Skip to content

Commit 0d51556

Browse files
identity governance: update module mapping (#680)
* move cmdlet supression for new AR, TOU and app consent from mapping to identity.governance readme * unsupress AR definition, history definition and policy cmdlets * change AR rename back to supress cmdlets for now Co-authored-by: Peter Ombwa <[email protected]>
1 parent f243d74 commit 0d51556

File tree

3 files changed

+51
-1
lines changed

3 files changed

+51
-1
lines changed

config/ModulesMapping.jsonc

Lines changed: 1 addition & 1 deletion
Original file line numberDiff line numberDiff line change
@@ -19,7 +19,7 @@
1919
"Financials": "^financials\\.",
2020
"Groups": "^groups.group$|^groups.directoryObject$|^groups.conversation$|^groups.endpoint$|^groups.extension$|^groups.resourceSpecificPermissionGrant$|^groups.profilePhoto$|^groups.conversationThread$|^groupLifecyclePolicies\\.|^users.group$|^groups.directorySetting$|^groups.Actions$|^groups.Functions$",
2121
"Identity.DirectoryManagement": "^administrativeUnits\\.|^contacts\\.|^devices\\.|^domains\\.|^directoryRoles\\.|^directoryRoleTemplates\\.|^directorySettingTemplates\\.|^settings\\.|^subscribedSkus\\.|^contracts\\.|^directory\\.|^users.scopedRoleMembership$|^organization.organization$|^organization.organizationalBranding$|^organization.organizationSettings$|^organization.Actions$|^organization.extension$",
22-
"Identity.Governance": "^accessReviews\\.|^businessFlowTemplates\\.|^programs\\.|^programControls\\.|^programControlTypes\\.|^privilegedRoles\\.|^privilegedRoleAssignments\\.|^privilegedRoleAssignmentRequests\\.|^privilegedApproval\\.|^privilegedOperationEvents\\.|^privilegedAccess\\.|^agreements\\.|^users.agreementAcceptance$|^identityGovernance.entitlementManagement$|^identityGovernance.Functions$|^identityGovernance.Actions$",
22+
"Identity.Governance": "^accessReviews\\.|^businessFlowTemplates\\.|^programs\\.|^programControls\\.|^programControlTypes\\.|^privilegedRoles\\.|^privilegedRoleAssignments\\.|^privilegedRoleAssignmentRequests\\.|^privilegedApproval\\.|^privilegedOperationEvents\\.|^privilegedAccess\\.|^agreements\\.|^users.agreementAcceptance$|^identityGovernance\\.",
2323
"Identity.SignIns": "^organization.certificateBasedAuthConfiguration$|^invitations\\.|^identityProviders\\.|^oauth2PermissionGrants\\.|^riskDetections\\.|^riskyUsers\\.|^dataPolicyOperations\\.|^identity.identityUserFlow$|^trustFramework\\.|^informationProtection\\.|^policies\\.|^users.authentication$|^users.informationProtection$|^identity.conditionalAccessRoot$",
2424
"Mail": "^users.inferenceClassification$|^users.mailFolder$|^users.message$",
2525
"Notes": "^users.onenote$|^groups.onenote$|^sites.onenote$",

