Azure Arc Kubernetes Writer

Azure RBAC · Containers · Contributor

Azure Arc Kubernetes Writer

ContributorIAM ScopeContainers·37 na definição · ≥ 52 efetivas

Dado verificado em · Fonte

Entradas na definição

37

Actions

0

NotActions

0

DataActions

0

Alcance efetivo

piso, não total

Control plane

52

Data plane

Sem denominador

Na definição (nativo)

37

Piso, não total: expandido contra 17.591 ações de 151 providers colhidas da documentação da Microsoft. A Azure Management API expõe mais — o número real é maior, nunca menor.

O universo de ações mistura control plane e data plane sem marcar qual é qual, então não há denominador contra o qual expandir um wildcard de DataActions. Preferimos deixar em branco a publicar um número inventado.

Role ID
5b999177-9696-4545-85c7-50de3797e5a1
Categoria
Containers
Risk Tier
Contributor (CTB)
Risk Tier: Contributor

Grants full write access to create and manage all resources but cannot assign roles or manage access to others.

Descrição

Microsoft

Lets you update everything in cluster/namespace, except (cluster)roles and (cluster)role bindings.

Permissões

MicrosoftCarregando...Azure built-in roles

Role Definition (JSON)

{
"Name": "Azure Arc Kubernetes Writer",
"Id": "5b999177-9696-4545-85c7-50de3797e5a1",
"IsCustom": false,
"Description": "Lets you update everything in cluster/namespace, except (cluster)roles and (cluster)role bindings.",
"Actions": [],
"NotActions": [],
"DataActions": [],
"NotDataActions": [],
"AssignableScopes": [
"/"
]

Assignable Scopes

/

PowerShell

Get-AzRoleDefinition -Name "Azure Arc Kubernetes Writer"

Azure CLI

az role definition list --name "Azure Arc Kubernetes Writer"
Ver a documentação oficial na Microsoft Learn