How to get assigned RBAC roles in a resource group which has only apps and managed identities as owners and administrators?

Aniruddha Acharya Kadlabalkoti 20 Reputation points Microsoft Employee
2024-06-04T09:13:11.47+00:00

I want myself to have Managed Identity Contributor role in an azure resource, but I cant find the admin or owner. Only managed identities and apps are listed as owners and administrators. Whom to ask for role assignment?

Azure Role-based access control
Azure Role-based access control
An Azure service that provides fine-grained access management for Azure resources, enabling you to grant users only the rights they need to perform their jobs.
708 questions
0 comments No comments
{count} votes

2 additional answers

Sort by: Most helpful
  1. Babafemi Bulugbe 2,985 Reputation points MVP
    2024-06-04T09:30:39.2266667+00:00

    Hello Aniruddha Acharya Kadlabalkoti,

    Thank you for posting your query in the Microsoft Q&A Community.

    I understand that you would like to know who the Owner of the Subscription.

    Based on what you have mentioned, the resource group might be used solely for automation which is the reason behind assigning Owner roles to the managed Identities and Service principals.

    To be assigned a Managed Identity Contributor role in the Resource group or with the Subscription, the user with the Owner or Privileged role permission will need to complete this process.

    You can log in to Azure Portal, and then navigate to your subscription. On the Subscription page, click Access Control (IAM) and scroll through role assignments you will find the owners.

    User's image

    Let me know if further assistance is needed.

    Babafemi


  2. Sandeep G-MSFT 16,361 Reputation points Microsoft Employee
    2024-06-06T15:34:40.3666667+00:00

    @Aniruddha Acharya Kadlabalkoti

    Thank you for posting this in Microsoft Q&A.

    If you do not have any owner roles user assigned in your tenant, then to find the current user who has owner role, you will have to contact data protection team.

    This team will confirm your tenant ownership and then share the details of owner of your tenant, or they will create an additional account with owner permissions and share then with you.

    You can look into below article to get support numbers depending on your country. 

    https://support.microsoft.com/en-us/topic/global-customer-service-phone-numbers-c0389ade-5640-e588-8b0e-28de8afeb3f2

    or creating a ticket through a different account:  https://video2.skills-academy.com/en-us/microsoft-365/admin/get-help-support?view=o365-worldwide#phone-support

    Create a ticket with Microsoft support team. Give them the tenant ID which is in question. Tell them that no owner accounts has access to the tenant anymore and your partners also have no access anymore.

    Once you create a ticket with support team you will have to work with our data protection team. You will have to first prove your identity against your tenant for security purpose. Post that this team will help you with help you in getting access to your tenant with owner role permissions.

    Let us know if you have any further questions.

    Please "Accept the answer" if the information helped you. This will help us and others in the community as well.