|
63 | 63 | "Name": "Attribute Definition Reader",
|
64 | 64 | "ObjectId": "1d336d2c-4ae8-42ef-9711-b3604ce3fc2c"
|
65 | 65 | },
|
| 66 | + { |
| 67 | + "ExtensionData": {}, |
| 68 | + "Description": "Read audit logs and configure diagnostic settings for events related to custom security attributes.", |
| 69 | + "IsEnabled": true, |
| 70 | + "IsSystem": true, |
| 71 | + "Name": "Attribute Log Administrator", |
| 72 | + "ObjectId": "5b784334-f94b-471a-a387-e7219fc49ca2" |
| 73 | + }, |
| 74 | + { |
| 75 | + "ExtensionData": {}, |
| 76 | + "Description": "Read audit logs related to custom security attributes.", |
| 77 | + "IsEnabled": true, |
| 78 | + "IsSystem": true, |
| 79 | + "Name": "Attribute Log Reader", |
| 80 | + "ObjectId": "9c99539d-8186-4804-835f-fd51ef9e2dcd" |
| 81 | + }, |
66 | 82 | {
|
67 | 83 | "ExtensionData": {},
|
68 | 84 | "Description": "Allowed to view, set and reset authentication method information for any non-admin user.",
|
|
79 | 95 | "Name": "Authentication Policy Administrator",
|
80 | 96 | "ObjectId": "0526716b-113d-4c15-b2c8-68e3c22b9f80"
|
81 | 97 | },
|
| 98 | + { |
| 99 | + "ExtensionData": {}, |
| 100 | + "Description": "Customize sign in and sign up experiences for users by creating and managing custom authentication extensions.", |
| 101 | + "IsEnabled": true, |
| 102 | + "IsSystem": true, |
| 103 | + "Name": "Authentication Extensibility Administrator", |
| 104 | + "ObjectId": "25a516ed-2fa0-40ea-a2d0-12923a21473a" |
| 105 | + }, |
82 | 106 | {
|
83 | 107 | "ExtensionData": {},
|
84 | 108 | "Description": "Users assigned to this role are added to the local administrators group on Azure AD-joined devices.",
|
|
311 | 335 | "Name": "Global Reader",
|
312 | 336 | "ObjectId": "f2ef992c-3afb-46b9-b7cf-a126ee74c451"
|
313 | 337 | },
|
| 338 | + { |
| 339 | + "ExtensionData": {}, |
| 340 | + "Description": "Create and manage all aspects of Microsoft Entra Internet Access and Microsoft Entra Private Access, including managing access to public and private endpoints.", |
| 341 | + "IsEnabled": true, |
| 342 | + "IsSystem": true, |
| 343 | + "Name": "Global Secure Access Administrator", |
| 344 | + "ObjectId": "ac434307-12b9-4fa1-a708-88bf58caabc1" |
| 345 | + }, |
314 | 346 | {
|
315 | 347 | "ExtensionData": {},
|
316 | 348 | "Description": "Members of this role can create/manage groups, create/manage groups settings like naming and expiration policies, and view groups activity and audit reports.",
|
|
439 | 471 | "Name": "Message Center Reader",
|
440 | 472 | "ObjectId": "790c1fb9-7f7d-4f88-86a1-ef1f95c05c1b"
|
441 | 473 | },
|
| 474 | + { |
| 475 | + "ExtensionData": {}, |
| 476 | + "Description": "Perform all migration functionality to migrate content to Microsoft 365 using Migration Manager.", |
| 477 | + "IsEnabled": true, |
| 478 | + "IsSystem": true, |
| 479 | + "Name": "Microsoft 365 Migration Administrator", |
| 480 | + "ObjectId": "8c8b803f-96e1-4129-9349-20738d9f9652" |
| 481 | + }, |
| 482 | + { |
| 483 | + "ExtensionData": {}, |
| 484 | + "Description": "Create and manage all aspects warranty claims and entitlements for Microsoft manufactured hardware, like Surface and HoloLens.", |
| 485 | + "IsEnabled": true, |
| 486 | + "IsSystem": true, |
| 487 | + "Name": "Microsoft Hardware Warranty Administrator", |
| 488 | + "ObjectId": "1501b917-7653-4ff9-a4b5-203eaf33784f" |
| 489 | + }, |
| 490 | + { |
| 491 | + "ExtensionData": {}, |
