Skip to content

Commit 14d513c

Browse files
authored
Merge pull request #190146 from MicrosoftDocs/repo_sync_working_branch
Confirm merge from repo_sync_working_branch to main to sync with https://github.com/MicrosoftDocs/azure-docs (branch main)
2 parents 9e8dd47 + b17eea4 commit 14d513c

31 files changed

+298
-246
lines changed

articles/active-directory/cloud-infrastructure-entitlement-management/cloudknox-howto-add-remove-role-task.md

Lines changed: 29 additions & 29 deletions
Original file line numberDiff line numberDiff line change
@@ -27,79 +27,79 @@ This article describes how you can add and remove roles and tasks for Microsoft
2727
## View permissions
2828

2929
1. On the CloudKnox home page, select the **Remediation** tab, and then select the **Permissions** subtab.
30-
1. From the **Select an authorization system type** dropdown, select **Azure** or **GCP**.
31-
1. From the **Select an authorization system** dropdown, select the accounts you want to access.
32-
1. From the **Search for** dropdown, select **Group**, **User**, or **APP**.
33-
1. To search for more parameters, you can make a selection from the **User States**, **Privilege Creep Index**, and **Task usage** dropdowns.
30+
1. From the **Authorization System Type** dropdown, select **Azure** or **GCP**.
31+
1. From the **Authorization System** dropdown, select the accounts you want to access.
32+
1. From the **Search For** dropdown, select **Group**, **User**, or **APP**.
33+
1. To search for more parameters, you can make a selection from the **User States**, **Permission Creep Index**, and **Task Usage** dropdowns.
3434
1. Select **Apply**.
3535
CloudKnox displays a list of groups, users, and service accounts that match your criteria.
3636
1. In **Enter a username**, enter or select a user.
37-
1. In **Enter a group name**, enter or select a group, then select **Apply**.
37+
1. In **Enter a Group Name**, enter or select a group, then select **Apply**.
3838
1. Make a selection from the results list.
3939

40-
The table displays the **Username** **Domain/Account**, **Source**, **Resource** and **Current role**.
40+
The table displays the **Username** **Domain/Account**, **Source**, **Resource** and **Current Role**.
4141

4242

4343
## Add a role
4444

4545
1. On the CloudKnox home page, select the **Remediation** tab, and then select the **Permissions** subtab.
46-
1. From the **Select an authorization system type** dropdown, select **Azure** or **GCP**.
47-
1. From the **Select an authorization system** dropdown, select the accounts you want to access.
48-
1. From the **Search for** dropdown, select **Group**, **User**, or **APP**, and then select **Apply**.
46+
1. From the **Authorization System Type** dropdown, select **Azure** or **GCP**.
47+
1. From the **Authorization System** dropdown, select the accounts you want to access.
48+
1. From the **Search For** dropdown, select **Group**, **User**, or **APP/Service Account**, and then select **Apply**.
4949
1. Make a selection from the results list.
5050

5151
1. To attach a role, select **Add role**.
52-
1. In the **Add role** page, from the **Available roles** list, select the plus sign **(+)** to move the role to the **Selected roles** list.
52+
1. In the **Add Role** page, from the **Available Roles** list, select the plus sign **(+)** to move the role to the **Selected Roles** list.
5353
1. When you have finished adding roles, select **Submit**.
54-
1. When the following message displays: **Are you sure you want to change permissions?**, select:
54+
1. When the following message displays: **Are you sure you want to change permission?**, select:
5555
- **Generate Script** to generate a script where you can manually add/remove the permissions you selected.
5656
- **Execute** to change the permission.
5757
- **Close** to cancel the action.
5858

