You signed in with another tab or window. Reload to refresh your session.You signed out in another tab or window. Reload to refresh your session.You switched accounts on another tab or window. Reload to refresh your session.Dismiss alert
Copy file name to clipboardExpand all lines: articles/purview/how-to-enable-data-use-management.md
+1-1Lines changed: 1 addition & 1 deletion
Display the source diff
Display the rich diff
Original file line number
Diff line number
Diff line change
@@ -85,7 +85,7 @@ To disable Data Use Management for a source, resource group, or subscription, a
85
85
-**Case 3** shows an invalid configuration arising because Storage accounts S3SA1 and S3SA2 both belong to Subscription 3, but are registered to different Microsoft Purview accounts. In that case, the *Data Use Management* toggle will only enable in the Microsoft Purview account that wins and registers a data source in that subscription first. The toggle will then be greyed out for the other data source.
86
86
- If the *Data Use Management* toggle is greyed out and cannot be enabled, hover over it to know the name of the Microsoft Purview account that has registered the data resource first.
87
87
88
-

88
+

Copy file name to clipboardExpand all lines: articles/purview/how-to-policies-data-owner-authoring-generic.md
+10-10Lines changed: 10 additions & 10 deletions
Display the source diff
Display the rich diff
Original file line number
Diff line number
Diff line change
@@ -41,13 +41,13 @@ Ensure you have the *Policy Author* permission as described [here](#permissions-
41
41
42
42
1. Select the **New Policy** button in the policy page.
43
43
44
-
:::image type="content" source="./media/access-policies-common/policy-onboard-guide-1.png" alt-text="Data owner can access the Policy functionality in Microsoft Purview when it wants to create policies.":::
44
+
:::image type="content" source="./media/how-to-policies-data-owner-authoring-generic/policy-onboard-guide-1.png" alt-text="Data owner can access the Policy functionality in Microsoft Purview when it wants to create policies.":::
45
45
46
46
1. The new policy page will appear. Enter the policy **Name** and **Description**.
47
47
48
48
1. To add policy statements to the new policy, select the **New policy statement** button. This will bring up the policy statement builder.
49
49
50
-
:::image type="content" source="./media/access-policies-common/create-new-policy.png" alt-text="Data owner can create a new policy statement.":::
50
+
:::image type="content" source="./media/how-to-policies-data-owner-authoring-generic/create-new-policy.png" alt-text="Data owner can create a new policy statement.":::
51
51
52
52
1. Select the **Effect** button and choose *Allow* from the drop-down list.
53
53
@@ -59,15 +59,15 @@ Ensure you have the *Policy Author* permission as described [here](#permissions-
59
59
- To create a broad policy statement that covers an entire data source, resource group, or subscription that was previously registered, use the **Data sources** box and select its **Type**.
60
60
- To create a fine-grained policy, use the **Assets** box instead. Enter the **Data Source Type** and the **Name** of a previously registered and scanned data source. See example in the image.
61
61
62
-
:::image type="content" source="./media/access-policies-common/select-data-source-type.png" alt-text="Data owner can select a Data Resource when editing a policy statement.":::
62
+
:::image type="content" source="./media/how-to-policies-data-owner-authoring-generic/select-data-source-type.png" alt-text="Data owner can select a Data Resource when editing a policy statement.":::
63
63
64
64
1. Select the **Continue** button and transverse the hierarchy to select and underlying data-object (for example: folder, file, etc.). Select **Recursive** to apply the policy from that point in the hierarchy down to any child data-objects. Then select the **Add** button. This will take you back to the policy editor.
65
65
66
-
:::image type="content" source="./media/access-policies-common/select-asset.png" alt-text="Data owner can select the asset when creating or editing a policy statement.":::
66
+
:::image type="content" source="./media/how-to-policies-data-owner-authoring-generic/select-asset.png" alt-text="Data owner can select the asset when creating or editing a policy statement.":::
67
67
68
68
1. Select the **Subjects** button and enter the subject identity as a principal, group, or MSI. Then select the **OK** button. This will take you back to the policy editor
69
69
70
-
:::image type="content" source="./media/access-policies-common/select-subject.png" alt-text="Data owner can select the subject when creating or editing a policy statement.":::
70
+
