Privileges Required to Use the Azure Automation Connector

To use the Azure Automation Connector, you need one of the following:

  • scheduler-administrator or redwood-administrator role.
  • scheduler-user or redwood-login role in combination with the following system-wide, Partition-wide or object-level privileges.

Built-in Roles

  • The scheduler-administrator or redwood-administrator built-in role provides full control over Azure Automations.
  • The scheduler-viewer built-in role provides read-only access to Azure Automations.

Creating, Modifying, and Deleting Azure Automation Connections

You need all of the following privilege ranks to be able to create, modify, and delete Azure Automation Connections:

  • View or any other rank - on the Redwood_AzureConnections extension point.
  • Edit - on AZUConnection.
  • Edit - on AZUResGroup.
  • Edit - on AZUSubscription.
  • Edit - on EXTCertificate.
  • Edit - on EXTObjectRefs.

Using Azure Connections

  • View or any other rank - on the Redwood_AzureConnections extension point.
  • View - on AZUConnection.
  • View - on AZUResGroup.
  • View - on AZUSubscription.
  • View - on EXTCertificate.
  • View - on EXTObjectRefs.
  • View - on the component's Process Server.
  • JobAdministrator - on the component's Queue.
  • Submit - on Process Definitions of the component.
  • View - on the REDWOOD.Redwood_AzureAutomation library.