DSCResources/MSFT_AzureRoleEligibilityScheduleRequest/settings.json
|
{
"resourceName": "AzureRoleEligibilityScheduleRequest", "description": "This resource manages Azure PIM role eligibility schedule requests for Azure RBAC roles at all scope levels (subscription, management group, resource group, and resource-specific).", "roles": { "read": [ "Privileged Role Administrator", "Owner" ], "update": [ "Privileged Role Administrator", "Owner" ] }, "permissions": { "Azure Service Management": { "delegated": { "read": [ { "name": "user_impersonation" } ], "update": [ { "name": "user_impersonation" } ] }, "application": { "read": [], "update": [] } } }, "requiredModules": [ "Az.Accounts", "Az.Resources" ], "supportedEnvironments": [ "Global", "USGov", "USGovDoD" ], "mode": "Configuration", "commands": [ { "module": "Az.Resources", "cmdlets": [ "Get-AzADGroup", "Get-AzADServicePrincipal", "Get-AzADUser", "Get-AzRoleDefinition", "Get-AzRoleEligibilitySchedule", "New-AzRoleEligibilityScheduleRequest" ] } ] } |