Skip to content

[Bug]: Remove obsolete Graph API #152

@silverhack

Description

@silverhack

What happened?
The Azure Active Directory Graph is deprecated and will be switched off on next week.

Microsoft Graph is fully integrated with Monkey365's use of MSGraph objects, so it is not necessary to use the old AAD Graph API for collecting information from tenant.

A variable was introduced several months ago that forces Monkey365 to use MSGraph API so it's safe to remove old collectors and any reference to graph.windows.net legacy API.

Collectors used to get MFA information from users, as well as rules (e.g. entra-iam-privileged-users-disabled-mfa.json) will be affected by this change.

I'll investigate how to add support to Microsoft Graph ClientId, due that permissions to list authentication methods using MSGraph was not included in both, Azure ClientId, and Azure PowerShell ClientId (both used by Monkey365 to interactive authentication).

Thanks,

Metadata

Metadata

Assignees

No one assigned

    Projects

    No projects

    Milestone

    No milestone

    Relationships

    None yet

    Development

    No branches or pull requests

    Issue actions