...
In Azure, navigate to your Azure Active Directory.
On the Azure Active Directory navbar, click App registrations.
On the App registrations page, click New registration.
Name the application, select the scope (single or multitenant), and click Register.
Once the application is registered, copy the Application (client) ID and Directory (tenant) ID from the Overview page. These values are used later.
Navigate to the Certificates & secrets blade for the application, select Certificates and then click Upload certificate.
Upload the public certificate you downloaded from the key vault.
Insert excerpt IL:External Stylesheet IL:External Stylesheet nopanel true
...