Omnicit.PIM.psd1
|
# # Module manifest for module 'Omnicit.PIM' # # Generated by: Omnicit # # Generated on: 2026-03-25 # @{ # Script module or binary module file associated with this manifest. RootModule = 'Omnicit.PIM.psm1' # Version number of this module. ModuleVersion = '0.7.0' # Supported PSEditions CompatiblePSEditions = @('Core') # ID used to uniquely identify this module GUID = 'ed16ca8d-c9c0-4987-90b9-749edc96ebb8' # Author of this module Author = 'Omnicit (originally by Justin Grote @justinwgrote)' # Company or vendor of this module CompanyName = 'Omnicit' # Copyright statement for this module Copyright = '(c) Omnicit. All rights reserved.' # Description of the functionality provided by this module Description = 'Entra ID Privileged Identity Management (PIM) Self Activation Commands for Directory Roles, Azure Resources, and Entra ID Groups' # Minimum version of the PowerShell engine required by this module PowerShellVersion = '7.4' # Name of the PowerShell host required by this module # PowerShellHostName = '' # Minimum version of the PowerShell host required by this module # PowerShellHostVersion = '' # Minimum version of Microsoft .NET Framework required by this module. This prerequisite is valid for the PowerShell Desktop edition only. # DotNetFrameworkVersion = '' # Minimum version of the common language runtime (CLR) required by this module. This prerequisite is valid for the PowerShell Desktop edition only. # ClrVersion = '' # Processor architecture (None, X86, Amd64) required by this module # ProcessorArchitecture = '' # Modules that must be imported into the global environment prior to importing this module RequiredModules = @( @{ ModuleName = 'Microsoft.Graph.Authentication'; ModuleVersion = '2.36.0' } @{ ModuleName = 'AzAuth'; ModuleVersion = '2.9.0' } ) # Assemblies that must be loaded prior to importing this module # RequiredAssemblies = @() # Script files (.ps1) that are run in the caller's environment prior to importing this module. # ScriptsToProcess = @() # Type files (.ps1xml) to be loaded when importing this module # Disabled: TypesToProcess re-registers type members on every Import-Module -Force but Remove-Module does NOT # clean type data, so the second test file import fails with "member is already present" errors. # Types are loaded via a single Update-TypeData -AppendPath call in the psm1 suffix instead. TypesToProcess = @() # Format files (.ps1xml) to be loaded when importing this module # Re-enabled: all format targets are Omnicit.PIM.* custom types (no Az-native type overrides), so # the AppendPath precedence issue with Az.Resources no longer applies. # The orphaned RoleAssignmentScheduleRequest override was removed because all Azure functions now # wrap output with Omnicit.PIM.AzureAssignmentScheduleRequest before returning. FormatsToProcess = @('Formats/Omnicit.PIM.Format.ps1xml') # Modules to import as nested modules of the module specified in RootModule/ModuleToProcess # NestedModules = @() # Functions to export from this module, for best performance, do not use wildcards and do not delete the entry, use an empty array if there are no functions to export. FunctionsToExport = @('Connect-OPIM','Disable-OPIMAzureRole','Disable-OPIMDirectoryRole','Disable-OPIMEntraIDGroup','Disable-OPIMMyRole','Disconnect-OPIM','Enable-OPIMAzureRole','Enable-OPIMDirectoryRole','Enable-OPIMEntraIDGroup','Enable-OPIMMyRole','Get-OPIMAzureRole','Get-OPIMConfiguration','Get-OPIMDirectoryRole','Get-OPIMEntraIDGroup','Install-OPIMConfiguration','Remove-OPIMConfiguration','Set-OPIMConfiguration','Wait-OPIMDirectoryRole') # Cmdlets to export from this module, for best performance, do not use wildcards and do not delete the entry, use an empty array if there are no cmdlets to export. CmdletsToExport = @() # Variables to export from this module VariablesToExport = @() # Aliases to export from this module, for best performance, do not use wildcards and do not delete the entry, use an empty array if there are no aliases to export. AliasesToExport = @('Connect-PIM','Disable-OPIMMyRoles','Disable-PIMADRole','Disable-PIMGroup','Disable-PIMResourceRole','Disable-PIMRole','Disconnect-PIM','Enable-OPIMMyRoles','Enable-PIMADRole','Enable-PIMGroup','Enable-PIMResourceRole','Enable-PIMRole','Get-PIMADRole','Get-PIMConfig','Get-PIMGroup','Get-PIMResourceRole','Get-PIMRole','pim','Remove-PIMConfig','unpim','Set-PIMConfig','Wait-PIMADRole','Wait-PIMRole') # DSC resources to export from this module DscResourcesToExport = @() # List of all modules packaged with this module # ModuleList = @() # List of all files packaged with this module # FileList = @() # Private data to pass to the module specified in RootModule/ModuleToProcess. This may also contain a PSData hashtable with additional module metadata used by PowerShell. PrivateData = @{ PSData = @{ # Tags applied to this module. These help with module discovery in online galleries. Tags = @('PIM', 'Azure', 'EntraID', 'Identity', 'Privileged', 'Windows', 'MacOS', 'Linux') # A URL to the license for this module. LicenseUri = 'https://github.com/Omnicit/Omnicit.PIM/LICENSE' # A URL to the main website for this project. ProjectUri = 'https://github.com/Omnicit/Omnicit.PIM' # A URL to an icon representing this module. IconUri = 'https://raw.githubusercontent.com/Omnicit/Omnicit.PIM/main/assets/icon.png' # ReleaseNotes of this module ReleaseNotes = '## [0.7.0-preview0002] - 2026-10-09 Each GitHub release of the module, and the version tag that marks it, now always points at the commit whose build was published to the PowerShell Gallery. When the publish workflow cannot prove which commit that is, it stops and says how to set the tag by hand, instead of tagging another commit. Azure roles (`Get-`, `Enable-` and `Disable-OPIMAzureRole`, and the Azure part of `pim` and `unpim`) now sign in with AzAuth and send their requests themselves instead of through the Az modules'' commands. The Azure sign-in, in the system browser or with a device code, no longer reuses or ends an Az context of yours: a `Connect-AzAccount` session is left alone. Its token must be for the Graph session''s tenant and account, else `TenantMismatch` or the new `AccountMismatch`, and nothing is sent. Output keeps its property names, but Az''s .NET type names are gone: a script that tested `-is` against an Az type checks `$Obj.PSObject.TypeNames -contains ''Omnicit.PIM.AzureEligibilitySchedule''` (or another `Omnicit.PIM.Azure*` name) instead. `Disconnect-OPIM` clears the module''s Azure token, but not AzAuth''s own sign-in in the PowerShell process. Omnicit.PIM no longer depends on the Az modules. Installing it brings AzAuth (2.9.0 or later) and Microsoft.Graph.Authentication instead of Az.Resources and Az.Accounts, and importing it loads no Az module. A script that used an Az.Resources or Az.Accounts command only because this module brought it along must now install and import that module itself. The module now requires PowerShell 7.4 or later, which AzAuth needs: on PowerShell 7.2 or 7.3 it no longer imports. ' # Prerelease string of this module Prerelease = 'preview0002' # Flag to indicate whether the module requires explicit user acceptance for install/update/save # RequireLicenseAcceptance = $false # External dependent modules of this module # ExternalModuleDependencies = @() } # End of PSData hashtable } # End of PrivateData hashtable # HelpInfo URI of this module # HelpInfoURI = '' # Default prefix for commands exported from this module. Override the default prefix using Import-Module -Prefix. # DefaultCommandPrefix = '' } |