last sync: 2025-May-30 17:23:17 UTC

Azure Red Hat OpenShift Federated Credential

Azure BuiltIn RBAC Role definition

NameAzure Red Hat OpenShift Federated Credential
Microsoft Learn
Idef318e2a-8334-4a05-9e4a-295a196c6a6e
DescriptionCreate, update and delete federated credentials on user assigned managed identities in order to build a trust relationship between the managed identity, OpenID Connect (OIDC), and the service account.
CategoryContainers
Microsoft Learn
CreatedOn2024-04-12 00:30:33 UTC
UpdatedOn2025-03-11 15:14:12 UTC
Permissions summary Effective control plane and data plane operations: 4 (unique operations)
•delete: 1
•read: 2
•write: 1

Actions: 4
Resolved control plane operations from Actions: 4
Effective control plane operations: 4
•delete: 1
•read: 2
•write: 1

NotActions: 0
Resolved control plane operations from NotActions: 0
Effective denied control plane operations: 16579

DataActions: 0
Resolved data plane operations: 0
Effective data plane operations: 0

NotDataActions: 0
Resolved data plane operations from NotDataActions: 0
Effective denied data plane operations: 3558
Actions
Operation Description
Microsoft.ManagedIdentity/userAssignedIdentities/federatedIdentityCredentials/deleteDelete a Federated Identity Credential
Microsoft.ManagedIdentity/userAssignedIdentities/federatedIdentityCredentials/readGet or list Federated Identity Credentials
Microsoft.ManagedIdentity/userAssignedIdentities/federatedIdentityCredentials/writeAdd or update a Federated Identity Credential
Microsoft.ManagedIdentity/userAssignedIdentities/readGets an existing user assigned identity
NotActions n/a
DataActions n/a
NotDataActions n/a
Used in
BuiltIn Policy
none
History
Date/Time (UTC ymd) (i) Change Change detail
2025-03-11 18:29:19 change: DisplayName, Actions New DisplayName: 'Azure Red Hat OpenShift Federated Credential'
Old DisplayName: 'Azure Red Hat OpenShift Federated Credential Role',
Actions: 'add Microsoft.ManagedIdentity/userAssignedIdentities/federatedIdentityCredentials/delete'
2024-04-15 17:47:24 add: Role ef318e2a-8334-4a05-9e4a-295a196c6a6e
JSON
api-version=2023-07-01-preview
{9 items
  • roleName: "Azure Red Hat OpenShift Federated Credential",
  • type: "BuiltInRole",
  • description: "Create, update and delete federated credentials on user assigned managed identities in order to build a trust relationship between the managed identity, OpenID Connect (OIDC), and the service account.",
  • assignableScopes: [1 item
    • "/"
    ],
  • permissions: [1 item
    • {4 items
      • actions: [4 items
        • "Microsoft.ManagedIdentity/userAssignedIdentities/read",
        • "Microsoft.ManagedIdentity/userAssignedIdentities/federatedIdentityCredentials/write",
        • "Microsoft.ManagedIdentity/userAssignedIdentities/federatedIdentityCredentials/read",
        • "Microsoft.ManagedIdentity/userAssignedIdentities/federatedIdentityCredentials/delete"
        ],
      • notActions: [],
      • dataActions: [],
      • notDataActions: []
      }
    ],
  • createdOn: "2024-04-12T00:30:33.7626424Z",
  • updatedOn: "2025-03-11T15:14:12.4504757Z",
  • createdBy: null,
  • updatedBy: null
}
Condition none