last sync: 2023-Nov-30 18:20:43 UTC

Azure RBAC Role definition

Storage Blob Data Contributor

NameStorage Blob Data Contributor
Microsoft Learn
DescriptionAllows for read, write and delete access to Azure Storage blob containers and data
CreatedOn2017-12-21 00:01:24 UTC
UpdatedOn2021-11-11 20:13:54 UTC
Date/Time (UTC ymd) (i) Change Change detail
2021-02-04 14:17:50 change: DataActions DataActions: 'add Microsoft.Storage/storageAccounts/blobServices/containers/blobs/add/action'
Permissions summary Effective control plane and data plane operations: 9 (unique operations)
•action: 3
•delete: 2
•read: 2
•write: 2

Actions: 4
Resolved control plane operations from Actions: 4
Effective control plane operations: 4
•action: 1
•delete: 1
•read: 1
•write: 1

NotActions: 0
Resolved control plane operations from NotActions: 0
Effective denied control plane operations: 14726

DataActions: 5
Resolved data plane operations: 5
Effective data plane operations: 5
•action: 2
•delete: 1
•read: 1
•write: 1

NotDataActions: 0
Resolved data plane operations from NotDataActions: 0
Effective denied data plane operations: 3078
Operation Description
Microsoft.Storage/storageAccounts/blobServices/containers/deleteReturns the result of deleting a container
Microsoft.Storage/storageAccounts/blobServices/containers/readReturns list of containers
Microsoft.Storage/storageAccounts/blobServices/containers/writeReturns the result of put blob container
Microsoft.Storage/storageAccounts/blobServices/generateUserDelegationKey/actionReturns a user delegation key for the blob service
NotActions n/a
Operation Description
Microsoft.Storage/storageAccounts/blobServices/containers/blobs/add/actionReturns the result of adding blob content
Microsoft.Storage/storageAccounts/blobServices/containers/blobs/deleteReturns the result of deleting a blob
Microsoft.Storage/storageAccounts/blobServices/containers/blobs/move/actionMoves the blob from one path to another
Microsoft.Storage/storageAccounts/blobServices/containers/blobs/readReturns a blob or a list of blobs
Microsoft.Storage/storageAccounts/blobServices/containers/blobs/writeReturns the result of writing a blob
NotDataActions n/a
Used in
BuiltIn Policy