Versions Compared

Key

  • This line was added.
  • This line was removed.
  • Formatting was changed.

Staff who are eligible owners of PIM groups in their area can activate the owner role to and manage eligible assignments in that group. This guide details how the owner can to grant to new employees the ability to activate privileged roles , to perform administrative tasks in UConn’s Entra ID or Microsoft 365 environmentsor how to extend existing eligible assignments.

Tip

Navigate to or bookmark https://aad.portal.azure.com/#view/Microsoft_Azure_PIMCommon/CommonMenuBlade/~/aadgroup to quickly access & elevate to the owner role of a PIM group. Step by step instructions are below.

...

  1. To grant another user the ability to activate the admin roles associated with your PIM group, navigate to PIM Groups and click on the respective group

  2. Navigate to Assignments in the Manage section, click the Eligible assignments tab and click Add assignments

    1. The Manage section below make be greyed out and take several seconds to load

      image-20241216-173852.pngImage Modified
  3. Select Member as the role, choose the user(s) to grant this assignment and click next

    image-20241216-174134.png
  4. Ensure the assignment type is Eligible and specify a duration (max 1 year)

    image-20241216-174402.png
  5. The selected user(s) will now be eligible members and can activate their admin roles by following Activating "Just in Time" Microsoft Admin Roles via Privileged Identity Management (PIM)

    image-20241216-174633.png

...