question

ShaikMohamed-7835 avatar image
0 Votes"
ShaikMohamed-7835 asked vipulsparsh-MSFT answered

User limitation

I am owner of azure subscription but i have created users to which i dont want to give permission to my resources group and app service but i jave assigned them contributor role so is there is any way they cant access my resources group and app service

azure-rbac
5 |1600 characters needed characters left characters exceeded

Up to 10 attachments (including images) can be used with a maximum of 3.0 MiB each and 30.0 MiB total.

1 Answer

vipulsparsh-MSFT avatar image
0 Votes"
vipulsparsh-MSFT answered

@ShaikMohamed-7835 Thanks for reaching out.

For your particular scenario, I suggest you to explore Azure Deny assignments which has the capability to block users from accessing Azure resources even when a role assignment grants them access.

You can check how it works here : https://docs.microsoft.com/en-us/azure/role-based-access-control/deny-assignments
Try this on any user, group from here : https://docs.microsoft.com/en-us/azure/role-based-access-control/deny-assignments-portal

Let us know if this helps you.



Please remember to "Accept Answer" if any answer/reply helped, so that others in the community facing similar issues can easily find the solution.

5 |1600 characters needed characters left characters exceeded

Up to 10 attachments (including images) can be used with a maximum of 3.0 MiB each and 30.0 MiB total.