Add-AzureADMSServicePrincipalDelegatedPermissionClassification

Add a classification for a delegated permission.

Syntax

Add-AzureADMSServicePrincipalDelegatedPermissionClassification
   -ServicePrincipalId <String>
   -Classification <ClassificationEnum>
   -PermissionId <String>
   -PermissionName <String>
   [<CommonParameters>]

Description

The Add-AzureADMSServicePrincipalDelegatedPermissionClassification cmdlet creates a delegated permission classification for the given permission on service principal.

Examples

Example 1: Create Delegated Permission Classification

PS C:\> Add-AzureADMSServicePrincipalDelegatedPermissionClassification -ServicePrincipalId "95f56359-0165-4f80-bffb-c89d06cf2c6f" -PermissionId "205e70e5-aba6-4c52-a976-6d2d46c48043" -Classification Low -PermissionName "Sites.Read.All"

Classification : Low
Id             : 5XBeIKarUkypdm0tRsSAQwE
PermissionId   : 205e70e5-aba6-4c52-a976-6d2d46c48043
PermissionName : Sites.Read.All

This command creates a delegated permission classification for the given permission on the service principal.

Parameters

-Classification

The classification for a delegated permission. This parameter can take one of the following values:

  • "Low" - Specifies a classification for a permission as low impact.
  • "Medium" - Specifies a classification for a permission as medium impact.
  • "High" - Specifies a classification for a permission as high impact.
Type:ClassificationEnum
Position:Named
Default value:None
Required:True
Accept pipeline input:False
Accept wildcard characters:False

-PermissionId

The id for a delegated permission.

Type:String
Position:Named
Default value:None
Required:True
Accept pipeline input:False
Accept wildcard characters:False

-PermissionName

The name for a delegated permission.

Type:String
Position:Named
Default value:None
Required:True
Accept pipeline input:False
Accept wildcard characters:False

-ServicePrincipalId

The unique identifier of a service principal object in Azure Active Directory.

Type:String
Position:Named
Default value:None
Required:True
Accept pipeline input:True
Accept wildcard characters:False

Outputs

Microsoft.Online.Administration.DelegatedPermissionClassification