Skip to content

Commit bc6bbde

Browse files
2 parents 725c24f + d88be39 commit bc6bbde

File tree

304 files changed

+3956
-2191
lines changed

Some content is hidden

Large Commits have some content hidden by default. Use the searchbox below for content that may be hidden.

304 files changed

+3956
-2191
lines changed

.openpublishing.redirection.json

Lines changed: 43 additions & 9 deletions
Original file line numberDiff line numberDiff line change
@@ -4042,7 +4042,7 @@
40424042
},
40434043
{
40444044
"source_path": "articles/azure-resource-manager/templates/template-tutorial-create-encrypted-storage-accounts.md",
4045-
"redirect_url": "articles/azure-resource-manager/templates/template-tutorial-use-template-reference",
4045+
"redirect_url": "/azure/azure-resource-manager/templates/template-tutorial-use-template-reference",
40464046
"redirect_document_id": false
40474047
},
40484048
{
@@ -20244,6 +20244,11 @@
2024420244
"redirect_url": "/azure/service-fabric/service-fabric-tutorial-deploy-app-to-party-cluster",
2024520245
"redirect_document_id": false
2024620246
},
20247+
{
20248+
"source_path": "articles/migrate/deploy-appliance.md",
20249+
"redirect_url": "migrate-appliance-architecture",
20250+
"redirect_document_id": false
20251+
},
2024720252
{
2024820253
"source_path": "articles/migrate/troubleshooting-general.md",
2024920254
"redirect_url": "troubleshoot-general",
@@ -29735,6 +29740,26 @@
2973529740
"redirect_url": "/azure/sentinel/fusion",
2973629741
"redirect_document_id": false
2973729742
},
29743+
{
29744+
"source_path": "articles/security-center/security-center-virtual-machine.md",
29745+
"redirect_url": "/azure/security-center/security-center-intro",
29746+
"redirect_document_id": false
29747+
},
29748+
{
29749+
"source_path": "articles/security-center/security-center-install-endpoint-protection.md",
29750+
"redirect_url": "/azure/security-center/security-center-services?tabs=features-windows#supported-endpoint-protection-solutions-",
29751+
"redirect_document_id": false
29752+
},
29753+
{
29754+
"source_path": "articles/security-center/security-center-linux-virtual-machine.md",
29755+
"redirect_url": "/azure/security-center/security-center-intro",
29756+
"redirect_document_id": false
29757+
},
29758+
{
29759+
"source_path": "articles/security-center/security-center-container-recommendations.md",
29760+
"redirect_url": "/azure/security-center/container-security",
29761+
"redirect_document_id": false
29762+
},
2973829763
{
2973929764
"source_path": "articles/security-center/security-center-ata-integration.md",
2974029765
"redirect_url": "/azure/security-center/security-center-partner-integration",
@@ -42405,6 +42430,11 @@
4240542430
"redirect_url": "/azure/azure-monitor/log-query/vminsights-overview",
4240642431
"redirect_document_id": false
4240742432
},
42433+
{
42434+
"source_path": "articles/azure-monitor/platform/diagnostic-settings-legacy.md",
42435+
"redirect_url": "/azure/azure-monitor/platform/activity-log-collect",
42436+
"redirect_document_id": false
42437+
},
4240842438
{
4240942439
"source_path": "articles/machine-learning/service/how-to-automated-ml.md",
4241042440
"redirect_url": "/azure/machine-learning/service/concept-automated-ml",
@@ -50414,28 +50444,32 @@
5041450444
"source_path": "articles/cognitive-services/speech-service/quickstart-voice-assistant-java-jre.md",
5041550445
"redirect_url": "/azure/cognitive-services/speech-service/quickstarts/voice-assistants?pivots=programming-language-java&tabs=jre"
5041650446
},
50417-
{
50447+
{
5041850448
"source_path": "articles/security/fundamentals/choose-ad-authn.md",
5041950449
"redirect_url": "/azure/active-directory/hybrid/choose-ad-authn",
50420-
"redirect_document_id": true
50450+
"redirect_document_id": true
5042150451
},
50422-
{
50423-
"source_path": "articles/azure-monitor/app/opencensus-go.md",
50452+
{
50453+
"source_path": "articles/azure-monitor/app/opencensus-go.md",
5042450454
"redirect_url": "/azure/azure-monitor/overview",
5042550455
"redirect_document_id": false
50426-
},
50427-
{
50428-
"source_path": "articles/azure-monitor/app/opencensus-local-forwarder.md",
50456+
},
50457+
{
50458+
"source_path": "articles/azure-monitor/app/opencensus-local-forwarder.md",
5042950459
"redirect_url": "/azure/azure-monitor/overview",
5043050460
"redirect_document_id": false
50431-
},
50461+
},
5043250462
{
5043350463
"source_path": "articles/cognitive-services/Speech-Service/quickstart-voice-assistant-csharp-uwp.md",
5043450464
"redirect_url": "/azure/cognitive-services/speech-service/quickstarts/voice-assistants?pivots=programming-language-csharp&tabs=uwp"
5043550465
},
5043650466
{
5043750467
"source_path": "articles/load-balancer/use-existing-lb-vmss-cli.md",
5043850468
"redirect_url": "/azure/load-balancer/configure-vm-scale-set-cli"
50469+
},
50470+
{
50471+
"source_path": "articles/cognitive-services/speech-service/how-to-custom-speech-test-data.md",
50472+
"redirect_url": "/azure/cognitive-services/speech-service/how-to-custom-speech-test-and-train"
5043950473
}
5044050474
]
5044150475
}

