Skip to content

Commit 39dbab6

Browse files
Merge pull request #225812 from rolyon/rolyon-aadroles-custom-roles-app-permissions-descriptions
[Azure AD roles] Update custom role permission descriptions
2 parents c60f968 + db9dc48 commit 39dbab6

File tree

3 files changed

+13
-13
lines changed

3 files changed

+13
-13
lines changed

articles/active-directory/roles/custom-consent-permissions.md

Lines changed: 5 additions & 5 deletions
Original file line numberDiff line numberDiff line change
@@ -8,7 +8,7 @@ ms.service: active-directory
88
ms.workload: identity
99
ms.subservice: roles
1010
ms.topic: overview
11-
ms.date: 11/04/2020
11+
ms.date: 01/31/2023
1212
ms.author: rolyon
1313
ms.reviewer: psignoret
1414
ms.custom: it-pro
@@ -65,10 +65,10 @@ To delegate the creation, update and deletion of [app consent policies](../manag
6565
> | ---------- | ----------- |
6666
> | microsoft.directory/servicePrincipals/managePermissionGrantsForSelf.{id} | Grants the ability to consent to apps on behalf of self (user consent), subject to app consent policy `{id}`. |
6767
> | microsoft.directory/servicePrincipals/managePermissionGrantsForAll.{id} | Grants the permission to consent to apps on behalf of all (tenant-wide admin consent), subject to app consent policy `{id}`. |
68-
> | microsoft.directory/permissionGrantPolicies/standard/read | Grants the ability to read app consent policies. |
69-
> | microsoft.directory/permissionGrantPolicies/basic/update | Grants the ability to update basic properties on existing app consent policies. |
70-
> | microsoft.directory/permissionGrantPolicies/create | Grants the ability to create app consent policies. |
71-
> | microsoft.directory/permissionGrantPolicies/delete | Grants the ability to delete app consent policies. |
68+
> | microsoft.directory/permissionGrantPolicies/standard/read | Read standard properties of permission grant policies |
69+
> | microsoft.directory/permissionGrantPolicies/basic/update | Update basic properties of permission grant policies |
70+
> | microsoft.directory/permissionGrantPolicies/create | Create permission grant policies |
71+
> | microsoft.directory/permissionGrantPolicies/delete | Delete permission grant policies |
7272
7373
## Next steps
7474

articles/active-directory/roles/custom-device-permissions.md

Lines changed: 3 additions & 3 deletions
Original file line numberDiff line numberDiff line change
@@ -8,7 +8,7 @@ ms.service: active-directory
88
ms.workload: identity
99
ms.subservice: roles
1010
ms.topic: reference
11-
ms.date: 11/30/2022
11+
ms.date: 01/31/2023
1212
ms.author: rolyon
1313
ms.reviewer:
1414
ms.custom: it-pro
@@ -77,12 +77,12 @@ The following permission is available to update tenant-wide device registration
7777
> [!div class="mx-tableFixed"]
7878
> | Permission | Description |
7979
> | ---------- | ----------- |
80-
> | microsoft.directory/devices/createdFrom/read | Read createdfrom properties of devices |
80+
> | microsoft.directory/devices/createdFrom/read | Read created from Internet of Things (IoT) device template links |
8181
> | microsoft.directory/devices/registeredOwners/read | Read registered owners of devices |
8282
> | microsoft.directory/devices/registeredUsers/read | Read registered users of devices |
8383
> | microsoft.directory/devices/standard/read | Read basic properties on devices |
8484
> | microsoft.directory/bitlockerKeys/key/read | Read bitlocker metadata and key on devices |
85-
> | microsoft.directory/bitlockerKeys/metadata/read | Read bitlocker metadata on devices |
85+
> | microsoft.directory/bitlockerKeys/metadata/read | Read bitlocker key metadata on devices |
8686
> | microsoft.directory/deviceRegistrationPolicy/standard/read | Read standard properties on device registration policies |
8787
8888
#### Update

articles/active-directory/roles/custom-enterprise-app-permissions.md

Lines changed: 5 additions & 5 deletions
Original file line numberDiff line numberDiff line change
@@ -8,7 +8,7 @@ ms.service: active-directory
88
ms.workload: identity
99
ms.subservice: roles
1010
ms.topic: overview
11-
ms.date: 08/06/2021
11+
ms.date: 01/31/2023
1212
ms.author: rolyon
1313
ms.reviewer: vincesm
1414
ms.custom: it-pro
@@ -177,7 +177,7 @@ To delegate create, read, update, and delete (CRUD) permissions for updating the
177177
> | microsoft.directory/applicationPolicies/owners/update | Update the owner property of application policies |
178178
> | microsoft.directory/applicationPolicies/policyAppliedTo/read | Read application policies applied to objects list |
179179
> | microsoft.directory/applicationPolicies/standard/read | Read standard properties of application policies |
180-
> | microsoft.directory/servicePrincipals/allProperties/allTasks | Create and delete servicePrincipals, and read and update all properties in Azure Active Directory |
180+
> | microsoft.directory/servicePrincipals/allProperties/allTasks | Create and delete service principals, and read and update all properties |
181181
> | microsoft.directory/servicePrincipals/allProperties/read | Read all properties (including privileged properties) on servicePrincipals |
182182
> | microsoft.directory/servicePrincipals/allProperties/update | Update all properties (including privileged properties) on servicePrincipals |
183183
> | microsoft.directory/servicePrincipals/appRoleAssignedTo/read | Read service principal role assignments |
@@ -218,9 +218,9 @@ To delegate create, read, update, and delete (CRUD) permissions for updating the
218218
> | microsoft.directory/connectorGroups/allProperties/update | Update all properties of application proxy connector groups |
219219
> | microsoft.directory/connectors/create | Create application proxy connectors |
220220
> | microsoft.directory/connectors/allProperties/read | Read all properties of application proxy connectors |
221-
> | microsoft.directory/servicePrincipals/synchronizationJobs/manage | Start, restart, and pause application provisioning syncronization jobs |
222-
> | microsoft.directory/servicePrincipals/synchronization/standard/read | Read provisioning settings associated with the application object |
223-
> | microsoft.directory/servicePrincipals/synchronizationSchema/manage | Create and manage application provisioning syncronization jobs and schema |
221+
> | microsoft.directory/servicePrincipals/synchronizationJobs/manage | Start, restart, and pause application provisioning synchronization jobs |
222+
> | microsoft.directory/servicePrincipals/synchronization/standard/read | Read provisioning settings associated with your service principal |
223+
> | microsoft.directory/servicePrincipals/synchronizationSchema/manage | Create and manage application provisioning synchronization jobs and schema |
224224
> | microsoft.directory/provisioningLogs/allProperties/read | Read all properties of provisioning logs |
225225
226226
## Next steps

0 commit comments

Comments
 (0)