What is the "Client Secret" in the Engine App registration used for? #353
Replies: 3 comments 7 replies
-
|
Hey @DCMattyG ! Have time to explain this? |
Beta Was this translation helpful? Give feedback.
-
|
Hi @DCMattyG, thanks for the reply. I should have been more precise in my ask, sorry. When running Azure functions, I'm able to assign a managed identity(SP) to it and then in code, request a accessToken from a internal endpoint. With that accessToken, I'm able to use/update Azure resources (ARG/tables/sql databases) I've delegated role assignment's to this managed identity, or access API's defined in another app registration. Now, I'm running IPAM as a container in WebApps, and with a quick search, there isn't that easy to find any more specific documentation regarding this (if it's even different?), other than a really old thread on SO What do you think? |
Beta Was this translation helpful? Give feedback.
-
|
Hope this gets a revisit 😅 It's not possible to eliminate the need for the app registration, but the secret can be eliminated in favour of federated credentials to a managed identity.
Regarding the OnBehalfOf, it seems also to be updated to work with client assertions such as federated credentials: |
Beta Was this translation helpful? Give feedback.
Uh oh!
There was an error while loading. Please reload this page.
-
Hi,
As we are not allowed to use secrets in Apps anymore, how is this secret being consumed and what is it used for?
Are we able to replace it with certificate or better yet, a FIC or Managed Identity?
Thanks!
Beta Was this translation helpful? Give feedback.
All reactions