logoalt Hacker News

kbrkbrtoday at 10:31 AM1 replyview on HN

Oh my goodness, yes. And how often their role assumption does not work!

I need privileges to do thing A, so I assume the role, and even though the role is shown as active, the buttons are still greyed out. Sometimes it works after 10 minutes and 7x F5, most often however I do a complete relogin with MFA in an incognito window. Not distracting at all, and even that does not work sometimes.


Replies

hypeateitoday at 10:52 AM

Using a magic link[0] from Microsoft refreshes the token instantly, but you have to do in a new tab. It's worked for me anytime permissions don't update after checking out a PIM role.

0: https://aka.ms/pim/tokenrefresh

show 1 reply