Azure roles integrados para redes

En este artículo se enumeran los Azure roles integrados en la categoría Redes.

colaborador de dominio de Azure Front Door

Para uso interno dentro de Azure. Puede administrar Azure Front Door dominios, pero no puede conceder acceso a otros usuarios.

Acciones Descripción
Microsoft. Cdn/operationresults/profileresults/customdomainresults/read
Microsoft. Cdn/profiles/customdomains/read
Microsoft. Cdn/profiles/customdomains/write
Microsoft. Cdn/profiles/customdomains/delete
Microsoft. Resources/subscriptions/resourceGroups/read Obtiene o enumera los grupos de recursos.
NotActions
ninguno
Acciones de datos
ninguno
NotDataActions
ninguno
{
  "assignableScopes": [
    "/"
  ],
  "description": "For internal use within Azure. Can manage Azure Front Door domains, but can't grant access to other users.",
  "id": "/providers/Microsoft.Authorization/roleDefinitions/0ab34830-df19-4f8c-b84e-aa85b8afa6e8",
  "name": "0ab34830-df19-4f8c-b84e-aa85b8afa6e8",
  "permissions": [
    {
      "actions": [
        "Microsoft.Cdn/operationresults/profileresults/customdomainresults/read",
        "Microsoft.Cdn/profiles/customdomains/read",
        "Microsoft.Cdn/profiles/customdomains/write",
        "Microsoft.Cdn/profiles/customdomains/delete",
        "Microsoft.Resources/subscriptions/resourceGroups/read"
      ],
      "notActions": [],
      "dataActions": [],
      "notDataActions": []
    }
  ],
  "roleName": "Azure Front Door Domain Contributor",
  "roleType": "BuiltInRole",
  "type": "Microsoft.Authorization/roleDefinitions"
}

Lector de dominio de Azure Front Door

Para uso interno dentro de Azure. Puede ver Azure Front Door dominios, pero no puede realizar cambios.

Acciones Descripción
Microsoft. Cdn/operationresults/profileresults/customdomainresults/read
Microsoft. Cdn/profiles/customdomains/read
Microsoft. Resources/subscriptions/resourceGroups/read Obtiene o enumera los grupos de recursos.
NotActions
ninguno
Acciones de datos
ninguno
NotDataActions
ninguno
{
  "assignableScopes": [
    "/"
  ],
  "description": "For internal use within Azure. Can view Azure Front Door domains, but can't make changes.",
  "id": "/providers/Microsoft.Authorization/roleDefinitions/0f99d363-226e-4dca-9920-b807cf8e1a5f",
  "name": "0f99d363-226e-4dca-9920-b807cf8e1a5f",
  "permissions": [
    {
      "actions": [
        "Microsoft.Cdn/operationresults/profileresults/customdomainresults/read",
        "Microsoft.Cdn/profiles/customdomains/read",
        "Microsoft.Resources/subscriptions/resourceGroups/read"
      ],
      "notActions": [],
      "dataActions": [],
      "notDataActions": []
    }
  ],
  "roleName": "Azure Front Door Domain Reader",
  "roleType": "BuiltInRole",
  "type": "Microsoft.Authorization/roleDefinitions"
}

Lector de perfiles de Azure Front Door

Puede ver los perfiles estándar y premium de AFD y sus puntos de conexión, pero no puede realizar cambios.

