Key Vault Crypto User
Data PlaneIAM ScopeSecurity·9 na definição · ≥ 0 efetivas
Dado verificado em · Fonte
Entradas na definição
9Actions
0NotActions
0DataActions
0Alcance efetivo
piso, não totalControl plane
0Data plane
9Na definição (nativo)
9Piso, não total: expandido contra 17.591 ações de 151 providers colhidas da documentação da Microsoft. A Azure Management API expõe mais — o número real é maior, nunca menor.
Role ID
12338af0-0e69-4776-bea7-57ae8d297424Categoria
SecurityRisk Tier
Data Plane (DP)Risk Tier: Data Plane
Grants access to data stored within services (blobs, queues, secrets, keys) without management plane control.
Descrição
MicrosoftPerform cryptographic operations using keys. Only works for key vaults that use the 'Azure role-based access control' permission model.
Role Definition (JSON)
{"Name": "Key Vault Crypto User","Id": "12338af0-0e69-4776-bea7-57ae8d297424","IsCustom": false,"Description": "Perform cryptographic operations using keys. Only works for key vaults that use the 'Azure role-based access control' permission model.","Actions": [],"NotActions": [],"DataActions": [],"NotDataActions": [],"AssignableScopes": ["/"]
Assignable Scopes
/
PowerShell
Get-AzRoleDefinition -Name "Key Vault Crypto User"
Azure CLI
az role definition list --name "Key Vault Crypto User"