微信公众号搜"智元新知"关注
微信扫一扫可直接关注哦!

Azure AD Graph API – 使用C#将用户分配给应用程序

我发现应用程序可以在这个答案中分配给用户,但似乎无法弄清楚如何使用C#来做到这一点.下面是我正在尝试的JSON和C#.

Azure Active Directory: assign user to an application from the gallery via Graph API

Assign principal (user or group) to application:
•resourceId is the objectId of the servicePrincipal that get created in the tenant for the application
•id is the default role id of App.
•principalId is the objectId of the principal (user or group) that is being assigned to the app.

HTTP POST https://graph.windows.net/7fe877e6-a150-4992-bbfe-f517e304dfa0/users/de4b092e-1dd4-4d40-b74d-a2d7096c9495/appRoleAssignments?api-version=1.5
Authorization : Bearer eyJ0eXAiOi--snip--JKVBfk_Q
Content-Type : application/json
Content-Length : 176
{
"id":  "fc60bc23-43df-4a60-baaa-f0b8694e0259",
"principalId":  "de4b092e-1dd4-4d40-b74d-a2d7096c9495",
"resourceId":  "93c60e8e-74f9-4add-9ae2-dd9bc0d6edcd"
}
        AppRoleAssignment appAssignment = new AppRoleAssignment();
        appAssignment.Id = appRole.Id;
        appAssignment.PrincipalId = new Guid(retrievedUser.ObjectId);
        appAssignment.ResourceId = new Guid("aa9b2f6b-6528-4552-a202-2039ce86d95c");

        appAssignment.UpdateAsync();

解决方法:

派对有点晚了但是!由于文档完全缺失,我不得不做大量的谷歌搜索和跟踪&错误.

解决方案是像这样更新用户

var appRoleAssignment = new AppRoleAssignment()
{
    ResourceId = Guid.Parse(principal.ObjectId),
    PrincipalId = Guid.Parse(user.ObjectId),
    Id = Guid.Parse(roleId)
};

user.AppRoleAssignments.Add(appRoleAssignment);
await user.UpdateAsync();

版权声明:本文内容由互联网用户自发贡献,该文观点与技术仅代表作者本人。本站仅提供信息存储空间服务,不拥有所有权,不承担相关法律责任。如发现本站有涉嫌侵权/违法违规的内容, 请发送邮件至 [email protected] 举报,一经查实,本站将立刻删除。

相关推荐