Web ve Mobil için Azure yerleşik rolleri

Bu makalede Web ve Mobil kategorisindeki Azure yerleşik rolleri listelenmiştir.

veri katkıda bulunanı Azure Haritalar

Azure haritalar hesabından ilgili verileri eşlemek için okuma, yazma ve silme erişimi verir.

Daha fazla bilgi edinin

Eylemler Açıklama
hiç kimse
Eylemler
hiç kimse
Veri Eylemleri
Microsoft.Maps/accounts/*/read
Microsoft.Maps/accounts/*/write
Microsoft.Maps/accounts/*/delete
Microsoft.Maps/accounts/*/action
NotDataActions
hiç kimse
{
  "assignableScopes": [
    "/"
  ],
  "description": "Grants access to read, write, and delete access to map related data from an Azure maps account.",
  "id": "/providers/Microsoft.Authorization/roleDefinitions/8f5e0ce6-4f7b-4dcf-bddf-e6f48634a204",
  "name": "8f5e0ce6-4f7b-4dcf-bddf-e6f48634a204",
  "permissions": [
    {
      "actions": [],
      "notActions": [],
      "dataActions": [
        "Microsoft.Maps/accounts/*/read",
        "Microsoft.Maps/accounts/*/write",
        "Microsoft.Maps/accounts/*/delete",
        "Microsoft.Maps/accounts/*/action"
      ],
      "notDataActions": []
    }
  ],
  "roleName": "Azure Maps Data Contributor",
  "roleType": "BuiltInRole",
  "type": "Microsoft.Authorization/roleDefinitions"
}

veri okuyucu Azure Haritalar

Azure haritalar hesabından haritayla ilgili verileri okuma erişimi verir.

Daha fazla bilgi edinin

Eylemler Açıklama
hiç kimse
Eylemler
hiç kimse
Veri Eylemleri
Microsoft.Maps/accounts/*/read
NotDataActions
hiç kimse
{
  "assignableScopes": [
    "/"
  ],
  "description": "Grants access to read map related data from an Azure maps account.",
  "id": "/providers/Microsoft.Authorization/roleDefinitions/423170ca-a8f6-4b0f-8487-9e4eb8f49bfa",
  "name": "423170ca-a8f6-4b0f-8487-9e4eb8f49bfa",
  "permissions": [
    {
      "actions": [],
      "notActions": [],
      "dataActions": [
        "Microsoft.Maps/accounts/*/read"
      ],
      "notDataActions": []
    }
  ],
  "roleName": "Azure Maps Data Reader",
  "roleType": "BuiltInRole",
  "type": "Microsoft.Authorization/roleDefinitions"
}

Veri Okuyucusu'Azure Haritalar Arama ve İşleme

Yaygın görsel web SDK'sı senaryoları için çok sınırlı veri API'leri kümesine erişim verir. Özellikle, veri API'lerini işleyip arayın.

Daha fazla bilgi edinin

Eylemler Açıklama
hiç kimse
Eylemler
hiç kimse
Veri Eylemleri
Microsoft.Maps/accounts/services/render/read İşleme hizmetleri için verilerin okunmasına izin verir.
Microsoft.Maps/accounts/services/search/read Arama hizmeti için verilerin okunmasına izin verir.
NotDataActions
hiç kimse
{
  "assignableScopes": [
    "/"
  ],
  "description": "Grants access to very limited set of data APIs for common visual web SDK scenarios. Specifically, render and search data APIs.",
  "id": "/providers/Microsoft.Authorization/roleDefinitions/6be48352-4f82-47c9-ad5e-0acacefdb005",
  "name": "6be48352-4f82-47c9-ad5e-0acacefdb005",
  "permissions": [
    {
      "actions": [],
      "notActions": [],
      "dataActions": [
        "Microsoft.Maps/accounts/services/render/read",
        "Microsoft.Maps/accounts/services/search/read"
      ],
      "notDataActions": []
    }
  ],
  "roleName": "Azure Maps Search and Render Data Reader",
  "roleType": "BuiltInRole",
  "type": "Microsoft.Authorization/roleDefinitions"
}

Azure Spring Apps Uygulama Yapılandırma Hizmeti Yapılandırma Dosyası Desen Okuyucu Rolü

Azure Spring Apps'te Uygulama Yapılandırma Hizmeti için yapılandırma dosyası deseninin içeriğini okuma

