You signed in with another tab or window. Reload to refresh your session.You signed out in another tab or window. Reload to refresh your session.You switched accounts on another tab or window. Reload to refresh your session.Dismiss alert
Copy file name to clipboardExpand all lines: articles/active-directory/cloud-infrastructure-entitlement-management/cloudknox-howto-add-remove-role-task.md
+29-29Lines changed: 29 additions & 29 deletions
Display the source diff
Display the rich diff
Original file line number
Diff line number
Diff line change
@@ -27,79 +27,79 @@ This article describes how you can add and remove roles and tasks for Microsoft
27
27
## View permissions
28
28
29
29
1. On the CloudKnox home page, select the **Remediation** tab, and then select the **Permissions** subtab.
30
-
1. From the **Select an authorization system type** dropdown, select **Azure** or **GCP**.
31
-
1. From the **Select an authorization system** dropdown, select the accounts you want to access.
32
-
1. From the **Search for** dropdown, select **Group**, **User**, or **APP**.
33
-
1. To search for more parameters, you can make a selection from the **User States**, **Privilege Creep Index**, and **Task usage** dropdowns.
30
+
1. From the **Authorization System Type** dropdown, select **Azure** or **GCP**.
31
+
1. From the **Authorization System** dropdown, select the accounts you want to access.
32
+
1. From the **Search For** dropdown, select **Group**, **User**, or **APP**.
33
+
1. To search for more parameters, you can make a selection from the **User States**, **Permission Creep Index**, and **Task Usage** dropdowns.
34
34
1. Select **Apply**.
35
35
CloudKnox displays a list of groups, users, and service accounts that match your criteria.
36
36
1. In **Enter a username**, enter or select a user.
37
-
1. In **Enter a group name**, enter or select a group, then select **Apply**.
37
+
1. In **Enter a Group Name**, enter or select a group, then select **Apply**.
38
38
1. Make a selection from the results list.
39
39
40
-
The table displays the **Username****Domain/Account**, **Source**, **Resource** and **Current role**.
40
+
The table displays the **Username****Domain/Account**, **Source**, **Resource** and **Current Role**.
41
41
42
42
43
43
## Add a role
44
44
45
45
1. On the CloudKnox home page, select the **Remediation** tab, and then select the **Permissions** subtab.
46
-
1. From the **Select an authorization system type** dropdown, select **Azure** or **GCP**.
47
-
1. From the **Select an authorization system** dropdown, select the accounts you want to access.
48
-
1. From the **Search for** dropdown, select **Group**, **User**, or **APP**, and then select **Apply**.
46
+
1. From the **Authorization System Type** dropdown, select **Azure** or **GCP**.
47
+
1. From the **Authorization System** dropdown, select the accounts you want to access.
48
+
1. From the **Search For** dropdown, select **Group**, **User**, or **APP/Service Account**, and then select **Apply**.
49
49
1. Make a selection from the results list.
50
50
51
51
1. To attach a role, select **Add role**.
52
-
1. In the **Add role** page, from the **Available roles** list, select the plus sign **(+)** to move the role to the **Selected roles** list.
52
+
1. In the **Add Role** page, from the **Available Roles** list, select the plus sign **(+)** to move the role to the **Selected Roles** list.
53
53
1. When you have finished adding roles, select **Submit**.
54
-
1. When the following message displays: **Are you sure you want to change permissions?**, select:
54
+
1. When the following message displays: **Are you sure you want to change permission?**, select:
55
55
-**Generate Script** to generate a script where you can manually add/remove the permissions you selected.
56
56
-**Execute** to change the permission.
57
57
-**Close** to cancel the action.
