Skip to content

Commit 89b1866

Browse files
authored
Merge pull request #190030 from MicrosoftDocs/main
2/28 PM Publish
2 parents b1b76dc + c7bbb30 commit 89b1866

File tree

154 files changed

+3201
-2287
lines changed

Some content is hidden

Large Commits have some content hidden by default. Use the searchbox below for content that may be hidden.

154 files changed

+3201
-2287
lines changed

.openpublishing.publish.config.json

Lines changed: 6 additions & 0 deletions
Original file line numberDiff line numberDiff line change
@@ -75,6 +75,12 @@
7575
"branch": "master",
7676
"branch_mapping": {}
7777
},
78+
{
79+
"path_to_root": "azure_storage-snippets",
80+
"url": "https://github.com/Azure-Samples/AzureStorageSnippets",
81+
"branch": "master",
82+
"branch_mapping": {}
83+
},
7884
{
7985
"path_to_root": "azure_cli_scripts",
8086
"url": "https://github.com/Azure-Samples/azure-cli-samples",

.openpublishing.redirection.json

Lines changed: 5 additions & 0 deletions
Original file line numberDiff line numberDiff line change
@@ -5938,6 +5938,11 @@
59385938
"redirect_url": "/azure/azure-app-configuration/policy-reference",
59395939
"redirect_document_id": false
59405940
},
5941+
{
5942+
"source_path_from_root": "/articles/azure-functions/functions-test-a-function.md",
5943+
"redirect_url": "/azure/azure-functions/supported-languages",
5944+
"redirect_document_id": false
5945+
},
59415946
{
59425947
"source_path_from_root": "/articles/azure-app-configuration/quickstart-azure-function-csharp.md",
59435948
"redirect_url": "/azure/azure-app-configuration/quickstart-azure-functions-csharp",

articles/active-directory/cloud-infrastructure-entitlement-management/cloudknox-howto-view-role-policy.md

Lines changed: 16 additions & 16 deletions
Original file line numberDiff line numberDiff line change
@@ -32,8 +32,8 @@ The **Remediation** dashboard in CloudKnox Permissions Management (CloudKnox) en
3232
1. On the CloudKnox home page, select the **Remediation** tab, and then select the **Role/Policies** subtab.
3333

3434
The **Role/Policies list** displays a list of existing roles/policies and the following information about each role/policy
35-
- **Role/Policy name**: The name of the roles/policies available to you.
36-
- **Role/Policy type**: **Custom**, **System**, or **CloudKnox only**
35+
- **Role/Policy Name**: The name of the roles/policies available to you.
36+
- **Role/Policy Type**: **Custom**, **System**, or **CloudKnox Only**
3737
- **Actions**: The type of action you can perform on the role/policy, **Clone**, **Modify**, or **Delete**
3838

3939

@@ -42,24 +42,24 @@ The **Remediation** dashboard in CloudKnox Permissions Management (CloudKnox) en
4242
The **Tasks** list appears, displaying:
4343
- A list of **Tasks**.
4444
- **For AWS:**
45-
- The **Users**, **Groups**, and **Roles** the task is **Directly assigned to**.
46-
- The **Group members** and **Role identities** the task is **Indirectly assessable by**.
45+
- The **Users**, **Groups**, and **Roles** the task is **Directly Assigned To**.
46+
- The **Group Members** and **Role Identities** the task is **Indirectly Accessible By**.
4747

4848
- **For Azure:**
49-
- The **Users**, **Groups**, **Enterprise applications** and **Managed identities** the task is **Directly assigned to**.
50-
- The **Group members** the task is **Indirectly assessable by**.
49+
- The **Users**, **Groups**, **Enterprise Applications** and **Managed Identities** the task is **Directly Assigned To**.
50+
- The **Group Members** the task is **Indirectly Accessible By**.
5151

5252
- **For GCP:**
53-
- The **Users**, **Groups**, and **Service accounts** the task is **Directly assigned to**.
54-
- The **Group members** the task is **Indirectly assessable by**.
53+
- The **Users**, **Groups**, and **Service Accounts** the task is **Directly Assigned To**.
54+
- The **Group Members** the task is **Indirectly Accessible By**.
5555

5656
1. To close the role/policy details, select the arrow to the left of the role/policy name.
5757

