How to Onboard Microsoft Azure Account
Last updated
Last updated
Log in to CloudSecOps portal using your credentials.
Once you successfully logged in for the first time. You will be able to see the "Environment" page only under Global Tenant Setting (please refer to the screenshot below).
You will be able to see all of the pages once you add any AWS or Azure account.
Now, hit the marked option to link your Microsoft Azure account.
Input the necessary credentials for
Microsoft Azure account Client id
Client secret key
Subscription ID
Tenant ID,
then verify. Then click next to input other information.
Then you will have the option to add Account and Organization details. Once the account is connected, the scan will get automatically started.
Go to Azure Active Directory > App registrations > New registration
Application.Read.All
AuditLog.Read.All
Directory.Read.All
Domain.Read.All
Group.Read.All
IdentityProvider.Read.All
Policy.Read.All
User.Read.All
Reports.Read.All
Go to Subscription > Access control (IAM) > Add > Add role assignment then add custom built role and assign the role to app.
Go to App registration select your app and click on Certificates & secrets > New client secret
Go to Azure Active Directory > App registrations. Then click on the application.
Go to Azure Active Directory > App registrations > Certificates & secrets. Then copy the Client Secret.
Go to Subscriptions. Copy the Subscription ID.