715 questions with Azure Role-based access control tags

Sort by: Updated
2 answers One of the answers was accepted by the question author.

What is the cause of the following error - "getting assigned identities for pod <namespace>/<pod_name> in CREATED state failed after 20 attempts, retry duration [5]s" , while connecting to IMDS endpoint from a pod in AKS.

I am trying to connect to Azure Key vault via user assigned managed identity from a pod of AKS. I have provided the necessary RBAC role to the identity. I have created Azure Identity and Azure Identity Binding. I have updated my deployment with…

Azure Key Vault
Azure Key Vault
An Azure service that is used to manage and protect cryptographic keys and other secrets used by cloud apps and services.
1,184 questions
Azure Role-based access control
Azure Role-based access control
An Azure service that provides fine-grained access management for Azure resources, enabling you to grant users only the rights they need to perform their jobs.
715 questions
Azure Kubernetes Service (AKS)
Azure Kubernetes Service (AKS)
An Azure service that provides serverless Kubernetes, an integrated continuous integration and continuous delivery experience, and enterprise-grade security and governance.
1,985 questions
Microsoft Entra ID
Microsoft Entra ID
A Microsoft Entra identity service that provides identity management and access control capabilities. Replaces Azure Active Directory.
20,556 questions
asked 2024-07-08T17:50:19.59+00:00
Mahalingam Vignesh 20 Reputation points
accepted 2024-07-19T09:14:53.7433333+00:00
Mahalingam Vignesh 20 Reputation points
1 answer

How to Create a Incident managment and change management in Azure devops

Hi Team, I am looking to create an incident management and Change control process, can you please share some input. Regards, Krishna. This question is related to the following Learning Module

Azure Role-based access control
Azure Role-based access control
An Azure service that provides fine-grained access management for Azure resources, enabling you to grant users only the rights they need to perform their jobs.
715 questions
Outlook Management
Outlook Management
Outlook: A family of Microsoft email and calendar products.Management: The act or process of organizing, handling, directing or controlling something.
5,063 questions
asked 2024-07-17T16:33:46.7766667+00:00
Krishna 0 Reputation points
edited a comment 2024-07-19T08:05:28.78+00:00
Joan Hua-MSFT 765 Reputation points Microsoft Vendor
3 answers

Lighthouse

Hello All, I gave Contributor role (on a subscription) to users via Lighthouse to manage a customer. The users get access with no problem to the customer subscription, can start and stop VM, create a resource group, start and stop backup, etc. The…

Azure Lighthouse
Azure Lighthouse
An Azure service that provides secure managed services and access control for partners and customers.
72 questions
Azure Role-based access control
Azure Role-based access control
An Azure service that provides fine-grained access management for Azure resources, enabling you to grant users only the rights they need to perform their jobs.
715 questions
asked 2024-06-19T10:07:04.94+00:00
Tristano,G,Giuseppe,JBP12 R 46 Reputation points
commented 2024-07-19T06:23:21.5433333+00:00
AnuragSingh-MSFT 21,241 Reputation points
4 answers

access to azure storage from React App

Hello, We are running a REACT app on an APP service. The APP has a BACK END in TS and a front end in REACT. In our application our customers can create posts with images. These images must be saved in a blob container. I cannot find the best solution to…

Azure Blob Storage
Azure Blob Storage
An Azure service that stores unstructured data in the cloud as blobs.
2,614 questions
Azure Role-based access control
Azure Role-based access control
An Azure service that provides fine-grained access management for Azure resources, enabling you to grant users only the rights they need to perform their jobs.
715 questions
asked 2024-07-05T12:10:40.5366667+00:00
Emmanuel de Nicolay 0 Reputation points
commented 2024-07-18T11:51:18.7066667+00:00
Nehruji R 4,451 Reputation points Microsoft Vendor
2 answers

Scoping Custom Role With microsoft.directory/auditLogs/allProperties/read Role Permission

Hi Community, Can you have a custom role with the microsoft.directory/auditLogs/allProperties/read role permission and use Admin Units to scope to devices only? Is this a scope'able permission? Kind Regards, Jamie

Azure Role-based access control
Azure Role-based access control
An Azure service that provides fine-grained access management for Azure resources, enabling you to grant users only the rights they need to perform their jobs.
715 questions
Microsoft Entra
Microsoft Entra ID
Microsoft Entra ID
A Microsoft Entra identity service that provides identity management and access control capabilities. Replaces Azure Active Directory.
20,556 questions
asked 2024-07-17T11:12:01.3233333+00:00
Jamie Brandwood 131 Reputation points
edited an answer 2024-07-17T12:38:54.85+00:00
Marcin Policht 18,005 Reputation points MVP
1 answer One of the answers was accepted by the question author.

