Role Actions
1Control Plane
1Management Plane
0User Access
0Template ID
d35481f7-cda1-4fa2-8344-5a21f7f3724dCategoria
IdentityEAM Tier
Control Plane (Tier 0)Enterprise Access Model: Control Plane
Controle total do tenant. Comprometimento leva a takeover completo. Isole de planos inferiores.
Esta role é classificada como Control Plane porque todas as suas 1 ações são desse tier.
1 Control Plane
Ação responsável:
microsoft.directory/lockbox/requests/updateDescrição
Users with this role can approve Customer Lockbox requests for accessing customer data in Microsoft Entra ID. This role grants the ability to review and approve or deny lockbox requests submitted by Microsoft support engineers who need t...
Role Definition (JSON)
{"@odata.type": "#microsoft.graph.unifiedRoleDefinition","id": "d35481f7-cda1-4fa2-8344-5a21f7f3724d","displayName": "Entra Customer Lockbox Approver","description": "Users with this role can approve Customer Lockbox requests for accessing customer data in Microsoft Entra ID. This role grants the ability to review and approve or deny lockbox requests submitted by Microsoft support engineers who need t...","isBuiltIn": true,"isEnabled": true,"isPrivileged": false,"rolePermissions": [{"allowedResourceActions": ["microsoft.directory/lockbox/requests/update"
Permissões completas
Todas as 1 role actions desta role, classificadas por tier do EAM.
| Role Action | Categoria | Tier |
|---|---|---|
microsoft.directory/lockbox/requests/update | Tenant Management | Tier 0 |
1 de 1 role actions
PowerShell
Get-MgRoleManagementDirectoryRoleDefinition ` -UnifiedRoleDefinitionId "d35481f7-cda1-4fa2-8344-5a21f7f3724d"
Microsoft Graph
GET https://graph.microsoft.com/v1.0/ roleManagement/directory/ roleDefinitions/d35481f7-cda1-4fa2-8344-5a21f7f3724d