question

MateuszLeszek-1891 avatar image
0 Votes"
MateuszLeszek-1891 asked JamesTran-MSFT edited

Cannot log in into Azure Portal - Default directory is not available

Due to the end of work with specific project I've lost the access to the directory that is still set up as the default for my portal. when logging to the azure portal it tries to log me into this directory, which obviously fails. The same happens after clearing cache or using new browser. This causes me to be not able to log in to the Azure Portal at all.

azure-ad-authentication
· 4
5 |1600 characters needed characters left characters exceeded

Up to 10 attachments (including images) can be used with a maximum of 3.0 MiB each and 30.0 MiB total.

@MateuszLeszek-1891 Thanks for reaching out. Can you share the screenshot and error details so the right team can assist you.

0 Votes 0 ·

Hi , actually the problem is more complicated. I was able to change my default directory to my main one in aad.portal.azure.com. Yet when logging to the portal, I am asked for the MFA for both the main/default tenant and after succesful authentication, I am asked to authenticate to MFA to the second tenant/directory, for which I am already not authorized.
190283-azureissue.jpg


0 Votes 0 ·
azureissue.jpg (140.2 KiB)

@MateuszLeszek-1891 This is not a Azure Functions related. You have tagged Azure Functions. Can i request you to please remove Azure Functions tag. Thanks.

0 Votes 0 ·

Yeah, I know. I couldn't find apropriate tag while being force to use at least one, I chose at random :-). Sorry for that.

0 Votes 0 ·
MateuszLeszek-1891 avatar image
0 Votes"
MateuszLeszek-1891 answered JamesTran-MSFT commented

The problem is solved.

Problem was that I was a part of tenant that required MFA. My MFA authentication privilege was somehow effectively revoked but I remained a member of the tenant. The tenant was set as a default directory in my Azure Portal. Hence during the login process i was asked to authenticate to the default tenant while out of the reasons above I could not. This prevented me from logging in to portal. I've tried to remove myself from the tenant in https://aad.portal.azure.com/ , but I couldn't due to the lack of MFA authentication :-).

Solution was to call the organisation managing the problematic tenant and ask them to remove me from the tenant.
The prefered solution would be though if you could change the default directory without logging in to portal (azure CLI or https://aad.portal.azure.com/) , or some kind of fallback scenario in case you cannot login to the default directory.

· 1
5 |1600 characters needed characters left characters exceeded

Up to 10 attachments (including images) can be used with a maximum of 3.0 MiB each and 30.0 MiB total.

@MateuszLeszek-1891
I'm glad that you were able to resolve your issue and thank you for posting your solution here so that others experiencing the same thing can easily reference this!

0 Votes 0 ·
JamesTran-MSFT avatar image
0 Votes"
JamesTran-MSFT answered JamesTran-MSFT edited

@MateuszLeszek-1891
I'm glad that you were able to resolve your issue and thank you for posting your solution so that others experiencing the same thing can easily reference this! Since the Microsoft Q&A community has a policy that "The question author cannot accept their own answer. They can only accept answers by others", I'll repost your solution in case you'd like to "Accept" the answer.

Solution:

The problem is solved.

Problem was that I was a part of tenant that required MFA. My MFA authentication privilege was somehow effectively revoked but I remained a member of the tenant. The tenant was set as a default directory in my Azure Portal. Hence during the login process i was asked to authenticate to the default tenant while out of the reasons above I could not. This prevented me from logging in to portal. I've tried to remove myself from the tenant in https://aad.portal.azure.com/ , but I couldn't due to the lack of MFA authentication :-).

Solution was to call the organisation managing the problematic tenant and ask them to remove me from the tenant.
The prefered solution would be though if you could change the default directory without logging in to portal (azure CLI or https://aad.portal.azure.com/) , or some kind of fallback scenario in case you cannot login to the default directory.


Thank you again for your time and patience throughout this issue.


Please remember to "Accept Answer" if any answer/reply helped, so that others in the community facing similar issues can easily find the solution.

5 |1600 characters needed characters left characters exceeded

Up to 10 attachments (including images) can be used with a maximum of 3.0 MiB each and 30.0 MiB total.