No sign-in logs in AD B2C yet users do sign-in

Jan Mwesigwa 1 Reputation point
2022-06-15T08:47:09.247+00:00

Hi there,

our users sign-in into the AD B2C with single-sign-on via a custom identity providers. It works well, however, when I look in the sign-in logs, I see no entries.

Steps to reproduce:

  • Create identity provider with openID
  • Create a user flow and set custom identity provider created in previous step
  • Have user sign-in with the custom identity provider
  • Go to Azure AD B2C > All users > Sign-in logs ... or on the user's card click "sign-ins" ... the log is empty. Tried to switch interactive/non-interactive, date range etc.

Sign-ins for my own account show correctly.

Additional info:

  1. user ids are fetched from the federated accounts (openID)
  2. sign-in is done in a React single-page-application using MSAL v2 + an app registered under B2C handles the tokens
  3. No VPN solution in place

Below is an overview of a user that signed-up-in via the custom identity provider but its sign-in logs are empty.

What could be wrong?

211579-screenshot-2022-06-15-at-103242.png

Microsoft Security | Microsoft Entra | Microsoft Entra ID
0 comments No comments
{count} votes

2 answers

Sort by: Most helpful
  1. emira ayed 0 Reputation points
    2024-10-29T11:30:55.64+00:00

    check : Block sign-in : YES

    and location not spécified

    0 comments No comments

  2. Ashish Kumar Gupta 1 Reputation point
    2022-06-15T09:08:05.79+00:00

    Few questions and suggestions

    1. Where are these ids located.
    2. How are they trying to login ( VDI / Application / on prem app servers etc)
    3. Do you have a vpn solution in place which is being utilized.
    4. Try finding user here https://protection.office.com/homepage
    5. Sign in using your work or school account. In the left pane of the Security & Compliance Center, click Search, and then click Audit log search.
    6. check you Azure tenant and confirmed that "Microsoft Authenticator passwordless sign-in" method is not enabled (Azure Active Directory > Security > Authentication Methods).

Your answer

Answers can be marked as 'Accepted' by the question author and 'Recommended' by moderators, which helps users know the answer solved the author's problem.