Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

Storage Blob Data permissions inherited to storage account don't affect listed storage accounts #142

Open
SvenAelterman opened this issue Oct 3, 2022 · 1 comment
Assignees
Labels
bug Something isn't working

Comments

@SvenAelterman
Copy link
Contributor

Users who are assigned Storage Blob Data permissions at the resource group level or higher do not see those storage accounts in the list.

@SvenAelterman SvenAelterman self-assigned this Nov 7, 2022
@SvenAelterman SvenAelterman added the bug Something isn't working label Nov 7, 2022
@SvenAelterman
Copy link
Contributor Author

Confirmed that role assignments at resource group higher aren't processed correctly due to the lack of a storage account name in the scope path.
Addressing this will require listing all storage accounts in a resource group or subscription (using Resource Graph) and then processing all those storage accounts.

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
bug Something isn't working
Projects
None yet
Development

No branches or pull requests

1 participant