last sync: 2022-May-24 16:30:28 UTC

Azure RBAC Role definition

Storage Account Backup Contributor

NameStorage Account Backup Contributor
Ide5e2a7ff-d759-4cd2-bb51-3152d37e2eb1
DescriptionLets you perform backup and restore operations using Azure Backup on the storage account.
CreatedOn2020-11-02 23:32:50 UTC
UpdatedOn2022-04-20 01:44:53 UTC
History
Date/Time (UTC ymd) (i) Change Change detail
2022-04-20 16:54:13 change: DisplayName, Description, Actions New DisplayName: 'Storage Account Backup Contributor'
Old DisplayName: 'Storage Account Backup Contributor Role',
New Description: 'Lets you perform backup and restore operations using Azure Backup on the storage account.'
Old Description: 'Storage Account Backup Contributors are allowed to perform backup and restore of Storage Account.',
Actions: 'add Microsoft.Storage/storageAccounts/objectReplicationPolicies/delete; add Microsoft.Storage/storageAccounts/objectReplicationPolicies/read; add Microsoft.Storage/storageAccounts/objectReplicationPolicies/write; add Microsoft.Storage/storageAccounts/objectReplicationPolicies/restorePointMarkers/write; add Microsoft.Storage/storageAccounts/blobServices/containers/write'
2020-11-19 14:28:56 change: Actions Actions: 'add Microsoft.Authorization/locks/write; add Microsoft.Authorization/locks/delete'
2020-11-16 13:39:23 change: Actions Actions: 'add Microsoft.Authorization/*/read; add Microsoft.Authorization/locks/read'
2020-11-13 14:22:44 add: Role e5e2a7ff-d759-4cd2-bb51-3152d37e2eb1
Actions
Operation Description Used in other Roles
Microsoft.Authorization/*/readno description given API Management Service Contributor, API Management Service Operator Role, API Management Service Reader Role , Application Group Contributor, Application Insights Component Contributor, Application Insights Snapshot Debugger, Automation Contributor, Automation Job Operator, Automation Operator, Automation Runbook Operator, Autonomous Development Platform Data Contributor (Preview), Autonomous Development Platform Data Owner (Preview), Autonomous Development Platform Data Reader (Preview), Avere Contributor, Azure Arc Enabled Kubernetes Cluster User Role, Azure Arc Kubernetes Admin, Azure Arc Kubernetes Cluster Admin, Azure Arc Kubernetes Viewer, Azure Arc Kubernetes Writer, Azure Arc ScVmm Administrator role, Azure Arc ScVmm Private Cloud User, Azure Arc ScVmm Private Clouds Onboarding, Azure Arc ScVmm VM Contributor, Azure Arc VMware Administrator role , Azure Arc VMware Private Cloud User, Azure Arc VMware Private Clouds Onboarding, Azure Arc VMware VM Contributor, Azure Kubernetes Service RBAC Admin, Azure Kubernetes Service RBAC Cluster Admin, Azure Kubernetes Service RBAC Reader, Azure Kubernetes Service RBAC Writer, Azure Maps Contributor, Azure VM Managed identities restore Contributor, Backup Contributor, Backup Operator, Backup Reader, Billing Reader, BizTalk Contributor, Blueprint Contributor, Blueprint Operator, CDN Endpoint Contributor, CDN Endpoint Reader, CDN Profile Contributor, CDN Profile Reader, Chamber Admin, Chamber User, Classic Network Contributor, Classic Storage Account Contributor, Classic Virtual Machine Contributor, ClearDB MySQL DB Contributor, CodeSigning Certificate Profile Signer, Cognitive Services Contributor, Collaborative Data Contributor, Collaborative Runtime Operator, Cosmos DB Account Reader Role, Cosmos DB Operator, Data Box Contributor, Data Box Reader, Data Factory Contributor, Data Lake Analytics Developer, Desktop Virtualization Application Group Contributor, Desktop Virtualization Application Group Reader, Desktop Virtualization Contributor, Desktop Virtualization Host Pool Contributor, Desktop Virtualization Host Pool Reader, Desktop Virtualization Reader, Desktop Virtualization Session Host Operator, Desktop Virtualization User Session Operator, Desktop Virtualization Workspace Contributor, Desktop Virtualization Workspace Reader, DevCenter Dev Box User, DevCenter Project Admin, Device Update Administrator, Device Update Content Administrator, Device Update Content Reader, Device Update Deployments Administrator, Device Update Deployments Reader, Device Update Reader, DevTest Labs User, Disk Backup Reader, Disk Pool Operator, Disk Restore Operator, Disk Snapshot Contributor, DNS Resolver Contributor, DNS