User with guest account cannot log in after iPhone upgrade

AK Marty 0 Reputation points
2025-05-01T15:09:20.38+00:00

My consultant Stuart Malone <xxxxxxxxx> has not been able to log in to my Azure Portal since upgrading his iPhone. He has a guest account under the address xxxxxxxxx.onmicrosoft.com.

We performed a 2FA reset and his new iPhone now lists his guest account in Microsoft Authenticator. However, every time he logs in to the portal, even from a private browser window and using the full #EXT# email address, he is redirected to his work account under xxxxxxxxxx instead of the guest account in my Azure Portal.

How can he regain access to his guest account.

You can contact him directly at XXXXXXXX.com or YYYYYYY.

Microsoft Entra External ID
Microsoft Entra External ID
A modern identity solution for securing access to customer, citizen and partner-facing apps and services. It is the converged platform of Azure AD External Identities B2B and B2C. Replaces Azure Active Directory External Identities.
3,175 questions
{count} votes

1 answer

Sort by: Most helpful
  1. Surya Prakash Kotte 895 Reputation points Microsoft External Staff Moderator
    2025-05-02T10:14:56.2233333+00:00

    Hello AK Marty,

    Based upon your query you want to regain the guest account access.

    To help a guest user with access to your Azure Portal, ask them to go to https://portal.azure.com/yourtenant.onmicrosoft.com (replace "yourtenant" with your actual tenant name). They should log in using their full guest email in this format: user_domain.com#EXT#yourtenant.onmicrosoft.com@user_domain.com.

    This will ensure they log into your tenant, not their own. They should use a private or incognito browser window and clear any cookies or saved sessions before logging in.

    Once logged in, ask the user to click on their profile in the top-right corner and select "Switch Directory" to switch to your tenant if needed.

    If the guest account still doesn’t appear or they’re having trouble accessing, check Azure Active Directory under "Users" to confirm that the guest account is present and not blocked.

    If necessary, you can remove and re-invite the guest through the "Invite user" feature in Azure AD. Ask the guest user to accept the invitation using a private browser and set up their MFA again using the Microsoft Authenticator app.

    I hope this information is helpful. Please feel free to reach out if you have any further questions.

    0 comments No comments

Your answer

Answers can be marked as Accepted Answers by the question author, which helps users to know the answer solved the author's problem.