How to use a private access key vault with Azure Bot's AAD v2 with Certificates Service Provider

Chapman Pendery 30 Reputation points Microsoft Employee
2023-08-16T15:28:04.8066667+00:00

We are using the AAD v2 with Certificates (Preview) Service Provider with our Azure Bot because we are authenticating with our first party app and client secrets are recommended against by the identity platform. We are running into the issue where our Key Vault cannot be public access, but the Certificate Service Provider depends on the Bot Service Token Store having access to our key vault to read our certificate.

What is the recommended way to handle this? Does the Token Store have a range of ips or a static ip we can allow to access our keyvault?

Azure AI Bot Service
Azure AI Bot Service
An Azure service that provides an integrated environment for bot development.
941 questions
{count} votes

Your answer

Answers can be marked as Accepted Answers by the question author, which helps users to know the answer solved the author's problem.