Daha fazla bilgi edinin

Eylemler Açıklama
Microsoft.AppPlatform/Spring/read Azure Spring Apps hizmet örneklerini alma
Microsoft.AppPlatform/Spring/configurationServices/read Belirli bir Azure Spring Apps hizmet örneği için Uygulama Yapılandırma Hizmetleri'ni alma
Eylemler
hiç kimse
Veri Eylemleri
Microsoft.AppPlatform/Spring/ApplicationConfigurationService/read Belirli bir Azure Spring Apps hizmet örneği için Application Configuration Service tarafından çekilen yapılandırma içeriğini (örneğin, application-prod.yaml) okuyun
NotDataActions
hiç kimse
{
  "assignableScopes": [
    "/"
  ],
  "description": "Read content of config file pattern for Application Configuration Service in Azure Spring Apps",
  "id": "/providers/Microsoft.Authorization/roleDefinitions/25211fc6-dc78-40b6-b205-e4ac934fd9fd",
  "name": "25211fc6-dc78-40b6-b205-e4ac934fd9fd",
  "permissions": [
    {
      "actions": [
        "Microsoft.AppPlatform/Spring/read",
        "Microsoft.AppPlatform/Spring/configurationServices/read"
      ],
      "notActions": [],
      "dataActions": [
        "Microsoft.AppPlatform/Spring/ApplicationConfigurationService/read"
      ],
      "notDataActions": []
    }
  ],
  "roleName": "Azure Spring Apps Application Configuration Service Config File Pattern Reader Role",
  "roleType": "BuiltInRole",
  "type": "Microsoft.Authorization/roleDefinitions"
}

Azure Spring Apps Uygulama Yapılandırma Hizmeti Günlük OkuyucuSu Rolü

Azure Spring Apps'te Uygulama Yapılandırma Hizmeti için gerçek zamanlı günlükleri okuma

Daha fazla bilgi edinin

Eylemler Açıklama
Microsoft.AppPlatform/Spring/read Azure Spring Apps hizmet örneklerini alma
Microsoft.AppPlatform/Spring/configurationServices/read Belirli bir Azure Spring Apps hizmet örneği için Uygulama Yapılandırma Hizmetleri'ni alma
Eylemler
hiç kimse
Veri Eylemleri
Microsoft.AppPlatform/Spring/ApplicationConfigurationService/logstream/action Belirli bir Azure Spring Apps hizmet örneğinden Uygulama Yapılandırma Hizmeti'ndeki tüm alt bileşenlerinin akış günlüğünü okuyun
NotDataActions
hiç kimse
{
  "assignableScopes": [
    "/"
  ],
  "description": "Read real-time logs for Application Configuration Service in Azure Spring Apps",
  "id": "/providers/Microsoft.Authorization/roleDefinitions/6593e776-2a30-40f9-8a32-4fe28b77655d",
  "name": "6593e776-2a30-40f9-8a32-4fe28b77655d",
  "permissions": [
    {
      "actions": [
        "Microsoft.AppPlatform/Spring/read",
        "Microsoft.AppPlatform/Spring/configurationServices/read"
      ],
      "notActions": [],
      "dataActions": [
        "Microsoft.AppPlatform/Spring/ApplicationConfigurationService/logstream/action"
      ],
      "notDataActions": []
    }
  ],
  "roleName": "Azure Spring Apps Application Configuration Service Log Reader Role",
  "roleType": "BuiltInRole",
  "type": "Microsoft.Authorization/roleDefinitions"
}

Azure Spring Apps Connect Rolü

Azure Spring Apps Connect Rolü

Daha fazla bilgi edinin

Eylemler Açıklama
hiç kimse
Eylemler
hiç kimse
Veri Eylemleri
Microsoft.AppPlatform/Spring/apps/deployments/connect/action Belirli bir uygulama için örneğe bağlanma
NotDataActions
hiç kimse
{
  "assignableScopes": [
    "/"
  ],
  "description": "Azure Spring Apps Connect Role",
  "id": "/providers/Microsoft.Authorization/roleDefinitions/80558df3-64f9-4c0f-b32d-e5094b036b0b",
  "name": "80558df3-64f9-4c0f-b32d-e5094b036b0b",
  "permissions": [
    {
      "actions": [],
      "notActions": [],
      "dataActions": [
        "Microsoft.AppPlatform/Spring/apps/deployments/connect/action"
      ],
      "notDataActions": []
    }
  ],
  "roleName": "Azure Spring Apps Connect Role",
  "roleType": "BuiltInRole",
  "type": "Microsoft.Authorization/roleDefinitions"
}

