Azure Portal forces 6‑digit MFA and I cannot access my subscription (personal account treated as work account)

Michael Ma 30 Reputation points
2026-03-24T23:21:20.2566667+00:00

I’m unable to sign in to the Azure Portal using my personal Microsoft account. Azure keeps forcing a work/school sign‑in and asks for a 6‑digit Authenticator code, but my personal account only uses the 8‑digit code. This creates an endless MFA loop where I can’t log in, can’t switch directories, and can’t open a support ticket from the portal.

I can sign in to all other Microsoft services normally. Only Azure routes my personal account into the wrong authentication flow, possibly because it was accidentally associated with an Azure AD tenant.

Request: How can I get my personal Microsoft account detached from any Azure AD directories so Azure stops treating it like a work account? I just want to restore normal consumer‑account login and access my Azure subscription.

Thanks! @Anonymous

Microsoft Security | Microsoft Entra | Microsoft Entra ID
0 comments No comments

Answer accepted by question author
Raja Pothuraju 47,825 Reputation points Microsoft Employee Moderator
2026-03-25T05:49:42.8466667+00:00

Hello Michael Ma,

As discussed over chat, you were able to log in to your Azure tenant at admin.cloud.microsoft.com. To reset your MFA, we created a new user with Global Administrator rights. Using this new account to log in to the Azure Portal, we successfully reset the MFA for your personal account, which had been added as a guest account in the tenant.

Below are the steps we followed to reset the MFA:

  1. Sign in to the Microsoft Entra admin center.
  2. Navigate to Identity > Users > All users.
  3. Select the affected user, then choose Authentication methods.
  4. At the top of the window, click on "Require re-register MFA".

Screenshot of manage authentication methods from the Microsoft Entra admin center.

After this is done, you should be able to sign in again and register a new MFA authentication method when prompted.

Was this answer helpful?

0 comments No comments

2 additional answers

Sort by: Oldest
  1. AI answer

    2026-03-24T23:21:45.11+00:00

    The personal Microsoft account is almost certainly a guest or member in an Azure AD (Microsoft Entra ID) tenant and has an Azure MFA profile there that is misconfigured (tenant expects 6‑digit codes, Authenticator is issuing 8‑digit codes). This causes the wrong MFA flow and blocks access.

    From the available information, the working pattern to fix this is:

    1. Sign in to the affected tenant with another account that has Global Administrator rights.
    2. Use that admin account to reset MFA for the personal account in the tenant.
    3. After MFA is reset, sign in again with the personal account and complete a fresh MFA registration so the correct method is used.

    Concretely, the admin in that tenant must:

    1. Go to the Microsoft Entra admin center.
    2. Navigate to Identity → Users → All users.
    3. Select the affected personal account (which appears as a guest or member user).
    4. Open Authentication methods for that user.
    5. Select Require re‑register MFA.

    After this, the next sign‑in of the personal account to Azure will prompt for MFA registration again, allowing configuration of a compatible method and breaking the loop.

    If there is no other Global Administrator in the tenant (or the only admin is locked out), this becomes a tenant lockout scenario. In that case, a support ticket with Microsoft is required so the Data Protection team can reset MFA or restore access, as described for similar lockout cases in the context.

    If the tenant itself is blocked or inaccessible (for example, due to inactivity), the tenant administrator must contact Microsoft using the global support phone numbers to request reactivation before MFA or directory membership can be corrected.

    Once MFA is reset and access is restored, the personal account can either:

    • Remain as a guest in the tenant with a working MFA configuration, or
    • Be removed from that tenant by an admin if it is no longer needed, so Azure no longer routes sign‑in through that directory.

    References:

    AI-generated content may be incorrect. Read our transparency notes for more information.

    Was this answer helpful?

  2. Kenny Yang 0 Reputation points
    2026-06-04T06:25:01.76+00:00

    I have the same issue. Where can I find support to reset the Azure MFA?

    Was this answer helpful?

    0 comments No comments

Your answer

Answers can be marked as 'Accepted' by the question author and 'Recommended' by moderators, which helps users know the answer solved the author's problem.