articles/active-directory-b2c/claim-resolver-overview.md

Lines changed: 4 additions & 4 deletions
Original file line numberDiff line numberDiff line change
@@ -9,7 +9,7 @@ manager: celestedg
99
ms.service: active-directory
1010
ms.workload: identity
1111
ms.topic: reference
12-
ms.date: 03/20/2020
12+
ms.date: 03/30/2020
1313
ms.author: mimart
1414
ms.subservice: B2C
1515
---
@@ -72,7 +72,7 @@ The following sections list available claim resolvers.
7272
| {OIDC:Prompt} | The `prompt` query string parameter. | login |
7373
| {OIDC:RedirectUri} |The `redirect_uri` query string parameter. | https://jwt.ms |
7474
| {OIDC:Resource} |The `resource` query string parameter. | N/A |
75-
| {OIDC:scope} |The `scope` query string parameter. | openid |
75+
| {OIDC:Scope} |The `scope` query string parameter. | openid |
7676
| {OIDC:Username}| The [resource owner password credentials flow](ropc-custom.md) user's username.| [email protected]|
7777

7878
### Context
@@ -158,7 +158,7 @@ The following example shows a RESTful technical profile with this scenario:
158158
<InputClaims>
159159
<InputClaim ClaimTypeReferenceId="userLanguage" DefaultValue="{Culture:LCID}" AlwaysUseDefaultValue="true" />
160160
<InputClaim ClaimTypeReferenceId="policyName" DefaultValue="{Policy:PolicyId}" AlwaysUseDefaultValue="true" />
161-
<InputClaim ClaimTypeReferenceId="scope" DefaultValue="{OIDC:scope}" AlwaysUseDefaultValue="true" />
161+
<InputClaim ClaimTypeReferenceId="scope" DefaultValue="{OIDC:Scope}" AlwaysUseDefaultValue="true" />
162162
<InputClaim ClaimTypeReferenceId="clientId" DefaultValue="{OIDC:ClientId}" AlwaysUseDefaultValue="true" />
163163
</InputClaims>
164164
<UseTechnicalProfileForSessionManagement ReferenceId="SM-Noop" />
@@ -171,7 +171,7 @@ Using claim resolvers, you can prepopulate the sign-in name or direct sign-in to
171171

