708 questions with Azure Role-based access control tags

Sort by: Updated
2 answers One of the answers was accepted by the question author.

What role will I have when I migrate a subscription to a new Tenant/Directory?

Hi All, Starting in September 2024 Classic Admins will be removed. I am wondering what is going to happen when I do a migration (directory change) of a subscription from one tenant to another. Usually the user who does the "Change Directory"…

Azure Role-based access control
Azure Role-based access control
An Azure service that provides fine-grained access management for Azure resources, enabling you to grant users only the rights they need to perform their jobs.
708 questions
Microsoft Entra ID
Microsoft Entra ID
A Microsoft Entra identity service that provides identity management and access control capabilities. Replaces Azure Active Directory.
20,316 questions
Azure Startups
Azure Startups
Azure: A cloud computing platform and infrastructure for building, deploying and managing applications and services through a worldwide network of Microsoft-managed datacenters.Startups: Companies that are in their initial stages of business and typically developing a business model and seeking financing.
236 questions
asked 2024-04-24T09:31:31.7566667+00:00
John Doyle 51 Reputation points
edited the question 2024-07-03T04:17:03.4366667+00:00
Ryan Hill 26,866 Reputation points Microsoft Employee
0 answers

Could you explain how to configure the following virtual machine settings?

To address the tasks you've outlined, here's a structured approach: For restricting demoVM1's access to only Facebook and YouTube, implement URL filtering rules on the network device or use a firewall policy that only allows these URLs. To create a…

Azure Virtual Network
Azure Virtual Network
An Azure networking service that is used to provision private networks and optionally to connect to on-premises datacenters.
2,256 questions
Azure Role-based access control
Azure Role-based access control
An Azure service that provides fine-grained access management for Azure resources, enabling you to grant users only the rights they need to perform their jobs.
708 questions
asked 2024-07-02T15:37:40.4866667+00:00
Kishore 0 Reputation points
edited the question 2024-07-03T03:45:43.1733333+00:00
Givary-MSFT 30,176 Reputation points Microsoft Employee
0 answers

How to Access APIM API from Azure Function with Managed Identity without OAuth authentication call

I have created a function app to call an API from APIM and I have added security of Auth 2.0 in the API settings. Also I have added Managed identity to the function app , and added that managed identity in APIM IAM to give API Management Service Reader…

Microsoft Identity Manager
Microsoft Identity Manager
A family of Microsoft products that manage a user's digital identity using identity synchronization, certificate management, and user provisioning.
645 questions
Azure API Management
Azure API Management
An Azure service that provides a hybrid, multi-cloud management platform for APIs.
1,900 questions
Azure Functions
Azure Functions
An Azure service that provides an event-driven serverless compute platform.
4,553 questions
Azure Role-based access control
Azure Role-based access control
An Azure service that provides fine-grained access management for Azure resources, enabling you to grant users only the rights they need to perform their jobs.
708 questions
asked 2024-07-02T11:56:11.2633333+00:00
Dixan Lal Thomas 20 Reputation points
commented 2024-07-02T15:23:10.61+00:00
Ben Gimblett 3,825 Reputation points Microsoft Employee
1 answer One of the answers was accepted by the question author.

Identity architecture: Conditional access with MFA

How to use a Conditional Access with multifactor authentication (MFA) in free trial version? Which license are required using Conditional Access? Which better I can use a conditional access under the following web address: - www.portel.azure.com …

Azure Role-based access control
Azure Role-based access control
An Azure service that provides fine-grained access management for Azure resources, enabling you to grant users only the rights they need to perform their jobs.
708 questions
Active Directory
Active Directory
A set of directory-based technologies included in Windows Server.
6,131 questions
Microsoft Entra ID
Microsoft Entra ID
A Microsoft Entra identity service that provides identity management and access control capabilities. Replaces Azure Active Directory.
20,316 questions
asked 2024-07-01T11:36:33.72+00:00
Sandeep Kumar 20 Reputation points
commented 2024-07-02T04:18:21.9966667+00:00
Sandeep Kumar 20 Reputation points
1 answer

Issues with API call to get Azure service tags - Service Tag Discovery API

I am trying to execute API calls to get the Azure IP Ranges and Service Tags – Public Cloud (see link https://www.microsoft.com/en-us/download/details.aspx?id=56519). I was able to setup an Azure account and created an app. I created a Python script to…

Azure Role-based access control
Azure Role-based access control
An Azure service that provides fine-grained access management for Azure resources, enabling you to grant users only the rights they need to perform their jobs.
708 questions
Microsoft Entra ID
Microsoft Entra ID
A Microsoft Entra identity service that provides identity management and access control capabilities. Replaces Azure Active Directory.
20,316 questions
asked 2024-06-28T16:29:14.31+00:00
Externo Euroairlines 0 Reputation points
edited the question 2024-07-01T04:12:27.32+00:00
KapilAnanth-MSFT 39,211 Reputation points Microsoft Employee
2 answers One of the answers was accepted by the question author.

