Forum Discussion

JMSHW0420's avatar
JMSHW0420
Iron Contributor
Sep 15, 2024
Solved

Azure Lighthouse: Updated Entra ID Group used for Authorization with new Users

With Azure Lighthouse and the managed tenant, when applying additional users to a related Entra ID group used for authorization, how do you identify the issues when those users show they do not have access to valid customer tenants and their resources, such as Log Analytics Workspaces?

  • This has now been resolved.

    Any redeployment of an updated ARM template to a Customer’s tenant will impact the visibility of that Customer’s Azure Subscription in the Azure Lighthouse of the managing tenant.

    To ensure visibility, ensure…

    Each user in the Entra ID group reapplies (add/tick) the relevant customer subscription to the global subscription filter in the Customers pane of Azure Lighthouse.

2 Replies

  • Reapplying the customer subscription to the global filter worked perfectly. I'll make sure to follow this process after any ARM template redeployments in the future to maintain visibility in Azure Lighthouse.
  • JMSHW0420's avatar
    JMSHW0420
    Iron Contributor
    This has now been resolved.

    Any redeployment of an updated ARM template to a Customer’s tenant will impact the visibility of that Customer’s Azure Subscription in the Azure Lighthouse of the managing tenant.

    To ensure visibility, ensure…

    Each user in the Entra ID group reapplies (add/tick) the relevant customer subscription to the global subscription filter in the Customers pane of Azure Lighthouse.

Resources