
asked 2024-07-08T20:12:52.31+00:00
Pawar, Monica 40 Reputation points
answered 2024-07-08T20:31:48.6366667+00:00
Andy David - MVP 144.4K Reputation points MVP
0 answers

Why do Entra ID SAML claim transformations work differently for different claims?

Scenario: In an Entra ID SAML-mediated SSO solution, I have to configure the identity provider to deliver a set of claims that all correspond to an email address. Depending on whether or not a specific extensionattribute contains a value (a set of…

Microsoft Entra ID
Microsoft Entra ID
A Microsoft Entra identity service that provides identity management and access control capabilities. Replaces Azure Active Directory.
20,374 questions
asked 2024-07-05T11:07:09.6133333+00:00
Jens Bilgrav 0 Reputation points
commented 2024-07-08T20:29:59.7166667+00:00
Marilee Turscak-MSFT 36,156 Reputation points Microsoft Employee
0 answers

I puchased the Standard Subscription, but it shows as Pay as You go. Been trying to fix for two weeks but all the chat robots do not work

I puchased the Standard Subscription, but it shows as Pay as You go. Been trying to fix for two weeks but all the chat robots do not work

Microsoft Entra ID
Microsoft Entra ID
A Microsoft Entra identity service that provides identity management and access control capabilities. Replaces Azure Active Directory.
20,374 questions
asked 2024-07-08T19:19:59.2+00:00
Edward Zielinski 0 Reputation points
commented 2024-07-08T19:59:25.72+00:00
Dillon Silzer 55,486 Reputation points
1 answer

I deleted xxx.onmicrosoft.com domain but I am unable to reuse it - it is still in use

Hello, I created a tenant xxx.onmicrosoft.com, but I selected a wrong country. I decided to create a new tenant with the name xxx2.onmicrosost.com I deleted all xxx.onmicrosoft.com users I deleted xxx.onmicrosoft.com domain. I waited 96 hours I…

Microsoft Entra ID
Microsoft Entra ID
A Microsoft Entra identity service that provides identity management and access control capabilities. Replaces Azure Active Directory.
20,374 questions
asked 2024-07-08T18:36:58.5833333+00:00
T 0 Reputation points
answered 2024-07-08T19:37:44.9166667+00:00
Dillon Silzer 55,486 Reputation points
1 answer

What is the cause of the following error - "getting assigned identities for pod <namespace>/<pod_name> in CREATED state failed after 20 attempts, retry duration [5]s" , while connecting to IMDS endpoint from a pod in AKS.

I am trying to connect to Azure Key vault via user assigned managed identity from a pod of AKS. I have provided the necessary RBAC role to the identity. I have created Azure Identity and Azure Identity Binding. I have updated my deployment with…

Azure Key Vault
Azure Key Vault
An Azure service that is used to manage and protect cryptographic keys and other secrets used by cloud apps and services.
1,177 questions
Azure Role-based access control
Azure Role-based access control
An Azure service that provides fine-grained access management for Azure resources, enabling you to grant users only the rights they need to perform their jobs.
712 questions
Azure Kubernetes Service (AKS)
Azure Kubernetes Service (AKS)
An Azure service that provides serverless Kubernetes, an integrated continuous integration and continuous delivery experience, and enterprise-grade security and governance.
1,968 questions
Microsoft Entra ID
Microsoft Entra ID
A Microsoft Entra identity service that provides identity management and access control capabilities. Replaces Azure Active Directory.
20,374 questions
asked 2024-07-08T17:50:19.59+00:00
Mahalingam Vignesh 0 Reputation points
answered 2024-07-08T19:22:20.41+00:00
hossein jalilian 4,770 Reputation points
0 answers

Not able to make IMAP & Graph APIs work

Hi, I am trying to connect to office 365 mail box through IMAP . for this I am using @azure/msal-node. which is giving me access token. When I decode that token at https://jwt.ms/ , it gives me following roles : "roles": [ …

Microsoft Entra ID
Microsoft Entra ID
A Microsoft Entra identity service that provides identity management and access control capabilities. Replaces Azure Active Directory.
20,374 questions
asked 2023-02-28T06:33:54.3966667+00:00
CovrEdge Support 5 Reputation points
commented 2024-07-08T19:20:35.82+00:00
Karthik R 0 Reputation points
1 answer

Entra hybrid join

We are planning to entra hybrid join devices .At present devices are domain join+intune enrolled(Entra registered).We allowd 4 urls for connectivity in firewall and proxy.we run test device regconnectivity.ps1 in test devices we are getting connectivity…

Windows 10
Windows 10
A Microsoft operating system that runs on personal computers and tablets.
11,087 questions
Microsoft Intune
Microsoft Intune
A Microsoft cloud-based management solution that offers mobile device management, mobile application management, and PC management capabilities.
4,672 questions
Microsoft Entra ID
Microsoft Entra ID
A Microsoft Entra identity service that provides identity management and access control capabilities. Replaces Azure Active Directory.
20,374 questions
asked 2024-07-08T16:20:23.19+00:00
srinivas Pasupuleti100 0 Reputation points
answered 2024-07-08T19:10:03.6333333+00:00
Rahul Jindal [MVP] 9,551 Reputation points MVP
1 answer

Guidance on how to use Service Principal with Certificate to Authorize for EventHub Stream Read

I found this documentation https://github.com/Azure/azure-event-hubs-spark/blob/master/docs/use-aad-authentication-to-connect-eventhubs.md online on how to use service principal with certificate to use spark stream read from EventHubs, I want to do this…

Azure Event Hubs
Azure Event Hubs
An Azure real-time data ingestion service.
591 questions
Azure Synapse Analytics
Azure Synapse Analytics
An Azure analytics service that brings together data integration, enterprise data warehousing, and big data analytics. Previously known as Azure SQL Data Warehouse.
4,630 questions
Azure Databricks
Azure Databricks
An Apache Spark-based analytics platform optimized for Azure.
2,047 questions
Microsoft Entra ID
Microsoft Entra ID
A Microsoft Entra identity service that provides identity management and access control capabilities. Replaces Azure Active Directory.
20,374 questions
asked 2024-07-01T21:27:20.97+00:00
BEPV 0 Reputation points
commented 2024-07-08T18:29:43.01+00:00
BEPV 0 Reputation points
1 answer

Azure AD B2C Custom Policy as a Federated Identity Provider in AWS Cognito User Pool

I have an Azure AD B2C Custom Policy defined with OpenId Connect. I ahve four custom claims added in the policy and they correctly appear in the response (id_token) of the policy when tested using the B2C Custom Policy 'Run Now' menu in Azure portal. I…

Microsoft Entra External ID
Microsoft Entra External ID
A modern identity solution for securing access to customer, citizen and partner-facing apps and services. It is the converged platform of Azure AD External Identities B2B and B2C. Replaces Azure Active Directory External Identities.
2,742 questions
Microsoft Entra ID
Microsoft Entra ID
A Microsoft Entra identity service that provides identity management and access control capabilities. Replaces Azure Active Directory.
20,374 questions
asked 2024-07-04T10:28:37.1266667+00:00
Anand Patil 20 Reputation points
commented 2024-07-08T18:02:27.0133333+00:00
Anand Patil 20 Reputation points
1 answer

Troubleshooting Microsoft sign-in issue with OIDC flow for organization/school users

I'm trying to implement sign-in with Microsoft using the OIDC flow in my application. However, when I test with my work account or Microsoft account xxx@microsoft.com, I get error messages saying that the Microsoft account doesn't exist or that the…

Microsoft Entra ID
Microsoft Entra ID
A Microsoft Entra identity service that provides identity management and access control capabilities. Replaces Azure Active Directory.
20,374 questions
asked 2024-06-20T06:18:28.7066667+00:00
Guanda Li 0 Reputation points
edited a comment 2024-07-08T17:51:19.64+00:00
Guanda Li 0 Reputation points
1 answer

Need help in migrating Apps from ADAL to MSAL

Hi Team, Could you please me to check how an app is using ADAL from "app registration" form level? I was able to get list of apps using ADAL from Admin center. When I compared the app using ADAL along with a new app I just created, I couldn't…

Microsoft Graph
Microsoft Graph
A Microsoft programmability model that exposes REST APIs and client libraries to access data on Microsoft 365 services.
11,269 questions
Microsoft Entra ID
Microsoft Entra ID
A Microsoft Entra identity service that provides identity management and access control capabilities. Replaces Azure Active Directory.
20,374 questions
asked 2024-07-02T09:09:14.83+00:00
PavanJ-9988 0 Reputation points
edited an answer 2024-07-08T16:32:03.7533333+00:00
Shweta Mathur 29,261 Reputation points Microsoft Employee
1 answer

REST API integration in Azure AD B2C Custom Policy

I am trying to call Token endpoint for B2C Custom policy. When verified through postman, I am able to successfully call the endpoint. The parameters used in this postman request are as seen in the attached image. I want to integrated this endpoint in my…

Microsoft Entra External ID
Microsoft Entra External ID
A modern identity solution for securing access to customer, citizen and partner-facing apps and services. It is the converged platform of Azure AD External Identities B2B and B2C. Replaces Azure Active Directory External Identities.
2,742 questions
Microsoft Entra ID
Microsoft Entra ID
A Microsoft Entra identity service that provides identity management and access control capabilities. Replaces Azure Active Directory.
20,374 questions
Azure Startups
Azure Startups
Azure: A cloud computing platform and infrastructure for building, deploying and managing applications and services through a worldwide network of Microsoft-managed datacenters.Startups: Companies that are in their initial stages of business and typically developing a business model and seeking financing.
236 questions
asked 2024-06-25T12:16:00.4666667+00:00
Anand Patil 20 Reputation points
commented 2024-07-08T16:12:54.41+00:00
Marilee Turscak-MSFT 36,156 Reputation points Microsoft Employee
1 answer

How to add a timeout system to my API Management Developer Portal?

