Azure Sphere Publisher

Azure BuiltIn RBAC Role definition

NameAzure Sphere Publisher
DescriptionAllows user to read and download Azure Sphere resources and upload images.
CreatedOn2023-05-05 22:39:42 UTC
UpdatedOn2024-01-26 23:01:00 UTC
Date/Time (UTC ymd) (i) Change Change detail
2024-01-29 19:36:00 change: Actions Actions: 'add Microsoft.AzureSphere/catalogs/uploadImage/action'
2023-05-15 17:41:20 change: Actions Actions: 'remove Microsoft.AzureSphere/catalogs/products/deviceGroups/devices/generateCapabilityImage/action; add Microsoft.Insights/DiagnosticSettings/Read'
2023-05-08 17:44:42 add: Role 6d994134-994b-4a59-9974-f479f0b227fb
Permissions summary Effective control plane and data plane operations: 48 (unique operations)
•action: 9
•read: 38
•write: 1

Actions: 14
Resolved control plane operations from Actions: 48
Effective control plane operations: 48
•action: 9
•read: 38
•write: 1

NotActions: 0
Resolved control plane operations from NotActions: 0
Effective denied control plane operations: 15624

DataActions: 0
Resolved data plane operations: 0
Effective data plane operations: 0

NotDataActions: 0
Resolved data plane operations from NotDataActions: 0
Effective denied data plane operations: 3169
Operation Description
Microsoft.Authorization/*/readwildcarded / no description
Microsoft.AzureSphere/*/readwildcarded / no description
Microsoft.AzureSphere/catalogs/certificates/retrieveCertChain/actionRetrieves cert chain.
Microsoft.AzureSphere/catalogs/certificates/retrieveProofOfPossessionNonce/actionGets the proof of possession nonce.
Microsoft.AzureSphere/catalogs/countDevices/actionCounts devices in catalog.
Microsoft.AzureSphere/catalogs/images/writeCreate a Image
Microsoft.AzureSphere/catalogs/listDeviceGroups/actionList the device groups for the catalog.
Microsoft.AzureSphere/catalogs/listDeviceInsights/actionLists device insights for catalog.
Microsoft.AzureSphere/catalogs/listDevices/actionLists devices for catalog.
Microsoft.AzureSphere/catalogs/products/countDevices/actionCounts devices in product. '.default' and '.unassigned' are system defined values and cannot be used for product name.
Microsoft.AzureSphere/catalogs/products/deviceGroups/countDevices/actionCounts devices in device group. '.default' and '.unassigned' are system defined values and cannot be used for product or device group name.
Microsoft.AzureSphere/catalogs/uploadImage/actionCreates an image. Use this action when the image ID is unknown.
Microsoft.Insights/DiagnosticSettings/ReadRead a resource diagnostic setting
Microsoft.Resources/subscriptions/resourceGroups/readGets or lists resource groups.
NotActions n/a
DataActions n/a
NotDataActions n/a
