Versions Compared
Key
- This line was added.
- This line was removed.
- Formatting was changed.
The SharePoint Online microservice requires a key vault with a certificate
...
for certificate-based authentication between the microservice and the service principal registered for it. Additionally, the key vault needs to configured with an access policy that grants key, secret and certificate permissions to assigned applications. These permissions will be granted to the SharePoint Online app service hosting the microservice.
Create the key vault and certificate
In Azure, create a key vault.
Navigate to the Certificate page for the key vault and generate a self-signed certificate for it.
Image ModifiedDownload the certificate in CER format. You will add this to the service principal you created for the SharePoint Online microservice.
...
Image Added
Add access policy to the key vault
Add an access policy to the key vault with the below Key, Secret and Certificate permissions.
Key Permissions
Get
Decrypt
Unwrap Key
Verify
Secret Permissions
Get
List
Set
Delete
Purge
Certificate Permissions
Get
Select the SharePoint Online app service you created earlier as the service principal.
Image Modified
Upload the certificate to the service principal
Navigate to the Certificates & Secrets blade for the service principal you registered for the SharePoint Online microservice.
Upload the certificate you downloaded from the key vault.
Image Added
Div | ||||||||
---|---|---|---|---|---|---|---|---|
| ||||||||
IN THIS ARTICLE
|