Versions Compared

Key

  • This line was added.
  • This line was removed.
  • Formatting was changed.

...

  1. Log in to your Azure portal as an administrator and navigate to your App Service.

  2. Under Settings in the sidebar of the App Service, click Identity.

  3. On the Azure navbar, click App registrations.

    Image RemovedImage Added

  4. On the Identity page, click the System assigned tab and toggle Status to On.

    Image RemovedImage Added

  5. Copy the Object ID. The Object ID is the ID of the service principal created when the System assigned managed identity feature is enabled. You need to assign to the service principal root level permissions to the App Service as shown below.

...

  1. In Azure navigate to Management groups.

  2. Click the details link beside Tenant Root Group.

    Image RemovedImage Added

  3. On the tenant root page, click Access Control (IAM) in the sidebar.

    Image RemovedImage Added

  4. On the Access Control (IAM) page, click Add and then select Add role assignment.

    Image RemovedImage Added

  5. In the Add role assignment pane that appears, click Select a role and then select Owner.

    Image RemovedImage Added

  6. Search for and select the App Service you deployed to the tenant.

    Image RemovedImage Added

  7. Save the role assignment.

    Image RemovedImage Added

  8. Navigate to Azure Active Directory.

  9. In Azure Active Directory, select Roles and administrators (Preview) from the sidebar.

    Image RemovedImage Added

  10. Enter Global administrator in the search field and then select the Global administrator role.

    Image RemovedImage Added

  11. On the Global administrator | Assignments page, click Add assignments.

    Image RemovedImage Added

  12. In the Add assignments pane that appears, search for the App Service and then click the tile for the service to select it.

    Image RemovedImage Added

  13. Click Add.

    Image RemovedImage Added

The SCIM App service now has the global administrator role for the tenant. The next step is to connect EmpowerID to Azure AD.

Insert excerpt
IL:External Stylesheet
IL:External Stylesheet
nopaneltrue