Share via

Tenant lockout – only Global Admin lost MFA device (Authenticator)

Chantal Ferro 0 Reputation points
2026-02-26T12:07:29.2633333+00:00
* I am the only Global Administrator in our Microsoft Entra (Azure AD) tenant.
* MFA is required and the only registered method was Microsoft Authenticator on a lost/reset phone.
* I cannot sign in to Entra/Azure/M365 admin portals to reset security info.
* Request: Please escalate to Microsoft Support Data Protection to verify ownership and reset MFA registration.

Public (non-PII) details:

* Tenant primary domain: example.com
* Tenant region/country: [your country]
* I can provide the affected Global Admin UPN and contact details via private message.

Moved from: Microsoft 365 and Office | Subscription, account, billing | For business | Other

Microsoft Security | Microsoft Authenticator
0 comments No comments
{count} votes

1 answer

Sort by: Most helpful
  1. JimmySalian-2011 45,231 Reputation points
    2026-02-28T19:57:19.7466667+00:00

    Hi Chantal,

    In this case you need to call up the support desk and provide the identity proof as the Data Identification team will cross check the details you provide with the account - https://support.microsoft.com/en-us/topic/global-customer-service-phone-numbers-c0389ade-5640-e588-8b0e-28de8afeb3f2

    Hope this helps.

    JS

    ==

    Please accept as answer and do a Thumbs-up to upvote this response if you are satisfied with the community help. Your upvote will be beneficial for the community users facing similar issues.

    0 comments No comments

Your answer

Answers can be marked as 'Accepted' by the question author and 'Recommended' by moderators, which helps users know the answer solved the author's problem.