NetworkAccessPolicy.Read.All
Allows the app to read your organization's security and routing network access policies on behalf of the signed-in user.
Graph Methods
Type: A = Application Permission, D = Delegate Permission
Delegate Permission
|
|
Id |
ba22922b-752c-446f-89d7-a2d92398fceb |
Consent Type |
User |
Display String |
Read security and routing policies for network access |
Description |
Allows the app to read your organization's security and routing network access policies on behalf of the signed-in user. |
Application Permission
|
|
Id |
8a3d36bf-cb46-4bcc-bec9-8d92829dab84 |
Display String |
Read all security and routing policies for network access |
Description |
Allows the app to read your organization's network access policies, without a signed-in user. |
Resources
Property |
Type |
Description |
branchId |
String |
Unique identifier or a specific reference assigned to a branchSite. Key. |
branchName |
String |
Display name assigned to a branchSite. |
links |
microsoft.graph.networkaccess.connectivityConfigurationLink collection |
List of connectivity configurations for deviceLink objects. |
Property |
Type |
Description |
deviceCount |
Int64 |
The number of devices that accessed the external tenant. |
lastAccessDateTime |
DateTimeOffset |
The timestamp of the most recent access to the external tenant. |
resourceTenantId |
String |
The tenant ID of the external tenant. |
resourceTenantName |
String |
The name of the external tenant. |
resourceTenantPrimaryDomain |
String |
The domain of the external tenant. |
usageStatus |
microsoft.graph.networkaccess.usageStatus |
The usage status of cross-tenant access. The possible values are frequentlyUsed , rarelyUsed , and unknownFutureValue . |
userCount |
Int64 |
The number of users that accessed the external tenant. |
Property |
Type |
Description |
deviceCount |
Int32 |
The number of unique devices that were seen. |
fqdn |
String |
The fully qualified domain name (FQDN) of the destination. |
ip |
String |
The internet protocol (IP) used to access the destination. |
lastAccessDateTime |
DateTimeOffset |
The most recent access DateTime. |
networkingProtocol |
microsoft.graph.networkaccess.networkingProtocol |
The set of communication rules and conventions that govern data transmission between devices in a network. The possible values are: ip , icmp , igmp , ggp , ipv4 , tcp , pup , udp , idp , ipv6 , ipv6RoutingHeader , ipv6FragmentHeader , ipSecEncapsulatingSecurityPayload , ipSecAuthenticationHeader , icmpV6 , ipv6NoNextHeader , ipv6DestinationOptions , nd , raw , ipx , spx , and spxII . |
port |
Int32 |
The numeric identifier that is associated with a specific endpoint in a network. |
trafficType |
microsoft.graph.networkaccess.trafficType |
The traffic classification. The possible values are internet , private , microsoft365 , and all . |
transactionCount |
Int32 |
The number of transactions. |
userCount |
Int32 |
The number of unique Microsoft Entra ID users that were seen. |
Property |
Type |
Description |
deviceId |
String |
A unique device ID. |
displayName |
String |
The display name for the device. |
isCompliant |
Boolean |
A value that indicates whether or not the device is compliant. |
lastAccessDateTime |
DateTimeOffset |
The most recent access time for the device. |
operatingSystem |
String |
The operating system on the device. |
trafficType |
microsoft.graph.networkaccess.trafficType |
The traffic classification. The possible values are: internet , private , microsoft365 , or all . |
Property |
Type |
Description |
bgpConfiguration |
microsoft.graph.networkaccess.bgpConfiguration |
The border gateway protocol specifies the IP address and ASN for directing traffic from a link to the edge. |
bandwidthCapacityInMbps |
Int64 |
Determines the maximum allowed Mbps (megabits per second) bandwidth from a branch site. The possible values are:250 ,500 ,750 ,1000 . |
deviceVendor |
microsoft.graph.networkaccess.deviceVendor |
Specifies the manufacturer of the deviceLink. The possible values are: barracudaNetworks , checkPoint , ciscoMeraki , citrix , fortinet , hpeAruba , netFoundry , nuage , openSystems , paloAltoNetworks , riverbedTechnology , silverPeak , vmWareSdWan , versa , other , unknownFutureValue . |
id |
String |
Identifier. Inherited from microsoft.graph.entity. |
ipAddress |
String |
Specifies the client IPv4 of the link |
lastModifiedDateTime |
DateTimeOffset |
last modified time. |
name |
String |
Name. |
tunnelConfiguration |
microsoft.graph.networkaccess.tunnelConfiguration |
The connectivity settings, including the protocol, IPSec policy, and preshared key, are specified for establishing connectivity. |
version |
String |
Version. |
Property |
Type |
Description |
createdDateTime |
DateTimeOffset |
The date and time when the filtering Policy was originally created. |
description |
String |
A description of the filtering policy. Inherited from microsoft.graph.networkaccess.policy. |
id |
String |
The identifier for the filtering policy. Inherited from microsoft.graph.entity. |
lastModifiedDateTime |
DateTimeOffset |
The date and time when a particular profile was last modified or updated. |
name |
String |
