You signed in with another tab or window. Reload to refresh your session.You signed out in another tab or window. Reload to refresh your session.You switched accounts on another tab or window. Reload to refresh your session.Dismiss alert
Copy file name to clipboardExpand all lines: articles/operator-nexus/howto-setup-break-glass-access-.md
+3-3Lines changed: 3 additions & 3 deletions
Display the source diff
Display the rich diff
Original file line number
Diff line number
Diff line change
@@ -62,7 +62,7 @@ Register the **Microsoft.NexusIdentity** resource provider.
62
62
63
63
#### Step 2: Assign necessary permissions for Network Fabric access
64
64
65
-
As part of the **Secure Future Initiative (SFI)**, **On-Behalf-Of (OBO) tokens** are now required to grant access to customer resources. This token grants NexusIdentity permissions scoped at the subscription, resource group, or network fabric level to enable **read access** to Network Fabric role assignments. The following role permissions should be assigned to end users or groups responsible for NF create, NF upgrade, and NF delete operations. These permissions can be granted temporarily, limited to the duration required to perform these operations.
65
+
As part of the **Secure Future Initiative (SFI)**, **On-Behalf-Of (OBO) tokens** are now required to grant access to customer resources. This token grants NexusIdentity permissions scoped at the subscription, resource group, or network fabric level to enable **read access** to Network Fabric role assignments. The following role permissions should be assigned to end users responsible for NF create, NF upgrade, and NF delete operations. These permissions can be granted temporarily, limited to the duration required to perform these operations.
66
66
67
67
##### Required permissions
68
68
@@ -77,7 +77,7 @@ As part of the **Secure Future Initiative (SFI)**, **On-Behalf-Of (OBO) tokens**
77
77
78
78
:::image type="content" source="media/breakglass-role-assignment.png" alt-text="Screenshot of adding role-assignment":::
79
79
80
-
2. In the **Members** tab, add the identity of the user or security group responsible for performing NF create, update, and delete operations.
80
+
2. In the **Members** tab, add the identity of the user responsible for performing NF create, update, and delete operations.
81
81
82
82
:::image type="content" source="media/breakglass-add-member-nexusidenitityrp.png" alt-text="Screenshot of adding member to role assignment":::
83
83
@@ -102,7 +102,7 @@ As part of the **Secure Future Initiative (SFI)**, **On-Behalf-Of (OBO) tokens**
102
102
- To activate the role, select **Role Based Access Control Administrator** from Eligible assignments tab.
103
103
104
104
> [!NOTE]
105
-
>Ensure that **Role Based Access Control Administrator** is sucessfully activated.
105
+
>Ensure that **Role Based Access Control Administrator** is sucessfully activated.
0 commit comments