697 questions with Azure Role-based access control tags

Sort by: Updated
0 answers

What pre-built role to read the Microsoft Defender for Endpoint and vulnerabilities

what pre-built role (in intune or Entra ID) can be assigned to read the Microsoft Defender for Endpoint and vulnerabilities, Global Reader and Security Reader can only Read Defender for Identity or Defender for cloud but for some reason can't access to…

Azure Role-based access control
Azure Role-based access control
An Azure service that provides fine-grained access management for Azure resources, enabling you to grant users only the rights they need to perform their jobs.
697 questions
Microsoft Defender for Endpoint Training
Microsoft Defender for Endpoint Training
Microsoft Defender for Endpoint: A Microsoft unified security platform for preventative protection, postbreach detection, and automated investigation and response. Previously known as Microsoft Defender Advanced Threat Protection.Training: Instruction to develop new skills.
20 questions
asked 2024-06-14T09:00:48.3333333+00:00
HazyBazy 0 Reputation points
1 answer

How would I create a role to be Synapse Admin but block particular pipeline and linked services

We a introducing a new source of data into Synapse which is highly sensitive. However currently my team have admin on Synapse and dedicated SQL pool. How can I allow them to keep some of the admin access but not allow them to see the pipelines and linked…

Azure Synapse Analytics
Azure Synapse Analytics
An Azure analytics service that brings together data integration, enterprise data warehousing, and big data analytics. Previously known as Azure SQL Data Warehouse.
4,553 questions
Azure Role-based access control
Azure Role-based access control
An Azure service that provides fine-grained access management for Azure resources, enabling you to grant users only the rights they need to perform their jobs.
697 questions
asked 2024-06-06T10:59:15.0466667+00:00
JayZee64 0 Reputation points
commented 2024-06-14T05:28:16.48+00:00
Smaran Thoomu 11,370 Reputation points Microsoft Vendor
1 answer

I have subscription , in the subscription there are so many users with contributor access , i want to give access to see the state file to only one spn user how can we do that?

i have azure subsciption , i have contributor role for multiple users in the subscription leval , i have one storage account , in the storage account one state file is there, it only visisble for one particular spn user other then all the contributor…

Azure Virtual Machines
Azure Virtual Machines
An Azure service that is used to provision Windows and Linux virtual machines.
7,373 questions
Azure VMware Solution
Azure VMware Solution
An Azure service that runs native VMware workloads on Azure.
329 questions
Azure Role-based access control
Azure Role-based access control
An Azure service that provides fine-grained access management for Azure resources, enabling you to grant users only the rights they need to perform their jobs.
697 questions
Azure App Service
Azure App Service
Azure App Service is a service used to create and deploy scalable, mission-critical web apps.
7,155 questions
Microsoft Entra ID
Microsoft Entra ID
A Microsoft Entra identity service that provides identity management and access control capabilities. Replaces Azure Active Directory.
20,094 questions
asked 2024-06-12T16:28:47.78+00:00
Tamil Selvan M 5 Reputation points
commented 2024-06-13T17:58:15.2133333+00:00
kobulloc-MSFT 25,146 Reputation points Microsoft Employee
1 answer

I want to limit acccess for some staff to our static IP addresses

We promote not taking work home. We have set up static IP addresses for some of out locations and we want to limit some of our staff to only be able to access MS applications from those locations. I do have a P2 license and I am a global admin.

Azure Role-based access control
Azure Role-based access control
An Azure service that provides fine-grained access management for Azure resources, enabling you to grant users only the rights they need to perform their jobs.
697 questions
asked 2024-06-12T15:32:13.1833333+00:00
Jack Loomis 0 Reputation points
commented 2024-06-12T15:56:23.71+00:00
Babafemi Bulugbe 2,680 Reputation points MVP
1 answer One of the answers was accepted by the question author.

