Azure Integration
Last updated
Last updated
This document describes how to integrate the Rezonate product with the Azure Active Directory and Azure Subscriptions. The integration also covers M365 and Intune.
Browse to the Azure Active Directory user portal.
Select โEnterprise Applicationsโ in the side menu
Click โNew Applicationโ.
Select โCreate your ownโ.
In the new Application name, write โRezonateโ and then click Create.
After the creation process is complete, you will be redirected to the application page.
Click the Permissions tab on the side menu.
Select โApplication registrationโ.
Select โAdd Permissionsโ and select Microsoft Graph, and then Application permissions.
Add the following read-only permissions for the application to acquire all relevant data:
TeamMember.Read.All UserAuthenticationMethod.Read.All Policy.Read.PermissionGrant IdentityRiskyServicePrincipal.Read.All Channel.ReadBasic.All SecurityAlert.Read.All MailboxSettings.Read Directory.Read.All ReportSettings.Read.All RoleManagement.Read.All IdentityProvider.Read.All IdentityRiskyUser.Read.All IdentityRiskEvent.Read.All AuditLog.Read.All Policy.Read.All Member.Read.Hidden Reports.Read.All DirectoryRecommendations.Read.All
After selecting the permissions, Click Add Permissions.
Click โGrant Admin Consent for Rezonateโ and then โYesโ.
Select โCertificates & secretsโ in the side menu.
Select โUpload certificateโ.
Add the rezonate_aad_azure.crt file from Rezonate. (Attached in this article)
Click the Overview button.
Please copy and bring back the following items:
Application (client) ID
Directory (tenant) ID
Head over to the Management Groups screen, and choose the Tenant Root Group.
Select Access Control (IAM) from the left-side bar.
Select โRole Assignmentsโ, then โAddโ, and then โAdd role assignmentโ.
Select โJob Function Rolesโ, and head over to the Role tab.
In this tab, select โReaderโ and then โNextโ.
You will be moved to the โMembersโ page, to add members to the assignment.
Click โ+ Select Membersโ and enter the application name created in step 1 - โRezonateโ. You will see the application in the right-side menu, click it and then click โSelectโ.
You should now see the application in the Members box. Click โReview + Assignโ to finish the process.
You should now see the application is assigned the โReaderโ role, listed in the โRole assignmentsโ screen.
Head over to the overview screen of the subscription to find the ID.
Please copy and bring back the following items:
Subscription ID numbers to cover.
Tenant ID.