Thank you for posting this in Microsoft Q&A.
I understand you are encountering an error (AADSTS700016) when trying to sign in to an Azure app after converting it to multi-tenant.
The App ID URI for single tenant apps can be globally unique within that tenant. In contrast, for multitenant apps it must be globally unique across all tenants, which ensures that Microsoft Entra ID can find the app across all tenants. For example, if the name of your tenant was contoso.onmicrosoft.com
then a valid App ID URI would be https://contoso.onmicrosoft.com/myapp
.
Based on the information you provided, it seems that you are correct in changing the App URI id. Can you please check if you are passing valid parameters? Make sure you are using the Application ID
as the client ID
. Could you please share an HTTP request with me? It would be helpful to understand the issue better.
Meanwhile Can you check below steps to convert single-tenant app to multitenant on Microsoft Entra ID.
- Update your application registration to be multitenant
- Update your code to send requests to the
/common
endpoint - Update your code to handle multiple issuer values
- Understand user and admin consent and make appropriate code changes
For your reference: https://learn.microsoft.com/en-us/entra/identity-platform/howto-convert-app-to-be-multi-tenant#update-your-code-to-handle-multiple-issuer-values
Hope this helps. Do let us know if you any further queries.
Thanks,
Navya.
If the answer is helpful, please click "Accept Answer" and kindly upvote it.