Skip to content

Commit 95be3da

Browse files
committed
review feedback
1 parent ab23311 commit 95be3da

File tree

1 file changed

+2
-1
lines changed

1 file changed

+2
-1
lines changed

articles/active-directory/governance/access-reviews-application-preparation.md

Lines changed: 2 additions & 1 deletion
Original file line numberDiff line numberDiff line change
@@ -1,5 +1,5 @@
11
---
2-
title: Preparing for an access review of users' access to an application
2+
title: Preparing for an access review of users' access to an application - Azure AD
33
description: Planning for a successful access reviews campaign for a particular application starts with understanding how to model access for that application in Azure AD.
44
services: active-directory
55
documentationCenter: ''
@@ -73,6 +73,7 @@ Now that you have identified the integration pattern for the application, check
7373
1. If the application is not already listed, then check if the application is available the [application gallery](../manage-apps/overview-application-gallery.md) for applications that can be integrated for federated SSO or provisioning. If it is in the gallery, then use the [tutorials](../saas-apps/tutorial-list.md) to configure the application for federation, and if it supports provisioning, also [configure the application](/app-provisioning/configure-automatic-user-provisioning-portal.md) for provisioning.
7474
1. One the application is in the list of enterprise applications in your tenant, select the application from the list.
7575
1. Change to the **Properties** tab. Verify that the **User assignment required?** option is set to **Yes**. If it's set to **No**, all users in your directory, including external identities, can access the application, and you can't review access to the application.
76+
7677
![Screenshot that shows planning app assignments.](./media/deploy-access-review/6-plan-applications-assignment-required.png)
7778

7879
1. Change to the **Roles and administrators** tab. This tab displays the administrative roles, that give rights to control the representation of the application in Azure AD, not the access rights in the application. For each administrative role that has permissions to allow changing the application integration or assignments, and has an assignment to that administrative role, ensure that only authorized users are in that role.

0 commit comments

Comments
 (0)