Share via

Access Azure

João B. Corsini 0 Reputation points
2026-05-16T18:33:19.2433333+00:00

Sign-in failed

Error code: interaction_required Error message: interaction_required: AADSTS5000225: This tenant has been blocked due to inactivity

Microsoft Security | Microsoft Entra | Microsoft Entra ID
0 comments No comments

1 answer

Sort by: Most helpful
  1. Q&A Assist
    2026-05-16T18:33:29.59+00:00
    AI generated content. This question contains an answer created with AI from Q&A Assist. Learn more

    The error interaction_required: AADSTS5000225: This tenant has been blocked due to inactivity means the Microsoft Entra tenant is in an inactive, blocked state and sign-in to Azure is no longer allowed.

    Key points from the error and behavior:

    • Inactive tenants are blocked from sign-in and can show interaction_required with AADSTS5000225.
    • After a tenant is marked inactive, there is a limited window (20 days) during which it can be reactivated.
    • After 20 days in this blocked state, the tenant is permanently deleted and cannot be recovered.

    To proceed, the following applies:

    1. If access to this tenant is still needed and it has been blocked for less than 20 days:
      • A tenant administrator must contact Microsoft support to request reactivation. Use the global support phone numbers listed in the documentation.
      • Do not open multiple support requests for the same issue; wait for the decision on the existing case.
    2. If the tenant has been blocked for more than 20 days:
      • The tenant is deleted and cannot be restored.
      • Review Microsoft’s data protection policies for details on data handling and deletion.
    3. For application owners or developers targeting this tenant:
      • Minimize authentication requests to the blocked tenant until it is reactivated.
      • Do not submit additional assistance requests; Microsoft will respond once a decision is made.

    If the tenant cannot be reactivated (for example, because it has already been deleted), a new tenant must be created and configured, and any workloads or training scenarios must be set up against that new tenant.


    References:

    Was this answer helpful?

Your answer

Answers can be marked as 'Accepted' by the question author and 'Recommended' by moderators, which helps users know the answer solved the author's problem.