How to add additional MSGraph scopes into Azure account?

EnterpriseArchitect 6,301 Reputation points
2023-08-19T13:30:52.09+00:00

How can I add my service account additional MS Graph Azure Read-only permissions?

Connect-MgGraph -Scopes "Application.Read.All","AuditLog.Read.All","CrossTenantInformation.ReadBasic.All"

Because even granting it as a Global reader https://learn.microsoft.com/en-us/azure/active-directory/roles/permissions-reference#global-reader I got the below prompt:

User's image

Windows for business | Windows Server | User experience | PowerShell
Microsoft Security | Microsoft Entra | Microsoft Entra ID
Microsoft Security | Microsoft Graph
0 comments No comments
{count} votes

1 answer

Sort by: Most helpful
  1. Manu Philip 20,491 Reputation points MVP Volunteer Moderator
    2023-08-19T14:13:33.2733333+00:00

    You may try the following steps to get automatic consent to all the applications to the user

    1.Sign into the Azure portal as a Global Administrator and open Azure Active Directory > Enterprise applications > Consent and permissions > User consent settings.

    2.Under User consent for applications, select which consent setting you'd like to configure for all users and save the settings.

    User's image


    --please don't forget to upvote and Accept as answer if the reply is helpful--


Your answer

Answers can be marked as 'Accepted' by the question author and 'Recommended' by moderators, which helps users know the answer solved the author's problem.