How to Fix Error AADSTS90019 in SAML Identity Provider Sign-in
Question details
Users are encountering a sign-in failure with a specific error code indicating missing tenant information during the SAML authentication process.

- Product
- Microsoft Entra ID (SAML SSO)
- Device & OS
- not provided
- Scenario
- Attempting to sign in to an application or service using a SAML-based identity provider integrated with Microsoft Entra ID.
- Observed behavior
- The authentication process fails and displays error AADSTS90019, stating that Microsoft Entra ID cannot find tenant-identifying information in the SAML request or the supplied credentials.
Ensure you have administrative access to both your SAML Identity Provider settings and the Microsoft Entra ID portal to verify the application's single sign-on configuration.
Review and Correct SAML Authentication Settings
Verify that your SAML request includes the correct tenant-identifying information, issuer, and NameID formats.
Error AADSTS90019 primarily occurs when Microsoft Entra ID cannot parse the tenant from the SAML response. You must ensure the Issuer and Audience URIs perfectly match the registered application in Entra ID.
Log in to the Microsoft Entra admin center and navigate to the 'Enterprise applications' section from the left-hand menu.
Use the search bar to locate and click on the application you are configuring for SAML Single Sign-On.
Click on 'Single sign-on' in the application's management menu, then click the edit icon in the 'Basic SAML Configuration' section.
Ensure the 'Identifier (Entity ID)' and 'Reply URL (Assertion Consumer Service URL)' precisely match the configuration values provided by your SAML Identity Provider.
Log in to your SAML Identity Provider portal and update the request parameters to ensure it explicitly includes your Microsoft Entra tenant ID.

Experience Seamless Productivity with WPS Office
While resolving complex Microsoft Entra ID and SAML SSO configurations, you can keep your workflow moving with WPS Office. It is a lightweight, user-friendly, and powerful alternative to Microsoft Office that doesn't require complicated enterprise identity setups.
- 1. Download the Installer: Navigate to the official WPS Office website and click the free download button for your operating system.
- 2. Install WPS Office: Run the setup file and follow the straightforward on-screen prompts to complete the installation.
- 3. Start Creating: Launch WPS Office and immediately begin working on your documents, spreadsheets, or presentations without needing complex SSO sign-ins.

Frequently Asked Questions
What does error AADSTS90019 mean in Microsoft Entra ID?
This error means Microsoft Entra ID is unable to identify the correct tenant from the incoming SAML request or the credentials provided. It usually points to a misconfiguration in the Issuer, Audience, or NameID fields within the SAML assertion.
How do I find my Microsoft Entra tenant ID?
You can locate your tenant ID by logging into the Microsoft Entra admin center, navigating to 'Identity' in the sidebar, selecting 'Overview', and clicking on 'Properties'. Your Tenant ID will be listed there.
Can a standard user fix the AADSTS90019 SSO error?
No, resolving this authentication error requires administrative privileges to modify application settings. A standard user should report the issue to their organization's IT department or network administrator to update the SAML configuration.




