When a user’s sign-in is blocked due to security concerns, suspicious activity, or policy violations, they lose access to Microsoft 365 services like Teams and OneDrive. After verifying the account is secure, admins may need to re-enable the user’s sign-in to restore access and ensure business continuity. Follow the steps below to re-enable the user and quickly restore their access while ensuring your environment stays protected.
Note: To re-enable a disabled user account in Microsoft 365, you must have Global Admin or User Admin privileges.
You can re-enable sign-in–blocked users by selecting them on the Active users page in the Microsoft 365 admin center and clicking Unblock sign-in option. However, only up to 50 users can be selected and unblocked at a time. If more than 50 users need to be unblocked, it must be performed in multiple batches, which is time-consuming and requires additional effort.
To manually re-enable a disabled user account in the Entra admin center, follow the steps below.
- In the Entra admin center, navigate to Entra ID » Users » All users.
- Click on the Add filter option and select Account enabled.
- Under the filter box, you will see a Value toggle set toYes by default. To find disabled users, switch the toggle to No and click ‘Apply’.
- Once the list of disabled users appears, locate and select the user account you want to re-enable.
- In the user’s profile, locate the Account status card and click the Edit link.
- Now, select the Account enabled check box and click Save to re-enable the user account.
Note: If you need to re-enable multiple accounts at once, you can use the New Bulk Edit Users (Preview) feature in Microsoft Entra. This allows you to select and update multiple users simultaneously.
Even though bulk actions are available in the Microsoft Entra admin center, PowerShell offers more flexibility, scale, and automation for updating user accounts. Here’s how to re-enable an account using PowerShell.
- Connect to the Microsoft Graph PowerShell module using the cmdlet below.
Connect-MgGraph -Scopes "User.ReadWrite.All"
- Run the command below to enable the account status of a Microsoft 365 user.
Update-MgUser -UserId "<UserPrincipalName>" -AccountEnabled
#Replace <UserPrincipalName> with the user’s actual UPN.
Quickly enable multiple users with AdminDroid’s management actions!
- With AdminDroid’s management capabilities, you can directly re-enable users from the disabled users report.
- Simply select the users you want to enable, click Enable User, and then click Enable in the dialog box.
- Using AdminDroid’s advanced controls, you can Pause an action, review changes, Undo specific or all operations. Afterwards, you can safely Resume the process without any interruption.