Under Cloud accounts you store a service principal for Microsoft Azure. MainPath uses it to create Kubernetes clusters (AKS) and optional databases in your subscription.
Create an app registration in Entra ID
- Open the Azure portal → Microsoft Entra ID → App registrations → New registration.
- Choose a descriptive name such as
application-platform-azure. - Under Overview, note the Directory (tenant) ID and the Application (client) ID.
- Under Certificates & secrets → New client secret, create a secret and copy the Value immediately. Azure shows it only once.
- Under Subscriptions, note the Subscription ID of the subscription where the clusters should live.
- Assign the enterprise application (the service principal) a role on that subscription that can create AKS, networks, and databases, for example Contributor.
Microsoft describes the path in Create a Microsoft Entra app and service principal.
Add the account in MainPath
- Open Cloud accounts and click Add cloud account.
- Choose Azure.
- Enter a name, slug, and these values:
| Platform field | Source |
|---|---|
| Tenant ID | Directory (tenant) ID of the app registration |
| Client ID | Application (client) ID of the same app registration |
| Client secret | value of the client secret |
| Subscription ID | Subscription ID under Subscriptions |
| Region | Azure region, for example germanywestcentral |
- Save. Then select the account when you create a cluster under Kubernetes clusters.