58
58
59
59
## Remove a role
60
60
61
61
1. On the CloudKnox home page, select the **Remediation** tab, and then select the **Permissions** subtab.
62
-
1. From the **Select an authorization system type** dropdown, select **Azure** or **GCP**.
63
-
1. From the **Select an authorization system** dropdown, select the accounts you want to access.
64
-
1. From the **Search for** dropdown, select **Group**, **User**, or **APP**, and then select **Apply**.
62
+
1. From the **Authorization System Type** dropdown, select **Azure** or **GCP**.
63
+
1. From the **Authorization System** dropdown, select the accounts you want to access.
64
+
1. From the **Search For** dropdown, select **Group**, **User**, or **APP/Service Account**, and then select **Apply**.
65
65
1. Make a selection from the results list.
66
66
67
-
1. To remove a role, select **Remove role**.
68
-
1. In the **Remove role** page, from the **Available roles** list, select the plus sign **(+)** to move the role to the **Selected roles** list.
67
+
1. To remove a role, select **Remove Role**.
68
+
1. In the **Remove Role** page, from the **Available Roles** list, select the plus sign **(+)** to move the role to the **Selected Roles** list.
69
69
1. When you have finished selecting roles, select **Submit**.
70
-
1. When the following message displays: **Are you sure you want to change permissions?**, select:
70
+
1. When the following message displays: **Are you sure you want to change permission?**, select:
71
71
-**Generate Script** to generate a script where you can manually add/remove the permissions you selected.
72
72
-**Execute** to change the permission.
73
73
-**Close** to cancel the action.
74
74
75
75
## Add a task
76
76
77
77
1. On the CloudKnox home page, select the **Remediation** tab, and then select the **Permissions** subtab.
78
-
1. From the **Select an authorization system type** dropdown, select **Azure** or **GCP**.
79
-
1. From the **Select an authorization system** dropdown, select the accounts you want to access.
80
-
1. From the **Search for** dropdown, select **Group**, **User**, or **APP**, and then select **Apply**.
78
+
1. From the **Authorization System Type** dropdown, select **Azure** or **GCP**.
79
+
1. From the **Authorization System** dropdown, select the accounts you want to access.
80
+
1. From the **Search For** dropdown, select **Group**, **User**, or **APP/Service Account**, and then select **Apply**.
81
81
1. Make a selection from the results list.
82
82
83
-
1. To attach a role, select **Add tasks**.
84
-
1. In the **Add tasks** page, from the **Available tasks** list, select the plus sign **(+)** to move the task to the **Selected tasks** list.
83
+
1. To attach a role, select **Add Tasks**.
84
+
1. In the **Add Tasks** page, from the **Available Tasks** list, select the plus sign **(+)** to move the task to the **Selected Tasks** list.
85
85
1. When you have finished adding tasks, select **Submit**.
86
-
1. When the following message displays: **Are you sure you want to change permissions?**, select:
86
+
1. When the following message displays: **Are you sure you want to change permission?**, select:
87
87
-**Generate Script** to generate a script where you can manually add/remove the permissions you selected.
88
88
-**Execute** to change the permission.
89
89
-**Close** to cancel the action.
90
90
91
91
## Remove a task
92
92
93
93
1. On the CloudKnox home page, select the **Remediation** tab, and then select the **Permissions** subtab.
94
-
1. From the **Select an authorization system type** dropdown, select **Azure** or **GCP**.
95
-
1. From the **Select an authorization system** dropdown, select the accounts you want to access.
96
-
1. From the **Search for** dropdown, select **Group**, **User**, or **APP**, and then select **Apply**.
94
+
1. From the **Authorization System Type** dropdown, select **Azure** or **GCP**.
95
+
1. From the **Authorization System** dropdown, select the accounts you want to access.
96
+
1. From the **Search For** dropdown, select **Group**, **User**, or **APP/Service Account**, and then select **Apply**.
97
97
1. Make a selection from the results list.
98
98
99
-
1. To remove a task, select **Remove tasks**.
100
-
1. In the **Remove tasks** page, from the **Available tasks** list, select the plus sign **(+)** to move the task to the **Selected tasks** list.
99
+
1. To remove a task, select **Remove Tasks**.
100
+
1. In the **Remove Tasks** page, from the **Available Tasks** list, select the plus sign **(+)** to move the task to the **Selected Tasks** list.
