You signed in with another tab or window. Reload to refresh your session.You signed out in another tab or window. Reload to refresh your session.You switched accounts on another tab or window. Reload to refresh your session.Dismiss alert
> |[Microsoft.HybridConnectivity](../permissions/hybrid-multicloud.md#microsofthybridconnectivity)/endpoints/listCredentials/action |List the endpoint access credentials to the resource. |
1941
+
> |[Microsoft.HybridConnectivity](../permissions/hybrid-multicloud.md#microsofthybridconnectivity)/endpoints/listCredentials/action |Gets the endpoint access credentials to the resource. |
1942
1942
> |**NotActions**||
1943
1943
> |*none*||
1944
1944
> |**DataActions**||
@@ -2192,7 +2192,7 @@ View Virtual Machines in the portal and login as a local user configured on the
> |[Microsoft.HybridConnectivity](../permissions/hybrid-multicloud.md#microsofthybridconnectivity)/endpoints/listCredentials/action |List the endpoint access credentials to the resource. |
2195
+
> |[Microsoft.HybridConnectivity](../permissions/hybrid-multicloud.md#microsofthybridconnectivity)/endpoints/listCredentials/action |Gets the endpoint access credentials to the resource. |
2196
2196
> |**NotActions**||
2197
2197
> |*none*||
2198
2198
> |**DataActions**||
@@ -2240,7 +2240,7 @@ View Virtual Machines in the portal and login as a regular user.
2240
2240
> |[Microsoft.Network](../permissions/networking.md#microsoftnetwork)/networkInterfaces/read | Gets a network interface definition. |
> |[Microsoft.HybridConnectivity](../permissions/hybrid-multicloud.md#microsofthybridconnectivity)/endpoints/listCredentials/action |List the endpoint access credentials to the resource. |
2243
+
> |[Microsoft.HybridConnectivity](../permissions/hybrid-multicloud.md#microsofthybridconnectivity)/endpoints/listCredentials/action |Gets the endpoint access credentials to the resource. |
2244
2244
> |**NotActions**||
2245
2245
> |*none*||
2246
2246
> |**DataActions**||
@@ -2549,11 +2549,11 @@ Let's you manage the OS of your resource via Windows Admin Center as an administ
2549
2549
> |[Microsoft.Network](../permissions/networking.md#microsoftnetwork)/networkWatchers/securityGroupView/action | View the configured and effective network security group rules applied on a VM. |
2550
2550
> |[Microsoft.Network](../permissions/networking.md#microsoftnetwork)/networkSecurityGroups/securityRules/read | Gets a security rule definition |
2551
2551
> |[Microsoft.Network](../permissions/networking.md#microsoftnetwork)/networkSecurityGroups/securityRules/write | Creates a security rule or updates an existing security rule |
2552
-
> |[Microsoft.HybridConnectivity](../permissions/hybrid-multicloud.md#microsofthybridconnectivity)/endpoints/write |Create or update the endpoint to the target resource. |
2553
-
> |[Microsoft.HybridConnectivity](../permissions/hybrid-multicloud.md#microsofthybridconnectivity)/endpoints/read |Get or list of endpoints to the target resource. |
2554
-
> |[Microsoft.HybridConnectivity](../permissions/hybrid-multicloud.md#microsofthybridconnectivity)/endpoints/serviceConfigurations/write |Create or update the serviceConfigurations to the endpoints resource. |
2555
-
> |[Microsoft.HybridConnectivity](../permissions/hybrid-multicloud.md#microsofthybridconnectivity)/endpoints/serviceConfigurations/read |Get or list of serviceConfigurations to the endpoints resource. |
2556
-
> |[Microsoft.HybridConnectivity](../permissions/hybrid-multicloud.md#microsofthybridconnectivity)/endpoints/listManagedProxyDetails/action |List the managed proxy details to the resource.|
2552
+
> |[Microsoft.HybridConnectivity](../permissions/hybrid-multicloud.md#microsofthybridconnectivity)/endpoints/write |Update the endpoint to the target resource. |
2553
+
> |[Microsoft.HybridConnectivity](../permissions/hybrid-multicloud.md#microsofthybridconnectivity)/endpoints/read |Gets the endpoint to the resource. |
2554
+
> |[Microsoft.HybridConnectivity](../permissions/hybrid-multicloud.md#microsofthybridconnectivity)/endpoints/serviceConfigurations/write |Update the service details in the service configurations of the target resource. |
2555
+
> |[Microsoft.HybridConnectivity](../permissions/hybrid-multicloud.md#microsofthybridconnectivity)/endpoints/serviceConfigurations/read |Gets the details about the service to the resource. |
2556
+
> |[Microsoft.HybridConnectivity](../permissions/hybrid-multicloud.md#microsofthybridconnectivity)/endpoints/listManagedProxyDetails/action |Fetches the managed proxy details |
2557
2557
