Hi Mario,
To enable Entra ID management, grant the following permissions (see the screenshot below) to the application registration in Entra ID.
| API / Permissions name | Type | Description | Admin consent required | Status |
|---|---|---|---|---|
| Microsoft Graph (6) | ||||
| AdministrativeUnit.ReadWrite.All | Application | Read and write all administrative units | Yes | Granted for gobias |
| Application.ReadWrite.All | Application | Read and write all applications | Yes | Granted for gobias |
| Application.ReadWrite.OwnedBy | Application | Manage apps that this app creates or owns | Yes | Granted for gobias |
| Directory.ReadWrite.All | Application | Read and write directory data | Yes | Granted for gobias |
| Group.ReadWrite.All | Application | Read and write all groups | Yes | Granted for gobias |
| User.DeleteRestore.All | Application | Delete and restore all users | Yes | Granted for gobias |
