Moving from Delegated Authentication to Service Principal Name (SPN)

Tomas Humberto Montiel Alcantara 0 Reputation points
2025-02-19T10:21:59.94+00:00

Due to MFA enforcement on the 15th of March, the current delegated authentication setup will no longer be usable. Therefore, the goal is to transition to Service Principal Name (SPN) for authentication, specifically for Workload Identities.

There is an application that requires access to specific information within Teams, excluding sensitive data such as HR information. It has been observed that while granular access is possible in tools like SharePoint, Teams does not provide this level of granularity; it only allows for all or no access to data.

Is there a workaround to achieve this level of access granularity in Teams while maintaining least privilege access for the application using SPN?

Microsoft Identity Manager
Microsoft Identity Manager
A family of Microsoft products that manage a user's digital identity using identity synchronization, certificate management, and user provisioning.
763 questions
0 comments No comments
{count} votes

Your answer

Answers can be marked as Accepted Answers by the question author, which helps users to know the answer solved the author's problem.