External Users unable to accept Microsoft Entra ID invite

Roy, Chinmoy 6 Reputation points
2024-09-03T14:46:34.1933333+00:00

I am trying to add some external users to my Organization's Entra ID, so that I can add them in a Group. They are unable to accept the Invite which Entra ID sends to their Work email.

They are getting a error while accepting the Invite "User is not assigned to this application"

Please note, these users are not Microsoft users. They don't have Microsoft/365 subscription. Their Work Emails are Google/Okta domains.

Microsoft Entra External ID
Microsoft Entra External ID
A modern identity solution for securing access to customer, citizen and partner-facing apps and services. It is the converged platform of Azure AD External Identities B2B and B2C. Replaces Azure Active Directory External Identities.
2,884 questions
Microsoft Entra ID
Microsoft Entra ID
A Microsoft Entra identity service that provides identity management and access control capabilities. Replaces Azure Active Directory.
21,795 questions
{count} votes

1 answer

Sort by: Most helpful
  1. James Hamil 24,666 Reputation points Microsoft Employee
    2024-09-04T19:28:49.25+00:00

    Hi @Roy, Chinmoy , make sure that the external users' email domains (Google/Okta) are allowed in your organization's external collaboration settings. You can check this in the Microsoft Entra admin center under Identity > External Identities > External collaboration settings.

    Verify that the users are being invited correctly. Sometimes, issues can arise if there are conflicting contact objects or if the users are not properly synchronized. You might need to delete any conflicting contact objects and reinvite the users.

    Make sure that the users have the necessary licenses assigned to them. If the users are missing a required license, they might not be able to accept the invitation.

    Also, please see the solutions in this thread:

    There are several possibilities that could cause this issue:

    • The user is not present in the cloud in the organization. You may need to re-add the user so that the user can re-accept the invitation.
    • The user is missing a necessary license.
    • The user's email addresses exist under different accounts in a pre-existing Azure AD tenant. You may need to remove the user and re-send the invitation.
    • The account does not exist, but they do have a tenant already in Azure AD, so the user is unable to create a Microsoft account using the same email address.
    • To reset the redemption status of a guest user, you can use the Microsoft Entra admin center or PowerShell. You can also use the Microsoft Graph API to reset the user’s redemption status and reinvite the user.

    Please let me know if you have any questions and I can help you further.

    If this answer helps you please mark "Accept Answer" so other users can reference it.

    Thank you,

    James

    0 comments No comments

Your answer

Answers can be marked as Accepted Answers by the question author, which helps users to know the answer solved the author's problem.