5959
## Remove a role
6060

6161
1. On the CloudKnox home page, select the **Remediation** tab, and then select the **Permissions** subtab.
62-
1. From the **Select an authorization system type** dropdown, select **Azure** or **GCP**.
63-
1. From the **Select an authorization system** dropdown, select the accounts you want to access.
64-
1. From the **Search for** dropdown, select **Group**, **User**, or **APP**, and then select **Apply**.
62+
1. From the **Authorization System Type** dropdown, select **Azure** or **GCP**.
63+
1. From the **Authorization System** dropdown, select the accounts you want to access.
64+
1. From the **Search For** dropdown, select **Group**, **User**, or **APP/Service Account**, and then select **Apply**.
6565
1. Make a selection from the results list.
6666

67-
1. To remove a role, select **Remove role**.
68-
1. In the **Remove role** page, from the **Available roles** list, select the plus sign **(+)** to move the role to the **Selected roles** list.
67+
1. To remove a role, select **Remove Role**.
68+
1. In the **Remove Role** page, from the **Available Roles** list, select the plus sign **(+)** to move the role to the **Selected Roles** list.
6969
1. When you have finished selecting roles, select **Submit**.
70-
1. When the following message displays: **Are you sure you want to change permissions?**, select:
70+
1. When the following message displays: **Are you sure you want to change permission?**, select:
7171
- **Generate Script** to generate a script where you can manually add/remove the permissions you selected.
7272
- **Execute** to change the permission.
7373
- **Close** to cancel the action.
7474

7575
## Add a task
7676

7777
1. On the CloudKnox home page, select the **Remediation** tab, and then select the **Permissions** subtab.
78-
1. From the **Select an authorization system type** dropdown, select **Azure** or **GCP**.
79-
1. From the **Select an authorization system** dropdown, select the accounts you want to access.
80-
1. From the **Search for** dropdown, select **Group**, **User**, or **APP**, and then select **Apply**.
78+
1. From the **Authorization System Type** dropdown, select **Azure** or **GCP**.
79+
1. From the **Authorization System** dropdown, select the accounts you want to access.
80+
1. From the **Search For** dropdown, select **Group**, **User**, or **APP/Service Account**, and then select **Apply**.
8181
1. Make a selection from the results list.
8282

83-
1. To attach a role, select **Add tasks**.
84-
1. In the **Add tasks** page, from the **Available tasks** list, select the plus sign **(+)** to move the task to the **Selected tasks** list.
83+
1. To attach a role, select **Add Tasks**.
84+
1. In the **Add Tasks** page, from the **Available Tasks** list, select the plus sign **(+)** to move the task to the **Selected Tasks** list.
8585
1. When you have finished adding tasks, select **Submit**.
86-
1. When the following message displays: **Are you sure you want to change permissions?**, select:
86+
1. When the following message displays: **Are you sure you want to change permission?**, select:
8787
- **Generate Script** to generate a script where you can manually add/remove the permissions you selected.
8888
- **Execute** to change the permission.
8989
- **Close** to cancel the action.
9090

9191
## Remove a task
9292

9393
1. On the CloudKnox home page, select the **Remediation** tab, and then select the **Permissions** subtab.
94-
1. From the **Select an authorization system type** dropdown, select **Azure** or **GCP**.
95-
1. From the **Select an authorization system** dropdown, select the accounts you want to access.
96-
1. From the **Search for** dropdown, select **Group**, **User**, or **APP**, and then select **Apply**.
94+
1. From the **Authorization System Type** dropdown, select **Azure** or **GCP**.
95+
1. From the **Authorization System** dropdown, select the accounts you want to access.
96+
1. From the **Search For** dropdown, select **Group**, **User**, or **APP/Service Account**, and then select **Apply**.
9797
1. Make a selection from the results list.
9898

