Administration of Microsoft CDM Folders V2 Connector
Before you use Microsoft CDM Folders V2 objects in tasks, an administrator must perform the following tasks:
• Create an ADLS Gen2 account and provide Contributor or Reader role to users.
- Using the contributor role, you can have full access to manage all resources in the storage account, but you cannot assign roles.
- Using the reader role, you can view all resources in the storage account, but you cannot make any changes.
To add or remove role assignments, you must have write and delete permissions, such as an Owner role.
•Create an Azure Active Directory application to authenticate users to access the ADLS Gen2 account. Provide Storage Blob Data Contributor or Storage Blob Data Reader role to the application.
- Using the Storage Blob Data Contributor role, you can read, write, and delete Azure Storage containers and blobs in the storage account.
- Using the Storage Blob Data Reader role, you can only read and list Azure Storage containers and blobs in the storage account.
To write to or delete Azure Storage containers and blobs, you must have the Contributor role either at the storage account level or the container level.
•Create a file system for ADLS Gen2.
• Create an Azure AD web application for service-to-service authentication with ADLS Gen2.
Note: Ensure that you have superuser privileges to access the folders or files created in the application using the connector.