【发布时间】:2020-05-08 05:25:51
【问题描述】:
我正在尝试了解如何执行此操作:https://docs.microsoft.com/en-us/azure/active-directory/privileged-identity-management/azure-ad-roles-features#new-role-settings
Now, you can configure whether an individual user needs to perform multi-factor authentication before they can activate a role. Also, you can have advanced control over your Privileged Identity Management emails related to specific roles.
我的客户与需要特定角色成员资格的外部合作伙伴合作。他们希望确保这些外部人员只有在获得批准后才能激活他们的角色。但是,内部角色成员不需要批准。以上看起来允许每个用户进行不同的配置。但是我看不到配置它的选项。 (我可以使用客户角色,但它看起来有一个收件箱解决方案)
【问题讨论】:
标签: azure azure-active-directory azure-api-management