microsoft / coe-starter-kit

Other
721 stars 212 forks source link

[CoE Starter Kit - Feature]: Update Kit to respond to new Power Platform Admin Role PIM feature #8016

Open Jenefer-Monroe opened 2 months ago

Jenefer-Monroe commented 2 months ago

Regarding the upcoming change to the Power Platform Admin Role to be dynamic - (aka PPAdmin PIM feature)

The basics of that change is that people in these admin roles will no longer be added to all envts as Sys Admin SR. This will break our kit as it exists in that new envts will get inventoried, as the role still works to get information via things like the Power Platform admin pages and connectors, however when you try to access the data in those envts via the Dataverse connector, it will not have access.

The feature:

Manage admin roles with Microsoft Entra Privileged Identity Management:

The limitation:

Known Limitations image

The existing workaround

There are existing steps to elevate the user and hence be added.

However these are not in a form that the kit can consume yet. The product team is actively working to unblock us but we are not yet able to do this elevation for you.

Describe the solution you'd like

Product team adding to the Power Platform V2 connector at which point we will consume.

Jenefer-Monroe commented 2 months ago

Have a workaround documented : https://github.com/microsoft/coe-starter-kit/issues/8119 But cannot ship with the kit until the connector and its action are GA, including the sovereign clouds