5858
## Export information about roles/policies
5959

6060
- **Export CSV**: Select this option to export the displayed list of roles/policies as a comma-separated values (CSV) file.
6161

62-
When the file is successfully exported, a message appears: **Exported successfully.**
62+
When the file is successfully exported, a message appears: **Exported Successfully.**
6363

6464
- Check your email for a message from the CloudKnox Customer Success Team. This email contains a link to:
6565
- The **Role Policy Details** report in CSV format.
@@ -73,20 +73,20 @@ The **Remediation** dashboard in CloudKnox Permissions Management (CloudKnox) en
7373
1. On the CloudKnox home page, select the **Remediation** dashboard, and then select the **Role/Policies** tab.
7474
1. To filter the roles/policies, select from the following options:
7575

76-
- **Authorization system type**: Select **AWS**, **Azure**, or **GCP**.
77-
- **Authorization system**: Select the accounts you want.
78-
- **Role/Policy type**: Select from the following options:
76+
- **Authorization System Type**: Select **AWS**, **Azure**, or **GCP**.
77+
- **Authorization System**: Select the accounts you want.
78+
- **Role/Policy Type**: Select from the following options:
7979

8080
- **All**: All managed roles/policies.
8181
- **Custom**: A customer-managed role/policy.
8282
- **System**: A cloud service provider-managed role/policy.
83-
- **CloudKnox only**: A role/policy created by CloudKnox.
83+
- **CloudKnox Only**: A role/policy created by CloudKnox.
8484

85-
- **Role/Policy status**: Select **All**, **Assigned**, or **Unassigned**.
86-
- **Role/Policy usage**: Select **All** or **Unused**.
85+
- **Role/Policy Status**: Select **All**, **Assigned**, or **Unassigned**.
86+
- **Role/Policy Usage**: Select **All** or **Unused**.
8787
1. Select **Apply**.
8888

89-
To discard your changes, select **Reset filter**.
89+
To discard your changes, select **Reset Filter**.
9090

9191

9292
## Next steps

articles/active-directory/cloud-infrastructure-entitlement-management/cloudknox-onboard-enable-tenant.md

Lines changed: 2 additions & 2 deletions
Original file line numberDiff line numberDiff line change
@@ -66,7 +66,7 @@ To view a video on how to enable CloudKnox in your Azure AD tenant, select
6666

6767
1. Copy the script on the **Welcome** screen:
6868

69-
`az ad ap create --id b46c3ac5-9da6-418f-a849-0a7a10b3c6c`
69+
`az ad sp create --id b46c3ac5-9da6-418f-a849-0a07a10b3c6c`
7070

7171
1. If you have an Azure subscription, return to the Azure AD portal and select **Cloud Shell** on the navigation bar.
7272
If you don't have an Azure subscription, open a command prompt on a Windows Server.
@@ -106,4 +106,4 @@ Use the **Data Collectors** dashboard in CloudKnox to configure data collection
106106

107107
- For an overview of CloudKnox, see [What's CloudKnox Permissions Management?](cloudknox-overview.md)
108108
- For a list of frequently asked questions (FAQs) about CloudKnox, see [FAQs](cloudknox-faqs.md).
109-
- For information on how to start viewing information about your authorization system in CloudKnox, see [View key statistics and data about your authorization system](cloudknox-ui-dashboard.md).
109+
- For information on how to start viewing information about your authorization system in CloudKnox, see [View key statistics and data about your authorization system](cloudknox-ui-dashboard.md).

articles/active-directory/cloud-infrastructure-entitlement-management/cloudknox-product-data-sources.md

Lines changed: 1 addition & 1 deletion
Original file line numberDiff line numberDiff line change
@@ -76,7 +76,7 @@ You can use the **Data Collectors** dashboard in CloudKnox Permissions Managemen
7676
1. Select the ellipses **(...)** at the end of the row in the table.
7777
1. Select **Delete Configuration**.
7878

79-
The **M-CIEM Onboarding - Summary** box displays.
79+
The **CloudKnox Onboarding - Summary** box displays.
8080
1. Select **Delete**.
8181
1. Check your email for a one time password (OTP) code, and enter it in **Enter OTP**.
8282

articles/active-directory/cloud-infrastructure-entitlement-management/cloudknox-ui-remediation.md

