A cloud-based identity and access management service for securing user authentication and resource access
For error AADSTS5000225: This tenant has been blocked due to inactivity, the tenant has been put into an inactive/blocked state and then either:
- Is still within the 20‑day reactivation window, or
- Has already passed that window and been deleted.
Key behaviors from the platform:
- When a tenant is blocked due to inactivity, sign‑in to that tenant (including portal.azure.com) is blocked.
- Administrators can request reactivation only within 20 days of the tenant entering the inactive state. After 20 days, the tenant is deleted and is not recoverable.
To address the two goals:
- Reactivate the tenant (only if within 20 days)
- A tenant admin must contact Microsoft support directly. Use the global support phone numbers listed in the documentation.
- Do not open multiple support cases for the same tenant; wait for the decision on the first case.
- If the tenant is still in the blocked-but-not-yet-deleted window, the Data Protection/Support team can evaluate reactivation.
- Use the same email address again for a new subscription
- If the tenant has already been in the blocked state for more than 20 days, it is deleted and cannot be recovered.
- Once the old tenant is deleted, the email address can be used to create a new tenant/subscription. There is no self‑service way to “detach” the email from the blocked tenant; the lifecycle is controlled by the inactivity and deletion process.
- If locked out and unsure of the tenant’s status, open a support ticket or call the global support number and work with the Data Protection team. They can:
- Confirm whether the tenant still exists or has been deleted.
- Help reset an admin account or confirm ownership so that the email can be reused in a new or existing tenant.
If portal.azure.com access is blocked, use the standard Microsoft 365/Azure support channels and phone numbers rather than portal-based ticket creation. Identity verification and tenant ownership checks are required; they cannot be bypassed.
References:
- Tenant inaccessible due to inactivity
- Discover your Microsoft cloud footprint FAQ
- Tenant access recovery
- Avoid unused subscriptions
- 7 Day Old Azure Account: AADSTS5000225: This tenant has been blocked due to inactivity. - Microsoft Q&A
- Error message: AADSTS5000225: This tenant has been blocked due to inactivity. - Microsoft Q&A
- Error message: interaction_required: AADSTS5000225: This tenant has been blocked due to inactivity - Microsoft Q&A