Role Information
Details and metadata
3d5f3eff-eb94-473d-91e3-7aac74d6c0bb
Change History
Track all modifications to this role
Updated On
Event Type
Summary & Details
2025-09-16 15:14:52
Initial Scan
Show full JSON
{
"properties": {
"roleName": "Enclave Owner Role",
"type": "BuiltInRole",
"description": "Enclave Owner Role to access the resources of Microsoft.Mission stored with RPSAAS.",
"assignableScopes": [
"/"
],
"permissions": [
{
"actions": [
"Microsoft.Mission/Locations/OperationStatuses/read",
"Microsoft.Mission/Locations/OperationStatuses/write",
"Microsoft.Mission/Operations/read",
"Microsoft.Mission/virtualEnclaves/read",
"Microsoft.Mission/virtualEnclaves/write",
"Microsoft.Mission/virtualEnclaves/delete",
"Microsoft.Mission/virtualEnclaves/workloads/read",
"Microsoft.Mission/virtualEnclaves/workloads/write",
"Microsoft.Mission/virtualEnclaves/workloads/delete",
"Microsoft.Mission/communities/read",
"Microsoft.Authorization/*/read",
"Microsoft.Insights/alertRules/read",
"Microsoft.Resources/deployments/read",
"Microsoft.Resources/deployments/write",
"Microsoft.Resources/subscriptions/read",
"Microsoft.Resources/subscriptions/resourceGroups/read",
"Microsoft.Resources/subscriptions/resourcegroups/deployments/read",
"Microsoft.Resources/subscriptions/operationresults/read",
"Microsoft.ResourceHealth/availabilityStatuses/read",
"Microsoft.Features/providers/features/read",
"Microsoft.Features/features/read",
"Microsoft.Mission/communities/communityEndpoints/read",
"Microsoft.Mission/communities/transitHubs/read",
"Microsoft.Mission/enclaveConnections/read",
"Microsoft.Mission/enclaveConnections/write",
"Microsoft.Mission/enclaveConnections/delete",
"Microsoft.Mission/virtualEnclaves/enclaveEndpoints/read",
"Microsoft.Mission/virtualEnclaves/enclaveEndpoints/write",
"Microsoft.Mission/virtualEnclaves/enclaveEndpoints/delete",
"Microsoft.Mission/approvals/read",
"Microsoft.Mission/approvals/write",
"Microsoft.Mission/approvals/delete",
"Microsoft.Mission/virtualEnclaves/setWorkloadRoleAssignments/action",
"Microsoft.Mission/virtualEnclaves/setEnclaveRoleAssignments/action",
"Microsoft.Mission/virtualenclaves/setMaintenanceMode/action",
"Microsoft.Mission/virtualEnclaves/setSubnetConfiguration/action",
"Microsoft.Mission/virtualEnclaves/enclaveEndpoints/connect/action",
"Microsoft.Mission/enclaveConnections/setSourceCidr/action"
],
"notActions": [],
"dataActions": [],
"notDataActions": []
}
],
"createdOn": "2023-12-07T16:26:10.041Z",
"updatedOn": "2025-09-16T15:14:52.713Z",
"createdBy": null,
"updatedBy": null
},
"id": "/providers/Microsoft.Authorization/roleDefinitions/3d5f3eff-eb94-473d-91e3-7aac74d6c0bb",
"type": "Microsoft.Authorization/roleDefinitions",
"name": "3d5f3eff-eb94-473d-91e3-7aac74d6c0bb"
}
2025-09-16 15:14:52
Initial Scan
View details
{
"properties": {
"roleName": "Enclave Owner Role",
"type": "BuiltInRole",
"description": "Enclave Owner Role to access the resources of Microsoft.Mission stored with RPSAAS.",
"assignableScopes": [
"/"
],
"permissions": [
{
"actions": [
"Microsoft.Mission/Locations/OperationStatuses/read",
"Microsoft.Mission/Locations/OperationStatuses/write",
"Microsoft.Mission/Operations/read",
"Microsoft.Mission/virtualEnclaves/read",
"Microsoft.Mission/virtualEnclaves/write",
