Change a Client Secret for Azure Active Directory

You must change your client secret for Azure Active Directory every 90 days as a best practice.

Important

This procedure is partly completed on the Microsoft Entra admin center. The application is subject to change without notice. Consult the Microsoft documentation, for example, see What is the Microsoft Entra admin center?.

Change Client Secret for the Azure App on Microsoft Entra Admin Center

  1. Log on to the Microsoft Entra admin center.

  2. In the navigation pane, go to App registrations.

    The App registrations page appears.

  3. Select the Azure Active Directory app from the list of applications displayed.

    You can also use the Search box to find the app.

    The Overview page of the app appears.

  4. From the left pane, select Certificates & secrets.

    Client Secret Update Certificates and Secrets

  5. Above Description, click New client secret.

    The Add a client secret screen appears.

  6. Provide the required details and then click Add.

    • Description: Provide a descriptive name for your client secret.

    • Expires: Select 90 days (3 months) from the dropdown.

    Copy and paste the client secret Value in a secure location that you can access later.

  7. From the list of client secrets, delete the old secret using the Delete button.

    As a best practice, delete all old client secrets.

    Client Secret Update Delete Client Secret

Update Client Secret for Azure app in the Command Center

  1. From the Command Center navigation pane, go to Protect > Active Directory.

    The Overview page appears.

  2. On the Apps tab, click the Azure AD app.

    The Overview page of the app appears.

  3. On the Configuration tab, in the Azure AD connection settings tile, in the row of the Azure AD, click the action button actions button, and then click Edit.

    The Edit Azure app dialog box appears.

  4. In the Application secret box, enter the new client secret, and then click Save.

    Once you have updated the client secret in the Command Center, delete the copied client secret Value.

×

Loading...