Azure Spring Apps İş Günlüğü OkuyucuSu Rolü

Azure Spring Apps'te işler için gerçek zamanlı günlükleri okuma

Daha fazla bilgi edinin

Eylemler Açıklama
Microsoft.AppPlatform/Spring/read Azure Spring Apps hizmet örneklerini alma
Microsoft.AppPlatform/Spring/jobs/read Belirli bir Azure Spring Apps hizmet örneği için işi alma
Microsoft.AppPlatform/Spring/jobs/executions/read Belirli bir Azure Spring Apps hizmet örneği için iş yürütmeyi alma
Eylemler
hiç kimse
Veri Eylemleri
Microsoft.AppPlatform/Spring/jobs/executions/logstream/action Belirli bir Azure Spring Apps hizmet örneği için iş yürütmelerinin akış günlüğünü alma
Microsoft.AppPlatform/Spring/jobs/executions/listInstances/action Belirli bir Azure Spring Apps hizmet örneği için belirli bir iş yürütme örneklerini listeleme
NotDataActions
hiç kimse
{
  "assignableScopes": [
    "/"
  ],
  "description": "Read real-time logs for jobs in Azure Spring Apps",
  "id": "/providers/Microsoft.Authorization/roleDefinitions/b459aa1d-e3c8-436f-ae21-c0531140f43e",
  "name": "b459aa1d-e3c8-436f-ae21-c0531140f43e",
  "permissions": [
    {
      "actions": [
        "Microsoft.AppPlatform/Spring/read",
        "Microsoft.AppPlatform/Spring/jobs/read",
        "Microsoft.AppPlatform/Spring/jobs/executions/read"
      ],
      "notActions": [],
      "dataActions": [
        "Microsoft.AppPlatform/Spring/jobs/executions/logstream/action",
        "Microsoft.AppPlatform/Spring/jobs/executions/listInstances/action"
      ],
      "notDataActions": []
    }
  ],
  "roleName": "Azure Spring Apps Job Log Reader Role",
  "roleType": "BuiltInRole",
  "type": "Microsoft.Authorization/roleDefinitions"
}

Azure Spring Apps Uzaktan Hata Ayıklama Rolü

Azure Spring Apps Uzaktan Hata Ayıklama Rolü

Daha fazla bilgi edinin

Eylemler Açıklama
hiç kimse
Eylemler
hiç kimse
Veri Eylemleri
Microsoft.AppPlatform/Spring/apps/deployments/remotedebugging/action Belirli bir uygulama için uzaktan hata ayıklama uygulaması örneği
NotDataActions
hiç kimse
{
  "assignableScopes": [
    "/"
  ],
  "description": "Azure Spring Apps Remote Debugging Role",
  "id": "/providers/Microsoft.Authorization/roleDefinitions/a99b0159-1064-4c22-a57b-c9b3caa1c054",
  "name": "a99b0159-1064-4c22-a57b-c9b3caa1c054",
  "permissions": [
    {
      "actions": [],
      "notActions": [],
      "dataActions": [
        "Microsoft.AppPlatform/Spring/apps/deployments/remotedebugging/action"
      ],
      "notDataActions": []
    }
  ],
  "roleName": "Azure Spring Apps Remote Debugging Role",
  "roleType": "BuiltInRole",
  "type": "Microsoft.Authorization/roleDefinitions"
}

Azure Spring Apps Spring Cloud Gateway Günlük OkuyucuSu Rolü

Azure Spring Apps'te Spring Cloud Gateway için gerçek zamanlı günlükleri okuma

Daha fazla bilgi edinin

Eylemler Açıklama
Microsoft.AppPlatform/Spring/read Azure Spring Apps hizmet örneklerini alma
Microsoft.AppPlatform/Spring/gateways/read Belirli bir Azure Spring Apps hizmet örneği için Spring Cloud Gateways'i edinin
Eylemler
hiç kimse
Veri Eylemleri
Microsoft.AppPlatform/Spring/SpringCloudGateway/logstream/action Belirli bir Azure Spring Apps hizmet örneğinden Spring Cloud Gateway'in akış günlüğünü okuyun
NotDataActions
hiç kimse
{
  "assignableScopes": [
    "/"
  ],
  "description": "Read real-time logs for Spring Cloud Gateway in Azure Spring Apps",
  "id": "/providers/Microsoft.Authorization/roleDefinitions/4301dc2a-25a9-44b0-ae63-3636cf7f2bd2",
  "name": "4301dc2a-25a9-44b0-ae63-3636cf7f2bd2",
  "permissions": [
    {
      "actions": [
        "Microsoft.AppPlatform/Spring/read",
        "Microsoft.AppPlatform/Spring/gateways/read"
      ],
      "notActions": [],
      "dataActions": [
        "Microsoft.AppPlatform/Spring/SpringCloudGateway/logstream/action"
      ],
      "notDataActions": []
    }
  ],
  "roleName": "Azure Spring Apps Spring Cloud Gateway Log Reader Role",
  "roleType": "BuiltInRole",
  "type": "Microsoft.Authorization/roleDefinitions"
}

