Table of Contents |
---|
...
Log in to the Azure portal
In the Home view, under Azure services, click Subscriptions. Or in the search box in the top menu bar, enter Subscriptions. Then select Subscriptions
Click on your subscription
If the subscription does not display, check that you have selected the correct directory. Click on the directory name in the top right corner. From here you can switch directory
Save the Subscription ID to enter in the Abiquo credentials.
If you purchased the subscription directly from Azure, you can also save the Offer ID for the pricing credentials.
...
Log in to the Azure portal
In the Home view, under Azure services, click Azure Active Directory. Or in the search box, enter Azure Active Directory. Select Azure Active Directory
On the left, click App registrations
Click New registration
To register the application, enter a Name, select the Supported account types, and enter a URL. If you know the URI of the partner consent service, enter it now. Or you can enter any URL and edit the application and change this value later. Click Register
Save the Application (client) ID and the Directory (tenant) ID, because you will need to configure them in Abiquo. Then click Certificates & secrets
To configure the password for the application, click New client secret, which will open the Add a client secret section. Enter a Description and an Expiry duration, then click Add
The Azure portal will display the application password ONCE ONLY. You must use this password in Abiquo, so make sure to save it, because Azure will not display it again.
Go to the Subscriptions menu, select the subscription you want to associate the application with, and add a new permission for it with these steps.
Select Access control (IAM)
Click Add
Click Add role assignment
In the dialog, select the Contributor role, and in the Select box, enter the name of the application. Then click Save
Go to the Subscriptions menu again and select Resource providers
Search for the Microsoft.Compute provider and click Register to add it for the subscription if it is not already added
Search for the Microsoft.Network provider and click Register to add it for the subscription if it is not already added
Assign permissions to the App
After you create the App, go to API permissions and add the following permissions.
For each of the permissions:
Click + Add
Click the Grant for … button
Category | Permission |
---|---|
Azure Service Management | user_impersonation |
Microsoft Graph | Application.ReadWrite.All |
RoleManagement.ReadWrite.Directory | |
Microsoft Partner | user_impersonation |
Microsoft Parter Center | user_impersonation |
After you add the permissions, and grant them for your account, the center of the screen should look as follows.
...
Configure authorization for the use of Azure ARM credentials in the multi-cloud platform
...
To create your own server to grant consent for the use of your Azure credentials, follow the instructions in the Azure documentation. For general instructions, see https://docs.microsoft.com/en-us/partner-center/develop/partner-center-authentication#app--user-authentication and for Java instructions: https://docs.microsoft.com/en-us/partner-center/develop/partner-center-authentication#java-appuser-authentication.
...