Skip to content

Commit 922673f

Browse files
update TI articles role req
1 parent 5d58149 commit 922673f

File tree

4 files changed

+4
-4
lines changed

4 files changed

+4
-4
lines changed

articles/sentinel/connect-mdti-data-connector.md

Lines changed: 1 addition & 1 deletion
Original file line numberDiff line numberDiff line change
@@ -16,7 +16,7 @@ Bring high fidelity indicators of compromise (IOC) generated by Microsoft Defend
1616
>
1717
1818
## Prerequisites
19-
- In order to install, update and delete standalone content or solutions in content hub, you need the **Template Spec Contributor** role at the resource group level. See [Azure RBAC built in roles](../role-based-access-control/built-in-roles.md#template-spec-contributor) for details on this role.
19+
- In order to install, update and delete standalone content or solutions in content hub, you need the **Microsoft Sentinel Contributor** role at the resource group level.
2020
- To configure this data connector, you must have read and write permissions to the Microsoft Sentinel workspace.
2121

2222
## Install the Threat Intelligence solution in Microsoft Sentinel

articles/sentinel/connect-threat-intelligence-taxii.md

Lines changed: 1 addition & 1 deletion
Original file line numberDiff line numberDiff line change
@@ -22,7 +22,7 @@ To import STIX formatted threat indicators to Microsoft Sentinel from a TAXII se
2222
Learn more about [Threat Intelligence](understand-threat-intelligence.md) in Microsoft Sentinel, and specifically about the [TAXII threat intelligence feeds](threat-intelligence-integration.md#taxii-threat-intelligence-feeds) that can be integrated with Microsoft Sentinel.
2323

2424
## Prerequisites
25-
- In order to install, update and delete standalone content or solutions in content hub, you need the **Template Spec Contributor** role at the resource group level. See [Azure RBAC built in roles](../role-based-access-control/built-in-roles.md#template-spec-contributor) for details on this role.
25+
- In order to install, update and delete standalone content or solutions in content hub, you need the **Microsoft Sentinel Contributor** role at the resource group level.
2626
- You must have read and write permissions to the Microsoft Sentinel workspace to store your threat indicators.
2727
- You must have a TAXII 2.0 or TAXII 2.1 **API Root URI** and **Collection ID**.
2828

articles/sentinel/connect-threat-intelligence-tip.md

Lines changed: 1 addition & 1 deletion
Original file line numberDiff line numberDiff line change
@@ -28,7 +28,7 @@ Learn more about [Threat Intelligence](understand-threat-intelligence.md) in Mic
2828

2929
## Prerequisites
3030

31-
- In order to install, update and delete standalone content or solutions in content hub, you need the **Template Spec Contributor** role at the resource group level. See [Azure RBAC built in roles](../role-based-access-control/built-in-roles.md#template-spec-contributor) for details on this role.
31+
- In order to install, update and delete standalone content or solutions in content hub, you need the **Microsoft Sentinel Contributor** role at the resource group level.
3232
- You must have either the **Global administrator** or **Security administrator** Azure AD roles in order to grant permissions to your TIP product or to any other custom application that uses direct integration with the Microsoft Graph Security tiIndicators API.
3333
- You must have read and write permissions to the Microsoft Sentinel workspace to store your threat indicators.
3434

articles/sentinel/connect-threat-intelligence-upload-api.md

Lines changed: 1 addition & 1 deletion
Original file line numberDiff line numberDiff line change
@@ -27,7 +27,7 @@ Learn more about [Threat Intelligence](understand-threat-intelligence.md) in Mic
2727
**See also**: [Connect Microsoft Sentinel to STIX/TAXII threat intelligence feeds](connect-threat-intelligence-taxii.md)
2828

2929
## Prerequisites
30-
- In order to install, update and delete standalone content or solutions in content hub, you need the **Template Spec Contributor** role at the resource group level. See [Azure RBAC built in roles](../role-based-access-control/built-in-roles.md#template-spec-contributor) for details on this role.
30+
- In order to install, update and delete standalone content or solutions in content hub, you need the **Microsoft Sentinel Contributor** role at the resource group level.
3131
- You must have read and write permissions to the Microsoft Sentinel workspace to store your threat indicators.
3232
- You must be able to register an Azure Active Directory (Azure AD) application.
3333
- The Azure AD application must be granted the Microsoft Sentinel contributor role at the workspace level.

0 commit comments

Comments
 (0)