Azure Spring Cloud Config Server Katkıda Bulunanı

Azure Spring Cloud Config Server'a okuma, yazma ve silme erişimine izin verme

Daha fazla bilgi edinin

Eylemler Açıklama
hiç kimse
Eylemler
hiç kimse
Veri Eylemleri
Microsoft.AppPlatform/Spring/configService/read Belirli bir Azure Spring Apps hizmet örneğinin yapılandırma içeriğini (örneğin, application.yaml) okuyun
Microsoft.AppPlatform/Spring/configService/write Belirli bir Azure Spring Apps hizmet örneği için yapılandırma sunucusu içeriği yazma
Microsoft.AppPlatform/Spring/configService/delete Belirli bir Azure Spring Apps hizmet örneği için yapılandırma sunucusu içeriğini silme
NotDataActions
hiç kimse
{
  "assignableScopes": [
    "/"
  ],
  "description": "Allow read, write and delete access to Azure Spring Cloud Config Server",
  "id": "/providers/Microsoft.Authorization/roleDefinitions/a06f5c24-21a7-4e1a-aa2b-f19eb6684f5b",
  "name": "a06f5c24-21a7-4e1a-aa2b-f19eb6684f5b",
  "permissions": [
    {
      "actions": [],
      "notActions": [],
      "dataActions": [
        "Microsoft.AppPlatform/Spring/configService/read",
        "Microsoft.AppPlatform/Spring/configService/write",
        "Microsoft.AppPlatform/Spring/configService/delete"
      ],
      "notDataActions": []
    }
  ],
  "roleName": "Azure Spring Cloud Config Server Contributor",
  "roleType": "BuiltInRole",
  "type": "Microsoft.Authorization/roleDefinitions"
}

Azure Spring Cloud Config Sunucu Okuyucusu

Azure Spring Cloud Config Server'a okuma erişimine izin ver

Daha fazla bilgi edinin

Eylemler Açıklama
hiç kimse
Eylemler
hiç kimse
Veri Eylemleri
Microsoft.AppPlatform/Spring/configService/read Belirli bir Azure Spring Apps hizmet örneğinin yapılandırma içeriğini (örneğin, application.yaml) okuyun
NotDataActions
hiç kimse
{
  "assignableScopes": [
    "/"
  ],
  "description": "Allow read access to Azure Spring Cloud Config Server",
  "id": "/providers/Microsoft.Authorization/roleDefinitions/d04c6db6-4947-4782-9e91-30a88feb7be7",
  "name": "d04c6db6-4947-4782-9e91-30a88feb7be7",
  "permissions": [
    {
      "actions": [],
      "notActions": [],
      "dataActions": [
        "Microsoft.AppPlatform/Spring/configService/read"
      ],
      "notDataActions": []
    }
  ],
  "roleName": "Azure Spring Cloud Config Server Reader",
  "roleType": "BuiltInRole",
  "type": "Microsoft.Authorization/roleDefinitions"
}

Azure Spring Cloud Veri Okuyucusu

Azure Spring Cloud Data'ya okuma erişimine izin verme

Eylemler Açıklama
hiç kimse
Eylemler
hiç kimse
Veri Eylemleri
Microsoft.AppPlatform/Bahar/*/okuma
NotDataActions
hiç kimse
{
  "assignableScopes": [
    "/"
  ],
  "description": "Allow read access to Azure Spring Cloud Data",
  "id": "/providers/Microsoft.Authorization/roleDefinitions/b5537268-8956-4941-a8f0-646150406f0c",
  "name": "b5537268-8956-4941-a8f0-646150406f0c",
  "permissions": [
    {
      "actions": [],
      "notActions": [],
      "dataActions": [
        "Microsoft.AppPlatform/Spring/*/read"
      ],
      "notDataActions": []
    }
  ],
  "roleName": "Azure Spring Cloud Data Reader",
  "roleType": "BuiltInRole",
  "type": "Microsoft.Authorization/roleDefinitions"
}

Azure Spring Cloud Service Kayıt Defteri Katkıda Bulunanı

Azure Spring Cloud Service Registry'ye okuma, yazma ve silme erişimine izin verme

