Skip to content

Commit 0577769

Browse files
authored
Merge pull request #202702 from curtand/entra0623
Azure AD Entra updates 01
2 parents f63cc09 + ef807cb commit 0577769

10 files changed

+21
-21
lines changed

articles/active-directory/enterprise-users/directory-delegated-administration-primer.md

Lines changed: 2 additions & 2 deletions
Original file line numberDiff line numberDiff line change
@@ -6,7 +6,7 @@ author: curtand
66
manager: karenhoran
77
ms.author: curtand
88
ms.reviewer: yuank
9-
ms.date: 03/24/2022
9+
ms.date: 06/23/2022
1010
ms.topic: overview
1111
ms.service: active-directory
1212
ms.subservice: enterprise-users
@@ -19,7 +19,7 @@ ms.collection: M365-identity-device-management
1919
---
2020
# What is delegated administration?
2121

22-
Managing permissions for external partners is a key part of your security posture. We’ve added capabilities to the Azure Active Directory (Azure AD) admin portal experience so that an administrator can see the relationships that their Azure AD tenant has with Microsoft Cloud Service Providers (CSP) who can manage the tenant. This permissions model is called delegated administration. This article introduces the Azure AD administrator to the relationship between the old Delegated Admin Permissions (DAP) permission model and the new Granular Delegated Admin Permissions (GDAP) permission model.
22+
Managing permissions for external partners is a key part of your security posture. We’ve added capabilities to the administrator portal experience in Azure Active Directory (Azure AD), part of Microsoft Entra, so that an administrator can see the relationships that their Azure AD tenant has with Microsoft Cloud Service Providers (CSP) who can manage the tenant. This permissions model is called delegated administration. This article introduces the Azure AD administrator to the relationship between the old Delegated Admin Permissions (DAP) permission model and the new Granular Delegated Admin Permissions (GDAP) permission model.
2323

2424
## Delegated administration relationships
2525

articles/active-directory/enterprise-users/directory-delete-howto.md

Lines changed: 2 additions & 2 deletions
Original file line numberDiff line numberDiff line change
@@ -10,7 +10,7 @@ ms.service: active-directory
1010
ms.subservice: enterprise-users
1111
ms.workload: identity
1212
ms.topic: how-to
13-
ms.date: 11/23/2021
13+
ms.date: 06/23/2022
1414
ms.author: curtand
1515
ms.reviewer: addimitu
1616
ms.custom: it-pro
@@ -19,7 +19,7 @@ ms.collection: M365-identity-device-management
1919
---
2020
# Delete a tenant in Azure Active Directory
2121

22-
When an Azure AD organization (tenant) is deleted, all resources that are contained in the organization are also deleted. Prepare your organization by minimizing its associated resources before you delete. Only an Azure Active Directory (Azure AD) global administrator can delete an Azure AD organization from the portal.
22+
When an organization (tenant) is deleted in Azure Active Directory (Azure AD), part of Microsoft Entra, all resources that are contained in the organization are also deleted. Prepare your organization by minimizing its associated resources before you delete. Only a global administrator in Azure AD can delete an Azure AD organization from the portal.
2323

2424
## Prepare the organization
2525

articles/active-directory/enterprise-users/directory-overview-user-model.md

Lines changed: 2 additions & 2 deletions
Original file line numberDiff line numberDiff line change
@@ -6,7 +6,7 @@ author: curtand
66
manager: karenhoran
77
ms.author: curtand
88
ms.reviewer: krbain
9-
ms.date: 09/01/2021
9+
ms.date: 06/23/2022
1010
ms.topic: overview
1111
ms.service: active-directory
1212
ms.subservice: enterprise-users
@@ -19,7 +19,7 @@ ms.collection: M365-identity-device-management
1919
---
2020
# What is enterprise user management?
2121

