Error details: AADSTS50020

Елена Репина 1 Reputation point
2022-06-13T04:52:25.653+00:00

Дополнительные сведения о вызове для получения токена:
Расширение: Microsoft_Azure_Support.
Ресурс: self
Сведения: The logged in user is not authorized to fetch tokens for extension 'Microsoft_Azure_Support' because the user account is not a member of tenant 'f8cdef31-a31e-4b4a-93e4-5f571e91255a'. Error details: AADSTS50020: User account '{EmailHidden}' from identity provider 'live.com' does not exist in tenant 'Microsoft Services' and cannot access the application 'c44b4083-3bb0-49c1-b47d-974e53cbdf3c'(Azure Portal) in that tenant. The account needs to be added as an external user in the tenant first. Sign out and sign in again with a different Azure Active Directory user account.
Trace ID: 6e4a495f-74e5-4c97-8276-7e5ca94b7b00
Correlation ID: fa374845-9e1b-4cef-a270-1ebd7bf3dbfe
Timestamp: 2022-06-13 04:13:21Z

Message: AADSTS90072: User account 'elenarepina@Stuff .com' from identity provider 'live.com' does not exist in tenant 'Microsoft Services' and cannot access the application '0000000c-0000-0000-c000-000000000000'(Microsoft App Access Panel) in that tenant. The account needs to be added as an external user in the tenant first. Sign out and sign in again with a different Azure Active Directory user account

Здравствуйте, к сожаление не получается войти в учетную запись для получения некоторых возможностей, не могли бы оказать помощь в этом?

Microsoft Security | Microsoft Entra | Microsoft Entra ID
{count} votes

1 answer

Sort by: Most helpful
  1. Shweta Mathur 30,296 Reputation points Microsoft Employee Moderator
    2022-06-13T06:52:08.567+00:00

    Hi @Елена Репина ,

    Thanks for reaching out.

    I understand that you are facing issue while access Azure resources with your account as you sign in in Microsoft Services tenant as a standard user with restricted access.

    This error usually occurs when you sign into Azure Portal using your personal account which is not added as an external/guest user to an Azure AD tenant.

    You can ask the global administrator to invite you as a guest user as mentioned here: https://learn.microsoft.com/en-us/azure/active-directory/external-identities/add-users-administrator#add-guest-users-to-the-directory.

    Once you are added to an azure tenant then you accept the invite sent to you via email, then you can also create your own tenant to have administrative access to perform all actions.

    Alternatively, if you want to perform administrative actions, you must have administrative access to the tenant, for which you need to create your own tenant rather than using the Microsoft Services tenant.
    When you create a new tenant, you by default become the Global Administrator of the new tenant and have full access to all the options in that tenant.
    To create a new tenant, open in-private/incognito browser window, access https://azure.microsoft.com/en-us/free/ to create a free Azure account.

    Once the new account is created, you should be able to see and switch to the new tenant by clicking on the settings icon as highlighted below:

    210732-settings.png

    Hope this will help.

    Thanks,
    Shweta

    ------------------------------------

    Please remember to "Accept Answer" if answer helped you.

    0 comments No comments

Your answer

Answers can be marked as Accepted Answers by the question author, which helps users to know the answer solved the author's problem.