You signed in with another tab or window. Reload to refresh your session.You signed out in another tab or window. Reload to refresh your session.You switched accounts on another tab or window. Reload to refresh your session.Dismiss alert
Copy file name to clipboardExpand all lines: articles/purview/includes/access-policies-configuration-generic.md
+3-3Lines changed: 3 additions & 3 deletions
Display the source diff
Display the rich diff
Original file line number
Diff line number
Diff line change
@@ -8,9 +8,9 @@ ms.date: 10/28/2022
8
8
ms.custom:
9
9
---
10
10
11
-
#### Configure permissions to enable Data Use Management on the data source
11
+
#### Configure permissions to enable Data use management on the data source
12
12
13
-
Before a policy can be created in Microsoft Purview for a resource, you must configure permissions. To enable the **Data Use Management** toggle for a data source, resource group, or subscription, the *same user* must have *both* specific identity and access management (IAM) privileges on the resource and specific Microsoft Purview privileges:
13
+
Before a policy can be created in Microsoft Purview for a resource, you must configure permissions. To enable the **Data use management** toggle for a data source, resource group, or subscription, the *same user* must have *both* specific identity and access management (IAM) privileges on the resource and specific Microsoft Purview privileges:
14
14
15
15
- The user must have *either one* of the following IAM role combinations on the resource's Azure Resource Manager path or any parent of it (that is, using IAM permission inheritance):
16
16
- IAM Owner
@@ -55,7 +55,7 @@ For more information about managing Microsoft Purview role assignments, see [Cre
55
55
56
56
#### Delegation of access provisioning responsibility to roles in Microsoft Purview
57
57
58
-
After a resource has been enabled for **Data Use Management**, any Microsoft Purview user with the *Policy author* role at the root collection level can provision access to that data source from Microsoft Purview.
58
+
After a resource has been enabled for **Data use management**, any Microsoft Purview user with the *Policy author* role at the root collection level can provision access to that data source from Microsoft Purview.
59
59
60
60
The IAM Owner role for a data resource can be inherited from a parent resource group, a subscription, or a subscription management group. Check which Azure AD users, groups, and service principals hold or are inheriting the IAM Owner role for the resource.
Copy file name to clipboardExpand all lines: articles/purview/includes/access-policies-prerequisites-arc-sql-server.md
+1-1Lines changed: 1 addition & 1 deletion
Display the source diff
Display the rich diff
Original file line number
Diff line number
Diff line change
@@ -63,7 +63,7 @@ This section describes the steps to configure SQL Server on Azure Arc to use Mic
63
63
64
64
Optionally, you can confirm the endpoint by going to the Microsoft Purview account. Go to the **Properties** section on the left menu and scroll down until you see **Scan endpoint**. The full endpoint path is the one listed without "/Scan" at the end.
65
65
66
-
1. Make a note of the **App registration ID** value. You'll need it when you register and enable this data source for **Data Use Management** in Microsoft Purview.
66
+
1. Make a note of the **App registration ID** value. You'll need it when you register and enable this data source for **Data use management** in Microsoft Purview.
67
67
68
68

### Register the data source and enable Data Use Management
181
+
### Register the data source and enable Data use management
182
182
183
-
<<<<<<< HEAD
184
183
Before you can create policies, you must register the Azure Arc-enabled SQL Server data source with Microsoft Purview:
185
-
=======
186
-
Before you can create policies, you must register the Azure Arc-enabled SQL Server data source with Microsoft Purview.
187
-
>>>>>>> 2744d34f0f4595aa9ebb3e01129c9a22ce26c9d2
188
184
189
185
1. Sign in to Microsoft Purview Studio.
190
186
@@ -198,28 +194,15 @@ Before you can create policies, you must register the Azure Arc-enabled SQL Serv
198
194
199
195
1. For **Select a collection**, choose a collection to put this registration in.
200
196
201
-
<<<<<<< HEAD
202
-
1. Enable **Data Use Management**. **Data Use Management** needs certain permissions and can affect the security of your data, because it delegates to certain Microsoft Purview roles to manage access to the data sources. Go through the secure practices related to **Data Use Management** in this guide: [How to enable Data Use Management](./how-to-enable-data-use-management.md).
197
+
1. Enable **Data use management**. **Data use management** needs certain permissions and can affect the security of your data, because it delegates to certain Microsoft Purview roles to manage access to the data sources. Go through the secure practices related to **Data use management** in this guide: [Enable Data use management on your Microsoft Purview sources](./how-to-enable-data-use-management.md).
203
198
204
-
1. After you enable **Data Use Management**, Microsoft Purview automatically captures the application ID of the app registration that's related to this Azure Arc-enabled SQL Server instance. Come back to this screen and select the refresh button, in case the association between Azure Arc-enabled SQL Server and the app registration changes in the future.
205
-
=======
206
-
1. Enable Data Use Management. Data Use Management needs certain permissions and can affect the security of your data, because it delegates to certain Microsoft Purview roles to manage access to the data sources. Go through the secure practices related to Data Use Management in this guide: [How to enable Data Use Management](./how-to-enable-data-use-management.md).
207
-
208
-
1. After you enable Data Use Management, Microsoft Purview automatically captures the application ID of the app registration that's related to this Azure Arc-enabled SQL Server instance. Come back to this screen and select the refresh button, in case the association between Azure Arc-enabled SQL Server and the app registration changes in the future.
209
-
>>>>>>> 2744d34f0f4595aa9ebb3e01129c9a22ce26c9d2
199
+
1. After you enable **Data use management**, Microsoft Purview automatically captures the application ID of the app registration that's related to this Azure Arc-enabled SQL Server instance. Come back to this screen and select the refresh button, in case the association between Azure Arc-enabled SQL Server and the app registration changes in the future.
210
200
211
201
1. Select **Register** or **Apply**.
212
202
213
-
After your data source has the **Data Use Management** toggle enabled, it will look like the following screenshot.
214
-
215
-

203
+

216
204
217
205
### Create a policy
218
-
<<<<<<< HEAD
219
-
=======
220
-
221
-
To create an access policy for Azure Arc-enabled SQL Server, follow these guides:
222
-
>>>>>>> 2744d34f0f4595aa9ebb3e01129c9a22ce26c9d2
223
206
224
207
To create an access policy for Arc-enabled SQL Server, follow these guides:
0 commit comments