Global reader unable to view any environment in admin.powerplatform.microsoft.com

We have PIM enabled and a user is enabled with Global reader access. User is able to access all other admin centers like exchange and can view the configuration but no configuration like environments, capacity is visible in powerplatform admin center. Is…

Azure Role-based access control
Azure Role-based access control
An Azure service that provides fine-grained access management for Azure resources, enabling you to grant users only the rights they need to perform their jobs.
715 questions
asked 2021-05-07T08:23:39.297+00:00
hitender singh 131 Reputation points
commented 2024-07-17T11:40:56.55+00:00
Jayke Mori-Caruso 0 Reputation points
1 answer

What Azure role assignments would i need to allow a dba permissions to manage Azure SQL resources including storage accounts?

I am looking at assigning role assignments to a DBA to manage Azure SQL resources from the Azure Portal including managing a specific storage account. Currently, the permissions are set as follows: Contributor Reader SQL Security Manager …

Azure Role-based access control
Azure Role-based access control
An Azure service that provides fine-grained access management for Azure resources, enabling you to grant users only the rights they need to perform their jobs.
715 questions
asked 2022-06-10T12:42:30.167+00:00
Schieman, Paul 1 Reputation point
commented 2024-07-14T17:28:18.7+00:00
Iftekhar Alam 0 Reputation points
2 answers

azure owner roles issue

Hi Team, accidentally i was deleted my owner role attached to the my subscription . and now i am unable to perform operations in my account. could you please help me on this issue

Azure Role-based access control
Azure Role-based access control
An Azure service that provides fine-grained access management for Azure resources, enabling you to grant users only the rights they need to perform their jobs.
715 questions
asked 2024-07-12T04:48:21.28+00:00
Narasimharao 0 Reputation points
answered 2024-07-13T20:00:26.44+00:00
Dillon Silzer 56,206 Reputation points
1 answer

Azure Policy: check subscription role assignments

Hi everyone We have different types of users in our Azure AD. Only a certain subset of them are allowed to administer Azure resources. Those all start with "ACO" or "ACA". We now wish to create an Azure Policy that checks whether only…

Azure Role-based access control
Azure Role-based access control
An Azure service that provides fine-grained access management for Azure resources, enabling you to grant users only the rights they need to perform their jobs.
715 questions
Azure Policy
Azure Policy
An Azure service that is used to implement corporate governance and standards at scale for Azure resources.
830 questions
Microsoft Entra ID
Microsoft Entra ID
A Microsoft Entra identity service that provides identity management and access control capabilities. Replaces Azure Active Directory.
20,556 questions
asked 2023-03-16T08:43:26.8633333+00:00
Tobias Petter 6 Reputation points
answered 2024-07-12T14:54:55.09+00:00
Prashant Kumar 300 Reputation points Microsoft Employee
3 answers One of the answers was accepted by the question author.

Does such a user have access to adjacent sub-resources?

Hi, I have a question about user permissions Can someone please explain me to better understand user permissions: let's say under tenant root group, I create a user1 and management-group1. Under management group1, I create a subscription1 and user2.…

Azure Role-based access control
Azure Role-based access control
An Azure service that provides fine-grained access management for Azure resources, enabling you to grant users only the rights they need to perform their jobs.
715 questions
Microsoft Entra
Microsoft Entra ID
Microsoft Entra ID
A Microsoft Entra identity service that provides identity management and access control capabilities. Replaces Azure Active Directory.
20,556 questions
asked 2024-07-08T06:08:25.1033333+00:00
Mahdi 125 Reputation points
accepted 2024-07-09T12:03:52.0466667+00:00
Mahdi 125 Reputation points
7 answers