"Microsoft.Mission/virtualEnclaves/delete",
"Microsoft.Mission/virtualEnclaves/workloads/read",
"Microsoft.Mission/virtualEnclaves/workloads/write",
"Microsoft.Mission/virtualEnclaves/workloads/delete",
"Microsoft.Mission/communities/read",
"Microsoft.Authorization/*/read",
"Microsoft.Insights/alertRules/read",
"Microsoft.Resources/deployments/read",
"Microsoft.Resources/deployments/write",
"Microsoft.Resources/subscriptions/read",
"Microsoft.Resources/subscriptions/resourceGroups/read",
"Microsoft.Resources/subscriptions/resourcegroups/deployments/read",
"Microsoft.Resources/subscriptions/operationresults/read",
"Microsoft.ResourceHealth/availabilityStatuses/read",
"Microsoft.Features/providers/features/read",
"Microsoft.Features/features/read",
"Microsoft.Mission/communities/communityEndpoints/read",
"Microsoft.Mission/communities/transitHubs/read",
"Microsoft.Mission/enclaveConnections/read",
"Microsoft.Mission/enclaveConnections/write",
"Microsoft.Mission/enclaveConnections/delete",
"Microsoft.Mission/virtualEnclaves/enclaveEndpoints/read",
"Microsoft.Mission/virtualEnclaves/enclaveEndpoints/write",
"Microsoft.Mission/virtualEnclaves/enclaveEndpoints/delete",
"Microsoft.Mission/approvals/read",
"Microsoft.Mission/approvals/write",
"Microsoft.Mission/approvals/delete",
"Microsoft.Mission/virtualEnclaves/setWorkloadRoleAssignments/action",
"Microsoft.Mission/virtualEnclaves/setEnclaveRoleAssignments/action",
"Microsoft.Mission/virtualenclaves/setMaintenanceMode/action",
"Microsoft.Mission/virtualEnclaves/setSubnetConfiguration/action",
"Microsoft.Mission/virtualEnclaves/enclaveEndpoints/connect/action",
"Microsoft.Mission/enclaveConnections/setSourceCidr/action"
],
"notActions": [],
"dataActions": [],
"notDataActions": []
}
],
"createdOn": "2023-12-07T16:26:10.041Z",
"updatedOn": "2025-09-16T15:14:52.713Z",
"createdBy": null,
"updatedBy": null
},
"id": "/providers/Microsoft.Authorization/roleDefinitions/3d5f3eff-eb94-473d-91e3-7aac74d6c0bb",
"type": "Microsoft.Authorization/roleDefinitions",
"name": "3d5f3eff-eb94-473d-91e3-7aac74d6c0bb"
}
Latest Role JSON
Raw definition from Azure
{
"properties": {
"roleName": "Enclave Owner Role",
"type": "BuiltInRole",
"description": "Enclave Owner Role to access the resources of Microsoft.Mission stored with RPSAAS.",
"assignableScopes": [
"/"
],
"permissions": [
{
"actions": [
"Microsoft.Mission/Locations/OperationStatuses/read",
"Microsoft.Mission/Locations/OperationStatuses/write",
"Microsoft.Mission/Operations/read",
"Microsoft.Mission/virtualEnclaves/read",
"Microsoft.Mission/virtualEnclaves/write",
"Microsoft.Mission/virtualEnclaves/delete",
"Microsoft.Mission/virtualEnclaves/workloads/read",
"Microsoft.Mission/virtualEnclaves/workloads/write",
"Microsoft.Mission/virtualEnclaves/workloads/delete",
"Microsoft.Mission/communities/read",
"Microsoft.Authorization/*/read",
"Microsoft.Insights/alertRules/read",
"Microsoft.Resources/deployments/read",
"Microsoft.Resources/deployments/write",
"Microsoft.Resources/subscriptions/read",
"Microsoft.Resources/subscriptions/resourceGroups/read",
"Microsoft.Resources/subscriptions/resourcegroups/deployments/read",
"Microsoft.Resources/subscriptions/operationresults/read",
"Microsoft.ResourceHealth/availabilityStatuses/read",
"Microsoft.Features/providers/features/read",
