openapi: 3.2.0 info: title: Identity.Governance Role Management.rbac Application API version: v1.0 servers: - url: https://graph.microsoft.com/v1.0/ description: Core security: - azureaadv2: [] tags: - name: roleManagement.rbacApplication paths: /roleManagement/directory: get: tags: - roleManagement.rbacApplication summary: Get directory from roleManagement operationId: roleManagement_GetDirectory parameters: - name: $select in: query description: Select properties to be returned style: form explode: false schema: uniqueItems: true type: array items: type: string - name: $expand in: query description: Expand related entities style: form explode: false schema: uniqueItems: true type: array items: type: string responses: 2XX: description: Retrieved navigation property content: application/json: schema: $ref: '#/components/schemas/microsoft.graph.rbacApplication' default: $ref: '#/components/responses/error' x-ms-docs-operation-type: operation patch: tags: - roleManagement.rbacApplication summary: Update the navigation property directory in roleManagement operationId: roleManagement_UpdateDirectory requestBody: description: New navigation property values content: application/json: schema: $ref: '#/components/schemas/microsoft.graph.rbacApplication' required: true responses: 2XX: description: Success content: application/json: schema: $ref: '#/components/schemas/microsoft.graph.rbacApplication' default: $ref: '#/components/responses/error' x-ms-docs-operation-type: operation delete: tags: - roleManagement.rbacApplication summary: Delete navigation property directory for roleManagement operationId: roleManagement_DeleteDirectory parameters: - name: If-Match in: header description: ETag style: simple schema: type: string responses: 2XX: description: Success default: $ref: '#/components/responses/error' x-ms-docs-operation-type: operation /roleManagement/directory/resourceNamespaces: get: tags: - roleManagement.rbacApplication summary: Get resourceNamespaces from roleManagement operationId: roleManagement.directory_ListResourceNamespace parameters: - $ref: '#/components/parameters/top' - $ref: '#/components/parameters/skip' - $ref: '#/components/parameters/search' - $ref: '#/components/parameters/filter' - $ref: '#/components/parameters/count' - name: $orderby in: query description: Order items by property values style: form explode: false schema: uniqueItems: true type: array items: type: string - name: $select in: query description: Select properties to be returned style: form explode: false schema: uniqueItems: true type: array items: type: string - name: $expand in: query description: Expand related entities style: form explode: false schema: uniqueItems: true type: array items: type: string responses: 2XX: $ref: '#/components/responses/microsoft.graph.unifiedRbacResourceNamespaceCollectionResponse' default: $ref: '#/components/responses/error' x-ms-pageable: nextLinkName: '@odata.nextLink' operationName: listMore x-ms-docs-operation-type: operation post: tags: - roleManagement.rbacApplication summary: Create new navigation property to resourceNamespaces for roleManagement operationId: roleManagement.directory_CreateResourceNamespace requestBody: description: New navigation property content: application/json: schema: $ref: '#/components/schemas/microsoft.graph.unifiedRbacResourceNamespace' required: true responses: 2XX: description: Created navigation property. content: application/json: schema: $ref: '#/components/schemas/microsoft.graph.unifiedRbacResourceNamespace' default: $ref: '#/components/responses/error' x-ms-docs-operation-type: operation /roleManagement/directory/resourceNamespaces/{unifiedRbacResourceNamespace-id}: get: tags: - roleManagement.rbacApplication summary: Get resourceNamespaces from roleManagement operationId: roleManagement.directory_GetResourceNamespace parameters: - name: unifiedRbacResourceNamespace-id in: path description: The unique identifier of unifiedRbacResourceNamespace required: true style: simple schema: type: string x-ms-docs-key-type: unifiedRbacResourceNamespace - name: $select in: query description: Select properties to be returned style: form explode: false schema: uniqueItems: true type: array items: type: string - name: $expand in: query description: Expand related entities style: form explode: false schema: uniqueItems: true type: array items: type: string responses: 2XX: description: Retrieved navigation property content: application/json: schema: $ref: '#/components/schemas/microsoft.graph.unifiedRbacResourceNamespace' default: $ref: '#/components/responses/error' x-ms-docs-operation-type: operation