"Insufficient privileges to complete the operation" while using Graph API

The access token I get from the following curl request curl "$IDENTITY_ENDPOINT?resource=https://graph.microsoft.com&api-version=2017-09-01" -H secret:$IDENTITY_HEADER does not have the permission to list or create user. Request: GET…

Azure Role-based access control
Azure Role-based access control
An Azure service that provides fine-grained access management for Azure resources, enabling you to grant users only the rights they need to perform their jobs.
715 questions
Microsoft Entra ID
Microsoft Entra ID
A Microsoft Entra identity service that provides identity management and access control capabilities. Replaces Azure Active Directory.
20,556 questions
asked 2020-12-14T17:46:54.273+00:00
Anonymous
commented 2024-07-09T07:59:22.12+00:00
sanjay 0 Reputation points
2 answers One of the answers was accepted by the question author.

How to protect sensitive data in Azure?

I would like to load sensitive data in an Azure Data Lake Storage Gen2. I need to make sure that this data can not be read by the global administrator or any other kind of super user. How can this be realized? I think role-based access control is not…

Azure Data Lake Storage
Azure Data Lake Storage
An Azure service that provides an enterprise-wide hyper-scale repository for big data analytic workloads and is integrated with Azure Blob Storage.
1,424 questions
Azure Role-based access control
Azure Role-based access control
An Azure service that provides fine-grained access management for Azure resources, enabling you to grant users only the rights they need to perform their jobs.
715 questions
asked 2024-06-24T06:30:46.3766667+00:00
Schmitz, Simon 40 Reputation points
commented 2024-07-09T06:52:27.32+00:00
Sumarigo-MSFT 45,406 Reputation points Microsoft Employee
1 answer

How to add new field to request member to input in Microsoft Azure Group

Hi, I have situation like this: I have a group of users, with owners and members. The owners can actually add new members (by typing new members' emails) to the group, to see different reports. However, for the new members, we only want them to see their…

Azure Role-based access control
Azure Role-based access control
An Azure service that provides fine-grained access management for Azure resources, enabling you to grant users only the rights they need to perform their jobs.
715 questions
Azure Data Factory
Azure Data Factory
An Azure service for ingesting, preparing, and transforming data at scale.
10,127 questions
asked 2024-07-08T12:38:44.5233333+00:00
Daniel Hoang Nguyen 0 Reputation points
answered 2024-07-08T13:34:34.4833333+00:00
Amira Bedhiafi 19,626 Reputation points
3 answers

Roles required to create Azure support ticket.

Me and my senior have access to same Azure subscription, when i try to create support ticket with the subscription, it is showing we have only basic plan enabled for our subscription so technical support is not enabled for this, but when my senior…

Azure Role-based access control
Azure Role-based access control
An Azure service that provides fine-grained access management for Azure resources, enabling you to grant users only the rights they need to perform their jobs.
715 questions
asked 2023-08-24T21:14:56.8166667+00:00
Nandan NK 50 Reputation points
commented 2024-07-08T11:24:13.91+00:00
Varunkumar Sharanabasappa 0 Reputation points
0 answers

Could you explain how to configure the following virtual machine settings?

To address the tasks you've outlined, here's a structured approach: For restricting demoVM1's access to only Facebook and YouTube, implement URL filtering rules on the network device or use a firewall policy that only allows these URLs. To create a…

Azure Virtual Network
Azure Virtual Network
An Azure networking service that is used to provision private networks and optionally to connect to on-premises datacenters.
2,289 questions
Azure Role-based access control
Azure Role-based access control
An Azure service that provides fine-grained access management for Azure resources, enabling you to grant users only the rights they need to perform their jobs.
715 questions
asked 2024-07-02T15:37:40.4866667+00:00
Kishore 0 Reputation points
commented 2024-07-05T12:27:54.31+00:00
GitaraniSharma-MSFT 49,386 Reputation points Microsoft Employee
0 answers

How to Access APIM API from Azure Function with Managed Identity without OAuth authentication call

I have created a function app to call an API from APIM and I have added security of Auth 2.0 in the API settings. Also I have added Managed identity to the function app , and added that managed identity in APIM IAM to give API Management Service Reader…

