Azure Role Assignments for Windows 365 Service Principal Issues

Copper Contributor



A customer's security team has some trepidation around allowing Network Contributor on the vNet supporting the Windows 365 ANC.


Network Contributor on the respective isolated RG (not vNet location) and Sub Reader is OK. 


Any advice on getting around this without Network Contributor - custom role perhaps, or is it just not possible?


Appreciate the feedback, 



1 Reply
@Shane6712, could you provide additional details regarding your topic. Don't think i'll be able to help but some of us might be interested in learning about this subject. thanks