Get-MgBetaNetworkAccessForwardingPolicyRule Returns 200 OK with Empty Value [] for Policies with Existing Rules
メンテナーはふだん 1 日以内に返信
まだ誰も着手していません。
評価
- 難易度
- 4/5
- 見積もり時間
- 3〜5日
- 初心者へのやさしさ
- 25/100
- issue の種類
- バグ
- 明瞭さ
- おおむね明確
- 活発さ
- 停滞
- 技術スタック
- powershell
- 領域
- api
調査の方向性
まず、報告された転送ポリシー ID を指定して Get-MgBetaNetworkAccessForwardingPolicyRule を再現し、GET /beta/networkAccess/forwardingPolicies/{id}/policyRules のレスポンスを調査します。空の値配列を Microsoft Entra admin center にあるポリシーの既存のアプリケーション セグメントと比較します。構成済みのルール(利用可能な IP、FQDN、ポート、プロトコルのデータを含む)が返されるか、SDK の動作が明確に特定できれば完了です。
索引モデルが issue の本文から書いたものです。
説明
Describe the bug
When querying for the rules of a specific, valid forwarding policy ID using Get-MgBetaNetworkAccessForwardingPolicyRule, the Graph API successfully returns a 200 OK status code. However, the body of the response incorrectly contains an empty value array ("value": []), even when the policy has numerous rules (application segments) visible in the Microsoft Entra admin center.
This behavior makes it impossible to automate the enumeration of all FQDNs and IP ranges within Private Access, as the API is not returning the configured data.
Expected behavior
List the rules for the policy? Display the IP and FQDN, possibly the Ports and protocol.
How to reproduce
Connect-MgGraph -Scopes "NetworkAccess.Read.All"
# Get all policies and select one for testing
$policies = Get-MgBetaNetworkAccessForwardingPolicy | Where-Object { $_.TrafficForwardingType -eq 'private' }
$testPolicyId = $policies[0].Id
Get-MgBetaNetworkAccessForwardingPolicyRule -ForwardingPolicyId $testPolicyId
SDK Version
2.29.0
Latest version known to work for scenario above?
No response
Known Workarounds
No response
Debug output
DEBUG: [CmdletBeginProcessing]: - Get-MgBetaNetworkAccessForwardingPolicyRule begin processing with parameterSet 'List'.
DEBUG: [Authentication]: - AuthType: 'Delegated', TokenCredentialType: 'InteractiveBrowser', ContextScope: 'CurrentUser', AppName: 'Microsoft Graph Command Line Tools'.
DEBUG: [Authentication]: - Scopes: [AccessReview.Read.All, Application.Read.All, AuditLog.Read.All, Calendars.Read, Calendars.Read.Shared, Channel.ReadBasic.All, ConsentRequest.Read.All, DelegatedPermissionGrant.Read.All, Device.ReadWrite.All, DeviceManagementConfiguration.Read.All, DeviceManagementManagedDevices.PrivilegedOperations.All, DeviceManagementManagedDevices.ReadWrite.All, DeviceManagementServiceConfig.ReadWrite.All, Directory.Read.All, Directory.ReadWrite.All, Domain.ReadWrite.All, email, Group.Read.All, Group.ReadWrite.All, GroupMember.Read.All, GroupMember.ReadWrite.All, IdentityRiskyUser.ReadWrite.All, Mail.Read, NetworkAccess.Read.All, openid, profile, Team.ReadBasic.All, User.Read, User.Read.All, UserAuthenticationMethod.Read.All, UserAuthenticationMethod.ReadWrite.All].
DEBUG: ============================ HTTP REQUEST ============================
HTTP Method:
GET
Absolute Uri:
https://graph.microsoft.com/beta/networkAccess/forwardingPolicies/88de4bbf-27fc-46b8-b926-87f7e4e896b7/policyRules
Headers:
FeatureFlag : 00000003
Cache-Control : no-store, no-cache
User-Agent : Mozilla/5.0,(Windows NT 10.0; Microsoft Windows 10.0.26200; en-US),PowerShell/2025.2.0
SdkVersion : graph-powershell-beta/2.29.0
client-request-id : 99b91890-3907-4b0f-ac87-9a80f4711f25
Accept-Encoding : gzip,deflate,br
Body:
DEBUG: ============================ HTTP RESPONSE ============================
Status Code:
OK
Headers:
Date : Thu, 10 Jul 2025 05:08:21 GMT
Transfer-Encoding : chunked
Connection : keep-alive
Vary : Accept-Encoding
Strict-Transport-Security : max-age=31536000
request-id : 972d1873-7839-4cfd-940d-b77f366ffd03
client-request-id : 99b91890-3907-4b0f-ac87-9a80f4711f25
x-ms-ags-diagnostic : {"ServerInfo":{"DataCenter":"West US 2","Slice":"E","Ring":"4","ScaleUnit":"005","RoleInstance":"MWH0EPF0009A7D2"}}
OData-Version : 4.0
X-Cache : CONFIG_NOCACHE
Body:
{
"@odata.context": "https://graph.microsoft.com/beta/$metadata#networkAccess/forwardingPolicies('88de4bbf-27fc-46b8-b926-87f7e4e896b7')/policyRules",
"value": []
}
DEBUG: [CmdletEndProcessing]: - Get-MgBetaNetworkAccessForwardingPolicyRule end processing.
