Azure Sign-in failed
Using my MSFT account I tried to login to the Azure Portal. After authenticating using user/password plus a push notification to my MSFT authenticator on my phone, the following error message appears: Sign-in failed Error code: AADSTS5000224 Error…
Microsoft Security | Microsoft Authenticator

Automating Alerts for Azure Front Door Custom Domains(Apex) in Pending Revalidation State
Alert Configuration: I would like to set up alerts to notify me whenever a custom domain (apex) in Azure Front Door transitions to the pending revalidation state. Could you please provide me with the necessary steps to configure such alerts?
Azure Front Door
Microsoft Security | Microsoft Graph
Request for SCCM 2309 Baseline Media or Support Regarding MP 404 Issue in 2403/2503
To Microsoft Support Team, We are currently encountering a persistent issue related to the installation of the Management Point (MP) role in SCCM version 2403 and 2503, specifically: After a clean installation, the MP fails to function properly. The…
Microsoft Security | Intune | Configuration Manager | Deployment
Custom sign up process that prepopulates based on query params/body/token
Hi, We have a SaaS app and want to be able to send users a link to sign up that contains which customer they are from. The ideal process would be: Create a link with either query params or a JSON body or a token (like id_token_hint), which is a key…
Microsoft Security | Microsoft Entra | Microsoft Entra External ID
Conditional Access stating a Compliant iOS Device is Not-Compliant and blocking sign-in for iOS LastPass App.
Sign-In logs show the user is using a non-compliant device, however the device IS compliant. Sign-in log is also void of the Device ID in this specific log, so it's as if after signing in to the phone app that is SSO'd the deny message says they must use…
Microsoft Security | Intune | Application management
Microsoft Security | Microsoft Entra | Microsoft Entra ID
DLP policy tip not working with mail Attachment
Hi, I have created a DLP policy to detect sensitive information on exchange and then apply policy tip on the mail. This is working fine with the mail body but when I add any attachment with sensitive data then it is not able to detect it. The issue is…
Microsoft Security | Microsoft Purview
microsoft authenticator on my new phone without my old one
Hi, My old phone is broken and I can't turn it on anymore, luckily I could get most of my data out of my Apple ID/Icloud. but not my authenticator, I can't access my school account but I do really need it to get by. please help me
Microsoft Security | Microsoft Authenticator
Can't add work profile in Microsoft Intune Company Portal
Unable to create a work profile - We were unable to set up your work profile. If the problem persists, contact your support person because your device might not support work profile creation." this happens in Samsung S24/23 mobile please guide
Microsoft Security | Intune | Enrollment
Disabling the owner of an Entra joined device removes it from Intune
When an Entra user is disabled, not deleted, the assigned device is removed from Intune. When this happens, the only options I see are local password and face login for that particular user, effectively making the machine unusable. I also cannot wipe or…
Microsoft Security | Intune | Configuration
Microsoft Extra ID:Need admin approval
I want to do the integration for Azure AD(Microsoft Entra ID) for our software system. The request…
Microsoft Security | Microsoft Entra | Microsoft Entra ID
Issues with adding guest users; they are unable to accept the guest invitation and receive the following
Issues with adding guest users; they are unable to accept the guest invitation and receive the following error message: "This username might be incorrect. Make sure you typed it correctly. Otherwise, contact your administrator." We have tried…
Microsoft Security | Microsoft Entra | Microsoft Entra External ID
How do I programmatically get Configuration policies for all policy types?
In the Microsoft Intune Admin Center, I can see the Configuration policies for my devices. I want to pull that information programmatically from a Power Automate Flow using Microsoft Graph (and a Service Principal). However, on the Configuration page in…
Microsoft Security | Intune | Configuration

SSPR on premise AD, password writeback licensing questions.
We have an on premise AD syncing with Entra\Azure. Would like to enable SSPR for the tenent. Need information on licensing for SSPR. We have a mix of office E3 and E1 licenses for our users. What licenses do we need to have to allow users to use…
Microsoft Security | Microsoft Entra | Microsoft Entra ID
On an Entra cloud native device, any groups that populate the local administrators or other local groups appear as unknown SIDs rather than resolving the name.
Issue: When utilizing on-prem Active Directory, local administrator groups populated from the domain resolved the name to the SID so that a support admin user could easily know that the correct groups were provided admin access. On an Entra cloud native…
Microsoft Security | Microsoft Entra | Microsoft Entra ID
Graph Connectors: How to Set externalItem ACL in Practice
https://learn.microsoft.com/en-us/graph/connecting-external-content-manage-items#access-control-list https://learn.microsoft.com/en-us/graph/api/resources/externalconnectors-acl?view=graph-rest-1.0 The two documents above briefly introduce how to set…
Microsoft Security | Microsoft Graph
How is the Enterprise Application List in Azure created? I notice a number of apps on my devcies do not appear
I am looking at the Enterprise Applications report in Azure and a number of applications that are installed on devices do not appear, why is that and how do I get them to?
Microsoft Security | Microsoft Entra | Microsoft Entra ID
When Creating a Custom role how long does it take until I am able to assign it?
Hey, so basically I have a PS script that creates a custom role than it tries to assign it to mgmt group/subscription, I have encountered the issue that after I created the role and trying to assign it returns an error that the role does not exist. …
Microsoft Security | Microsoft Entra | Microsoft Entra ID
New phone, Authenticator not working
After I bought a new phone the numbers on the authenticator app is not showing. I’m still logged in. But when I try to identify myself the numbers never show. What to do????
Microsoft Security | Microsoft Authenticator
Can't verify domain after adding TXT record on AWS Route 53
I'm trying to verify a custom domain in Microsoft Entra ID (Azure AD). I added the required TXT record to AWS Route 53 for the domain, using the exact values provided in the Azure portal. Record: Type: TXT Name: @ Value: MS=ms######## (from…
Microsoft Security | Microsoft Entra | Microsoft Entra ID
The service principal for resource '{identifier}' is disabled.
I'm getting this error message when I try to login to MS office "The service principal for resource '{identifier}' is disabled. This indicate that a subscription within the tenant has lapsed, or that the administrator for this tenant has disabled…