Azure AD Multi tenant Azure App registration consent

Software Engineering
A Daily Dose of PowerShell

Windows PowerShell and PowerShell 7 by Thomas

paper.li
Create Azure App Registration for API using Powershell

Software Engineering

Been working with a client to do #Terraform on #Azure for the first time in a CI/CD pipeline. Their governance folks had some concerns about permissions for the service principal. Our #IaC uses #AppRegistration and we reference the permissions.

The concern is that, if granting the service principal access to update one app registration, you're granting it to all. I can understand the hesitancy. Can't find any way to scope that access.

How did you deal with that?

Yes, Grant the permission
100%
No, reconcile changes manually
0%
Other (please respond)
0%
Poll ended at .