Interested in a ServiceNow event built for developers? Registration for now[dev]26 is officially open!

CCM Azure Balance API Authentication Fails with HTTP 403 During Billing Data Collection

soson
Kilo Explorer

 

Hello Team,

I am facing an issue in ServiceNow Cloud Cost Management (CCM) while retrieving Azure billing/consumption data. The request to the Azure Consumption Balance API is failing intermittently during authentication.

The following errors are being observed:

AzureCoreAuthenticator:: Authentication call to fetch openid-configuration failed.
HTTP 403 Forbidden
This request is blocked. Please try again in 5 minutes.
If the error continues, contact Microsoft Support.
AzureCoreAuthenticator:: Authentication call to fetch openid-configuration failed.
 
Status Code: 500
X-ProxyErrorMessage: The network is busy.
Server: Microsoft-HTTPAPI/2.0

This occurs during the balance retrieval process when CCM attempts to call the Azure Consumption API.

Environment details:

  • ServiceNow Cloud Cost Management
  • Azure Commercial Cloud
  • OAuth authentication is configured successfully
  • Credentials and connection appear to be valid
  • Failure occurs when fetching Azure openid-configuration / authentication metadata

Questions:

  1. Has anyone encountered this HTTP 403 error while CCM was calling Azure Billing or Consumption APIs?
  2. Could this be caused by Microsoft Entra ID conditional access policies, tenant restrictions, or network/firewall controls?
  3. Are there specific permissions required for the Azure Billing Account that might cause the authentication request to be blocked?
  4. Is there any known issue with CCM Azure discovery or billing jobs that can trigger this behavior?
  5. What additional logs or diagnostics would you recommend reviewing to isolate the root cause?

 

0 REPLIES 0