# Generated by API Evangelist (build-phrasing.py). Our phrasing, not observed demand. overlay: 1.0.0 info: title: API Evangelist conversational phrasing for Applications Service Principals.remote Desktop Security… version: 1.0.0 extends: openapi/azure-ad-serviceprincipals-remotedesktopsecurityconfiguration-api-openapi.yml actions: - target: $.info update: x-apievangelist-phrasing: method: generated generated: '2026-10-01' generator: build-phrasing.py label: Generated by API Evangelist operations: 15 - target: $.paths['/servicePrincipals/{servicePrincipal-id}/remoteDesktopSecurityConfiguration'].get update: x-apievangelist-phrasing: intent: View an app's Remote Desktop security configuration effect: read questions: - Is Entra ID authentication for Remote Desktop turned on for this service principal? - Where can I see the RDP security settings configured on an app? instructions: - text: Show the remote desktop security configuration for service principal {sp}. slots: sp: path.servicePrincipal-id - text: Check whether RDP authentication is enabled on app {sp}. slots: sp: path.servicePrincipal-id method: generated generated: '2026-10-01' - target: $.paths['/servicePrincipals/{servicePrincipal-id}/remoteDesktopSecurityConfiguration'].delete update: x-apievangelist-phrasing: intent: Remove an app's Remote Desktop security configuration effect: destructive questions: - What happens to RDP sign-in if I delete the remote desktop security configuration? - How do I remove the whole Remote Desktop security setup from a service principal? instructions: - text: Delete the remote desktop security configuration from service principal {sp}. slots: sp: path.servicePrincipal-id - text: Remove all RDP security settings from app {sp}. slots: sp: path.servicePrincipal-id method: generated generated: '2026-10-01' - target: $.paths['/servicePrincipals/{servicePrincipal-id}/remoteDesktopSecurityConfiguration'].patch update: x-apievangelist-phrasing: intent: Enable or disable Entra RDP auth on an app effect: write questions: - How do I turn on Microsoft Entra ID authentication for Remote Desktop Protocol? - Can I switch off RDP protocol support on a service principal? instructions: - text: Set RDP enabled to {enabled} on service principal {sp}. slots: enabled: requestBody.isRemoteDesktopProtocolEnabled sp: path.servicePrincipal-id - text: Enable Entra authentication for Remote Desktop on app {sp}. slots: sp: path.servicePrincipal-id method: generated generated: '2026-10-01' - target: $.paths['/servicePrincipals/{servicePrincipal-id}/remoteDesktopSecurityConfiguration/approvedClientApps'].get update: x-apievangelist-phrasing: intent: List approved Remote Desktop client apps effect: read questions: - Which client apps are approved for Remote Desktop connections on this app? - Can I see every approved RDP client configured on a service principal? instructions: - text: List the approved client apps for RDP on service principal {sp}. slots: sp: path.servicePrincipal-id - text: Show approved remote desktop clients on app {sp} named like {search}. slots: sp: path.servicePrincipal-id search: query.$search method: generated generated: '2026-10-01' - target: $.paths['/servicePrincipals/{servicePrincipal-id}/remoteDesktopSecurityConfiguration/approvedClientApps'].post update: x-apievangelist-phrasing: intent: Approve a client app for Remote Desktop effect: write questions: - How do I add a new approved client app to the RDP security configuration? - Is there a maximum number of approved client apps per service principal? instructions: - text: Approve client app {name} for remote desktop on service principal {sp}. slots: name: requestBody.displayName sp: path.servicePrincipal-id - text: Add {name} as an approved RDP client on app {sp}. slots: name: requestBody.displayName sp: path.servicePrincipal-id method: generated generated: '2026-10-01' - target: $.paths['/servicePrincipals/{servicePrincipal-id}/remoteDesktopSecurityConfiguration/approvedClientApps/{approvedClientApp-id}'].get update: x-apievangelist-phrasing: intent: Get one approved Remote Desktop client app effect: read questions: - What are the details of a specific approved RDP client app? - Can I look up one approved client app by its ID? instructions: - text: Get approved client app {app} from the RDP configuration of service principal {sp}. slots: app: path.approvedClientApp-id sp: path.servicePrincipal-id - text: Show details of approved remote desktop client {app} on app {sp}. slots: app: path.approvedClientApp-id sp: path.servicePrincipal-id method: generated generated: '2026-10-01' - target: $.paths['/servicePrincipals/{servicePrincipal-id}/remoteDesktopSecurityConfiguration/approvedClientApps/{approvedClientApp-id}'].delete update: x-apievangelist-phrasing: intent: Revoke an approved Remote Desktop client app effect: destructive questions: - How do I stop a client app from being approved for RDP? - Can I remove one approved client from the remote desktop configuration? instructions: - text: Delete approved client app {app} from the RDP configuration of service principal {sp}. slots: app: path.approvedClientApp-id sp: path.servicePrincipal-id - text: Revoke remote desktop approval for client {app} on app {sp}. slots: app: path.approvedClientApp-id sp: path.servicePrincipal-id method: generated generated: '2026-10-01' - target: $.paths['/servicePrincipals/{servicePrincipal-id}/remoteDesktopSecurityConfiguration/approvedClientApps/{approvedClientApp-id}'].patch update: x-apievangelist-phrasing: intent: Rename