You signed in with another tab or window. Reload to refresh your session.You signed out in another tab or window. Reload to refresh your session.You switched accounts on another tab or window. Reload to refresh your session.Dismiss alert
Copy file name to clipboardExpand all lines: articles/active-directory/users-groups-roles/directory-assign-admin-roles.md
+18Lines changed: 18 additions & 0 deletions
Display the source diff
Display the rich diff
Original file line number
Diff line number
Diff line change
@@ -298,6 +298,10 @@ Users in this role can monitor all notifications in the Message Center, includin
298
298
299
299
Users in this role can monitor notifications and advisory health updates in [Office 365 Message center](https://support.office.com/article/Message-center-in-Office-365-38FB3333-BFCC-4340-A37B-DEDA509C2093) for their organization on configured services such as Exchange, Intune, and Microsoft Teams. Message Center Readers receive weekly email digests of posts, updates, and can share message center posts in Office 365. In Azure AD, users assigned to this role will only have read-only access on Azure AD services such as users and groups. This role has no access to view, create, or manage support tickets.
Users in this role can review network perimeter architecture recommendations from Microsoft that are based on network telemetry from their user locations. Network performance for Office 365 relies on careful enterprise customer network perimeter architecture which is generally user location specific. This role allows for editing of discovered user locations and configuration of network parameters for those locations to facilitate improved telemetry measurements and design recommendations.
Users in this role can manage Office 365 apps' cloud settings. This includes managing cloud policies, self-service download management and the ability to view Office apps related report. This role additionally grants the ability to manage support tickets, and monitor service health within the main admin center. Users assigned to this role can also manage communication of new features in Office apps.
@@ -1243,6 +1247,19 @@ Can read messages and updates for their organization in Office 365 Message Cente
1243
1247
| microsoft.office365.webPortal/allEntities/basic/read | Read basic properties on all resources in microsoft.office365.webPortal. |
1244
1248
| microsoft.office365.messageCenter/messages/read | Read messages in microsoft.office365.messageCenter. |
1245
1249
1250
+
### Network Administrator permissions
1251
+
Can manage network locations and review enterprise network design insights for Microsoft 365 Software as a Service applications.
1252
+
1253
+
> [!NOTE]
1254
+
> This role has additional permissions outside of Azure Active Directory. For more information, see role description above.
| microsoft.office365.network/locations/allProperties/allTasks | Read and configure network locations properties for each location. |
1262
+
1246
1263
### Office Apps Administrator permissions
1247
1264
Can manage Office apps' cloud services, including policy and settings management, and manage the ability to select, unselect and publish "what's new" feature content to end-user’s devices.
0 commit comments