A cloud-based identity and access management service for securing user authentication and resource access
The error AADSTS5000225: This tenant has been blocked due to inactivity means the Microsoft Entra/Azure tenant behind the free account has been put into an inaccessible state due to inactivity.
Key points from the tenant lifecycle behavior:
- When a tenant is marked inactive, sign-ins to that tenant are blocked and this error is expected.
- Administrators can request reactivation only within 20 days of the tenant entering the inactive state.
- If the tenant remains inaccessible for more than 20 days, it is deleted and cannot be recovered.
To proceed:
- If the tenant went inactive less than 20 days ago and the account is (or has) a tenant administrator:
- The tenant administrator must contact Microsoft support using the global support phone numbers listed in the documentation to request reactivation.
- Do not open multiple support cases for the same issue; wait for a decision on the first case.
- If the tenant has been inactive for more than 20 days:
- The tenant is deleted and is not recoverable.
- A new tenant must be created if Azure services are still needed.
- While the tenant is blocked:
- Applications should minimize authentication requests against this tenant until it is reactivated.
If the free account is very recent and should not yet be inactive, still follow the same path: treat this as an inactive tenant and have the tenant admin contact Microsoft support for reactivation within the 20‑day window.
References: