A cloud-based identity and access management service for securing user authentication and resource access
Tenant-level blocks or lockouts such as this cannot be removed through configuration changes in the portal and must be handled directly by Microsoft support.
For tenant-wide access or security blocks (for example, when a tenant is blocked due to inactivity or when an admin is locked out), the documented resolution path is to work with Microsoft support so that the appropriate internal teams (such as Data Protection or service engineering) can review and unblock the tenant where appropriate. This is not something that moderators or community engineers can perform from forums alone.
Based on the available guidance for similar tenant-level issues:
- The tenant administrator must contact Microsoft support directly (phone or support request) and reference that the tenant’s guest invitation capability has been blocked due to suspicious activity.
- Support will route the case to the appropriate internal team (similar to how Data Protection is engaged for tenant lockout scenarios) to validate the tenant and unblock or adjust the protection as appropriate.
- While the case is in progress, do not open duplicate requests; wait for the decision and follow any verification steps requested by support.
If the current Microsoft 365 support channel is redirecting to Azure support, the tenant administrator should call the global support phone numbers listed for Azure/Microsoft 365 support and request escalation for a tenant-level block, explaining that no paid Azure technical support plan is available but the tenant is effectively restricted by a service-side protection. For other tenant-block scenarios (such as inactivity), this is the documented and supported path to reactivation.
Community moderators on public forums cannot directly unlock a tenant or override these protections; only Microsoft support working with internal engineering can do so after verification.
References: