true if the service principal account is enabled; otherwise, false.
Parameter properties
Type:
System.Management.Automation.SwitchParameter
Default value:
False
Supports wildcards:
False
DontShow:
False
Parameter sets
CreateExpanded
Position:
Named
Mandatory:
False
Value from pipeline:
False
Value from pipeline by property name:
False
Value from remaining arguments:
False
-IsProcessing
Indicates whether Microsoft Entra ID is currently processing the service principal's risky state.
Parameter properties
Type:
System.Management.Automation.SwitchParameter
Default value:
False
Supports wildcards:
False
DontShow:
False
Parameter sets
CreateExpanded
Position:
Named
Mandatory:
False
Value from pipeline:
False
Value from pipeline by property name:
False
Value from remaining arguments:
False
-Proxy
The URI for the proxy server to use
Parameter properties
Type:
System.Uri
Supports wildcards:
False
DontShow:
False
Parameter sets
(All)
Position:
Named
Mandatory:
False
Value from pipeline:
False
Value from pipeline by property name:
False
Value from remaining arguments:
False
-ProxyCredential
Credentials for a proxy server to use for the remote call
Parameter properties
Type:
System.Management.Automation.PSCredential
Supports wildcards:
False
DontShow:
False
Parameter sets
(All)
Position:
Named
Mandatory:
False
Value from pipeline:
False
Value from pipeline by property name:
False
Value from remaining arguments:
False
-ProxyUseDefaultCredentials
Use the default credentials for the proxy
Parameter properties
Type:
System.Management.Automation.SwitchParameter
Default value:
False
Supports wildcards:
False
DontShow:
False
Parameter sets
(All)
Position:
Named
Mandatory:
False
Value from pipeline:
False
Value from pipeline by property name:
False
Value from remaining arguments:
False
-ResponseHeadersVariable
Optional Response Headers Variable.
Parameter properties
Type:
System.String
Supports wildcards:
False
DontShow:
False
Aliases:
RHV
Parameter sets
(All)
Position:
Named
Mandatory:
False
Value from pipeline:
False
Value from pipeline by property name:
False
Value from remaining arguments:
False
-RiskDetail
riskDetail
Parameter properties
Type:
System.String
Supports wildcards:
False
DontShow:
False
Parameter sets
CreateExpanded
Position:
Named
Mandatory:
False
Value from pipeline:
False
Value from pipeline by property name:
False
Value from remaining arguments:
False
-RiskLastUpdatedDateTime
The date and time that the risk state was last updated.
The DateTimeOffset type represents date and time information using ISO 8601 format and is always in UTC time.
For example, midnight UTC on Jan 1, 2021 is 2021-01-01T00:00:00Z.
Supports $filter (eq).
Parameter properties
Type:
System.DateTime
Supports wildcards:
False
DontShow:
False
Parameter sets
CreateExpanded
Position:
Named
Mandatory:
False
Value from pipeline:
False
Value from pipeline by property name:
False
Value from remaining arguments:
False
-RiskLevel
riskLevel
Parameter properties
Type:
System.String
Supports wildcards:
False
DontShow:
False
Parameter sets
CreateExpanded
Position:
Named
Mandatory:
False
Value from pipeline:
False
Value from pipeline by property name:
False
Value from remaining arguments:
False
-RiskState
riskState
Parameter properties
Type:
System.String
Supports wildcards:
False
DontShow:
False
Parameter sets
CreateExpanded
Position:
Named
Mandatory:
False
Value from pipeline:
False
Value from pipeline by property name:
False
Value from remaining arguments:
False
-ServicePrincipalType
Identifies whether the service principal represents an Application, a ManagedIdentity, or a legacy application (socialIdp).
This is set by Microsoft Entra ID internally and is inherited from servicePrincipal.
Parameter properties
Type:
System.String
Supports wildcards:
False
DontShow:
False
Parameter sets
CreateExpanded
Position:
Named
Mandatory:
False
Value from pipeline:
False
Value from pipeline by property name:
False
Value from remaining arguments:
False
-WhatIf
Runs the command in a mode that only reports what would happen without performing the actions.
Parameter properties
Type:
System.Management.Automation.SwitchParameter
Supports wildcards:
False
DontShow:
False
Aliases:
wi
Parameter sets
(All)
Position:
Named
Mandatory:
False
Value from pipeline:
False
Value from pipeline by property name:
False
Value from remaining arguments:
False
CommonParameters
This cmdlet supports the common parameters: -Debug, -ErrorAction, -ErrorVariable,
-InformationAction, -InformationVariable, -OutBuffer, -OutVariable, -PipelineVariable,
-ProgressAction, -Verbose, -WarningAction, and -WarningVariable. For more information, see
about_CommonParameters.
To create the parameters described below, construct a hash table containing the appropriate properties.
For information on hash tables, run Get-Help about_Hash_Tables.
BODYPARAMETER <IMicrosoftGraphRiskyServicePrincipal>: riskyServicePrincipal
[(Any) <Object>]: This indicates any property can be added to this object.
[Id <String>]: The unique identifier for an entity.
Read-only.
[AppId <String>]: The globally unique identifier for the associated application (its appId property), if any.
[DisplayName <String>]: The display name for the service principal.
[History <IMicrosoftGraphRiskyServicePrincipalHistoryItem[]>]: Represents the risk history of Microsoft Entra service principals.
[AppId <String>]: The globally unique identifier for the associated application (its appId property), if any.
[DisplayName <String>]: The display name for the service principal.
[History <IMicrosoftGraphRiskyServicePrincipalHistoryItem[]>]: Represents the risk history of Microsoft Entra service principals.
[IsEnabled <Boolean?>]: true if the service principal account is enabled; otherwise, false.
[IsProcessing <Boolean?>]: Indicates whether Microsoft Entra ID is currently processing the service principal's risky state.
[RiskDetail <String>]: riskDetail
[RiskLastUpdatedDateTime <DateTime?>]: The date and time that the risk state was last updated.
The DateTimeOffset type represents date and time information using ISO 8601 format and is always in UTC time.
For example, midnight UTC on Jan 1, 2021 is 2021-01-01T00:00:00Z.
Supports $filter (eq).
[RiskLevel <String>]: riskLevel
[RiskState <String>]: riskState
[ServicePrincipalType <String>]: Identifies whether the service principal represents an Application, a ManagedIdentity, or a legacy application (socialIdp).
This is set by Microsoft Entra ID internally and is inherited from servicePrincipal.
[Id <String>]: The unique identifier for an entity.
Read-only.
[Activity <IMicrosoftGraphRiskServicePrincipalActivity>]: riskServicePrincipalActivity
[(Any) <Object>]: This indicates any property can be added to this object.
[Detail <String>]: riskDetail
[RiskEventTypes <String[]>]: The type of risk event detected.
The possible values are: investigationsThreatIntelligence, generic, adminConfirmedServicePrincipalCompromised, suspiciousSignins, leakedCredentials, anomalousServicePrincipalActivity, maliciousApplication, suspiciousApplication.
[InitiatedBy <String>]: The identifier of the actor of the operation.
[IsEnabled <Boolean?>]: true if the service principal account is enabled; otherwise, false.
[IsProcessing <Boolean?>]: Indicates whether Microsoft Entra ID is currently processing the service principal's risky state.
[RiskDetail <String>]: riskDetail
[RiskLastUpdatedDateTime <DateTime?>]: The date and time that the risk state was last updated.
The DateTimeOffset type represents date and time information using ISO 8601 format and is always in UTC time.
For example, midnight UTC on Jan 1, 2021 is 2021-01-01T00:00:00Z.
Supports $filter (eq).
[RiskLevel <String>]: riskLevel
[RiskState <String>]: riskState
[ServicePrincipalType <String>]: Identifies whether the service principal represents an Application, a ManagedIdentity, or a legacy application (socialIdp).
This is set by Microsoft Entra ID internally and is inherited from servicePrincipal.
HISTORY <IMicrosoftGraphRiskyServicePrincipalHistoryItem[]>: Represents the risk history of Microsoft Entra service principals.
[AppId <String>]: The globally unique identifier for the associated application (its appId property), if any.
[DisplayName <String>]: The display name for the service principal.
[History <IMicrosoftGraphRiskyServicePrincipalHistoryItem[]>]: Represents the risk history of Microsoft Entra service principals.
[IsEnabled <Boolean?>]: true if the service principal account is enabled; otherwise, false.
[IsProcessing <Boolean?>]: Indicates whether Microsoft Entra ID is currently processing the service principal's risky state.
[RiskDetail <String>]: riskDetail
[RiskLastUpdatedDateTime <DateTime?>]: The date and time that the risk state was last updated.
The DateTimeOffset type represents date and time information using ISO 8601 format and is always in UTC time.
For example, midnight UTC on Jan 1, 2021 is 2021-01-01T00:00:00Z.
Supports $filter (eq).
[RiskLevel <String>]: riskLevel
[RiskState <String>]: riskState
[ServicePrincipalType <String>]: Identifies whether the service principal represents an Application, a ManagedIdentity, or a legacy application (socialIdp).
This is set by Microsoft Entra ID internally and is inherited from servicePrincipal.
[Id <String>]: The unique identifier for an entity.
Read-only.
[Activity <IMicrosoftGraphRiskServicePrincipalActivity>]: riskServicePrincipalActivity
[(Any) <Object>]: This indicates any property can be added to this object.
[Detail <String>]: riskDetail
[RiskEventTypes <String[]>]: The type of risk event detected.
The possible values are: investigationsThreatIntelligence, generic, adminConfirmedServicePrincipalCompromised, suspiciousSignins, leakedCredentials, anomalousServicePrincipalActivity, maliciousApplication, suspiciousApplication.
[InitiatedBy <String>]: The identifier of the actor of the operation.