service account in Azure

Arif Usman 421 Reputation points
2020-01-05T18:53:33.167+00:00

Folks,
Question about service account in Azure AD. I have MFA enable. I need an account to run my Microsoft flow (to create Azure user account and add user to Azure SG group). Issue is when I create AAD account, it uses MFA. What is the best way to create account in AAD (no on premise AD) account so I can use in Microsoft Flow connection.

Microsoft Entra ID
Microsoft Entra ID
A Microsoft Entra identity service that provides identity management and access control capabilities. Replaces Azure Active Directory.
20,092 questions
0 comments No comments
{count} votes

3 answers

Sort by: Most helpful
  1. Liam Kemp 1 Reputation point
    2020-01-05T19:32:47.033+00:00

    Hi Usarif,
    Keep in mind flow is a user based service, perhaps also look at logic apps or azure runbooks.
    However, You can exclude that specific account from MFA, or if you log in to flow manually with the service account under MFA and recreate any connections, that should also allow the flow to work.

    Liam

    0 comments No comments

  2. Arif Usman 421 Reputation points
    2020-01-05T19:46:16.953+00:00

    so i am trying to change connection (previously it is using my account) to service account I created (revoke mfa), but it is asking me following, how to disable this

    alt text

    0 comments No comments

  3. Vasil Michev 98,196 Reputation points MVP
    2020-01-06T07:27:25.567+00:00

    Depends on how you are enforcing MFA. If via the "traditional" experience, go to the MFA portal and change the user settings. If via Conditional access policy/security defaults, exclude the user from the policy.

    0 comments No comments