Forum Discussion
The final push to GA "Azure AD in new Azure Portal": We need your help!
Nasos_Kladakis one of the most common complaints/comments around the Azure AD blade is the fact that "regular" users get access to it. Now, I know you honor the UsersPermissionToReadOtherUsersEnabled setting, however other potentially sensitive information can be found there. Have you considered anything in this regard?
Granted, the same is true for the PowerShell modules, but the argument people make there is that PowerShell requires additional steps/install, and using the portal is just easy. I know some big changes are coming there that might address this (and I still hate you guys for not including O365 MVPs :p), but still.
Hey Vasil - we got this request a fair bit, so we added a setting. If you go to "User settings", there's a setting that says "Restrict access to Azure AD administration portal" which controls non-admin access. This just governs the portal experience - Graph/Powershell continue to have the same access.
- VasilMichevMar 22, 2017MVP
Awesome! Is there any document/blog post that mentions this, so I can use it as quick reference?
- Ilana SmithMar 22, 2017
Microsoft
It's one of a collection of small changes made in response to feedback; I don't think it has been doc'd yet.- VasilMichevMar 23, 2017MVP
Well I can always link back to this thread as "official" source I guess :)