You signed in with another tab or window. Reload to refresh your session.You signed out in another tab or window. Reload to refresh your session.You switched accounts on another tab or window. Reload to refresh your session.Dismiss alert
Copy file name to clipboardExpand all lines: ATPDocs/configure-scoped-access.md
+9-9Lines changed: 9 additions & 9 deletions
Display the source diff
Display the rich diff
Original file line number
Diff line number
Diff line change
@@ -32,20 +32,22 @@ To enable identity scoping, follow these steps:
32
32
33
33
:::image type="content" source="media/custom-roles/create-custom-role.png" alt-text="Screenshot showing the create custom roles button":::
34
34
35
+
1. You can edit the role at any time. Select the role from the list of custom roles and choose **Edit**.
36
+
37
+
:::image type="content" source="media/custom-roles/edit-custom-role.png" alt-text="Screenshot showing how to edit a custom role":::
38
+
35
39
1. Select Add assignments and add the Assignment name.
36
40
1. Under **Assign users and groups**, enter the usernames or Microsoft Entra ID groups you want to assign to the role.
37
41
1. Select Microsoft Defender for Identity as the data source.
38
-
1. Under **Scope**, select the user groups (AD domains) or Microsoft Entra ID groups that will be scoped to the assignment.
42
+
1. Under **Scope**, select the user groups (AD domains) that will be scoped to the assignment.
39
43
:::image type="content" source="media/custom-roles/add-assignment.png" alt-text="Screenshot showing how to add Defender for Identity to your scoping role":::
40
44
1. Select Add.
41
-
1. You can edit the role at any time. Select the role from the list of custom roles and choose **Edit**.
42
45
43
-
:::image type="content" source="media/custom-roles/edit-custom-role.png" alt-text="Screenshot showing how to edit a custom role":::
44
46
45
47
46
-
### Known limitations
48
+
### Known limitations (Preview)
47
49
48
-
Defender for Identity scoping is currently in Public preview. The following table lists the current limitations and supported scenarios for scoped access in Microsoft Defender for Identity. Features that are currently unavailable will become available when Identity scoping reaches general availability.
50
+
Defender for Identity scoping is currently in Public preview. The following table lists the current limitations and supported scenarios for scoped access in Microsoft Defender for Identity.
49
51
50
52
> [!NOTE]
51
53
> - Custom roles apply only to new alerts and activities. Alerts and activities triggered before a custom role was created aren't retroactively tagged or filtered.
@@ -54,12 +56,10 @@ Defender for Identity scoping is currently in Public preview. The following tabl
54
56
55
57
|Defender for Identity experience |Status |
56
58
|---------|---------|
57
-
|MDI alerts and incidents (includes a user entity) | Available
0 commit comments