microsoft / coe-starter-kit

Other
751 stars 221 forks source link

App Registration Used in CoE Power Automate Flow Unable to Connect to Microsoft Graph #6993

Closed mattahearn closed 12 months ago

mattahearn commented 1 year ago

Does this question already exist in our backlog?

What is your question?

Hello,

We are trying to stand up the PP CoE Kit on a DOD tenant and running into a 401 unauthorized error in the Power Automate Flow called "Admin | Audit Logs | Sync Audit Logs (V2)" when it tries to access Graph audit logs during the "ListAuditLogContent" step. Our Azure App Registration is using the prescribed "ServiceMessage.Read.All" permission as detailed here --> https://learn.microsoft.com/en-us/power-platform/guidance/coe/setup-core-components#create-an-azure-ad-app-registration-to-connect-to-microsoft-graph

Any advice would be appreciated.

Admin_Audit_Logs_Sync_Audit_Logs_V2

Matt Ahearn Sr. Consultant - Fed Civ Biz Apps

What solution are you experiencing the issue with?

Audit Log

What solution version are you using?

CenterofExcellenceCoreComponents_4.15_managed

What app or flow are you having the issue with?

Admin | Audit Logs | Sync Audit Logs (V2)

What method are you using to get inventory and telemetry?

Cloud flows

AB#601

Jenefer-Monroe commented 1 year ago

These audit log flows require a separate set of setup instructions. Please see Collect audit logs using an HTTP action

Note that since the flow is already on, if the flow still fails after you run all the setup instructions, please be sure to turn it off and back on as sometimes flow cache env vars and you wont have the correct values since you are DoD (non-default)

Jenefer-Monroe commented 12 months ago

closing out as no further action for starter kit team