You signed in with another tab or window. Reload to refresh your session.You signed out in another tab or window. Reload to refresh your session.You switched accounts on another tab or window. Reload to refresh your session.Dismiss alert
The terraform configuration should have created a Conditional Access policy
Actual Behavior
│ Error: Could not create conditional access policy
│
│ with azuread_conditional_access_policy.ca02,
│ on conditional-access.tf line 56, in resource "azuread_conditional_access_policy""ca02":
│ 56: resource "azuread_conditional_access_policy""ca02" {
│
│ unexpected status 400 (400 Bad Request) with error: BadRequest: 1058: Unsupported control for B2C policies. Only Block, Mfa, and MfaAndChangePassword grant controls are allowed.
Using "Mfa" instead causes this error:
│ Error: expected grant_controls.0.built_in_controls.0 to be one of ["approvedApplication""block""compliantApplication""compliantDevice""domainJoinedDevice""mfa""passwordChange"], got Mfa
│
│ with azuread_conditional_access_policy.ca02,
│ on conditional-access.tf line 98, in resource "azuread_conditional_access_policy""ca02":
│ 98:built_in_controls=["Mfa"]
Steps to Reproduce
Log into an account with Conditional Access Administrator or Global Administrator
Create a terraform config file of a Condtional Access policy with "mfa" requirement.
Community Note
Terraform (and AzureAD Provider) Version
Affected Resource(s)
azuread_conditional_access_policy
Terraform Configuration Files
Expected Behavior
The terraform configuration should have created a Conditional Access policy
Actual Behavior
Using "Mfa" instead causes this error:
Steps to Reproduce
Conditional Access Administrator
orGlobal Administrator
terraform apply
References
The text was updated successfully, but these errors were encountered: