Skip to content

Commit 15b4a35

Browse files
authored
Merge branch 'master' into Broken-link-seramasu
2 parents c895452 + d862ef7 commit 15b4a35

File tree

929 files changed

+21426
-7172
lines changed

Some content is hidden

Large Commits have some content hidden by default. Use the searchbox below for content that may be hidden.

929 files changed

+21426
-7172
lines changed

.openpublishing.redirection.active-directory.json

Lines changed: 26 additions & 1 deletion
Original file line numberDiff line numberDiff line change
@@ -10,6 +10,11 @@
1010
"redirect_url": "/azure/active-directory/manage-apps/what-is-application-management",
1111
"redirect_document_id": false
1212
},
13+
{
14+
"source_path_from_root": "/articles/active-directory/authentication/how-to-nudge-authenticator-app.md",
15+
"redirect_url": "/azure/active-directory/authentication/how-to-mfa-registration-campaign",
16+
"redirect_document_id": false
17+
},
1318
{
1419
"source_path_from_root": "/articles/active-directory/develop/active-directory-v2-limitations.md",
1520
"redirect_url": "/azure/active-directory/azuread-dev/azure-ad-endpoint-comparison",
@@ -1670,6 +1675,26 @@
16701675
"redirect_url": "/azure/active-directory/authentication/tutorial-enable-azure-mfa",
16711676
"redirect_document_id": false
16721677
},
1678+
{
1679+
"source_path_from_root": "/articles/active-directory/conditional-access/require-managed-devices.md",
1680+
"redirect_url": "/azure/active-directory/conditional-access/concept-conditional-access-grant",
1681+
"redirect_document_id": false
1682+
},
1683+
{
1684+
"source_path_from_root": "/articles/active-directory/conditional-access/untrusted-networks.md",
1685+
"redirect_url": "/azure/active-directory/conditional-access/howto-conditional-access-policy-all-users-mfa",
1686+
"redirect_document_id": true
1687+
},
1688+
{
1689+
"source_path_from_root": "/articles/active-directory/conditional-access/app-based-conditional-access.md",
1690+
"redirect_url": "/azure/active-directory/conditional-access/howto-policy-approved-app-or-app-protection",
1691+
"redirect_document_id": false
1692+
},
1693+
{
1694+
"source_path_from_root": "/articles/active-directory/conditional-access/app-protection-based-conditional-access.md",
1695+
"redirect_url": "/azure/active-directory/conditional-access/howto-policy-approved-app-or-app-protection",
1696+
"redirect_document_id": true
1697+
},
16731698
{
16741699
"source_path_from_root": "/articles/active-directory/authentication/quickstart-sspr.md",
16751700
"redirect_url": "/azure/active-directory/authentication/tutorial-enable-sspr",
@@ -9888,7 +9913,7 @@
98889913
{
98899914
"source_path_from_root": "/articles/active-directory/active-directory-saas-workplacebyfacebook-provisioning-tutorial.md",
98909915
"redirect_url": "/azure/active-directory/saas-apps/workplace-by-facebook-provisioning-tutorial",
9891-
"redirect_document_id": true
9916+
"redirect_document_id": false
98929917
},
98939918
{
98949919
"source_path_from_root": "/articles/active-directory/active-directory-saas-workplacebyfacebook-tutorial.md",

.openpublishing.redirection.json

Lines changed: 26 additions & 1 deletion
Original file line numberDiff line numberDiff line change
@@ -9843,7 +9843,7 @@
98439843
},
98449844
{
98459845
"source_path_from_root": "/articles/azure-supportability/low-priority-quota.md",
9846-
"redirect_url": "/azure/azure-portal/supportability/low-priority-quota",
9846+
"redirect_url": "/azure/azure-portal/supportability/spot-quota",
98479847
"redirect_document_id": true
98489848
},
98499849
{
@@ -9876,6 +9876,11 @@
98769876
"redirect_url": "/azure/azure-portal/supportability/sku-series-unavailable",
98779877
"redirect_document_id": true
98789878
},
9879+
{
9880+
"source_path_from_root": "/articles/azure-portal/supportability/low-priority-quota.md",
9881+
"redirect_url": "/azure/azure-portal/supportability/spot-quota",
9882+
"redirect_document_id": false
9883+
},
98799884
{
98809885
"source_path_from_root": "/articles/managed-applications/concepts-custom-providers-built-in-policy.md",
98819886
"redirect_url": "/azure/azure-resource-manager/custom-providers/concepts-built-in-policy",
@@ -46326,6 +46331,26 @@
4632646331
"redirect_url": "/azure/sentinel/monitor-your-data",
4632746332
"redirect_document_id": false
4632846333
},
46334+
{
46335+
"source_path": "articles/sentinel/connect-azure-security-center.md",
46336+
"redirect_url": "/azure/sentinel/connect-defender-for-cloud",
46337+
"redirect_document_id": false
46338+
},
46339+
{
46340+
"source_path": "articles/sentinel/entities-in-azure-sentinel.md",
46341+
"redirect_url": "/azure/sentinel/entities",
46342+
"redirect_document_id": false
46343+
},
46344+
{
46345+
"source_path": "articles/sentinel/azure-sentinel-billing.md",
46346+
"redirect_url": "/azure/sentinel/billing",
46347+
"redirect_document_id": false
46348+
},
46349+
{
46350+
"source_path": "articles/sentinel/automation-in-azure-sentinel.md",
46351+
"redirect_url": "/azure/sentinel/automation",
46352+
"redirect_document_id": false
46353+
},
4632946354
{
4633046355
"source_path": "articles/virtual-desktop/connect-android.md",
4633146356
"redirect_url": "/azure/virtual-desktop/user-documentation/connect-android",

articles/active-directory/app-provisioning/functions-for-customizing-application-data.md

Lines changed: 27 additions & 2 deletions
Original file line numberDiff line numberDiff line change
@@ -7,7 +7,7 @@ ms.service: active-directory
77
ms.subservice: app-provisioning
88
ms.workload: identity
99
ms.topic: reference
10-
ms.date: 10/27/2021
10+
ms.date: 11/16/2021
1111
ms.author: kenwith
1212
ms.reviewer: arvinh
1313
---
@@ -33,7 +33,7 @@ The syntax for Expressions for Attribute Mappings is reminiscent of Visual Basic
3333

3434
## List of Functions
3535

36-
[Append](#append)      [AppRoleAssignmentsComplex](#approleassignmentscomplex)      [BitAnd](#bitand)      [CBool](#cbool)      [CDate](#cdate)      [Coalesce](#coalesce)      [ConvertToBase64](#converttobase64)      [ConvertToUTF8Hex](#converttoutf8hex)      [Count](#count)      [CStr](#cstr)      [DateAdd](#dateadd)      [DateDiff](#datediff)      [DateFromNum](#datefromnum)  [FormatDateTime](#formatdatetime)      [Guid](#guid)      [IgnoreFlowIfNullOrEmpty](#ignoreflowifnullorempty)     [IIF](#iif)     [InStr](#instr)      [IsNull](#isnull)      [IsNullOrEmpty](#isnullorempty)      [IsPresent](#ispresent)      [IsString](#isstring)      [Item](#item)      [Join](#join)      [Left](#left)      [Mid](#mid)      [NormalizeDiacritics](#normalizediacritics)       [Not](#not)      [Now](#now)      [NumFromDate](#numfromdate)      [PCase](#pcase)      [RandomString](#randomstring)      [RemoveDuplicates](#removeduplicates)      [Replace](#replace)      [SelectUniqueValue](#selectuniquevalue)     [SingleAppRoleAssignment](#singleapproleassignment)     [Split](#split)    [StripSpaces](#stripspaces)      [Switch](#switch)     [ToLower](#tolower)     [ToUpper](#toupper)     [Word](#word)
36+
[Append](#append)      [AppRoleAssignmentsComplex](#approleassignmentscomplex)      [BitAnd](#bitand)      [CBool](#cbool)      [CDate](#cdate)      [Coalesce](#coalesce)      [ConvertToBase64](#converttobase64)      [ConvertToUTF8Hex](#converttoutf8hex)      [Count](#count)      [CStr](#cstr)      [DateAdd](#dateadd)      [DateDiff](#datediff)      [DateFromNum](#datefromnum)  [FormatDateTime](#formatdatetime)      [Guid](#guid)      [IgnoreFlowIfNullOrEmpty](#ignoreflowifnullorempty)     [IIF](#iif)     [InStr](#instr)      [IsNull](#isnull)      [IsNullOrEmpty](#isnullorempty)      [IsPresent](#ispresent)      [IsString](#isstring)      [Item](#item)      [Join](#join)      [Left](#left)      [Mid](#mid)      [NormalizeDiacritics](#normalizediacritics)       [Not](#not)      [Now](#now)      [NumFromDate](#numfromdate)      [PCase](#pcase)      [RandomString](#randomstring)      [Redact](#redact)      [RemoveDuplicates](#removeduplicates)      [Replace](#replace)      [SelectUniqueValue](#selectuniquevalue)     [SingleAppRoleAssignment](#singleapproleassignment)     [Split](#split)    [StripSpaces](#stripspaces)      [Switch](#switch)     [ToLower](#tolower)     [ToUpper](#toupper)     [Word](#word)
3737

3838
---
3939
### Append
@@ -811,7 +811,32 @@ Generates a random string with 6 characters. The string contains 3 numbers and 3
811811
Generates a random string with 10 characters. The string contains at least 2 numbers, 2 special characters, 2 capital letters, 1 lower case letter and excludes the characters "?" and "," (1@!2BaRg53).
812812

813813
---
814+
### Redact
815+
**Function:**
816+
Redact()
817+
818+
**Description:**
819+
The Redact function replaces the attribute value with the string literal "[Redact]" in the provisioning logs.
820+
821+
**Parameters:**
822+
823+
| Name | Required/ Repeating | Type | Notes |
824+
| --- | --- | --- | --- |
825+
| **attribute/value** |Required |String|Specify the attribute or constant / string to redact from the logs.|
826+
827+
**Example 1:** Redact an attribute:
828+
`Redact([userPrincipalName])`
829+
Removes the userPrincipalName from the provisioning logs.
814830

831+
**Example 2:** Redact a string:
832+
`Redact("StringToBeRedacted")`
833+
Removes a constant string from the provisioning logs.
834+
835+
**Example 3:** Redact a random string:
836+
`Redact(RandomString(6,3,0,0,3))`
837+
Removes the random string from the provisioning logs.
838+
839+
---
815840
### RemoveDuplicates
816841
**Function:**
817842
RemoveDuplicates(attribute)

articles/active-directory/app-provisioning/use-scim-to-provision-users-and-groups.md

Lines changed: 1 addition & 1 deletion
Original file line numberDiff line numberDiff line change
@@ -206,7 +206,7 @@ Use the general guidelines when implementing a SCIM endpoint to ensure compatibi
206206

207207
##### /Users:
208208
* The entitlements attribute is not supported.
209-
* Any attributes that are considered for user uniqueness must be usable as part of a filtered query. (e.g. if user uniqueness is evaluated for both userName and emails[type eq "work"], a GET to /Users with a filter must allow for both _userName eq "[email protected]"_ and _emails[type eq "work"] eq "[email protected]"_ queries.
209+
* Any attributes that are considered for user uniqueness must be usable as part of a filtered query. (e.g. if user uniqueness is evaluated for both userName and emails[type eq "work"], a GET to /Users with a filter must allow for both _userName eq "[email protected]"_ and _emails[type eq "work"].value eq "[email protected]"_ queries.
210210

211211
##### /Groups:
212212
* Groups are optional, but only supported if the SCIM implementation supports **PATCH** requests.

articles/active-directory/authentication/TOC.yml

Lines changed: 6 additions & 2 deletions
Original file line numberDiff line numberDiff line change
@@ -162,8 +162,12 @@
162162
href: howto-password-ban-bad-on-premises-faq.yml
163163
- name: Agent version history
164164
href: howto-password-ban-bad-on-premises-agent-versions.md
165-
- name: Nudge Microsoft Authenticator setup (Preview)
166-
href: how-to-nudge-authenticator-app.md
165+
- name: Run a registration campaign
166+
href: how-to-mfa-registration-campaign.md
167+
- name: Use number matching (Preview)
168+
href: how-to-mfa-number-match.md
169+
- name: Use additional context (Preview)
170+
href: how-to-mfa-additional-context.md
167171
- name: Use Microsoft managed settings
168172
href: how-to-mfa-microsoft-managed.md
169173
- name: Use a Temporary Access Pass (Preview)

articles/active-directory/authentication/how-to-authentication-find-coverage-gaps.md

Lines changed: 3 additions & 5 deletions
Original file line numberDiff line numberDiff line change
@@ -47,16 +47,14 @@ Based on gaps you found, require administrators to use multi-factor authenticati
4747

4848
- Run the [MFA enablement wizard](https://aka.ms/MFASetupGuide) to choose your MFA policy.
4949

50-
- If you assign custom or built-in admin roles in [Privileged Identity Management](https://docs.microsoft.com/azure/active-directory/privileged-identity-management/pim-configure), require multi-factor authentication upon role activation.
50+
- If you assign custom or built-in admin roles in [Privileged Identity Management](../privileged-identity-management/pim-configure.md), require multi-factor authentication upon role activation.
5151

5252
## Use Passwordless and phishing resistant authentication methods for your administrators
5353

5454
After your admins are enforced for multi-factor authentication and have been using it for a while, it is time to raise the bar on strong authentication and use Passwordless and phishing resistant authentication method:
5555

5656
- [Phone Sign-in (with Microsoft Authenticator)](concept-authentication-authenticator-app.md)
5757
- [FIDO2](concept-authentication-passwordless.md#fido2-security-keys)
58-
- [Windows Hello for Business](https://docs.microsoft.com/windows/security/identity-protection/hello-for-business/hello-overview)
59-
60-
You can read more about these authentication methods and their security considerations in [Azure AD authentication methods](concept-authentication-methods.md).
61-
58+
- [Windows Hello for Business](/windows/security/identity-protection/hello-for-business/hello-overview)
6259

60+
You can read more about these authentication methods and their security considerations in [Azure AD authentication methods](concept-authentication-methods.md).

0 commit comments

Comments
 (0)