Zone Contributor, DocumentDB Account Contributor, Domain Services Contributor, Domain Services Reader, EventGrid Contributor, EventGrid Data Sender, EventGrid EventSubscription Contributor, EventGrid EventSubscription Reader, HDInsight Cluster Operator, Integration Service Environment Contributor, Integration Service Environment Developer, Intelligent Systems Account Contributor, Key Vault Administrator, Key Vault Certificates Officer, Key Vault Contributor, Key Vault Crypto Officer, Key Vault Reader, Key Vault Secrets Officer, Kubernetes Cluster - Azure Arc Onboarding, Kubernetes Extension Contributor, Lab Assistant, Lab Contributor, Lab Creator, Lab Operator, Lab Services Contributor, Lab Services Reader, Load Test Contributor, Load Test Owner, Load Test Reader, Logic App Contributor, Logic App Operator, Managed Identity Contributor, Managed Identity Operator, Media Services Account Administrator, Media Services Live Events Administrator, Media Services Media Operator, Media Services Policy Administrator, Media Services Streaming Endpoints Administrator, Microsoft Sentinel Automation Contributor, Microsoft Sentinel Contributor, Microsoft Sentinel Reader, Microsoft Sentinel Responder, Network Contributor, New Relic APM Account Contributor, PlayFab Contributor, PlayFab Reader, Private DNS Zone Contributor, Quota Request Operator, Redis Cache Contributor, Scheduler Job Collections Contributor, Search Service Contributor, Security Admin, Security Manager (Legacy), Security Reader, Services Hub Operator, SignalR AccessKey Reader, SignalR/Web PubSub Contributor, Site Recovery Contributor, Site Recovery Operator, Site Recovery Reader, SQL DB Contributor, SQL Managed Instance Contributor, SQL Security Manager, SQL Server Contributor, Storage Account Contributor, Support Request Contributor, Tag Contributor, Traffic Manager Contributor, Virtual Machine Contributor, Web Plan Contributor, Website Contributor
Microsoft.Authorization/locks/deleteDelete locks at the specified scope. none
Microsoft.Authorization/locks/readGets locks at the specified scope. none
Microsoft.Authorization/locks/writeAdd locks at the specified scope. none
Microsoft.Features/features/readGets the features of a subscription. Cognitive Services Contributor
Microsoft.Features/providers/features/readGets the feature of a subscription in a given resource provider. Cognitive Services Contributor
Microsoft.Resources/subscriptions/resourceGroups/readGets or lists resource groups. API Management Service Contributor, API Management Service Operator Role, API Management Service Reader Role , Application Group Contributor, Application Insights Component Contributor, Application Insights Snapshot Debugger, Automation Contributor, Automation Job Operator, Automation Operator, Automation Runbook Operator, Autonomous Development Platform Data Contributor (Preview), Autonomous Development Platform Data Owner (Preview), Autonomous Development Platform Data Reader (Preview), Avere Contributor, Avere Operator, Azure Arc Enabled Kubernetes Cluster User Role, Azure Arc Kubernetes Admin, Azure Arc Kubernetes Cluster Admin, Azure Arc Kubernetes Viewer, Azure Arc Kubernetes Writer, Azure Arc ScVmm Administrator role, Azure Arc ScVmm Private Cloud User, Azure Arc ScVmm Private Clouds Onboarding, Azure Arc ScVmm VM Contributor, Azure Arc VMware Administrator role , Azure Arc VMware Private Cloud User, Azure Arc VMware Private Clouds Onboarding, Azure Arc VMware VM Contributor, Azure Kubernetes Service RBAC Admin, Azure Kubernetes Service RBAC Cluster Admin, Azure Kubernetes Service RBAC Reader, Azure Kubernetes Service RBAC Writer, Azure Maps Contributor, Backup Contributor, Backup Operator, BizTalk Contributor, Blueprint Contributor, Blueprint Operator, CDN Endpoint Contributor, CDN Endpoint Reader, CDN Profile Contributor, CDN Profile Reader, Chamber Admin, Chamber User, Classic Network Contributor, Classic Storage Account Contributor, Classic Virtual Machine Contributor, ClearDB MySQL DB Contributor, CodeSigning Certificate Profile Signer, Cognitive Services Contributor, Cognitive Services User, Collaborative Data Contributor, Collaborative Runtime Operator, Cosmos DB Account Reader Role, Cosmos DB Operator, Cost Management Contributor, Cost Management Reader, Data Box Contributor, Data