microsoft / coe-starter-kit

Other
748 stars 221 forks source link

[CoE Starter Kit - BUG] Flows getting failed with insufficient priveleges to fetch data from certain Environments #9203

Open Vaishu-Tennet opened 3 hours ago

Vaishu-Tennet commented 3 hours ago

Does this bug already exist in our backlog?

Describe the issue

We have setup Core Components solution of 4.43 version, Image Few Flows getting failed with below errors: RetrievePrivilegeForUser: The user with id 91d30686-8190-ef11-8a6a-000d3ab4fe11 has not been assigned any roles. They need a role with the prvReadWorkflow privilege. RetrievePrivilegeForUser: The user with id e04db5ea-1796-ef11-8a69-7c1e526121ce has not been assigned any roles. They need a role with the prvReadbot privilege. RetrievePrivilegeForUser: The user with id ca19e388-743f-ef11-8409-002248878b1d has not been assigned any roles. They need a role with the prvReadAppModule privilege.

Expected Behavior

No response

What solution are you experiencing the issue with?

Core

What solution version are you using?

4.43

What app or flow are you having the issue with?

Admin | Sync Template v4 (Business Process Flows)

What method are you using to get inventory and telemetry?

Cloud flows

Steps To Reproduce

No response

Anything else?

No response

Jenefer-Monroe commented 1 hour ago

This is likely due to the recent changes to PIM in the product. However, the build you are should have the workaround implemented.

Can you please validate the following

  1. Confirm that the user identity installing and running the flow has the Power Platform Admin Role assigned both directly and permanently? Microsoft Azure Users > Your User > Assigned Roles Ensure Power Platform Administrator is Direct and Permanent image

  2. Validate that you ran the CoE Setup and Upgrade Wizard app after you installed/upgraded to 4.43

  3. Share a screenshot like this so we can see what solutions you have installed in this environment. Be sure to show all records (all rows) and expand the indicated columns so that we can see full names image

  4. Go to the Admin Command Center > CoE Flows > Inventory. Validate that all flows are turned on and that there are no unmanaged layers as shown here. Especially for these two flows: Admin | Sync Template v4 (Driver), HELPER - Driver Escalation Check image

  5. See if there are any sync flow errors to investigate. image