From 419091a3e4f6571609166589da7b1f6d57d317f4 Mon Sep 17 00:00:00 2001 From: YulelogPagoda <45784740+YulelogPagoda@users.noreply.github.com> Date: Tue, 17 Dec 2024 10:44:49 +0100 Subject: [PATCH] Update manage-rbac.md Added information to let people know that the Device Group permissions that used to exist in Roles now has been moved to Device Groups. --- defender-xdr/manage-rbac.md | 4 +++- 1 file changed, 3 insertions(+), 1 deletion(-) diff --git a/defender-xdr/manage-rbac.md b/defender-xdr/manage-rbac.md index 167c0ef24f..891f865fc7 100644 --- a/defender-xdr/manage-rbac.md +++ b/defender-xdr/manage-rbac.md @@ -44,7 +44,7 @@ Centralized permissions management is supported for the following solutions: |Solution|Description| |---|---| |Microsoft Defender XDR|Centralized permissions management for Microsoft Defender XDR experiences.| -|Microsoft Defender for Endpoint|Full support for all endpoint data and actions. All roles are compatible with the device group's scope as defined on the device groups page.| +|Microsoft Defender for Endpoint|Full support for all endpoint data and actions. All roles are compatible with the device group's scope as defined on the device groups page. Limiting permissions to different device groups is accomplished in the Devices Groups page.| |Microsoft Defender Vulnerability Management|Centralized permissions management for all Defender Vulnerability Management capabilities.| |Microsoft Defender for Office 365|Full support for all data and actions.

**Note**: | |Microsoft Defender for Identity|Full support for all identity data and actions.

**Note:** Defender for Identity experiences also adhere to permissions granted from [Microsoft Defender for Cloud Apps](https://security.microsoft.com/cloudapps/permissions/roles). For more information, see [Microsoft Defender for Identity role groups](https://go.microsoft.com/fwlink/?linkid=2202729).| @@ -78,6 +78,8 @@ This section provides useful information on what you need to know before you sta The new Microsoft Defender XDR Unified RBAC model provides easy migration of the existing permissions in the individual supported unified RBAC models to the new RBAC model. +Defender for Endpoint Devices Groups now use the device groups side of the interface to define which groups have access to the proper Device Groups. + All permissions listed within the Microsoft Defender XDR Unified RBAC model align to permissions in the individual RBAC models to ensure backward compatibility. For more information on how the permissions align, see [Map permissions in Microsoft Defender XDR unified role-based access control (RBAC)](compare-rbac-roles.md).