Skip to content

Commit c48064a

Browse files
authored
Add troubleshooting for external identities login issues
Added troubleshooting information for external identities encountering login issues due to cross-tenant access restrictions.
1 parent 58da5da commit c48064a

File tree

1 file changed

+12
-0
lines changed

1 file changed

+12
-0
lines changed

support/azure/virtual-desktop/includes/include-troubleshoot-azure-ad-joined-connections-all.md

Lines changed: 12 additions & 0 deletions
Original file line numberDiff line numberDiff line change
@@ -35,3 +35,15 @@ AADNonInteractiveUserSignInLogs
3535
| project ['Time']=(TimeGenerated), UserPrincipalName, AuthenticationRequirement, ['MFA Result']=ResultDescription, Status, ConditionalAccessPolicies, DeviceDetail, ['Virtual Machine IP']=IPAddress, ['Cloud App']=ResourceDisplayName
3636
| order by ['Time'] desc
3737
```
38+
### External Identities are unable to discover resources or login to their Cloud PC
39+
If your Entra ID tenant restricts cross-tenant access and external collaboration settings, you may encounter an error when External Identities attempt to connect.
40+
41+
> Log Name: Microsoft-Windows-AAD, Event ID: 1081, Error Message: OAuth response error: interaction_required, Error description: AADSTS500213: The resource tenant's cross-tenant access policy does not allow this user to access this tenant.
42+
43+
You will need to allow the following applications for external identities to successfully login.
44+
45+
- Azure Virtual Desktop
46+
- Windows Azure Active Directory
47+
- Windows Cloud Login
48+
- Azure Windows VM Sign-In
49+
- Windows 365 (if allocating Windows 365 Cloud PCs)

0 commit comments

Comments
 (0)