-
Notifications
You must be signed in to change notification settings - Fork 206
/
Copy pathGet-PAFPowerAppRoleAssignment.ps1
103 lines (85 loc) · 3.49 KB
/
Get-PAFPowerAppRoleAssignment.ps1
1
2
3
4
5
6
7
8
9
10
11
12
13
14
15
16
17
18
19
20
21
22
23
24
25
26
27
28
29
30
31
32
33
34
35
36
37
38
39
40
41
42
43
44
45
46
47
48
49
50
51
52
53
54
55
56
57
58
59
60
61
62
63
64
65
66
67
68
69
70
71
72
73
74
75
76
77
78
79
80
81
82
83
84
85
86
87
88
89
90
91
92
93
94
95
96
97
98
99
100
101
102
103
#Requires -Version 5.0
#Requires -Modules Microsoft.PowerApps.Administration.PowerShell
<#
.SYNOPSIS
Returns permission information about one or more apps
.DESCRIPTION
.NOTES
This PowerShell script was developed and optimized for ScriptRunner. The use of the scripts requires ScriptRunner.
The customer or user is authorized to copy the script from the repository and use them in ScriptRunner.
The terms of use for ScriptRunner do not apply to this script. In particular, ScriptRunner Software GmbH assumes no liability for the function,
the use and the consequences of the use of this freely available script.
PowerShell is a product of Microsoft Corporation. ScriptRunner is a product of ScriptRunner Software GmbH.
© ScriptRunner Software GmbH
.COMPONENT
Requires Module Microsoft.PowerApps.Administration.PowerShell
Requires Library script PAFLibrary.ps1
.LINK
https://github.com/scriptrunner/ActionPacks/tree/master/O365/PowerApps/Apps
.Parameter PACredential
Provides the user ID and password for PowerApps credentials
.Parameter AppName
The connection identifier
.Parameter EnvironmentName
The connections's environment
.Parameter UserId
The objectId of a user or group, if specified, this function will only return role assignments for that user or group
.Parameter ApiVersion
The api version to call with
.Parameter Properties
List of properties to expand. Use * for all properties
#>
[CmdLetBinding()]
Param(
[Parameter(Mandatory = $true,ParameterSetName = 'App')]
[Parameter(Mandatory = $true,ParameterSetName = 'User')]
[Parameter(Mandatory = $true,ParameterSetName = 'Environment')]
[pscredential]$PACredential,
[Parameter(Mandatory = $true,ParameterSetName = 'App')]
[string]$AppName,
[Parameter(ParameterSetName = 'App')]
[Parameter(ParameterSetName = 'User')]
[Parameter(ParameterSetName = 'Environment')]
[string]$ApiVersion,
[Parameter(Mandatory = $true,ParameterSetName = 'App')]
[Parameter(Mandatory = $true,ParameterSetName = 'Environment')]
[string]$EnvironmentName,
[Parameter(Mandatory = $true,ParameterSetName = 'Environment')]
[Parameter(Mandatory = $true,ParameterSetName = 'User')]
[Parameter(ParameterSetName = 'App')]
[string]$UserId,
[ValidateSet('*','PrincipalDisplayName','RoleName','RoleId','PrincipalEmail','AppName','EnvironmentName','PrincipalObjectId','PrincipalType','RoleType','Internal')]
[string[]]$Properties = @('PrincipalDisplayName','RoleName','RoleId','PrincipalEmail','AppName','EnvironmentName')
)
Import-Module Microsoft.PowerApps.Administration.PowerShell
try{
ConnectPowerApps -PAFCredential $PACredential
[hashtable]$getArgs = @{'ErrorAction' = 'Stop'}
if($PSCmdlet.ParameterSetName -eq 'App'){
$getArgs.Add('AppName',$AppName)
$getArgs.Add('EnvironmentName',$EnvironmentName)
}
elseif($PSCmdlet.ParameterSetName -eq 'User'){
$getArgs.Add('UserId',$UserId)
}
elseif($PSCmdlet.ParameterSetName -eq 'Environment'){
$getArgs.Add('UserId',$UserId)
$getArgs.Add('EnvironmentName',$EnvironmentName)
}
if($PSBoundParameters.ContainsKey('ApiVersion')){
$getArgs.Add('ApiVersion',$ApiVersion)
}
$result = Get-AdminPowerAppRoleAssignment @getArgs | Select-Object $Properties
if($SRXEnv) {
$SRXEnv.ResultMessage = $result
}
else{
Write-Output $result
}
}
catch{
throw
}
finally{
DisconnectPowerApps
}