Hi
I am wondering, if some one redirect me any MS document which they discuss about best practices when Online D365 connect to any Azure End Point such as Web App or AKV.
there is some alternative that i am aware of such as using App registration create SPN first, from your CRM plug-in call Azure Web App by using Azure AD bearer token first and pass the token information via browser header to Web App. but the issue is, in this case if someone know the secret then this can Web app get access from any where in the world and other issue in this scenario it uses single factor authentication.
there are some other option using
- Work load identity but I don't believe it will not work when traffic initiated from D365 to Azure Web APP but any suggestion or comments are welcome.
- Managed Identity if possible but again Traffic initiate from D365 to Azure Web APP
Thanks