Lines changed: 45 additions & 45 deletions
Original file line numberDiff line numberDiff line change
@@ -36,29 +36,29 @@ This article provides an overview of the components of the **Remediation** dashb
3636

3737
- **Roles/Policies**: Use this subtab to perform Create Read Update Delete (CRUD) operations on roles/policies.
3838
- **Permissions**: Use this subtab to perform Read Update Delete (RUD) on granted permissions.
39-
- **Role/Policy template**: Use this subtab to create a template for roles/policies template.
39+
- **Role/Policy Template**: Use this subtab to create a template for roles/policies template.
4040
- **Requests**: Use this subtab to view approved, pending, and processed Permission on Demand (POD) requests.
41-
- **My requests**: Use this tab to manage lifecycle of the POD request either created by you or needs your approval.
42-
- **Settings**: Use this subtab to select **Request role/policy filters**, **Request settings**, and **Auto-approve** settings.
41+
- **My Requests**: Use this tab to manage lifecycle of the POD request either created by you or needs your approval.
42+
- **Settings**: Use this subtab to select **Request Role/Policy Filters**, **Request Settings**, and **Auto-Approve** settings.
4343

4444
1. Use the dropdown to select the **Authorization System Type** and **Authorization System**, and then select **Apply**.
4545

4646
## View and create roles/policies
4747

4848
The **Role/Policies** subtab provides the following settings that you can use to view and create a role/policy.
4949

50-
- **Authorization system type**: Displays a dropdown with authorization system types you can access, Amazon Web Services (AWS), Microsoft Azure, and Google Cloud Platform (GCP).
51-
- **Authorization system**: Displays a list of authorization systems accounts you can access.
52-
- **Role/Policy type**: A dropdown with available role/policy types. You can select **All**, **Custom**, **System**, or **CloudKnox only**.
53-
- **Role/Policy status**: A dropdown with available role/policy statuses. You can select **All**, **Assigned**, or **Unassigned**.
54-
- **Role/Policy usage**: A dropdown with **All** or **Unused** roles/policies.
50+
- **Authorization System Type**: Displays a dropdown with authorization system types you can access, Amazon Web Services (AWS), Microsoft Azure, and Google Cloud Platform (GCP).
51+
- **Authorization System**: Displays a list of authorization systems accounts you can access.
52+
- **Policy Type**: A dropdown with available role/policy types. You can select **All**, **Custom**, **System**, or **CloudKnox Only**.
53+
- **Policy Status**: A dropdown with available role/policy statuses. You can select **All**, **Assigned**, or **Unassigned**.
54+
- **Policy Usage**: A dropdown with **All** or **Unused** roles/policies.
5555
- **Apply**: Select this option to save the changes you've made.
5656
- **Reset Filter**: Select this option to discard the changes you've made.
5757

58-
The **Role/Policies list** displays a list of existing roles/policies and the following information about each role/policy.
58+
The **Policy list** displays a list of existing roles/policies and the following information about each role/policy.
5959

60-
- **Role/Policy name**: The name of the roles/policies available to you.
61-
- **Role/Policy type**: **Custom**, **System**, or **CloudKnox only**
60+
- **Policy Name**: The name of the roles/policies available to you.
61+
- **Policy Type**: **Custom**, **System**, or **CloudKnox Only**
6262
- **Actions**
6363
- Select **Clone** to create a duplicate copy of the role/policy.
6464
- Select **Modify** to change the existing role/policy.
@@ -69,7 +69,7 @@ Other options available to you:
6969
- **Reload**: Select this option to refresh the displayed list of roles/policies.
7070
- **Export CSV**: Select this option to export the displayed list of roles/policies as a comma-separated values (CSV) file.
7171

72-
When the file is successfully exported, a message appears: **Exported successfully.**
72+
When the file is successfully exported, a message appears: **Exported Successfully.**
7373

7474
- Check your email for a message from the CloudKnox Customer Success Team. This email contains a link to:
7575
- The **Role Policy Details** report in CSV format.
@@ -81,19 +81,19 @@ Other options available to you:
8181

8282
The **Permissions** subtab provides the following settings that you can use to add filters to your permissions.
8383

