使用Microsoft Graph OAuth2.0授权时无邮箱登录报错AADSTS500202
关于Microsoft Graph OAuth流程中无邮箱输入登录方式的授权失败问题
我按照Microsoft Graph OAuth相关文档实现OAuth授权流程,使用的授权URL如下:
https://login.microsoftonline.com/common/oauth2/v2.0/authorize?client_id=d8e21783-5956-4bef-80ae-fdd636006223&prompt=login&response_type=code&response_mode=query&redirect_uri=xxxxx&scope=offline_access+user.read+files.readwrite.all&state=xxxxx
登录页面提供两种登录方式:
- 输入邮箱地址登录
- 无需输入邮箱地址登录
两种方式均支持「Windows Hello Face」和「Security Key」无密码登录,但选择第二种无需输入邮箱的方式时,授权请求失败,报错信息如下:
AADSTS500202: User account from external identity provider 'live.com' is not supported for API version '2.0'.
请问这是否意味着Microsoft Graph OAuth流程不支持第二种登录方式?
补充说明:旧版MSA OAuth授权流程支持第二种登录方式,其授权URL格式如下:
GET https://login.live.com/oauth20_authorize.srf?client_id={client_id}&scope={scope} &response_type=token&redirect_uri={redirect_uri}
内容的提问来源于stack exchange,提问作者Wen Hsiao
相关产品推荐
相关产品推荐