:::image type="content" source="./media/how-to-policies-data-owner-authoring-generic/select-subject.png" alt-text="Data owner can select the subject when creating or editing a policy statement.":::
71
71
72
72
1. Repeat the steps #5 to #11 to enter any more policy statements.
73
73
@@ -86,15 +86,15 @@ The steps to publish a policy are as follows:
86
86
87
87
1. Navigate to the **Data policy** feature using the left side panel. Then select **Data policies**.
88
88
89
-
:::image type="content" source="./media/access-policies-common/policy-onboard-guide-2.png" alt-text="Data owner can access the Policy functionality in Microsoft Purview when it wants to update a policy by selecting 'Data policies'.":::
89
+
:::image type="content" source="./media/how-to-policies-data-owner-authoring-generic/policy-onboard-guide-2.png" alt-text="Data owner can access the Policy functionality in Microsoft Purview when it wants to update a policy by selecting 'Data policies'.":::
90
90
91
91
1. The Policy portal will present the list of existing policies in Microsoft Purview. Locate the policy that needs to be published. Select the **Publish** button on the right top corner of the page.
92
92
93
-
:::image type="content" source="./media/access-policies-common/publish-policy.png" alt-text="Data owner can publish a policy.":::
93
+
:::image type="content" source="./media/how-to-policies-data-owner-authoring-generic/publish-policy.png" alt-text="Data owner can publish a policy.":::
94
94
95
95
1. A list of data sources is displayed. You can enter a name to filter the list. Then, select each data source where this policy is to be published and then select the **Publish** button.
96
96
97
-
:::image type="content" source="./media/access-policies-common/select-data-sources-publish-policy.png" alt-text="Data owner can select the data source where the policy will be published.":::
97
+
:::image type="content" source="./media/how-to-policies-data-owner-authoring-generic/select-data-sources-publish-policy.png" alt-text="Data owner can select the data source where the policy will be published.":::
98
98
99
99
>[!Note]
100
100
> After making changes to a policy, there is no need to publish it again for it to take effect if the data source(s) continues to be the same.
@@ -108,13 +108,13 @@ Ensure you have the *Policy Author* permission as described [here](#permissions-
108
108
109
109
1. Navigate to the **Data policy** feature using the left side panel. Then select **Data policies**.
110
110
111
-
:::image type="content" source="./media/access-policies-common/policy-onboard-guide-2.png" alt-text="Data owner can access the Policy functionality in Microsoft Purview when it wants to update a policy.":::
111
+
:::image type="content" source="./media/how-to-policies-data-owner-authoring-generic/policy-onboard-guide-2.png" alt-text="Data owner can access the Policy functionality in Microsoft Purview when it wants to update a policy.":::
112
112
113
113
1. The Policy portal will present the list of existing policies in Microsoft Purview. Select the policy that needs to be updated.
114
114
115
115
1. The policy details page will appear, including Edit and Delete options. Select the **Edit** button, which brings up the policy statement builder. Now, any parts of the statements in this policy can be updated. To delete the policy, use the **Delete** button.
116
116
117
-
:::image type="content" source="./media/access-policies-common/edit-policy.png" alt-text="Data owner can edit or delete a policy statement.":::
117
+
:::image type="content" source="./media/how-to-policies-data-owner-authoring-generic/edit-policy.png" alt-text="Data owner can edit or delete a policy statement.":::
Copy file name to clipboardExpand all lines: articles/purview/includes/access-policies-configuration-generic.md
+2-2Lines changed: 2 additions & 2 deletions
Display the source diff
Display the rich diff
Original file line number
Diff line number
Diff line change
@@ -33,12 +33,12 @@ To enable the *Data Use Management* (DUM) toggle for a data source, resource gro
33
33
34
34
Follow this [guide to configure Azure RBAC role permissions](../../role-based-access-control/check-access.md). The following screenshot shows how to access the Access Control section in Azure portal experience for the data resource to add a role assignment:
35
35
36
-

36
+

37
37
38
38
39
39
2) In addition, the same user needs to have Microsoft Purview Data source administrator (DSA) role at the **root collection level**. See the guide on [managing Microsoft Purview role assignments](../catalog-permissions.md#assign-permissions-to-your-users). The following screenshot shows how to assign Data Source Admin at root collection level:
40
40
41
-

41
+

42
42
43
43
44
44
#### Permissions for policy authoring and publishing
0 commit comments