If you utilize the UserPrincipalName parameter, you need not utilize the AzureADAuthorizationEndpointUri parameter for MFA or federated end users in environments that Generally call for it (UserPrincipalName or AzureADAuthorizationEndpointUri is required; Alright to use each).It's also possible to produce own tags with retention disabled. This allo