How to protect sensitive data in Azure?

I would like to load sensitive data in an Azure Data Lake Storage Gen2. I need to make sure that this data can not be read by the global administrator or any other kind of super user. How can this be realized? I think role-based access control is not…

Azure Data Lake Storage
Azure Data Lake Storage
An Azure service that provides an enterprise-wide hyper-scale repository for big data analytic workloads and is integrated with Azure Blob Storage.
1,408 questions
Azure Role-based access control
Azure Role-based access control
An Azure service that provides fine-grained access management for Azure resources, enabling you to grant users only the rights they need to perform their jobs.
708 questions
asked 2024-06-24T06:30:46.3766667+00:00
Schmitz, Simon 20 Reputation points
commented 2024-06-28T08:29:45.51+00:00
Schmitz, Simon 20 Reputation points
1 answer

Azure portal access invite is failing for READ ONLY user with error 'Invite Redemption failed'

I have invited a user by adding in role based access in Azure portal with read only access. This have generated a meeting invited but while redeeming the meeting invite it is failing with above error. Please help what to check.

Azure Role-based access control
Azure Role-based access control
An Azure service that provides fine-grained access management for Azure resources, enabling you to grant users only the rights they need to perform their jobs.
708 questions
asked 2024-06-27T07:44:04.9566667+00:00
Sanjay 10 Reputation points
answered 2024-06-27T21:49:22.49+00:00
Marilee Turscak-MSFT 35,901 Reputation points Microsoft Employee
3 answers

Difficulty creating a custom role with specific permissions

Hello, I am trying to create a custom role on the Azure portal that includes a number of permissions from the existing Auth Admin role. However, I cannot find certain permissions such as microsoft.directory/users/authenticationMethods/create,…

Azure Role-based access control
Azure Role-based access control
An Azure service that provides fine-grained access management for Azure resources, enabling you to grant users only the rights they need to perform their jobs.
708 questions
asked 2023-09-04T22:21:58.8266667+00:00
Hari Sheth 0 Reputation points
commented 2024-06-27T12:00:33.5033333+00:00
Abbi Maguddayao 0 Reputation points
2 answers

not able to change access configuration policy

CODE InsufficientPermissions MESSAGE RAW ERROR Caller is not allowed to change permission model. For more information on how to change the permissions model follow this link: https://go.microsoft.com/fwlink/?linkid=2155160. Details:…

Azure Key Vault
Azure Key Vault
An Azure service that is used to manage and protect cryptographic keys and other secrets used by cloud apps and services.
1,171 questions
Azure Role-based access control
Azure Role-based access control
An Azure service that provides fine-grained access management for Azure resources, enabling you to grant users only the rights they need to perform their jobs.
708 questions
asked 2023-10-19T05:18:01.9833333+00:00
himani ghildiyal 5 Reputation points
answered 2024-06-25T12:49:22.81+00:00
David MATTON 0 Reputation points
1 answer

Metadata permissions clarity

Hello, Having a few doubts related to Metadata permissions. What is metadata read/write permissions? What is the use of it, and whether this permission is required for an user who majorly uses only Azure portal for managing the resources? How to…

Azure Cosmos DB
Azure Cosmos DB
An Azure NoSQL database service for app development.
1,514 questions
Azure Role-based access control
Azure Role-based access control
An Azure service that provides fine-grained access management for Azure resources, enabling you to grant users only the rights they need to perform their jobs.
708 questions
asked 2024-06-17T06:35:44.6733333+00:00
Alex 355 Reputation points
commented 2024-06-25T03:43:33.7233333+00:00
Alex 355 Reputation points
1 answer

Unable to remove constraint for owner role

I added a constraint on owner role under "Role assignment condition" I am trying to delete that constraint .Using the following steps But Im getting the following error . Can anyone please guide me with a solution . Appreciate…

