Forum Discussion
RippieUK
May 05, 2020Brass Contributor
Re. App Registrations and Ent Apps user settings
Hi all, I need some help trying to understand this better so I can set the correct settings. In Azure AD under User Settings, there is a section about App Registrations with a YES / NO toggle s...
- May 05, 2020Hi Ronnie
I have blogged about that one: https://365bythijs.be/2020/01/05/protecting-against-oauth-attacks-setting-up-admin-consent-workflow/
To summarize:
I agree with your choice to disable user consent to applications, for security reasons. It is safer that way.
If you approve the app for one user, another user can get access to that app without needing approval from you again
Thijs Lecomte
May 05, 2020Bronze Contributor
Hi Ronnie
I have blogged about that one: https://365bythijs.be/2020/01/05/protecting-against-oauth-attacks-setting-up-admin-consent-workflow/
To summarize:
I agree with your choice to disable user consent to applications, for security reasons. It is safer that way.
If you approve the app for one user, another user can get access to that app without needing approval from you again
I have blogged about that one: https://365bythijs.be/2020/01/05/protecting-against-oauth-attacks-setting-up-admin-consent-workflow/
To summarize:
I agree with your choice to disable user consent to applications, for security reasons. It is safer that way.
If you approve the app for one user, another user can get access to that app without needing approval from you again
RippieUK
May 05, 2020Brass Contributor
Thijs Lecomte Thank you for confirming 🙂 I am glad I was not completely far off with this 🙂