99-
1. To remove a task, select **Remove tasks**.
100-
1. In the **Remove tasks** page, from the **Available tasks** list, select the plus sign **(+)** to move the task to the **Selected tasks** list.
99+
1. To remove a task, select **Remove Tasks**.
100+
1. In the **Remove Tasks** page, from the **Available Tasks** list, select the plus sign **(+)** to move the task to the **Selected Tasks** list.
101101
1. When you have finished selecting tasks, select **Submit**.
102-
1. When the following message displays: **Are you sure you want to change permissions?**, select:
102+
1. When the following message displays: **Are you sure you want to change permission?**, select:
103103
- **Generate Script** to generate a script where you can manually add/remove the permissions you selected.
104104
- **Execute** to change the permission.
105105
- **Close** to cancel the action.

articles/active-directory/cloud-infrastructure-entitlement-management/cloudknox-howto-attach-detach-permissions.md

Lines changed: 14 additions & 14 deletions
Original file line numberDiff line numberDiff line change
@@ -27,45 +27,45 @@ This article describes how you can attach and detach permissions for users, role
2727
## View permissions
2828

2929
1. On the CloudKnox home page, select the **Remediation** tab, and then select the **Permissions** subtab.
30-
1. From the **Select an authorization system type** dropdown, select **AWS**.
31-
1. From the **Select an authorization system** dropdown, select the accounts you want to access.
30+
1. From the **Authorization System Type** dropdown, select **AWS**.
31+
1. From the **Authorization System** dropdown, select the accounts you want to access.
3232
1. From the **Search For** dropdown, select **Group**, **User**, or **Role**.
33-
1. To search for more parameters, you can make a selection from the **User States**, **Privilege Creep Index**, and **Task usage** dropdowns.
33+
1. To search for more parameters, you can make a selection from the **User States**, **Permission Creep Index**, and **Task Usage** dropdowns.
3434
1. Select **Apply**.
3535
CloudKnox displays a list of users, roles, or groups that match your criteria.
3636
1. In **Enter a username**, enter or select a user.
3737
1. In **Enter a group name**, enter or select a group, then select **Apply**.
3838
1. Make a selection from the results list.
3939

40-
The table displays the related **Username** **Domain/Account**, **Source** and **Policy name**.
40+
The table displays the related **Username** **Domain/Account**, **Source** and **Policy Name**.
4141

4242

4343
## Attach policies
4444

4545
1. On the CloudKnox home page, select the **Remediation** tab, and then select the **Permissions** subtab.
46-
1. From the **Select an authorization system type** dropdown, select **AWS**.
46+
1. From the **Authorization System Type** dropdown, select **AWS**.
4747
1. In **Enter a username**, enter or select a user.
48-
1. In **Enter a group name**, enter or select a group, then select **Apply**.
48+
1. In **Enter a Group Name**, enter or select a group, then select **Apply**.
4949
1. Make a selection from the results list.
50-
1. To attach a policy, select **Attach policies**.
51-
1. In the **Attach policies** page, from the **Available policies** list, select the plus sign **(+)** to move the policy to the **Selected policies** list.
50+
1. To attach a policy, select **Attach Policies**.
51+
1. In the **Attach Policies** page, from the **Available policies** list, select the plus sign **(+)** to move the policy to the **Selected policies** list.
5252
1. When you have finished adding policies, select **Submit**.
53-
1. When the following message displays: **Are you sure you want to change permissions?**, select:
53+
1. When the following message displays: **Are you sure you want to change permission?**, select:
5454
- **Generate Script** to generate a script where you can manually add/remove the permissions you selected.
5555
- **Execute** to change the permission.
5656
- **Close** to cancel the action.
5757

