Tuesday, February 7, 2017

[Azure EMS] SuperUser feature - Azure Information Protection

SuperUser feature


Accourding to MS,
A super user always has full owner rights for all use licenses that was granted by the organization’s Azure Information Protection tenant. This ability is sometimes referred to as “reasoning over data” and is a crucial element in maintaining control of your organization’s data


PS C:\Windows\system32> Connect-AadrmService
A connection to the Microsoft Azure AD Rights Management (AADRM) service was opened.


PS C:\Windows\system32> Enable-AadrmSuperUserFeature
The super user feature is enabled for the Rights Management service.


PS C:\Windows\system32> Add-AadrmSuperUser -EmailAddress
Add-AadrmSuperUser : User ailed to be added as a super user for AADRM.
The correlation ID is . Please note and provide this value if asked by support for it.
위치 줄:1 문자:1
+ Add-AadrmSuperUser -EmailAddress
+ ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
    + CategoryInfo          : NotSpecified: (:) [Add-AadrmSuperUser], ApplicationFailedException
    + FullyQualifiedErrorId : NotSpecified,Microsoft.RightsManagementServices.Online.Admin.PowerShell.AddAadrmSuperUserCommand

Cause: I have already added this user to the super group.




PS C:\Windows\system32> Get-AadrmSuperUser
User listed here.


PS C:\Windows\system32>


Link

https://docs.microsoft.com/en-ca/information-protection/deploy-use/configure-super-users

No comments:

Post a Comment