terraform-provider-azuread icon indicating copy to clipboard operation
terraform-provider-azuread copied to clipboard

Doco update for Groups

Open ryan-royals opened this issue 2 years ago • 2 comments

Found through trial and error that both RoleManagement.ReadWrite.Directory and Directory.ReadWrite.All are required for assignable_to_role property.

ryan-royals avatar Sep 06 '23 05:09 ryan-royals

@manicminer @katbyte Sorry for the random tag. Not sure the process to getting this merged, but it's a minor doco change that has been hanging for ages.

ryan-royals avatar Nov 06 '23 00:11 ryan-royals

@ryan-royals Thanks for the PR and apologies for the delay - I would like to manually test this before merging as permissions for groups are tricky and don't align well with the official API documentation.

manicminer avatar Nov 13 '23 12:11 manicminer

@ryan-royals Sorry for the delay in getting back to this PR. I've tested with a new service principal and it looks like Directory.ReadWrite.All does nothing in this context, and RoleManagement.ReadWrite.Directory is the role that's needed.

manicminer avatar May 08 '24 17:05 manicminer