The Client Credential Flow option for Azure Active Directory (AD) in the Cloud Identity Engine
allows you to use a service account to log in to your Azure AD in the Cloud Identity
Engine. Using a service account is strongly recommended, as this is a more secure
method for directory access and does not require the account to be associated with a
specific user.
If this is the first
time you have created a Cloud Identity Engine tenant, the Cloud
Identity Engine app is not available in the Azure app gallery, so
you must create a custom app.
If you already have an existing
Azure AD configuration in the Cloud Identity Engine, you can easily migrate
the existing configuration to use the client credential flow option
by reconnecting your Azure AD to the Cloud Identity Engine, selecting
the Client Credential Flow option, and testing the connection to
verify the configuration.