AADSTS50020: User account ;*********@gmail.com9; from identity provider live.com does not exist in tenant Microsoft; and cannot access the application 405e80fc-f8e6-40e6-b6b9-e5bcc7e6813e&(RedirectionUxProd) in that tenant.

Елена Репина 1 Reputation point
2022-06-15T13:00:03.71+00:00

Request Id: 1a75cb2b-a745-490b-aa47-58e639d15600
Correlation Id: 98701790-1f93-4823-a141-7cb1bbba44e8
Timestamp: 2022-06-15T12:48:43Z
Message: AADSTS50020: User account '**************@Stuff .com' from identity provider 'live.com' does not exist in tenant 'Microsoft' and cannot access the application '405e80fc-f8e6-40e6-b6b9-e5bcc7e6813e'(RedirectionUxProd) in that tenant. The account needs to be added as an external user in the tenant first. Sign out and sign in again with a different Azure Active Directory user account.

Здравствуйте, от партнеров получили ссылку с инструкцией для установки Multi Factor Autentification (MFA), но проблема в том что не можем зайти по их ссылке в учетную запись свою, хотя в портал Azure спокойно заходит с этой учетной записью, так вот не подскажите в чем может быть проблема?

я так понимаю, мне нужно попросить чтобы партнеры добавили мою учетную запись (идентификатор пользователя или почту) к себе, после чего у меня появится доступ????

Microsoft Entra ID
Microsoft Entra ID
A Microsoft Entra identity service that provides identity management and access control capabilities. Replaces Azure Active Directory.
19,619 questions
{count} votes

1 answer

Sort by: Most helpful
  1. Shweta Mathur 27,936 Reputation points Microsoft Employee
    2022-06-15T13:44:09.133+00:00

    Hi @Елена Репина ,

    Thanks for reaching out.

    I understand you are trying to access Azure Active Directory and facing issues.
    This is due to you sign into Microsoft services tenant (f8cdef31-a31e-4b4a-93e4-5f571e91255a) as a standard user with restricted access.

    This error usually occurs when you sign into Azure Portal using your personal account which is not added as an external/guest user to an Azure AD tenant.

    You can ask the global administrator to invite you as a guest user as mentioned here: https://learn.microsoft.com/en-us/azure/active-directory/external-identities/add-users-administrator#add-guest-users-to-the-directory. When you accept the invite sent to you via email and added to tenant, then you can also create your own tenant navigating to https://portal.azure.com/#create/Microsoft.AzureActiveDirectory.

    Once you are added to an azure tenant then you accept the invite sent to you via email, which will provide you the access.

    Hope this will help.

    Thanks,
    Shweta

    --------------------------

    Please remember to "Accept Answer" if answer helped you.

    1 person found this answer helpful.
    0 comments No comments