Synapse Roles with only required permissions

Kumar, Senthil 156 Reputation points
2022-07-04T12:01:38.207+00:00

All the available Synapse RBAC roles have DELETE and CREATE permissions for Database and Lake DB. I want to restrict the permissions to the users ability to create or delete. Can the available roles be customised to use only below permissions or a custom role can be created for the same?

workspaces/read
workspaces/artifacts/read
workspaces/bigDataPools/useCompute/action
workspaces/bigDataPools/viewLogs/action
workspaces/notebooks/viewOutputs/action
workspaces/artifacts/read
workspaces/notebooks/write, delete
workspaces/sparkJobDefinitions/write
workspaces/sqlScripts/write

Azure Synapse Analytics
Azure Synapse Analytics
An Azure analytics service that brings together data integration, enterprise data warehousing, and big data analytics. Previously known as Azure SQL Data Warehouse.
4,696 questions
Azure Role-based access control
Azure Role-based access control
An Azure service that provides fine-grained access management for Azure resources, enabling you to grant users only the rights they need to perform their jobs.
725 questions
0 comments No comments
{count} vote

Accepted answer
  1. PRADEEPCHEEKATLA-MSFT 85,586 Reputation points Microsoft Employee
    2022-07-05T08:33:38.99+00:00

    Hello @Anonymous ,

    Thanks for the question and using MS Q&A platform.

    Unfortunately, there is no custom RBAC role which helps to create and delete database and Lake DB.

    Reason: Access to SQL pools is managed using SQL permissions. With the exception of the Synapse Administrator and Synapse SQL Administrator roles, Synapse RBAC roles do not grant access to SQL pools.

    For more details, refer to How to manage Synapse RBAC role assignments in Synapse Studio.

    Hope this will help. Please let us know if any further queries.

    ------------------------------

    • Please don't forget to click on 130616-image.png or upvote 130671-image.png button whenever the information provided helps you. Original posters help the community find answers faster by identifying the correct answer. Here is how
    • Want a reminder to come back and check responses? Here is how to subscribe to a notification
    • If you are interested in joining the VM program and help shape the future of Q&A: Here is how you can be part of Q&A Volunteer Moderators
    0 comments No comments

0 additional answers

Sort by: Most helpful