Need Help with Multi-Tenant Azure Access Management

Hi, I'm seeking advice on managing Azure access across multiple external organizations. We manage Azure for Org A and create accounts for Orgs B and C but don't manage their Azure environments. Azure B2B isn’t an option for us. Challenges: Multiple…

Azure Role-based access control
Azure Role-based access control
An Azure service that provides fine-grained access management for Azure resources, enabling you to grant users only the rights they need to perform their jobs.
697 questions
Microsoft Entra ID
Microsoft Entra ID
A Microsoft Entra identity service that provides identity management and access control capabilities. Replaces Azure Active Directory.
20,094 questions
asked 2024-06-07T09:28:06.63+00:00
qublibjohnny 20 Reputation points
accepted 2024-06-12T15:08:15.1566667+00:00
qublibjohnny 20 Reputation points
0 answers

Deleting duplicate owner in role assignment leads to lost of Access to Azure Subscription

Hello, Not long ago, I tried assigning roles to my coworkers. When all thing's done, I saw that there are 4 duplicates of my account in the owner role, so i tried deleting 2 of those role. After that azure portal won't let me in with message saying I'm…

Azure Role-based access control
Azure Role-based access control
An Azure service that provides fine-grained access management for Azure resources, enabling you to grant users only the rights they need to perform their jobs.
697 questions
asked 2024-06-04T07:24:36.06+00:00
William 0 Reputation points
commented 2024-06-12T14:17:17.46+00:00
Navya 5,405 Reputation points Microsoft Vendor
1 answer

User with Website Contributor role is able to add tags

Hi all, I've noticed that the user with "Website Contributor" role is able to add tags to the app service, even if in the documentation this role is missing Microsoft.Resources/tags/write permissions. How this behaviour can be explained?

Azure Role-based access control
Azure Role-based access control
An Azure service that provides fine-grained access management for Azure resources, enabling you to grant users only the rights they need to perform their jobs.
697 questions
Azure App Service
Azure App Service
Azure App Service is a service used to create and deploy scalable, mission-critical web apps.
7,155 questions
asked 2024-06-07T15:13:29.2533333+00:00
Marek Pękala 0 Reputation points
commented 2024-06-11T18:22:20.1233333+00:00
ajkuma 23,641 Reputation points Microsoft Employee
2 answers One of the answers was accepted by the question author.

Account is requesting MFA without being active in the policy.

Good afternoon, There is a user in Azure who does not have an MFA policy, but even so, it asks at login to register a phone number and at login it asks for a second factor that if registered, the phone number would be SMS. Could you give me an idea of…

Microsoft Authenticator
Microsoft Authenticator
A Microsoft app for iOS and Android devices that enables authentication with two-factor verification, phone sign-in, and code generation.
5,826 questions
Azure Role-based access control
Azure Role-based access control
An Azure service that provides fine-grained access management for Azure resources, enabling you to grant users only the rights they need to perform their jobs.
697 questions
asked 2024-06-11T16:18:17.83+00:00
Rodolfo aguiar 20 Reputation points
accepted 2024-06-11T17:41:03.8+00:00
Rodolfo aguiar 20 Reputation points
3 answers One of the answers was accepted by the question author.

How to get assigned RBAC roles in a resource group which has only apps and managed identities as owners and administrators?

I want myself to have Managed Identity Contributor role in an azure resource, but I cant find the admin or owner. Only managed identities and apps are listed as owners and administrators. Whom to ask for role assignment?

Azure Role-based access control
Azure Role-based access control
An Azure service that provides fine-grained access management for Azure resources, enabling you to grant users only the rights they need to perform their jobs.
697 questions
asked 2024-06-04T09:13:11.47+00:00
Aniruddha Acharya Kadlabalkoti 20 Reputation points Microsoft Employee
accepted 2024-06-11T08:07:07.8266667+00:00
Aniruddha Acharya Kadlabalkoti 20 Reputation points Microsoft Employee
1 answer

You do not have access Your administrator has disabled the App registrations experience in the Azure portal. You can still register or manage applications using PowerShell or another client such as Visual Studio.

