Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

Create revised list of highly privileged roles for Scuba Entra Id privileged access policies #1330

Open
4 tasks
tkol2022 opened this issue Sep 24, 2024 · 0 comments
Labels
enhancement This issue or pull request will add new or improve existing functionality

Comments

@tkol2022
Copy link
Collaborator

💡 Summary

Previous work on #540 and #1230 was conducted to analyze Scuba's existing list of privileged roles and consider expanding it since it was noted as being incomplete. Scuba also reviewed Microsoft's new role classification paradigm and met with them to discuss the topic. The scope of this issue is to finalize the list of highly privileged roles which will be referenced in the Entra Id baseline and ScubaGear.

Implementation notes

  • Examine Microsoft's new Entra Id role classification and incorporate the highly privileged roles into Scuba
  • Determine which additional roles will be considered highly privileged by Scuba and document them to create a final list
  • Create an issue to update the baseline document
  • Create an issue to update ScubaGear to update the DefaultPrivilegedRoles field in ScubaConfig.psm1 and test with the new roles to ensure that there aren't any unexpected impacts to the behavior of the tool
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
enhancement This issue or pull request will add new or improve existing functionality
Projects
None yet
Development

No branches or pull requests

1 participant