microsoft / coe-starter-kit

Other
748 stars 221 forks source link

[CoE Starter Kit - QUESTION] COE Environment permissions strategy #6484

Closed nickmac88 closed 1 year ago

nickmac88 commented 1 year ago

Does this question already exist in our backlog?

What is your question?

Is there some published advice for setting up permissions on the COE environments? I would like to do the following.

  1. Restrict the ability to create apps/flows/bots in both my COE DEV and PROD environments.
  2. Give all users default access to the flows/apps and any required resources in the solutions.
  3. Restrict access to the environments via the Admins, Makers, and Users Groups. The only people who should have the ability to create in the environment are the Admins. Is there any easy way to share all apps in the solutions without having to share each one individually?

I understand that each company may have different strategies for the roles so there may not be a 1 size fits all approach to this... But any advice on this matter would be very helpful.

I am sorry if i have asked this question in the wrong place. Please feel free to point me in the right direction if i have done so.

What solution are you experiencing the issue with?

None

What solution version are you using?

Latest as of August 2023

What app or flow are you having the issue with?

No response

What method are you using to get inventory and telemetry?

Data Export

Jenefer-Monroe commented 1 year ago

Hello. The Security Roles we ship are only intended to give access to the data and apps needed for the Admin / Maker / User personas. They are not intended to give access to if you can / cannot create apps and things like that. There are built in SRs you would need to explore and use for that like Basic User

For more information please see Configure user security in an environment

Jenefer-Monroe commented 1 year ago

closing out as no further action for starter kit team