Skip to content

Commit 2945356

Browse files
committed
Update import-rbac-roles.md
1 parent f89e36b commit 2945356

File tree

1 file changed

+9
-1
lines changed

1 file changed

+9
-1
lines changed

defender-xdr/import-rbac-roles.md

Lines changed: 9 additions & 1 deletion
Original file line numberDiff line numberDiff line change
@@ -12,7 +12,7 @@ ms.collection:
1212
- tier3
1313
ms.custom:
1414
ms.topic: how-to
15-
ms.date: 06/13/2024
15+
ms.date: 06/28/2024
1616
ms.reviewer:
1717
search.appverid: met150
1818
---
@@ -45,16 +45,22 @@ The following steps guide you on how to import roles into Microsoft Defender XDR
4545

4646
> [!IMPORTANT]
4747
> You must be a Global Administrator or Security Administrator in Microsoft Entra ID, or have all the **Authorization** permissions assigned in Microsoft Defender XDR Unified RBAC to perform this task. For more information on permissions, see [Permission pre-requisites](manage-rbac.md#permissions-prerequisites).
48+
> Microsoft recommends that you use roles with the fewest permissions. This helps improve security for your organization. Global Administrator is a highly privileged role that should be limited to emergency scenarios when you can't use an existing role.
4849
4950
1. Sign in to the [Microsoft Defender portal](https://security.microsoft.com).
51+
5052
2. In the navigation pane, select **Permissions**.
53+
5154
3. Select **Roles** under Microsoft Defender XDR to get to the Permissions and roles page.
55+
5256
4. Select **Import role**.
57+
5358
5. Select the products you want to import roles from.
5459

5560
:::image type="content" source="/defender/media/defender/m365-defender-import-workloads.png" alt-text="Screenshot of the import workloads page" lightbox="/defender/media/defender/m365-defender-import-workloads.png":::
5661

5762
6. Select **Next** to choose the roles to import. You can choose all roles or select specific roles from the list. Select the role name to review the permissions and assigned users or groups for that specific role.
63+
5864
7. Select the roles you want to import and select **Next**.
5965

6066
> [!NOTE]
@@ -63,6 +69,7 @@ The following steps guide you on how to import roles into Microsoft Defender XDR
6369
> To import this role to Unified RBAC, remove the user or user group from the role in the original RBAC model. Select the role to view the list of users that still exist for that role to determine which user or group to remove.
6470
6571
8. Select **Submit**.
72+
6673
9. Select **Done** on the confirmation page.
6774

6875
Now that you have imported your roles you will be able to [View and edit roles](edit-delete-rbac-roles.md) and activate the workloads.
@@ -78,5 +85,6 @@ Imported roles appear in the **Permissions and roles** list together with any cu
7885

7986
- [Activate Microsoft Defender XDR Unified RBAC](activate-defender-rbac.md)
8087
- [Edit or delete roles](edit-delete-rbac-roles.md)
88+
8189
[!INCLUDE [Microsoft Defender XDR rebranding](../includes/defender-m3d-techcommunity.md)]
8290

0 commit comments

Comments
 (0)