web
You’re offline. This is a read only version of the page.
close
Skip to main content

Notifications

Announcements

Community site session details

Community site session details

Session Id :
Power Platform Community / Forums / Power Apps / Power Apps Azure Key V...
Power Apps
Suggested Answer

Power Apps Azure Key Vault Connector Sign-in Issue

(0) ShareShare
ReportReport
Posted on by 2
I have a canvas app that uses an in-app power automate flow with custom and built-in connector, connecting to Azure Key Vault, creating/updating/getting secrets.
 
When a user uses mobile to open up the canvas app, they will encounter a permissions pop-up which will require them to sign into all the required permissions including Azure Key Vault. Upon clicking sign in for Azure Key Vault, it will prompt them to enter the Key Vault name. Once the key vault name is keyed in, they will click create. However, it will only loop them back to the initial pop-up. This ends up as a loop.
 
Summary:
1. Permissions Pop-up -> Click Sign In on Azure Key Vault
2. Input Key Vault Name -> Click create
3. Goes back to Permissions Pop-up
4. Loops
 
Please help me out.
 
Categories:
I have the same question (0)
  • Suggested answer
    WillPage Profile Picture
    2,307 Super User 2025 Season 2 on at
    The chances are your user doesn't have the Key Vaults Secrets User role. You can get around this by going into the landing page of the flow and look at the Run-only users settings on the right. In here you can set the user context for the key vault connector from "provided by the run-only user" to the owner of the flow, which is hopefully a service account.

    If you want to get the secret as the run-only user then just create an Entra ID group for KV secrets users and put them in it then go give that group the role on the key vault.
  • J-Skript Profile Picture
    2 on at
     
    Prior to this, I have assigned all my user as Key Vault Secrets Officer in the Azure Key Vault IAM.
     
     
    I tried your suggestion that is to set the user context for the key vault connector from "provided by the run-only user" to the owner of the flow. However, the issue still persisted.
     
  • WillPage Profile Picture
    2,307 Super User 2025 Season 2 on at
    Unsure of your issue in that case, but there's another workaround. You can create an environment variable of the type Secret:
     
    Connect this to your key vault. It will create the connection for your user account.

    Now in the flow, instead of using the Azure KV connection directly, use Dataverse "Perform an ubound action" action. The action is RetrieveEnvironmentVariableSecretValue and yje EnvironmentVariableName input is whatever you called the environment variable. You can do all this in the default solution if you're not using solutions and ALM

Under review

Thank you for your reply! To ensure a great experience for everyone, your content is awaiting approval by our Community Managers. Please check back later.

Helpful resources

Quick Links

Forum hierarchy changes are complete!

In our never-ending quest to improve we are simplifying the forum hierarchy…

Ajay Kumar Gannamaneni – Community Spotlight

We are honored to recognize Ajay Kumar Gannamaneni as our Community Spotlight for December…

Leaderboard > Power Apps

#1
WarrenBelz Profile Picture

WarrenBelz 740 Most Valuable Professional

#2
Michael E. Gernaey Profile Picture

Michael E. Gernaey 342 Super User 2025 Season 2

#3
Power Platform 1919 Profile Picture

Power Platform 1919 268

Last 30 days Overall leaderboard