Skip to content

[Feature Request]: Documentation - Security: Incident Response Scenario 'Pull the plug' #502

Description

@NickVAg

Please confirm:

  • I have searched existing feature requests (open and closed) and found no duplicates.
  • **Me or my organization is currently an active sponsor of the product at the $99,- level.

Problem Statement

Addition of security-info and suggestion on additional measures MSP's can take to 'pull the plug' on CIPP access to client tenants.

Scenario 1: Drop CIPP from GDAP groups
Scenario 2a: Revoke CIPP-SAM secrets in customer tenant
Scenario 2b: Remove/delete CIPP-SAM app registration in customer tenant

Can be achieved by creating own app registration and perhaps rolling out through CIPP even

(have not completed this myself yet. But thought to submit this and give back to the community)

Benefits for MSPs

Improves security and incident response if CIPP ever has an oopsie.

Value or Importance

Notable value, as it is an additional measure MSP's can implement to be able and quickly respond across their tenants at once. Only to be used as incident response (and hopefully never required to use). But great to have this in

PowerShell Commands (Optional)

No response

Activity

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Metadata

Metadata

Assignees

No one assigned

    Projects

    No projects

      Milestone

      No milestone

      Relationships

      None yet

      Development

      No branches or pull requests

      Issue actions