Versions Compared

Key

  • This line was added.
  • This line was removed.
  • Formatting was changed.
Table of Contents

...

  1. Log in to the Azure portal using a user with Admin agent role

  2. In the Home view, under Azure services, click Azure Active Directory. Or in the search box, enter Azure  Azure Active DirectorySelect Azure Active Directory.

    Select Azure Active Directory


  3. On the left, click App registrations

  4. Click New registration.

    Under App registrations, click New registration
  5. To register the application, enter a Name, select the Supported account types (Account in any organizational directory), and enter a URL. If you know the URI of the partner consent service, enter it now. Or you can enter any URL and edit the application and change this value later. Click Register.

    Register the application
  6. Save the Application (client) ID and the Directory (tenant) ID, because you will need to configure them in Abiquo. Then click Certificates & secrets.

     Save the Application ID and Directory ID and go to Certificates and secrets
  7. To configure the password for the application, click New client secret, which will open the Add a client secret section. Enter a Description and an Expiry duration, then click Add.

    Add a client secret

    The Azure portal will display the application password ONCE ONLY. You must use this password in Abiquo, so make sure to save it, because Azure will not display it again.

    Obtain the App password

...

For each of the permissions:

  1. Click + Add

  2. Click the (tick) Grant for ... button

    1. Azure Service Management: user_impersonation

      Microsoft Graph: Application.ReadWrite.All, RoleManagement.ReadWrite.Directory

      Microsoft Partner: user_impersonation

      Microsoft Partner Center: user_impersonation

  3. After you add the permissions, and grant them for your account, the center of the screen should look as follows.

    Azure CSP API permissions for App
  4. Add the application’s service principal to the Admin agents group in the CSP Partner’s Azure AD Active directory.

    You can search for Microsoft Partner and Microsoft Partner Center using their application IDs, which are 4990cffe-04e8-4e8b-808a-1175604b879f and fa3d9a0c-3fb0-42cc-9193-47c7ecd2edbd respectively, in the APIs my organization owns section.

...

To create your own server to grant consent for the use of your Azure credentials, follow the instructions in the Azure documentation.

For general instructions, see https://docs.microsoft.com/en-us/partner-center/develop/partner-center-authentication#app--user-authentication and for Java instructions: https://docs.microsoft.com/en-us/partner-center/develop/partner-center-authentication#java-appuser-authentication.

...