Privileges Required to Use the Azure Batch Connector

To use the Azure Batch Connector, you need one of the following:

  • scheduler-administrator or redwood-administrator role.
  • scheduler-user or redwood-login role in combination with the following system-wide, Partition-wide or object-level privileges.

Built-in Roles

  • The scheduler-administrator or redwood-administrator built-in role provides full control over the Azure Batch Connector.
  • The scheduler-viewer built-in role provides read-only access to the Azure Batch Connector.

Creating, Modifying, and Delete Azure Batches

You need all of the following privilege ranks to be able to create, modify, and delete Azure Batches:

  • View or any other rank - on the Redwood_AzureConnections extension point.
  • Edit - on AZUConnection.
  • Edit - on AZUResGroup.
  • Edit - on AZUSubscription.
  • Edit - on EXTCertificate.
  • Edit - on EXTObjectRefs

Using Azure Data Factory

  • View or any other rank - on the Redwood_AzureConnections extension point.
  • View - on AZUConnection.
  • View - on AZUResGroup.
  • View - on AZUSubscription.
  • View - on EXTCertificate.
  • View - on EXTObjectRefs
  • View - on the component's Process Server.
  • JobAdministrator - on the component's Queue.
  • Submit - on Process Definitions of the component.
  • View - on the REDWOOD.Redwood_AzureBatch library.