Azure AD B2C - Manage external users through PIM or Entitlement Management?

Tarjei Ylvisåker 56 Reputation points
2023-02-22T13:55:50.5533333+00:00

Greetings!

We have 3 Azure AD B2C tenants used for auth/authz in web applications.

Our developers can create Application Registrations, manage secrets and maintain what they need.

But we would like to use some functionality like PIM or Entitlement Management to be able to control their access into the B2C tenants.

So the developers for example would need to Request access to "Application Administrator" in B2C tenant X.

Also, instead of manually adding our developers into these B2C tenants, use some grouping or attributes to manage it.

Is this possible to do in Azure AD B2C tenants? The PIM and Entitlement Management sites are available when logged in to the tenants, but does not seem to work.

If this functionality is not intended to be used in B2C tenants, then one could ask why they are visible at all.

Many thanks!

Microsoft Entra External ID
Microsoft Entra External ID
A modern identity solution for securing access to customer, citizen and partner-facing apps and services. It is the converged platform of Azure AD External Identities B2B and B2C. Replaces Azure Active Directory External Identities.
3,080 questions
Microsoft Entra
Microsoft Entra ID
Microsoft Entra ID
A Microsoft Entra identity service that provides identity management and access control capabilities. Replaces Azure Active Directory.
23,678 questions
0 comments No comments
{count} votes

1 answer

Sort by: Most helpful
  1. Patchfox 4,096 Reputation points
    2023-02-22T14:17:08.6633333+00:00

    You are right, PIM and Entitle Management are features of AzureAD but not of AzureAD B2C. Some portals or blades are still displayed but cannot be used.

    Maybe this solution could help in your scenaro:

    https://learn.microsoft.com/en-us/azure/active-directory-b2c/identity-provider-azure-ad-single-tenant?pivots=b2c-user-flow

    0 comments No comments

Your answer

Answers can be marked as Accepted Answers by the question author, which helps users to know the answer solved the author's problem.