Acciones Descripción
Microsoft. Authorization/*/read Leer roles y asignaciones de roles
Microsoft. Cdn/edgenodes/read
Microsoft. Cdn/operationresults/*
Microsoft. Cdn/profiles/*/read
Microsoft. Insights/alertRules/* Creación y administración de una alerta de métricas clásica
Microsoft. Resources/deployments/* Creación y administración de una implementación
Microsoft. Resources/subscriptions/resourceGroups/read Obtiene o enumera los grupos de recursos.
Microsoft. Cdn/operationresults/profileresults/afdendpointresults/CheckCustomDomainDNSMappingStatus/action
Microsoft. Cdn/profiles/queryloganalyticsmetrics/action
Microsoft. Cdn/profiles/queryloganalyticsrankings/action
Microsoft. Cdn/profiles/querywafloganalyticsmetrics/action
Microsoft. Cdn/profiles/querywafloganalyticsrankings/action
Microsoft. Cdn/profiles/afdendpoints/CheckCustomDomainDNSMappingStatus/action
Microsoft. Cdn/profiles/Usages/action
Microsoft. Cdn/profiles/afdendpoints/Usages/action
Microsoft. Cdn/profiles/origingroups/Usages/action
Microsoft. Cdn/profiles/rulesets/Usages/action
NotActions
ninguno
Acciones de datos
ninguno
NotDataActions
ninguno
{
  "assignableScopes": [
    "/"
  ],
  "description": "Can view AFD standard and premium profiles and their endpoints, but can't make changes.",
  "id": "/providers/Microsoft.Authorization/roleDefinitions/662802e2-50f6-46b0-aed2-e834bacc6d12",
  "name": "662802e2-50f6-46b0-aed2-e834bacc6d12",
  "permissions": [
    {
      "actions": [
        "Microsoft.Authorization/*/read",
        "Microsoft.Cdn/edgenodes/read",
        "Microsoft.Cdn/operationresults/*",
        "Microsoft.Cdn/profiles/*/read",
        "Microsoft.Insights/alertRules/*",
        "Microsoft.Resources/deployments/*",
        "Microsoft.Resources/subscriptions/resourceGroups/read",
        "Microsoft.Cdn/operationresults/profileresults/afdendpointresults/CheckCustomDomainDNSMappingStatus/action",
        "Microsoft.Cdn/profiles/queryloganalyticsmetrics/action",
        "Microsoft.Cdn/profiles/queryloganalyticsrankings/action",
        "Microsoft.Cdn/profiles/querywafloganalyticsmetrics/action",
        "Microsoft.Cdn/profiles/querywafloganalyticsrankings/action",
        "Microsoft.Cdn/profiles/afdendpoints/CheckCustomDomainDNSMappingStatus/action",
        "Microsoft.Cdn/profiles/Usages/action",
        "Microsoft.Cdn/profiles/afdendpoints/Usages/action",
        "Microsoft.Cdn/profiles/origingroups/Usages/action",
        "Microsoft.Cdn/profiles/rulesets/Usages/action"
      ],
      "notActions": [],
      "dataActions": [],
      "notDataActions": []
    }
  ],
  "roleName": "Azure Front Door Profile Reader",
  "roleType": "BuiltInRole",
  "type": "Microsoft.Authorization/roleDefinitions"
}

colaborador de secretos de Azure Front Door

Para uso interno dentro de Azure. Puede administrar Azure Front Door secretos, pero no puede conceder acceso a otros usuarios.

Acciones Descripción
Microsoft. Cdn/operationresults/profileresults/secretresults/read
Microsoft. Cdn/profiles/secrets/read
Microsoft. Cdn/profiles/secrets/write
Microsoft. Cdn/profiles/secrets/delete
Microsoft. Resources/subscriptions/resourceGroups/read Obtiene o enumera los grupos de recursos.
NotActions
ninguno
Acciones de datos
ninguno
NotDataActions
ninguno
{
  "assignableScopes": [
    "/"
  ],
  "description": "For internal use within Azure. Can manage Azure Front Door secrets, but can't grant access to other users.",
  "id": "/providers/Microsoft.Authorization/roleDefinitions/3f2eb865-5811-4578-b90a-6fc6fa0df8e5",
  "name": "3f2eb865-5811-4578-b90a-6fc6fa0df8e5",
  "permissions": [
    {
      "actions": [
        "Microsoft.Cdn/operationresults/profileresults/secretresults/read",
        "Microsoft.Cdn/profiles/secrets/read",
        "Microsoft.Cdn/profiles/secrets/write",
        "Microsoft.Cdn/profiles/secrets/delete",
        "Microsoft.Resources/subscriptions/resourceGroups/read"
      ],
      "notActions": [],
      "dataActions": [],
      "notDataActions": []
    }
  ],
  "roleName": "Azure Front Door Secret Contributor",
  "roleType": "BuiltInRole",
  "type": "Microsoft.Authorization/roleDefinitions"
}

Lector de secretos de Azure Front Door

Para uso interno dentro de Azure. Puede ver Azure Front Door secretos, pero no puede realizar cambios.

