Create new Tenant (AAD) for MSDN subscription - access denied

Steffen Gildhoff 21 Reputation points
2022-12-23T13:14:56.49+00:00

I have been assigned a MSDN azure subscription to my company Microsoft Account (100$ pr month). I am owner/admin on the MSDN subscription.
The subscription has been created with my companys primary tenant/directory assigned to the subscription.

I would like to create a new tenant/directory - and change my MSDN subscription to use that directory - to completely isolate the MSDN sandbox subscription from the production directory.

problem is that my company user does not have permission to show the AAD portal in the browser, where the link to create a new tenant is present. So I dont seem to be able to create a new directory for the MSDN subscription, that I am owner of, since my user is also assigned my companys production AAD and therefore dont have access to view the Azure AD directory portal.

it seems that there a no powershell commands for creating a new directory (portal only) - any idea what to do to overcome this?

Microsoft Security | Microsoft Entra | Microsoft Entra ID
0 comments No comments
{count} votes

Accepted answer
  1. Michael Durkan 12,241 Reputation points MVP
    2022-12-23T13:52:50.327+00:00

    Hi

    its likely that your Global Admin has these settings enabled to restrict you from creating new tenants even though you own the MSDN subscription:

    273763-image.png

    They may need to create this on your behalf, or else give you the correct permissions to do this.

    https://techcommunity.microsoft.com/t5/azure-active-directory-identity/tenant-restrictions-now-available-for-azure-ad/td-p/42785

    Hope this helps,

    Thanks

    Michael Durkan

    • If the reply was helpful please upvote and/or accept as answer as this helps others in the community with similar questions. Thanks!

1 additional answer

Sort by: Most helpful
  1. Steffen Gildhoff 21 Reputation points
    2022-12-28T17:59:53.747+00:00

    Hi @Michael Durkan

    Thank you for your feedback, that confirms that even though my user is admin/owner on its own subscription - the user still belongs to a tenant where Tenant Creation has been disabled (it is), which means that as of now I cannot create a new Tenant/Directory.

    0 comments No comments

Your answer

Answers can be marked as Accepted Answers by the question author, which helps users to know the answer solved the author's problem.