last sync: 2024-Apr-24 17:47:22 UTC

Managed Identity Operator

Azure BuiltIn RBAC Role definition

NameManaged Identity Operator
DescriptionRead and Assign User Assigned Identity
CreatedOn2017-12-14 19:52:04 UTC
UpdatedOn2021-11-11 20:13:38 UTC
Permissions summary Effective control plane and data plane operations: 56 (unique operations)
•: 1
•Action: 10
•Delete: 2
•read: 40
•Write: 3

Actions: 7
Resolved control plane operations from Actions: 56
Effective control plane operations: 56
•: 1
•Action: 10
•Delete: 2
•read: 40
•Write: 3

NotActions: 0
Resolved control plane operations from NotActions: 0
Effective denied control plane operations: 15329

DataActions: 0
Resolved data plane operations: 0
Effective data plane operations: 0

NotDataActions: 0
Resolved data plane operations from NotDataActions: 0
Effective denied data plane operations: 3121
Operation Description
Microsoft.Authorization/*/readwildcarded / no description
Microsoft.Insights/alertRules/*wildcarded / no description
Microsoft.ManagedIdentity/userAssignedIdentities/*/assign/actionwildcarded / no description
Microsoft.ManagedIdentity/userAssignedIdentities/*/readwildcarded / no description
Microsoft.Resources/deployments/*wildcarded / no description
Microsoft.Resources/subscriptions/resourceGroups/readGets or lists resource groups.
Microsoft.Support/*wildcarded / no description
NotActions n/a
DataActions n/a
NotDataActions n/a
Used in
BuiltIn Policy
Policy DisplayName Policy Id Category State
[Preview]: Configure system-assigned managed identity to enable Azure Monitor assignments on VMs 17b3de92-f710-4cf4-aa55-0e7859f1ed7b Monitoring Preview
Configure App Service app slots to disable public network access c6c3e00e-d414-4ca4-914f-406699bb8eee App Service GA
Configure App Service apps to disable public network access 2374605e-3e0b-492b-9046-229af202562c App Service GA
Configure Function app slots to disable public network access 242222f3-4985-4e99-b5ef-086d6a6cb01c App Service GA
Configure Function apps to disable public network access cd794351-e536-40f4-9750-503a463d8cad App Service GA
Condition none