Make a App for AzureAD PIM to activate my roles
Please Make a App for AzureAD PIM to activate my roles - so that the admin user that's only are using portal.office.com need to go into portal.azure.com to active the PIM roles (like global admin)
A 3rd party app is not a solution, I do not trust this app with my global admin role.
It is an expected function for the azure app/office 365 management app or both.
Bart Michel commented
Make PIM more useable!! or perhaps add this feature to the Azure app That would be great
rather than doing this can we have az-cli access to activate roles ?
Chandru Saravanan commented
Yes pleased include PIM in Azure App. We are not able to use the app because of it
Privileged Identity Management (PIM) is subcategory of Identity Management. Its purpose is to focus on privileged accounts, important accounts used by the team of IT administrators. To know more >> http://bit.ly/pim_solutions
Bruno Lecoq commented
We use the Easy PIM app from adaQuest (iOS, Android, and Windows App) and it does the job
Nick Fields commented
I consider the adaquest software inappropriate for this as using third party software could allow them access to your tenant through your credentials (in spite of whatever controls they might put in place). If this could even just be natively added for admins in the O365 portal it would be nice so that they don't have to go to one portal to elevate, then the other to do their work.
not sure why this is under review its already capable to do this.
Peter Selch Dahl commented
Per Larsen mentioned these the other day. They require a yearly payment, but seems to do the job.
This app exists and is available in preview in all stores. Yes, it works on your Android or iOS phone!
Go and check out Easy PIM for Azure!
Richard Diver commented
You can create this yourself today in just a few clicks, using the "Enterprise Applications" feature of Azure AD. The tile it creates will then be visible in both Myapps.microsoft.com and portal.office.com/myapps
It would be great to have it linked to the Authenticator App though, ensuring MFA at the same time as requesting the enablement :)