phoneAuthenticationMethod: enableSmsSignIn

Namespace: microsoft.graph


Enable SMS sign-in for an existing mobile phone number. To be successfully enabled:

  • The phone must have "phoneType": "mobile".
  • The phone must be unique in the SMS sign-in system (no one else can also be using that number).
  • The user must be enabled for SMS sign-in in the authentication methods policy.


Permissions acting on self

Permission type Permissions (from least to most privileged)
Delegated (work or school account) UserAuthenticationMethod.ReadWrite
Delegated (personal Microsoft account) Not supported.
Application Not supported.

Permissions acting on other users

Permission type Permissions (from least to most privileged)
Delegated (work or school account) UserAuthenticationMethod.ReadWrite.All
Delegated (personal Microsoft account) Not supported.
Application UserAuthenticationMethod.ReadWrite.All

For delegated scenarios where an admin is acting on another user, the administrator needs at least the Authentication Administrator or Privileged Authentication Administrator Microsoft Entra role.

HTTP request

POST /me/authentication/phoneMethods/{id}/enableSmsSignIn
POST /users/{id | userPrincipalName}/authentication/phoneMethods/{id}/enableSmsSignIn

The value of id for the mobile phoneType is 3179e48a-750b-4051-897c-87b9720928f7.

Request headers

Name Description
Authorization Bearer {token}. Required. Learn more about authentication and authorization.

Request body

Don't supply a request body for this method.


If successful, this method returns a 200 OK response code. It doesn't return anything in the response body.


The following example shows how to call this API.


The following example shows a request.



The following example shows the response.

HTTP/1.1 200 OK