Azure Role-based access control
Azure Role-based access control
An Azure service that provides fine-grained access management for Azure resources, enabling you to grant users only the rights they need to perform their jobs.
697 questions
asked 2024-06-07T17:15:22.63+00:00
Sibbinath, Nikhil 0 Reputation points
commented 2024-06-11T07:34:22.52+00:00
Navya 5,405 Reputation points Microsoft Vendor
1 answer

Azure Policy Tag add tag if missing

I set a new policy for existing resources to add required tag if missing. scenario1: Resource1 have the following tags and value Tag name = Project Value = ProjSSO Tag name = Purpose Value = app login however if the the policy trigger I received an…

Azure Storage Accounts
Azure Storage Accounts
Globally unique resources that provide access to data management services and serve as the parent namespace for the services.
2,820 questions
Azure Role-based access control
Azure Role-based access control
An Azure service that provides fine-grained access management for Azure resources, enabling you to grant users only the rights they need to perform their jobs.
697 questions
Azure Policy
Azure Policy
An Azure service that is used to implement corporate governance and standards at scale for Azure resources.
816 questions
asked 2024-02-07T01:45:43.2433333+00:00
Reygie Prieto 0 Reputation points
commented 2024-06-07T10:35:37.87+00:00
Joel Kruse 0 Reputation points
1 answer

Microsoft.Authorization/roleAssignments DevOps CI / ARM Template Issue

Hi, I've been using DevOps and ARM templates for a long time. Until now, I have not had to use the Microsoft.Authorization/roleAssignments resource provider under a storageAccount/tableService/tables scope before. I have managed to add some Storage Table…

Azure Role-based access control
Azure Role-based access control
An Azure service that provides fine-grained access management for Azure resources, enabling you to grant users only the rights they need to perform their jobs.
697 questions
asked 2022-09-14T14:45:32.497+00:00
Jamie Evans 21 Reputation points
commented 2024-06-06T22:00:58.6233333+00:00
WhanganuiComputer 1 Reputation point
7 answers

"Insufficient privileges to complete the operation" while using Graph API

The access token I get from the following curl request curl "$IDENTITY_ENDPOINT?resource=https://graph.microsoft.com&api-version=2017-09-01" -H secret:$IDENTITY_HEADER does not have the permission to list or create user. Request: GET…

Azure Role-based access control
Azure Role-based access control
An Azure service that provides fine-grained access management for Azure resources, enabling you to grant users only the rights they need to perform their jobs.
697 questions
Microsoft Entra ID
Microsoft Entra ID
A Microsoft Entra identity service that provides identity management and access control capabilities. Replaces Azure Active Directory.
20,094 questions
asked 2020-12-14T17:46:54.273+00:00
Anonymous
commented 2024-06-06T15:54:59.83+00:00
Moitra, Suprateem 0 Reputation points
1 answer

How would I go about setting up CA for our environment, so that MFA isn't required?

So I have been made aware that MS is forcing MFA on their tenants. Now I am still inexperienced when it comes to MS Cloud, Azure and Entra. Now we have a few different tenants and an on-prem environment. Now while we are getting our users on it we will…

Azure Role-based access control
Azure Role-based access control
An Azure service that provides fine-grained access management for Azure resources, enabling you to grant users only the rights they need to perform their jobs.
697 questions
Microsoft Intune Security
Microsoft Intune Security
Microsoft Intune: A Microsoft cloud-based management solution that offers mobile device management, mobile application management, and PC management capabilities.Security: The precautions taken to guard against crime, attack, sabotage, espionage, or another threat.
365 questions
asked 2024-05-30T11:14:51.21+00:00
Lee van Rooyen (Platinum Life) 0 Reputation points
commented 2024-06-04T01:54:44.6666667+00:00
Crystal-MSFT 44,931 Reputation points Microsoft Vendor
2 answers

How to delegate permissions to Service desk team for managing MFA in Azure Active Directory

How to delegate permissions to Service desk team for managing MFA in Azure Active Directory. just MFA reset (revoke and re-register) rights. please suggest

