CCM Azure Balance API Authentication Fails with HTTP 403 During Billing Data Collection
Options
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
2 hours ago
Hello Team,
I am facing an issue in ServiceNow Cloud Cost Management (CCM) while retrieving Azure billing/consumption data. The request to the Azure Consumption Balance API is failing intermittently during authentication.
The following errors are being observed:
AzureCoreAuthenticator:: Authentication call to fetch openid-configuration failed.
HTTP 403 Forbidden
This request is blocked. Please try again in 5 minutes.
If the error continues, contact Microsoft Support.
AzureCoreAuthenticator:: Authentication call to fetch openid-configuration failed.
Status Code: 500
X-ProxyErrorMessage: The network is busy.
Server: Microsoft-HTTPAPI/2.0
This occurs during the balance retrieval process when CCM attempts to call the Azure Consumption API.
Environment details:
- ServiceNow Cloud Cost Management
- Azure Commercial Cloud
- OAuth authentication is configured successfully
- Credentials and connection appear to be valid
- Failure occurs when fetching Azure openid-configuration / authentication metadata
Questions:
- Has anyone encountered this HTTP 403 error while CCM was calling Azure Billing or Consumption APIs?
- Could this be caused by Microsoft Entra ID conditional access policies, tenant restrictions, or network/firewall controls?
- Are there specific permissions required for the Azure Billing Account that might cause the authentication request to be blocked?
- Is there any known issue with CCM Azure discovery or billing jobs that can trigger this behavior?
- What additional logs or diagnostics would you recommend reviewing to isolate the root cause?
0 REPLIES 0
