If one has an Azure App Service, what is the optimal, simplest way to check if a given authenticated User is a member of a given AAD Group?
The MSDN documentation for how to query AAD group membership is nightmarish, bouncing people between Microsoft Graph, Azure Active Directory Graph API, client-side endpoints and server-side code that seems to require an impossible number of IDs -- maintained between portal.azure and one's web.config.
Has anyone found an optimal way, C# .Net side, to simply look at an AAD group and match membership? (I have tried to do Claims using a Registered Azure App with Groups set to All and that path seems way too complex...)
If you have a preferred tutorial to help answer this, would be much appreciated, as MS is deprecating libraries faster than their explanation of how the old ones even worked...