Enable Custom Policies - Remove B2CBasicPoliciesOnly Restriction

Beulah 0 Reputation points
2025-12-10T05:25:43.37+00:00

Hello,

I need help enabling custom policies in our Azure AD B2C tenant.

Tenant: radardefault.onmicrosoft.com

Tenant ID: f3f74bf1-3ae7-4ad8-84c6-479d2767ca75

ISSUE:

When uploading custom policies, I receive this error:

"Policy 'B2C_1A_TrustFrameworkBase_Passwordless' is not allowed to inherit

from the specified base policy. Reason: blocked by 'B2CBasicPoliciesOnly'

constraint handler."

REQUEST:

Please remove the B2CBasicPoliciesOnly restriction from our tenant so we

can use custom policies for passwordless authentication.

BUSINESS NEED:

We're implementing passwordless authentication (email OTP) for our

production application and require custom policies.

Thank you!

Microsoft Security | Microsoft Entra | Microsoft Entra ID
0 comments No comments
{count} votes

1 answer

Sort by: Most helpful
  1. Q&A Assist
    2025-12-10T05:25:51.14+00:00
    AI generated content. This question contains an answer created with AI from Q&A Assist. Learn more

    To enable custom policies in your Azure AD B2C tenant and remove the B2CBasicPoliciesOnly restriction, you will need to ensure that your tenant is configured to support custom policies. This restriction typically indicates that the tenant is currently set to only allow basic policies.

    Unfortunately, I cannot directly remove the B2CBasicPoliciesOnly restriction for you, as this is a configuration that must be managed through the Azure portal or by contacting Microsoft support for assistance. Here are some steps you can take:

    1. Check Tenant Settings: Ensure that your Azure AD B2C tenant is set up to allow custom policies. You may need to switch to a different policy configuration in the Azure portal.
    2. Contact Support: If you are unable to change this setting yourself, consider reaching out to Microsoft support for assistance in removing the restriction.
    3. Documentation Review: Review the Azure AD B2C documentation for any prerequisites or steps needed to enable custom policies in your specific tenant configuration.

    Implementing custom policies for passwordless authentication will require that your tenant settings allow for such configurations.


    References:

    0 comments No comments

Your answer

Answers can be marked as 'Accepted' by the question author and 'Recommended' by moderators, which helps users know the answer solved the author's problem.