Skip to content

Commit 5e24f5d

Browse files
authored
Update predefined-classification-rules-and-levels.md
1 parent bc75226 commit 5e24f5d

File tree

1 file changed

+2
-2
lines changed

1 file changed

+2
-2
lines changed

exposure-management/predefined-classification-rules-and-levels.md

Lines changed: 2 additions & 2 deletions
Original file line numberDiff line numberDiff line change
@@ -53,8 +53,8 @@ Current asset types are:
5353
| B2C IEF Keyset Administrator | Identity | High | Identities in this role can manage secrets for federation and encryption in the Identity Experience Framework (IEF). |
5454
| Cloud Application Administrator | Identity | Very High | Identities in this role can create and manage all aspects of app registrations and enterprise apps except App Proxy. |
5555
| Cloud Device Administrator | Identity | High | Identities in this role have limited access to manage devices in Microsoft Entra ID. They can enable, disable, and delete devices in Microsoft Entra ID and read Windows 10 BitLocker keys (if present) in the Azure portal. |
56-
| Conditional Access Administrator | Identity | High | Identities with this role have the ability to manage Microsoft Entra Conditional Access settings. |
57-
| Directory Synchronization Accounts | Identity | Very High | Identities with this role have the ability to manage all directory synchronization settings. Should Only be used by Microsoft Entra Connect service. |
56+
| Conditional Access Administrator | Identity | High | Identities in this role have the ability to manage Microsoft Entra Conditional Access settings. |
57+
| Directory Synchronization Accounts | Identity | Very High | Identities in this role have the ability to manage all directory synchronization settings. Should Only be used by Microsoft Entra Connect service. |
5858
| Directory Writers | Identity | High | Identities in this role can read and write basic directory information. For granting access to applications, not intended for users. |
5959
| Global Administrator | Identity | Very High | Identities in this role can manage all aspects of Microsoft Entra ID and Microsoft services that use Microsoft Entra identities. |
6060
| Global Reader | Identity | High | Identities in this role can read everything that a Global Administrator can, but not update anything. |

0 commit comments

Comments
 (0)