profiles/Identity.Governance/definitions/v1.0-beta.md

Lines changed: 30 additions & 0 deletions
Original file line numberDiff line numberDiff line change
@@ -36,8 +36,20 @@ profiles:
3636
/agreements/{agreement-id}/files/{agreementFileLocalization-id}/versions/{agreementFileVersion-id}: v1.0-beta
3737
/businessFlowTemplates: v1.0-beta
3838
/businessFlowTemplates/{businessFlowTemplate-id}: v1.0-beta
39+
/identityGovernance: v1.0-beta
40+
/identityGovernance/accessReviews: v1.0-beta
41+
/identityGovernance/accessReviews/definitions: v1.0-beta
42+
/identityGovernance/accessReviews/definitions/{accessReviewScheduleDefinition-id}: v1.0-beta
43+
/identityGovernance/accessReviews/definitions/{accessReviewScheduleDefinition-id}/instances: v1.0-beta
44+
/identityGovernance/accessReviews/definitions/{accessReviewScheduleDefinition-id}/instances/{accessReviewInstance-id}: v1.0-beta
45+
/identityGovernance/accessReviews/definitions/{accessReviewScheduleDefinition-id}/instances/{accessReviewInstance-id}/decisions: v1.0-beta
46+
? /identityGovernance/accessReviews/definitions/{accessReviewScheduleDefinition-id}/instances/{accessReviewInstance-id}/decisions/{accessReviewInstanceDecisionItem-id}
47+
: v1.0-beta
3948
? /identityGovernance/accessReviews/definitions/{accessReviewScheduleDefinition-id}/instances/{accessReviewInstance-id}/decisions/microsoft.graph.filterByCurrentUser(on={on})
4049
: v1.0-beta
50+
/identityGovernance/accessReviews/definitions/{accessReviewScheduleDefinition-id}/instances/{accessReviewInstance-id}/definition: v1.0-beta
51+
? /identityGovernance/accessReviews/definitions/{accessReviewScheduleDefinition-id}/instances/{accessReviewInstance-id}/definition/$ref
52+
: v1.0-beta
4153
? /identityGovernance/accessReviews/definitions/{accessReviewScheduleDefinition-id}/instances/{accessReviewInstance-id}/definition/microsoft.graph.stop
4254
: v1.0-beta
4355
? /identityGovernance/accessReviews/definitions/{accessReviewScheduleDefinition-id}/instances/{accessReviewInstance-id}/microsoft.graph.acceptRecommendations
@@ -56,7 +68,20 @@ profiles:
5668
: v1.0-beta
5769
/identityGovernance/accessReviews/definitions/{accessReviewScheduleDefinition-id}/microsoft.graph.stop: v1.0-beta
5870
/identityGovernance/accessReviews/definitions/microsoft.graph.filterByCurrentUser(on={on}): v1.0-beta
71+
/identityGovernance/accessReviews/historyDefinitions: v1.0-beta
72+
/identityGovernance/accessReviews/historyDefinitions/{accessReviewHistoryDefinition-id}: v1.0-beta
5973
/identityGovernance/accessReviews/historyDefinitions/{accessReviewHistoryDefinition-id}/microsoft.graph.generateDownloadUri: v1.0-beta
74+
/identityGovernance/accessReviews/policy: v1.0-beta
75+
/identityGovernance/appConsent: v1.0-beta
76+
/identityGovernance/appConsent/appConsentRequests: v1.0-beta
77+
/identityGovernance/appConsent/appConsentRequests/{appConsentRequest-id}: v1.0-beta
78+
/identityGovernance/appConsent/appConsentRequests/{appConsentRequest-id}/userConsentRequests: v1.0-beta
79+
/identityGovernance/appConsent/appConsentRequests/{appConsentRequest-id}/userConsentRequests/{userConsentRequest-id}: v1.0-beta
80+
/identityGovernance/appConsent/appConsentRequests/{appConsentRequest-id}/userConsentRequests/{userConsentRequest-id}/approval: v1.0-beta
81+
? /identityGovernance/appConsent/appConsentRequests/{appConsentRequest-id}/userConsentRequests/{userConsentRequest-id}/approval/steps
82+
: v1.0-beta
83+
? /identityGovernance/appConsent/appConsentRequests/{appConsentRequest-id}/userConsentRequests/{userConsentRequest-id}/approval/steps/{approvalStep-id}
84+
: v1.0-beta
6085
? /identityGovernance/appConsent/appConsentRequests/{appConsentRequest-id}/userConsentRequests/microsoft.graph.filterByCurrentUser(on={on})
6186
: v1.0-beta
6287
/identityGovernance/appConsent/appConsentRequests/microsoft.graph.filterByCurrentUser(on={on}): v1.0-beta
@@ -1495,6 +1520,11 @@ profiles:
14951520
? /identityGovernance/entitlementManagement/connectedOrganizations/{connectedOrganization-id}/internalSponsors/{directoryObject-id}
14961521
: v1.0-beta
14971522
/identityGovernance/entitlementManagement/settings: v1.0-beta
1523+
/identityGovernance/termsOfUse: v1.0-beta
1524+
/identityGovernance/termsOfUse/agreementAcceptances: v1.0-beta
1525+
/identityGovernance/termsOfUse/agreementAcceptances/{agreementAcceptance-id}: v1.0-beta
1526+
/identityGovernance/termsOfUse/agreements: v1.0-beta
1527+
/identityGovernance/termsOfUse/agreements/{agreement-id}: v1.0-beta
14981528
/privilegedAccess: v1.0-beta
14991529
/privilegedAccess/{privilegedAccess-id}: v1.0-beta
15001530
/privilegedAccess/{privilegedAccess-id}/resources: v1.0-beta

src/Identity.Governance/Identity.Governance/readme.md

Lines changed: 20 additions & 0 deletions
Original file line numberDiff line numberDiff line change
@@ -218,6 +218,26 @@ directive:
218218
verb: Remove
219219
subject: (.*)(EntitlementManagement)Setting$
220220
remove: true
221+
- where:
222+
verb: Get|Update
223+
subject: (.*)(IdentityGovernance)$
224+
remove: true
225+
- where:
226+
verb: Get|Remove|Update
227+
subject: (.*)(IdentityGovernance)AccessReview$
228+
remove: true
229+
- where:
230+
verb: New|Remove|Update|Get|Add|Invoke|Reset|Send|Set|Stop
231+
subject: (.*)(IdentityGovernance)(AccessReviewDefinition|AccessReviewHistoryDefinition|AccessReviewPolicy)(.*)$
232+
remove: true
233+
- where:
234+
verb: New|Remove|Update|Get
235+
subject: (.*)(IdentityGovernance)Term
236+
remove: true
237+
- where:
238+
verb: New|Remove|Update|Get|Invoke
239+
subject: (.*)(IdentityGovernance)AppConsent
240+
remove: true
221241
# Rename cmdlets with duplicates in their name.
222242
- where:
223243
subject: ^(BusinessFlowTemplate)(\1)+

0 commit comments

Comments
 (0)