JIT Role Templates
A JIT Role Template is a named allow-list of Entra ID directory roles. Assigning one to a CIPP custom role restricts members of that role to only grant the roles in the template when creating a JIT Admin, and they can only see existing JIT Admins whose roles fall entirely within the template.
Action Buttons
Add JIT Role TemplateTable Details
Template Name
The name of the template given at creation or last edit.
Roles
The directory roles included in this allow-list.
Created By
The user that created the template.
Created Date
The date the template was created.
Table Actions
Delete Template
Deletes the template. A custom role still assigned this template is not reverted to unrestricted - it fails closed, so its members can no longer grant or see any roles via JIT Admin until a different template is assigned or the assignment is cleared.
Feature Requests / Ideas
We value your feedback and ideas. Please raise any feature requests on GitHub.
Last updated
Was this helpful?