Microsoft Identity Manager
Microsoft Identity Manager
A family of Microsoft products that manage a user's digital identity using identity synchronization, certificate management, and user provisioning.
653 questions
Azure API Management
Azure API Management
An Azure service that provides a hybrid, multi-cloud management platform for APIs.
1,939 questions
Azure Functions
Azure Functions
An Azure service that provides an event-driven serverless compute platform.
4,636 questions
Azure Role-based access control
Azure Role-based access control
An Azure service that provides fine-grained access management for Azure resources, enabling you to grant users only the rights they need to perform their jobs.
715 questions
asked 2024-07-02T11:56:11.2633333+00:00
Dixan Lal Thomas 60 Reputation points
commented 2024-07-03T13:36:13.83+00:00
Ben Gimblett 3,845 Reputation points Microsoft Employee
2 answers One of the answers was accepted by the question author.

What role will I have when I migrate a subscription to a new Tenant/Directory?

Hi All, Starting in September 2024 Classic Admins will be removed. I am wondering what is going to happen when I do a migration (directory change) of a subscription from one tenant to another. Usually the user who does the "Change Directory"…

Azure Role-based access control
Azure Role-based access control
An Azure service that provides fine-grained access management for Azure resources, enabling you to grant users only the rights they need to perform their jobs.
715 questions
Microsoft Entra ID
Microsoft Entra ID
A Microsoft Entra identity service that provides identity management and access control capabilities. Replaces Azure Active Directory.
20,556 questions
Azure Startups
Azure Startups
Azure: A cloud computing platform and infrastructure for building, deploying and managing applications and services through a worldwide network of Microsoft-managed datacenters.Startups: Companies that are in their initial stages of business and typically developing a business model and seeking financing.
239 questions
asked 2024-04-24T09:31:31.7566667+00:00
John Doyle 51 Reputation points
edited the question 2024-07-03T04:17:03.4366667+00:00
Ryan Hill 27,026 Reputation points Microsoft Employee
1 answer One of the answers was accepted by the question author.

Identity architecture: Conditional access with MFA

How to use a Conditional Access with multifactor authentication (MFA) in free trial version? Which license are required using Conditional Access? Which better I can use a conditional access under the following web address: - www.portel.azure.com …

Azure Role-based access control
Azure Role-based access control
An Azure service that provides fine-grained access management for Azure resources, enabling you to grant users only the rights they need to perform their jobs.
715 questions
Active Directory
Active Directory
A set of directory-based technologies included in Windows Server.
6,210 questions
Microsoft Entra ID
Microsoft Entra ID
A Microsoft Entra identity service that provides identity management and access control capabilities. Replaces Azure Active Directory.
20,556 questions
asked 2024-07-01T11:36:33.72+00:00
Sandeep Kumar 20 Reputation points
commented 2024-07-02T04:18:21.9966667+00:00
Sandeep Kumar 20 Reputation points
1 answer

Issues with API call to get Azure service tags - Service Tag Discovery API

I am trying to execute API calls to get the Azure IP Ranges and Service Tags – Public Cloud (see link https://www.microsoft.com/en-us/download/details.aspx?id=56519). I was able to setup an Azure account and created an app. I created a Python script to…

Azure Role-based access control
Azure Role-based access control
An Azure service that provides fine-grained access management for Azure resources, enabling you to grant users only the rights they need to perform their jobs.
715 questions
Microsoft Entra ID
Microsoft Entra ID
A Microsoft Entra identity service that provides identity management and access control capabilities. Replaces Azure Active Directory.
20,556 questions
asked 2024-06-28T16:29:14.31+00:00
Externo Euroairlines 0 Reputation points
edited the question 2024-07-01T04:12:27.32+00:00
KapilAnanth-MSFT 40,996 Reputation points Microsoft Employee
1 answer

Azure portal access invite is failing for READ ONLY user with error 'Invite Redemption failed'

I have invited a user by adding in role based access in Azure portal with read only access. This have generated a meeting invited but while redeeming the meeting invite it is failing with above error. Please help what to check.

Azure Role-based access control
Azure Role-based access control
An Azure service that provides fine-grained access management for Azure resources, enabling you to grant users only the rights they need to perform their jobs.
715 questions
asked 2024-06-27T07:44:04.9566667+00:00
Sanjay 10 Reputation points
answered 2024-06-27T21:49:22.49+00:00
Marilee Turscak-MSFT 36,336 Reputation points Microsoft Employee