Skip to content

Commit 6f07c02

Browse files
authored
Merge pull request #92446 from cabailey/cabailey-azuredocs
Azure AD: Add restriction of AIP to Global reader role
2 parents 3ffbdce + 6444121 commit 6f07c02

File tree

1 file changed

+2
-1
lines changed

1 file changed

+2
-1
lines changed

articles/active-directory/users-groups-roles/directory-assign-admin-roles.md

Lines changed: 2 additions & 1 deletion
Original file line numberDiff line numberDiff line change
@@ -10,7 +10,7 @@ ms.service: active-directory
1010
ms.workload: identity
1111
ms.subservice: users-groups-roles
1212
ms.topic: article
13-
ms.date: 09/20/2019
13+
ms.date: 10/18/2019
1414
ms.author: curtand
1515
ms.reviewer: vincesm
1616
ms.custom: it-pro
@@ -229,6 +229,7 @@ Users in this role can read settings and administrative information across Micro
229229
>* [M365 Security center](https://security.microsoft.com/homepage) - Global reader can't read sensitivity and retention labels. You won't find **Sensitivity labels**, **Retention labels**, and **Label analytics** tabs in the left pane of the M365 Security center.
230230
>* [Teams admin center](https://admin.teams.microsoft.com) - Global reader cannot read **Teams lifecycle**, **Analytics & reports**, **IP phone device management** and **App catalog**.
231231
>* [Privileged Access Management (PAM)](https://docs.microsoft.com/en-us/office365/securitycompliance/privileged-access-management-overview) doesn't support the Global reader role.
232+
>* [Azure Information Protection](https://docs.microsoft.com/azure/information-protection/what-is-information-protection) - Global reader is supported for [central reporting](https://docs.microsoft.com/azure/information-protection/reports-aip) only, and when your tenant isn't on the [unified labeling platform](https://docs.microsoft.com/azure/information-protection/faqs#how-can-i-determine-if-my-tenant-is-on-the-unified-labeling-platform).
232233
>
233234
> These features are currently in development.
234235
>

0 commit comments

Comments
 (0)