Skip to content

Does anyone else get error when creating Azure IPAM Engine Service Principle? #45

Answered by DCMattyG
jonprattC78 asked this question in Q&A
Discussion options

You must be logged in to vote

Hi @jonprattC78. Have you double-checked the prerequisites section found here:

https://azure.github.io/ipam/#/deployment/README?id=prerequisites

The user you deploy the IPAM solution with needs to be able to change RBAC at the Root Management Group level, so you would need to be Owner, User Access Admin, or some equivalent Custom Role.

That line you highlighted above it attempting to assign "Reader" permissions at the scope "/", and of course if you don't have permissions to do so, it will fail.

For paradigms where one user doesn't have enough permissions to both create & assign Service Principal role, and deploy the Azure Infrastructure, we offer a two-part deployment in which the approp…

Replies: 2 comments 3 replies

Comment options

You must be logged in to vote
2 replies
@jonprattC78
Comment options

@DCMattyG
Comment options

Answer selected by jonprattC78
Comment options

You must be logged in to vote
1 reply
@DCMattyG
Comment options

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Category
Q&A
Labels
None yet
2 participants