22-
This article introduces the Azure AD administrator to the relationship between top [identity management](../fundamentals/active-directory-whatis.md?context=azure%2factive-directory%2fusers-groups-roles%2fcontext%2fugr-context) tasks for users in terms of their groups, licenses, deployed enterprise apps, and administrator roles. As your organization grows, you can use Azure AD groups and administrator roles to:
22+
This article introduces and administrator for Azure Active Directory (Azure AD), part of Microsoft Entra, to the relationship between top [identity management](../fundamentals/active-directory-whatis.md?context=azure%2factive-directory%2fusers-groups-roles%2fcontext%2fugr-context) tasks for users in terms of their groups, licenses, deployed enterprise apps, and administrator roles. As your organization grows, you can use Azure AD groups and administrator roles to:
2323

2424
* Assign licenses to groups instead of to individually
2525
* Delegate permissions to distribute the work of Azure AD management to less-privileged roles

articles/active-directory/enterprise-users/directory-self-service-signup.md

Lines changed: 2 additions & 2 deletions
Original file line numberDiff line numberDiff line change
@@ -11,7 +11,7 @@ ms.service: active-directory
1111
ms.subservice: enterprise-users
1212
ms.topic: overview
1313
ms.workload: identity
14-
ms.date: 09/01/2021
14+
ms.date: 06/23/2022
1515
ms.author: curtand
1616
ms.reviewer: elkuzmen
1717
ms.custom: it-pro
@@ -20,7 +20,7 @@ ms.collection: M365-identity-device-management
2020
---
2121
# What is self-service sign-up for Azure Active Directory?
2222

23-
This article explains how to use self-service sign-up to populate an organization in Azure Active Directory (Azure AD). If you want to take over a domain name from an unmanaged Azure AD organization, see [Take over an unmanaged tenant as administrator](domains-admin-takeover.md).
23+
This article explains how to use self-service sign-up to populate an organization in Azure Active Directory (Azure AD), part of Microsoft Entra. If you want to take over a domain name from an unmanaged Azure AD organization, see [Take over an unmanaged tenant as administrator](domains-admin-takeover.md).
2424

2525
## Why use self-service sign-up?
2626

articles/active-directory/enterprise-users/directory-service-limits-restrictions.md

Lines changed: 2 additions & 2 deletions
Original file line numberDiff line numberDiff line change
@@ -11,7 +11,7 @@ ms.service: active-directory
1111
ms.subservice: enterprise-users
1212
ms.topic: reference
1313
ms.workload: identity
14-
ms.date: 10/27/2021
14+
ms.date: 06/23/2022
1515
ms.author: curtand
1616
ms.custom: aaddev;it-pro
1717
ms.reviewer: vincesm
@@ -20,7 +20,7 @@ ms.collection: M365-identity-device-management
2020
---
2121
# Azure AD service limits and restrictions
2222

23-
This article contains the usage constraints and other service limits for the Azure Active Directory (Azure AD) service. If you’re looking for the full set of Microsoft Azure service limits, see [Azure Subscription and Service Limits, Quotas, and Constraints](../../azure-resource-manager/management/azure-subscription-service-limits.md).
23+
This article contains the usage constraints and other service limits for the Azure Active Directory (Azure AD), part of Microsoft Entra, service. If you’re looking for the full set of Microsoft Azure service limits, see [Azure Subscription and Service Limits, Quotas, and Constraints](../../azure-resource-manager/management/azure-subscription-service-limits.md).
2424

2525
[!INCLUDE [AAD-service-limits](../../../includes/active-directory-service-limits-include.md)]
2626

articles/active-directory/enterprise-users/domains-admin-takeover.md

Lines changed: 2 additions & 2 deletions
Original file line numberDiff line numberDiff line change
@@ -9,7 +9,7 @@ ms.service: active-directory
99
ms.subservice: enterprise-users
1010
ms.topic: how-to
1111
ms.workload: identity
12-
ms.date: 09/01/2021
12+
ms.date: 06/23/2022
1313
ms.author: curtand
1414
ms.reviewer: sumitp
1515
ms.custom: "it-pro;seo-update-azuread-jan"
@@ -18,7 +18,7 @@ ms.collection: M365-identity-device-management
1818
---
1919
# Take over an unmanaged directory as administrator in Azure Active Directory
2020

