terraform-provider-azuread
terraform-provider-azuread copied to clipboard
Doco update for Groups
Found through trial and error that both RoleManagement.ReadWrite.Directory and Directory.ReadWrite.All are required for assignable_to_role property.
@manicminer @katbyte Sorry for the random tag. Not sure the process to getting this merged, but it's a minor doco change that has been hanging for ages.
@ryan-royals Thanks for the PR and apologies for the delay - I would like to manually test this before merging as permissions for groups are tricky and don't align well with the official API documentation.
@ryan-royals Sorry for the delay in getting back to this PR. I've tested with a new service principal and it looks like Directory.ReadWrite.All does nothing in this context, and RoleManagement.ReadWrite.Directory is the role that's needed.