Creating Azure ADB2C Customer Policy do not authenticate user

Vikas Prakash Mysore 0 Reputation points
2025-02-06T16:39:32.8833333+00:00

I tried creating Azure AD B2C users using custom policies with the default configuration for all the XML files Save1.jpg Save3.jpg. I was able to successfully create and register a new user, but when I try to authenticate, it says "Invalid username or password."

I am certain that I am entering the correct credentials. The sign-in logs show that authentication was successful, and the password was verified correctly. However, the login screen still displays "Invalid username or password."

Can someone please help me figure out what might be going wrong?

Microsoft Entra ID
Microsoft Entra ID
A Microsoft Entra identity service that provides identity management and access control capabilities. Replaces Azure Active Directory.
23,738 questions
{count} votes

1 answer

Sort by: Most helpful
  1. Harshitha Eligeti 2,080 Reputation points Microsoft External Staff
    2025-02-07T07:42:19.2766667+00:00

    Hi @Vikas Prakash Mysore
    Thank you for reaching out Microsoft Q&A Platform.
    I understand that you are encountering issues with the authentication process in your Azure AD B2C custom policy setup and after registering a new user, when you try to authenticate, it says "Invalid username or password."

    The reason for error 'Invalid username or password' will:

    If the permissions to ProxyIdentityExperienceFramework is not setup correctly

    If this permission is not added, sign-up works but sign-in fails with "Invalid username or password." error and in Azure AD Sign-in Activities, below error is logged:
    image (2)

    Also, check if ProxyIdentityExperienceFrameworkAppId and IdentityExperienceFrameworkAppId are not added to the login-Noninteractive technical profile correctly and their value got interchange by mistake.
    image (3)
    Even after trying above, you are facing the issue. You can use setup tool https://aka.ms/iefsetup to automate the process. You need to delete the proxyief and ief application first you created manually.Also, for B2C applications, you need to select 'Accounts in any identity provider or organizational directory (for authenticating users with user flows) only

    Hope this helps, if you have any further queries do let us know.

    Best Regards,
    Harshitha Eligeti.

    0 comments No comments

Your answer

Answers can be marked as Accepted Answers by the question author, which helps users to know the answer solved the author's problem.