Before You Begin
You will need the following information to complete this procedure:
Azure tenant ID, application (client) ID, and client secret from an Azure Active Directory service principal.
Minimum required permissions on Azure: the service principal must have the API Management Service Contributor role, or equivalent read and write access, on the target Azure API Management instance.
Azure subscription ID, resource group name, and API Management service name for the target instance.
Credentials: Choose between user credentials or shared credentials.
Note: No VSatellite is required. The connector operates against the Azure management plane over outbound HTTPS only.
Note: Azure Managed Identity is not yet supported as a connection option. A long-lived Azure AD application secret is required.
Note: Certificates sourced from Microsoft Azure Key Vault are flagged during discovery. Provisioning installs uploaded (Custom) certificates and converts Azure Key Vault-backed hostnames to Custom. The Azure Key Vault reference is preserved for non-targeted domains.