I can't create an MGDC instance on my Azure account
I'm using the account to upskill myself by learning cloud tech and as such I'm the only person on the account and have all of the permissions (as far as I can tell). I've tried opening a support ticket but can't seem to figure out the right tags to…
Azure Role-based access control
Lab AZ900 Manage Access with RBAC
I am following the instructions in AZ900 Manage Access with RBAC. I have created the role assignment for Virtual Machine Contributor. However when I go to Activity Log: and when I add filter Operation: Create role, no event show up in display: Am I…
Azure Role-based access control
Can't delete managed identity
When try to deleting a managed identity i have this error: id-dataoffering-syncronizer-dev-ni-001: No registered resource provider found for location 'italy' and API version '2024-11-30' for type 'userAssignedIdentities'. The supported api-versions are…
Azure Role-based access control

How to expose and return mobilePhone in Microsoft Graph using MSAL CIAM Login
Hi, I'm using MSAL with Entra External ID (CIAM login) for user registration and login. I'd like to include and retrieve the user's mobilePhone in the Graph API response after login. For example, from this call: GET…
Azure Role-based access control
Email address changes not reflected within PIM groups
We have close to 99 Groups onboarded within PIM. Recently from 22/06/25 our company domain is changed and accordignly all our email address is also updated. But that is not reflected within PIM groups Approvers page. It still reflects our old email…
Azure Role-based access control
How to reset MFA for my Azure free account?
Hi everyone! How are you? I've bought a new phone a couple months ago, and I've lost access to some MFA which were previously configured via "Microsoft Authenticator" app (because I hadn't enabled backup to iCloud, which is optional on iOS…
Azure Role-based access control

Not able to DISABLE the function in Azure function app with custom role
I have created custom role for users. In this role I have given all the access to function app except delete access to function app. However, user is not able to "Disable" the functions in function app. Error is as below: Failed to disable…
Azure Role-based access control
How can we integrate azure AD authentication in DOORS tool to call different application APIs
I want to integrate the azure AD authentication for DOORS tool so that we can generate access token and can call Midas application APIs. is this possible ? if yes then how can we do that? please guide me here.
Azure Role-based access control
Login fails using custom domain for Entra External Identities – AADSTS500210: Domain mismatch
Hello, I am configuring a custom login domain using Microsoft Entra External ID (CIAM) with Azure Front Door. The custom domain is verified, secured with AFD-managed certificate, and properly routed. However, when initiating login via the custom domain,…
Azure Role-based access control
Unable to login to Microsoft Entra or portal.azure.com
Error message: AADSTS5000224: We are sorry, this resource is not available. If you are seeing this message by mistake, please contact Microsoft support. Trace ID: 033927ce-c80c-4683-83a0-71d36e6b0c00 Correlation ID: 47ece498-e86e-44dd-969e-9347a9a4c3be…
Azure Role-based access control

Change password via Entra Domain Services
Hello Community, I'm looking for an option to rotate password via LDAP set on Entra Domain Services from my 3rd party tool. I'm trying to to change unicodePwd attribute but I have insufficient permissions to do so. I'm aware that I'm not fully manage…
Azure Role-based access control

Can't remove last role assignment to Privileged Role Administrator in Azure
When trying to remove the last privileged role from a subscription I'm getting the following Error - {"Error":{"Message":"Cannot delete the last RBAC admin…
Azure Role-based access control

Orphaned Microsoft account support challenges
An account has been orphaned and access to support has been challenging. Attempts to use Microsoft's automated phone line result in links that cannot be accessed due to the orphaned status. A support ticket was submitted through a separate Azure…
Azure Role-based access control

Why can I not assign a Custom roles with data actions at management group scope, but build-in roles with data actions work.
Why can I not assign a Custom roles with data actions at management group scope, but build-in roles with data actions work. The idea is to create use-case specific Custom roles with data action on the root MG (what is working) and then assign this custom…
Azure Role-based access control
I am unable to add an external domain because the domain already exists in an Azure directory
I want to be able to add my external domain to Entra external domains; however, the domain already exists in Entra and I want it removed. The domain name is xxxxx and the domain account that I am unable to login to because it somehow has MFA enabled is…
Azure Role-based access control

got locked out of a subscription, need technical support
Hello, I am the only user (therefore admin) for a subscription, and probably was fussing around Entra ID and lost access to the whole thing. How can I recover access, if the admin (me) is locked out of the whole directory/subscription?
Azure Role-based access control
Locked out as sole Global Admin – lost Authenticator and no backup methods
I am the only Global Administrator in my Azure AD / Microsoft Entra ID tenant (<PII removed>@removed.onmicrosoft.com). I recently changed my phone and no longer have access to the Microsoft Authenticator app. I did not set up any alternate phone…
Azure Role-based access control


collect logs from another tenant
iam asking on how to collect logs from native logs like entraID, defender XDR, office365 and so on and send this logs to sentinel on another tenant
Azure Role-based access control
Unable to change domain from federated to managed
Hi Community, Good day! We are unable to change the status of domain from federated to managed, even though tried with all super admin account but it won't to allow to connect-msolservice as well in the powershell.
Azure Role-based access control
How do i close azure account properly
I deleted the main tenant of my Azure account because I wanted to close the account. Now I can't access anything in Azure. Does this mean my Azure account has been properly closed? Is there a chance I could still be charged, or that the account could be…