last sync: 2024-Sep-19 17:51:49 UTC

Enclave Owner Role

Azure BuiltIn RBAC Role definition

NameEnclave Owner Role
Id3d5f3eff-eb94-473d-91e3-7aac74d6c0bb
DescriptionEnclave Owner Role to access the resources of Microsoft.Mission stored with RPSAAS.
CreatedOn2023-12-06 16:25:52 UTC
UpdatedOn2024-09-17 15:06:28 UTC
History
Date/Time (UTC ymd) (i) Change Change detail
2024-09-17 17:51:02 change: Actions Actions: 'add Microsoft.Mission/approvals/read; add Microsoft.Mission/approvals/write; add Microsoft.Mission/approvals/delete'
2024-03-26 18:41:13 change: Actions Actions: 'add Microsoft.Authorization/*/read; add Microsoft.Insights/alertRules/read; add Microsoft.Resources/deployments/read; add Microsoft.Resources/deployments/write; add Microsoft.Resources/subscriptions/read; add Microsoft.Resources/subscriptions/resourceGroups/read; add Microsoft.Resources/subscriptions/resourcegroups/deployments/read; add Microsoft.Resources/subscriptions/operationresults/read; add Microsoft.ResourceHealth/availabilityStatuses/read; add Microsoft.Features/providers/features/read; add Microsoft.Features/features/read; add Microsoft.Mission/communities/communityEndpoints/read; add Microsoft.Mission/communities/transitHubs/read; add Microsoft.Mission/enclaveConnections/read; add Microsoft.Mission/enclaveConnections/write; add Microsoft.Mission/enclaveConnections/delete; add Microsoft.Mission/virtualEnclaves/enclaveEndpoints/read; add Microsoft.Mission/virtualEnclaves/enclaveEndpoints/write; add Microsoft.Mission/virtualEnclaves/enclaveEndpoints/delete'
2023-12-06 18:52:54 add: Role 3d5f3eff-eb94-473d-91e3-7aac74d6c0bb
Permissions summary Effective control plane and data plane operations: 64 (unique operations)
•delete: 7
•read: 48
•write: 9

Actions: 38
Resolved control plane operations from Actions: 64
Effective control plane operations: 64
•delete: 7
•read: 48
•write: 9

NotActions: 0
Resolved control plane operations from NotActions: 0
Effective denied control plane operations: 15731

DataActions: 0
Resolved data plane operations: 0
Effective data plane operations: 0

NotDataActions: 0
Resolved data plane operations from NotDataActions: 0
Effective denied data plane operations: 3259
Actions
Operation Description
Microsoft.Authorization/*/readwildcarded / no description
Microsoft.Features/features/readGets the features of a subscription.
Microsoft.Features/providers/features/readGets the feature of a subscription in a given resource provider.
Microsoft.Insights/alertRules/readRead a classic metric alert
Microsoft.Mission/approvals/deleteDelete a ApprovalResource
Microsoft.Mission/approvals/readGet a ApprovalResource
Microsoft.Mission/approvals/writeUpdate a ApprovalResource
Microsoft.Mission/catalogs/deleteno description given
Microsoft.Mission/catalogs/readno description given
Microsoft.Mission/catalogs/writeno description given
Microsoft.Mission/communities/communityEndpoints/readGet a CommunityEndpointResource
Microsoft.Mission/communities/readGet a CommunityResource
Microsoft.Mission/communities/transitHubs/readGet a TransitHubResource
Microsoft.Mission/enclaveConnections/deleteDelete a EnclaveConnectionResource
Microsoft.Mission/enclaveConnections/readGet a EnclaveConnectionResource
Microsoft.Mission/enclaveConnections/writeUpdate a EnclaveConnectionResource
Microsoft.Mission/internalConnections/deleteDelete a InternalConnection
Microsoft.Mission/internalConnections/readGet a InternalConnection
Microsoft.Mission/internalConnections/writeUpdate a InternalConnection
Microsoft.Mission/Locations/OperationStatuses/readread OperationStatuses
Microsoft.Mission/Locations/OperationStatuses/writewrite OperationStatuses
Microsoft.Mission/Operations/readread Operations
Microsoft.Mission/virtualEnclaves/deleteDelete a EnclaveResource
Microsoft.Mission/virtualEnclaves/enclaveEndpoints/deleteDelete a EnclaveEndpointResource
Microsoft.Mission/virtualEnclaves/enclaveEndpoints/readGet a EnclaveEndpointResource
Microsoft.Mission/virtualEnclaves/enclaveEndpoints/writeUpdate a EnclaveEndpointResource
Microsoft.Mission/virtualEnclaves/readGet a EnclaveResource
Microsoft.Mission/virtualEnclaves/workloads/deleteDelete a WorkloadResource
Microsoft.Mission/virtualEnclaves/workloads/readGet a WorkloadResource
Microsoft.Mission/virtualEnclaves/workloads/writeUpdate a WorkloadResource
Microsoft.Mission/virtualEnclaves/writeUpdate a EnclaveResource
Microsoft.ResourceHealth/availabilityStatuses/readGets the availability statuses for all resources in the specified scope
Microsoft.Resources/deployments/readGets or lists deployments.
Microsoft.Resources/deployments/writeCreates or updates an deployment.
Microsoft.Resources/subscriptions/operationresults/readGet the subscription operation results.
Microsoft.Resources/subscriptions/readGets the list of subscriptions.
Microsoft.Resources/subscriptions/resourcegroups/deployments/readGets or lists deployments.
Microsoft.Resources/subscriptions/resourceGroups/readGets or lists resource groups.
NotActions n/a
DataActions n/a
NotDataActions n/a
Used in
BuiltIn Policy
none
JSON
api-version=2023-07-01-preview
Condition none