Directory Synchronization Accounts

Control PlaneIdentity
Role Actions
1
Control Plane
0
Management Plane
1
User Access
0
Não classificadas
0
Template ID
d29b2b05-8046-44ba-8758-1e26182fcf32
Categoria
Identity
EAM Tier
Control Plane (Tier 0)
Enterprise Access Model: Control Plane

Controle total do tenant. Comprometimento leva a takeover completo. Isole de planos inferiores.

Descrição

This role is automatically assigned to the Microsoft Entra Connect service, and is not intended or supported for any other use.

Permissões completas

Todas as 1 role actions desta role, classificadas por tier do EAM.

Role ActionCategoriaTier
microsoft.directory/onPremisesSynchronization/standard/read
Tenant Configuration (Reader)Tier 1

1 de 1 role actions

PowerShell

Get-MgRoleManagementDirectoryRoleDefinition `
  -UnifiedRoleDefinitionId "d29b2b05-8046-44ba-8758-1e26182fcf32"

Microsoft Graph

GET https://graph.microsoft.com/v1.0/
  roleManagement/directory/
  roleDefinitions/d29b2b05-8046-44ba-8758-1e26182fcf32
Ver documentação oficial na Microsoft Learn

Roles relacionadas