@@ -12,7 +12,7 @@ ms.devlang:
12
12
ms.topic : reference
13
13
ms.tgt_pltfrm :
14
14
ms.workload : identity
15
- ms.date : 04/25 /2019
15
+ ms.date : 05/16 /2019
16
16
ms.author : rolyon
17
17
ms.reviewer : bagovind
18
18
@@ -52,12 +52,14 @@ The following table provides a brief description of each built-in role. Click th
52
52
| [ Avere Operator] ( #avere-operator ) | Used by the Avere vFXT cluster to manage the cluster |
53
53
| [ Azure Kubernetes Service Cluster Admin Role] ( #azure-kubernetes-service-cluster-admin-role ) | List cluster admin credential action. |
54
54
| [ Azure Kubernetes Service Cluster User Role] ( #azure-kubernetes-service-cluster-user-role ) | List cluster user credential action. |
55
+ | [ Azure Maps Data Reader (Preview)] ( #azure-maps-data-reader-preview ) | Grants access to read map related data from an Azure maps account. |
55
56
| [ Azure Stack Registration Owner] ( #azure-stack-registration-owner ) | Lets you manage Azure Stack registrations. |
56
57
| [ Backup Contributor] ( #backup-contributor ) | Lets you manage backup service,but can't create vaults and give access to others |
57
58
| [ Backup Operator] ( #backup-operator ) | Lets you manage backup services, except removal of backup, vault creation and giving access to others |
58
59
| [ Backup Reader] ( #backup-reader ) | Can view backup services, but can't make changes |
59
60
| [ Billing Reader] ( #billing-reader ) | Allows read access to billing data |
60
61
| [ BizTalk Contributor] ( #biztalk-contributor ) | Lets you manage BizTalk services, but not access to them. |
62
+ | [ Blockchain Member Node Access (Preview)] ( #blockchain-member-node-access-preview ) | Allows for access to Blockchain Member nodes |
61
63
| [ CDN Endpoint Contributor] ( #cdn-endpoint-contributor ) | Can manage CDN endpoints, but can’t grant access to other users. |
62
64
| [ CDN Endpoint Reader] ( #cdn-endpoint-reader ) | Can view CDN endpoints, but can’t make changes. |
63
65
| [ CDN Profile Contributor] ( #cdn-profile-contributor ) | Can manage CDN profiles and their endpoints, but can’t grant access to other users. |
@@ -571,6 +573,21 @@ The following table provides a brief description of each built-in role. Click th
571
573
> | ** NotDataActions** | |
572
574
> | * none* | |
573
575
576
+ ## Azure Maps Data Reader (Preview)
577
+ > [ !div class="mx-tableFixed"]
578
+ > | | |
579
+ > | --- | --- |
580
+ > | ** Description** | Grants access to read map related data from an Azure maps account. |
581
+ > | ** Id** | 423170ca-a8f6-4b0f-8487-9e4eb8f49bfa |
582
+ > | ** Actions** | |
583
+ > | * none* | |
584
+ > | ** NotActions** | |
585
+ > | * none* | |
586
+ > | ** DataActions** | |
587
+ > | Microsoft.Maps/accounts/data/read | Grants data read access to a maps account. |
588
+ > | ** NotDataActions** | |
589
+ > | * none* | |
590
+
574
591
## Azure Stack Registration Owner
575
592
> [ !div class="mx-tableFixed"]
576
593
> | | |
@@ -812,6 +829,21 @@ The following table provides a brief description of each built-in role. Click th
812
829
> | ** NotDataActions** | |
813
830
> | * none* | |
814
831
832
+ ## Blockchain Member Node Access (Preview)
833
+ > [ !div class="mx-tableFixed"]
834
+ > | | |
835
+ > | --- | --- |
836
+ > | ** Description** | Allows for access to Blockchain Member nodes |
837
+ > | ** Id** | 31a002a1-acaf-453e-8a5b-297c9ca1ea24 |
838
+ > | ** Actions** | |
839
+ > | Microsoft.Blockchain/blockchainMembers/transactionNodes/read | Gets or Lists existing Blockchain Member Transaction Node(s). |
840
+ > | ** NotActions** | |
841
+ > | * none* | |
842
+ > | ** DataActions** | |
843
+ > | Microsoft.Blockchain/blockchainMembers/transactionNodes/connect/action | Connects to a Blockchain Member Transaction Node. |
844
+ > | ** NotDataActions** | |
845
+ > | * none* | |
846
+
815
847
## CDN Endpoint Contributor
816
848
> [ !div class="mx-tableFixed"]
817
849
> | | |
@@ -1136,6 +1168,8 @@ The following table provides a brief description of each built-in role. Click th
1136
1168
> | Microsoft.Resources/subscriptions/read | Gets the list of subscriptions. |
1137
