User (Colleague) Invitation Login Failure for CIAM Directory: User invitation link return AADSTS500208: The domain is not a valid login domain for the account type

Jide Kolade 5 Reputation points
2024-04-03T17:26:02.59+00:00

I am the global admin or our tenant and I created a new tenant directory for our app using Microsoft Entra ID for Customers. I'd like to add a colleague from our default tenant to administer the tenant directory of our app. What is the best way to do this? My colleague keep running into the AADSTS500208 error.

For discussion sakes, let's assume that our default tenant domain is contoso.com and the app directory domain is contosoapp.onmicrosoft.com. My colleagues email address is ******@contoso.com. How should I structure the invitation so that he can access/administer the tenant directory of our app?

Microsoft Security | Microsoft Entra | Microsoft Entra External ID
0 comments No comments
{count} votes

1 answer

Sort by: Most helpful
  1. Jide Kolade 5 Reputation points
    2024-04-03T20:03:56.93+00:00

    I assigned "Application Developer" and "User Flow Administrator" privileges to my colleagues account to resolve the issue

    1 person found this answer helpful.

Your answer

Answers can be marked as Accepted Answers by the question author, which helps users to know the answer solved the author's problem.