Azure Role-based access control
Azure Role-based access control
An Azure service that provides fine-grained access management for Azure resources, enabling you to grant users only the rights they need to perform their jobs.
708 questions
Microsoft Entra ID
Microsoft Entra ID
A Microsoft Entra identity service that provides identity management and access control capabilities. Replaces Azure Active Directory.
20,316 questions
asked 2023-11-20T23:57:52.1866667+00:00
Eda Amos 0 Reputation points
commented 2024-06-24T23:04:32.0266667+00:00
Zawar Khan 0 Reputation points
0 answers

Azure Policy: check subscription role assignments

Hi everyone We have different types of users in our Azure AD. Only a certain subset of them are allowed to administer Azure resources. Those all start with "ACO" or "ACA". We now wish to create an Azure Policy that checks whether only…

Azure Role-based access control
Azure Role-based access control
An Azure service that provides fine-grained access management for Azure resources, enabling you to grant users only the rights they need to perform their jobs.
708 questions
Azure Policy
Azure Policy
An Azure service that is used to implement corporate governance and standards at scale for Azure resources.
819 questions
Microsoft Entra ID
Microsoft Entra ID
A Microsoft Entra identity service that provides identity management and access control capabilities. Replaces Azure Active Directory.
20,316 questions
asked 2023-03-16T08:43:26.8633333+00:00
Tobias Petter 6 Reputation points
commented 2024-06-24T17:53:57.21+00:00
John Kelland (Insight Global, Inc.) 0 Reputation points Microsoft Employee
0 answers

Lighthouse

Hello All, I gave Contributor role (on a subscription) to users via Lighthouse to manage a customer. The users get access with no problem to the customer subscription, can start and stop VM, create a resource group, start and stop backup, etc. The…

Azure Lighthouse
Azure Lighthouse
An Azure service that provides secure managed services and access control for partners and customers.
70 questions
Azure Role-based access control
Azure Role-based access control
An Azure service that provides fine-grained access management for Azure resources, enabling you to grant users only the rights they need to perform their jobs.
708 questions
asked 2024-06-19T10:07:04.94+00:00
Tristano,G,Giuseppe,JBP12 R 21 Reputation points
commented 2024-06-20T10:17:04.89+00:00
Tristano,G,Giuseppe,JBP12 R 21 Reputation points
1 answer

What pre-built role to read the Microsoft Defender for Endpoint and vulnerabilities

what pre-built role (in intune or Entra ID) can be assigned to read the Microsoft Defender for Endpoint and vulnerabilities, Global Reader and Security Reader can only Read Defender for Identity or Defender for cloud but for some reason can't access to…

Azure Role-based access control
Azure Role-based access control
An Azure service that provides fine-grained access management for Azure resources, enabling you to grant users only the rights they need to perform their jobs.
708 questions
Microsoft Defender for Endpoint Training
Microsoft Defender for Endpoint Training
Microsoft Defender for Endpoint: A Microsoft unified security platform for preventative protection, postbreach detection, and automated investigation and response. Previously known as Microsoft Defender Advanced Threat Protection.Training: Instruction to develop new skills.
27 questions
asked 2024-06-14T09:00:48.3333333+00:00
HazyBazy 0 Reputation points
commented 2024-06-19T09:01:09.0666667+00:00
HazyBazy 0 Reputation points
3 answers

Deleting duplicate owner in role assignment leads to lost of Access to Azure Subscription

Hello, Not long ago, I tried assigning roles to my coworkers. When all thing's done, I saw that there are 4 duplicates of my account in the owner role, so i tried deleting 2 of those role. After that azure portal won't let me in with message saying I'm…

Azure Role-based access control
Azure Role-based access control
An Azure service that provides fine-grained access management for Azure resources, enabling you to grant users only the rights they need to perform their jobs.
708 questions
asked 2024-06-04T07:24:36.06+00:00
William 0 Reputation points
answered 2024-06-19T03:21:20.9733333+00:00
Navya 6,115 Reputation points Microsoft Vendor
0 answers

Assistance Required: Issues with ARM Template Deployment for Managed Identity

Hello Azure Community, I am experiencing issues with deploying my resources via an ARM template. Despite having all the 'dependsOn' elements specified, the deployment continues to fail. Below, I have provided the relevant parts of my ARM template and the…

