Name | Azure Sphere Owner | ||||||||||||||||||||||||||||||||
Id | 5a382001-fe36-41ff-bba4-8bf06bd54da9 | ||||||||||||||||||||||||||||||||
Description | Allows user read and write access to Azure Sphere resources and RBAC configuration, includes an ABAC condition to constrain role assignments. | ||||||||||||||||||||||||||||||||
CreatedOn | 2024-02-01 23:40:30 UTC | ||||||||||||||||||||||||||||||||
UpdatedOn | 2024-03-12 15:09:00 UTC | ||||||||||||||||||||||||||||||||
History |
|
||||||||||||||||||||||||||||||||
Permissions summary | Effective control plane and data plane operations: 100 (unique operations) •: 1 •action: 25 •delete: 10 •read: 52 •write: 12 Actions: 15 Resolved control plane operations from Actions: 100 Effective control plane operations: 100 •: 1 •action: 25 •delete: 10 •read: 52 •write: 12 NotActions: 0 Resolved control plane operations from NotActions: 0 Effective denied control plane operations: 16072 DataActions: 0 Resolved data plane operations: 0 Effective data plane operations: 0 NotDataActions: 0 Resolved data plane operations from NotDataActions: 0 Effective denied data plane operations: 3303 |
||||||||||||||||||||||||||||||||
Actions |
|
||||||||||||||||||||||||||||||||
NotActions | n/a | ||||||||||||||||||||||||||||||||
DataActions | n/a | ||||||||||||||||||||||||||||||||
NotDataActions | n/a | ||||||||||||||||||||||||||||||||
Used in BuiltIn Policy |
none | ||||||||||||||||||||||||||||||||
JSON |
|
||||||||||||||||||||||||||||||||
Condition |
@Request[Microsoft.Authorization/roleAssignments:RoleDefinitionId] ForAnyOfAnyValues:GuidEquals {
8b9dfcab-4b77-4632-a6df-94bd07820648 (Azure Sphere Contributor), c8ae6279-5a0b-4cb2-b3f0-d4d62845742c (Azure Sphere Reader), 6d994134-994b-4a59-9974-f479f0b227fb (Azure Sphere Publisher), 5a382001-fe36-41ff-bba4-8bf06bd54da9 (Azure Sphere Owner), 749f88d5-cbae-40b8-bcfc-e573ddc772fa (Monitoring Contributor), 43d0d8ad-25c7-4714-9337-8ba259a9fe05 (Monitoring Reader) } @Resource[Microsoft.Authorization/roleAssignments:RoleDefinitionId] ForAnyOfAnyValues:GuidEquals { 8b9dfcab-4b77-4632-a6df-94bd07820648 (Azure Sphere Contributor), c8ae6279-5a0b-4cb2-b3f0-d4d62845742c (Azure Sphere Reader), 6d994134-994b-4a59-9974-f479f0b227fb (Azure Sphere Publisher), 5a382001-fe36-41ff-bba4-8bf06bd54da9 (Azure Sphere Owner), 749f88d5-cbae-40b8-bcfc-e573ddc772fa (Monitoring Contributor), 43d0d8ad-25c7-4714-9337-8ba259a9fe05 (Monitoring Reader) } |