172172
### Dynamic UI customization
173173

174-
Azure AD B2C enables you to pass query string parameters to your HTML content definition endpoints to dynamically render the page content. For example, this allows the ability to modify the background image on the Azure AD B2C sign-up or sign-in page based on a custom parameter that you pass from your web or mobile application. For more information, see [Dynamically configure the UI by using custom policies in Azure Active Directory B2C](custom-policy-ui-customization.md). You can also localize your HTML page based on a language parameter, or you can change the content based on the client ID.
174+
Azure AD B2C enables you to pass query string parameters to your HTML content definition endpoints to dynamically render the page content. For example, this feature allows the ability to modify the background image on the Azure AD B2C sign-up or sign-in page based on a custom parameter that you pass from your web or mobile application. For more information, see [Dynamically configure the UI by using custom policies in Azure Active Directory B2C](custom-policy-ui-customization.md#configure-dynamic-custom-page-content-uri). You can also localize your HTML page based on a language parameter, or you can change the content based on the client ID.
175175

176176
The following example passes in the query string parameter named **campaignId** with a value of `Hawaii`, a **language** code of `en-US`, and **app** representing the client ID:
177177

articles/active-directory-b2c/custom-policy-ui-customization.md

Lines changed: 4 additions & 4 deletions
Original file line numberDiff line numberDiff line change
@@ -25,7 +25,7 @@ Complete the steps in [Get started with custom policies](custom-policy-get-start
2525

2626
[!INCLUDE [active-directory-b2c-html-how-to](../../includes/active-directory-b2c-html-how-to.md)]
2727

28-
## 4. Modify the extensions file
28+
### 4. Modify the extensions file
2929

3030
To configure UI customization, copy the **ContentDefinition** and its child elements from the base file to the extensions file.
3131

@@ -55,17 +55,17 @@ To configure UI customization, copy the **ContentDefinition** and its child elem
5555

5656
1. Save the extensions file.
5757

58-
## 5. Upload and test your updated custom policy
58+
### 5. Upload and test your updated custom policy
5959

60-
### 5.1 Upload the custom policy
60+
#### 5.1 Upload the custom policy
6161

6262
1. Make sure you're using the directory that contains your Azure AD B2C tenant by selecting the **Directory + subscription** filter in the top menu and choosing the directory that contains your tenant.
6363
1. Search for and select **Azure AD B2C**.
6464
1. Under **Policies**, select **Identity Experience Framework**.
6565
1. Select **Upload custom policy**.
6666
1. Upload the extensions file that you previously changed.
6767

68-
### 5.2 Test the custom policy by using **Run now**
68+
#### 5.2 Test the custom policy by using **Run now**
6969

7070
1. Select the policy that you uploaded, and then select **Run now**.
7171
1. You should be able to sign up by using an email address.

articles/active-directory-b2c/predicates.md

Lines changed: 45 additions & 4 deletions
Original file line numberDiff line numberDiff line change
@@ -9,7 +9,7 @@ manager: celestedg
99
ms.service: active-directory
1010
ms.workload: identity
1111
ms.topic: reference
12-
ms.date: 02/24/2020
12+
ms.date: 03/30/2020
1313
ms.author: mimart
1414
ms.subservice: B2C
1515
---
@@ -41,7 +41,7 @@ The **Predicate** element contains the following attributes:
4141
| Attribute | Required | Description |
4242
| --------- | -------- | ----------- |
4343
| Id | Yes | An identifier that's used for the predicate. Other elements can use this identifier in the policy. |
44-
| Method | Yes | The method type to use for validation. Possible values: **IsLengthRange**, **MatchesRegex**, **IncludesCharacters**, or **IsDateRange**. The **IsLengthRange** value checks whether the length of a string claim value is within the range of minimum and maximum parameters specified. The **MatchesRegex** value checks whether a string claim value matches a regular expression. The **IncludesCharacters** value checks whether a string claim value contains a character set. The **IsDateRange** value checks whether a date claim value is between a range of minimum and maximum parameters specified. |
44+
| Method | Yes | The method type to use for validation. Possible values: [IsLengthRange](#islengthrange), [MatchesRegex](#matchesregex), [IncludesCharacters](#includescharacters), or [IsDateRange](#isdaterange). |
4545
| HelpText | No | An error message for users if the check fails. This string can be localized using the [language customization](localization.md) |
4646

