新环境默认添加了所有用户,不能删除用户?

New environment has all users added by default and cannot remove users?

我创建了一个新环境,我只希望一部分人能够创建应用程序和流程。不过好像每个人都是默认添加的,不能删除?

这是预期的功能。当您在环境中创建 Dataverse 数据库时,将添加所有许可用户。除非您为他们分配安全角色,否则用户无权访问数据库。

一旦将用户添加到Dataverse 数据库,该用户记录就无法删除。它们可以被停用,但不能被删除。

您可以通过在创建数据库时定义安全组来控制此行为。如果您定义了一个安全组,只有安全组的成员将作为用户添加到数据库中。

创建数据库时,您可以分配一个安全组:

来自https://docs.microsoft.com/en-us/power-platform/admin/control-user-access

  • When users are added to the security group, they are added to the Dataverse environment.
  • When users are removed from the group, they are disabled in the Dataverse environment.
  • When a security group is associated with an existing environment with users, all users in the environment that are not members of the group will be disabled.
  • If a Dataverse environment does not have an associated security group, all users with a Dataverse license (customer engagement apps (Dynamics 365 Sales, Dynamics 365 Customer Service, Dynamics 365 Field Service, Dynamics 365 Marketing, and Dynamics 365 Project Service Automation), Power Automate, Power Apps, etc.) or per app plan will be created as users and enabled in the environment.
  • If a security group is associated with an environment, only users with Dataverse licenses or per app plan that are members of the environment security group will be created as users in the Dataverse environment.
  • When you assign a security group to an environment, that environment will not show up in home.dynamics.com for users not in the group.
  • If you do not assign a security group to an environment, the environment will show up in home.dynamics.com even for those who have not been assigned a security role in that Dataverse environment.
  • If you do not specify a security group, all users who have a Dataverse license (customer engagement apps (such as Dynamics 365 Sales and Customer Service)) or per app plan will be added to the new environment.
  • New: Security groups cannot be assigned to default and developer environment types. If you've already assigned a security group to your default or developer environment, we recommend removing it since the default environment is intended to be shared with all users in the tenant and the developer environment is intended for use by only the owner of the environment.
  • Dataverse environments support associating the following group types: Security and Microsoft 365. Associating other group types is not supported.