21-
This article describes two ways to take over a DNS domain name in an unmanaged directory in Azure Active Directory (Azure AD). When a self-service user signs up for a cloud service that uses Azure AD, they are added to an unmanaged Azure AD directory based on their email domain. For more about self-service or "viral" sign-up for a service, see [What is self-service sign-up for Azure Active Directory?](directory-self-service-signup.md)
21+
This article describes two ways to take over a DNS domain name in an unmanaged directory in Azure Active Directory (Azure AD), part of Microsoft Entra. When a self-service user signs up for a cloud service that uses Azure AD, they are added to an unmanaged Azure AD directory based on their email domain. For more about self-service or "viral" sign-up for a service, see [What is self-service sign-up for Azure Active Directory?](directory-self-service-signup.md)
2222

2323

2424
> [!VIDEO https://www.youtube.com/embed/GOSpjHtrRsg]

articles/active-directory/enterprise-users/domains-manage.md

Lines changed: 2 additions & 2 deletions
Original file line numberDiff line numberDiff line change
@@ -10,7 +10,7 @@ ms.service: active-directory
1010
ms.subservice: enterprise-users
1111
ms.workload: identity
1212
ms.topic: how-to
13-
ms.date: 09/01/2021
13+
ms.date: 06/23/2022
1414
ms.author: curtand
1515
ms.reviewer: sumitp
1616

@@ -20,7 +20,7 @@ ms.collection: M365-identity-device-management
2020
---
2121
# Managing custom domain names in your Azure Active Directory
2222

23-
A domain name is an important part of the identifier for many Azure Active Directory (Azure AD) resources: it's part of a user name or email address for a user, part of the address for a group, and is sometimes part of the app ID URI for an application. A resource in Azure AD can include a domain name that's owned by the Azure AD organization (sometimes called a tenant) that contains the resource. Only a Global Administrator can manage domains in Azure AD.
23+
A domain name is an important part of the identifier for resources in many Azure Active Directory (Azure AD), part of Microsoft Entra: it's part of a user name or email address for a user, part of the address for a group, and is sometimes part of the app ID URI for an application. A resource in Azure AD can include a domain name that's owned by the Azure AD organization (sometimes called a tenant) that contains the resource. Only a Global Administrator can manage domains in Azure AD.
2424

2525
## Set the primary domain name for your Azure AD organization
2626

articles/active-directory/enterprise-users/domains-verify-custom-subdomain.md

Lines changed: 2 additions & 2 deletions
Original file line numberDiff line numberDiff line change
@@ -10,7 +10,7 @@ ms.service: active-directory
1010
ms.subservice: enterprise-users
1111
ms.workload: identity
1212
ms.topic: how-to
13-
ms.date: 04/05/2022
13+
ms.date: 06/23/2022
1414
ms.author: curtand
1515
ms.reviewer: sumitp
1616

@@ -21,7 +21,7 @@ ms.collection: M365-identity-device-management
2121

2222
# Change subdomain authentication type in Azure Active Directory
2323

24-
After a root domain is added to Azure Active Directory (Azure AD), all subsequent subdomains added to that root in your Azure AD organization automatically inherit the authentication setting from the root domain. However, if you want to manage domain authentication settings independently from the root domain settings, you can now with the Microsoft Graph API. For example, if you have a federated root domain such as contoso.com, this article can help you verify a subdomain such as child.contoso.com as managed instead of federated.
24+
After a root domain is added to Azure Active Directory (Azure AD), part of Microsoft Entra, all subsequent subdomains added to that root in your Azure AD organization automatically inherit the authentication setting from the root domain. However, if you want to manage domain authentication settings independently from the root domain settings, you can now with the Microsoft Graph API. For example, if you have a federated root domain such as contoso.com, this article can help you verify a subdomain such as child.contoso.com as managed instead of federated.
2525