4747
The **Predicate** element contains the following elements:
@@ -63,7 +63,19 @@ The **Parameter** element contains the following attributes:
6363
| ------- | ----------- | ----------- |
6464
| Id | 1:1 | The identifier of the parameter. |
6565

66-
The following example shows a `IsLengthRange` method with the parameters `Minimum` and `Maximum` that specify the length range of the string:
66+
### Predicate methods
67+
68+
#### IsLengthRange
69+
70+
The IsLengthRange method checks whether the length of a string claim value is within the range of minimum and maximum parameters specified. The predicate element supports the following parameters:
71+
72+
| Parameter | Required | Description |
73+
| ------- | ----------- | ----------- |
74+
| Maximum | Yes | The maximum number of characters that can be entered. |
75+
| Minimum | Yes | The minimum number of characters that must be entered. |
76+
77+
78+
The following example shows a IsLengthRange method with the parameters `Minimum` and `Maximum` that specify the length range of the string:
6779

6880
```XML
6981
<Predicate Id="IsLengthBetween8And64" Method="IsLengthRange" HelpText="The password must be between 8 and 64 characters.">
@@ -74,6 +86,14 @@ The following example shows a `IsLengthRange` method with the parameters `Minimu
7486
</Predicate>
7587
```
7688

89+
#### MatchesRegex
90+
91+
The MatchesRegex method checks whether a string claim value matches a regular expression. The predicate element supports the following parameters:
92+
93+
| Parameter | Required | Description |
94+
| ------- | ----------- | ----------- |
95+
| RegularExpression | Yes | The regular expression pattern to match. |
96+
7797
The following example shows a `MatchesRegex` method with the parameter `RegularExpression` that specifies a regular expression:
7898

7999
```XML
@@ -84,6 +104,14 @@ The following example shows a `MatchesRegex` method with the parameter `RegularE
84104
</Predicate>
85105
```
86106

107+
#### IncludesCharacters
108+
109+
The IncludesCharacters method checks whether a string claim value contains a character set. The predicate element supports the following parameters:
110+
111+
| Parameter | Required | Description |
112+
| ------- | ----------- | ----------- |
113+
| CharacterSet | Yes | The set of characters that can be entered. For example, lowercase characters `a-z`, uppercase characters `A-Z`, digits `0-9`, or a list of symbols, such as `@#$%^&amp;*\-_+=[]{}|\\:',?/~"();!`. |
114+
87115
The following example shows a `IncludesCharacters` method with the parameter `CharacterSet` that specifies the set of characters:
88116

89117
```XML
@@ -94,7 +122,16 @@ The following example shows a `IncludesCharacters` method with the parameter `Ch
94122
</Predicate>
95123
```
96124

97-
The following example shows a `IsDateRange` method with the parameters `Minimum` and `Maximum` that specify the date range with a format of `yyyy-MM-dd` and `Today`.
125+
#### IsDateRange
126+
127+
The IsDateRange method checks whether a date claim value is between a range of minimum and maximum parameters specified. The predicate element supports the following parameters:
128+
129+
| Parameter | Required | Description |
130+
| ------- | ----------- | ----------- |
131+
| Maximum | Yes | The largest possible date that can be entered. The format of the date follows `yyyy-mm-dd` convention, or `Today`. |
132+
| Minimum | Yes | The smallest possible date that can be entered. The format of the date follows `yyyy-mm-dd` convention, or `Today`.|
133+
134+
The following example shows a `IsDateRange` method with the parameters `Minimum` and `Maximum` that specify the date range with a format of `yyyy-mm-dd` and `Today`.
98135

