@@ -53,13 +53,13 @@ The following table shows the least privileged built-in Azure role as well as th
53
53
54
54
| Permission | Built-in role | RBAC actions for a custom role |
55
55
| ---| ---| ---|
56
- | SetBlobTier | [ Storage Blob Data Owner] ( ../../role-based-access-control/built-in-roles.md#storage-blob-data-owner ) | Microsoft.Storage/storageAccounts/blobServices/containers/blobs/write<br >|
57
- | SetBlobExpiry | [ Storage Blob Data Owner] ( ../../role-based-access-control/built-in-roles.md#storage-blob-data-owner ) | Microsoft.Storage/storageAccounts/blobServices/containers/blobs/write |
58
- | SetBlobTags | [ Storage Blob Data Owner] ( ../../role-based-access-control/built-in-roles.md#storage-blob-data-owner ) | Microsoft.Storage/storageAccounts/blobServices/containers/blobs/tags/write |
59
- | SetBlobImmutabilityPolicy | [ Storage Blob Data Owner] ( ../../role-based-access-control/built-in-roles.md#storage-blob-data-owner ) | Microsoft.Storage/storageAccounts/blobServices/containers/write<br >|
60
- | SetBlobLegalHold | [ Storage Blob Data Owner] ( ../../role-based-access-control/built-in-roles.md#storage-blob-data-owner ) | Microsoft.Storage/storageAccounts/blobServices/containers/write<br > |
61
- | DeleteBlob | [ Storage Blob Data Owner] ( ../../role-based-access-control/built-in-roles.md#storage-blob-data-owner ) | Microsoft.Storage/storageAccounts/blobServices/containers/blobs/delete |
62
- | UndeleteBlob | [ Storage Blob Data Owner] ( ../../role-based-access-control/built-in-roles.md#storage-blob-data-owner ) | Microsoft.Storage/storageAccounts/blobServices/containers/write<br >|
56
+ | SetBlobTier | [ Storage Blob Data Owner] ( ../../role-based-access-control/built-in-roles.md#storage-blob-data-owner ) |Microsoft.Storage/storageAccounts/blobServices/containers/blobs/read< br >Microsoft.Storage/storageAccounts/blobServices/containers/blobs/ write<br >Microsoft.Storage/storageAccounts/blobServices/containers/blobs/tags/read< br >Microsoft.Storage/storageAccounts/blobServices/containers/blobs/tags/write
57
+ | SetBlobExpiry | [ Storage Blob Data Owner] ( ../../role-based-access-control/built-in-roles.md#storage-blob-data-owner ) | Microsoft.Storage/storageAccounts/blobServices/containers/blobs/read< br >Microsoft.Storage/storageAccounts/blobServices/containers/blobs/write< br >Microsoft.Storage/storageAccounts/blobServices/containers/blobs/tags/read< br >Microsoft.Storage/storageAccounts/blobServices/containers/blobs/tags /write |
58
+ | SetBlobTags | [ Storage Blob Data Owner] ( ../../role-based-access-control/built-in-roles.md#storage-blob-data-owner ) | Microsoft.Storage/storageAccounts/blobServices/containers/blobs/read< br >Microsoft.Storage/storageAccounts/blobServices/containers/blobs/write< br >Microsoft.Storage/storageAccounts/blobServices/containers/blobs/tags/read< br > Microsoft.Storage/storageAccounts/blobServices/containers/blobs/tags/write |
59
+ | SetBlobImmutabilityPolicy | [ Storage Blob Data Owner] ( ../../role-based-access-control/built-in-roles.md#storage-blob-data-owner ) | Microsoft.Storage/storageAccounts/blobServices/containers/blobs/read< br >Microsoft.Storage/storageAccounts/blobServices/containers/blobs/ write<br >Microsoft.Storage/storageAccounts/blobServices/containers/blobs/tags/read< br >Microsoft.Storage/storageAccounts/blobServices/containers/blobs/tags/write< br >Microsoft.Storage/storageAccounts/blobServices/containers/write |
60
+ | SetBlobLegalHold | [ Storage Blob Data Owner] ( ../../role-based-access-control/built-in-roles.md#storage-blob-data-owner ) | Microsoft.Storage/storageAccounts/blobServices/containers/blobs/read< br >Microsoft.Storage/storageAccounts/blobServices/containers/blobs/ write<br >Microsoft.Storage/storageAccounts/blobServices/containers/blobs/tags/read< br >Microsoft.Storage/storageAccounts/blobServices/containers/blobs/tags/write< br >Microsoft.Storage/storageAccounts/blobServices/containers/write |
61
+ | DeleteBlob | [ Storage Blob Data Owner] ( ../../role-based-access-control/built-in-roles.md#storage-blob-data-owner ) | Microsoft.Storage/storageAccounts/blobServices/containers/blobs/read< br >Microsoft.Storage/storageAccounts/blobServices/containers/blobs/write< br >Microsoft.Storage/storageAccounts/blobServices/containers/blobs/tags/read< br >Microsoft.Storage/storageAccounts/blobServices/containers/blobs/tags/write< br > Microsoft.Storage/storageAccounts/blobServices/containers/blobs/delete |
62
+ | UndeleteBlob | [ Storage Blob Data Owner] ( ../../role-based-access-control/built-in-roles.md#storage-blob-data-owner ) | Microsoft.Storage/storageAccounts/blobServices/containers/blobs/read< br >Microsoft.Storage/storageAccounts/blobServices/containers/blobs/ write<br >Microsoft.Storage/storageAccounts/blobServices/containers/blobs/tags/read< br >Microsoft.Storage/storageAccounts/blobServices/containers/blobs/tags/write< br >Microsoft.Storage/storageAccounts/blobServices/containers/write |
63
63
64
64
## See also
65
65
0 commit comments