Should you put all of your resources (like storage) that are associated with the application you are using with the B2C tenant in that same tenant, or should you use the main directory+subscription to create all the resources and use the B2C tenant for authentication workflows only? Is there a best practice that is recommended? Because if recommendation is to add app related resources in the B2C tenant, we will need to add a subscription.
⚠Do not edit this section. It is required for docs.microsoft.com ➟ GitHub issue linking.
@seantleonard Thanks for the comment! We will investigate this issue and get back to you soon.
@seantleonard There is no recommendation as such for this scenario. Generally the following factors can help you make that deciscion.
Ease of management : If you already have other subscriptions in the org tenant, then it is easy to manage the new subscription by adding them to a management group for auditing, applying Azure polices etc.
Do you have to use managed idenitites for any of the resources ? Managed idenities for a resource like app service etc only work with the tenant where the subscription's default tenant. If you want to use this featue then you need the subscription to be linked to the B2C tenant.
Hope this helps.
@seantleonard We have not heard from you in a while.We will now proceed to close this thread. If you have further questions, please tag me in the comments and I will gladly continue the conversation.