Az
Role
Advertizer
Show Menu
Hide Menu
Home
Policy
Changes
All
Policy rules
Initiative
Changes
All
Alias
Changes
All
Compliance
aggregated
byPolicy
RBAC Role
Changes
All
ResProvOps
Other
last sync: 2023-Mar-21 18:43:24 UTC
Azure RBAC Role definition
Azure Kubernetes Service RBAC Admin
All Azure RBAC Role definitions
Changes on Azure RBAC Role definitions
Name
Azure Kubernetes Service RBAC Admin
Microsoft docs
Id
3498e952-d568-435e-9b2c-8d77e338d7f7
Description
Lets you manage all resources under cluster/namespace, except update or delete resource quotas and namespaces.
CreatedOn
2020-07-02 17:50:30 UTC
UpdatedOn
2022-10-13 03:34:52 UTC
History
Date/Time (UTC ymd)
(i)
Change
Change detail
2022-10-13 16:34:55
change: Actions
Actions:
'remove Microsoft.Insights/alertRules/*; remove Microsoft.Resources/deployments/write; remove Microsoft.Support/*'
2020-07-03 14:58:03
add: Role
3498e952-d568-435e-9b2c-8d77e338d7f7
Actions
Operation
Description
Used in other Roles
Microsoft.Authorization/*/read
no description given
API Management Service Contributor
,
API Management Service Operator Role
,
API Management Service Reader Role
169
,
Application Group Contributor
,
Application Insights Component Contributor
,
Application Insights Snapshot Debugger
,
Automation Contributor
,
Automation Job Operator
,
Automation Operator
,
Automation Runbook Operator
,
Autonomous Development Platform Data Contributor (Preview)
,
Autonomous Development Platform Data Owner (Preview)
,
Autonomous Development Platform Data Reader (Preview)
,
Avere Contributor
,
Azure Arc Enabled Kubernetes Cluster User Role
,
Azure Arc Kubernetes Admin
,
Azure Arc Kubernetes Cluster Admin
,
Azure Arc Kubernetes Viewer
,
Azure Arc Kubernetes Writer
,
Azure Arc ScVmm Administrator role
,
Azure Arc ScVmm Private Cloud User
,
Azure Arc ScVmm Private Clouds Onboarding
,
Azure Arc ScVmm VM Contributor
,
Azure Arc VMware Administrator role
,
Azure Arc VMware Private Cloud User
,
Azure Arc VMware Private Clouds Onboarding
,
Azure Arc VMware VM Contributor
,
Azure Center for SAP solutions administrator
,
Azure Center for SAP solutions reader
,
Azure Kubernetes Fleet Manager RBAC Admin
,
Azure Kubernetes Fleet Manager RBAC Cluster Admin
,
Azure Kubernetes Fleet Manager RBAC Reader
,
Azure Kubernetes Fleet Manager RBAC Writer
,
Azure Kubernetes Service RBAC Cluster Admin
,
Azure Kubernetes Service RBAC Reader
,
Azure Kubernetes Service RBAC Writer
,
Azure Maps Contributor
,
Azure VM Managed identities restore Contributor
,
Backup Contributor
,
Backup Operator
,
Backup Reader
,
Billing Reader
,
BizTalk Contributor
,
Blueprint Contributor
,
Blueprint Operator
,
CDN Endpoint Contributor
,
CDN Endpoint Reader
,
CDN Profile Contributor
,
CDN Profile Reader
,
Chamber Admin
,
Chamber User
,
Classic Network Contributor
,
Classic Storage Account Contributor
,
Classic Virtual Machine Contributor
,
ClearDB MySQL DB Contributor
,
Code Signing Certificate Profile Signer
,
Cognitive Services Contributor
,
Collaborative Data Contributor
,
Collaborative Runtime Operator
,
ContainerApp Reader
,
Cosmos DB Account Reader Role
,
Cosmos DB Operator
,
Data Box Contributor
,
Data Box Reader
,
Data Factory Contributor
,
Data Lake Analytics Developer
,
Deployment Environments User
,
Desktop Virtualization Application Group Contributor
,
Desktop Virtualization Application Group Reader
,
Desktop Virtualization Contributor
,
Desktop Virtualization Host Pool Contributor
,
Desktop Virtualization Host Pool Reader
,
Desktop Virtualization Power On Contributor
,
Desktop Virtualization Power On Off Contributor
,
Desktop Virtualization Reader
,
Desktop Virtualization Session Host Operator
,
Desktop Virtualization User Session Operator
,
Desktop Virtualization Virtual Machine Contributor
,
Desktop Virtualization Workspace Contributor
,
Desktop Virtualization Workspace Reader
,
DevCenter Dev Box User
,
DevCenter Project Admin
,
Device Update Administrator
,
Device Update Content Administrator
,
Device Update Content Reader
,
Device Update Deployments Administrator
,
Device Update Deployments Reader
,
Device Update Reader
,
DevTest Labs User
,
Disk Backup Reader
,
Disk Pool Operator
,
Disk Restore Operator
,
Disk Snapshot Contributor
,
DNS Resolver Contributor
,
DNS Zone Contributor
,
DocumentDB Account Contributor
,
Domain Services Contributor
,
Domain Services Reader
,
Elastic SAN Owner
,
EventGrid Contributor
,
EventGrid Data Sender
,
EventGrid EventSubscription Contributor
,
EventGrid EventSubscription Reader
,
HDInsight Cluster Operator
,
Integration Service Environment Contributor
,
Integration Service Environment Developer
,
Intelligent Systems Account Contributor
,
Key Vault Administrator
,
Key Vault Certificates Officer
,
Key Vault Contributor
,
Key Vault Crypto Officer
,
Key Vault Reader
,
Key Vault Secrets Officer
,
Kubernetes Cluster - Azure Arc Onboarding
,
Kubernetes Extension Contributor
,
Lab Assistant
,
Lab Contributor
,
Lab Creator
,
Lab Operator
,
Lab Services Contributor
,
Lab Services Reader
,
Load Test Contributor
,
Load Test Owner
,
Load Test Reader
,
LocalNGFirewallAdministrator role
,
LocalRulestacksAdministrator role
,
Logic App Contributor
,
Logic App Operator
,
Managed Identity Contributor
,
Managed Identity Operator
,
Management Group Contributor
,
Management Group Reader
,
Media Services Account Administrator
,
Media Services Live Events Administrator
,
Media Services Media Operator
,
Media Services Policy Administrator
,
Media Services Streaming Endpoints Administrator
,
Microsoft Sentinel Automation Contributor
,
Microsoft Sentinel Contributor
,
Microsoft Sentinel Reader
,
Microsoft Sentinel Responder
,
Network Contributor
,
New Relic APM Account Contributor
,
PlayFab Contributor
,
PlayFab Reader
,
Private DNS Zone Contributor
,
Quota Request Operator
,
Redis Cache Contributor
,
Scheduler Job Collections Contributor
,
Search Service Contributor
,
Security Admin
,
Security Manager (Legacy)
,
Security Reader
,
Services Hub Operator
,
SignalR AccessKey Reader
,
SignalR/Web PubSub Contributor
,
Site Recovery Contributor
,
Site Recovery Operator
,
Site Recovery Reader
,
SQL DB Contributor
,
SQL Managed Instance Contributor
,
SQL Security Manager
,
SQL Server Contributor
,
Storage Account Backup Contributor
,
Storage Account Contributor
,
Support Request Contributor
,
Tag Contributor
,
Template Spec Contributor
,
Traffic Manager Contributor
,
Virtual Machine Contributor
,
Web Plan Contributor
,
Website Contributor
Microsoft.ContainerService/managedClusters/listClusterUserCredential/action
no description given
Azure Kubernetes Service Cluster User Role
,
Azure Kubernetes Service RBAC Cluster Admin
Microsoft.Resources/subscriptions/operationresults/read
no description given
Azure Arc Enabled Kubernetes Cluster User Role
,
Azure Arc Kubernetes Admin
,
Azure Arc Kubernetes Cluster Admin
22
,
Azure Arc Kubernetes Viewer
,
Azure Arc Kubernetes Writer
,
Azure Arc ScVmm Administrator role
,
Azure Arc ScVmm Private Cloud User
,
Azure Arc ScVmm Private Clouds Onboarding
,
Azure Arc ScVmm VM Contributor
,
Azure Arc VMware Administrator role
,
Azure Arc VMware Private Cloud User
,
Azure Arc VMware Private Clouds Onboarding
,
Azure Arc VMware VM Contributor
,
Azure Kubernetes Fleet Manager RBAC Admin
,
Azure Kubernetes Fleet Manager RBAC Cluster Admin
,
Azure Kubernetes Fleet Manager RBAC Reader
,
Azure Kubernetes Fleet Manager RBAC Writer
,
Azure Kubernetes Service RBAC Cluster Admin
,
Azure Kubernetes Service RBAC Reader
,
Azure Kubernetes Service RBAC Writer
,
Cognitive Services Contributor
,
Cognitive Services User
,
Kubernetes Cluster - Azure Arc Onboarding
,
Logic App Contributor
,
Logic App Operator
Microsoft.Resources/subscriptions/read
no description given
Azure Arc Enabled Kubernetes Cluster User Role
,
Azure Arc Kubernetes Admin
,
Azure Arc Kubernetes Cluster Admin
26
,
Azure Arc Kubernetes Viewer
,
Azure Arc Kubernetes Writer
,
Azure Arc ScVmm Administrator role
,
Azure Arc ScVmm Private Cloud User
,
Azure Arc ScVmm Private Clouds Onboarding
,
Azure Arc ScVmm VM Contributor
,
Azure Arc VMware Administrator role
,
Azure Arc VMware Private Cloud User
,
Azure Arc VMware Private Clouds Onboarding
,
Azure Arc VMware VM Contributor
,
Azure Center for SAP solutions administrator
,
Azure Center for SAP solutions reader
,
Azure Center for SAP solutions service role
,
Azure Kubernetes Fleet Manager RBAC Admin
,
Azure Kubernetes Fleet Manager RBAC Cluster Admin
,
Azure Kubernetes Fleet Manager RBAC Reader
,
Azure Kubernetes Fleet Manager RBAC Writer
,
Azure Kubernetes Service RBAC Cluster Admin
,
Azure Kubernetes Service RBAC Reader
,
Azure Kubernetes Service RBAC Writer
,
Cognitive Services Contributor
,
Cognitive Services User
,
Cost Management Contributor
,
Cost Management Reader
,
Kubernetes Cluster - Azure Arc Onboarding
,
Reservation Purchaser
Microsoft.Resources/subscriptions/resourceGroups/read
Gets or lists resource groups.
API Management Service Contributor
,
API Management Service Operator Role
,
API Management Service Reader Role
173
,
Application Group Contributor
,
Application Insights Component Contributor
,
Application Insights Snapshot Debugger
,
Automation Contributor
,
Automation Job Operator
,
Automation Operator
,
Automation Runbook Operator
,
Autonomous Development Platform Data Contributor (Preview)
,
Autonomous Development Platform Data Owner (Preview)
,
Autonomous Development Platform Data Reader (Preview)
,
Avere Contributor
,
Avere Operator
,
Azure Arc Enabled Kubernetes Cluster User Role
,
Azure Arc Kubernetes Admin
,
Azure Arc Kubernetes Cluster Admin
,
Azure Arc Kubernetes Viewer
,
Azure Arc Kubernetes Writer
,
Azure Arc ScVmm Administrator role
,
Azure Arc ScVmm Private Cloud User
,
Azure Arc ScVmm Private Clouds Onboarding
,
Azure Arc ScVmm VM Contributor
,
Azure Arc VMware Administrator role
,
Azure Arc VMware Private Cloud User
,
Azure Arc VMware Private Clouds Onboarding
,
Azure Arc VMware VM Contributor
,
Azure Center for SAP solutions administrator
,
Azure Center for SAP solutions reader
,
Azure Center for SAP solutions service role
,
Azure Front Door Domain Contributor
,
Azure Front Door Domain Reader
,
Azure Front Door Secret Contributor
,
Azure Front Door Secret Reader
,
Azure Kubernetes Fleet Manager RBAC Admin
,
Azure Kubernetes Fleet Manager RBAC Cluster Admin
,
Azure Kubernetes Fleet Manager RBAC Reader
,
Azure Kubernetes Fleet Manager RBAC Writer
,
Azure Kubernetes Service RBAC Cluster Admin
,
Azure Kubernetes Service RBAC Reader
,
Azure Kubernetes Service RBAC Writer
,
Azure Maps Contributor
,
Azure Stack HCI registration role
,
Backup Contributor
,
Backup Operator
,
BizTalk Contributor
,
Blueprint Contributor
,
Blueprint Operator
,
CDN Endpoint Contributor
,
CDN Endpoint Reader
,
CDN Profile Contributor
,
CDN Profile Reader
,
Chamber Admin
,
Chamber User
,
Classic Network Contributor
,
Classic Storage Account Contributor
,
Classic Virtual Machine Contributor
,
ClearDB MySQL DB Contributor
,
Code Signing Certificate Profile Signer
,
Cognitive Services Contributor
,
Cognitive Services User
,
Collaborative Data Contributor
,
Collaborative Runtime Operator
,
ContainerApp Reader
,
Cosmos DB Account Reader Role
,
Cosmos DB Operator
,
Cost Management Contributor
,
Cost Management Reader
,
Data Box Contributor
,
Data Factory Contributor
,
Data Lake Analytics Developer
,
Deployment Environments User
,
Desktop Virtualization Application Group Contributor
,
Desktop Virtualization Application Group Reader
,
Desktop Virtualization Contributor
,
Desktop Virtualization Host Pool Contributor
,
Desktop Virtualization Host Pool Reader
,
Desktop Virtualization Power On Contributor
,
Desktop Virtualization Power On Off Contributor
,
Desktop Virtualization Reader
,
Desktop Virtualization Session Host Operator
,
Desktop Virtualization User Session Operator
,
Desktop Virtualization Virtual Machine Contributor
,
Desktop Virtualization Workspace Contributor
,
Desktop Virtualization Workspace Reader
,
DevCenter Dev Box User
,
DevCenter Project Admin
,
Device Update Administrator
,
Device Update Content Administrator
,
Device Update Content Reader
,
Device Update Deployments Administrator
,
Device Update Deployments Reader
,
Device Update Reader
,
DevTest Labs User
,
Disk Pool Operator
,
Disk Restore Operator
,
Disk Snapshot Contributor
,
DNS Resolver Contributor
,
DNS Zone Contributor
,
DocumentDB Account Contributor
,
Domain Services Contributor
,
Domain Services Reader
,
Elastic SAN Owner
,
Elastic SAN Reader
,
EventGrid Contributor
,
EventGrid Data Sender
,
EventGrid EventSubscription Contributor
,
EventGrid EventSubscription Reader
,
Experimentation Administrator
,
Experimentation Contributor
,
HDInsight Cluster Operator
,
Intelligent Systems Account Contributor
,
Key Vault Administrator
,
Key Vault Certificates Officer
,
Key Vault Contributor
,
Key Vault Crypto Officer
,
Key Vault Reader
,
Key Vault Secrets Officer
,
Kubernetes Cluster - Azure Arc Onboarding
,
Kubernetes Extension Contributor
,
Lab Assistant
,
Lab Contributor
,
Lab Creator
,
Lab Operator
,
Lab Services Contributor
,
Lab Services Reader
,
Load Test Contributor
,
Load Test Owner
,
Load Test Reader
,
LocalNGFirewallAdministrator role
,
LocalRulestacksAdministrator role
,
Logic App Contributor
,
Logic App Operator
,
Managed Identity Contributor
,
Managed Identity Operator
,
Media Services Account Administrator
,
Media Services Live Events Administrator
,
Media Services Media Operator
,
Media Services Policy Administrator
,
Media Services Streaming Endpoints Administrator
,
Microsoft Sentinel Contributor
,
Microsoft Sentinel Reader
,
Microsoft Sentinel Responder
,
Monitoring Metrics Publisher
,
Network Contributor
,
New Relic APM Account Contributor
,
PlayFab Contributor
,
PlayFab Reader
,
Private DNS Zone Contributor
,
Quota Request Operator
,
Redis Cache Contributor
,
Reservation Purchaser
,
Scheduler Job Collections Contributor
,
Search Service Contributor
,
Security Admin
,
Security Manager (Legacy)
,
Security Reader
,
Services Hub Operator
,
SignalR AccessKey Reader
,
SignalR/Web PubSub Contributor
,
Site Recovery Contributor
,
Site Recovery Operator
,
SQL DB Contributor
,
SQL Managed Instance Contributor
,
SQL Security Manager
,
SQL Server Contributor
,
Storage Account Backup Contributor
,
Storage Account Contributor
,
Support Request Contributor
,
Tag Contributor
,
Template Spec Contributor
,
Traffic Manager Contributor
,
Virtual Machine Contributor
,
Web Plan Contributor
,
Website Contributor
NotActions
n/a
DataActions
Operation
Description
Used in other Roles
Microsoft.ContainerService/managedClusters/*
no description given
Azure Kubernetes Service RBAC Cluster Admin
NotDataActions
Operation
Description
Used in other Roles
Microsoft.ContainerService/managedClusters/namespaces/delete
Deletes namespaces
none
Microsoft.ContainerService/managedClusters/namespaces/write
Writes namespaces
none
Microsoft.ContainerService/managedClusters/resourcequotas/delete
Deletes resourcequotas
none
Microsoft.ContainerService/managedClusters/resourcequotas/write
Writes resourcequotas
none
Used in Policy
none
JSON
Copy definition