| title | Create customAppScope |
|---|---|
| description | Create a new customAppScope object for an RBAC provider. |
| ms.localizationpriority | medium |
| author | cubika |
| ms.subservice | entra-directory-management |
| doc_type | apiPageType |
| ms.date | 04/05/2024 |
Namespace: microsoft.graph
[!INCLUDE beta-disclaimer]
Create a new customAppScope object for an RBAC provider.
Currently only the Exchange Online RBAC provider is supported.
[!INCLUDE national-cloud-support]
Choose the permission or permissions marked as least privileged for this API. Use a higher privileged permission or permissions only if your app requires it. For details about delegated and application permissions, see Permission types. To learn more about these permissions, see the permissions reference.
[!INCLUDE permissions-table]
For an Exchange Online provider:
POST /roleManagement/exchange/customAppScopes| Name | Description |
|---|---|
| Authorization | Bearer {token}. Required. Learn more about authentication and authorization. |
| Content-Type | application/json. Required. |
In the request body, supply a JSON representation of a customAppScope object.
If successful, this method returns a 201 Created response code and a new customAppScope object in the response body.
The following example shows how to create a customAppScope object with type RecipientScope for an Exchange Online provider.
POST https://graph.microsoft.com/beta/roleManagement/exchange/customAppScopes
Content-type: application/json
{
"type": "RecipientScope",
"displayName": "Protected Exec Users",
"customAttributes": {
"Exclusive": false,
"RecipientFilter": "Title -like 'VP*'"
}
}[!INCLUDE sample-code] [!INCLUDE sdk-documentation]
[!INCLUDE sample-code] [!INCLUDE sdk-documentation]
[!INCLUDE sample-code] [!INCLUDE sdk-documentation]
[!INCLUDE sample-code] [!INCLUDE sdk-documentation]
[!INCLUDE sample-code] [!INCLUDE sdk-documentation]
[!INCLUDE sample-code] [!INCLUDE sdk-documentation]
[!INCLUDE sample-code] [!INCLUDE sdk-documentation]
The following example shows the response.
HTTP/1.1 201 Created
Content-type: application/json
{
"@odata.context": "https://graph.microsoft.com/beta/$metadata#roleManagement/exchange/customAppScopes/$entity",
"id": "ae242973-f38a-471f-bffd-f111451e940b",
"type": "RecipientScope",
"displayName": "Protected Exec Users",
"customAttributes": {
"Exclusive": false,
"RecipientFilter": "Title -like 'VP*'"
}
}