an approved Remote Desktop client app effect: write questions: - Can I change the display name of an approved RDP client app? - Is an approved remote desktop client editable after I add it? instructions: - text: Rename approved client app {app} on service principal {sp} to {name}. slots: app: path.approvedClientApp-id sp: path.servicePrincipal-id name: requestBody.displayName - text: Update approved remote desktop client {app} on app {sp}. slots: app: path.approvedClientApp-id sp: path.servicePrincipal-id method: generated generated: '2026-10-01' - target: $.paths['/servicePrincipals/{servicePrincipal-id}/remoteDesktopSecurityConfiguration/approvedClientApps/$count'].get update: x-apievangelist-phrasing: intent: Count approved Remote Desktop client apps effect: read questions: - How many approved RDP client apps are configured, and am I near the limit of 20? - Can I get just the number of approved remote desktop clients? instructions: - text: Count the approved RDP client apps on service principal {sp}. slots: sp: path.servicePrincipal-id - text: Tell me how many approved remote desktop clients app {sp} has. slots: sp: path.servicePrincipal-id method: generated generated: '2026-10-01' - target: $.paths['/servicePrincipals/{servicePrincipal-id}/remoteDesktopSecurityConfiguration/targetDeviceGroups'].get update: x-apievangelist-phrasing: intent: List Remote Desktop target device groups effect: read questions: - Which device groups skip the RDP consent prompt for this app? - Can I see all target device groups on the remote desktop configuration? instructions: - text: List the target device groups for RDP on service principal {sp}. slots: sp: path.servicePrincipal-id - text: Show remote desktop target device groups on app {sp} matching {filter}. slots: sp: path.servicePrincipal-id filter: query.$filter method: generated generated: '2026-10-01' - target: $.paths['/servicePrincipals/{servicePrincipal-id}/remoteDesktopSecurityConfiguration/targetDeviceGroups'].post update: x-apievangelist-phrasing: intent: Add a Remote Desktop target device group effect: write questions: - How do I add a device group so users connecting to it don't get the RDP consent prompt? - What is the limit on target device groups for remote desktop? instructions: - text: Add target device group {name} to the RDP configuration of service principal {sp}. slots: name: requestBody.displayName sp: path.servicePrincipal-id - text: Create remote desktop target device group {group} named {name} on app {sp}. slots: group: requestBody.id name: requestBody.displayName sp: path.servicePrincipal-id method: generated generated: '2026-10-01' - target: $.paths['/servicePrincipals/{servicePrincipal-id}/remoteDesktopSecurityConfiguration/targetDeviceGroups/{targetDeviceGroup-id}'].get update: x-apievangelist-phrasing: intent: Get one Remote Desktop target device group effect: read questions: - What are the details of a specific RDP target device group? - Can I fetch one target device group by ID? instructions: - text: Get target device group {group} from the RDP configuration of service principal {sp}. slots: group: path.targetDeviceGroup-id sp: path.servicePrincipal-id - text: Show remote desktop target device group {group} on app {sp}. slots: group: path.targetDeviceGroup-id sp: path.servicePrincipal-id method: generated generated: '2026-10-01' - target: $.paths['/servicePrincipals/{servicePrincipal-id}/remoteDesktopSecurityConfiguration/targetDeviceGroups/{targetDeviceGroup-id}'].delete update: x-apievangelist-phrasing: intent: Remove a Remote Desktop target device group effect: destructive questions: - Will users see the RDP consent prompt again if I remove a target device group? - How do I delete a device group from the remote desktop configuration? instructions: - text: Delete target device group {group} from the RDP configuration of service principal {sp}. slots: group: path.targetDeviceGroup-id sp: path.servicePrincipal-id - text: Remove remote desktop target device group {group} from app {sp}. slots: group: path.targetDeviceGroup-id sp: path.servicePrincipal-id method: generated generated: '2026-10-01' - target: $.paths['/servicePrincipals/{servicePrincipal-id}/remoteDesktopSecurityConfiguration/targetDeviceGroups/{targetDeviceGroup-id}'].patch update: x-apievangelist-phrasing: intent: Rename a Remote Desktop target device group effect: write questions: - Can I change the display name of an RDP target device group? - Is a remote desktop target device group editable once added? instructions: - text: Rename target device group {group} on service principal {sp} to {name}. slots: group: path.targetDeviceGroup-id sp: path.servicePrincipal-id name: requestBody.displayName - text: Update remote desktop target device group {group} on app {sp}. slots: group: path.targetDeviceGroup-id sp: path.servicePrincipal-id method: generated generated: '2026-10-01' - target: $.paths['/servicePrincipals/{servicePrincipal-id}/remoteDesktopSecurityConfiguration/targetDeviceGroups/$count'].get update: x-apievangelist-phrasing: intent: Count Remote Desktop target device groups effect: read questions: - How many target device groups are configured, and am I near the limit of 10? - Can I get just the number of RDP target device groups? instructions: - text: Count the RDP target device groups on service principal {sp}. slots: sp: path.servicePrincipal-id - text: Tell me how many remote desktop target device groups app {sp} has. slots: sp: path.servicePrincipal-id method: generated generated: '2026-10-01'