Daha fazla bilgi edinin

Eylemler Açıklama
hiç kimse
Eylemler
hiç kimse
Veri Eylemleri
Microsoft.AppPlatform/Spring/eurekaService/read Belirli bir Azure Spring Apps hizmet örneği için kullanıcı uygulamaları kayıt bilgilerini okuyun
Microsoft.AppPlatform/Spring/eurekaService/write Belirli bir Azure Spring Apps hizmet örneği için kullanıcı uygulamaları kayıt bilgilerini yazma
Microsoft.AppPlatform/Spring/eurekaService/delete Belirli bir Azure Spring Apps hizmet örneği için kullanıcı uygulaması kayıt bilgilerini silme
NotDataActions
hiç kimse
{
  "assignableScopes": [
    "/"
  ],
  "description": "Allow read, write and delete access to Azure Spring Cloud Service Registry",
  "id": "/providers/Microsoft.Authorization/roleDefinitions/f5880b48-c26d-48be-b172-7927bfa1c8f1",
  "name": "f5880b48-c26d-48be-b172-7927bfa1c8f1",
  "permissions": [
    {
      "actions": [],
      "notActions": [],
      "dataActions": [
        "Microsoft.AppPlatform/Spring/eurekaService/read",
        "Microsoft.AppPlatform/Spring/eurekaService/write",
        "Microsoft.AppPlatform/Spring/eurekaService/delete"
      ],
      "notDataActions": []
    }
  ],
  "roleName": "Azure Spring Cloud Service Registry Contributor",
  "roleType": "BuiltInRole",
  "type": "Microsoft.Authorization/roleDefinitions"
}

Azure Spring Cloud Service Kayıt Defteri Okuyucusu

Azure Spring Cloud Service Kayıt Defteri'ne okuma erişimine izin verme

Daha fazla bilgi edinin

Eylemler Açıklama
hiç kimse
Eylemler
hiç kimse
Veri Eylemleri
Microsoft.AppPlatform/Spring/eurekaService/read Belirli bir Azure Spring Apps hizmet örneği için kullanıcı uygulamaları kayıt bilgilerini okuyun
NotDataActions
hiç kimse
{
  "assignableScopes": [
    "/"
  ],
  "description": "Allow read access to Azure Spring Cloud Service Registry",
  "id": "/providers/Microsoft.Authorization/roleDefinitions/cff1b556-2399-4e7e-856d-a8f754be7b65",
  "name": "cff1b556-2399-4e7e-856d-a8f754be7b65",
  "permissions": [
    {
      "actions": [],
      "notActions": [],
      "dataActions": [
        "Microsoft.AppPlatform/Spring/eurekaService/read"
      ],
      "notDataActions": []
    }
  ],
  "roleName": "Azure Spring Cloud Service Registry Reader",
  "roleType": "BuiltInRole",
  "type": "Microsoft.Authorization/roleDefinitions"
}

SignalR AccessKey Okuyucusu

Okuma SignalR Hizmeti Erişim Anahtarları

Eylemler Açıklama
Microsoft.SignalRService/*/read
Microsoft.SignalRService/SignalR/listkeys/action Yönetim portalında veya API aracılığıyla SignalR erişim anahtarlarının değerini görüntüleme
Microsoft.Authorization/*/read Rolleri ve rol atamalarını okuma
Microsoft.Resources/abonelikler/kaynakGrupları/okuma Kaynak gruplarını alır veya listeler.
Microsoft.Destek/* Destek bileti oluşturma ve güncelleştirme
Eylemler
hiç kimse
Veri Eylemleri
hiç kimse
NotDataActions
hiç kimse
{
  "assignableScopes": [
    "/"
  ],
  "description": "Read SignalR Service Access Keys",
  "id": "/providers/Microsoft.Authorization/roleDefinitions/04165923-9d83-45d5-8227-78b77b0a687e",
  "name": "04165923-9d83-45d5-8227-78b77b0a687e",
  "permissions": [
    {
      "actions": [
        "Microsoft.SignalRService/*/read",
        "Microsoft.SignalRService/SignalR/listkeys/action",
        "Microsoft.Authorization/*/read",
        "Microsoft.Resources/subscriptions/resourceGroups/read",
        "Microsoft.Support/*"
      ],
      "notActions": [],
      "dataActions": [],
      "notDataActions": []
    }
  ],
  "roleName": "SignalR AccessKey Reader",
  "roleType": "BuiltInRole",
  "type": "Microsoft.Authorization/roleDefinitions"
}

SignalR Uygulama Sunucusu

Uygulama sunucunuzun AAD kimlik doğrulama seçenekleriyle SignalR Hizmeti erişmesini sağlar.

