The error interaction_required: AADSTS5000225: This tenant has been blocked due to inactivity means the Microsoft Entra tenant associated with the account has been marked inactive and blocked. After a short period in this blocked state, the tenant is permanently deleted and cannot be recovered.
Key points from the documented behavior:
- Inactive tenants are blocked from sign-in and show AADSTS5000225.
- Administrators have up to 20 days from when the tenant becomes inaccessible to request reactivation.
- After 20 days in the inaccessible state, the tenant is deleted and is not recoverable.
To proceed, follow these steps as tenant administrator:
- Determine whether the tenant is still within the 20‑day reactivation window
- If the tenant has been inactive and blocked for more than 20 days, it is deleted and cannot be restored.
- If it has been less than 20 days since it became inaccessible, reactivation is possible.
- Request tenant reactivation from Microsoft
- As an administrator, contact Microsoft support using the global support phone numbers listed in the documentation.
- Provide the tenant details (tenant ID, domain such as
contoso.onmicrosoft.com, and affected account) and specify that the tenant is blocked due to inactivity with error AADSTS5000225.
- Do not open multiple support cases for the same issue; wait for the decision on the existing case before submitting another request.
- If you do not plan to reactivate the tenant
- No action is required; the tenant will be deleted after 20 days in the inaccessible state and cannot be recovered.
- Review Microsoft’s data protection policies if data retention or deletion is a concern.
If the tenant is already beyond the 20‑day window and deleted, the only option is to work with or create a different tenant and configure services there.
References: