History |
Date/Time (UTC ymd) (i) |
Change |
Change detail |
2023-05-26 17:43:10 |
change: Actions |
Actions: 'add Microsoft.Security/automations/read; add Microsoft.Security/automations/delete; add Microsoft.Security/automations/write; add Microsoft.Security/register/action; add Microsoft.Security/unregister/action' |
2023-05-17 17:42:19 |
change: Description, Actions |
New Description: 'Create, read, download, modify and delete reports objects and related other resource objects.' Old Description: 'App Compliance Automation Administrator Role', Actions: 'add */read' |
2023-05-09 17:44:18 |
change: Actions |
Actions: 'add Microsoft.PolicyInsights/policyStates/queryResults/action; add Microsoft.PolicyInsights/policyStates/triggerEvaluation/action; add Microsoft.Resources/resources/read; add Microsoft.Resources/subscriptions/read; add Microsoft.Resources/subscriptions/resourceGroups/read; add Microsoft.Resources/subscriptions/resourceGroups/resources/read; add Microsoft.Resources/subscriptions/resources/read; add Microsoft.Resources/subscriptions/resourceGroups/delete; add Microsoft.Resources/subscriptions/resourceGroups/write; add Microsoft.Resources/tags/read; add Microsoft.Resources/deployments/validate/action; add Microsoft.Resources/deployments/write' |
2023-04-24 17:40:59 |
change: Actions |
Actions: 'add Microsoft.Storage/storageAccounts/blobServices/write; add Microsoft.Storage/storageAccounts/fileservices/write; add Microsoft.Storage/storageAccounts/listKeys/action; add Microsoft.Storage/storageAccounts/write; add Microsoft.Storage/storageAccounts/blobServices/generateUserDelegationKey/action; add Microsoft.Storage/storageAccounts/read; add Microsoft.Storage/storageAccounts/blobServices/containers/read; add Microsoft.Storage/storageAccounts/blobServices/containers/write; add Microsoft.Storage/storageAccounts/blobServices/read' |
2023-04-14 17:43:17 |
add: Role |
0f37683f-2463-46b6-9ce7-9b788b988ba2 |
|
Actions |
Operation |
Description |
Used in other Roles |
*/read | no description given |
App Compliance Automation Reader, Log Analytics Contributor, Log Analytics Reader 9, Managed Application Contributor Role, Managed Application Operator Role, Managed Applications Reader, Monitoring Contributor, Monitoring Reader, Reader, Resource Policy Contributor, Role Based Access Control Administrator (Preview), User Access Administrator |
Microsoft.AppComplianceAutomation/* | no description given |
none |
Microsoft.PolicyInsights/policyStates/queryResults/action | Query information about policy states. |
none |
Microsoft.PolicyInsights/policyStates/triggerEvaluation/action | Triggers a new compliance evaluation for the selected scope. |
none |
Microsoft.Resources/deployments/validate/action | Validates an deployment. |
Azure Arc ScVmm Administrator role, Azure Arc ScVmm Private Cloud User, Azure Arc ScVmm Private Clouds Onboarding 8, Azure Arc ScVmm VM Contributor, Azure Arc VMware Administrator role , Azure Arc VMware Private Cloud User, Azure Arc VMware Private Clouds Onboarding, Azure Arc VMware VM Contributor, Domain Services Contributor, HDInsight on AKS Cluster Admin, HDInsight on AKS Cluster Pool Admin |
Microsoft.Resources/deployments/write | Creates or updates an deployment. |
Azure Arc Enabled Kubernetes Cluster User Role, Azure Arc Kubernetes Admin, Azure Arc Kubernetes Cluster Admin 16, Azure Arc Kubernetes Viewer, Azure Arc Kubernetes Writer, Azure Arc ScVmm Administrator role, Azure Arc ScVmm Private Cloud User, Azure Arc ScVmm Private Clouds Onboarding, Azure Arc ScVmm VM Contributor, Azure Arc VMware Administrator role , Azure Arc VMware Private Cloud User, Azure Arc VMware Private Clouds Onboarding, Azure Arc VMware VM Contributor, Azure Extension for SQL Server Deployment, Domain Services Contributor, HDInsight on AKS Cluster Admin, HDInsight on AKS Cluster Pool Admin, Kubernetes Cluster - Azure Arc Onboarding, Windows 365 Network Interface Contributor |
Microsoft.Resources/resources/read | Get the list of resources based upon filters. |
none |
Microsoft.Resources/subscriptions/read | Gets the list of subscriptions. |
Azure Arc Enabled Kubernetes Cluster User Role, Azure Arc Kubernetes Admin, Azure Arc Kubernetes Cluster Admin 31, Azure Arc Kubernetes Viewer, Azure Arc Kubernetes Writer, Azure Arc ScVmm Administrator role, Azure Arc ScVmm Private Cloud User, Azure Arc ScVmm Private Clouds Onboarding, Azure Arc ScVmm VM Contributor, Azure Arc VMware Administrator role , Azure Arc VMware Private Cloud User, Azure Arc VMware Private Clouds Onboarding, Azure Arc VMware VM Contributor, Azure Center for SAP solutions administrator, Azure Center for SAP solutions reader, Azure Center for SAP solutions service role, Azure Kubernetes Fleet Manager RBAC Admin, Azure Kubernetes Fleet Manager RBAC Cluster Admin, Azure Kubernetes Fleet Manager RBAC Reader, Azure Kubernetes Fleet Manager RBAC Writer, Azure Kubernetes Service RBAC Admin, Azure Kubernetes Service RBAC Cluster Admin, Azure Kubernetes Service RBAC Reader, Azure Kubernetes Service RBAC Writer, Cognitive Services Contributor, Cognitive Services User, Cost Management Contributor, Cost Management Reader, Key Vault Data Access Administrator (preview), Kubernetes Cluster - Azure Arc Onboarding, MySQL Backup And Export Operator, PostgreSQL Flexible Server Long Term Retention Backup Role, Reservation Purchaser, Windows365SubscriptionReader |
Microsoft.Resources/subscriptions/resourceGroups/delete | Deletes a resource group and all its resources. |
Azure Stack HCI registration role |
Microsoft.Resources/subscriptions/resourceGroups/read | Gets or lists resource groups. |
API Management Service Contributor, API Management Service Operator Role, API Management Service Reader Role 193, Application Group Contributor, Application Insights Component Contributor, Application Insights Snapshot Debugger, Automation Contributor, Automation Job Operator, Automation Operator, Automation Runbook Operator, Autonomous Development Platform Data Contributor (Preview), Autonomous Development Platform Data Owner (Preview), Autonomous Development Platform Data Reader (Preview), Avere Contributor, Avere Operator, Azure Arc Enabled Kubernetes Cluster User Role, Azure Arc Kubernetes Admin, Azure Arc Kubernetes Cluster Admin, Azure Arc Kubernetes Viewer, Azure Arc Kubernetes Writer, Azure Arc ScVmm Administrator role, Azure Arc ScVmm Private Cloud User, Azure Arc ScVmm Private Clouds Onboarding, Azure Arc ScVmm VM Contributor, Azure Arc VMware Administrator role , Azure Arc VMware Private Cloud User, Azure Arc VMware Private Clouds Onboarding, Azure Arc VMware VM Contributor, Azure Center for SAP solutions administrator, Azure Center for SAP solutions reader, Azure Center for SAP solutions service role, Azure Front Door Domain Contributor, Azure Front Door Domain Reader, Azure Front Door Secret Contributor, Azure Front Door Secret Reader, Azure Kubernetes Fleet Manager RBAC Admin, Azure Kubernetes Fleet Manager RBAC Cluster Admin, Azure Kubernetes Fleet Manager RBAC Reader, Azure Kubernetes Fleet Manager RBAC Writer, Azure Kubernetes Service RBAC Admin, Azure Kubernetes Service RBAC Cluster Admin, Azure Kubernetes Service RBAC Reader, Azure Kubernetes Service RBAC Writer, Azure Maps Contributor, Azure Sphere Contributor, Azure Sphere Publisher, Azure Sphere Reader, Azure Stack HCI registration role, Backup Contributor, Backup Operator, BizTalk Contributor, Blueprint Contributor, Blueprint Operator, CDN Endpoint Contributor, CDN Endpoint Reader, CDN Profile Contributor, CDN Profile Reader, Chamber Admin, Chamber User, Classic Network Contributor, Classic Storage Account Contributor, Classic Virtual Machine Contributor, ClearDB MySQL DB Contributor, Code Signing Certificate Profile Signer, Cognitive Services Contributor, Cognitive Services User, Collaborative Data Contributor, Collaborative Runtime Operator, ContainerApp Reader, Cosmos DB Account Reader Role, Cosmos DB Operator, Cost Management Contributor, Cost Management Reader, Data Boundary Tenant Administrator, Data Box Contributor, Data Factory Contributor, Data Lake Analytics Developer, Deployment Environments User, Desktop Virtualization Application Group Contributor, Desktop Virtualization Application Group Reader, Desktop Virtualization Contributor, Desktop Virtualization Host Pool Contributor, Desktop Virtualization Host Pool Reader, Desktop Virtualization Power On Contributor, Desktop Virtualization Power On Off Contributor, Desktop Virtualization Reader, Desktop Virtualization Session Host Operator, Desktop Virtualization User Session Operator, Desktop Virtualization Virtual Machine Contributor, Desktop Virtualization Workspace Contributor, Desktop Virtualization Workspace Reader, DevCenter Dev Box User, DevCenter Project Admin, Device Update Administrator, Device Update Content Administrator, Device Update Content Reader, Device Update Deployments Administrator, Device Update Deployments Reader, Device Update Reader, DevTest Labs User, Disk Pool Operator, Disk Restore Operator, Disk Snapshot Contributor, DNS Resolver Contributor, DNS Zone Contributor, DocumentDB Account Contributor, Domain Services Contributor, Domain Services Reader, Elastic SAN Owner, Elastic SAN Reader, Elastic SAN Snapshot Exporter, Elastic SAN Volume Importer, EventGrid Contributor, EventGrid Data Sender, EventGrid EventSubscription Contributor, EventGrid EventSubscription Reader, Experimentation Administrator, Experimentation Contributor, Firmware Analysis Admin, HDInsight Cluster Operator, HDInsight on AKS Cluster Admin, HDInsight on AKS Cluster Pool Admin, Intelligent Systems Account Contributor, Key Vault Administrator, Key Vault Certificates Officer, Key Vault Contributor, Key Vault Crypto Officer, Key Vault Data Access Administrator (preview), Key Vault Reader, Key Vault Secrets Officer, Kubernetes Cluster - Azure Arc Onboarding, Kubernetes Extension Contributor, Lab Assistant, Lab Contributor, Lab Creator, Lab Operator, Lab Services Contributor, Lab Services Reader, Load Test Contributor, Load Test Owner, Load Test Reader, LocalNGFirewallAdministrator role, LocalRulestacksAdministrator role, Logic App Contributor, Logic App Operator, Logic Apps Standard Contributor (Preview), Logic Apps Standard Developer (Preview), Logic Apps Standard Operator (Preview), Logic Apps Standard Reader (Preview), Managed Identity Contributor, Managed Identity Operator, Media Services Account Administrator, Media Services Live Events Administrator, Media Services Media Operator, Media Services Policy Administrator, Media Services Streaming Endpoints Administrator, Microsoft Sentinel Contributor, Microsoft Sentinel Reader, Microsoft Sentinel Responder, Monitoring Metrics Publisher, MySQL Backup And Export Operator, Network Contributor, New Relic APM Account Contributor, PlayFab Contributor, PlayFab Reader, PostgreSQL Flexible Server Long Term Retention Backup Role, Private DNS Zone Contributor, Procurement Contributor, Quota Request Operator, Redis Cache Contributor, Reservation Purchaser, SaaS Hub Contributor, Scheduler Job Collections Contributor, Search Service Contributor, Security Admin, Security Manager (Legacy), Security Reader, Services Hub Operator, SignalR AccessKey Reader, SignalR/Web PubSub Contributor, Site Recovery Contributor, Site Recovery Operator, SQL DB Contributor, SQL Managed Instance Contributor, SQL Security Manager, SQL Server Contributor, Storage Account Backup Contributor, Storage Account Contributor, Support Request Contributor, Tag Contributor, Template Spec Contributor, Traffic Manager Contributor, Virtual Machine Contributor, Web Plan Contributor, Website Contributor, Windows 365 Network Interface Contributor |
Microsoft.Resources/subscriptions/resourceGroups/resources/read | Gets the resources for the resource group. |
Avere Contributor, Tag Contributor |
Microsoft.Resources/subscriptions/resourceGroups/write | Creates or updates a resource group. |
Azure Center for SAP solutions administrator, Azure Center for SAP solutions service role, Azure Stack HCI registration role |
Microsoft.Resources/subscriptions/resources/read | Gets resources of a subscription. |
Tag Contributor |
Microsoft.Resources/tags/read | Gets all the tags on a resource. |
none |
Microsoft.Security/automations/delete | Deletes the automation for the scope |
none |
Microsoft.Security/automations/read | Gets the automations for the scope |
none |
Microsoft.Security/automations/write | Creates or updates the automation for the scope |
none |
Microsoft.Security/register/action | Registers the subscription for Azure Security Center |
none |
Microsoft.Security/unregister/action | Unregisters the subscription from Azure Security Center |
none |
Microsoft.Storage/storageAccounts/blobServices/containers/read | Returns list of containers |
Avere Operator, Azure Center for SAP solutions administrator, Azure Center for SAP solutions reader 7, Azure Center for SAP solutions service role, Defender for Storage Data Scanner, SqlMI Migration Role, SqlVM Migration Role, Storage Account Backup Contributor, Storage Blob Data Contributor, Storage Blob Data Reader |
Microsoft.Storage/storageAccounts/blobServices/containers/write | Returns the result of put blob container |
Avere Operator, Storage Account Backup Contributor, Storage Blob Data Contributor |
Microsoft.Storage/storageAccounts/blobServices/generateUserDelegationKey/action | Returns a user delegation key for the blob service |
Storage Blob Data Contributor, Storage Blob Data Owner, Storage Blob Data Reader 1, Storage Blob Delegator |
Microsoft.Storage/storageAccounts/blobServices/read | Returns blob service properties or statistics |
Azure Center for SAP solutions administrator, Azure Center for SAP solutions reader, Azure Center for SAP solutions service role 3, SqlMI Migration Role, SqlVM Migration Role, Storage Account Backup Contributor |
Microsoft.Storage/storageAccounts/blobServices/write | Returns the result of put blob service properties |
SqlMI Migration Role, SqlVM Migration Role, Storage Account Backup Contributor |
Microsoft.Storage/storageAccounts/fileservices/write | Put file service properties |
Azure Center for SAP solutions service role |
Microsoft.Storage/storageAccounts/listKeys/action | Returns the access keys for the specified storage account. |
DevTest Labs User, Disk Snapshot Contributor, Log Analytics Contributor 6, Logic App Contributor, Reader and Data Access, SqlMI Migration Role, SqlVM Migration Role, Storage Account Key Operator Service Role, Virtual Machine Contributor |
Microsoft.Storage/storageAccounts/read | Returns the list of storage accounts or gets the properties for the specified storage account. |
Azure Center for SAP solutions administrator, Azure Center for SAP solutions reader, Azure Center for SAP solutions service role 12, Backup Contributor, Backup Operator, Desktop Virtualization Virtual Machine Contributor, Disk Snapshot Contributor, Logic App Contributor, Reader and Data Access, Site Recovery Contributor, Site Recovery Operator, SqlMI Migration Role, SqlVM Migration Role, Storage Account Backup Contributor, Virtual Machine Contributor |
Microsoft.Storage/storageAccounts/write | Creates a storage account with the specified parameters or update the properties or tags or adds custom domain for the specified storage account. |
Azure Center for SAP solutions service role, Disk Snapshot Contributor |
|