Factory Contributor, Data Lake Analytics Developer, Desktop Virtualization Application Group Contributor, Desktop Virtualization Application Group Reader, Desktop Virtualization Contributor, Desktop Virtualization Host Pool Contributor, Desktop Virtualization Host Pool Reader, Desktop Virtualization Reader, Desktop Virtualization Session Host Operator, Desktop Virtualization User Session Operator, Desktop Virtualization Workspace Contributor, Desktop Virtualization Workspace Reader, DevCenter Dev Box User, DevCenter Project Admin, Device Update Administrator, Device Update Content Administrator, Device Update Content Reader, Device Update Deployments Administrator, Device Update Deployments Reader, Device Update Reader, DevTest Labs User, Disk Pool Operator, Disk Restore Operator, Disk Snapshot Contributor, DNS Resolver Contributor, DNS Zone Contributor, DocumentDB Account Contributor, Domain Services Contributor, Domain Services Reader, EventGrid Contributor, EventGrid Data Sender, EventGrid EventSubscription Contributor, EventGrid EventSubscription Reader, Experimentation Administrator, Experimentation Contributor, HDInsight Cluster Operator, Intelligent Systems Account Contributor, Key Vault Administrator, Key Vault Certificates Officer, Key Vault Contributor, Key Vault Crypto Officer, Key Vault Reader, Key Vault Secrets Officer, Kubernetes Cluster - Azure Arc Onboarding, Kubernetes Extension Contributor, Lab Assistant, Lab Contributor, Lab Creator, Lab Operator, Lab Services Contributor, Lab Services Reader, Load Test Contributor, Load Test Owner, Load Test Reader, Logic App Contributor, Logic App Operator, Managed Identity Contributor, Managed Identity Operator, Media Services Account Administrator, Media Services Live Events Administrator, Media Services Media Operator, Media Services Policy Administrator, Media Services Streaming Endpoints Administrator, Microsoft Sentinel Contributor, Microsoft Sentinel Reader, Microsoft Sentinel Responder, Monitoring Metrics Publisher, Network Contributor, New Relic APM Account Contributor, PlayFab Contributor, PlayFab Reader, Private DNS Zone Contributor, Quota Request Operator, Redis Cache Contributor, Reservation Purchaser, Scheduler Job Collections Contributor, Search Service Contributor, Security Admin, Security Manager (Legacy), Security Reader, Services Hub Operator, SignalR AccessKey Reader, SignalR/Web PubSub Contributor, Site Recovery Contributor, Site Recovery Operator, SQL DB Contributor, SQL Managed Instance Contributor, SQL Security Manager, SQL Server Contributor, Storage Account Contributor, Support Request Contributor, Tag Contributor, Traffic Manager Contributor, Virtual Machine Contributor, Web Plan Contributor, Website Contributor
Microsoft.Storage/operations/readPolls the status of an asynchronous operation. none
Microsoft.Storage/storageAccounts/blobServices/containers/readReturns list of containers Avere Operator, Storage Blob Data Contributor, Storage Blob Data Reader
Microsoft.Storage/storageAccounts/blobServices/containers/writeReturns the result of put blob container Avere Operator, Storage Blob Data Contributor
Microsoft.Storage/storageAccounts/blobServices/readReturns blob service properties or statistics none
Microsoft.Storage/storageAccounts/blobServices/writeReturns the result of put blob service properties none
Microsoft.Storage/storageAccounts/objectReplicationPolicies/deleteDelete object replication policy none
Microsoft.Storage/storageAccounts/objectReplicationPolicies/readList object replication policies none
Microsoft.Storage/storageAccounts/objectReplicationPolicies/restorePointMarkers/writeno description given none
Microsoft.Storage/storageAccounts/objectReplicationPolicies/writeCreate or update object replication policy none
Microsoft.Storage/storageAccounts/readReturns the list of storage accounts or gets the properties for the specified storage account. Backup Contributor, Backup Operator, Disk Snapshot Contributor , Logic App Contributor, Reader and Data Access, Site Recovery Contributor, Site Recovery Operator, Virtual Machine Contributor
Microsoft.Storage/storageAccounts/restoreBlobRanges/actionRestore blob ranges to the state of the specified time none
NotActions n/a
DataActions n/a
NotDataActions n/a
Used in Policy none
JSON