Share via

Live. com error message

Judy Piercy 0 Reputation points
2025-10-24T18:51:28.98+00:00

I am trying to sign on to a website I have used for over 2 years. A warning comes us about live.com and the tennant not being listed.

Message: AADSTS50020: User account '******@aol.com' from identity provider 'live.com' does not exist in tenant 'Tarrant Area Food Bank' and cannot access the application '00000003-0000-0ff1-ce00-000000000000'(Office 365 SharePoint Online) in that tenant. The account needs to be added as an external user in the tenant first. Sign out and sign in again with a different Azure Active Directory user account.

Microsoft Security | Microsoft Identity Manager
0 comments No comments

1 answer

Sort by: Most helpful
  1. Anonymous
    2025-10-27T03:30:11.1033333+00:00

    Hello Judy Piercy,

    Welcome to Microsoft Q&A Platform. Thank you for reaching out & hope you are doing well. 

    The error message you're seeing, typically means the user is trying to access a Microsoft 365 resource (like SharePoint Online) using an identity that doesn't belong to your organization's Azure Active Directory (AAD) tenant.

    This usually happens when:

    • The user is signed in with a personal Microsoft account (MSA) instead of their work account.
    • The user isn't properly added as a guest/external user to your Azure AD tenant.

    I will recommend some solutions to try below as:

    The User's Solution (Immediate Workaround):

    Try a clean sign-in session first:

    • Clear Caching: Fully sign out of all Microsoft services in your current browser.
    • Use Private Mode: Open the website link in a Private (InPrivate/Incognito) browser window. This ensures no existing cookies or cached credentials interfere with the sign-in process.

    Check App Registration Settings:

    Use Correct Endpoint:

    • For multi-tenant apps: https://login.microsoftonline.com/common/oauth2/v2.0/authorize.
    • For single tenant: https://login.microsoftonline.com/{TenantID}.

    The Administrator's Solution if the above did not work out: If you are the Global administrator of the account 'Tarrant Area Food Bank' Microsoft Entra ID tenant perform these below steps like (otherwise ask your administrator to perform these steps):

    Invite the User as a Guest: The administrator must explicitly invite the user's personal email address (******@aol.com) to their Microsoft Entra ID tenant as a Guest User.

    Please do follow this guide to add it: Quickstart: Add a guest user and send an invitation - Microsoft Entra External ID | Microsoft Learn.

    Once the administrator has successfully invited the user:

    1. The user will receive an email invitation to their ******@aol.com address.
    2. The user must click the link in the invitation email to accept the invitation.
    3. After accepting, the user should be able to sign in successfully using their ******@aol.com (live.com) account.

    Please do refer these documents for better understanding:

    ​Hope this helps! If it answered your question, please consider clicking Accept Answer and Upvote👍 for it. This will help us and others in the community as well. If you need more info, feel free to ask in the comments. Happy to help!

    Thank you for helping to improve Microsoft Q&A!

    Regards,

    Monalisha

    Was this answer helpful?


Your answer

Answers can be marked as 'Accepted' by the question author and 'Recommended' by moderators, which helps users know the answer solved the author's problem.