Forum Discussion

alex's avatar
alex
Helper I
8 years ago
Solved

access_denied: AADSTS65005: The application 'Microsoft Power Query for Excel' asked for scope 'user_

EDIT: this seems to be an O365 issue, I'm also having this problem.....

 

 

I have a user that's getting the below error when trying to run a Power Query refresh to pull data from a shared mailbox on Exchange Office 365.

 

Googling gives me this but it doesn't make any sense to me:

https://support.microsoft.com/en-us/help/3124219/aadsts65005-error-when-you-try-to-sign-in-to-microsoft-cloud-services

 

(the query works fine for me and a number of other users)

 

access_denied: AADSTS65005: The application 'Microsoft Power Query for Excel' asked for scope 'user_impersonation' that doesn't exist on the resource. Contact the app vendor.

 

Any ideas?

Thanks,

Alex

  • Anonymous's avatar
    Anonymous
    8 years ago

    RedAngle alex Anonymous sysadm01 Frelis69,

    I got response from PG:

    "this issue has been mitigated by the O365 team by relaxing their login restrictions."

    Regards,
    Lydia

20 Replies

    • RedAngle's avatar
      RedAngle
      Frequent Visitor

      I have been having the same issue since yesterday - can't seem to find anything useful online.

       

      If this were something that we could control, I would expect the error to say that the action is not permitted rather than reporting that the scope is unavailable. It almost feels like a feature in Azure AD or Office 365 has been removed!

       

      I have logged a support request with the Azure AD team so will see what they say.

       

      • RedAngle's avatar
        RedAngle
        Frequent Visitor

        Update - when I look at the Azure AD admin portal, I can see an authentication failure when I try to connect to the Office 365 mailbox from Power BI. The source application is 'Microsoft Power Query for Excel' (as expected).

         

        The failure reason is listed as:

        The application required resource access list does not contain applications discoverable by the resource or The client application has requested access to resource, which was not specified in its required resource access list or Graph service returned bad request or resource not found. If the application supports SAML, you may have configured the application with the wrong Identifier (Entity). Try out the resolution listed for SAML using the link below: https://docs.microsoft.com/azure/active-directory/application-sign-in-problem-federated-sso-gallery?/?WT.mc_id=DMC_AAD_Manage_Apps_Troubleshooting_Nav#no-resource-in-requiredresourceaccess-list.

         

        I am not running the very latest version of Power BI (I'm one version behind) so will update and see if that resolves the issue, but I don't expect it to.

         

  • LeoLobhaan's avatar
    LeoLobhaan
    Frequent Visitor

    After updating everything I still have the same problem... Any ideas?

  • LeoLobhaan's avatar
    LeoLobhaan
    Frequent Visitor

    after updating everything I still have the same problem. any ideas?

  • RedAngle's avatar
    RedAngle
    Frequent Visitor

    Update from me - this is also working on my system, but without any of the actions listed above!

     

    Other users have reported installing patches/KBs, or restarting the Power Query plugin in Excel.

     

    I didn't do any of this, but tried to refresh the data in my Power BI report using the Exchange Online connector today and it has been successful.

     

    Is anyone still having the issue?

    • Anonymous's avatar
      Anonymous
      Not applicable

      RedAngle alex Anonymous sysadm01 Frelis69,

      I got response from PG:

      "this issue has been mitigated by the O365 team by relaxing their login restrictions."

      Regards,
      Lydia