Skip to content

Commit 3d8e8ba

Browse files
authored
Merge pull request #189415 from MicrosoftDocs/main
2/22 OOB Publish at 6PM
2 parents 0dc69e0 + 0e10e06 commit 3d8e8ba

File tree

99 files changed

+7480
-399
lines changed

Some content is hidden

Large Commits have some content hidden by default. Use the searchbox below for content that may be hidden.

99 files changed

+7480
-399
lines changed

articles/active-directory-b2c/partner-dynamics-365-fraud-protection.md

Lines changed: 1 addition & 1 deletion
Original file line numberDiff line numberDiff line change
@@ -168,7 +168,7 @@ In the provided [custom policies](https://github.com/azure-ad-b2c/partner-integr
168168

169169
For additional information, review the following articles:
170170

171-
- [Microsoft DFP samples](https://github.com/Microsoft/Dynamics-365-Fraud-Protection-Samples)
171+
- [Microsoft DFP samples](https://github.com/azure-ad-b2c/partner-integrations/tree/master/samples/Dynamics-Fraud-Protection)
172172

173173
- [Custom policies in Azure AD B2C](./custom-policy-overview.md)
174174

Lines changed: 161 additions & 0 deletions
Original file line numberDiff line numberDiff line change
@@ -0,0 +1,161 @@
1+
- name: CloudKnox Permissions Management
2+
href: index.yml
3+
- name: Overview
4+
expanded: true
5+
items:
6+
- name: What's CloudKnox Permissions Management?
7+
href: cloudknox-overview.md
8+
- name: How-to guides
9+
expanded: true
10+
items:
11+
- name: Onboard CloudKnox on the Azure AD tenant
12+
expanded: true
13+
items:
14+
- name: Enable CloudKnox in your organization
15+
href: cloudknox-onboard-enable-tenant.md
16+
- name: Onboard an AWS account
17+
href: cloudknox-onboard-aws.md
18+
- name: Onboard an Azure subscription
19+
href: cloudknox-onboard-azure.MD
20+
- name: Onboard a GCP project
21+
href: cloudknox-onboard-gcp.md
22+
- name: Enable or disable the controller after onboarding is complete
23+
href: cloudknox-onboard-enable-controller-after-onboarding.md
24+
- name: Add an account/ subscription/ project after onboarding is complete
25+
href: cloudknox-onboard-add-account-after-onboarding.md
26+
- name: View risk metrics in your authorization system
27+
expanded: false
28+
items:
29+
- name: View key statistics and data about your authorization system
30+
href: cloudknox-ui-dashboard.md
31+
- name: View data about the activity in your authorization system
32+
href: cloudknox-product-dashboard.md
33+
- name: Configure settings for data collection
34+
expanded: false
35+
items:
36+
- name: View and configure settings for data collection
37+
href: cloudknox-product-data-sources.md
38+
- name: Display an inventory of created resources and licenses
39+
href: cloudknox-product-data-inventory.md
40+
- name: Manage organizational and personal information
41+
expanded: false
42+
items:
43+
- name: View personal and organization information
44+
href: cloudknox-product-account-settings.md
45+
- name: View information about identities, resources, and tasks
46+
expanded: false
47+
items:
48+
- name: View analytic information with the Analytics dashboard
49+
href: cloudknox-usage-analytics-home.md
50+
- name: View analytic information about users
51+
href: cloudknox-usage-analytics-users.md
52+
- name: View analytic information about groups
53+
href: cloudknox-usage-analytics-groups.md
54+
- name: View analytic information about active resources
55+
href: cloudknox-usage-analytics-active-resources.md
56+
- name: View analytic information about active tasks
57+
href: cloudknox-usage-analytics-active-tasks.md
58+
- name: View analytic information about access keys
59+
href: cloudknox-usage-analytics-access-keys.md
60+
- name: View analytic information about serverless functions
61+
href: cloudknox-usage-analytics-serverless-functions.md
62+
- name: Manage roles/policies and permission requests
63+
expanded: false
64+
items:
65+
- name: View roles/policies and requests for permission in the Remediation dashboard
66+
href: cloudknox-ui-remediation.md
67+
- name: View information about roles/policies
68+
href: cloudknox-howto-view-role-policy.md
69+
- name: View information about active and completed tasks
70+
href: cloudknox-ui-tasks.md
71+
- name: Create a role/policy
72+
href: cloudknox-howto-create-role-policy.md
73+
- name: Clone a role/policy
74+
href: cloudknox-howto-clone-role-policy.md
75+
- name: Modify a role/policy
76+
href: cloudknox-howto-modify-role-policy.md
77+
- name: Delete a role/policy
78+
href: cloudknox-howto-delete-role-policy.md
79+
- name: Attach and detach policies for AWS identities
80+
href: cloudknox-howto-attach-detach-permissions.md
81+
- name: Add and remove roles and tasks for Azure and GCP identities
82+
href: cloudknox-howto-add-remove-role-task.md
83+
- name: Revoke access to high-risk and unused tasks or assign read-only status
84+
href: cloudknox-howto-revoke-task-readonly-status.md
85+
