Mongo DBResource Mongo Role Definition Args
An Azure Cosmos DB Mongo Role Definition. Uses Azure REST API version 2023-04-15. In version 1.x of the Azure Native provider, it used API version 2021-10-15-preview. Other available API versions: 2023-03-01-preview, 2023-09-15, 2023-09-15-preview, 2023-11-15, 2023-11-15-preview, 2024-02-15-preview, 2024-05-15, 2024-05-15-preview, 2024-08-15, 2024-09-01-preview, 2024-11-15, 2024-12-01-preview.
Example Usage
CosmosDBMongoDBRoleDefinitionCreateUpdate
using System.Collections.Generic;
using System.Linq;
using Pulumi;
using AzureNative = Pulumi.AzureNative;
return await Deployment.RunAsync(() =>
{
var mongoDBResourceMongoRoleDefinition = new AzureNative.DocumentDB.MongoDBResourceMongoRoleDefinition("mongoDBResourceMongoRoleDefinition", new()
{
AccountName = "myAccountName",
DatabaseName = "sales",
MongoRoleDefinitionId = "myMongoRoleDefinitionId",
Privileges = new[]
{
new AzureNative.DocumentDB.Inputs.PrivilegeArgs
{
Actions = new[]
{
"insert",
"find",
},
Resource = new AzureNative.DocumentDB.Inputs.PrivilegeResourceArgs
{
Collection = "sales",
Db = "sales",
},
},
},
ResourceGroupName = "myResourceGroupName",
RoleName = "myRoleName",
Roles = new[]
{
new AzureNative.DocumentDB.Inputs.RoleArgs
{
Db = "sales",
Role = "myInheritedRole",
},
},
});
});
package main
import (
documentdb "github.com/pulumi/pulumi-azure-native-sdk/documentdb/v2"
"github.com/pulumi/pulumi/sdk/v3/go/pulumi"
)
func main() {
pulumi.Run(func(ctx *pulumi.Context) error {
_, err := documentdb.NewMongoDBResourceMongoRoleDefinition(ctx, "mongoDBResourceMongoRoleDefinition", &documentdb.MongoDBResourceMongoRoleDefinitionArgs{
AccountName: pulumi.String("myAccountName"),
DatabaseName: pulumi.String("sales"),
MongoRoleDefinitionId: pulumi.String("myMongoRoleDefinitionId"),
Privileges: documentdb.PrivilegeArray{
&documentdb.PrivilegeArgs{
Actions: pulumi.StringArray{
pulumi.String("insert"),
pulumi.String("find"),
},
Resource: &documentdb.PrivilegeResourceArgs{
Collection: pulumi.String("sales"),
Db: pulumi.String("sales"),
},
},
},
ResourceGroupName: pulumi.String("myResourceGroupName"),
RoleName: pulumi.String("myRoleName"),
Roles: documentdb.RoleArray{
&documentdb.RoleArgs{
Db: pulumi.String("sales"),
Role: pulumi.String("myInheritedRole"),
},
},
})
if err != nil {
return err
}
return nil
})
}
package generated_program;
import com.pulumi.Context;
import com.pulumi.Pulumi;
import com.pulumi.core.Output;
import com.pulumi.azurenative.documentdb.MongoDBResourceMongoRoleDefinition;
import com.pulumi.azurenative.documentdb.MongoDBResourceMongoRoleDefinitionArgs;
import com.pulumi.azurenative.documentdb.inputs.PrivilegeArgs;
import com.pulumi.azurenative.documentdb.inputs.PrivilegeResourceArgs;
import com.pulumi.azurenative.documentdb.inputs.RoleArgs;
import java.util.List;
import java.util.ArrayList;
import java.util.Map;
import java.io.File;
import java.nio.file.Files;
import java.nio.file.Paths;
public class App {
public static void main(String[] args) {
Pulumi.run(App::stack);
}
public static void stack(Context ctx) {
var mongoDBResourceMongoRoleDefinition = new MongoDBResourceMongoRoleDefinition("mongoDBResourceMongoRoleDefinition", MongoDBResourceMongoRoleDefinitionArgs.builder()
.accountName("myAccountName")
.databaseName("sales")
.mongoRoleDefinitionId("myMongoRoleDefinitionId")
.privileges(PrivilegeArgs.builder()
.actions(
"insert",
"find")
.resource(PrivilegeResourceArgs.builder()
.collection("sales")
.db("sales")
.build())
.build())
.resourceGroupName("myResourceGroupName")
.roleName("myRoleName")
.roles(RoleArgs.builder()
.db("sales")
.role("myInheritedRole")
.build())
.build());
}
}
Import
An existing resource can be imported using its type token, name, and identifier, e.g.
$ pulumi import azure-native:documentdb:MongoDBResourceMongoRoleDefinition myMongoDbRoleDefinitionId /subscriptions/{subscriptionId}/resourceGroups/{resourceGroupName}/providers/Microsoft.DocumentDB/databaseAccounts/{accountName}/mongodbRoleDefinitions/{mongoRoleDefinitionId}
Constructors
Properties
Cosmos DB database account name.
The database name for which access is being granted for this Role Definition.
The ID for the Role Definition {dbName.roleName}.
A set of privileges contained by the Role Definition. This will allow application of this Role Definition on the entire database account or any underlying Database / Collection. Scopes higher than Database are not enforceable as privilege.
The name of the resource group. The name is case insensitive.
Indicates whether the Role Definition was built-in or user created.