Acciones Descripción
Microsoft. Cdn/operationresults/profileresults/secretresults/read
Microsoft. Cdn/profiles/secrets/read
Microsoft. Resources/subscriptions/resourceGroups/read Obtiene o enumera los grupos de recursos.
NotActions
ninguno
Acciones de datos
ninguno
NotDataActions
ninguno
{
  "assignableScopes": [
    "/"
  ],
  "description": "For internal use within Azure. Can view Azure Front Door secrets, but can't make changes.",
  "id": "/providers/Microsoft.Authorization/roleDefinitions/0db238c4-885e-4c4f-a933-aa2cef684fca",
  "name": "0db238c4-885e-4c4f-a933-aa2cef684fca",
  "permissions": [
    {
      "actions": [
        "Microsoft.Cdn/operationresults/profileresults/secretresults/read",
        "Microsoft.Cdn/profiles/secrets/read",
        "Microsoft.Resources/subscriptions/resourceGroups/read"
      ],
      "notActions": [],
      "dataActions": [],
      "notDataActions": []
    }
  ],
  "roleName": "Azure Front Door Secret Reader",
  "roleType": "BuiltInRole",
  "type": "Microsoft.Authorization/roleDefinitions"
}

Colaborador de punto de conexión de CDN

Puede administrar puntos de conexión de CDN, pero no conceder acceso a otros usuarios.

Acciones Descripción
Microsoft. Authorization/*/read Leer roles y asignaciones de roles
Microsoft. Cdn/edgenodes/read
Microsoft. Cdn/operationresults/*
Microsoft. Cdn/profiles/endpoints/*
Microsoft. Insights/alertRules/* Creación y administración de una alerta de métricas clásica
Microsoft. Resources/deployments/* Creación y administración de una implementación
Microsoft. Resources/subscriptions/resourceGroups/read Obtiene o enumera los grupos de recursos.
Microsoft. Support/* Creación y actualización de una incidencia de soporte técnico
NotActions
ninguno
Acciones de datos
ninguno
NotDataActions
ninguno
{
  "assignableScopes": [
    "/"
  ],
  "description": "Can manage CDN endpoints, but can't grant access to other users.",
  "id": "/providers/Microsoft.Authorization/roleDefinitions/426e0c7f-0c7e-4658-b36f-ff54d6c29b45",
  "name": "426e0c7f-0c7e-4658-b36f-ff54d6c29b45",
  "permissions": [
    {
      "actions": [
        "Microsoft.Authorization/*/read",
        "Microsoft.Cdn/edgenodes/read",
        "Microsoft.Cdn/operationresults/*",
        "Microsoft.Cdn/profiles/endpoints/*",
        "Microsoft.Insights/alertRules/*",
        "Microsoft.Resources/deployments/*",
        "Microsoft.Resources/subscriptions/resourceGroups/read",
        "Microsoft.Support/*"
      ],
      "notActions": [],
      "dataActions": [],
      "notDataActions": []
    }
  ],
  "roleName": "CDN Endpoint Contributor",
  "roleType": "BuiltInRole",
  "type": "Microsoft.Authorization/roleDefinitions"
}

Lector de punto de conexión de CDN

Puede ver puntos de conexión de CDN, pero no hacer cambios.

