You signed in with another tab or window. Reload to refresh your session.You signed out in another tab or window. Reload to refresh your session.You switched accounts on another tab or window. Reload to refresh your session.Dismiss alert
Copy file name to clipboardExpand all lines: articles/active-directory/roles/permissions-reference.md
+14Lines changed: 14 additions & 0 deletions
Display the source diff
Display the rich diff
Original file line number
Diff line number
Diff line change
@@ -86,6 +86,7 @@ This article lists the Azure AD built-in roles you can assign to allow managemen
86
86
> |[Partner Tier1 Support](#partner-tier1-support)| Do not use - not intended for general use. | 4ba39ca4-527c-499a-b93d-d9b492c50246 |
87
87
> |[Partner Tier2 Support](#partner-tier2-support)| Do not use - not intended for general use. | e00e864a-17c5-4a4b-9c06-f5b95a8d5bd8 |
88
88
> |[Password Administrator](#password-administrator)| Can reset passwords for non-administrators and Password Administrators. | 966707d0-3269-4727-9be2-8c3a10f19b9d |
89
+
> [Permissions Management Administrator](#permissions-management-administrator) | Can manage all aspects of Permissions Management. | af78dc32-cf4d-46f9-ba4e-4428526346b5 |
89
90
> |[Power BI Administrator](#power-bi-administrator)| Can manage all aspects of the Power BI product. | a9ea8996-122f-4c74-9520-8edcd192826c |
90
91
> |[Power Platform Administrator](#power-platform-administrator)| Can create and manage all aspects of Microsoft Dynamics 365, Power Apps and Power Automate. | 11648597-926c-4cf3-9c36-bcebb0ba8dcc |
91
92
> |[Printer Administrator](#printer-administrator)| Can manage all aspects of printers and printer connectors. | 644ef478-e28f-4e28-b9dc-3fdde9aa0b1f |
@@ -1693,6 +1694,19 @@ Users with this role can't change the credentials or reset MFA for members and o
1693
1694
> | microsoft.directory/users/password/update | Reset passwords for all users |
1694
1695
> | microsoft.office365.webPortal/allEntities/standard/read | Read basic properties on all resources in the Microsoft 365 admin center |
1695
1696
1697
+
## Permissions Management Administrator
1698
+
1699
+
Assign the Permissions Management Administrator role to users who need to do the following tasks:
1700
+
1701
+
- Manage all aspects of Entry Permissions Management, when the service is present
1702
+
1703
+
Learn more about Permissions Management roles and polices at [View information about roles/policies](../cloud-infrastructure-entitlement-management/how-to-view-role-policy.md).
1704
+
1705
+
> [!div class="mx-tableFixed"]
1706
+
> | Actions | Description |
1707
+
> | --- | --- |
1708
+
> | microsoft.permissionsManagement/allEntities/allProperties/allTasks | Manage all aspects of Entra Permissions Management |
1709
+
1696
1710
## Power BI Administrator
1697
1711
1698
1712
Users with this role have global permissions within Microsoft Power BI, when the service is present, as well as the ability to manage support tickets and monitor service health. More information at [Understanding the Power BI Administrator role](/power-bi/service-admin-role).
0 commit comments