Forum Discussion

techie2021's avatar
techie2021
Copper Contributor
Nov 30, 2021
Solved

Multi-tenant AAD - Need Admin Approval on 2nd tenant

Hi,

 

I have implemented SSO (OAuth2) for Multi-tenant AAD Application. The app permissions donot need admin consent - 

The app is registered on tenant 1 and SSO is working on tenant 1, but tenant 2 show 'Need admin approval' after the user has consented for the permissions.

In tenant 2, User settings under Enterprise applications in Azure portal for 'User can consent to apps accessing company data on their behalf' is enabled.

why is admin approval required even though the permissions donot require admin consent?

 

Please help.

 

Thanks

 

Resources