Skip to content

Commit 74d08d8

Browse files
committed
Update howto-use-break-glass-access.md
1 parent 43d8d05 commit 74d08d8

File tree

1 file changed

+4
-1
lines changed

1 file changed

+4
-1
lines changed

articles/operator-nexus/howto-use-break-glass-access.md

Lines changed: 4 additions & 1 deletion
Original file line numberDiff line numberDiff line change
@@ -13,7 +13,7 @@ ms.custom: template-how-to, devx-track-azurecli
1313

1414
Breakglass access using Method D v2.0 is a streamlined approach for administrators to grant secure, emergency access to critical network fabric devices. This guide will walk you through setting up and using Breakglass access, including generating SSH keys, granting permissions, and accessing network fabric devices.
1515

16-
## Generating SSH Keys Using the Nexusidentity Azure CLI
16+
## Generating SSH Keys using the Nexusidentity Azure CLI
1717

1818
To start with Breakglass IAM configuration, you will need to set up SSH keys using the Nexusidentity extension. Make sure you have the following prerequisites installed and updated.
1919

@@ -101,6 +101,9 @@ To enable Breakglass access administrator can assign below roles to Entra users
101101
102102
Once these roles are assigned, the corresponding username and public SSH key will be automatically provisioned across all devices within the designated fabric instance.
103103
104+
> [!Note]
105+
> If a subscription owner assigns an user, the Network Fabric Service Reader or Writer role at the subscription scope, this role assignment will be inherited by all Network Fabric instances. Consequently, the user will be granted the privileges associated with the built-in role across all Network Fabric instances.
106+
104107
> [!Note]
105108
> Breakglass user accounts are reconciled every 4 hours. For immediate reconciliation, open a support ticket with the network fabric support team.
106109

0 commit comments

Comments
 (0)