99136
```XML
100137
<Predicate Id="DateRange" Method="IsDateRange" HelpText="The date must be between 1970-01-01 and today.">
@@ -384,3 +421,7 @@ In your claim type, add **PredicateValidationReference** element and specify the
384421
<PredicateValidationReference Id="CustomDateRange" />
385422
</ClaimType>
386423
```
424+
425+
## Next steps
426+
427+
- Learn how to [Configure password complexity using custom policies in Azure Active Directory B2C](custom-policy-password-complexity.md) using predicate validations.

articles/active-directory-b2c/secure-rest-api.md

Lines changed: 4 additions & 1 deletion
Original file line numberDiff line numberDiff line change
@@ -9,7 +9,7 @@ manager: celestedg
99
ms.service: active-directory
1010
ms.workload: identity
1111
ms.topic: conceptual
12-
ms.date: 03/27/2020
12+
ms.date: 03/30/2020
1313
ms.author: mimart
1414
ms.subservice: B2C
1515
---
@@ -182,6 +182,8 @@ The following is an example of a RESTful technical profile configured with an HT
182182

183183
## OAuth2 bearer authentication
184184

185+
[!INCLUDE [b2c-public-preview-feature](../../includes/active-directory-b2c-public-preview.md)]
186+
185187
Bearer token authentication is defined in [OAuth2.0 Authorization Framework: Bearer Token Usage (RFC 6750)](https://www.rfc-editor.org/rfc/rfc6750.txt). In bearer token authentication, Azure AD B2C sends an HTTP request with a token in the authorization header.
186188

187189
```http
@@ -193,6 +195,7 @@ A bearer token is an opaque string. It can be a JWT access token or any string t
193195
- **Bearer token**. To be able to send the bearer token in the Restful technical profile, your policy needs to first acquire the bearer token and then use it in the RESTful technical profile.
194196
- **Static bearer token**. Use this approach when your REST API issues a long-term access token. To use a static bearer token, create a policy key and make a reference from the RESTful technical profile to your policy key.
195197

198+
196199
## Using OAuth2 Bearer
197200

198201
The following steps demonstrate how to use client credentials to obtain a bearer token and pass it into the Authorization header of the REST API calls.

articles/active-directory/develop/access-tokens.md

Lines changed: 2 additions & 2 deletions
Original file line numberDiff line numberDiff line change
@@ -9,7 +9,7 @@ ms.service: active-directory
99
ms.subservice: develop
1010
ms.workload: identity
1111
ms.topic: conceptual
12-
ms.date: 3/2/2020
12+
ms.date: 3/27/2020
1313
ms.author: ryanwi
1414
ms.reviewer: hirsin
1515
ms.custom: aaddev, identityplatformtop40, fasttrack-edit
@@ -256,7 +256,7 @@ Refresh tokens can be revoked by the server due to a change in credentials, or d
256256
| User does SSPR | Revoked | Revoked | Stays alive | Stays alive | Stays alive |
257257
| Admin resets password | Revoked | Revoked | Stays alive | Stays alive | Stays alive |
258258
| User revokes their refresh tokens [via PowerShell](https://docs.microsoft.com/powershell/module/azuread/revoke-azureadsignedinuserallrefreshtoken) | Revoked | Revoked | Revoked | Revoked | Revoked |
259-
| Admin revokes all refresh tokens for the tenant [via PowerShell](https://docs.microsoft.com/powershell/module/azuread/revoke-azureaduserallrefreshtoken) | Revoked | Revoked |Revoked | Revoked | Revoked |
259+
| Admin revokes all refresh tokens for a user [via PowerShell](https://docs.microsoft.com/powershell/module/azuread/revoke-azureaduserallrefreshtoken) | Revoked | Revoked |Revoked | Revoked | Revoked |
260260
| Single sign-out ([v1.0](../azuread-dev/v1-protocols-openid-connect-code.md#single-sign-out), [v2.0](v2-protocols-oidc.md#single-sign-out) ) on web | Revoked | Stays alive | Revoked | Stays alive | Stays alive |
261261

262262
> [!NOTE]

0 commit comments

Comments
 (0)