microsoft / coe-starter-kit

Other
743 stars 219 forks source link

[CoE Starter Kit - Feature]: DLP Editor V2 to support policies with single environment scope #6356

Open annsarP opened 1 year ago

annsarP commented 1 year ago

Is your feature request related to a problem? Please describe.

Hi! While using DLP Editor V2 I found out that this app is not supporting DLP with single environment scope (policies created by environment admins). image

We can't create a copy (which of course make sense since tenant-level admins can create tenant-level dlp policies): image

or see which environment (1) is assigned to this policy: image

Describe the solution you'd like

Would it be possible to:

Describe alternatives you've considered

No response

Additional context?

No response

AB#929

Jenefer-Monroe commented 1 year ago

Can you please try in the DLP Impact Analysis [Preview] app? It is the replacement of the former.

annsarP commented 1 year ago

Hi! I tested DLP Impact Analysis [Preview] app, and I faced following issues:

I know the app is in the Preview stage but I thought it would be helpful to share this feedback. 😊

Jenefer-Monroe commented 1 year ago

Thank you for the update! Sending over to the area owner.

manuelap-msft commented 1 year ago

That's unfortunately a limitation of the Power Platform for Admin connector, it only works for tenant level policies not environment level policies.

PP Admins are also not able to create environment level policies in the Admin Center, that's an action only available to Environment Admins. The workaround is to create a tenant level policy that's only assigned to one environment.

Jenefer-Monroe commented 1 year ago

closing out as no further action for starter kit team

annsarP commented 1 year ago

That's unfortunately a limitation of the Power Platform for Admin connector, it only works for tenant level policies not environment level policies.

PP Admins are also not able to create environment level policies in the Admin Center, that's an action only available to Environment Admins. The workaround is to create a tenant level policy that's only assigned to one environment.

I see. So would there be possibility to add requested blockers or infos (errors) in app while trying to manage this kind of environments? I think currently it might be confusing for admins if they receive information that copy was created while it wasn't :/

manuelap-msft commented 1 year ago

Yes, we can look into adding an info banner / warning. Putting on our feature backlog.