The minimum permissions for Cloudera DataFlow on Azure govern access
control between Azure resources, the Azure storage account, and Cloudera DataFlow. The minimum permissions that allow for enabling/disabling Cloudera DataFlow
and deploying/undeploying flows can be set using a custom role.
You have registered an application on the Azure Portal. For instructions, see
Create an app registration and assign a role to it.
You have created an app-based provisioning credential in your Azure
subscription. For instructions, see Create a provisioning credential for
Azure.
Create a custom role that contains the minimum permissions.
The following role definition outlines the minimum permissions required to create a
custom role for Cloudera DataFlow. The permissions are listed in the
Actions section, so that Cloudera DataFlow can access
resources and operate correctly.
When using the role defintiion, replace the following values:
[YOUR-SUBSCRIPTION-ID]: Your subscription ID in
use.
[YOUR-RESTRICTED-ROLE-NAME]: The custom role name which
is assigned to the application. For example: Cloudera Dataflow Azure Operator
for Single Resource Group
[YOUR-RESOURCE-GROUP-NAME]: The original resource group
name.
Assign the custom role to the app registration that you earlier created on the Azure
Portal. For instructions, see Create an app registration and assign a role to
it.
We want your opinion
How can we improve this page?
What kind of feedback do you have?
This site uses cookies and related technologies, as described in our privacy policy, for purposes that may include site operation, analytics, enhanced user experience, or advertising. You may choose to consent to our use of these technologies, or