A cloud-based identity and access management service for securing user authentication and resource access
The error AADSTS5000225: This tenant has been blocked due to inactivity means the Microsoft Entra ID (Azure AD) tenant that the Azure portal is trying to use is in an inactive, blocked state.
Use the following steps depending on how long the tenant has been inactive and what access is needed.
- Try accessing the correct tenant directly
- If the tenant ID or tenant name is known, open the Azure portal with a tenant-specific URL, for example:
-
https://portal.azure.com/<TenantId> - or
https://portal.azure.com/<yourTenantName>.onmicrosoft.com
-
- If the browser is holding on to an old session, sign out of all Microsoft accounts and clear browser site data, then sign in again and retry the tenant-specific URL.
- If the tenant ID or tenant name is known, open the Azure portal with a tenant-specific URL, for example:
- Confirm whether the tenant is only blocked or already deleted
- Tenants blocked due to inactivity can be reactivated only within 20 days of entering the inactive state.
- After 20 days in this blocked state, the tenant is deleted and cannot be recovered.
- Request reactivation if within 20 days
- If the tenant has been blocked for less than 20 days, an administrator must contact Microsoft support to request reactivation.
- Use the global customer service phone numbers to open a support case and provide the tenant details and error code.
- Do not submit multiple assistance requests for the same tenant; wait for the decision on the existing case.
- If locked out or unsure which tenant is active
- If access to the tenant is completely lost or it is unclear which tenant is associated with the account, open a support ticket via the Data Protection Team using the global support phone numbers.
- The Data Protection Team can help:
- Reset credentials of an administrator account.
- Help claim or regain access to a tenant owned by the organization.
- If the tenant is already deleted
- If the tenant has been blocked for more than 20 days and is deleted, it cannot be recovered.
- In that case, create a new tenant (for example, by creating a new Azure account/tenant) and use that tenant for Azure access going forward.
- If the account still has an active free offer but the portal is blocked
- In some cases, going to the Azure signup page (
https://signup.azure.com) in a private/incognito browser session and signing in with the same account can surface an option to continue or upgrade an existing free account, which then unblocks access. - Ensure all browser data is cleared or use an in-private session so that the correct account and tenant are used.
- In some cases, going to the Azure signup page (
If the tenant is confirmed as blocked due to inactivity and within the 20‑day window, contacting Microsoft support (global customer service phone numbers) as the tenant administrator is the required path to reactivate it.
References:
- Tenant inaccessible due to inactivity
- Discover your Microsoft cloud footprint FAQ
- 7 Day Old Azure Account: AADSTS5000225: This tenant has been blocked due to inactivity. - Microsoft Q&A
- Error message: AADSTS5000225: This tenant has been blocked due to inactivity. - Microsoft Q&A
- Error message: interaction_required: AADSTS5000225: This tenant has been blocked due to inactivity - Microsoft Q&A
- Tenant inaccessible due to inactivity - Microsoft Q&A
- Can not access Azure - Microsoft Q&A