Maybe your token signins certificate expired on AD FS. It does not impact those who have an Azure PRT already but will affect all new users and users for which the PRT is invalidated (like a password change). You can follow this procedure to make sure it is matching: https://learn.microsoft.com/en-us/azure/active-directory/hybrid/how-to-connect-fed-o365-certs
Unable to verify token signature. The signing key identifier does not match any valid registered keys.
Naeem Chougle
1
Reputation point
getting this below error for all new starter, and if we change the password on old user they are not able to login on O365.
Sign-in error code
5000811
Failure reason
Unable to verify token signature. The signing key identifier does not match any valid registered keys.
2 answers
Sort by: Most helpful
-
Pierre Audonnet - MSFT 10,191 Reputation points Microsoft Employee
2022-08-30T13:46:34.45+00:00 -
Jordan Pressman 5 Reputation points
2024-03-11T10:39:40.2366667+00:00 Have the same issue. Can't log in to try any of the fixes so now what?