This article will show the configuration commands required to complete the objectives on the exam guide for the AZ-104. The article information is updated as I complete the respective tasks.
Manage Role-based Access Control (RBAC)
- Create a custom role
# Comment
az noun verb –name variable
# Comment
Verb-Noun -Parameters variable
- Provide access to Azure resources by assigning roles at different scopes
# Assigning role Owner to subscription scope
az role assignment create \
–assignee “rbacuser@domain.com” \
–role “Owner” \
— scope “scope_name_or_id”
#Assign role Contributor to resource level
az role assignment create \
–assignee “user@domain.com” \
–scope “/subscriptions/[subid]/resourceGroups/[rgid]/provider/Microsoft.Compute/virtualMachines/[myVM1” \
–role “Contributor”
#Delete role assignment
az role assignment delete \
–assignee “deleteuser@domain.com” \
–scope “scope_name_or_id” \
–role “Owner”
#view all role assignment
az role assignment list –all
# Assigned Owner role at scope level
New -AzRoleAssignment -SignInName “rbacuser@domain.com” `
-RoleDefinitionName “Owner” -scope “scope_name_or_id”
#Delete role assignment
Remove-RoleAssignment -SignInName “user@domain.com” `
-Scope “scope_name_or_id” `
-RoleDefinitionName “Reader”
#List all the Role assignment
Get-AzRoleAssignment
- Interpret access assignments
# Comment
az noun verb –name variable
# Comment
Verb-Noun -Parameters variable