User Details Page
The Microsoft Entra ID User Details page provides information about the user including threats generated by the user, user activity, group membership, and role assignments for the user.
The top of the page displays a user profile card which may contain the following information about the user:
- Name
- UPN
- Manager
- Department
- ObjectID
- Object Type
- Tenant
- On-premises synced accounts (will appear if a synced account exists)
- Tags, with an option to add additional tags
The page has the following tabs:
-
Threats Tab
-
Activity Summary Tab
-
Group Membership Tab
-
Roles Tab
Threats Tab
The Threats tab for a user displays the threats for the user by timeframe.
A key for threat types is displayed below the chart.
Activity Summary Tab
The Activity Summary tab displays charts for a user's activity over different time periods.
The Activity Overview (Past 12 Months) shows a color-coded heat map of user activity. Other metrics include Average Activity by Day, and Events by Type.
The Activity by Host and Activity by Client tables are displayed below the charts.
Activity by Host Table
The Activity by Host table displays the user's activity by host.
The table has the following columns:
- Server – Server where the activity occurred
- First Access – First date and time that the server was accessed
- Last Access – Last date and time that the server was accessed
- Number of Events – Total number of activity events on the server
Use the Search icon to search for data contained in any column. Click the Export button to export the current rows displayed on the page into a CSV file.
Activity by Client Table
The Activity by Client table displays the user's activity by client.
The table has the following columns:
- Client – Client where the activity occurred
- First Access – First date and time that the client was accessed
- Last Access – Last date and time that the client was accessed
- Number of Events – Total number of activity events on the client
Use the Search icon to search for data contained in any column. Click the Export button to export the current rows displayed on the page into a CSV file.
Group Membership Tab
The Group Membership tab displays groups in which the user is a member.
The Group Membership tab displays the groups the user is a member of. It has the following sub-tabs:
- Direct Member Of – Lists groups the user is a direct member of
- Indirect Member Of – Lists groups the user is a member of via membership in a nested group
Each table has the following columns:
-
Name – The name of the group. Click the link to view group details. See the Group Details Page topic for additional information.
-
Group Type – The type of group within Microsoft Entra ID
-
Membership Type - How the group membership was assigned
-
Security Enabled - Shows whether or not the "Security Enabled" flag is enabled within Microsoft Entra ID, if enabled it means that this type of group is used to manage user and computer access to shared resources for a group of users.
-
Role Assignments Allowed - This flag shows whether or not a group can be assigned a role within Microsoft Entra ID
-
Tags - The tags associated with the group Image
Roles Tab
The role assignments tab displays a table that lists the roles that have been assigned to the Microsoft Entra ID user.
The Roles tab displays two tables:
-
Eligible Assignments – Lists the roles that the user is eligible for. An eligible assignment refers to a role assignment that a user or group can activate when needed but is not permanently active
-
Active Assignments – Lists roles that are currently active and usable to a user.
The eligible assignments table has the following columns:
- Role - Roles the user is eligible for
- Scope - Defines the boundary within which the assigned role permissions are valid
- Inherited from - How the eligible assignment was inherited
- Start Time - When the member is eligible for the role
- End Time - When the role eligibility expires
- Privileged - If the role is privileged or not. A privileged role in Microsoft Entra ID grants elevated permissions for high-level administrative tasks
The active assignments table has the following columns:
- Role - Roles that are currently active
- Scope - Defines the boundary within which the assigned role permissions are valid
- Inherited from - How the eligible assignment was inherited
- Assignment Type - How was the active role assignment assigned
- Start Time - When the member is eligible for the role
- End Time - When the role eligibility expires
- Privileged - If the role is privileged or not. A privileged role in Microsoft Entra ID grants elevated permissions for high-level administrative tasks