You signed in with another tab or window. Reload to refresh your session.You signed out in another tab or window. Reload to refresh your session.You switched accounts on another tab or window. Reload to refresh your session.Dismiss alert
Copy file name to clipboardExpand all lines: defender-xdr/edit-delete-rbac-roles.md
+5-5Lines changed: 5 additions & 5 deletions
Display the source diff
Display the rich diff
Original file line number
Diff line number
Diff line change
@@ -40,7 +40,7 @@ The following steps guide you on how to edit roles in Microsoft Defender XDR Uni
40
40
41
41
> [!IMPORTANT]
42
42
> You must be a Global Administrator or Security Administrator in Microsoft Entra ID, or have all the Authorization permissions assigned in Microsoft Defender XDR Unified RBAC to perform this task. For more information on permissions, see [Permission pre-requisites](manage-rbac.md#permissions-prerequisites).
43
-
> Microsoft recommends that you use roles with the fewest permissions. This helps improve security for your organization. Global Administrator is a highly privileged role that should be limited to emergency scenarios when you can't use an existing role.
43
+
> Microsoft recommends that you use roles with the fewest permissions to help improve security for your organization. Global Administrator is a highly privileged role that should be limited to emergency scenarios when you can't use an existing role.
44
44
45
45
1. Sign in to the [Microsoft Defender portal](https://security.microsoft.com) as global administrator or security administrator.
46
46
@@ -50,7 +50,7 @@ The following steps guide you on how to edit roles in Microsoft Defender XDR Uni
50
50
51
51
4. Select the role you want to edit. You can only edit one role at a time.
52
52
53
-
5. Once selected, this opens a flyout pane where you can edit the role:
53
+
5. Once selected, a flyout pane opens where you can edit the role:
54
54
55
55
:::image type="content" source="/defender/media/defender/m365-defender-rbac-edit-roles.png" alt-text="Screenshot of the edit roles flyout page" lightbox="/defender/media/defender/m365-defender-rbac-edit-roles.png":::
56
56
@@ -61,7 +61,7 @@ The following steps guide you on how to edit roles in Microsoft Defender XDR Uni
61
61
62
62
To delete roles in Microsoft Defender XDR Unified RBAC, select the role or roles you want to delete and select **Delete roles**.
63
63
64
-
If the workload is active, by removing the role all assigned user permission will be deleted.
64
+
If the workload is active, all assigned user permission are deleted by removing the role.
65
65
66
66
> [!NOTE]
67
67
> After deleting an imported role, the role won't be deleted from the individual product RBAC model. If needed, you can re-import it to the Microsoft Defender XDR Unified RBAC list of roles.
@@ -77,7 +77,7 @@ The Export feature enables you to export the following roles data:
77
77
- The assigned data sources
78
78
- The assigned users or user groups
79
79
80
-
When a role has multiple assignments, each assignment will be represented as a separate row in the CSV file.
80
+
When a role has multiple assignments, each assignment is represented as a separate row in the CSV file.
81
81
82
82
The CSV also includes a snapshot of the Defender XDR Unified RBAC activation status for each workload available on the tenant.
83
83
@@ -98,7 +98,7 @@ The following steps guide you on how to export roles in Microsoft Defender XDR U
98
98
99
99
:::image type="content" source="/defender/media/defender/m365-defender-rbac-export-roles.png" alt-text="Screenshot of the export roles page" lightbox="/defender/media/defender/m365-defender-rbac-export-roles.png":::
100
100
101
-
A CSV file containing all the roles data will be generated and downloaded to the local machine.
101
+
A CSV file containing all the roles data is generated and downloaded to the local computer.
Copy file name to clipboardExpand all lines: defender-xdr/import-rbac-roles.md
+6-6Lines changed: 6 additions & 6 deletions
Display the source diff
Display the rich diff
Original file line number
Diff line number
Diff line change
@@ -37,7 +37,7 @@ search.appverid: met150
37
37
38
38
You can import existing roles that are maintained as part of individual supported products in Microsoft Defender XDR (for example, Microsoft Defender for Endpoint) to the Microsoft Defender XDR Unified RBAC model.
39
39
40
-
Importing roles will migrate and maintain the roles with full parity in relation to their permissions and user assignments in the Microsoft Defender XDR Unified RBAC model.
40
+
Importing roles migrates and maintains the roles with full parity in relation to their permissions and user assignments in the Microsoft Defender XDR Unified RBAC model.
41
41
42
42
> [!NOTE]
43
43
> Once roles are migrated, you can modify the imported roles and change the level of permissions as needed.
@@ -46,7 +46,7 @@ The following steps guide you on how to import roles into Microsoft Defender XDR
46
46
47
47
> [!IMPORTANT]
48
48
> You must be a Global Administrator or Security Administrator in Microsoft Entra ID, or have all the **Authorization** permissions assigned in Microsoft Defender XDR Unified RBAC to perform this task. For more information on permissions, see [Permission pre-requisites](manage-rbac.md#permissions-prerequisites).
49
-
> Microsoft recommends that you use roles with the fewest permissions. This helps improve security for your organization. Global Administrator is a highly privileged role that should be limited to emergency scenarios when you can't use an existing role.
49
+
> Microsoft recommends that you use roles with the fewest permissions to help improve security for your organization. Global Administrator is a highly privileged role that should be limited to emergency scenarios when you can't use an existing role.
50
50
51
51
1. Sign in to the [Microsoft Defender portal](https://security.microsoft.com).
52
52
@@ -73,14 +73,14 @@ The following steps guide you on how to import roles into Microsoft Defender XDR
73
73
74
74
9. Select **Done** on the confirmation page.
75
75
76
-
Now that you have imported your roles you will be able to [View and edit roles](edit-delete-rbac-roles.md) and activate the workloads.
76
+
After importing your roles, you are be able to [View and edit roles](edit-delete-rbac-roles.md) and activate the workloads.
77
77
78
-
For the Microsoft Defender XDR security portal to start enforcing the permissions and assignments configured in your new or imported roles, you'll need to activate the new Defender XDR Unified RBAC model. For more information, see [Activate the workloads](activate-defender-rbac.md).
78
+
You need to activate the new Defender XDR Unified RBAC model to start enforcing the permissions and assignments configured in your new or imported roles within the Microsoft Defender portal. For more information, see [Activate the workloads](activate-defender-rbac.md).
79
79
80
-
Imported roles appear in the **Permissions and roles** list together with any custom roles you might have created. All imported roles will be marked as **Imported** in the description. Once you edit an imported role it will no longer be marked as **Imported**.
80
+
Imported roles appear in the **Permissions and roles** list together with any custom roles you created. All imported roles are marked as **Imported** in the description. Once you edit an imported role, it will no longer be marked as **Imported**.
81
81
82
82
> [!NOTE]
83
-
> You can import roles as frequently as required. After you edit an imported role, the changes will not affect the original role where it was imported from. This means you have the option to delete an imported role and re-import the original role, if required. If you import the same role twice you will create a duplicate role.
83
+
> You can import roles as frequently as required. After you edit an imported role, the changes will not affect the original role where it was imported from. This means you have the option to delete an imported role and re-import the original role, if necessary. If you import the same role twice, you create a duplicate role.
0 commit comments