Troubleshooting
Start troubleshooting from the TenantCore resource where the problem appears. Avoid jumping directly into Microsoft, DNS-provider, or sending-platform admin portals until you confirm what TenantCore already knows about the state.Tenant will not connect
Check:- you are signing in to the intended Microsoft tenant
- the account can grant the requested consent
- browser popup blocking is disabled for the flow
- the tenant is not already attached in a conflicting way
- TenantCore still has an available tenant slot
Tenant connected but automation is unavailable
Check:- application permissions
- Exchange licence/readiness
- tenant service health
- whether a newer TenantCore permission set requires Resync app
Domain is stuck waiting
Open the domain DNS details and check:- Microsoft verification
- MX
- SPF
- DMARC
- DKIM
- provider provisioning state
- whether TenantCore is waiting on user action or Microsoft
Automatic DNS failed
Check:- the DNS-provider connection still tests successfully
- the domain is in the connected provider account
- provider API eligibility
- existing DNS conflicts
- the provisioning run/job status
Namecheap will not connect
Namecheap restricts API access to eligible accounts. Confirm the account meets Namecheap’s current API requirements and any required allowlisting is configured. If not, use manual DNS.DKIM is not ready
DKIM often becomes available after the earlier Microsoft domain setup is complete. Check:- domain verification
- public DNS
- whether Microsoft has generated the DKIM CNAME targets
- whether both DKIM records are published
- whether TenantCore is waiting to enable DKIM
Mailbox creation failed
Check:- the parent tenant is healthy
- the domain exists in that tenant
- mailbox capacity is available
- the address is not already in use
- Microsoft/Exchange permissions are healthy
Password does not work
Check:- whether the mailbox password was recently reset
- credential-vault sync state
- whether Microsoft requires a new sign-in condition
- whether the sending provider cached old credentials
MFA setup fails
Confirm you selected Microsoft’s manual authenticator setup path:- add an Authenticator app
- use a different authenticator application
- choose Can’t scan the QR code?
- copy the manual secret into TenantCore
- use the current TenantCore-generated code to complete verification
Outlook access is not ready
Check:- the selected Mailbox Access Account has an Exchange licence
- Full Access and Send As show as ready
- you signed in using the assigned access account
- Microsoft delegation has had time to propagate
Sending integration is stuck on pending
A stalepending or connecting state from an interrupted browser session is retryable.
Try:
- close any old provider/Microsoft popup
- refresh TenantCore
- open the mailbox connection again
- choose Retry connection
OAuth popup was closed
Closing the popup does not mean the mailbox should remain permanently locked. Start the connection again from TenantCore. Do not reuse an old OAuth URL or oldstate value.
Provider test fails
Check:- API key/token validity
- workspace/account access
- provider service status
- whether the credential was rotated
- whether the TenantCore integration belongs to the expected account
Sending limit looks wrong
Check:- configured TenantCore policy
- mailbox usage
- sending-platform daily limit
- Exchange enforcement state
Alert resolved before you saw it
Open Reports → Activity Log. Resolved alerts may no longer require action, but their historical events can still explain what occurred.Scheduled report did not arrive
Check:- the report schedule is enabled
- the configured recipient
- local schedule time
- spam/junk folder
- whether the reporting period contains data
Need more context
When contacting support, include:- TenantCore resource name
- tenant/domain/mailbox where relevant
- approximate time of the issue
- screenshot of the visible TenantCore state
- request ID if the issue came from the Complete API