I have an API Management developer portal (standard tier) that I want users to be timed out of after inactivity. I've been testing my developer portal and it seems that the user will stay signed in even if they do not interact with the webpage. I am…

Azure API Management
Azure API Management
An Azure service that provides a hybrid, multi-cloud management platform for APIs.
1,914 questions
Microsoft Entra External ID
Microsoft Entra External ID
A modern identity solution for securing access to customer, citizen and partner-facing apps and services. It is the converged platform of Azure AD External Identities B2B and B2C. Replaces Azure Active Directory External Identities.
2,742 questions
Microsoft Entra ID
Microsoft Entra ID
A Microsoft Entra identity service that provides identity management and access control capabilities. Replaces Azure Active Directory.
20,374 questions
asked 2024-06-05T14:15:41.1133333+00:00
hampton123 1,140 Reputation points
commented 2024-07-08T16:12:19.3966667+00:00
hampton123 1,140 Reputation points
2 answers

Azure Key Vault Authentication failing from desktop application

I am trying to access Azure key vault form my electron desktop application. My App is registered on Azure but I don't want to expose my app secret to create credentials and also my app isn't hosted on Azure, DefaultAzureCredential is not yielding desired…

Azure Key Vault
Azure Key Vault
An Azure service that is used to manage and protect cryptographic keys and other secrets used by cloud apps and services.
1,177 questions
Microsoft Entra ID
Microsoft Entra ID
A Microsoft Entra identity service that provides identity management and access control capabilities. Replaces Azure Active Directory.
20,374 questions
asked 2024-07-08T10:49:19.2+00:00
Shashikant Sharma 65 Reputation points
answered 2024-07-08T16:02:33.8766667+00:00
Bruce (SqlWork.com) 60,391 Reputation points
1 answer

Issues with updating Company Branding in Entra ID

Hello! We changed our company name last year and I have been attempting to update our Company Branding in Entra ID for a few months. I've followed all the directions…

Microsoft Entra ID
Microsoft Entra ID
A Microsoft Entra identity service that provides identity management and access control capabilities. Replaces Azure Active Directory.
20,374 questions
asked 2024-07-03T21:02:42.47+00:00
John Lamoureux 0 Reputation points
commented 2024-07-08T15:27:11.93+00:00
John Lamoureux 0 Reputation points
0 answers

Enforce Web Sign in for RDP client

Hi All, Is there a specific Group Policy Object (GPO) or Intune policy that will enforce the "User Authentication" checkbox setting in the RDP Client settings? We want to ensure that all administrators use Entra ID modern authentication for all…

Windows 10
Windows 10
A Microsoft operating system that runs on personal computers and tablets.
11,087 questions
Microsoft Entra ID
Microsoft Entra ID
A Microsoft Entra identity service that provides identity management and access control capabilities. Replaces Azure Active Directory.
20,374 questions
asked 2024-07-08T15:10:45.81+00:00
Mohammed Nurul Alom 0 Reputation points
0 answers

Auto Labeling sensitive types

When creating a sensitive label, I want to use Full Name + All Physical Addresses, combined. The auto labeling will label the file when combined, but it will also label , Full Names by it self and the same with All Physical addresses by its self. How can…

Microsoft Entra ID
Microsoft Entra ID
A Microsoft Entra identity service that provides identity management and access control capabilities. Replaces Azure Active Directory.
20,374 questions
asked 2024-07-08T14:58:43.4433333+00:00
Mark Sannuti (C-Admin) 20 Reputation points
commented 2024-07-08T15:01:40.4366667+00:00
Mark Sannuti (C-Admin) 20 Reputation points
0 answers

The ClusterRoleBinding aks-cluster-admin-binding includes the User clusterUser as a subject

Hello On an RBAC & AzureRBAC enabled AKS cluster I have noticed that the cluster-admin ClusterRole is bound to two subjects through the aks-cluster-admin-binding ClusterRoleBinding: User/clusterAdmin User/clusterUser This is unexpected. As far as…

Azure Kubernetes Service (AKS)
Azure Kubernetes Service (AKS)
An Azure service that provides serverless Kubernetes, an integrated continuous integration and continuous delivery experience, and enterprise-grade security and governance.
1,968 questions
Microsoft Entra ID
Microsoft Entra ID
A Microsoft Entra identity service that provides identity management and access control capabilities. Replaces Azure Active Directory.
20,374 questions
asked 2024-07-08T14:36:04.85+00:00
Konstantin Bachem 0 Reputation points