Guides/help with using Azure AD for authenticating a Service App API?

Hi Reddit,

I’m stuck and need help. I have a service app which is an API for a mobile app. I want to use tokens to authenticate when the mobile app makes calls to the API.

Basically the scenario described here

I’ve followed the steps in that article and many other articles. I can get a token using Postman but when I make a call to the API using the token I get “Authorization has been denied for this request.”

I’d like to post more detailed info but I’m limited as its a work thing. So can anyone suggest a good guide that goes through everything I would need to make this happen? Right from creating the Azure service app, registering it in the AD, how to configure the user in the AD, and how to make the REST calls with the token?

