I have built a flow which extracts 'Action', 'User' and 'Group' variables from an incoming email to inform the 'Add user to Group' or 'Remove member from Group' step (depending on the 'Action' variable). However, when I run the flow, it fails at the AAD step with the following error:
If we give the service account admin rights it will be subject to MFA, is there any way around that?
Thanks.
Solved! Go to Solution.
Hello @HayleyECC
Is the Connection you are using for that action "Add user to AAD group" a owner for that group?
The connection you are using for that action must be a owner in that AD group.
Thanks, hope this helps!
-Josh
Proud to be a Flownaut!
Since Admin rights are required to perform those actions there is no way to get around having admin rights for that connection. However the MFA should only hit when you first run the Flow. Once the connection is established I don't think you will get re-prompted for MFA.
Thank you - will give it a try! 🙂
The service account now has the 'User Management Administrator' role and is registered for MFA, but I'm getting the same error in the 'Add user to group' step.... any suggestions/ideas appreciated. Thanks.
Hello @HayleyECC
Is the Connection you are using for that action "Add user to AAD group" a owner for that group?
The connection you are using for that action must be a owner in that AD group.
Thanks, hope this helps!
-Josh
Proud to be a Flownaut!
That's sorted it - thank you!
Learn to digitize and optimize business processes and connect all your applications to share data in real time.
Come together to explore latest innovations in code and application development—and gain insights from experts from around the world.
At the monthly call, connect with other leaders and find out how community makes your experience even better.
User | Count |
---|---|
27 | |
26 | |
26 | |
23 | |
23 |
User | Count |
---|---|
62 | |
44 | |
40 | |
29 | |
27 |