You signed in with another tab or window. Reload to refresh your session.You signed out in another tab or window. Reload to refresh your session.You switched accounts on another tab or window. Reload to refresh your session.Dismiss alert
Copy file name to clipboardExpand all lines: articles/active-directory/cloud-infrastructure-entitlement-management/permissions-management-quickstart-guide.md
+1Lines changed: 1 addition & 0 deletions
Display the source diff
Display the rich diff
Original file line number
Diff line number
Diff line change
@@ -177,6 +177,7 @@ The status column in your Permissions Management UI shows you which step of data
177
177
178
178
-[Enable or disable the controller after onboarding](onboard-enable-controller-after-onboarding.md)
179
179
-[Add an account/subscription/project after onboarding is complete](onboard-add-account-after-onboarding.md)
180
+
-[Create folders to organize your authorization systems](how-to-create-folders.md)
Copy file name to clipboardExpand all lines: articles/active-directory/cloud-infrastructure-entitlement-management/product-roles-permissions.md
+8-6Lines changed: 8 additions & 6 deletions
Display the source diff
Display the rich diff
Original file line number
Diff line number
Diff line change
@@ -1,5 +1,5 @@
1
1
---
2
-
title: Permissions Management roles and permissions
2
+
title: Microsoft Entra Permissions Management roles and permissions
3
3
description: Review roles and the level of permissions assigned in Microsoft Entra Permissions Management.
4
4
# customerintent: As a cloud administer, I want to understand Permissions Management role assignments, so that I can effectively assign the correct permissions to users.
5
5
services: active-directory
@@ -16,12 +16,14 @@ ms.author: jfields
16
16
17
17
# Microsoft Entra Permissions Management roles and permissions levels
18
18
19
-
In Microsoft Azure and Microsoft Entra Permissions Management, assigned roles give users different levels of access to monitor and take action in multicloud environments. In the [Microsoft Entra admin center built-in roles](../roles/permissions-reference.md), review a list of identities assigned to a privileged role and learn more about the level of permissions given to users assigned roles in your organization.
19
+
In Microsoft Azure and Microsoft Entra Permissions Management role assignments grant users permissions to monitor and take action in multicloud environments.
20
20
21
21
-**Global Administrator**: Manages all aspects of Entra Admin Center and Microsoft services that use Entra Admin Center identities.
22
22
-**Billing Administrator**: Performs common billing related tasks like updating payment information.
23
23
-**Permissions Management Administrator**: Manages all aspects of Entra Permissions Management.
24
24
25
+
See [Microsoft Entra ID built-in roles to learn more.](product-privileged-role-insights.md)
26
+
25
27
## Enabling Permissions Management
26
28
- To activate a trial or purchase a license, you must have *Global Administrator* or *Billing Administrator* permissions.
27
29
@@ -35,12 +37,12 @@ In Microsoft Azure and Microsoft Entra Permissions Management, assigned roles gi
35
37
- Users can have the following permissions:
36
38
- Admin for all authorization system types
37
39
- Admin for selected authorization system types
38
-
- If a user isn't an admin, they're assigned Entra Admin Center security group-based, fine-grained permissions for all or selected authorization system types:
39
-
- Viewers: View only access to scoped cloud accounts. View the specified AWS accounts, Entra subscriptions, and GCP projects
40
+
- Fine-grained permissions for all or selected authorization system types
41
+
- If a user isn't an admin, they're assigned Microsoft Entra ID security group-based, fine-grained permissions for all or selected authorization system types:
42
+
- Viewers: View the specified AWS accounts, Azure subscriptions, and GCP projects
40
43
- Controller: Modify Cloud Infrastructure Entitlement Management (CIEM) properties and use the Remediation dashboard.
41
44
- Approvers: Able to approve permission requests
42
-
- Requestors: Request for permissions in cloud accounts
43
-
- Request permissions in the specified AWS accounts, Entra subscriptions, and GCP projects.
45
+
- Requestors: Request permissions in the specified AWS accounts, Entra subscriptions, and GCP projects.
44
46
45
47
## Permissions Management actions and required roles
0 commit comments