Eylemler Açıklama
hiç kimse
Eylemler
hiç kimse
Veri Eylemleri
Microsoft.SignalRService/SignalR/auth/accessKey/action AccessTokens'i imzalamak için bir AccessKey oluşturun; anahtarın süresi varsayılan olarak 90 dakika içinde dolacak
Microsoft.SignalRService/SignalR/serverConnection/yazma Sunucu bağlantısı başlatma
Microsoft.SignalRService/SignalR/clientConnection/yazma İstemci bağlantısını kapatma
NotDataActions
hiç kimse
{
  "assignableScopes": [
    "/"
  ],
  "description": "Lets your app server access SignalR Service with AAD auth options.",
  "id": "/providers/Microsoft.Authorization/roleDefinitions/420fcaa2-552c-430f-98ca-3264be4806c7",
  "name": "420fcaa2-552c-430f-98ca-3264be4806c7",
  "permissions": [
    {
      "actions": [],
      "notActions": [],
      "dataActions": [
        "Microsoft.SignalRService/SignalR/auth/accessKey/action",
        "Microsoft.SignalRService/SignalR/serverConnection/write",
        "Microsoft.SignalRService/SignalR/clientConnection/write"
      ],
      "notDataActions": []
    }
  ],
  "roleName": "SignalR App Server",
  "roleType": "BuiltInRole",
  "type": "Microsoft.Authorization/roleDefinitions"
}

SignalR REST API Sahibi

Azure SignalR Hizmeti REST API'lerine tam erişim

Eylemler Açıklama
hiç kimse
Eylemler
hiç kimse
Veri Eylemleri
Microsoft.SignalRService/SignalR/auth/clientToken/action İstemcinin ASRS'ye bağlanması için bir AccessToken oluşturun, belirtecin süresi varsayılan olarak 5 dakika içinde dolacak
Microsoft.SignalRService/SignalR/hub/*
Microsoft.SignalRService/SignalR/group/*
Microsoft.SignalRService/SignalR/clientConnection/*
Microsoft.SignalRService/SignalR/user/*
NotDataActions
hiç kimse
{
  "assignableScopes": [
    "/"
  ],
  "description": "Full access to Azure SignalR Service REST APIs",
  "id": "/providers/Microsoft.Authorization/roleDefinitions/fd53cd77-2268-407a-8f46-7e7863d0f521",
  "name": "fd53cd77-2268-407a-8f46-7e7863d0f521",
  "permissions": [
    {
      "actions": [],
      "notActions": [],
      "dataActions": [
        "Microsoft.SignalRService/SignalR/auth/clientToken/action",
        "Microsoft.SignalRService/SignalR/hub/*",
        "Microsoft.SignalRService/SignalR/group/*",
        "Microsoft.SignalRService/SignalR/clientConnection/*",
        "Microsoft.SignalRService/SignalR/user/*"
      ],
      "notDataActions": []
    }
  ],
  "roleName": "SignalR REST API Owner",
  "roleType": "BuiltInRole",
  "type": "Microsoft.Authorization/roleDefinitions"
}

SignalR REST API Okuyucusu

Azure SignalR Hizmeti REST API'lerine salt okunur erişim

Eylemler Açıklama
hiç kimse
Eylemler
hiç kimse
Veri Eylemleri
Microsoft.SignalRService/SignalR/group/read Grupta grup varlığını veya kullanıcı varlığını denetleme
Microsoft.SignalRService/SignalR/clientConnection/okuma İstemci bağlantısı varlığını denetleme
Microsoft.SignalRService/SignalR/user/read Kullanıcı varlığını denetleme
NotDataActions
hiç kimse
{
  "assignableScopes": [
    "/"
  ],
  "description": "Read-only access to Azure SignalR Service REST APIs",
  "id": "/providers/Microsoft.Authorization/roleDefinitions/ddde6b66-c0df-4114-a159-3618637b3035",
  "name": "ddde6b66-c0df-4114-a159-3618637b3035",
  "permissions": [
    {
      "actions": [],
      "notActions": [],
      "dataActions": [
        "Microsoft.SignalRService/SignalR/group/read",
        "Microsoft.SignalRService/SignalR/clientConnection/read",
        "Microsoft.SignalRService/SignalR/user/read"
      ],
      "notDataActions": []
    }
  ],
  "roleName": "SignalR REST API Reader",
  "roleType": "BuiltInRole",
  "type": "Microsoft.Authorization/roleDefinitions"
}

SignalR Hizmeti Sahibi

Azure SignalR Hizmeti REST API'lerine tam erişim

Eylemler Açıklama
hiç kimse
Eylemler
hiç kimse
Veri Eylemleri
Microsoft.SignalRService/SignalR/*
NotDataActions
hiç kimse
{
  "assignableScopes": [
    "/"
  ],
  "description": "Full access to Azure SignalR Service REST APIs",
  "id": "/providers/Microsoft.Authorization/roleDefinitions/7e4f1700-ea5a-4f59-8f37-079cfe29dce3",
  "name": "7e4f1700-ea5a-4f59-8f37-079cfe29dce3",
  "permissions": [
    {
      "actions": [],
      "notActions": [],
      "dataActions": [
        "Microsoft.SignalRService/SignalR/*"
      ],
      "notDataActions": []
    }
  ],
  "roleName": "SignalR Service Owner",
  "roleType": "BuiltInRole",
  "type": "Microsoft.Authorization/roleDefinitions"
}

