Managing OAuth application requests
As an administrative best practice, you should periodically review OAuth application requests to ensure the applications listed are still required and that the permissions granted conform to your organization’s policies.
OAuth access and permissions can be reviewed in two places on the Microsoft 365 platform:
- Azure AD Enterprise applications
- The Microsoft 365 Defender portal
Let’s quickly take a look at each of these.
Reviewing Azure AD Enterprise applications
The easiest place to get the broadest view of all of your applications and permissions is in the Azure AD portal. You’ve already seen how to create applications and manage permissions, so this process will be very familiar:
- Navigate to the Azure portal (https://portal.azure.com) and navigate to Azure Active Directory | Enterprise applications.
- Under Manage, select All applications.
- Select an application to examine the permissions...