Applications Systems
Configure Azure Identity and Access permissions for cloud monitoring in the Orion Platform
Configure IAM permissions in the Azure Portal to integrate the AD app with the Orion Platform. Your account must have the User Access Administrator role to manage account permissions and perform actions against VMs, such as stopping polling.
First published date
Last published date
Overview
Configure IAM permissions in the Azure Portal to integrate the AD app with the Orion Platform. Your account must have the User Access Administrator role to manage account permissions and perform actions against VMs, such as stopping polling.
Role-based Access Control (RBAC) (© 2018 Microsoft, available at https://azure.microsoft.com/en-us/?v=18.40, obtained on October 16, 2018) may be customized for your organization and can affect how the Orion Platform works with Azure. Consult your subscription administrator and see Azure documentation (© 2018 Microsoft, available at https://azure.microsoft.com/en-us/?v=18.40, obtained on October 16, 2018) for details.
Product section
Resolution
- In the Azure Portal, click More Services > Subscriptions.
-
Click the Subscription related to the Azure account to display details about it.
Record the Subscription ID for later use in the Orion Web Console.
- In the Subscriptions pane, click Access Control (IAM).
-
Click Add in the Permissions pane.
Screenshots property of © 2017 Microsoft.
- In the Add permissions pane, follow these steps:
- Select Contributor or Reader in the Role field.
Note: If you select Reader, you cannot execute actions such as start, stop, or restart on the VM.
- Select Azure AD user, group, or application in the Assign access to field.
-
In the Selected members section of the pane, click the Azure AD app created for the Orion Platform to select it.
To search for an AD app, enter its name — or part of its name — in the field provided.
- Click Save.
- Select Contributor or Reader in the Role field.
Adding Access Control for an application
- Log in to https://portal.azure.com
- From the left panel select Subscriptions tab. If it is not visible, go to More services to find it.
- Click on the name of your subscription listed in a table.
- Click on the Access control (IAM) link.
- Start adding a new permission by clicking on the Add button at the top of the screen.
- Add role assignment and select Role as Owner and click Next.
- In the Select Members field type the name of an application for which you want to add permissions. When the application is found by the search engine, click on its name to add it to the Selected members list. NOTE: This is the application name that you created earlier. In the example it was SAM.
- Click on the Save button to finish the process.
See also Configure Microsoft Azure for cloud monitoring in the Orion Platform.