A cloud-based identity and access management service for securing user authentication and resource access
The error “AADSTS5000225: This tenant has been blocked due to inactivity” means the Microsoft Entra/Azure tenant is in an inactive state and sign-in is blocked.
To resolve it, only the tenant’s administrator can act:
- Confirm the tenant is within the 20‑day reactivation window
- When a tenant is made inaccessible due to inactivity, it can only be reactivated for up to 20 days. After 20 days, the tenant is permanently deleted and can’t be recovered.
- Request tenant reactivation from Microsoft
- A tenant administrator must contact Microsoft support using the global support phone numbers: see the link in the documentation under “Contact Microsoft, see the global support phone numbers.”
- Do not open multiple support cases for the same issue; wait for the response on the existing case.
- If the tenant is already deleted
- If more than 20 days have passed since the tenant was blocked, it is deleted and cannot be restored. In that case, a new tenant must be created and used going forward.
If the goal is simply to work in Azure and the blocked tenant cannot be reactivated (for example, it is already deleted), create a new tenant in Microsoft Entra ID and then access Azure Portal using that new tenant’s domain or tenant ID.
References:
- Tenant inaccessible due to inactivity
- 7 Day Old Azure Account: AADSTS5000225: This tenant has been blocked due to inactivity. - Microsoft Q&A
- Error message: AADSTS5000225: This tenant has been blocked due to inactivity. - Microsoft Q&A
- Error message: interaction_required: AADSTS5000225: This tenant has been blocked due to inactivity - Microsoft Q&A