Azure Role-based access control
Azure Role-based access control
An Azure service that provides fine-grained access management for Azure resources, enabling you to grant users only the rights they need to perform their jobs.
697 questions
Microsoft Entra ID
Microsoft Entra ID
A Microsoft Entra identity service that provides identity management and access control capabilities. Replaces Azure Active Directory.
20,094 questions
asked 2024-05-14T12:04:58.9133333+00:00
zohaib yousuf 1 Reputation point
commented 2024-06-03T10:12:40.4033333+00:00
zohaib yousuf 1 Reputation point
1 answer

Adding a group of users to a group with AKS permissions ate resource group level fails to provide necessary permissions

If I correctly understand Azure then there are 3 scopes at which resource permissions can be applied: Subscription Resource Group Resource I have an AKS cluster, a group "AKS-Admins" (with all roles required to access the cluster applied…

Azure Role-based access control
Azure Role-based access control
An Azure service that provides fine-grained access management for Azure resources, enabling you to grant users only the rights they need to perform their jobs.
697 questions
Azure Kubernetes Service (AKS)
Azure Kubernetes Service (AKS)
An Azure service that provides serverless Kubernetes, an integrated continuous integration and continuous delivery experience, and enterprise-grade security and governance.
1,931 questions
asked 2024-05-27T17:51:56.1966667+00:00
Benjamin Mask 0 Reputation points
commented 2024-06-03T06:48:08.34+00:00
vipullag-MSFT 25,441 Reputation points
1 answer One of the answers was accepted by the question author.

Azure permissions for MS Authenticator registration campaign

I am trying to access the registration campaign under Security > Authentication Methods in Azure, but I keep getting a 403 error saying I do not have permission. My manager gave me article1 and article2 to figure out which "blade" I need…

Azure Role-based access control
Azure Role-based access control
An Azure service that provides fine-grained access management for Azure resources, enabling you to grant users only the rights they need to perform their jobs.
697 questions
asked 2024-05-29T21:27:07.6166667+00:00
Jeffrey West 20 Reputation points
commented 2024-05-31T16:39:44.5433333+00:00
Jeffrey West 20 Reputation points
1 answer

same domain access

how do I provide access to multiple users with same domain

Azure Role-based access control
Azure Role-based access control
An Azure service that provides fine-grained access management for Azure resources, enabling you to grant users only the rights they need to perform their jobs.
697 questions
asked 2024-05-30T08:03:03.57+00:00
Jane Pack 0 Reputation points
commented 2024-05-31T07:50:33.2333333+00:00
Jane Pack 0 Reputation points
1 answer

File level authentication with MSAL via web browser

Legacy app currently using secure Basic Authentication to establish file level access permission. How is file level access permission established using MSAL?

Azure Role-based access control
Azure Role-based access control
An Azure service that provides fine-grained access management for Azure resources, enabling you to grant users only the rights they need to perform their jobs.
697 questions
Active Directory
Active Directory
A set of directory-based technologies included in Windows Server.
6,060 questions
asked 2024-05-20T13:00:19.2633333+00:00
BennyStils 0 Reputation points
commented 2024-05-30T06:26:58.09+00:00
Shweta Mathur 28,771 Reputation points Microsoft Employee
1 answer

Can you please provide a list of users or groups who currently have the Owner role or a higher-level administrative role (such as Global Administrator) for the Azure subscription?

In the process of enabling PIM, added a group for the owner role in the subscription and removed all individual direct users. But that role was mistakenly added with a condition excluding the access to add new owner role assignments. Now, we are unable…

Azure Role-based access control
Azure Role-based access control
An Azure service that provides fine-grained access management for Azure resources, enabling you to grant users only the rights they need to perform their jobs.
697 questions
asked 2024-05-24T10:16:10.6133333+00:00
MUPPAVARAPU, SRAVANI 0 Reputation points
commented 2024-05-30T05:50:32.32+00:00
Shweta Mathur 28,771 Reputation points Microsoft Employee