Azure Kubernetes Fleet Manager RBAC Admin
PrivilegiadaDado verificado em · Fonte
Entradas na definição
40Actions
0NotActions
0DataActions
0Alcance efetivo
piso, não totalControl plane
34Data plane
Sem denominadorNa definição (nativo)
40Piso, não total: expandido contra 17.591 ações de 151 providers colhidas da documentação da Microsoft. A Azure Management API expõe mais — o número real é maior, nunca menor.
O universo de ações mistura control plane e data plane sem marcar qual é qual, então não há denominador contra o qual expandir um wildcard de DataActions. Preferimos deixar em branco a publicar um número inventado.
434fb43a-c01c-447e-9f67-c3ad923cfabaGrants full write access to create and manage all resources but cannot assign roles or manage access to others.
Descrição
MicrosoftGrants read/write access to Kubernetes resources within a namespace in the fleet-managed hub cluster - provides write permissions on most objects within a a namespace, with the exception of ResourceQuota object and the namespace object itself. Applying this role at cluster scope will give access across all namespaces.
Role Definition (JSON)
{"Name": "Azure Kubernetes Fleet Manager RBAC Admin","Id": "434fb43a-c01c-447e-9f67-c3ad923cfaba","IsCustom": false,"Description": "Grants read/write access to Kubernetes resources within a namespace in the fleet-managed hub cluster - provides write permissions on most objects within a a namespace, with the exception of ResourceQuota object and the namespace object itself. Applying this role at cluster scope will give access across all namespaces.","Actions": [],"NotActions": [],"DataActions": [],"NotDataActions": [],"AssignableScopes": ["/"]
Assignable Scopes
PowerShell
Get-AzRoleDefinition -Name "Azure Kubernetes Fleet Manager RBAC Admin"
Azure CLI
az role definition list --name "Azure Kubernetes Fleet Manager RBAC Admin"