Acciones Descripción
Microsoft. Authorization/*/read Leer roles y asignaciones de roles
Microsoft. Cdn/edgenodes/read
Microsoft. Cdn/operationresults/*
Microsoft. Cdn/profiles/endpoints/*/read
Microsoft. Cdn/profiles/afdendpoints/validateCustomDomain/action
Microsoft. Insights/alertRules/* Creación y administración de una alerta de métricas clásica
Microsoft. Resources/deployments/read Obtiene o enumera implementaciones.
Microsoft. Resources/subscriptions/resourceGroups/read Obtiene o enumera los grupos de recursos.
Microsoft. Support/* Creación y actualización de una incidencia de soporte técnico
NotActions
ninguno
Acciones de datos
ninguno
NotDataActions
ninguno
{
  "assignableScopes": [
    "/"
  ],
  "description": "Can view CDN endpoints, but can't make changes.",
  "id": "/providers/Microsoft.Authorization/roleDefinitions/871e35f6-b5c1-49cc-a043-bde969a0f2cd",
  "name": "871e35f6-b5c1-49cc-a043-bde969a0f2cd",
  "permissions": [
    {
      "actions": [
        "Microsoft.Authorization/*/read",
        "Microsoft.Cdn/edgenodes/read",
        "Microsoft.Cdn/operationresults/*",
        "Microsoft.Cdn/profiles/endpoints/*/read",
        "Microsoft.Cdn/profiles/afdendpoints/validateCustomDomain/action",
        "Microsoft.Insights/alertRules/*",
        "Microsoft.Resources/deployments/read",
        "Microsoft.Resources/subscriptions/resourceGroups/read",
        "Microsoft.Support/*"
      ],
      "notActions": [],
      "dataActions": [],
      "notDataActions": []
    }
  ],
  "roleName": "CDN Endpoint Reader",
  "roleType": "BuiltInRole",
  "type": "Microsoft.Authorization/roleDefinitions"
}

Colaborador de perfil de CDN

Puede administrar cdn y Azure Front Door perfiles estándar y premium y sus puntos de conexión, pero no puede conceder acceso a otros usuarios.

Más información

Acciones Descripción
Microsoft. Authorization/*/read Leer roles y asignaciones de roles
Microsoft. Cdn/edgenodes/read
Microsoft. Cdn/operationresults/*
Microsoft. Cdn/profiles/*
Microsoft. Insights/alertRules/* Creación y administración de una alerta de métricas clásica
Microsoft. Resources/deployments/* Creación y administración de una implementación
Microsoft. Resources/subscriptions/resourceGroups/read Obtiene o enumera los grupos de recursos.
Microsoft. Support/* Creación y actualización de una incidencia de soporte técnico
NotActions
ninguno
Acciones de datos
ninguno
NotDataActions
ninguno
{
  "assignableScopes": [
    "/"
  ],
  "description": "Can manage CDN and Azure Front Door standard and premium profiles and their endpoints, but can't grant access to other users.",
  "id": "/providers/Microsoft.Authorization/roleDefinitions/ec156ff8-a8d1-4d15-830c-5b80698ca432",
  "name": "ec156ff8-a8d1-4d15-830c-5b80698ca432",
  "permissions": [
    {
      "actions": [
        "Microsoft.Authorization/*/read",
        "Microsoft.Cdn/edgenodes/read",
        "Microsoft.Cdn/operationresults/*",
        "Microsoft.Cdn/profiles/*",
        "Microsoft.Insights/alertRules/*",
        "Microsoft.Resources/deployments/*",
        "Microsoft.Resources/subscriptions/resourceGroups/read",
        "Microsoft.Support/*"
      ],
      "notActions": [],
      "dataActions": [],
      "notDataActions": []
    }
  ],
  "roleName": "CDN Profile Contributor",
  "roleType": "BuiltInRole",
  "type": "Microsoft.Authorization/roleDefinitions"
}

Lector de perfil de CDN

Puede ver perfiles de CDN y sus puntos de conexión, pero no hacer cambios.

