Set up a connector to manage ChatGPT Enterprise AI interactions in Microsoft Purview
Artiklu
This article outlines how to register ChatGPT Enterprise workspaces as a data source in Microsoft Purview. This connector allows you to discover and govern interactions with ChatGPT Enterprise AI across your organization.
Supported capabilities
Choose to scan all user interactions from the current date or pick a specific start date from past when configuring your scan.
Metadata Extraction
Full Scan
Incremental Scan
Scoped Scan
Classification
Labeling
Access Policy
Lineage
Data Sharing
Live view
Yes
Yes
Yes
No
Yes
No
No
No
No
No
When scanning ChatGPT Enterprise sources, Microsoft Purview supports:
If you create a classic Microsoft Purview instance for the first time in your organization, the instance is automatically upgraded to the enterprise version of Microsoft Purview.
Data Source Administrator and Data Readerpermissions must be assigned to register a source and manage it in the Microsoft Purview governance portal.
A Microsoft 365 Copilot license (recommended)
A ChatGPT Enterprise plan
Required permissions for scan
Your organization must have permissions for the Purview API used by the third party connector. Complete the following steps to assign the Purview API permissions using Microsoft Graph PowerShell:
Get the object ID for your organization from the Azure portal, search for Microsoft Purview in the search bar, and select Microsoft Purview accounts from the search results.
Select your Purview account and copy the account/subscription name.
In the search bar, search for Enterprise and select Enterprise applications in the results.
Select All applications in the left navigation pane. Enter your account name/subscription name in the search field.
Select on the search result Overview to get the Object ID.
Assign Purview API roles to your managed identity application by connecting to MS Graph. In portal.azure.com, open PowerShell and run Connect-MgGraph and authenticate and sign-in to your account
Run the following cmdle to get the ServicePrincipal ID for your organization for the Purview API app.
Microsoft Purview uses the OAuth 2.0 protocol for accessing ChatGPT Enterprise workspaces. Set up the credential by following the instruction in the Scan section later in this article.
Register
This section describes how to register a ChatGPT Enterprise workspace in Microsoft Purview using the Microsoft Purview governance portal.
Complete the following steps to register:
Open the Azure portal and complete the following steps:
Search for Key Vault to create/manage the secret to use for this connector.
Create a Key Vault.
Grant role assignments to your Key Vault. Assign Key Vault administrators and Key Vault secret users for the required members. For other roles, check the Key Vault roles in the Required permissions section.
Create a secret for your Key Vault.
For your Key Vault, assign access policy.
Open the Microsoft Purview governance portal and complete the following steps:
Search for Microsoft Purview accounts, select the account you want to use and select Open Microsoft Purview governance portal.
Select Data map in left navigation and select the Data source.
Select Register data source.
On register sources, select ChatGPT Enterprise and select Continue.
Open the ChatGPT Enterprise register source and complete the following steps:
Enter a name for the data source within the catalog.
Enter the WorkspaceID for your Enterprise workspace.
Select a domain and collection.
Select Register.
Open the Microsoft Purview portal and complete the following steps:
Select Source management under Data map, and select Credentials.
Select New.
Create and manage credentials for scans in Microsoft Purview Data Map
Enter the name, description, and select the domain.
For authentication method, select API key.
For Key Vault connection, select the Azure key vault created for ChatGPT Enterprise.
Enter the secret name and secret version.
Scan
Complete the following steps to scan a ChatGPT Enterprise workspace to automatically identify messages. For more information about scanning in general, see our introduction to scans and ingestion.
Navigate to Sources.
Select the registered ChatGPT Enterprise workspace.
Select New scan and complete the following:
Name: The name of the scan.
Capture data since: Select if the scan should capture data from the current date of the new scan or choose a specific date from the past.
Credential: Select the credential mapping to the correct Key Vault for this connector.
Domain: Select a domain from the existing list or choose default domain.
Collection: Select a collection from your domain.
Select Test connection to ensure the connection is established successfully. Select Continue.
Review your scan and select Save and Run.
For future scans, we recommend running an incremental scan. Avoid creating a new scan to avoid duplicate ingestion of data.
View scans
To view existing scans, complete the following steps:
Open the Microsoft Purview portal and select Data map.
Select the data source. You can view a list of existing scans on that data source under Recent scans, or you can view all scans on the Scans tab.
Select the scan that has results you want to view. The pane shows you all the previous scans, along with the status and metrics for each scan.
Select the scan ID to check the scan details. During scanning, the organization is considered an asset, but isn't classified. The number of assets classified in the scan details are always one less than the number of assets ingested.
This module introduces Microsoft Purview, which is designed to meet the challenges of today’s decentralized, data-rich workplace by providing a comprehensive set of solutions that help organizations govern, protect, and manage their entire data estate. MS-102
Learn how to import and archive third-party data from social media platforms, instant messaging platforms, and document collaboration platforms to Microsoft 365 mailboxes.
Use Microsoft Purview to help you protect and manage data security and compliance protections for generative AI apps that include Microsoft 365 Copilot and Microsoft 365 Copilot Chat.
Learn about deployment details for Microsoft Purview Data Security Posture Management for AI and data security and compliance protections for Microsoft 365 Copilot and Microsoft 365 Copilot Chat.
Learn about how the two Microsoft Purview billing models complement each other and the pay-as-you-go billing model that's used to extend Microsoft Purview controls beyond Microsoft 365 based assets.