Configuration
- OS: Windows 11 25H2 (OS Build 26200.5670)
- x64
- Powershell 7.5.2 and 5.1
Other information
Get-MgBetaNetworkAccessForwardingPolicy -Filter "TrafficForwardingType eq 'private'" | fl
Also reflects blank PolicyRules:
Description : This policy represents application segment configuration on appId
ed26595d-2982-4862-99da-342c53a26a5e
Id : a56c642a-4811-4dda-a4ee-265866c048b8
Name : Private Access Policy for App ed26595d-2982-4862-99da-342c53a26a5e
PolicyRules :
TrafficForwardingType : private
Version : 1.0.0
AdditionalProperties : {}
- 主要言語
- C#
- スター
- 902
- フォーク
- 233
- 平均マージ
- 1日 3時間
- マージ済み PR(30日)
- 24
環境構築
- Dockerfile または Docker Compose ファイルあり
- プルリクエストのテンプレートあり
- コントリビューションガイドを読む
はじめの一歩
- issue を最後まで読み、次にプロジェクトのコントリビューションガイドを読みます。
- 着手することを issue にコメントします — 二人が同じ作業をするのを防げます。
- リポジトリをフォークし、ブランチを切って変更します。
- issue 番号を参照したプルリクエストを送ります。
microsoftgraph/msgraph-sdk-powershell のほかの issue
-
難易度 2/5 1〜3時間 初心者へのやさしさ 84/100
microsoftgraph/msgraph-sdk-powershell#3752 ·
メンテナーはふだん 1 日以内に返信
-
New-MgGroupMember Missing from Docs対応中かも このイシューにリンクされたプルリクエストがオープン中、またはマージ済みです。 オープンstatus:waiting-for-triage type:bug
難易度 2/5 1〜3時間 初心者へのやさしさ 78/100
microsoftgraph/msgraph-sdk-powershell#3751 ·
メンテナーはふだん 1 日以内に返信
-
Graph PowerShell 2.41.0: Connect-MgGraph fails loading System.Text.Json 10; downgrading to 2.40.0 resolves対応中かも @svrooij が 1 日前に担当しました。 オープンNeeds: Attention :wave: status:waiting-for-triage type:bug
難易度 4/5 3〜5日 初心者へのやさしさ 48/100
microsoftgraph/msgraph-sdk-powershell#3810 · コメント 3 件 ·
メンテナーはふだん 1 日以内に返信
-
status:waiting-for-triage type:feature
難易度 4/5 3〜5日 初心者へのやさしさ 45/100
microsoftgraph/msgraph-sdk-powershell#3806 · コメント 2 件 · リアクション 1 件 ·
メンテナーはふだん 1 日以内に返信
-
Microsoft.Graph.Authentication fails after removal and re-import in the same PowerShell sessionオープンstatus:waiting-for-triage type:bug
難易度 4/5 3〜5日 初心者へのやさしさ 25/100
microsoftgraph/msgraph-sdk-powershell#3805 · コメント 3 件 ·
メンテナーはふだん 1 日以内に返信
microsoftgraph/msgraph-sdk-powershell の issue をすべて見る
似ている issue
-
S: Untriaged
難易度 2/5 1〜3時間 初心者へのやさしさ 78/100
space-wizards/space-station-14#46357 ·
メンテナーはふだん 1 日以内に返信
-
Versioning_oM: Remove unneeded depeendecy on Test_oM対応中かも @IsakNaslundBh が今日担当しました。 オープンtype:bug type:compliance
難易度 2/5 1時間未満 初心者へのやさしさ 85/100
-
難易度 2/5 1〜3時間 初心者へのやさしさ 78/100
-
難易度 2/5 1〜3時間 初心者へのやさしさ 66/100
MicrosoftLearning/PL-400_Microsoft-Power-Platform-Developer#231 ·
-
難易度 2/5 1〜3時間 初心者へのやさしさ 66/100
joinrpg/joinrpg-net#5313 ·
メンテナーはふだん 1 日以内に返信