84-
- **Authorization system type**: Displays a dropdown with authorization system types you can access, AWS, Azure, and GCP.
85-
- **Authorization system**: Displays a list of authorization systems accounts you can access.
86-
- **Search for**: A dropdown from which you can select **Group**, **User**, or **Role**.
87-
- **User status**: A dropdown from which you can select **Any**, **Active**, or **Inactive**.
88-
- **Privilege creep index** (PCI): A dropdown from which you can select a PCI rating of **Any**, **High**, **Medium**, or **Low**.
84+
- **Authorization System Type**: Displays a dropdown with authorization system types you can access, AWS, Azure, and GCP.
85+
- **Authorization System**: Displays a list of authorization systems accounts you can access.
86+
- **Search For**: A dropdown from which you can select **Group**, **User**, or **Role**.
87+
- **User Status**: A dropdown from which you can select **Any**, **Active**, or **Inactive**.
88+
- **Privilege Creep Index** (PCI): A dropdown from which you can select a PCI rating of **Any**, **High**, **Medium**, or **Low**.
8989
- **Task Usage**: A dropdown from which you can select **Any**, **Granted**, **Used**, or **Unused**.
90-
- **Enter a username**: A dropdown from which you can select a username.
90+
- **Enter a Username**: A dropdown from which you can select a username.
9191
- **Enter a Group Name**: A dropdown from which you can select a group name.
9292
- **Apply**: Select this option to save the changes you've made and run the filter.
9393
- **Reset Filter**: Select this option to discard the changes you've made.
9494
- **Export CSV**: Select this option to export the displayed list of roles/policies as a comma-separated values (CSV) file.
9595

96-
When the file is successfully exported, a message appears: **Exported successfully.**
96+
When the file is successfully exported, a message appears: **Exported Successfully.**
9797

9898
- Check your email for a message from the CloudKnox Customer Success Team. This email contains a link to:
9999
- The **Role Policy Details** report in CSV format.
@@ -102,17 +102,17 @@ The **Permissions** subtab provides the following settings that you can use to a
102102

103103
## Create templates for roles/policies
104104

105-
Use the **Role/Policy template** subtab to create a template for roles/policies.
105+
Use the **Role/Policy Template** subtab to create a template for roles/policies.
106106

107107
1. Select:
108-
- **Authorization system type**: Displays a dropdown with authorization system types you can access, WS, Azure, and GCP.
109-
- **Create template**: Select this option to create a template.
108+
- **Authorization System Type**: Displays a dropdown with authorization system types you can access, WS, Azure, and GCP.
109+
- **Create Template**: Select this option to create a template.
110110

111111
1. In the **Details** page, make the required selections:
112-
- **Authorization system type**: Select the authorization system types you want, **AWS**, **Azure**, or **GCP**.
113-
- **Template name**: Enter a name for your template, and then select **Next**.
112+
- **Authorization System Type**: Select the authorization system types you want, **AWS**, **Azure**, or **GCP**.
113+
- **Template Name**: Enter a name for your template, and then select **Next**.
114114

115-
1. In the **Statements** page, complete the **Tasks**, **Resources**, **Request conditions** and **Effect** sections. Then select **Save** to save your role/policy template.
115+
1. In the **Statements** page, complete the **Tasks**, **Resources**, **Request Conditions** and **Effect** sections. Then select **Save** to save your role/policy template.
116116

117117
Other options available to you:
118118
- **Search**: Select this option to search for a specific role/policy.
@@ -123,22 +123,22 @@ Other options available to you:
123123
Use the **Requests** tab to view a list of **Pending**, **Approved**, and **Processed** requests for permissions your team members have made.
124124

125125
- Select:
126-
- **Authorization system type**: Displays a dropdown with authorization system types you can access, AWS, Azure, and GCP.
127-
- **Authorization system**: Displays a list of authorization systems accounts you can access.
126+
- **Authorization System Type**: Displays a dropdown with authorization system types you can access, AWS, Azure, and GCP.
127+
- **Authorization System**: Displays a list of authorization systems accounts you can access.
128128