Acciones Descripción
Microsoft. Authorization/*/read Leer roles y asignaciones de roles
Microsoft. Cdn/edgenodes/read
Microsoft. Cdn/operationresults/*
Microsoft. Cdn/profiles/*/read
Microsoft. Insights/alertRules/* Creación y administración de una alerta de métricas clásica
Microsoft. Resources/deployments/read Obtiene o enumera implementaciones.
Microsoft. Cdn/profiles/afdendpoints/validateCustomDomain/action
Microsoft. Resources/subscriptions/resourceGroups/read Obtiene o enumera los grupos de recursos.
Microsoft. Support/* Creación y actualización de una incidencia de soporte técnico
Microsoft. Cdn/profiles/CheckResourceUsage/action
Microsoft. Cdn/profiles/endpoints/CheckResourceUsage/action
NotActions
ninguno
Acciones de datos
ninguno
NotDataActions
ninguno
{
  "assignableScopes": [
    "/"
  ],
  "description": "Can view CDN profiles and their endpoints, but can't make changes.",
  "id": "/providers/Microsoft.Authorization/roleDefinitions/8f96442b-4075-438f-813d-ad51ab4019af",
  "name": "8f96442b-4075-438f-813d-ad51ab4019af",
  "permissions": [
    {
      "actions": [
        "Microsoft.Authorization/*/read",
        "Microsoft.Cdn/edgenodes/read",
        "Microsoft.Cdn/operationresults/*",
        "Microsoft.Cdn/profiles/*/read",
        "Microsoft.Insights/alertRules/*",
        "Microsoft.Resources/deployments/read",
        "Microsoft.Cdn/profiles/afdendpoints/validateCustomDomain/action",
        "Microsoft.Resources/subscriptions/resourceGroups/read",
        "Microsoft.Support/*",
        "Microsoft.Cdn/profiles/CheckResourceUsage/action",
        "Microsoft.Cdn/profiles/endpoints/CheckResourceUsage/action"
      ],
      "notActions": [],
      "dataActions": [],
      "notDataActions": []
    }
  ],
  "roleName": "CDN Profile Reader",
  "roleType": "BuiltInRole",
  "type": "Microsoft.Authorization/roleDefinitions"
}

Colaborador de la red clásica

Permite administrar las redes clásicas, pero no acceder a ellas.

Más información

Acciones Descripción
Microsoft. Authorization/*/read Leer roles y asignaciones de roles
Microsoft. ClassicNetwork/* Crear y administrar redes clásicas
Microsoft. Insights/alertRules/* Creación y administración de una alerta de métricas clásica
Microsoft. ResourceHealth/availabilityStatuses/read Obtiene los estados de disponibilidad de todos los recursos en el ámbito especificado
Microsoft. Resources/deployments/* Creación y administración de una implementación
Microsoft. Resources/subscriptions/resourceGroups/read Obtiene o enumera los grupos de recursos.
Microsoft. Support/* Creación y actualización de una incidencia de soporte técnico
NotActions
ninguno
Acciones de datos
ninguno
NotDataActions
ninguno
{
  "assignableScopes": [
    "/"
  ],
  "description": "Lets you manage classic networks, but not access to them.",
  "id": "/providers/Microsoft.Authorization/roleDefinitions/b34d265f-36f7-4a0d-a4d4-e158ca92e90f",
  "name": "b34d265f-36f7-4a0d-a4d4-e158ca92e90f",
  "permissions": [
    {
      "actions": [
        "Microsoft.Authorization/*/read",
        "Microsoft.ClassicNetwork/*",
        "Microsoft.Insights/alertRules/*",
        "Microsoft.ResourceHealth/availabilityStatuses/read",
        "Microsoft.Resources/deployments/*",
        "Microsoft.Resources/subscriptions/resourceGroups/read",
        "Microsoft.Support/*"
      ],
      "notActions": [],
      "dataActions": [],
      "notDataActions": []
    }
  ],
  "roleName": "Classic Network Contributor",
  "roleType": "BuiltInRole",
  "type": "Microsoft.Authorization/roleDefinitions"
}

Colaborador de zona DNS

Permite administrar zonas DNS y conjuntos de registros en Azure DNS, pero no permite controlar quién tiene acceso a ellas.