| 492 | + "Description": "Create and read warranty claims for Microsoft manufactured hardware, like Surface and HoloLens.", |
| 493 | + "IsEnabled": true, |
| 494 | + "IsSystem": true, |
| 495 | + "Name": "Microsoft Hardware Warranty Specialist", |
| 496 | + "ObjectId": "281fe777-fb20-4fbb-b7a3-ccebce5b0d96" |
| 497 | + }, |
442 | 498 | {
|
443 | 499 | "ExtensionData": {},
|
444 | 500 | "Description": "Can manage network locations and review enterprise network design insights for Microsoft 365 Software as a Service applications.",
|
|
455 | 511 | "Name": "Office Apps Administrator",
|
456 | 512 | "ObjectId": "2b745bdf-0803-4d80-aa65-822c4493daac"
|
457 | 513 | },
|
| 514 | + { |
| 515 | + "ExtensionData": {}, |
| 516 | + "Description": "Write, publish, manage, and review the organizational messages for end-users through Microsoft product surfaces.", |
| 517 | + "IsEnabled": true, |
| 518 | + "IsSystem": true, |
| 519 | + "Name": "Organizational Messages Writer", |
| 520 | + "ObjectId": "507f53e4-4e52-4077-abd3-d2e1558b6ea2" |
| 521 | + }, |
458 | 522 | {
|
459 | 523 | "ExtensionData": {},
|
460 | 524 | "Description": "Can reset passwords for non-administrators and Password Administrators.",
|
|
583 | 647 | "Name": "SharePoint Administrator",
|
584 | 648 | "ObjectId": "f28a1f50-f6e7-4571-818b-6a12f2af6b6c"
|
585 | 649 | },
|
| 650 | + { |
| 651 | + "ExtensionData": {}, |
| 652 | + "Description": "Manage all aspects of SharePoint Embedded containers.", |
| 653 | + "IsEnabled": true, |
| 654 | + "IsSystem": true, |
| 655 | + "Name": "SharePoint Embedded Administrator", |
| 656 | + "ObjectId": "1a7d78b6-429f-476b-8eb-35fb715fffd4" |
| 657 | + }, |
586 | 658 | {
|
587 | 659 | "ExtensionData": {},
|
588 | 660 | "Description": "Can manage all aspects of the Skype for Business product.",
|
|
631 | 703 | "Name": "Teams Devices Administrator",
|
632 | 704 | "ObjectId": "3d762c5a-1b6c-493f-843e-55a3b42923d4"
|
633 | 705 | },
|
| 706 | + { |
| 707 | + "ExtensionData": {}, |
| 708 | + "Description": "Manage voice and telephony features and troubleshoot communication issues within the Microsoft Teams service.", |
| 709 | + "IsEnabled": true, |
| 710 | + "IsSystem": true, |
| 711 | + "Name": "Teams Telephony Administrator", |
| 712 | + "ObjectId": "aa38014f-0993-46e9-9b45-30501a20909d" |
| 713 | + }, |
| 714 | + { |
| 715 | + "ExtensionData": {}, |
| 716 | + "Description": "Create new Microsoft Entra or Azure AD B2C tenants.", |
| 717 | + "IsEnabled": true, |
| 718 | + "IsSystem": true, |
| 719 | + "Name": "Tenant Creator", |
| 720 | + "ObjectId": "112ca1a2-15ad-4102-995e-45b0bc479a6a" |
| 721 | + }, |
634 | 722 | {
|
635 | 723 | "ExtensionData": {},
|
636 | 724 | "Description": "Can see only tenant level aggregates in Microsoft 365 Usage Analytics and Productivity Score.",
|
|
647 | 735 | "Name": "User Administrator",
|
648 | 736 | "ObjectId": "fe930be7-5e62-47db-91af-98c3a49a38b1"
|
649 | 737 | },
|
| 738 | + { |
| 739 | + "ExtensionData": {}, |
| 740 | + "Description": "View product feedback, survey results, and reports to find training and communication opportunities.", |
| 741 | + "IsEnabled": true, |
| 742 | + "IsSystem": true, |
| 743 | + "Name": "User Experience Success Manager", |
| 744 | + "ObjectId": "27460883-1df1-4691-b032-3b79643e5e63" |
| 745 | + }, |
650 | 746 | {
|
651 | 747 | "ExtensionData": {},
|
652 | 748 | "Description": "Manage and share Virtual Visits information and metrics from admin centers or the Virtual Visits app.",
|
|
0 commit comments