Hacktoberfest 2026: le issue che i maintainer hanno segnato per ottobre, aperte e adatte ai principianti. Sfoglia le issue Hacktoberfest

GDAP support

Aperta
#111 27 commenti 1 reazione 1 assegnatario Vedi su GitHub

@shenglol ci sta già lavorando.

Dal 23/5/2024.

Valutazione

Questa issue non è ancora stata valutata.

Descrizione

enhancement triaged

Is your feature request related to a problem? Please describe.
I would guess this is expected behavior that you cannot deploy Graph resources via GDAP. I will not explain what is GDAP in detail but in short in partner tenant and customer tenant. The partner tenant has group for example like AdminAgent. Via GDAP that group is given Entra access (for example User Administrator). In that group we have a user from the partner tenant. We also have service principal that can login to customer tenant by doing on behalf of that user so inherits its permissions on customer Entra tenant. This kind of login (via the service principal) works when we deploy Azure resources to the customer tenant. It also works if we do Graph operations via PowerShell. When we connect to the customer tenant with connect-azaccount we use -AccessToken property by providing access token that is valid. We also provide -GraphAccessToken but when I try to deploy Bicep template with Graph resources I get:

 |  ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
     | 06:39:52 - Error: Code=InvalidTemplateDeployment; Message=The template
     | deployment 'azDeploy-240523063910-lz-ms-graph-test' is not valid
     | according to the validation procedure. The tracking id is
     | '30a48908-9bc7-4a24-bd7a-1dec585d5dab'. See inner errors for details. 
     | 06:39:52 - Error: Code=AuthenticationFailed; Message=Authentication
     | failed.  The deployment validation failed

As GDAP is common scenario for authenticating to customers by Cloud Solution Providers (CSPs) I think it is valid request that the Graph deployment supports it. Preferably should be possible with using the -GraphAccessToken -AccessToken parameters in connect-azaccount cmdlet.

Describe the solution you'd like
A clear and concise description of what you want to happen.

Additional context
Add any other context or screenshots about the feature request here.

Lingua principale
TypeScript
Stelle
81
Fork
15
Merge medio
3g 8h
PR unite (30g)
7

Preparare l'ambiente

Come iniziare

  1. Leggi tutta la issue e poi la guida ai contributi del progetto.
  2. Commenta sulla issue per dire che te ne occupi tu — evita che due persone facciano lo stesso lavoro.
  3. Fai un fork del repository e lavora su un branch.
  4. Apri una pull request che faccia riferimento al numero della issue.

Altre issue di microsoftgraph/msgraph-bicep-types

Tutte le issue di microsoftgraph/msgraph-bicep-types

Issue simili

Altre issue su TypeScript

Ricevi le nuove issue nella tua casella

Un breve riepilogo di issue GitHub adatte ai principianti.