You signed in with another tab or window. Reload to refresh your session.You signed out in another tab or window. Reload to refresh your session.You switched accounts on another tab or window. Reload to refresh your session.Dismiss alert
| Read attribute assignments for users and applications (service principals) |||:heavy_check_mark:||:heavy_check_mark:|
63
63
| Add or edit attribute sets ||:heavy_check_mark:||||
64
64
| Add, edit, or deactivate attribute definitions ||:heavy_check_mark:||||
@@ -101,8 +101,8 @@ Once you have a better understanding of how your attributes will be organized an
101
101
| <ul><li>Read attribute definitions in a scoped attribute set</li><li>Read attribute assignments that use attributes in a scoped attribute set for users</li><li>Read attribute assignments that use attributes in a scoped attribute set for applications (service principals)</li><li>[Assign attributes in a scoped attribute set to users](../enterprise-users/users-custom-security-attributes.md)</li><li>[Assign attributes in a scoped attribute set to applications (service principals)](../manage-apps/custom-security-attributes-apps.md)</li><li>[Author Azure role assignment conditions that use the Principal attribute for all attributes in a scoped attribute set](../../role-based-access-control/conditions-format.md#attributes)</li><li>**Cannot** read attributes in other attribute sets</li><li>**Cannot** read attribute assignments that use attributes in other attribute sets</li></ul> | [Attribute Assignment Administrator](../roles/permissions-reference.md#attribute-assignment-administrator) | <br/>Attribute set |
102
102
| <ul><li>Read all attribute sets in a tenant</li><li>Read all attribute definitions in a tenant</li></ul> |[Attribute Definition Reader](../roles/permissions-reference.md#attribute-definition-reader)|<br/>Tenant |
103
103
| <ul><li>Read attribute definitions in a scoped attribute set</li><li>**Cannot** read other attribute sets</li></ul> |[Attribute Definition Reader](../roles/permissions-reference.md#attribute-definition-reader)|<br/>Attribute set |
104
-
| <ul><li>Read all attribute sets in a tenant</li><li>Read all attribute assignments in a tenant for users</li><li>Read all attribute assignments in a tenant for applications (service principals)</li></ul> |[Attribute Assignment Reader](../roles/permissions-reference.md#attribute-assignment-reader)|<br/>Tenant |
105
-
| <ul><li>Read attribute assignments that use attributes in a scoped attribute set for users</li><li>Read attribute assignments that use attributes in a scoped attribute set for applications (service principals)</li><li>**Cannot** read attribute assignments that use attributes in other attribute sets</li></ul> |[Attribute Assignment Reader](../roles/permissions-reference.md#attribute-assignment-reader)|<br/>Attribute set |
104
+
| <ul><li>Read all attribute sets in a tenant</li><li>Read all attribute definitions in a tenant</li><li>Read all attribute assignments in a tenant for users</li><li>Read all attribute assignments in a tenant for applications (service principals)</li></ul> |[Attribute Assignment Reader](../roles/permissions-reference.md#attribute-assignment-reader)|<br/>Tenant |
105
+
| <ul><li>Read attribute definitions in a scoped attribute set</li><li>Read attribute assignments that use attributes in a scoped attribute set for users</li><li>Read attribute assignments that use attributes in a scoped attribute set for applications (service principals)</li><li>**Cannot** read attributes in other attribute sets</li><li>**Cannot** read attribute assignments that use attributes in other attribute sets</li></ul> |[Attribute Assignment Reader](../roles/permissions-reference.md#attribute-assignment-reader)|<br/>Attribute set |
0 commit comments