Skip to main content

Troubleshooting Microsoft SSO (AADSTS50011) Login Error on the Dazos Mobile App (CRM)

Overview This guide explains how to resolve the AADSTS50011 Microsoft authentication error encountered when signing into the Dazos mobile app on iPhone using "Sign in with Office 365," and how to log in using standard credentials instead.

Problem

When attempting to log into the Dazos mobile app on iPhone using the "Sign in with Office 365" button, you receive the following Microsoft authentication error:

AADSTS50011 — The redirect URI sent in the request does not match the redirect URIs configured for the application.


You may also find that attempting to log in using your username and password directly returns an incorrect username/password error, even after resetting your password — if the password reset was not completed in a browser first.

This issue most commonly affects users who normally sign in via Microsoft SSO (Office 365) on the web but are trying to access the Dazos mobile app for the first time or after a period of not using it.

Possible Causes

  • Redirect URI mismatch: The AADSTS50011 error means the mobile app is sending a redirect URI during the Microsoft sign-in flow that does not match what is configured in Microsoft Azure for the application. In some cases, the app may be sending an Android redirect URI (com.dazos.android://oauth/auth/) even when running on an iPhone, causing the mismatch.

  • No Dazos-specific password set: If you have always logged in through Microsoft SSO on the web, you may not have a standalone Dazos password configured. Direct login (username and password) will fail until a password is set by completing a password reset via browser.

Solution

  1. Complete a password reset in your web browser. Open a browser on your phone or computer and complete the Dazos password reset flow. Set a new password and confirm it before moving on. This step is required — attempting to set a password inside the app first will not work correctly.

  2. Open the Dazos mobile app on your iPhone.

  3. Enter your login credentials using the standard Dazos login fields:

    • Identifier: The short portion of your organization's instance URL — the part that appears before .dazoshealth.com. For example, if your URL is https://example.dazoshealth.com/crm, your identifier is example. Do not include .dazoshealth.com or anything after it.

    • Username: Your email address.

    • Password: The new password you just set in step 1.

  4. Do NOT tap "Sign in with Office 365." Use only the standard Dazos login fields described above. Tapping the Office 365 button will trigger the Microsoft SSO flow and may reproduce the AADSTS50011 error.

  5. Tap the login button to sign in.

Log in Screen Dazos APP


Still Need Help?

If you complete the password reset in a browser and still cannot log in using the standard Dazos login fields, please contact Dazos Support. When reaching out, include the following to help us investigate:

  • A screenshot of any error message you see

  • Your device type and operating system version

  • Confirmation of whether you are able to log in successfully on the web

  • Which login method you attempted (SSO button vs. direct username/password fields)

Our team will follow up via chat or email as quickly as possible.

Did this answer your question?