Ecosyste.ms: Awesome
An open API service indexing awesome lists of open source software.
https://github.com/tools4everbv/helloid-task-sa-target-azureactivedirectory-grouprevokemembership
Azure Active Directory - Group revoke membership
https://github.com/tools4everbv/helloid-task-sa-target-azureactivedirectory-grouprevokemembership
azure-active-directory delegated-form powershell product service-automation task
Last synced: about 2 months ago
JSON representation
Azure Active Directory - Group revoke membership
- Host: GitHub
- URL: https://github.com/tools4everbv/helloid-task-sa-target-azureactivedirectory-grouprevokemembership
- Owner: Tools4everBV
- Created: 2023-03-20T13:59:38.000Z (almost 2 years ago)
- Default Branch: main
- Last Pushed: 2024-01-09T09:19:45.000Z (12 months ago)
- Last Synced: 2024-01-09T10:47:16.771Z (12 months ago)
- Topics: azure-active-directory, delegated-form, powershell, product, service-automation, task
- Language: PowerShell
- Homepage:
- Size: 30.3 KB
- Stars: 0
- Watchers: 4
- Forks: 0
- Open Issues: 0
-
Metadata Files:
- Readme: readme.md
Awesome Lists containing this project
README
# HelloID-Task-SA-Target-AzureActiveDirectory-GroupRemoveMembership
## Prerequisites
Before using this snippet, verify you've met with the following requirements:
- [ ] AzureAD app registration
- [ ] The correct app permissions for the app registration
- [ ] User defined variables: `AADTenantID`, `AADAppID` and `AADAppSecret` created in your HelloID portal.
- [ ] Please see our documentation on how to create custom variables: (https://docs.helloid.com/en/variables/custom-variables.html)## Description
This code snippet executes the following tasks:
1. Define a hash table `$formObject`. The keys of the hash table represent the properties to revoke a membership from a group, while the values represent the values entered in the form.
> To view an example of the form output, please refer to the JSON code pasted below.
```json
{
"GroupIdentity": "43539ed2-85df-4c3a-9b5a-c03ed1e605bb",
"MembersToRevoke": [
{
"UserId": "userId1",
"userPrincipalName": "[email protected]"},
{
"UserId": "userId2",
"userPrincipalName": "[email protected]"
}
]
}
```> :exclamation: It is important to note that the names of your form fields might differ. Ensure that the `$formObject` hashtable is appropriately adjusted to match your form fields.
> [See the Microsoft Docs page](https://learn.microsoft.com/en-us/graph/api/group-delete-members?view=graph-rest-1.0&tabs=http)2. Receive a bearer token by making a POST request to: `https://login.microsoftonline.com/$AADTenantID/oauth2/token`, where `$AADTenantID` is the ID of your Azure Active Directory tenant.
3. Revoke the membership from a group using the: `Invoke-RestMethod` cmdlet. The hash table called: `$formObject` is passed to the body of the: `Invoke-RestMethod` cmdlet as a JSON object.