Skip to content
Open
Show file tree
Hide file tree
Changes from all commits
Commits
Show all changes
19 commits
Select commit Hold shift + click to select a range
3141bd7
update permission configuration procedure
brandonwest-netwrix Jan 8, 2026
e05ec0d
Refactor Azure Information Protection documentation
brandonwest-netwrix Jan 8, 2026
356db4a
Merge remote-tracking branch 'upstream/dev' into dev
brandonwest-netwrix Jan 9, 2026
39c872f
added image demonstrating correct permissions for AIP APP Permissions.
brandonwest-netwrix Jan 16, 2026
ad14b05
Merge branch 'dev' into dev
brandonwest-netwrix Jan 16, 2026
615d6b8
fixed broken image link
brandonwest-netwrix Jan 16, 2026
c30babf
Merge branch 'dev' of https://github.com/brandonwest-netwrix/docs int…
brandonwest-netwrix Jan 16, 2026
56baa4c
Merge branch 'dev' into dev
tay-caliguiri Jan 20, 2026
b2f6f79
Merge branch 'dev' into dev
tay-caliguiri Jan 20, 2026
f183851
Merge branch 'dev' into dev
tay-caliguiri Jan 20, 2026
4a34580
Merge branch 'dev' into dev
tay-caliguiri Jan 21, 2026
c17c306
Merge branch 'dev' into dev
brandonwest-netwrix Jan 22, 2026
ba964f5
Merge branch 'dev' into dev
brandonwest-netwrix Jan 23, 2026
5016883
Merge branch 'dev' into dev
jtviolet Jan 26, 2026
88cb03e
Clarified that the permission report does not display user permission…
brandonwest-netwrix Jan 30, 2026
d6c8a07
Merge branch 'dev' of https://github.com/brandonwest-netwrix/docs int…
brandonwest-netwrix Jan 30, 2026
feb6f6c
Merge branch 'netwrix:dev' into dev
brandonwest-netwrix Jan 30, 2026
3f35068
Fix link format in permissions documentation
brandonwest-netwrix Feb 3, 2026
dc01397
Merge branch 'netwrix:dev' into dev
brandonwest-netwrix Feb 6, 2026
File filter

Filter by extension

Filter by extension

Conversations
Failed to load comments.
Loading
Jump to
Jump to file
Failed to load files.
Loading
Diff view
Diff view
Original file line number Diff line number Diff line change
Expand Up @@ -38,7 +38,7 @@ Ensure the following prerequisites are met before configuring AIP scanning:
* Microsoft Entra ID Admin credentials
* The PowerShell `Install-Module` command requires:
* PowerShell 5.0 (Run as Administrator)
* Windows Server 2016 and later
* Windows Server 2016and later
* Active Directory Rights Management Services Client 2.1 installed on the server where the FSAA applet or proxy is being run

### Rights Management Service Client Installation
Expand All @@ -47,8 +47,7 @@ The Rights Management Service Client must be installed on the applet servers whe

* To install the Rights Management Service Client 2.1 on the server where the scan is taking place, go to the Microsoft download center:

[Microsoft Download Center](https://www.microsoft.com/en-us/download/details.aspx?id=38396)

<https://www.microsoft.com/en-us/download/details.aspx?id=38396>

:::info
**info**
Expand All @@ -62,8 +61,8 @@ Read the System Requirements and Install Instructions provided by Microsoft to c

1. Open the Azure Portal and sign in with an administrator account


1. [Azure Portal](https://portal.azure.com/)
1. <https://portal.azure.com/>
2. Create a new app registration


Expand All @@ -90,6 +89,9 @@ Read the System Requirements and Install Instructions provided by Microsoft to c
2. Click “Add a permission”
3. Select the **Microsoft Graph API** permission set > Application permissions
4. Add the “InformationProtectionPolicy.Read.All” permission

![Azure App Permissions](/static/images/accessanalyzer/11.6/requirements/target/config/AIP_APP_Permissions.webp)

5. After adding the required API permission, select “Grant admin consent”
6. Record the AppID (from the Overview Page) and the tenantID with the secret value

Expand Down
Original file line number Diff line number Diff line change
Expand Up @@ -90,6 +90,9 @@ Read the System Requirements and Install Instructions provided by Microsoft to c
2. Click “Add a permission”
3. Select the **Microsoft Graph API** permission set > Application permissions
4. Add the “InformationProtectionPolicy.Read.All” permission

![Azure App Permissions](/static/images/accessanalyzer/12.0/requirements/target/config/AIP_APP_Permissions.webp)

5. After adding the required API permission, select “Grant admin consent”
6. Record the AppID (from the Overview Page) and the tenantID with the secret value

Expand Down
Original file line number Diff line number Diff line change
Expand Up @@ -12,6 +12,10 @@ means the report displays both direct and inherited permissions unless modified
Information Center user. See the [Results Pane](/docs/accessinformationcenter/12.0/resourceaudit/navigate/overview.md#results-pane) topic for
information on filter options.

:::note
Users must be assigned permissions directly to an object to appear in this report. users who receive access as part of a group membership will only be reflected in the ![Effective Access Report](/docs/accessinformationcenter/12.0/resourceaudit/user/effectiveaccess.md)
:::

![Permissions report](/images/accessinformationcenter/12.0/resourceaudit/user/permissions.webp)

This report is comprised of the following columns:
Expand Down
Loading
Sorry, something went wrong. Reload?
Sorry, we cannot display this file.
Sorry, this file is invalid so it cannot be displayed.
Loading
Sorry, something went wrong. Reload?
Sorry, we cannot display this file.
Sorry, this file is invalid so it cannot be displayed.