Please confirm:
Problem Statement
Addition of security-info and suggestion on additional measures MSP's can take to 'pull the plug' on CIPP access to client tenants.
Scenario 1: Drop CIPP from GDAP groups
Scenario 2a: Revoke CIPP-SAM secrets in customer tenant
Scenario 2b: Remove/delete CIPP-SAM app registration in customer tenant
Can be achieved by creating own app registration and perhaps rolling out through CIPP even
(have not completed this myself yet. But thought to submit this and give back to the community)
Benefits for MSPs
Improves security and incident response if CIPP ever has an oopsie.
Value or Importance
Notable value, as it is an additional measure MSP's can implement to be able and quickly respond across their tenants at once. Only to be used as incident response (and hopefully never required to use). But great to have this in
PowerShell Commands (Optional)
No response
Please confirm:
Problem Statement
Addition of security-info and suggestion on additional measures MSP's can take to 'pull the plug' on CIPP access to client tenants.
Scenario 1: Drop CIPP from GDAP groups
Scenario 2a: Revoke CIPP-SAM secrets in customer tenant
Scenario 2b: Remove/delete CIPP-SAM app registration in customer tenant
Can be achieved by creating own app registration and perhaps rolling out through CIPP even
(have not completed this myself yet. But thought to submit this and give back to the community)
Benefits for MSPs
Improves security and incident response if CIPP ever has an oopsie.
Value or Importance
Notable value, as it is an additional measure MSP's can implement to be able and quickly respond across their tenants at once. Only to be used as incident response (and hopefully never required to use). But great to have this in
PowerShell Commands (Optional)
No response