Template in Microsoft Entra Agent ID that holds credentials for one type of agent and obtains tokens for the agent identities created from it. Policies like Conditional Access set on it reach all those identities; Azure RBAC roles cannot be assigned to it.
Also called blueprint.
Read more: Microsoft Learn
In the Ultra Transcenders books
Each book explains Agent identity blueprint in context, with comparison tables and the common traps.
Terms in this definition
- Microsoft Entra Agent ID
Gives AI agents identities in Entra of their own, created from blueprints, so they fall under Conditional Access, ID Protection and governance just like users do.
- Agent
A specialised form of Microsoft Copilot set up for one particular job, pairing instructions with knowledge and skills. You can create one in Copilot Studio, SharePoint or Agent Builder, and administrators control them from the Microsoft 365 admin center.
- LIKE
Compares strings with a pattern that can contain the % and _ wildcards. Because it only understands character patterns, searching big volumes of text this way is much slower than using full-text search.
- Conditional Access
Policy engine in Microsoft Entra ID P1 that, depending on signals such as risk or named locations, allows access subject to controls like MFA or a compliant device, or blocks it.
- Set
Secret permission in Key Vault for writing secrets; some older material refers to it as Create.
- ALL
A DAX function that ignores any filters and gives back every row of a table or every value of the named columns. Used within CALCULATE, it works as a modifier that clears filters, although REMOVEFILTERS states that intent more clearly where it is available.
- Azure RBAC
Azure's model for granting access: built-in or custom roles are assigned at a scope to users, groups or managed identities. Calling Foundry keylessly with Entra ID requires a data-plane role, for example Foundry User (formerly Azure AI User) or Cognitive Services OpenAI User.
Related terms
- Agent Application
Resource that Azure creates on publishing an agent version; it has a stable endpoint plus its own Microsoft Entra agent identity and blueprint. Role assignments held by the project identity do not carry over and need to be granted again.
- mltable Python package
Python library for working with MLTable blueprints. You call
mltable.load()on the folder holding the file, thento_pandas_dataframe()to materialise,take()to sample rows, orsave()to write a blueprint out. - Team template
A reusable blueprint (from Microsoft or built in-house) that sets up channels, settings and apps so that new teams start out alike. Admins look after them in the Teams admin center.