Tag not monitored by Microsoft.
Because the phone used for MFA is lost and SMS verification also fails, access must be restored by an administrator or by Microsoft support, depending on how many admins exist in the tenant.
- If there is another global admin in the tenant
- Ask that admin to reset the MFA settings for the affected admin account:
- Sign in to the cloud service portal as admin.
- Go to
https://account.activedirectory.windowsazure.com/usermanagement/multifactorverification.aspx. - Select the affected admin account.
- Select Manage user settings.
- Select Require selected users to provide contact methods again, then Save.
- After this, sign in again; the account will be forced to re-register MFA and can be configured with a new phone or Microsoft Authenticator.
- Ask that admin to reset the MFA settings for the affected admin account:
- If there is no other admin (you are the only global admin)
- This scenario requires Microsoft’s Data Protection team to verify identity and reset the admin’s MFA.
- Call Microsoft’s global customer service phone numbers (see Customer service phone numbers - Microsoft Support in the context) and clearly state:
- The issue is with Microsoft Authenticator / MFA for an Office 365 or Microsoft 365 business/Entra ID admin account.
- It is a company (not education) account.
- You are the administrator and there is no other admin.
- You need a service request with the Data Protection team to reset admin MFA.
- Follow their identity verification steps; once verified, they can clear or reset MFA so the admin can sign in and reconfigure methods.
- If SMS/text MFA is intermittently failing but another method exists
- On the sign-in page, choose Other verification options and select a different method (for example, Microsoft Authenticator, phone call, or another registered method) if previously configured.
- Ensure the phone number and country/region code in the user’s security verification settings are correct; another global admin can verify this in Microsoft Entra ID.
If none of these options are available and no other verification method is configured, only Microsoft support (Data Protection team) can unblock the tenant admin account.
References:
- Can't use Azure Multi-Factor Authentication to sign in to cloud services after you lose your phone or the phone number changes
- You don't receive a text or voice call that contains the verification code for Microsoft Entra multifactor authentication
- "We didn't receive a response" error message when you try to sign in by using Azure Multi-Factor Authentication
- Authentication methods in Microsoft Entra ID - Voice call
- Common problems with two-step verification for a work or school account
- Use a screen reader to set up and troubleshoot multifactor authentication
- Frequently asked questions about Microsoft Entra multifactor authentication
- I need to reset my mfa methods - Microsoft Q&A
- I have a Micrsoft business account and I am the admin and the only user registered under this account. I can't log in because i have replaced my phone and the authenticator doesn't work. - Microsoft Q&A
- Requesting a Tenant Admin MFA Reset - Microsoft Q&A
- Microsoft authenticator sending me into a spiral - Microsoft Q&A