5858
## Detach policies
5959

6060
1. On the CloudKnox home page, select the **Remediation** tab, and then select the **Permissions** subtab.
61-
1. From the **Select an authorization system type** dropdown, select **AWS**.
61+
1. From the **Authorization System Type** dropdown, select **AWS**.
6262
1. In **Enter a username**, enter or select a user.
63-
1. In **Enter a group name**, enter or select a group, then select **Apply**.
63+
1. In **Enter a Group Name**, enter or select a group, then select **Apply**.
6464
1. Make a selection from the results list.
65-
1. To remove a policy, select **Detach policies**.
66-
1. In the **Detach policies** page, from the **Available policies** list, select the plus sign **(+)** to move the policy to the **Selected policies** list.
65+
1. To remove a policy, select **Detach Policies**.
66+
1. In the **Detach Policies** page, from the **Available policies** list, select the plus sign **(+)** to move the policy to the **Selected policies** list.
6767
1. When you have finished selecting policies, select **Submit**.
68-
1. When the following message displays: **Are you sure you want to change permissions?**, select:
68+
1. When the following message displays: **Are you sure you want to change permission?**, select:
6969
- **Generate Script** to generate a script where you can manually add/remove the permissions you selected.
7070
- **Execute** to change the permission.
7171
- **Close** to cancel the action.

articles/active-directory/cloud-infrastructure-entitlement-management/cloudknox-howto-create-approve-privilege-request.md

Lines changed: 9 additions & 9 deletions
Original file line numberDiff line numberDiff line change
@@ -30,24 +30,24 @@ The **Remediation** dashboard has two privilege-on-demand (POD) workflows you ca
3030
3131
## Create a request for permissions
3232

33-
1. On the CloudKnox home page, select the **Remediation** tab, and then select the **My requests** subtab.
33+
1. On the CloudKnox home page, select the **Remediation** tab, and then select the **My Requests** subtab.
3434

35-
The **My requests** subtab displays the following options:
35+
The **My Requests** subtab displays the following options:
3636
- **Pending**: A list of requests you’ve made but haven't yet been reviewed.
3737
- **Approved**: A list of requests that have been reviewed and approved by the approver. These requests have either already been activated or are in the process of being activated.
3838
- **Processed**: A summary of the requests you’ve created that have been approved (**Done**), **Rejected**, and requests that have been **Canceled**.
3939

40-
1. To create a request for permissions, select **New request**.
40+
1. To create a request for permissions, select **New Request**.
4141
1. In the **Roles/Tasks** page:
42-
1. From the **Select an authorization system type** dropdown, select the authorization system type you want to access: **AWS**, **Azure** or **GCP**.
43-
1. From the **Select an authorization system** dropdown, select the accounts you want to access.
42+
1. From the **Authorization System Type** dropdown, select the authorization system type you want to access: **AWS**, **Azure** or **GCP**.
43+
1. From the **Authorization System** dropdown, select the accounts you want to access.
4444
1. From the **Identity** dropdown, select the identity on whose behalf you’re requesting access.
4545

4646
- If the identity you select is a Security Assertions Markup Language (SAML) user, and since a SAML user accesses the system through assumption of a role, select the user’s role in **Role**.
4747

4848
- If the identity you select is a local user, to select the policies you want:
49-
1. Select **Request policy(s)**.
50-
1. In **Available policies**, select the policies you want.
49+
1. Select **Request Policy(s)**.
50+
1. In **Available Policies**, select the policies you want.
5151
1. To select a specific policy, select the plus sign, and then find and select the policy you want.
5252

5353
The policies you’ve selected appear in the **Selected policies** box.
@@ -64,7 +64,7 @@ The **Remediation** dashboard has two privilege-on-demand (POD) workflows you ca
6464

6565
1. If you selected **AWS**, the **Scope** page appears.
6666

67-
1. In **Select scope**, select:
67+
1. In **Select Scope**, select:
6868
- **All Resources**
6969
- **Specific Resources**, and then select the resources you want.
7070
- **No Resources**
@@ -86,7 +86,7 @@ The **Remediation** dashboard has two privilege-on-demand (POD) workflows you ca
8686
- **Monthly**
8787
1. Select **Submit**.
8888

89-
The following message appears: **Your request has been successfully submitted.**
89+
The following message appears: **Your Request Has Been Successfully Submitted.**
9090

9191
The request you submitted is now listed in **Pending Requests**.
9292

0 commit comments

Comments
 (0)