Azure AD V2 SPA group.readwrite.all

  • Hi I have taken SPA sample  https://docs.microsoft.com/en-us/azure/active-directory/develop/guidedsetups/active-directory-javascriptspa

    it works fine when I use user.read permission every thing works as expected .

    now when I  use group.readwrite.all I get below error.

    note: I have validated request has token as response type and I have given admin consent for this.   


    The provided value for the input parameter 'response_type' is not valid. Expected values are the following: 'code', 'token', 'id_token', 'none'.

    Thursday, November 23, 2017 7:41 AM

  • When you get this error, you should also be presented with a CorrelationId and Timestamp. Could you share the same?
    Also provide the code snippet where you are changing the scope and response_type, or the full request URI including the response_type and scope parameters.
    Thursday, November 23, 2017 3:53 PM
  • these are two lines I have changaed

    // Graph API endpoint to show user profile
    var graphApiEndpoint = "https://graph.microsoft.com/v1.0/groups";
    // Graph API scope used to obtain the access token to read user profile
    var graphAPIScopes = ["https://graph.microsoft.com/group.read.all"];
    //var graphAPIScopes = ["https://graph.microsoft.com/user.read"];


    Friday, November 24, 2017 9:03 AM