Cloud-Architekt / AzureAD-Attack-Defense

This publication is a collection of various common attack scenarios on Microsoft Entra ID (formerly known as Azure Active Directory) and how they can be mitigated or detected.
1.98k stars 290 forks source link

Cant add roles #47

Open kinomakino opened 1 month ago

kinomakino commented 1 month ago

Running: AADSCA-AddedPermToLogicAppMSI.ps1 tells me I don't have permissions to do GetServicePrincipals

Could you indicate the steps to follow? At the moment I have created the logspace I have deployed the ARM with all the data.

Thank you !!!

Cloud-Architekt commented 1 month ago

@kinomakino : Which directory roles are assigned to the user which has executed the script? CC: @samilamppu, @mpitkaranta

kinomakino commented 1 month ago

Global Admin