Generating a client secret

Generate a client secret for your Microsoft™ Azure application registration to authenticate the application during the onboarding of Microsoft 365 Purview with IBM® Guardium® Exposure Manager.

About this task

A client secret is a credential that the application uses to prove its identity when requesting a token. You must copy the secret value immediately after creation because it is displayed only once. If you lose the value, you must create a new client secret.

Procedure

  1. In your app registration, select Certificates & secrets from the menu.
  2. Under Client secrets, click New client secret.
  3. In the Description field, enter a descriptive name for the secret, such as GEM Integration Secret.
  4. In the Expires section, select an expiration period.

    Select 12 months or 24 months. You must rotate the secret before it expires to prevent authentication failures.

  5. Click Add.
    The new secret appears in the Client secrets list with its value visible.
  6. In the Value column, copy the secret value and store it securely.
    Important: Copy the Value, not the Secret ID. The secret value is displayed only once. If you navigate away from this page before copying the value, you must create a new secret.

What to do next

Enter the copied secret value in the Client secret field on the onboarding screen of Microsoft 365 Purview with IBM Guardium Exposure Manager.