Commit f79d6a3
[APIM] Add security note about managed identity policy and Contributor role
Add IMPORTANT admonitions to the managed identity how-to guide and the
authentication-managed-identity policy reference page. The notes clarify
that users with API Management policy editing permissions (e.g., the
API Management Service Contributor role) can use the managed identity
policy to authenticate as the service's managed identity, and recommend
following the principle of least privilege for both managed identity
role assignments and policy editing access.
Co-authored-by: Copilot <[email protected]>1 parent 4bcd54d commit f79d6a3
2 files changed
Lines changed: 9 additions & 0 deletions
File tree
- articles/api-management
Lines changed: 6 additions & 0 deletions
| Original file line number | Diff line number | Diff line change | |
|---|---|---|---|
| |||
26 | 26 | | |
27 | 27 | | |
28 | 28 | | |
| 29 | + | |
| 30 | + | |
| 31 | + | |
| 32 | + | |
| 33 | + | |
| 34 | + | |
29 | 35 | | |
30 | 36 | | |
31 | 37 | | |
| |||
Lines changed: 3 additions & 0 deletions
| Original file line number | Diff line number | Diff line change | |
|---|---|---|---|
| |||
20 | 20 | | |
21 | 21 | | |
22 | 22 | | |
| 23 | + | |
| 24 | + | |
| 25 | + | |
23 | 26 | | |
24 | 27 | | |
25 | 28 | | |
| |||
0 commit comments