The display name for the filtering policy. Inherited from microsoft.graph.networkaccess.policy. |
Property |
Type |
Description |
action |
microsoft.graph.networkaccess.filteringPolicyAction |
The actions for filtering policies, offering "block" and "allow" options to specify whether to block or allow access based on the policy. The possible values are: block , allow . |
createdDateTime |
DateTimeOffset |
The date and time when the filtering Policy link was created. |
id |
String |
Unique identifier. Inherited from microsoft.graph.entity. |
lastModifiedDateTime |
DateTimeOffset |
The date and time when the policy was most recently modified. |
state |
microsoft.graph.networkaccess.status |
A value that tells whether the link is enabled or disabled. Inherited from microsoft.graph.networkaccess.policyLink. The allowed values are enabled and disabled . |
Property |
Type |
Description |
createdDateTime |
DateTimeOffset |
The date and time when the filteringProfile was created. |
description |
String |
A description of the filtering profile. Inherited from microsoft.graph.networkaccess.profile. |
id |
String |
The distinct identifier that is assigned to a specific profile. Inherited from microsoft.graph.entity. |
lastModifiedDateTime |
DateTimeOffset |
The date and time when a particular profile was last modified or updated. Inherited from microsoft.graph.networkaccess.profile. |
name |
String |
The name of the profile. Inherited from microsoft.graph.networkaccess.profile. |
priority |
Int64 |
The priority used to order the profile for processing within a list. |
state |
microsoft.graph.networkaccess.status |
The profile state. Inherited from microsoft.graph.networkaccess.profile. The possible values are: enabled , disabled . |
Property |
Type |
Description |
destinations |
microsoft.graph.networkaccess.ruleDestination collection |
Possible destinations and types of destinations accessed by the user in accordance with the network filtering policy, such as IP addresses and FQDNs/URLs. |
id |
String |
A unique ID for the rule. Inherited from microsoft.graph.entity. |
name |
String |
The display name of the rule. Inherited from microsoft.graph.networkaccess.policyRule. |
ruleType |
microsoft.graph.networkaccess.networkDestinationType |
The rule types that specify the basis for filtering. The possible values are url , fqdn , ipAddress , ipRange , ipSubnet , and webCategory . |
Property |
Type |
Description |
bgpRoutesAdvertisedCount |
Int32 |
The number of BGP routes advertised through tunnel. Inherited from microsoft.graph.networkaccess.remoteNetworkHealthEvent. |
createdDateTime |
DateTimeOffset |
The time that the event was generated, in UTC. Inherited from microsoft.graph.networkaccess.remoteNetworkHealthEvent. Supports $filter (ge , le ) and $orderby . |
description |
String |
A description for the event. Inherited from microsoft.graph.networkaccess.remoteNetworkHealthEvent. |
destinationIp |
String |
The IP address of the destination. Inherited from microsoft.graph.networkaccess.remoteNetworkHealthEvent. |
id |
String |
A unique identifier for each remoteNetworkHealthEvent. Inherited from microsoft.graph.networkaccess.remoteNetworkHealthEvent. |
receivedBytes |
Int64 |
The number of bytes sent from the destination to the source. |
remoteNetworkId |
String |
A unique identifier for each remoteNetwork site. Inherited from microsoft.graph.networkaccess.remoteNetworkHealthEvent. Supports $filter (eq ). |
sentBytes |
Int64 |
The number of bytes sent from the source to the destination for the connection or session. |
sourceIp |
String |
The public IP address. Inherited from microsoft.graph.networkaccess.remoteNetworkHealthEvent. |
status |
microsoft.graph.networkaccess.remoteNetworkHealthAliveStatus |
Alive status. The possible values are: alive , unknownFutureValue . |
Property |
Type |
Description |
blockedCount |
Int32 |
The number of transactions that were blocked. |
totalCount |
Int32 |
The total number of transactions. |
trafficType |
microsoft.graph.networkaccess.trafficType |
The trraffic classification. The possible values are internet , private , microsoft365 , and all . |
Property |
Type |
Description |
displayName |
String |
User display Name. |
lastAccessDateTime |
DateTimeOffset |
The date and time of the most recent access. |
trafficType |
microsoft.graph.networkaccess.trafficType |
The traffic classification. The possible values are internet , private , microsoft365 , and all . |
userId |
String |
The ID for the user. |
userPrincipalName |
String |
A unique identifier that is associated with a user in a system or directory. Typically, this value is an email address that is used for user authentication and identification. |
userType |
microsoft.graph.networkaccess.userType |
The user type. The possible values are member , guest , and unknownFutureValue . |
Property |
Type |
Description |
deviceCount |
Int32 |
The number of unique devices that were seen. |
transactionCount |
Int32 |
The number of transactions that were seen. |
userCount |
Int32 |
The number of unique Microsoft Entra ID users that were seen. |
webCategory |
microsoft.graph.networkaccess.webCategory |
The website category. |