Azure Conditional Access + Risky Workload Identity (Premium Licenses)
Hoping someone might have some further insight on Workload Identity Premium Licenses and Conditional Access Policies + Identity Protection Risk detections.
1.Have signed up & enabled Workload identity premium Trial
2.Created a "Review Only" Block High Risk Policy scoped at all service principals
- Risky SP logs are being sent to log analytics workspace.
4.Looking at insights & reporting Workbook - it has detected a "High Risk" Sp and action "reportonlyfailure" for this app.
Issue is that nothing is being reported in identity protection under "Risky Workload identities" or Risk detections which means we cannot click on any detection to get further insight /additional details .
Am I missing something here - Do the Workload identity premium Licences have to be assigned to an app and if so how can they be assigned to an app.?
Thanking you all in advance :)