The Exchange Reader Role as a built-in role in Entra

Mike 0 Reputation points
2024-04-24T22:26:03.19+00:00

It would be nice if we can have new role Exchange Read Only or Reader role for creating custom reports. Right now I am using Global Reader for the app registration and service principle. That role works fine for the custom report. The custom role does not have all the Reader App Permissions that are required for Exchange App Role. Is there another way of creating the custom role that I am not doing?

Microsoft Security | Microsoft Entra | Microsoft Entra ID
{count} votes

1 answer

Sort by: Most helpful
  1. Vasil Michev 119.9K Reputation points MVP Volunteer Moderator
    2024-04-25T07:32:20.6533333+00:00

    Generally speaking, Entra does not support workload-specific roles, with few exceptions. You can achieve your ask by assigning the user/service principal to the "View-Only Organization Management" Role Group within Exchange Online, or even use a custom-created role therein.

    If you meant the above as an improvement suggestion, the best place to put it would be over at the Feedback portal: https://feedback.azure.com/d365community/forum/22920db1-ad25-ec11-b6e6-000d3a4f0789

    0 comments No comments

Your answer

Answers can be marked as Accepted Answers by the question author, which helps users to know the answer solved the author's problem.