Skip to content

Commit d375746

Browse files
Merge pull request #312134 from gabe-ck/docs-editor/overview-1771871826
Permissions clarification for cross-tenant access
2 parents 084604a + 42e209a commit d375746

1 file changed

Lines changed: 2 additions & 0 deletions

File tree

articles/external-attack-surface-management/overview.md

Lines changed: 2 additions & 0 deletions
Original file line numberDiff line numberDiff line change
@@ -52,6 +52,8 @@ A user in your organization who is assigned the Owner or Contributor role can cr
5252

5353
A user who is assigned the Reader role can view Defender EASM data, but they can't create, delete, or edit a resource or inventory asset.
5454

55+
Defender EASM does not support cross-tenant resource access, including via Azure Lighthouse. Defender EASM resources must be accessed by authenticating directly to the tenant where the resource is located.
56+
5557
## Data residency, availability, and privacy
5658

5759
Microsoft Defender EASM contains both global data and customer-specific data. The underlying internet data is global data that originates with Microsoft. Labels that customers apply are considered customer data. Your customer data is stored in the region you select.

0 commit comments

Comments
 (0)