Azure Monitor Workbook and Azure AD objects ?

LukeCloudWalker-6128 21 Reputation points
2022-10-18T13:54:07.697+00:00

Hello,

I was looking for a way to query Azure AD objects (first use case are service principals) from an Azure Monitor Workbook (essentially the goal would be to have a dashboard to check for near expiring secrets and cross the information with Azure Resource to check unused service principals for example)

The problem i'm having is that it seems impossible to use Azure Resource Manager or Azure Resource Graph for this. I tried using a custom endpoint with an API Call but thats seems overkill and i dont want to store any token on the dashboard.

Is this something doable today ? Soon ? Forget it ?

Azure Monitor
Azure Monitor
An Azure service that is used to collect, analyze, and act on telemetry data from Azure and on-premises environments.
2,090 questions
Azure Active Directory
Azure Active Directory
An Azure enterprise identity service that provides single sign-on and multi-factor authentication.
14,817 questions
Microsoft Graph Identity API
Microsoft Graph Identity API
A Microsoft API to access Azure Active Directory (Azure AD) resources to enable scenarios like managing administrator (directory) roles, inviting external users to an organization, and, if you are a Cloud Solution Provider (CSP), managing your customer's data.
285 questions
Microsoft Graph Workbooks API
Microsoft Graph Workbooks API
A Microsoft API that allows web and mobile applications to read and modify Excel workbooks stored in OneDrive for Business, SharePoint site or Group drive.
66 questions
0 comments No comments
{count} votes

1 answer

Sort by: Most helpful
  1. Maxim Sergeev 6,546 Reputation points Microsoft Employee
    2022-10-18T16:04:43.35+00:00

    Hi there,

    Azure Workbooks can't use SPN and other AD objects. They work on top of user's session.
    Custom Endpoints doesn't support auth calls per your request.