Role Information
Details and metadata
5bc02df6-6cd5-43fe-ad3d-4c93cf56cc16
Change History
Track all modifications to this role since 2025-12-15 01:08:16+00:00
Updated On
Event Type
Summary & Details
2025-07-17 15:20:10
Initial Scan
Show full JSON
{
"properties": {
"roleName": "Azure IoT Operations Administrator",
"type": "BuiltInRole",
"description": "View, create, edit and delete AIO resources. Manage all resources, including instance and its downstream resources.",
"assignableScopes": [
"/"
],
"permissions": [
{
"actions": [
"Microsoft.IoTOperations/*",
"Microsoft.Authorization/*/read",
"Microsoft.DeviceRegistry/Assets/*",
"Microsoft.DeviceRegistry/AssetEndpointProfiles/*",
"Microsoft.DeviceRegistry/Namespaces/Assets/*",
"Microsoft.DeviceRegistry/Namespaces/Devices/*",
"Microsoft.DeviceRegistry/Namespaces/DiscoveredAssets/*",
"Microsoft.DeviceRegistry/Namespaces/DiscoveredDevices/*",
"Microsoft.DeviceRegistry/SchemaRegistries/*",
"Microsoft.Insights/alertRules/*",
"Microsoft.Resources/deployments/*",
"Microsoft.Resources/subscriptions/resourceGroups/read",
"Microsoft.Edge/sites/read"
],
"notActions": [],
"dataActions": [],
"notDataActions": []
}
],
"createdOn": "2025-07-07T15:00:15.333Z",
"updatedOn": "2025-07-17T15:20:10.582Z",
"createdBy": null,
"updatedBy": null
},
"id": "/providers/Microsoft.Authorization/roleDefinitions/5bc02df6-6cd5-43fe-ad3d-4c93cf56cc16",
"type": "Microsoft.Authorization/roleDefinitions",
"name": "5bc02df6-6cd5-43fe-ad3d-4c93cf56cc16"
}
2025-07-17 15:20:10
Initial Scan
View details
{
"properties": {
"roleName": "Azure IoT Operations Administrator",
"type": "BuiltInRole",
"description": "View, create, edit and delete AIO resources. Manage all resources, including instance and its downstream resources.",
"assignableScopes": [
"/"
],
"permissions": [
{
"actions": [
"Microsoft.IoTOperations/*",
"Microsoft.Authorization/*/read",
"Microsoft.DeviceRegistry/Assets/*",
"Microsoft.DeviceRegistry/AssetEndpointProfiles/*",
"Microsoft.DeviceRegistry/Namespaces/Assets/*",
"Microsoft.DeviceRegistry/Namespaces/Devices/*",
"Microsoft.DeviceRegistry/Namespaces/DiscoveredAssets/*",
"Microsoft.DeviceRegistry/Namespaces/DiscoveredDevices/*",
"Microsoft.DeviceRegistry/SchemaRegistries/*",
"Microsoft.Insights/alertRules/*",
"Microsoft.Resources/deployments/*",
"Microsoft.Resources/subscriptions/resourceGroups/read",
"Microsoft.Edge/sites/read"
],
"notActions": [],
"dataActions": [],
"notDataActions": []
}
],
"createdOn": "2025-07-07T15:00:15.333Z",
"updatedOn": "2025-07-17T15:20:10.582Z",
"createdBy": null,
"updatedBy": null
},
"id": "/providers/Microsoft.Authorization/roleDefinitions/5bc02df6-6cd5-43fe-ad3d-4c93cf56cc16",
"type": "Microsoft.Authorization/roleDefinitions",
"name": "5bc02df6-6cd5-43fe-ad3d-4c93cf56cc16"
}
Latest Role JSON
Raw definition from Azure
{
"properties": {
"roleName": "Azure IoT Operations Administrator",
"type": "BuiltInRole",
"description": "View, create, edit and delete AIO resources. Manage all resources, including instance and its downstream resources.",
"assignableScopes": [
"/"
],
"permissions": [
{
"actions": [
"Microsoft.IoTOperations/*",
"Microsoft.Authorization/*/read",
"Microsoft.DeviceRegistry/Assets/*",
"Microsoft.DeviceRegistry/AssetEndpointProfiles/*",
"Microsoft.DeviceRegistry/Namespaces/Assets/*",
"Microsoft.DeviceRegistry/Namespaces/Devices/*",
"Microsoft.DeviceRegistry/Namespaces/DiscoveredAssets/*",
"Microsoft.DeviceRegistry/Namespaces/DiscoveredDevices/*",
"Microsoft.DeviceRegistry/SchemaRegistries/*",
"Microsoft.Insights/alertRules/*",
"Microsoft.Resources/deployments/*",
"Microsoft.Resources/subscriptions/resourceGroups/read",
"Microsoft.Edge/sites/read"
],
"notActions": [],
"dataActions": [],
"notDataActions": []
}
],
"createdOn": "2025-07-07T15:00:15.333Z",
"updatedOn": "2025-07-17T15:20:10.582Z",
"createdBy": null,
"updatedBy": null
},
"id": "/providers/Microsoft.Authorization/roleDefinitions/5bc02df6-6cd5-43fe-ad3d-4c93cf56cc16",
"type": "Microsoft.Authorization/roleDefinitions",
"name": "5bc02df6-6cd5-43fe-ad3d-4c93cf56cc16"
}
Effective Permissions
Operations granted by this role (123 total)
Permission Patterns (from role definition)
Actions
13 patterns
Microsoft.IoTOperations/*
Microsoft.Authorization/*/read
Microsoft.DeviceRegistry/Assets/*
Microsoft.DeviceRegistry/AssetEndpointProfiles/*
Microsoft.DeviceRegistry/Namespaces/Assets/*
Microsoft.DeviceRegistry/Namespaces/Devices/*
Microsoft.DeviceRegistry/Namespaces/DiscoveredAssets/*
Microsoft.DeviceRegistry/Namespaces/DiscoveredDevices/*
Microsoft.DeviceRegistry/SchemaRegistries/*
Microsoft.Insights/alertRules/*
Microsoft.Resources/deployments/*
Microsoft.Resources/subscriptions/resourceGroups/read
Microsoft.Edge/sites/read
Control Plane Operations (123)
No matching operations
/ shown
Data Plane Operations (0)
No data plane operations granted