Step 1: Create the new application

  • Go to your Active Directory in Windows Azure and select Applications.

AADGE Step 1.jpg

  • Click on "ADD".

AADGE Step 2.jpg

  • Select "Add an application my organization is developing".

AADGE Step 3.jpg

  • Set "Aspire AAD Group Expander" as the application name and "Web application and/or web api" as application type. Click the arrow.

AADGE Step 4.jpg

AADGE Step 5.jpg

Step 2: Get the Client ID and Secret Key

  • Go to configure.

AADGE Step 6.jpg

  • Scroll down until you find the Client ID and the "Keys" Section. First copy and save the Client ID. Then select the duration for the new key.

AADGE Step 7.jpg

  • Click "Save".

AADGE Step 8.jpg

  • You'll now see the Client Key and it's expiration date. Copy this key and save it. It'll not appear again after you leave the page

AADGE Step 9.jpg

Step 3: Application Permissions

  • Scroll down to "Permissions to other applications".
  • Remove any current permission that the application has and just leave the "Read directory data" permission under Application Permissions.
  • Click "Save".

AADGE Step 10.jpg

  • No labels