129129
Other options available to you:
130130

131131
- **Reload**: Select this option to refresh the displayed list of roles/policies.
132132
- **Search**: Select this option to search for a specific role/policy.
133133
- **Columns**: Select one or more of the following to view more information about the request:
134-
- **Submitted by**
135-
- **On behalf of**
136-
- **Authorization system**
137-
- **Tasks/scope/policies**
138-
- **Request date**
134+
- **Submitted By**
135+
- **On Behalf Of**
136+
- **Authorization System**
137+
- **Tasks/Scope/Policies**
138+
- **Request Date**
139139
- **Schedule**
140140
- **Submitted**
141-
- **Reset to default**: Select this option to discard your settings.
141+
- **Reset to Default**: Select this option to discard your settings.
142142

143143
### View pending requests
144144

@@ -174,21 +174,21 @@ The **Processed** table displays information about the requests that have been p
174174
Use the **My Requests** subtab to view a list of **Pending**, **Approved**, and **Processed** requests for permissions your team members have made and you must approve or reject.
175175

176176
- Select:
177-
- **Authorization system type**: Displays a dropdown with authorization system types you can access, AWS, Azure, and GCP.
178-
- **Authorization system**: Displays a list of authorization systems accounts you can access.
177+
- **Authorization System Type**: Displays a dropdown with authorization system types you can access, AWS, Azure, and GCP.
178+
- **Authorization System**: Displays a list of authorization systems accounts you can access.
179179

180180
Other options available to you:
181181

182182
- **Reload**: Select this option to refresh the displayed list of roles/policies.
183183
- **Search**: Select this option to search for a specific role/policy.
184184
- **Columns**: Select one or more of the following to view more information about the request:
185-
- **On behalf of**
186-
- **Authorization system**
187-
- **Tasks/scope/policies**
188-
- **Request date**
185+
- **On Behalf Of**
186+
- **Authorization System**
187+
- **Tasks/Scope/Policies**
188+
- **Request Date**
189189
- **Schedule**
190-
- **Reset to default**: Select this option to discard your settings.
191-
- **New request**: Select this option to create a new request for permissions. For more information, see Create a request for permissions.
190+
- **Reset to Default**: Select this option to discard your settings.
191+
- **New Request**: Select this option to create a new request for permissions. For more information, see Create a request for permissions.
192192

193193
### View pending requests
194194

@@ -218,12 +218,12 @@ The **Processed** table displays information about the requests that have been p
218218

219219
## Make setting selections for requests and auto-approval
220220

221-
The **Settings** subtab provides the following settings that you can use to make setting selections to **Request role/policy filters**, **Request settings**, and **Auto-approve** requests.
221+
The **Settings** subtab provides the following settings that you can use to make setting selections to **Request Role/Policy Filters**, **Request Settings**, and **Auto-Approve** requests.
222222

223-
- **Authorization system type**: Displays a dropdown with authorization system types you can access, AWS, Azure, and GCP.
224-
- **Authorization system**: Displays a list of authorization systems accounts you can access.
223+
- **Authorization System Type**: Displays a dropdown with authorization system types you can access, AWS, Azure, and GCP.
224+
- **Authorization System**: Displays a list of authorization systems accounts you can access.
225225
- **Reload**: Select this option to refresh the displayed list of role/policy filters.
226-
- **Create filter**: Select this option to create a new filter.
226+
- **Create Filter**: Select this option to create a new filter.
227227

228228
## Next steps
229229

articles/active-directory/develop/scenario-web-api-call-api-overview.md

Lines changed: 1 addition & 1 deletion
Original file line numberDiff line numberDiff line change
@@ -32,7 +32,7 @@ This scenario, in which a protected web API calls other web APIs, builds on [Sce
3232

3333
## Specifics
3434

35-
The app registration part that's related to API permissions is classical. The app configuration involves using the OAuth 2.0 On-Behalf-Of flow to exchange the JWT bearer token against a token for a downstream API. This token is added to the token cache, where it's available in the web API's controllers, and it can then acquire a token silently to call downstream APIs.
35+
The app registration part that's related to API permissions is classical. The app configuration involves using the OAuth 2.0 On-Behalf-Of flow to use the JWT bearer token for obtaining a second token for a downstream API. The second token in this case is added to the token cache, where it's available in the web API's controllers. This second token can be used to acquire an access token silently to call downstream APIs whenever required.
3636

3737
## Next steps
3838

0 commit comments

Comments
 (0)