Más información

Acciones Descripción
Microsoft. Authorization/*/read Leer roles y asignaciones de roles
Microsoft. Insights/alertRules/* Creación y administración de una alerta de métricas clásica
Microsoft. Network/dnsZones/* Crear y administrar registros y zonas DNS
Microsoft. ResourceHealth/availabilityStatuses/read Obtiene los estados de disponibilidad de todos los recursos en el ámbito especificado
Microsoft. Resources/deployments/* Creación y administración de una implementación
Microsoft. Resources/subscriptions/resourceGroups/read Obtiene o enumera los grupos de recursos.
Microsoft. Support/* Creación y actualización de una incidencia de soporte técnico
NotActions
ninguno
Acciones de datos
ninguno
NotDataActions
ninguno
{
  "assignableScopes": [
    "/"
  ],
  "description": "Lets you manage DNS zones and record sets in Azure DNS, but does not let you control who has access to them.",
  "id": "/providers/Microsoft.Authorization/roleDefinitions/befefa01-2a29-4197-83a8-272ff33ce314",
  "name": "befefa01-2a29-4197-83a8-272ff33ce314",
  "permissions": [
    {
      "actions": [
        "Microsoft.Authorization/*/read",
        "Microsoft.Insights/alertRules/*",
        "Microsoft.Network/dnsZones/*",
        "Microsoft.ResourceHealth/availabilityStatuses/read",
        "Microsoft.Resources/deployments/*",
        "Microsoft.Resources/subscriptions/resourceGroups/read",
        "Microsoft.Support/*"
      ],
      "notActions": [],
      "dataActions": [],
      "notDataActions": []
    }
  ],
  "roleName": "DNS Zone Contributor",
  "roleType": "BuiltInRole",
  "type": "Microsoft.Authorization/roleDefinitions"
}

Colaborador de la red

Permite administrar redes, pero no acceder a ellas. Este rol no le concede permiso para implementar o administrar Virtual Machines.

Acciones Descripción
Microsoft. Authorization/*/read Leer roles y asignaciones de roles
Microsoft. Insights/alertRules/* Creación y administración de una alerta de métricas clásica
Microsoft. Network/* Crear y administrar redes
Microsoft. ResourceHealth/availabilityStatuses/read Obtiene los estados de disponibilidad de todos los recursos en el ámbito especificado
Microsoft. Resources/deployments/* Creación y administración de una implementación
Microsoft. Resources/subscriptions/resourceGroups/read Obtiene o enumera los grupos de recursos.
Microsoft. Support/* Creación y actualización de una incidencia de soporte técnico
NotActions
ninguno
Acciones de datos
ninguno
NotDataActions
ninguno
{
  "assignableScopes": [
    "/"
  ],
  "description": "Lets you manage networks, but not access to them.",
  "id": "/providers/Microsoft.Authorization/roleDefinitions/4d97b98b-1d4f-4787-a291-c67834d212e7",
  "name": "4d97b98b-1d4f-4787-a291-c67834d212e7",
  "permissions": [
    {
      "actions": [
        "Microsoft.Authorization/*/read",
        "Microsoft.Insights/alertRules/*",
        "Microsoft.Network/*",
        "Microsoft.ResourceHealth/availabilityStatuses/read",
        "Microsoft.Resources/deployments/*",
        "Microsoft.Resources/subscriptions/resourceGroups/read",
        "Microsoft.Support/*"
      ],
      "notActions": [],
      "dataActions": [],
      "notDataActions": []
    }
  ],
  "roleName": "Network Contributor",
  "roleType": "BuiltInRole",
  "type": "Microsoft.Authorization/roleDefinitions"
}

Colaborador de zona de Private DNS

Permite administrar recursos de zonas DNS privadas, pero no las redes virtuales a las que están vinculados.