1169
> | Microsoft.Resources/subscriptions/resourceGroups/read | Gets or lists resource groups. |
1138
1170
> | Microsoft.Support/* | Create and manage support tickets |
1171
+ > | Microsoft.Advisor/configurations/read | Get configurations |
1172
+ > | Microsoft.Advisor/recommendations/read | Reads recommendations |
1139
1173
> | ** NotActions** | |
1140
1174
> | * none* | |
1141
1175
> | ** DataActions** | |
@@ -1156,6 +1190,8 @@ The following table provides a brief description of each built-in role. Click th
1156
1190
> | Microsoft.Resources/subscriptions/read | Gets the list of subscriptions. |
1157
1191
> | Microsoft.Resources/subscriptions/resourceGroups/read | Gets or lists resource groups. |
1158
1192
> | Microsoft.Support/* | Create and manage support tickets |
1193
+ > | Microsoft.Advisor/configurations/read | Get configurations |
1194
+ > | Microsoft.Advisor/recommendations/read | Reads recommendations |
1159
1195
> | ** NotActions** | |
1160
1196
> | * none* | |
1161
1197
> | ** DataActions** | |
@@ -1195,6 +1231,7 @@ The following table provides a brief description of each built-in role. Click th
1195
1231
> | Microsoft.Databox/jobs/listsecrets/action | |
1196
1232
> | Microsoft.Databox/jobs/listcredentials/action | Lists the unencrypted credentials related to the order. |
1197
1233
> | Microsoft.Databox/locations/availableSkus/action | This method returns the list of available skus. |
1234
+ > | Microsoft.Databox/locations/validateAddress/action | Validates the shipping address and provides alternate addresses if any. |
1198
1235
> | Microsoft.ResourceHealth/availabilityStatuses/read | Gets the availability statuses for all resources in the specified scope |
1199
1236
> | Microsoft.Support/* | Create and manage support tickets |
1200
1237
> | ** NotActions** | |
@@ -1296,6 +1333,7 @@ The following table provides a brief description of each built-in role. Click th
1296
1333
> | Microsoft.DevTestLab/* /read | Read the properties of a lab |
1297
1334
> | Microsoft.DevTestLab/labs/claimAnyVm/action | Claim a random claimable virtual machine in the lab. |
1298
1335
> | Microsoft.DevTestLab/labs/createEnvironment/action | Create virtual machines in a lab. |
1336
+ > | Microsoft.DevTestLab/labs/ensureCurrentUserProfile/action | Ensure the current user has a valid profile in the lab. |
1299
1337
> | Microsoft.DevTestLab/labs/formulas/delete | Delete formulas. |
1300
1338
> | Microsoft.DevTestLab/labs/formulas/read | Read formulas. |
1301
1339
> | Microsoft.DevTestLab/labs/formulas/write | Add or modify formulas. |
@@ -1423,6 +1461,7 @@ The following table provides a brief description of each built-in role. Click th
1423
1461
> | Microsoft.Resources/subscriptions/resourceGroups/read | Gets or lists resource groups. |
1424
1462
> | Microsoft.Resources/deployments/operations/read | Gets or lists deployment operations. |
1425
1463
> | Microsoft.Insights/alertRules/* | Create and manage Insights alert rules |
1464
+ > | Microsoft.Authorization/* /read | Read roles and role assignments |
1426
1465
> | Microsoft.Support/* | Create and manage support tickets |
1427
1466
> | ** NotActions** | |
1428
1467
> | * none* | |
@@ -2495,7 +2534,7 @@ The following table provides a brief description of each built-in role. Click th
2495
2534
> | ** Description** | Provides full access to Azure Storage blob containers and data, including assigning POSIX access control. To learn which actions are required for a given data operation, see [ Permissions for calling blob and queue data operations] ( https://docs.microsoft.com/rest/api/storageservices/authenticate-with-azure-active-directory#permissions-for-calling-rest-operations ) . |
2496
2535
> | ** Id** | b7e6dc6d-f1e8-4753-8033-0f276bb0955b |
2497
2536
> | ** Actions** | |
2498
- > | Microsoft.Storage/storageAccounts/blobServices/containers/* | Full permissions on containers. |
2537
+ > | Microsoft.Storage/storageAccounts/blobServices/containers/* | Full permissions on containers. |
2499
2538
> | ** NotActions** | |
2500
2539
> | * none* | |
2501
2540
> | ** DataActions** | |
0 commit comments