You signed in with another tab or window. Reload to refresh your session.You signed out in another tab or window. Reload to refresh your session.You switched accounts on another tab or window. Reload to refresh your session.Dismiss alert
> |`Microsoft.Storage/storageAccounts/blobServices/containers/blobs/runAsSuperUser/action`| Add if role definition includes this action, such as Storage Blob Data Owner. |
49
51
50
52

51
53
@@ -107,6 +109,7 @@ There are two actions that allow you to create new blobs, so you must target bot
> |`Microsoft.Storage/storageAccounts/blobServices/containers/blobs/runAsSuperUser/action`| Add if role definition includes this action, such as Storage Blob Data Owner. |
110
113
111
114

112
115
@@ -177,6 +180,7 @@ There are two actions that allow you to update tags on existing blobs, so you mu
> |`Microsoft.Storage/storageAccounts/blobServices/containers/blobs/runAsSuperUser/action`| Add if role definition includes this action, such as Storage Blob Data Owner. |
180
184
181
185

182
186
@@ -246,6 +250,7 @@ There are two actions that allow you to update tags on existing blobs, so you mu
> |`Microsoft.Storage/storageAccounts/blobServices/containers/blobs/runAsSuperUser/action`| Add if role definition includes this action, such as Storage Blob Data Owner. |
249
254
250
255

251
256
@@ -738,6 +743,7 @@ You must add this condition to any role assignments that include the following a
> |`Microsoft.Storage/storageAccounts/blobServices/containers/blobs/runAsSuperUser/action`| Add if role definition includes this action, such as Storage Blob Data Owner. |
741
747
742
748

743
749
@@ -1100,6 +1106,7 @@ You must add this condition to any role assignments that include the following a
> |`Microsoft.Storage/storageAccounts/blobServices/containers/blobs/runAsSuperUser/action`| Add if role definition includes this action, such as Storage Blob Data Owner. |
1103
1110
1104
1111

1105
1112
@@ -1140,6 +1147,7 @@ You must add this condition to any role assignments that include the following a
> |`Microsoft.Storage/storageAccounts/blobServices/containers/blobs/runAsSuperUser/action`| Add if role definition includes this action, such as Storage Blob Data Owner. |
1143
1151
1144
1152
> [!NOTE]
1145
1153
> Since encryption scopes for different storage accounts could be different, it's recommended to use the `storageAccounts:name` attribute with the `encryptionScopes:name` attribute to restrict the specific encryption scope to be allowed.
@@ -1199,6 +1207,7 @@ You must add this condition to any role assignments that include the following a
> |`Microsoft.Storage/storageAccounts/blobServices/containers/blobs/runAsSuperUser/action`| Add if role definition includes this action, such as Storage Blob Data Owner. |
1202
1211
1203
1212
For more information, see [Allow read access to blobs based on tags and custom security attributes](../../role-based-access-control/conditions-custom-security-attributes.md).
1204
1213
@@ -1268,6 +1277,7 @@ You must add this condition to any role assignments that include the following a
> |`Microsoft.Storage/storageAccounts/blobServices/containers/blobs/runAsSuperUser/action`| Add if role definition includes this action, such as Storage Blob Data Owner. |
1271
1281
1272
1282
For more information, see [Allow read access to blobs based on tags and custom security attributes](../../role-based-access-control/conditions-custom-security-attributes.md).
0 commit comments