- name: Create or approve a request for permissions
86+
href: cloudknox-howto-create-approve-privilege-request.md
87+
- name: Manage users, roles, and their access levels
88+
expanded: false
89+
items:
90+
- name: Manage users and groups
91+
href: cloudknox-ui-user-management.md
92+
# - name: Define and manage users, roles, and access levels
93+
# href: cloudknox-product-define-permission-levels.md
94+
- name: Select group-based permissions settings
95+
href: cloudknox-howto-create-group-based-permissions.md
96+
- name: Use queries to view information about user access
97+
expanded: false
98+
items:
99+
- name: Use queries to see how users access information
100+
href: cloudknox-ui-audit-trail.md
101+
- name: Create a custom query
102+
href: cloudknox-howto-create-custom-queries.md
103+
- name: Generate an on-demand report from a query
104+
href: cloudknox-howto-audit-trail-results.md
105+
- name: Filter and query user activity
106+
href: cloudknox-product-audit-trail.md
107+
- name: Set activity alerts and triggers
108+
expanded: false
109+
items:
110+
- name: View information about activity triggers
111+
href: cloudknox-ui-triggers.md
112+
- name: Create and view activity alerts and alert triggers
113+
href: cloudknox-howto-create-alert-trigger.md
114+
- name: Create and view rule-based anomalies and anomaly triggers
115+
href: cloudknox-product-rule-based-anomalies.md
116+
- name: Create and view statistical anomalies and anomaly triggers
117+
href: cloudknox-product-statistical-anomalies.md
118+
- name: Create and view permission analytics triggers
119+
href: cloudknox-product-permission-analytics.md
120+
- name: Manage rules for authorization systems
121+
expanded: false
122+
items:
123+
- name: View rules in the Autopilot dashboard
124+
href: cloudknox-ui-autopilot.md
125+
- name: Create a rule
126+
href: cloudknox-howto-create-rule.md
127+
- name: Generate, view, and apply rule recommendations
128+
href: cloudknox-howto-recommendations-rule.md
129+
- name: View notification settings for a rule
130+
href: cloudknox-howto-notifications-rule.md
131+
- name: Create and view reports
132+
expanded: false
133+
items:
134+
- name: View system reports in the Reports dashboard
135+
href: cloudknox-product-reports.md
136+
- name: View a list and description of system reports
137+
href: cloudknox-all-reports.md
138+
- name: Generate and view a system report
139+
href: cloudknox-report-view-system-report.md
140+
- name: Create, view, and share a custom report
141+
href: cloudknox-report-create-custom-report.md
142+
- name: Generate and download the Permissions analytics report
143+
href: cloudknox-product-permissions-analytics-reports.md
144+
- name: Troubleshoot
145+
expanded: false
146+
items:
147+
- name: Troubleshoot issues
148+
href: cloudknox-troubleshoot.md
149+
#- name: Training material
150+
#expanded: false
151+
#items:
152+
#- name: Get started with CloudKnox training videos
153+
#href: cloudknox-training-videos.md
154+
- name: Reference
155+
expanded: false
156+
items:
157+
- name: FAQs
158+
href: cloudknox-faqs.md
159+
- name: Glossary
160+
href: cloudknox-multi-cloud-glossary.md
161+
Lines changed: 59 additions & 0 deletions
Original file line numberDiff line numberDiff line change
@@ -0,0 +1,59 @@
1+
---
2+
title: View a list and description of all system reports available in CloudKnox Permissions Management reports
3+
description: View a list and description of all system reports available in CloudKnox Permissions Management.
4+
services: active-directory
5+
author: Yvonne-deQ
6+
manager: karenh444
7+
ms.service: active-directory
8+
ms.subservice: ciem
9+
ms.workload: identity
10+
ms.topic: overview
11+
ms.date: 02/23/2022
12+
ms.author: v-ydequadros
13+
---
14+
15+
# View a list and description of system reports
16+
17+
> [!IMPORTANT]
18+
> CloudKnox Permissions Management (CloudKnox) is currently in PREVIEW.
19+
> Some information relates to a prerelease product that may be substantially modified before it's released. Microsoft makes no warranties, express or implied, with respect to the information provided here.
20+
21+
CloudKnox Permissions Management (CloudKnox) has various types of system reports that capture specific sets of data. These reports allow management, auditors, and administrators to:
22+
23+
- Make timely decisions.
24+
- Analyze trends and system/user performance.
25+
- Identify trends in data and high risk areas so that management can address issues more quickly and improve their efficiency.
26+
27+
This article provides you with a list and description of the system reports available in CloudKnox. Depending on the report, you can download it in comma-separated values (**CSV**) format, portable document format (**PDF**), or Microsoft Excel Open XML Spreadsheet (**XLSX**) format.
28+
29+
## Download a system report
30+
31+
1. In the CloudKnox home page, select the **Reports** tab, and then select the **Systems reports** subtab.
