Skip to main content

access_review_instances

Creates, updates, deletes, gets or lists an access_review_instances resource.

Overview

Nameaccess_review_instances
TypeResource
Idazure.authorization.access_review_instances

Fields

The following fields are returned by SELECT queries:

NameDatatypeDescription
idstringFully qualified resource ID for the resource. Ex - /subscriptions/{subscriptionId}/resourceGroups/{resourceGroupName}/providers/{resourceProviderNamespace}/{resourceType}/{resourceName}.
namestringThe name of the resource.
backupReviewersarrayThis is the collection of backup reviewers.
endDateTimestring (date-time)The DateTime when the review instance is scheduled to end.
reviewersarrayThis is the collection of reviewers.
reviewersTypestringThis field specifies the type of reviewers for a review. Usually for a review, reviewers are explicitly assigned. However, in some cases, the reviewers may not be assigned and instead be chosen dynamically. For example managers review or self review. Known values are: "Assigned", "Self", and "Managers". (Assigned, Self, Managers)
startDateTimestring (date-time)The DateTime when the review instance is scheduled to be start.
statusstringThis read-only field specifies the status of an access review instance. Known values are: "NotStarted", "InProgress", "Completed", "Applied", "Initializing", "Applying", "Completing", "Scheduled", "AutoReviewing", "AutoReviewed", and "Starting". (NotStarted, InProgress, Completed, Applied, Initializing, Applying, Completing, Scheduled, AutoReviewing, AutoReviewed, Starting)
systemDataobjectAzure Resource Manager metadata containing createdBy and modifiedBy information.
typestringThe type of the resource. E.g. "Microsoft.Compute/virtualMachines" or "Microsoft.Storage/storageAccounts".

Methods

The following methods are available for this resource:

NameAccessible byRequired ParamsOptional ParamsDescription
get_by_idselectschedule_definition_id, id, subscription_idGet access review instances.
listselectschedule_definition_id, subscription_id$filterGet access review instances.
createinsertschedule_definition_id, id, subscription_idUpdate access review instance.

Parameters

Parameters can be passed in the WHERE clause of a query. Check the Methods section to see which parameters are required or optional for each operation.

NameDatatypeDescription
idstringThe id of the access review instance. Required.
schedule_definition_idstringThe id of the access review schedule definition. Required.
subscription_idstring
$filterstringThe filter to apply on the operation. Other than standard filters, one custom filter option is supported : 'assignedToMeToReview()'. When one specified $filter=assignedToMeToReview(), only items that are assigned to the calling user to review are returned. Default value is None.

SELECT examples

Get access review instances.

SELECT
id,
name,
backupReviewers,
endDateTime,
reviewers,
reviewersType,
startDateTime,
status,
systemData,
type
FROM azure.authorization.access_review_instances
WHERE schedule_definition_id = '{{ schedule_definition_id }}' -- required
AND id = '{{ id }}' -- required
AND subscription_id = '{{ subscription_id }}' -- required
;

INSERT examples

Update access review instance.

INSERT INTO azure.authorization.access_review_instances (
startDateTime,
endDateTime,
reviewers,
backupReviewers,
schedule_definition_id,
id,
subscription_id
)
SELECT
'{{ startDateTime }}',
'{{ endDateTime }}',
'{{ reviewers }}',
'{{ backupReviewers }}',
'{{ schedule_definition_id }}',
'{{ id }}',
'{{ subscription_id }}'
RETURNING
id,
name,
properties,
systemData,
type
;