2626
In the Azure AD portal, when the parent domain is federated and the admin tries to verify a managed subdomain on the **Custom domain names** page, you'll get a 'Failed to add domain' error with the reason "One or more properties contains invalid values." If you try to add this subdomain from the Microsoft 365 admin center, you will receive a similar error. For more information about the error, see [A child domain doesn't inherit parent domain changes in Office 365, Azure, or Intune](/office365/troubleshoot/administration/child-domain-fails-inherit-parent-domain-changes).
2727

articles/active-directory/enterprise-users/groups-assign-sensitivity-labels.md

Lines changed: 2 additions & 2 deletions
Original file line numberDiff line numberDiff line change
@@ -9,7 +9,7 @@ ms.service: active-directory
99
ms.subservice: enterprise-users
1010
ms.workload: identity
1111
ms.topic: how-to
12-
ms.date: 04/19/2022
12+
ms.date: 06/23/2022
1313
ms.author: curtand
1414
ms.reviewer: krbain
1515
ms.custom: it-pro
@@ -18,7 +18,7 @@ ms.collection: M365-identity-device-management
1818

1919
# Assign sensitivity labels to Microsoft 365 groups in Azure Active Directory
2020

21-
Azure Active Directory (Azure AD) supports applying sensitivity labels published by the [Microsoft Purview compliance portal](https://compliance.microsoft.com) to Microsoft 365 groups. Sensitivity labels apply to group across services like Outlook, Microsoft Teams, and SharePoint. For more information about Microsoft 365 apps support, see [Microsoft 365 support for sensitivity labels](/microsoft-365/compliance/sensitivity-labels-teams-groups-sites#support-for-the-sensitivity-labels).
21+
Azure Active Directory (Azure AD), part of Microsoft Entra, supports applying sensitivity labels published by the [Microsoft Purview compliance portal](https://compliance.microsoft.com) to Microsoft 365 groups. Sensitivity labels apply to group across services like Outlook, Microsoft Teams, and SharePoint. For more information about Microsoft 365 apps support, see [Microsoft 365 support for sensitivity labels](/microsoft-365/compliance/sensitivity-labels-teams-groups-sites#support-for-the-sensitivity-labels).
2222

2323
> [!IMPORTANT]
2424
> To configure this feature, there must be at least one active Azure Active Directory Premium P1 license in your Azure AD organization.

articles/active-directory/enterprise-users/groups-bulk-download-members.md

Lines changed: 3 additions & 3 deletions
Original file line numberDiff line numberDiff line change
@@ -5,19 +5,19 @@ services: active-directory
55
author: curtand
66
ms.author: curtand
77
manager: karenhoran
8-
ms.date: 10/26/2021
8+
ms.date: 06/23/2022
99
ms.topic: how-to
1010
ms.service: active-directory
1111
ms.subservice: enterprise-users
1212
ms.workload: identity
1313
ms.custom: it-pro
14-
ms.reviewer: jeffsta
14+
ms.reviewer: yuan.karppanen
1515
ms.collection: M365-identity-device-management
1616
---
1717

1818
# Bulk download members of a group in Azure Active Directory
1919

20-
Using Azure Active Directory (Azure AD) portal, you can bulk download the members of a group in your organization to a comma-separated values (CSV) file. All admins and non-admin users can download group membership lists.
20+
You can bulk download the members of a group in your organization to a comma-separated values (CSV) file in the portal for Azure Active Directory (Azure AD), part of Microsoft Entra. All admins and non-admin users can download group membership lists.
2121

2222
## To bulk download group membership
2323

0 commit comments

Comments
 (0)