SignalR/Web PubSub Katkıda Bulunanı

SignalR hizmet kaynaklarını oluşturma, okuma, güncelleştirme ve silme

Eylemler Açıklama
Microsoft.SignalRService/*
Microsoft.Authorization/*/read Rolleri ve rol atamalarını okuma
Microsoft.Insights/alertRules/* Klasik ölçüm uyarısı oluşturma ve yönetme
Microsoft.Resources/abonelikler/kaynakGrupları/okuma Kaynak gruplarını alır veya listeler.
Microsoft.Resources/deployments/* Dağıtım oluşturma ve yönetme
Microsoft.Destek/* Destek bileti oluşturma ve güncelleştirme
Eylemler
hiç kimse
Veri Eylemleri
hiç kimse
NotDataActions
hiç kimse
{
  "assignableScopes": [
    "/"
  ],
  "description": "Create, Read, Update, and Delete SignalR service resources",
  "id": "/providers/Microsoft.Authorization/roleDefinitions/8cf5e20a-e4b2-4e9d-b3a1-5ceb692c2761",
  "name": "8cf5e20a-e4b2-4e9d-b3a1-5ceb692c2761",
  "permissions": [
    {
      "actions": [
        "Microsoft.SignalRService/*",
        "Microsoft.Authorization/*/read",
        "Microsoft.Insights/alertRules/*",
        "Microsoft.Resources/subscriptions/resourceGroups/read",
        "Microsoft.Resources/deployments/*",
        "Microsoft.Support/*"
      ],
      "notActions": [],
      "dataActions": [],
      "notDataActions": []
    }
  ],
  "roleName": "SignalR/Web PubSub Contributor",
  "roleType": "BuiltInRole",
  "type": "Microsoft.Authorization/roleDefinitions"
}

Web Planı Katkıda Bulunanı

Web siteleri için web planlarını yönetin. Azure RBAC'de rol atamanıza izin vermez.

Eylemler Açıklama
Microsoft.Authorization/*/read Rolleri ve rol atamalarını okuma
Microsoft.Insights/alertRules/* Klasik ölçüm uyarısı oluşturma ve yönetme
Microsoft.ResourceHealth/kullanılabilirlikDurumları/okuma Belirtilen kapsamdaki tüm kaynaklar için kullanılabilirlik durumlarını alır
Microsoft.Resources/deployments/* Dağıtım oluşturma ve yönetme
Microsoft.Resources/abonelikler/kaynakGrupları/okuma Kaynak gruplarını alır veya listeler.
Microsoft.Destek/* Destek bileti oluşturma ve güncelleştirme
Microsoft.Web/serverFarms/* Sunucu grupları oluşturma ve yönetme
Microsoft.Web/hostingEnvironments/Join/Action bir App Service Ortamı katılır
Microsoft.Insights/autoscalesettings/*
Eylemler
hiç kimse
Veri Eylemleri
hiç kimse
NotDataActions
hiç kimse
{
  "assignableScopes": [
    "/"
  ],
  "description": "Lets you manage the web plans for websites, but not access to them.",
  "id": "/providers/Microsoft.Authorization/roleDefinitions/2cc479cb-7b4d-49a8-b449-8c00fd0f0a4b",
  "name": "2cc479cb-7b4d-49a8-b449-8c00fd0f0a4b",
  "permissions": [
    {
      "actions": [
        "Microsoft.Authorization/*/read",
        "Microsoft.Insights/alertRules/*",
        "Microsoft.ResourceHealth/availabilityStatuses/read",
        "Microsoft.Resources/deployments/*",
        "Microsoft.Resources/subscriptions/resourceGroups/read",
        "Microsoft.Support/*",
        "Microsoft.Web/serverFarms/*",
        "Microsoft.Web/hostingEnvironments/Join/Action",
        "Microsoft.Insights/autoscalesettings/*"
      ],
      "notActions": [],
      "dataActions": [],
      "notDataActions": []
    }
  ],
  "roleName": "Web Plan Contributor",
  "roleType": "BuiltInRole",
  "type": "Microsoft.Authorization/roleDefinitions"
}

