locked
User access to azure resources RRS feed

  • Question

  • Hi 

    I have tenant azure.It is synchronized with on-premises Active directory. I have granted the the user ( user listed as Windows server AD) global administrator and owner role. the user cannot see any azure resources.Why? 

     
    • Edited by Jafar1970 Monday, June 17, 2019 5:40 PM
    Monday, June 17, 2019 5:26 PM

All replies

  • Hello,

    Is he part of the subscription the resources are under? Please refer to https://docs.microsoft.com/en-us/azure/governance/management-groups/ and https://azure.microsoft.com/en-au/blog/organizing-subscriptions-and-resource-groups-within-the-enterprise/ and https://docs.microsoft.com/en-us/azure/azure-resource-manager/manage-resources-portal for more information on managing/viewing subscription information. 

    Here is info on how to add the user to an azure subscription : https://docs.microsoft.com/en-us/azure/billing/billing-add-change-azure-subscription-administrator

    Please let us know if this answers your question or if you are still experiencing this issue after the user has been added to the subscription. 

    Monday, June 17, 2019 7:57 PM
  • Hi 

    I have tenant azure.It is synchronized with on-premises Active directory. I have granted the the user ( user listed as Windows server AD) global administrator and owner role. the user cannot see any azure resources.Why? 

     

          

    The only situation where we saw this behavior, was when the option Access management for Azure resources was set to Yes. This setting can be found in the portal under Azure Active Directory, Properties. The setting is at the last setting on the Properties pane.

    More information on the link can be found in the Elevate access to manage all Azure subscriptions and management groups document.

         
    Tuesday, June 18, 2019 6:57 AM
  • Hi Sander 

    Is there any difference between user ( listed as member and as windows AD server) and user ( listed as member and as windows azure active directory) ?

    As a principle: is not the same point if I have user (listed as member and as windows azure active directory) with specific permissions and have the user with the same permissions but (  ( listed as member ans as windows AD server)  ). Is there any differences between both of them from -Access-browsing resources permission- point of view? 
    is there any issue, which I have to take care if the user is ( listed as member ans as windows AD server) ?

    Tuesday, June 18, 2019 11:26 AM
  • Hi Sander

    But the user has already owner permission on the whole subscription 

    Tuesday, June 18, 2019 12:17 PM
  • Hey Jafar, 

    This might just be an issue with the portal or the user account specific to this user. My suggestion is to file a support ticket so that they can look into the issue on the back-end of Azure. 

    I apologize for the inconvenience, but they should be able to help you with this issue. 

    • Proposed as answer by Frank Hu MSFT Thursday, June 27, 2019 9:31 PM
    Tuesday, June 18, 2019 9:22 PM
  • I'm following up on this, please remember to mark one of the responses as answer if your question has been answered. If not please let us know if there are anymore questions.

    Thanks!


    Thursday, June 27, 2019 9:30 PM