Why am I seeing a Service Principal - Azure Token Access Failure 400 error?
book
Article ID: 283874
calendar_today
Updated On:
Products
CloudHealth
Issue/Introduction
If the associated Enterprise Application for a Service Principal has the setting "Enabled for users to sign-in" option set to No under Properties this will block integration between the platform and the Service Principal.
Resolution
To determine if this is the case perform the following:
Navigate to Azure Portal -> Azure AD -> App Registrations -> Locate the Service Principal
Within the Overview section for the App Registration have them drill into the Enterprise Application associated with the App registration found under the Managed Application in Local Directory section.
From the Enterprise Application then have them Navigate to Properties, this will contain the "Enabled for users to sign-in" option have them verify this is set to "Yes" If it is set to 'No" this will block integration between the platform and the Service Principal.