Web PubSub Hizmeti Sahibi

Azure Web PubSub Hizmeti REST API'lerine tam erişim

Daha fazla bilgi edinin

Eylemler Açıklama
hiç kimse
Eylemler
hiç kimse
Veri Eylemleri
Microsoft.SignalRService/WebPubSub/*
NotDataActions
hiç kimse
{
  "assignableScopes": [
    "/"
  ],
  "description": "Full access to Azure Web PubSub Service REST APIs",
  "id": "/providers/Microsoft.Authorization/roleDefinitions/12cf5a90-567b-43ae-8102-96cf46c7d9b4",
  "name": "12cf5a90-567b-43ae-8102-96cf46c7d9b4",
  "permissions": [
    {
      "actions": [],
      "notActions": [],
      "dataActions": [
        "Microsoft.SignalRService/WebPubSub/*"
      ],
      "notDataActions": []
    }
  ],
  "roleName": "Web PubSub Service Owner",
  "roleType": "BuiltInRole",
  "type": "Microsoft.Authorization/roleDefinitions"
}

Web PubSub Hizmet Okuyucusu

Azure Web PubSub Hizmeti REST API'lerine salt okunur erişim

Daha fazla bilgi edinin

Eylemler Açıklama
hiç kimse
Eylemler
hiç kimse
Veri Eylemleri
Microsoft.SignalRService/WebPubSub/*/read
NotDataActions
hiç kimse
{
  "assignableScopes": [
    "/"
  ],
  "description": "Read-only access to Azure Web PubSub Service REST APIs",
  "id": "/providers/Microsoft.Authorization/roleDefinitions/bfb1c7d2-fb1a-466b-b2ba-aee63b92deaf",
  "name": "bfb1c7d2-fb1a-466b-b2ba-aee63b92deaf",
  "permissions": [
    {
      "actions": [],
      "notActions": [],
      "dataActions": [
        "Microsoft.SignalRService/WebPubSub/*/read"
      ],
      "notDataActions": []
    }
  ],
  "roleName": "Web PubSub Service Reader",
  "roleType": "BuiltInRole",
  "type": "Microsoft.Authorization/roleDefinitions"
}

Web Sitesi Katkıda Bulunanı

Web sitelerini yönetin, ancak web planlarını yönetmeyin. Azure RBAC'de rol atamanıza izin vermez.

Eylemler Açıklama
Microsoft.Authorization/*/read Rolleri ve rol atamalarını okuma
Microsoft.Insights/alertRules/* Klasik ölçüm uyarısı oluşturma ve yönetme
Microsoft.Insights/components/* İçgörü bileşenleri oluşturma ve yönetme
Microsoft.ResourceHealth/kullanılabilirlikDurumları/okuma Belirtilen kapsamdaki tüm kaynaklar için kullanılabilirlik durumlarını alır
Microsoft.Resources/deployments/* Dağıtım oluşturma ve yönetme
Microsoft.Resources/abonelikler/kaynakGrupları/okuma Kaynak gruplarını alır veya listeler.
Microsoft.Destek/* Destek bileti oluşturma ve güncelleştirme
Microsoft.Web/certificates/* Web sitesi sertifikaları oluşturma ve yönetme
Microsoft.Web/listSitesAssignedToHostName/read Konak adına atanan sitelerin adlarını alın.
Microsoft.Web/register/action Abonelik için Microsoft.Web kaynak sağlayıcısını kaydedin.
Microsoft.Web/serverFarms/join/action App Service Planına katılır
Microsoft.Web/serverFarms/read App Service Planı'nda özellikleri alma
Microsoft.Web/sites/* Web siteleri oluşturma ve yönetme (site oluşturma, ilişkili App Service Planı için yazma izinleri de gerektirir)
Eylemler
hiç kimse
Veri Eylemleri
hiç kimse
NotDataActions
hiç kimse
{
  "assignableScopes": [
    "/"
  ],
  "description": "Lets you manage websites (not web plans), but not access to them.",
  "id": "/providers/Microsoft.Authorization/roleDefinitions/de139f84-1756-47ae-9be6-808fbbe84772",
  "name": "de139f84-1756-47ae-9be6-808fbbe84772",
  "permissions": [
    {
      "actions": [
        "Microsoft.Authorization/*/read",
        "Microsoft.Insights/alertRules/*",
        "Microsoft.Insights/components/*",
        "Microsoft.ResourceHealth/availabilityStatuses/read",
        "Microsoft.Resources/deployments/*",
        "Microsoft.Resources/subscriptions/resourceGroups/read",
        "Microsoft.Support/*",
        "Microsoft.Web/certificates/*",
        "Microsoft.Web/listSitesAssignedToHostName/read",
        "Microsoft.Web/register/action",
        "Microsoft.Web/serverFarms/join/action",
        "Microsoft.Web/serverFarms/read",
        "Microsoft.Web/sites/*"
      ],
      "notActions": [],
      "dataActions": [],
      "notDataActions": []
    }
  ],
  "roleName": "Website Contributor",
  "roleType": "BuiltInRole",
  "type": "Microsoft.Authorization/roleDefinitions"
}

Sonraki adımlar