101
101
1. When you have finished selecting tasks, select **Submit**.
102
-
1. When the following message displays: **Are you sure you want to change permissions?**, select:
102
+
1. When the following message displays: **Are you sure you want to change permission?**, select:
103
103
-**Generate Script** to generate a script where you can manually add/remove the permissions you selected.
Copy file name to clipboardExpand all lines: articles/active-directory/cloud-infrastructure-entitlement-management/cloudknox-howto-attach-detach-permissions.md
+14-14Lines changed: 14 additions & 14 deletions
Display the source diff
Display the rich diff
Original file line number
Diff line number
Diff line change
@@ -27,45 +27,45 @@ This article describes how you can attach and detach permissions for users, role
27
27
## View permissions
28
28
29
29
1. On the CloudKnox home page, select the **Remediation** tab, and then select the **Permissions** subtab.
30
-
1. From the **Select an authorization system type** dropdown, select **AWS**.
31
-
1. From the **Select an authorization system** dropdown, select the accounts you want to access.
30
+
1. From the **Authorization System Type** dropdown, select **AWS**.
31
+
1. From the **Authorization System** dropdown, select the accounts you want to access.
32
32
1. From the **Search For** dropdown, select **Group**, **User**, or **Role**.
33
-
1. To search for more parameters, you can make a selection from the **User States**, **Privilege Creep Index**, and **Task usage** dropdowns.
33
+
1. To search for more parameters, you can make a selection from the **User States**, **Permission Creep Index**, and **Task Usage** dropdowns.
34
34
1. Select **Apply**.
35
35
CloudKnox displays a list of users, roles, or groups that match your criteria.
36
36
1. In **Enter a username**, enter or select a user.
37
37
1. In **Enter a group name**, enter or select a group, then select **Apply**.
38
38
1. Make a selection from the results list.
39
39
40
-
The table displays the related **Username****Domain/Account**, **Source** and **Policy name**.
40
+
The table displays the related **Username****Domain/Account**, **Source** and **Policy Name**.
41
41
42
42
43
43
## Attach policies
44
44
45
45
1. On the CloudKnox home page, select the **Remediation** tab, and then select the **Permissions** subtab.
46
-
1. From the **Select an authorization system type** dropdown, select **AWS**.
46
+
1. From the **Authorization System Type** dropdown, select **AWS**.
47
47
1. In **Enter a username**, enter or select a user.
48
-
1. In **Enter a group name**, enter or select a group, then select **Apply**.
48
+
1. In **Enter a Group Name**, enter or select a group, then select **Apply**.
49
49
1. Make a selection from the results list.
50
-
1. To attach a policy, select **Attach policies**.
51
-
1. In the **Attach policies** page, from the **Available policies** list, select the plus sign **(+)** to move the policy to the **Selected policies** list.
50
+
1. To attach a policy, select **Attach Policies**.
51
+
1. In the **Attach Policies** page, from the **Available policies** list, select the plus sign **(+)** to move the policy to the **Selected policies** list.
52
52
1. When you have finished adding policies, select **Submit**.
53
-
1. When the following message displays: **Are you sure you want to change permissions?**, select:
53
+
1. When the following message displays: **Are you sure you want to change permission?**, select:
54
54
-**Generate Script** to generate a script where you can manually add/remove the permissions you selected.
55
55
-**Execute** to change the permission.
56
56
-**Close** to cancel the action.
57
57
58
58
## Detach policies
59
59
60
60
1. On the CloudKnox home page, select the **Remediation** tab, and then select the **Permissions** subtab.
61
-
1. From the **Select an authorization system type** dropdown, select **AWS**.
61
+
1. From the **Authorization System Type** dropdown, select **AWS**.
62
62
1. In **Enter a username**, enter or select a user.
63
-
1. In **Enter a group name**, enter or select a group, then select **Apply**.
63
+
1. In **Enter a Group Name**, enter or select a group, then select **Apply**.
64
64
1. Make a selection from the results list.
65
-
1. To remove a policy, select **Detach policies**.
66
-
1. In the **Detach policies** page, from the **Available policies** list, select the plus sign **(+)** to move the policy to the **Selected policies** list.