Más información

Acciones Descripción
Microsoft. Insights/alertRules/* Creación y administración de una alerta de métricas clásica
Microsoft. Resources/deployments/* Creación y administración de una implementación
Microsoft. Resources/subscriptions/resourceGroups/read Obtiene o enumera los grupos de recursos.
Microsoft. Support/* Creación y actualización de una incidencia de soporte técnico
Microsoft. Network/privateDnsZones/*
Microsoft. Network/privateDnsOperationResults/*
Microsoft. Network/privateDnsOperationStatuses/*
Microsoft. Network/virtualNetworks/read Obtiene la definición de red virtual
Microsoft. Network/virtualNetworks/join/action Se une a una red virtual. No genera alertas.
Microsoft. Authorization/*/read Leer roles y asignaciones de roles
NotActions
ninguno
Acciones de datos
ninguno
NotDataActions
ninguno
{
  "assignableScopes": [
    "/"
  ],
  "description": "Lets you manage private DNS zone resources, but not the virtual networks they are linked to.",
  "id": "/providers/Microsoft.Authorization/roleDefinitions/b12aa53e-6015-4669-85d0-8515ebb3ae7f",
  "name": "b12aa53e-6015-4669-85d0-8515ebb3ae7f",
  "permissions": [
    {
      "actions": [
        "Microsoft.Insights/alertRules/*",
        "Microsoft.Resources/deployments/*",
        "Microsoft.Resources/subscriptions/resourceGroups/read",
        "Microsoft.Support/*",
        "Microsoft.Network/privateDnsZones/*",
        "Microsoft.Network/privateDnsOperationResults/*",
        "Microsoft.Network/privateDnsOperationStatuses/*",
        "Microsoft.Network/virtualNetworks/read",
        "Microsoft.Network/virtualNetworks/join/action",
        "Microsoft.Authorization/*/read"
      ],
      "notActions": [],
      "dataActions": [],
      "notDataActions": []
    }
  ],
  "roleName": "Private DNS Zone Contributor",
  "roleType": "BuiltInRole",
  "type": "Microsoft.Authorization/roleDefinitions"
}

Colaborador de Traffic Manager

Le permite administrar perfiles de Traffic Manager, pero no controlar los usuarios que tienen acceso a ellos.

Acciones Descripción
Microsoft. Authorization/*/read Leer roles y asignaciones de roles
Microsoft. Insights/alertRules/* Creación y administración de una alerta de métricas clásica
Microsoft. Network/trafficManagerProfiles/*
Microsoft. ResourceHealth/availabilityStatuses/read Obtiene los estados de disponibilidad de todos los recursos en el ámbito especificado
Microsoft. Resources/deployments/* Creación y administración de una implementación
Microsoft. Resources/subscriptions/resourceGroups/read Obtiene o enumera los grupos de recursos.
Microsoft. Support/* Creación y actualización de una incidencia de soporte técnico
NotActions
ninguno
Acciones de datos
ninguno
NotDataActions
ninguno
{
  "assignableScopes": [
    "/"
  ],
  "description": "Lets you manage Traffic Manager profiles, but does not let you control who has access to them.",
  "id": "/providers/Microsoft.Authorization/roleDefinitions/a4b10055-b0c7-44c2-b00f-c7b5b3550cf7",
  "name": "a4b10055-b0c7-44c2-b00f-c7b5b3550cf7",
  "permissions": [
    {
      "actions": [
        "Microsoft.Authorization/*/read",
        "Microsoft.Insights/alertRules/*",
        "Microsoft.Network/trafficManagerProfiles/*",
        "Microsoft.ResourceHealth/availabilityStatuses/read",
        "Microsoft.Resources/deployments/*",
        "Microsoft.Resources/subscriptions/resourceGroups/read",
        "Microsoft.Support/*"
      ],
      "notActions": [],
      "dataActions": [],
      "notDataActions": []
    }
  ],
  "roleName": "Traffic Manager Contributor",
  "roleType": "BuiltInRole",
  "type": "Microsoft.Authorization/roleDefinitions"
}

Pasos siguientes