Entra ID Troubleshooting
This section provides workarounds for commonly encountered issues.
Clear browser history after each change
When testing or debugging Entra ID logins from either the ICE Desktop web application or native desktop application, clear all browser history (or reset and clear data) after making any change in the Azure portal.
In Chrome, browse to chrome://settings/privacy, then select Privacy and security in the left-hand navigation bar, then click Clear browsing data and confirm by clicking Clear data.
Once you have attempted to enter your Entra ID credentials in the desktop application, certain metadata about the configuration is stored locally. Changing configuration on Azure may not take effect until the local cache has expired.
Failing to clear data will result in problems. Changes made to the Azure portal will appear to have no effect, and logins will continue failing long after everything else has been configured properly.
No Login with Valid Entra ID Credentials
When logging in on ICE Desktop and entering an Entra username and password, a message appears about signing in before returning you to the ICE login page without any visible errors. This is a symptom of a configuration issue. Attempt the following to correct the issue:

Check the browser console, where you are likely to find an error about an invalid token.

Check the Azure token configuration carefully; verify that the UPN was added as an optional claim with the external access option enabled.

Ensure that
Microsoft Graph does NOT appear in the list of API permissions.