32+
1. In the **Report Name** column, find the report you want, and then select the down arrow to the right of the report name to download the report.
33+
34+
Or, from the ellipses **(...)** menu, select **Download**.
35+
36+
The following message displays: **Successfully started to generate on demand report.**
37+
38+
39+
## Summary of available system reports
40+
41+
| Report name | Type of the report | File format | Description | Availability | Collated report? |
42+
|----------------------------|-----------------------------------|--------------------------|---------------------------| ----------------------------|----------------------------------|
43+
| Access Key Entitlement and Usage Report | Summary </p>Detailed | CSV | This report displays: </p> - Access key age, last rotation date, and last usage date availability in the summary report. Use this report to decide when to rotate access keys. </p> - Granted task and Permissions creep index (PCI) score. This report provides supporting information when you want to take the action on the keys. | AWS</p>Azure | Yes |
44+
| All Permissions for Identity | Detailed | CSV | This report lists all the assigned permissions for the selected identities. | Amazon Web Services (AWS), Microsoft Azure, or Google Cloud Platform (GCP) | N/A |
45+
| Group Entitlements and Usage | Summary | CSV | This report tracks all group level entitlements and the permission assignment, PCI. The number of members is also listed as part of this report. | AWS, Azure, or GCP | Yes |
46+
| Identity Permissions | Summary | CSV | This report tracks any, or specific, task usage per **User**, **Group**, **Role**, or **App**. | AWS, Azure, or GCP | No |
47+
| Identity Privilege Activity Report | Summary | PDF | This report helps monitor the **Identity Privilege** related activity across the authorized systems. It captures any Identity permission change. </p>This report has the following main sections: **User Summary**, **Group Summary**, **Role Summary & Delete Task Summary**. </p>The **User Summary** lists the current granted permissions along with high-risk permissions and resources accessed in 1-day, 7-day, or 30-days durations. There are subsections for newly added or deleted users, users with PCI change, high-risk active/inactive users. </p>The **Group Summary** lists the administrator level groups with the current granted permissions along with high-risk permissions and resources accessed in 1-day, 7-day, or 30-day durations. There are subsections for newly added or deleted groups, groups with PCI change, High-risk active/inactive groups. </p>The **Role Summary** and the **Group Summary** list similar details. </p>The **Delete Task** summary section lists the number of times the **Delete Task** has been executed in the given period. | AWS, Azure, or GCP | No |
48+
| PCI History | Summary | CSV | This report helps track **Monthly PCI History** for each authorized system. It can be used to plot the trend of the PCI. | AWS, Azure, or GCP | Yes |
49+
| Permissions Analytics Report (PAR) | Detailed | CSV | This report lists the different key findings in the selected authorized systems. The key findings include **Super identities**, **Inactive identities**, **Over-provisioned active identities**, **Storage bucket hygiene**, **Access key age (AWS)**, and so on. </p>This report helps administrators to visualize the findings across the organization and make decisions. | AWS, Azure, or GCP | Yes |
50+
| Role/Policy Details | Summary | CSV | This report captures **Assigned/Unassigned** and **Custom/system policy with used/unused condition** for specific or all AWS accounts. </p>Similar data can be captured for Azure and GCP for assigned and unassigned roles. | AWS, Azure, or GCP | No |
51+
| User Entitlements and Usage | Detailed <p>Summary | CSV | This report provides a summary and details of **User entitlements and usage**. </p>**Data displayed on Usage Analytics** screen is downloaded as part of the **Summary** report. </p>**Detailed permissions usage per User** is listed in the Detailed report. | AWS, Azure, or GCP | Yes |
52+
53+
54+
## Next steps
55+
56+
- For information on how to view system reports in the **Reports** dashboard, see [View system reports in the Reports dashboard](cloudknox-product-reports.md).
57+
- For information about how to create, view, and share a system report, see [Create, view, and share a custom report](cloudknox-report-view-system-report.md).
58+
- For information about how to create and view a custom report, see [Generate and view a custom report](cloudknox-report-create-custom-report.md).
59+
- For information about how to create and view the Permissions analytics report, see [Generate and download the Permissions analytics report](cloudknox-product-permissions-analytics-reports.md).

0 commit comments

Comments
 (0)