Skip to content

Commit bb46cb9

Browse files
committed
Update howto-setup-break-glass-access-.md
1 parent c09cf8d commit bb46cb9

File tree

1 file changed

+3
-3
lines changed

1 file changed

+3
-3
lines changed

articles/operator-nexus/howto-setup-break-glass-access-.md

Lines changed: 3 additions & 3 deletions
Original file line numberDiff line numberDiff line change
@@ -62,7 +62,7 @@ Register the **Microsoft.NexusIdentity** resource provider.
6262

6363
#### Step 2: Assign necessary permissions for Network Fabric access
6464

65-
As part of the **Secure Future Initiative (SFI)**, **On-Behalf-Of (OBO) tokens** are now required to grant access to customer resources. This token grants NexusIdentity permissions scoped at the subscription, resource group, or network fabric level to enable **read access** to Network Fabric role assignments. The following role permissions should be assigned to end users or groups responsible for NF create, NF upgrade, and NF delete operations. These permissions can be granted temporarily, limited to the duration required to perform these operations.
65+
As part of the **Secure Future Initiative (SFI)**, **On-Behalf-Of (OBO) tokens** are now required to grant access to customer resources. This token grants NexusIdentity permissions scoped at the subscription, resource group, or network fabric level to enable **read access** to Network Fabric role assignments. The following role permissions should be assigned to end users responsible for NF create, NF upgrade, and NF delete operations. These permissions can be granted temporarily, limited to the duration required to perform these operations.
6666

6767
##### Required permissions
6868

@@ -77,7 +77,7 @@ As part of the **Secure Future Initiative (SFI)**, **On-Behalf-Of (OBO) tokens**
7777

7878
:::image type="content" source="media/breakglass-role-assignment.png" alt-text="Screenshot of adding role-assignment":::
7979

80-
2. In the **Members** tab, add the identity of the user or security group responsible for performing NF create, update, and delete operations.
80+
2. In the **Members** tab, add the identity of the user responsible for performing NF create, update, and delete operations.
8181

8282
:::image type="content" source="media/breakglass-add-member-nexusidenitityrp.png" alt-text="Screenshot of adding member to role assignment":::
8383

@@ -102,7 +102,7 @@ As part of the **Secure Future Initiative (SFI)**, **On-Behalf-Of (OBO) tokens**
102102
- To activate the role, select **Role Based Access Control Administrator** from Eligible assignments tab.
103103

104104
> [!NOTE]
105-
>Ensure that **Role Based Access Control Administrator** is sucessfully activated.
105+
> Ensure that **Role Based Access Control Administrator** is sucessfully activated.
106106
107107
## Next Steps
108108

0 commit comments

Comments
 (0)