"Microsoft.Features/features/read",
"Microsoft.Mission/communities/communityEndpoints/read",
"Microsoft.Mission/communities/transitHubs/read",
"Microsoft.Mission/enclaveConnections/read",
"Microsoft.Mission/enclaveConnections/write",
"Microsoft.Mission/enclaveConnections/delete",
"Microsoft.Mission/virtualEnclaves/enclaveEndpoints/read",
"Microsoft.Mission/virtualEnclaves/enclaveEndpoints/write",
"Microsoft.Mission/virtualEnclaves/enclaveEndpoints/delete",
"Microsoft.Mission/approvals/read",
"Microsoft.Mission/approvals/write",
"Microsoft.Mission/approvals/delete",
"Microsoft.Mission/virtualEnclaves/setWorkloadRoleAssignments/action",
"Microsoft.Mission/virtualEnclaves/setEnclaveRoleAssignments/action",
"Microsoft.Mission/virtualenclaves/setMaintenanceMode/action",
"Microsoft.Mission/virtualEnclaves/setSubnetConfiguration/action",
"Microsoft.Mission/virtualEnclaves/enclaveEndpoints/connect/action",
"Microsoft.Mission/enclaveConnections/setSourceCidr/action"
],
"notActions": [],
"dataActions": [],
"notDataActions": []
}
],
"createdOn": "2023-12-07T16:26:10.041Z",
"updatedOn": "2025-09-16T15:14:52.713Z",
"createdBy": null,
"updatedBy": null
},
"id": "/providers/Microsoft.Authorization/roleDefinitions/3d5f3eff-eb94-473d-91e3-7aac74d6c0bb",
"type": "Microsoft.Authorization/roleDefinitions",
"name": "3d5f3eff-eb94-473d-91e3-7aac74d6c0bb"
}
Effective Permissions
Operations granted by this role (64 total)
Permission Patterns (from role definition)
Actions
38 patterns
Microsoft.Mission/Locations/OperationStatuses/read
Microsoft.Mission/Locations/OperationStatuses/write
Microsoft.Mission/Operations/read
Microsoft.Mission/virtualEnclaves/read
Microsoft.Mission/virtualEnclaves/write
Microsoft.Mission/virtualEnclaves/delete
Microsoft.Mission/virtualEnclaves/workloads/read
Microsoft.Mission/virtualEnclaves/workloads/write
Microsoft.Mission/virtualEnclaves/workloads/delete
Microsoft.Mission/communities/read
Microsoft.Authorization/*/read
Microsoft.Insights/alertRules/read
Microsoft.Resources/deployments/read
Microsoft.Resources/deployments/write
Microsoft.Resources/subscriptions/read
Microsoft.Resources/subscriptions/resourceGroups/read
Microsoft.Resources/subscriptions/resourcegroups/deployments/read
Microsoft.Resources/subscriptions/operationresults/read
Microsoft.ResourceHealth/availabilityStatuses/read
Microsoft.Features/providers/features/read
Microsoft.Features/features/read
Microsoft.Mission/communities/communityEndpoints/read
Microsoft.Mission/communities/transitHubs/read
Microsoft.Mission/enclaveConnections/read
Microsoft.Mission/enclaveConnections/write
Microsoft.Mission/enclaveConnections/delete
Microsoft.Mission/virtualEnclaves/enclaveEndpoints/read
Microsoft.Mission/virtualEnclaves/enclaveEndpoints/write
Microsoft.Mission/virtualEnclaves/enclaveEndpoints/delete
Microsoft.Mission/approvals/read
Microsoft.Mission/approvals/write
Microsoft.Mission/approvals/delete
Microsoft.Mission/virtualEnclaves/setWorkloadRoleAssignments/action
Microsoft.Mission/virtualEnclaves/setEnclaveRoleAssignments/action
Microsoft.Mission/virtualenclaves/setMaintenanceMode/action
Microsoft.Mission/virtualEnclaves/setSubnetConfiguration/action
Microsoft.Mission/virtualEnclaves/enclaveEndpoints/connect/action
Microsoft.Mission/enclaveConnections/setSourceCidr/action