Microsoft Social Account Users Login Through Azure AD Enterprise Connection
Feb 20, 2026
Overview
This article explains how to configure a single Azure Active Directory (Azure AD) enterprise connection to allow users from multiple different Azure AD domains to authenticate, instead of using a Microsoft Account Social connection.
Applies To
- Social Connection
- Azure Active Directory
Solution
While users from Azure will not be able to log in through the Social connection with Microsoft, the recommendation here is to use the Azure AD connection, but with the following options:
- Turn on the Use common endpoint option in the Azure AD connection on the Auth0 dashboard.
- In the Azure AD portal, go to the related App Registration, and under the Authentication view, choose Accounts in any organizational directory (Any Azure AD directory - Multitenant) for Supported Account Types.
NOTE: The tenant must be type Entra ID, not External Entra ID, to support both types of accounts for login in Microsoft(Personal & Work/School).