Enterprise Application Add Assignment - Disabled Roles

rschiefer 6 Reputation points
2020-08-03T16:25:27.377+00:00

Why are some of the roles disabled on the Enterprise Applications Add Assignment wizard?

All the roles were previously enabled.

I am currently using these "disabled" roles on login for users who were already assigned the roles but I can't assign the disabled roles to new users.

This is for SSO to AWS.

Microsoft Security | Active Directory Federation Services
Microsoft Security | Microsoft Entra | Microsoft Entra ID
0 comments No comments
{count} votes

1 answer

Sort by: Most helpful
  1. soumi-MSFT 11,831 Reputation points Microsoft Employee Moderator
    2020-08-04T06:37:53.03+00:00

    @rschiefer , Thank you for reaching out. Can you check the app manifest for the AWS application under the Application Registration portal and check for the role name under the appRoles array. Look for the appRoles and check if the isEnabled key for each of those are set to true or false. If they are showing as disabled mostly they might have got disabled from app manifest somehow.

    Hope this helps.

    Do let us know if this helps and if there are any more queries around this, please do let us know so that we can help you further. Also, please do not forget to accept the response as Answer; if the above response helped in answering your query.


Your answer

Answers can be marked as Accepted Answers by the question author, which helps users to know the answer solved the author's problem.