Microsoft Identity Manager
Microsoft Identity Manager
A family of Microsoft products that manage a user's digital identity using identity synchronization, certificate management, and user provisioning.
645 questions
Azure Role-based access control
Azure Role-based access control
An Azure service that provides fine-grained access management for Azure resources, enabling you to grant users only the rights they need to perform their jobs.
708 questions
asked 2024-06-17T22:19:11.06+00:00
Djordje Djukic (AKVELON INC) 0 Reputation points Microsoft Vendor
commented 2024-06-18T09:05:16.7966667+00:00
Dan Rios 1,735 Reputation points MVP
0 answers

Issue in connecting cognitive service to communication

I am trying to connect azure cognitive service to communication service. Followed the tutorial in mic learn for the process. I have subscribed a phone number in communication service resource, created a webhook link. Any calls made to the number is…

Azure AI Speech
Azure AI Speech
An Azure service that integrates speech processing into apps and services.
1,506 questions
Azure Communication Services
Azure Communication Services
An Azure communication platform for deploying applications across devices and platforms.
776 questions
Azure Role-based access control
Azure Role-based access control
An Azure service that provides fine-grained access management for Azure resources, enabling you to grant users only the rights they need to perform their jobs.
708 questions
Azure AI services
Azure AI services
A group of Azure services, SDKs, and APIs designed to make apps more intelligent, engaging, and discoverable.
2,570 questions
Microsoft Entra ID
Microsoft Entra ID
A Microsoft Entra identity service that provides identity management and access control capabilities. Replaces Azure Active Directory.
20,316 questions
asked 2024-06-16T12:29:02.3433333+00:00
Laxmiprasad Putta 0 Reputation points
commented 2024-06-18T06:18:52.9366667+00:00
YutongTie-MSFT 47,991 Reputation points
1 answer

Issue in connecting cognitive service to communication

Facing 403 forbidden error. What could be the issue

Azure Communication Services
Azure Communication Services
An Azure communication platform for deploying applications across devices and platforms.
776 questions
Azure Role-based access control
Azure Role-based access control
An Azure service that provides fine-grained access management for Azure resources, enabling you to grant users only the rights they need to perform their jobs.
708 questions
Azure AI services
Azure AI services
A group of Azure services, SDKs, and APIs designed to make apps more intelligent, engaging, and discoverable.
2,570 questions
asked 2024-06-16T12:30:42.21+00:00
Laxmiprasad Putta 0 Reputation points
edited the question 2024-06-18T02:29:16.04+00:00
AshokPeddakotla-MSFT 29,986 Reputation points
1 answer

I have subscription , in the subscription there are so many users with contributor access , i want to give access to see the state file to only one spn user how can we do that?

i have azure subsciption , i have contributor role for multiple users in the subscription leval , i have one storage account , in the storage account one state file is there, it only visisble for one particular spn user other then all the contributor…

Azure Virtual Machines
Azure Virtual Machines
An Azure service that is used to provision Windows and Linux virtual machines.
7,460 questions
Azure VMware Solution
Azure VMware Solution
An Azure service that runs native VMware workloads on Azure.
334 questions
Azure Role-based access control
Azure Role-based access control
An Azure service that provides fine-grained access management for Azure resources, enabling you to grant users only the rights they need to perform their jobs.
708 questions
Azure App Service
Azure App Service
Azure App Service is a service used to create and deploy scalable, mission-critical web apps.
7,258 questions
Microsoft Entra ID
Microsoft Entra ID
A Microsoft Entra identity service that provides identity management and access control capabilities. Replaces Azure Active Directory.
20,316 questions
asked 2024-06-12T16:28:47.78+00:00
Tamil Selvan M 5 Reputation points
commented 2024-06-17T18:44:15.9766667+00:00
kobulloc-MSFT 25,651 Reputation points Microsoft Employee
1 answer

I want to limit acccess for some staff to our static IP addresses

We promote not taking work home. We have set up static IP addresses for some of out locations and we want to limit some of our staff to only be able to access MS applications from those locations. I do have a P2 license and I am a global admin.

Azure Role-based access control
Azure Role-based access control
An Azure service that provides fine-grained access management for Azure resources, enabling you to grant users only the rights they need to perform their jobs.
708 questions
asked 2024-06-12T15:32:13.1833333+00:00
Jack Loomis 0 Reputation points
commented 2024-06-17T06:43:18.9+00:00
Shweta Mathur 29,031 Reputation points Microsoft Employee