Skip to content

Commit 696f5a5

Browse files
committed
doc review edits
1 parent 5423baf commit 696f5a5

File tree

4 files changed

+8
-5
lines changed

4 files changed

+8
-5
lines changed

articles/defender-for-iot/organizations/manage-users-on-premises-management-console.md

Lines changed: 3 additions & 3 deletions
Original file line numberDiff line numberDiff line change
@@ -134,9 +134,9 @@ For more information, see [Active Directory support on sensors and on-premises m
134134

135135
|Field |Description |
136136
|---------|---------|
137-
|**Domain Controller FQDN** | The fully qualified domain name (FQDN), exactly as it appears on your LDAP server. For example, enter `host1.subdomain.domain.com`. <br><br> If you encounter an issue entering the FQDN, check your DNS configuration. You can also enter the explicit IP of the LDAP server instead of the FQDN. |
137+
|**Domain Controller FQDN** | The fully qualified domain name (FQDN), exactly as it appears on your LDAP server. For example, enter `host1.subdomain.contoso.com`. <br><br> If you encounter an issue with the integration using the FQDN, check your DNS configuration. You can also enter the explicit IP of the LDAP server instead of the FQDN when setting up the integration. |
138138
|**Domain Controller Port** | The port on which your LDAP is configured. |
139-
|**Primary Domain** | The domain name, such as `subdomain.domain.com`, and then select the connection type for your LDAP configuration. <br><br>Supported connection types include: **LDAPS/NTLMv3** (recommended), **LDAP/NTLMv3**, or **LDAP/SASL-MD5** |
139+
|**Primary Domain** | The domain name, such as `subdomain.contoso.com`, and then select the connection type for your LDAP configuration. <br><br>Supported connection types include: **LDAPS/NTLMv3** (recommended), **LDAP/NTLMv3**, or **LDAP/SASL-MD5** |
140140
|**Active Directory Groups** | Select **+ Add** to add an Active Directory group to each permission level listed, as needed. <br><br>When you enter a group name, make sure that you enter the group name as it's defined in your Active Directory configuration on the LDAP server. Then, make sure to use these groups when creating new sensor users from Active Directory.<br><br> Supported permission levels include **Read-only**, **Security Analyst**, **Admin**, and **Trusted Domains**.<br><br> Add groups as **Trusted endpoints** in a separate row from the other Active Directory groups. To add a trusted domain, add the domain name and the connection type of a trusted domain. You can configure trusted endpoints only for users who were defined under users.|
141141

142142
Select **+ Add Server** to add another server and enter its values as needed, and **Save** when you're done.
@@ -151,7 +151,7 @@ For more information, see [Active Directory support on sensors and on-premises m
151151
152152
For example:
153153

154-
:::image type="content" source="media/manage-users-on-premises-management-console/active-directory-config-example.png" alt-text="Screenshot of Active Directory integration configuration." lightbox="media/manage-users-on-premises-management-console/active-directory-config-example.png":::
154+
:::image type="content" source="media/manage-users-on-premises-management-console/active-directory-config-example.png" alt-text="Screenshot of Active Directory integration configuration on the on-premises management console." lightbox="media/manage-users-on-premises-management-console/active-directory-config-example.png":::
155155

156156
1. Create access group rules for on-premises management console users.
157157

articles/defender-for-iot/organizations/manage-users-sensor.md

Lines changed: 5 additions & 2 deletions
Original file line numberDiff line numberDiff line change
@@ -74,9 +74,9 @@ For more information, see [Active Directory support on sensors and on-premises m
7474

7575
|Name |Description |
7676
|---------|---------|
77-
|**Domain Controller FQDN** | The fully qualified domain name (FQDN), exactly as it appears on your LDAP server. For example, enter `host1.subdomain.domain.com`. |
77+
|**Domain Controller FQDN** | The fully qualified domain name (FQDN), exactly as it appears on your LDAP server. For example, enter `host1.subdomain.contoso.com`. <br><br> If you encounter an issue with the integration using the FQDN, check your DNS configuration. You can also enter the explicit IP of the LDAP server instead of the FQDN when setting up the integration. |
7878
|**Domain Controller Port** | The port where your LDAP is configured. |
79-
|**Primary Domain** | The domain name, such as `subdomain.domain.com`, and then select the connection type for your LDAP configuration. <br><br>Supported connection types include: **LDAPS/NTLMv3** (recommended), **LDAP/NTLMv3**, or **LDAP/SASL-MD5** |
79+
|**Primary Domain** | The domain name, such as `subdomain.contoso.com`, and then select the connection type for your LDAP configuration. <br><br>Supported connection types include: **LDAPS/NTLMv3** (recommended), **LDAP/NTLMv3**, or **LDAP/SASL-MD5** |
8080
|**Active Directory Groups** | Select **+ Add** to add an Active Directory group to each permission level listed, as needed. <br><br> When you enter a group name, make sure that you enter the group name exactly as it's defined in your Active Directory configuration on the LDAP server. You'll use these group names when [adding new sensor users](#add-new-ot-sensor-users) with Active Directory.<br><br> Supported permission levels include **Read-only**, **Security Analyst**, **Admin**, and **Trusted Domains**. |
8181

8282

@@ -92,6 +92,9 @@ For more information, see [Active Directory support on sensors and on-premises m
9292

9393
1. When you've added all your Active Directory servers, select **Save**.
9494

95+
For example:
96+
97+
:::image type="content" source="media/manage-users-sensor/active-directory-integration-example.png" alt-text="Screenshot of the active directory integration configuration on the sensor." lightbox="media/manage-users-sensor/active-directory-integration-example.png":::
9598

9699
## Change a sensor user's password
97100

Loading
51.5 KB
Loading

0 commit comments

Comments
 (0)