Forum Discussion
Unable to connect Azure Devops Repo to customer Sentinel
Hi gsk256, tomsolari_kmt
To solve your Lighthouse woes 🙂
Owner Grants full access to manage all resources, including the ability to assign roles in Azure RBAC. 8e3af657-a8ff-443c-a75c-2fe8c4bcb635
Are you saying I can grant Owner rights via RBAC? I didn't see that option in the template builder for Lighthouse. Do I need to scope the role to a Resource Group instead of a subscription?
- bradleyfellFeb 01, 2022Copper ContributorUpdate:
Just tried to test this for myself, I was largely mistaken -
That stinks...- bradleyfellFeb 06, 2022Copper ContributorBump, anyone have a solution?
Microsoft working on this?
Workaround for now is to use GitHub.- danielmanganFeb 23, 2022Copper Contributor
bradleyfell, we're trying to connect a GitHub repo to a Sentinel instance from an MSSP subscription into an onboarded 'customer' subscription, but coming across the same permission problem. Is there a specific permission we need to delegate in order to make this work, without having to go through the b2b invite/owner role assignment at the rg level? Any clues greatly appreciated.
- bradleyfellJan 31, 2022Copper Contributor
Correct,
should look something like this:
{
"principalId": "",
"roleDefinitionId": "8e3af657-a8ff-443c-a75c-2fe8c4bcb635",
"principalIdDisplayName": "[Your Naming Convention]"
},
Update: Owner role is not supported with Lighthouse