> |[Microsoft.Compute](../permissions/compute.md#microsoftcompute)/virtualMachines/read | Get the properties of a virtual machine |
2558
2558
> |[Microsoft.Compute](../permissions/compute.md#microsoftcompute)/virtualMachines/patchAssessmentResults/latest/read | Retrieves the summary of the latest patch assessment operation |
2559
2559
> |[Microsoft.Compute](../permissions/compute.md#microsoftcompute)/virtualMachines/patchAssessmentResults/latest/softwarePatches/read | Retrieves list of patches assessed during the last patch assessment operation |
@@ -4869,6 +4871,8 @@ Grants Microsoft Defender for Cloud access to Azure Kubernetes Services
4869
4871
> |[Microsoft.Features](../permissions/management-and-governance.md#microsoftfeatures)/providers/features/register/action | Registers the feature for a subscription in a given resource provider. |
4870
4872
> |[Microsoft.Security](../permissions/security.md#microsoftsecurity)/pricings/securityoperators/read | Gets the security operators for the scope |
4871
4873
> |[Microsoft.Security](../permissions/security.md#microsoftsecurity)/securityOperators/read | Gets the securityoperators for the scope |
4874
+
> |[Microsoft.Authorization](../permissions/management-and-governance.md#microsoftauthorization)/policyAssignments/read | Get information about a policy assignment. |
4875
+
> |[Microsoft.Authorization](../permissions/management-and-governance.md#microsoftauthorization)/policySetDefinitions/read | Get information about a policy set definition. |
4872
4876
> |**NotActions**||
4873
4877
> |*none*||
4874
4878
> |**DataActions**||
@@ -4895,7 +4899,9 @@ Grants Microsoft Defender for Cloud access to Azure Kubernetes Services
Copy file name to clipboardExpand all lines: articles/role-based-access-control/built-in-roles/databases.md
+15-1Lines changed: 15 additions & 1 deletion
Display the source diff
Display the rich diff
Original file line number
Diff line number
Diff line change
@@ -7,7 +7,7 @@ ms.workload: identity
7
7
author: rolyon
8
8
manager: pmwongera
9
9
ms.author: rolyon
10
-
ms.date: 02/23/2026
10
+
ms.date: 04/09/2026
11
11
ms.custom: generated
12
12
---
13
13
@@ -345,8 +345,15 @@ Role to allow backup vault to access PostgreSQL Flexible Server Resource APIs fo
345
345
> [!div class="mx-tableFixed"]
346
346
> | Actions | Description |
347
347
> | --- | --- |
348
+
> |[Microsoft.DBforPostgreSQL](../permissions/databases.md#microsoftdbforpostgresql)/flexibleServers/ltrBackup/action | Start LTR backup operation for a server |
349
+
> |[Microsoft.DBforPostgreSQL](../permissions/databases.md#microsoftdbforpostgresql)/flexibleServers/ltrBackupAccess/action | Start LTR backup access operation for a server |
348
350
> |[Microsoft.DBforPostgreSQL](../permissions/databases.md#microsoftdbforpostgresql)/flexibleServers/ltrBackupOperations/read | Returns the list of PostgreSQL server long term backup operation tracking. |
351
+
> |[Microsoft.DBforPostgreSQL](../permissions/databases.md#microsoftdbforpostgresql)/flexibleServers/ltrBackupPreCheck/action | Start LTR backup pre-check operation for a server |
349
352
> |[Microsoft.DBforPostgreSQL](../permissions/databases.md#microsoftdbforpostgresql)/flexibleServers/ltrPreBackup/action | Checks if a server is ready for a long term backup |
353
+
> |[Microsoft.DBforPostgreSQL](../permissions/databases.md#microsoftdbforpostgresql)/flexibleServers/ltrRestoreFinalize/action | Start LTR restore finalize operation for a server |
354
+
> |[Microsoft.DBforPostgreSQL](../permissions/databases.md#microsoftdbforpostgresql)/flexibleServers/ltrRestoreInitialize/action | Start LTR restore initialize operation for a server |
355
+
> |[Microsoft.DBforPostgreSQL](../permissions/databases.md#microsoftdbforpostgresql)/flexibleServers/ltrRestorePreCheck/action | Start LTR restore pre-check operation for a server |
356
+
> |[Microsoft.DBforPostgreSQL](../permissions/databases.md#microsoftdbforpostgresql)/flexibleServers/read | Return the list of servers or gets the properties for the specified server. |
350
357
> |[Microsoft.DBforPostgreSQL](../permissions/databases.md#microsoftdbforpostgresql)/flexibleServers/startLtrBackup/action | Start long term backup for a server |
351
358
> |[Microsoft.DBforPostgreSQL](../permissions/databases.md#microsoftdbforpostgresql)/locations/azureAsyncOperation/read | Return PostgreSQL Server Operation Results |
352
359
> |[Microsoft.DBforPostgreSQL](../permissions/databases.md#microsoftdbforpostgresql)/locations/operationResults/read | Return PostgreSQL Server Operation Results |
@@ -370,8 +377,15 @@ Role to allow backup vault to access PostgreSQL Flexible Server Resource APIs fo
0 commit comments