Guest user receives sign-in error code 530004

david wrafter 126 Reputation points
2022-09-12T11:59:37.017+00:00

I have a Guest user in a resource domain attempting to log into Dynamics 365 with an iPad.
The iPad is enrolled in Intune in the parent domain. When the guest user attempts to log into Dynamics 365 the user receives error message listed in the Active Directory sign logs:
Authentication requirement Multifactor authentication

Sign-in error code 530004

Failure reason AcceptCompliantDevice setting isn't configured for this organization.
The admin needs to configure this setting to allow external users access protected resources.

In the conditional access policy Grant section the 'require device to be marked as compliant' is checked.

In the Azure Active Directory External Identities Cross-tenant access settings, organisational settings the parent domain has been added. In the Trust Settings, the customize settings are enabled Trust multifactor authentication from Azure AD tenants and Trust complaint devices are ticked.

The error message received on the iPad is:

Sorry, you can't access this yet
You can't complete this action because you're trying to access protected resources as an external user in this organisation.

Please contact the admin to allow you to access the protected resources.

App name:Dataverse

Device identifier: Not available

Device platform: macOS

Device state: Unregistered

Has anyone come across this issue?

Microsoft Security | Microsoft Entra | Microsoft Entra ID
Microsoft Security | Intune | Other
{count} votes

1 answer

Sort by: Most helpful
  1. Jarvis Sun-MSFT 10,231 Reputation points Microsoft External Staff
    2022-09-13T03:28:07.797+00:00

    Hi @david wrafter Thanks for posting in our Q&A.

    This looks like a conditional access related issue, I find a similar case that others have experienced. Please refer to:
    https://learn.microsoft.com/en-us/answers/questions/712177/looking-for-information-on-sign-in-error-code-5300.html

    For better troubleshooting, it is recommend to escalate and open a support case. Here is the online support link and hope our issue will be resolved as soon as possible.
    https://learn.microsoft.com/en-us/mem/intune/fundamentals/get-support


    If the response is helpful, please click "Accept Answer" and upvote it.
    Note: Please follow the steps in our documentation to enable e-mail notifications if you want to receive the related email notification for this thread.

    2 people found this answer helpful.

Your answer

Answers can be marked as Accepted Answers by the question author, which helps users to know the answer solved the author's problem.