Skip to main content

Microsoft password reset service

Permissions

Application Permissions

Your application runs as a background service or daemon without a signed-in user.

RoleRole IdDisplay NameDescription
PasswordWriteback.OffboardClient.All69201c67-737b-4a20-8f16-e0c8c64e0b0eRead, write and manage Microsoft Entra Connect Sync AgentAllows the app to uninstall Microsoft Entra Connect Sync Agent and offboard SSPR for the tenant
PasswordWriteback.RefreshClient.Allfc7e8088-95b5-453e-8bef-b17ecfec5ba3Read, write and manage self-service password reset writeback configurationAllows the app to refresh and recreate on-premises configuration for Microsoft self-service password reset.
PasswordWriteback.RegisterClientVersion.Alle006e431-a65b-4f3e-8808-77d29d4c5f1aRead, write and manage Microsoft Entra Connect Sync AgentAllows the app to register a newer version of on-premises Microsoft Entra Connect Sync Agent.

Delegated Permissions

Your application needs to access the API as the signed-in user.

RoleRole IdDisplay NameDescription
Directory.AccessAsUser.All7757dd34-1b17-4123-afba-9bdbeeb48d1aDirectory.AccessAsUser.AllDirectory.AccessAsUser.All