Thank you for answering this Pradeep.
So it is safe to say in order to start/stop the AKS we will need to assign the "Contributor" or "Owner" role only. "AKS Service contributor role" or any other built in role will not serve the purpose.
I did try with AKS service contributor role to start.stop the AKS cluster and it gave me 403 error.
Please confirm the above conclusion.
Again, thanks in advance.
@Sumarigo-MSFT Thanks for your inputs. Additionally, how will the storage account failover work when i have a private endpoint enabled for my storage account file share.
Will the private endpoint created in the secondary region on its own after the failover is successful or will i have to manually create it ?
Please share the steps and process for private endpoints failover strategy.
TIA