65
+
1. To remove a policy, select **Detach Policies**.
66
+
1. In the **Detach Policies** page, from the **Available policies** list, select the plus sign **(+)** to move the policy to the **Selected policies** list.
67
67
1. When you have finished selecting policies, select **Submit**.
68
-
1. When the following message displays: **Are you sure you want to change permissions?**, select:
68
+
1. When the following message displays: **Are you sure you want to change permission?**, select:
69
69
-**Generate Script** to generate a script where you can manually add/remove the permissions you selected.
Copy file name to clipboardExpand all lines: articles/active-directory/cloud-infrastructure-entitlement-management/cloudknox-howto-create-approve-privilege-request.md
+9-9Lines changed: 9 additions & 9 deletions
Display the source diff
Display the rich diff
Original file line number
Diff line number
Diff line change
@@ -30,24 +30,24 @@ The **Remediation** dashboard has two privilege-on-demand (POD) workflows you ca
30
30
31
31
## Create a request for permissions
32
32
33
-
1. On the CloudKnox home page, select the **Remediation** tab, and then select the **My requests** subtab.
33
+
1. On the CloudKnox home page, select the **Remediation** tab, and then select the **My Requests** subtab.
34
34
35
-
The **My requests** subtab displays the following options:
35
+
The **My Requests** subtab displays the following options:
36
36
-**Pending**: A list of requests you’ve made but haven't yet been reviewed.
37
37
-**Approved**: A list of requests that have been reviewed and approved by the approver. These requests have either already been activated or are in the process of being activated.
38
38
-**Processed**: A summary of the requests you’ve created that have been approved (**Done**), **Rejected**, and requests that have been **Canceled**.
39
39
40
-
1. To create a request for permissions, select **New request**.
40
+
1. To create a request for permissions, select **New Request**.
41
41
1. In the **Roles/Tasks** page:
42
-
1. From the **Select an authorization system type** dropdown, select the authorization system type you want to access: **AWS**, **Azure** or **GCP**.
43
-
1. From the **Select an authorization system** dropdown, select the accounts you want to access.
42
+
1. From the **Authorization System Type** dropdown, select the authorization system type you want to access: **AWS**, **Azure** or **GCP**.
43
+
1. From the **Authorization System** dropdown, select the accounts you want to access.
44
44
1. From the **Identity** dropdown, select the identity on whose behalf you’re requesting access.
45
45
46
46
- If the identity you select is a Security Assertions Markup Language (SAML) user, and since a SAML user accesses the system through assumption of a role, select the user’s role in **Role**.
47
47
48
48
- If the identity you select is a local user, to select the policies you want:
49
-
1. Select **Request policy(s)**.
50
-
1. In **Available policies**, select the policies you want.
49
+
1. Select **Request Policy(s)**.
50
+
1. In **Available Policies**, select the policies you want.
51
51
1. To select a specific policy, select the plus sign, and then find and select the policy you want.
52
52
53
53
The policies you’ve selected appear in the **Selected policies** box.
@@ -64,7 +64,7 @@ The **Remediation** dashboard has two privilege-on-demand (POD) workflows you ca
64
64
65
65
1. If you selected **AWS**, the **Scope** page appears.
66
66
67
-
1. In **Select scope**, select:
67
+
1. In **Select Scope**, select:
68
68
-**All Resources**
69
69
-**Specific Resources**, and then select the resources you want.
70
70
-**No Resources**
@@ -86,7 +86,7 @@ The **Remediation** dashboard has two privilege-on-demand (POD) workflows you ca
86
86
-**Monthly**
87
87
1. Select **Submit**.
88
88
89
-
The following message appears: **Your request has been successfully submitted.**
89
+
The following message appears: **Your Request Has Been Successfully Submitted.**
90
90
91
91
The request you submitted is now listed in **Pending Requests**.
0 commit comments