Skip to content

Conversation

@romisfrag
Copy link

I have created a Get-DirectoryRoles cmdlet for the Recon module to retrieve all the entra ID (directory) roles and their associated members, a switch exist to request only builtin roles or customs roles. Cmdlet tested against test tenant working well.
Actually this is just a copy paste from the existing Get-SecurityGroups Cmdlet but adapted for the entra ID (directory) roles.

It's data that is better to visualize in azure hound, but it's nice to get a quick overview when performing recon with GraphRunner. Hope you like this initiative.

I'am planning on making a cmdlet that assign a role to a user, group or service principal for the Persistence module (tell me before I made it, but I think it could be usefull)

…ectory) roles and their associated members, a switch exist to request only builtin roles or customs roles. Cmdlet tested against test tenant working well
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

1 participant