patch: tags: - roleManagement.rbacApplication summary: Update the navigation property resourceNamespaces in roleManagement operationId: roleManagement.directory_UpdateResourceNamespace parameters: - name: unifiedRbacResourceNamespace-id in: path description: The unique identifier of unifiedRbacResourceNamespace required: true style: simple schema: type: string x-ms-docs-key-type: unifiedRbacResourceNamespace requestBody: description: New navigation property values content: application/json: schema: $ref: '#/components/schemas/microsoft.graph.unifiedRbacResourceNamespace' required: true responses: 2XX: description: Success content: application/json: schema: $ref: '#/components/schemas/microsoft.graph.unifiedRbacResourceNamespace' default: $ref: '#/components/responses/error' x-ms-docs-operation-type: operation delete: tags: - roleManagement.rbacApplication summary: Delete navigation property resourceNamespaces for roleManagement operationId: roleManagement.directory_DeleteResourceNamespace parameters: - name: unifiedRbacResourceNamespace-id in: path description: The unique identifier of unifiedRbacResourceNamespace required: true style: simple schema: type: string x-ms-docs-key-type: unifiedRbacResourceNamespace - name: If-Match in: header description: ETag style: simple schema: type: string responses: 2XX: description: Success default: $ref: '#/components/responses/error' x-ms-docs-operation-type: operation /roleManagement/directory/resourceNamespaces/{unifiedRbacResourceNamespace-id}/resourceActions: get: tags: - roleManagement.rbacApplication summary: Get resourceActions from roleManagement operationId: roleManagement.directory.resourceNamespace_ListResourceAction parameters: - name: unifiedRbacResourceNamespace-id in: path description: The unique identifier of unifiedRbacResourceNamespace required: true style: simple schema: type: string x-ms-docs-key-type: unifiedRbacResourceNamespace - $ref: '#/components/parameters/top' - $ref: '#/components/parameters/skip' - $ref: '#/components/parameters/search' - $ref: '#/components/parameters/filter' - $ref: '#/components/parameters/count' - name: $orderby in: query description: Order items by property values style: form explode: false schema: uniqueItems: true type: array items: type: string - name: $select in: query description: Select properties to be returned style: form explode: false schema: uniqueItems: true type: array items: type: string - name: $expand in: query description: Expand related entities style: form explode: false schema: uniqueItems: true type: array items: type: string responses: 2XX: $ref: '#/components/responses/microsoft.graph.unifiedRbacResourceActionCollectionResponse' default: $ref: '#/components/responses/error' x-ms-pageable: nextLinkName: '@odata.nextLink' operationName: listMore x-ms-docs-operation-type: operation post: tags: - roleManagement.rbacApplication summary: Create new navigation property to resourceActions for roleManagement operationId: roleManagement.directory.resourceNamespace_CreateResourceAction parameters: - name: unifiedRbacResourceNamespace-id in: path description: The unique identifier of unifiedRbacResourceNamespace required: true style: simple schema: type: string x-ms-docs-key-type: unifiedRbacResourceNamespace requestBody: description: New navigation property content: application/json: schema: $ref: '#/components/schemas/microsoft.graph.unifiedRbacResourceAction' required: true responses: 2XX: description: Created navigation property. content: application/json: schema: $ref: '#/components/schemas/microsoft.graph.unifiedRbacResourceAction' default: $ref: '#/components/responses/error' x-ms-docs-operation-type: operation ? /roleManagement/directory/resourceNamespaces/{unifiedRbacResourceNamespace-id}/resourceActions/{unifiedRbacResourceAction-id} : get: tags: - roleManagement.rbacApplication summary: Get resourceActions from roleManagement operationId: roleManagement.directory.resourceNamespace_GetResourceAction parameters: - name: unifiedRbacResourceNamespace-id in: path description: The unique identifier of unifiedRbacResourceNamespace required: true style: simple schema: type: string x-ms-docs-key-type: unifiedRbacResourceNamespace - name: unifiedRbacResourceAction-id in: path description: The unique identifier of unifiedRbacResourceAction required: true style: simple schema: type: string x-ms-docs-key-type: unifiedRbacResourceAction - name: $select in: query description: Select properties to be returned style: form explode: false schema: uniqueItems: true type: array items: type: string - name: $expand in: query description: Expand related entities style: form explode: false schema: uniqueItems: true type: array items: type: string responses: 2XX: description: Retrieved navigation property content: application/json: schema: $ref: '#/components/schemas/microsoft.graph.unifiedRbacResourceAction' default: $ref: '#/components/responses/error' x-ms-docs-operation-type: operation patch: tags: - roleManagement.rbacApplication summary: Update the navigation property resourceActions in roleManagement operationId: roleManagement.directory.resourceNamespace_UpdateResourceAction parameters: - name: unifiedRbacResourceNamespace-id in: path description: The unique identifier of unifiedRbacResourceNamespace required: true style: simple schema: type: string x-ms-docs-key-type: unifiedRbacResourceNamespace - name: unifiedRbacResourceAction-id in: path description: The unique identifier of unifiedRbacResourceAction required: true style: simple schema: type: string x-ms-docs-key-type: unifiedRbacResourceAction requestBody: description: New navigation property values content: application/json: schema: $ref: '#/components/schemas/microsoft.graph.unifiedRbacResourceAction' required: true responses: 2XX: description: Success content: application/json: schema: $ref: '#/components/schemas/microsoft.graph.unifiedRbacResourceAction' default: $ref: '#/components/responses/error' x-ms-docs-operation-type: operation delete: tags: - roleManagement.rbacApplication summary: Delete navigation property resourceActions for roleManagement operationId: roleManagement.directory.resourceNamespace_DeleteResourceAction parameters: - name: unifiedRbacResourceNamespace-id in: path description: The unique identifier of unifiedRbacResourceNamespace required: true style: simple schema: type: string x-ms-docs-key-type: unifiedRbacResourceNamespace - name: unifiedRbacResourceAction-id in: path description: The unique identifier of unifiedRbacResourceAction required: true style: simple schema: type: string x-ms-docs-key-type: unifiedRbacResourceAction - name: If-Match in: header description: ETag style: simple schema: type: string responses: 2XX: description: Success default: $ref: '#/components/responses/error' x-ms-docs-operation-type: operation /roleManagement/directory/resourceNamespaces/{unifiedRbacResourceNamespace-id}/resourceActions/$count: get: tags: - roleManagement.rbacApplication summary: Get the number of the resource operationId: roleManagement.directory.resourceNamespace.resourceAction_GetCount parameters: - name: unifiedRbacResourceNamespace-id in: path description: The unique identifier of unifiedRbacResourceNamespace required: true style: simple schema: type: string x-ms-docs-key-type: unifiedRbacResourceNamespace - $ref: '#/components/parameters/search' - $ref: '#/components/parameters/filter' responses: 2XX: $ref: '#/components/responses/ODataCountResponse' default: $ref: '#/components/responses/error' /roleManagement/directory/resourceNamespaces/$count: get: tags: - roleManagement.rbacApplication summary: Get the number of the resource operationId: roleManagement.directory.resourceNamespace_GetCount parameters: - $ref: '#/components/parameters/search' - $ref: '#/components/parameters/filter' responses: 2XX: $ref: '#/components/responses/ODataCountResponse' default: $ref: '#/components/responses/error' /roleManagement/directory/roleAssignments: get: tags: - roleManagement.rbacApplication summary: List unifiedRoleAssignments description: 'Get a list of unifiedRoleAssignment objects for the RBAC provider. The following RBAC providers are currently supported: - directory (Microsoft Entra ID) - entitlement management (Microsoft Entra entitlement management)' externalDocs: description: Find more info here url: https://learn.microsoft.com/graph/api/rbacapplication-list-roleassignments?view=graph-rest-1.0 operationId: roleManagement.directory_ListRoleAssignment parameters: - $ref: '#/components/parameters/top' - $ref: '#/components/parameters/skip' - $ref: '#/components/parameters/search' - $ref: '#/components/parameters/filter' - $ref: '#/components/parameters/count' - name: $orderby in: query description: Order items by property values style: form explode: false schema: uniqueItems: true type: array items: type: string - name: $select in: query description: Select properties to be returned style: form explode: false schema: uniqueItems: true type: array items: type: string - name: $expand in: query description: Expand related entities style: form explode: false schema: uniqueItems: true type: array items: type: string responses: 2XX: $ref: '#/components/responses/microsoft.graph.unifiedRoleAssignmentCollectionResponse' default: $ref: '#/components/responses/error' x-ms-pageable: nextLinkName: '@odata.nextLink' operationName: listMore x-ms-docs-operation-type: operation post: tags: - roleManagement.rbacApplication summary: Create unifiedRoleAssignment description: Create a new unifiedRoleAssignment object. externalDocs: description: Find more info here url: https://learn.microsoft.com/graph/api/rbacapplication-post-roleassignments?view=graph-rest-1.0 operationId: roleManagement.directory_CreateRoleAssignment requestBody: description: New navigation property content: application/json: schema: $ref: '#/components/schemas/microsoft.graph.unifiedRoleAssignment' required: true responses: 2XX: description: Created navigation property. content: application/json: schema: $ref: '#/components/schemas/microsoft.graph.unifiedRoleAssignment' default: $ref: '#/components/responses/error' x-ms-docs-operation-type: operation /roleManagement/directory/roleAssignments/{unifiedRoleAssignment-id}: get: tags: - roleManagement.rbacApplication summary: Get unifiedRoleAssignment description: Retrieve the properties and relationships of a unifiedRoleAssignment object. externalDocs: description: Find more info here url: https://learn.microsoft.com/graph/api/unifiedroleassignment-get?view=graph-rest-1.0 operationId: roleManagement.directory_GetRoleAssignment parameters: - name: unifiedRoleAssignment-id in: path description: The unique identifier of unifiedRoleAssignment required: true style: simple schema: type: string x-ms-docs-key-type: unifiedRoleAssignment - name: $select in: query description: Select properties to be returned style: form explode: false schema: uniqueItems: true type: array items: type: string - name: $expand in: query description: Expand related entities style: form explode: false schema: uniqueItems: true type: array items: type: string responses: 2XX: description: Retrieved navigation property content: application/json: schema: $ref: '#/components/schemas/microsoft.graph.unifiedRoleAssignment' default: $ref: '#/components/responses/error' x-ms-docs-operation-type: operation patch: tags: - roleManagement.rbacApplication summary: Update the navigation property roleAssignments in roleManagement operationId: roleManagement.directory_UpdateRoleAssignment parameters: - name: unifiedRoleAssignment-id in: path description: The unique identifier of unifiedRoleAssignment required: true style: simple schema: type: string x-ms-docs-key-type: unifiedRoleAssignment requestBody: description: New navigation property values content: application/json: schema: $ref: '#/components/schemas/microsoft.graph.unifiedRoleAssignment' required: true responses: 2XX: description: Success content: application/json: schema: $ref: '#/components/schemas/microsoft.graph.unifiedRoleAssignment' default: $ref: '#/components/responses/error' x-ms-docs-operation-type: operation delete: tags: - roleManagement.rbacApplication summary: Delete unifiedRoleAssignment description: Delete a unifiedRoleAssignment object. externalDocs: description: Find more info here url: https://learn.microsoft.com/graph/api/unifiedroleassignment-delete?view=graph-rest-1.0 operationId: roleManagement.directory_DeleteRoleAssignment parameters: - name: unifiedRoleAssignment-id in: path description: The unique identifier of unifiedRoleAssignment required: true style: simple schema: type: string x-ms-docs-key-type: unifiedRoleAssignment - name: If-Match in: header description: ETag style: simple schema: type: string responses: 2XX: description: Success default: $ref: '#/components/responses/error' x-ms-docs-operation-type: operation /roleManagement/directory/roleAssignments/{unifiedRoleAssignment-id}/appScope: get: tags: - roleManagement.rbacApplication summary: Get appScope from roleManagement description: Read-only property with details of the app specific scope when the assignment scope is app specific. Containment entity. Supports $expand for the entitlement provider only. operationId: roleManagement.directory.roleAssignment_GetAppScope parameters: - name: unifiedRoleAssignment-id in: path description: The unique identifier of unifiedRoleAssignment required: true style: simple schema: type: string x-ms-docs-key-type: unifiedRoleAssignment - name: $select in: query description: Select properties to be returned style: form explode: false schema: uniqueItems: true type: array items: type: string - name: $expand in: query description: Expand related entities style: form explode: false schema: uniqueItems: true type: array items: type: string responses: 2XX: description: Retrieved navigation property content: application/json: schema: $ref: '#/components/schemas/microsoft.graph.appScope' default: $ref: '#/components/responses/error' x-ms-docs-operation-type: operation patch: tags: - roleManagement.rbacApplication summary: Update the navigation property appScope in roleManagement operationId: roleManagement.directory.roleAssignment_UpdateAppScope parameters: - name: unifiedRoleAssignment-id in: path description: The unique identifier of unifiedRoleAssignment required: true style: simple schema: type: string x-ms-docs-key-type: unifiedRoleAssignment requestBody: description: New navigation property values content: application/json: schema: $ref: '#/components/schemas/microsoft.graph.appScope' required: true responses: 2XX: description: Success content: application/json: schema: $ref: '#/components/schemas/microsoft.graph.appScope' default: $ref: '#/components/responses/error' x-ms-docs-operation-type: operation delete: tags: - roleManagement.rbacApplication summary: Delete navigation property appScope for roleManagement operationId: roleManagement.directory.roleAssignment_DeleteAppScope parameters: - name: unifiedRoleAssignment-id in: path description: The unique identifier of unifiedRoleAssignment required: true style: simple schema: type: string x-ms-docs-key-type: unifiedRoleAssignment - name: If-Match in: header description: ETag style: simple schema: type: string responses: 2XX: description: Success default: $ref: '#/components/responses/error' x-ms-docs-operation-type: operation /roleManagement/directory/roleAssignments/{unifiedRoleAssignment-id}/directoryScope: get: tags: - roleManagement.rbacApplication summary: Get directoryScope from roleManagement description: The directory object that is the scope of the assignment. Read-only. Supports $expand for the directory provider. operationId: roleManagement.directory.roleAssignment_GetDirectoryScope parameters: - name: unifiedRoleAssignment-id in: path description: The unique identifier of unifiedRoleAssignment required: true style: simple schema: type: string x-ms-docs-key-type: unifiedRoleAssignment - name: $select in: query description: Select properties to be returned style: form explode: false schema: uniqueItems: true type: array items: type: string - name: $expand in: query description: Expand related entities style: form explode: false schema: uniqueItems: true type: array items: type: string responses: 2XX: description: Retrieved navigation property content: application/json: schema: $ref: '#/components/schemas/microsoft.graph.directoryObject' default: $ref: '#/components/responses/error' x-ms-docs-operation-type: operation /roleManagement/directory/roleAssignments/{unifiedRoleAssignment-id}/principal: get: tags: - roleManagement.rbacApplication summary: Get principal from roleManagement description: Referencing the assigned principal. Read-only. Supports $expand except for the Exchange provider. operationId: roleManagement.directory.roleAssignment_GetPrincipal parameters: - name: unifiedRoleAssignment-id in: path description: The unique identifier of unifiedRoleAssignment required: true style: simple schema: type: string x-ms-docs-key-type: unifiedRoleAssignment - name: $select in: query description: Select properties to be returned style: form explode: false schema: uniqueItems: true type: array items: type: string - name: $expand in: query description: Expand related entities style: form explode: false schema: uniqueItems: true type: array items: type: string responses: 2XX: description: Retrieved navigation property content: application/json: schema: $ref: '#/components/schemas/microsoft.graph.directoryObject' default: $ref: '#/components/responses/error' x-ms-docs-operation-type: operation /roleManagement/directory/roleAssignments/{unifiedRoleAssignment-id}/roleDefinition: get: tags: - roleManagement.rbacApplication summary: Get roleDefinition from roleManagement description: The roleDefinition the assignment is for. Supports $expand. operationId: roleManagement.directory.roleAssignment_GetRoleDefinition parameters: - name: unifiedRoleAssignment-id in: path description: The unique identifier of unifiedRoleAssignment required: true style: simple schema: type: string x-ms-docs-key-type: unifiedRoleAssignment - name: $select in: query description: Select properties to be returned style: form explode: false schema: uniqueItems: true type: array items: type: string - name: $expand in: query description: Expand related entities style: form explode: false schema: uniqueItems: true type: array items: type: string responses: 2XX: description: Retrieved navigation property content: application/json: schema: $ref: '#/components/schemas/microsoft.graph.unifiedRoleDefinition' default: $ref: '#/components/responses/error' x-ms-docs-operation-type: operation /roleManagement/directory/roleAssignments/$count: get: tags: - roleManagement.rbacApplication summary: Get the number of the resource operationId: roleManagement.directory.roleAssignment_GetCount parameters: - $ref: '#/components/parameters/search' - $ref: '#/components/parameters/filter' responses: 2XX: $ref: '#/components/responses/ODataCountResponse' default: $ref: '#/components/responses/error' /roleManagement/directory/roleAssignmentScheduleInstances: get: tags: - roleManagement.rbacApplication summary: List roleAssignmentScheduleInstances description: Get the instances of active role assignments in your tenant. The active assignments include those made through assignments and activation requests, and directly through the role assignments API. externalDocs: description: Find more info here url: https://learn.microsoft.com/graph/api/rbacapplication-list-roleassignmentscheduleinstances?view=graph-rest-1.0 operationId: roleManagement.directory_ListRoleAssignmentScheduleInstance parameters: - $ref: '#/components/parameters/top' - $ref: '#/components/parameters/skip' - $ref: '#/components/parameters/search' - $ref: '#/components/parameters/filter' - $ref: '#/components/parameters/count' - name: $orderby in: query description: Order items by property values style: form explode: false schema: uniqueItems: true type: array items: type: string - name: $select in: query description: Select properties to be returned style: form explode: false schema: uniqueItems: true type: array items: type: string - name: $expand in: query description: Expand related entities style: form explode: false schema: uniqueItems: true type: array items: type: string responses: 2XX: $ref: '#/components/responses/microsoft.graph.unifiedRoleAssignmentScheduleInstanceCollectionResponse' default: $ref: '#/components/responses/error' x-ms-pageable: nextLinkName: '@odata.nextLink' operationName: listMore x-ms-docs-operation-type: operation post: tags: - roleManagement.rbacApplication summary: Create new navigation property to roleAssignmentScheduleInstances for… operationId: roleManagement.directory_CreateRoleAssignmentScheduleInstance requestBody: description: New navigation property content: application/json: schema: $ref: '#/components/schemas/microsoft.graph.unifiedRoleAssignmentScheduleInstance' required: true responses: 2XX: description: Created navigation property. content: application/json: schema: $ref: '#/components/schemas/microsoft.graph.unifiedRoleAssignmentScheduleInstance' default: $ref: '#/components/responses/error' x-ms-docs-operation-type: operation /roleManagement/directory/roleAssignmentScheduleInstances/{unifiedRoleAssignmentScheduleInstance-id}: get: tags: - roleManagement.rbacApplication summary: Get unifiedRoleAssignmentScheduleInstance description: Get the instance of an active role assignment. externalDocs: description: Find more info here url: https://learn.microsoft.com/graph/api/unifiedroleassignmentscheduleinstance-get?view=graph-rest-1.0 operationId: roleManagement.directory_GetRoleAssignmentScheduleInstance parameters: - name: unifiedRoleAssignmentScheduleInstance-id in: path description: The unique identifier of unifiedRoleAssignmentScheduleInstance required: true style: simple schema: type: string x-ms-docs-key-type: unifiedRoleAssignmentScheduleInstance - name: $select in: query description: Select properties to be returned style: form explode: false schema: uniqueItems: true type: array items: type: string - name: $expand in: query description: Expand related entities style: form explode: false schema: uniqueItems: true type: array items: type: string responses: 2XX: description: Retrieved navigation property content: application/json: schema: $ref: '#/components/schemas/microsoft.graph.unifiedRoleAssignmentScheduleInstance' default: $ref: '#/components/responses/error' x-ms-docs-operation-type: operation patch: tags: - roleManagement.rbacApplication summary: Update the navigation property roleAssignmentScheduleInstances in roleManagement operationId: roleManagement.directory_UpdateRoleAssignmentScheduleInstance parameters: - name: unifiedRoleAssignmentScheduleInstance-id in: path description: The unique identifier of unifiedRoleAssignmentScheduleInstance required: true style: simple schema: type: string x-ms-docs-key-type: unifiedRoleAssignmentScheduleInstance requestBody: description: New navigation property values content: application/json: schema: $ref: '#/components/schemas/microsoft.graph.unifiedRoleAssignmentScheduleInstance' required: true responses: 2XX: description: Success content: application/json: schema: $ref: '#/components/schemas/microsoft.graph.unifiedRoleAssignmentScheduleInstance' default: $ref: '#/components/responses/error' x-ms-docs-operation-type: operation delete: tags: - roleManagement.rbacApplication summary: Delete navigation property roleAssignmentScheduleInstances for roleManagement operationId: roleManagement.directory_DeleteRoleAssignmentScheduleInstance parameters: - name: unifiedRoleAssignmentScheduleInstance-id in: path description: The unique identifier of unifiedRoleAssignmentScheduleInstance required: true style: simple schema: type: string x-ms-docs-key-type: unifiedRoleAssignmentScheduleInstance - name: If-Match in: header description: ETag style: simple schema: type: string responses: 2XX: description: Success default: $ref: '#/components/responses/error' x-ms-docs-operation-type: operation /roleManagement/directory/roleAssignmentScheduleInstances/{unifiedRoleAssignmentScheduleInstance-id}/activatedUsing: get: tags: - roleManagement.rbacApplication summary: Get activatedUsing from roleManagement description: If the request is from an eligible administrator to activate a role, this parameter shows the related eligible assignment for that activation. Otherwise, it's null. Supports $expand and $select nested in $expand. operationId: roleManagement.directory.roleAssignmentScheduleInstance_GetActivatedUsing parameters: - name: unifiedRoleAssignmentScheduleInstance-id in: path description: The unique identifier of unifiedRoleAssignmentScheduleInstance required: true style: simple schema: type: string x-ms-docs-key-type: unifiedRoleAssignmentScheduleInstance - name: $select in: query description: Select properties to be returned style: form explode: false schema: uniqueItems: true type: array items: type: string - name: $expand in: query description: Expand related entities style: form explode: false schema: uniqueItems: true type: array items: type: string responses: 2XX: description: Retrieved navigation property content: application/json: schema: $ref: '#/components/schemas/microsoft.graph.unifiedRoleEligibilityScheduleInstance' default: $ref: '#/components/responses/error' x-ms-docs-operation-type: operation /roleManagement/directory/roleAssignmentScheduleInstances/{unifiedRoleAssignmentScheduleInstance-id}/appScope: get: tags: - roleManagement.rbacApplication summary: Get appScope from roleManagement description: Read-only property with details of the app-specific scope when the assignment or role eligibility is scoped to an app. Nullable. operationId: roleManagement.directory.roleAssignmentScheduleInstance_GetAppScope parameters: - name: unifiedRoleAssignmentScheduleInstance-id in: path description: The unique identifier of unifiedRoleAssignmentScheduleInstance required: true style: simple schema: type: string x-ms-docs-key-type: unifiedRoleAssignmentScheduleInstance - name: $select in: query description: Select properties to be returned style: form explode: false schema: uniqueItems: true type: array items: type: string - name: $expand in: query description: Expand related entities style: form explode: false schema: uniqueItems: true type: array items: type: string responses: 2XX: description: Retrieved navigation property content: application/json: schema: $ref: '#/components/schemas/microsoft.graph.appScope' default: $ref: '#/components/responses/error' x-ms-docs-operation-type: operation /roleManagement/directory/roleAssignmentScheduleInstances/{unifiedRoleAssignmentScheduleInstance-id}/directoryScope: get: tags: - roleManagement.rbacApplication summary: Get directoryScope from roleManagement description: The directory object that is the scope of the assignment or role eligibility. Read-only. operationId: roleManagement.directory.roleAssignmentScheduleInstance_GetDirectoryScope parameters: - name: unifiedRoleAssignmentScheduleInstance-id in: path description: The unique identifier of unifiedRoleAssignmentScheduleInstance required: true style: simple schema: type: string x-ms-docs-key-type: unifiedRoleAssignmentScheduleInstance - name: $select in: query description: Select properties to be returned style: form explode: false schema: uniqueItems: true type: array items: type: string - name: $expand in: query description: Expand related entities style: form explode: false schema: uniqueItems: true type: array items: type: string responses: 2XX: description: Retrieved navigation property content: application/json: schema: $ref: '#/components/schemas/microsoft.graph.directoryObject' default: $ref: '#/components/responses/error' x-ms-docs-operation-type: operation /roleManagement/directory/roleAssignmentScheduleInstances/{unifiedRoleAssignmentScheduleInstance-id}/principal: get: tags: - roleManagement.rbacApplication summary: Get principal from roleManagement description: The principal that's getting a role assignment or role eligibility through the request. operationId: roleManagement.directory.roleAssignmentScheduleInstance_GetPrincipal parameters: - name: unifiedRoleAssignmentScheduleInstance-id in: path description: The unique identifier of unifiedRoleAssignmentScheduleInstance required: true style: simple schema: type: string x-ms-docs-key-type: unifiedRoleAssignmentScheduleInstance - name: $select in: query description: Select properties to be returned style: form explode: false schema: uniqueItems: true type: array items: type: string - name: $expand in: query description: Expand related entities style: form explode: false schema: uniqueItems: true type: array items: type: string responses: 2XX: description: Retrieved navigation property content: application/json: schema: $ref: '#/components/schemas/microsoft.graph.directoryObject' default: $ref: '#/components/responses/error' x-ms-docs-operation-type: operation /roleManagement/directory/roleAssignmentScheduleInstances/{unifiedRoleAssignmentScheduleInstance-id}/roleDefinition: get: tags: - roleManagement.rbacApplication summary: Get roleDefinition from roleManagement description: Detailed information for the roleDefinition object that is referenced through the roleDefinitionId property. operationId: roleManagement.directory.roleAssignmentScheduleInstance_GetRoleDefinition parameters: - name: unifiedRoleAssignmentScheduleInstance-id in: path description: The unique identifier of unifiedRoleAssignmentScheduleInstance required: true style: simple schema: type: string x-ms-docs-key-type: unifiedRoleAssignmentScheduleInstance - name: $select in: query description: Select properties to be returned style: form explode: false schema: uniqueItems: true type: array items: type: string - name: $expand in: query description: Expand related entities style: form explode: false schema: uniqueItems: true type: array items: type: string responses: 2XX: description: Retrieved navigation property content: application/json: schema: $ref: '#/components/schemas/microsoft.graph.unifiedRoleDefinition' default: $ref: '#/components/responses/error' x-ms-docs-operation-type: operation /roleManagement/directory/roleAssignmentScheduleInstances/$count: get: tags: - roleManagement.rbacApplication summary: Get the number of the resource operationId: roleManagement.directory.roleAssignmentScheduleInstance_GetCount parameters: - $ref: '#/components/parameters/search' - $ref: '#/components/parameters/filter' responses: 2XX: $ref: '#/components/responses/ODataCountResponse' default: $ref: '#/components/responses/error' /roleManagement/directory/roleAssignmentScheduleInstances/microsoft.graph.filterByCurrentUser(on='{on}'): get: tags: - roleManagement.rbacApplication summary: Invoke function filterByCurrentUser description: Get the instances of active role assignments for the calling principal. externalDocs: description: Find more info here url: https://learn.microsoft.com/graph/api/unifiedroleassignmentscheduleinstance-filterbycurrentuser?view=graph-rest-1.0 operationId: roleManagement.directory.roleAssignmentScheduleInstance_filterGraphBPreCurrentUser parameters: - name: true in: path description: 'Usage: on=''{on}''' required: true style: simple schema: $ref: '#/components/schemas/microsoft.graph.roleAssignmentScheduleInstanceFilterByCurrentUserOptions' - $ref: '#/components/parameters/top' - $ref: '#/components/parameters/skip' - $ref: '#/components/parameters/search' - $ref: '#/components/parameters/filter' - $ref: '#/components/parameters/count' - name: $select in: query description: Select properties to be returned style: form explode: false schema: uniqueItems: true type: array items: type: string - name: $orderby in: query description: Order items by property values style: form explode: false schema: uniqueItems: true type: array items: type: string - name: $expand in: query description: Expand related entities style: form explode: false schema: uniqueItems: true type: array items: type: string responses: 2XX: description: Success content: application/json: schema: title: Collection of unifiedRoleAssignmentScheduleInstance type: object properties: value: type: array items: $ref: '#/components/schemas/microsoft.graph.unifiedRoleAssignmentScheduleInstance' '@odata.nextLink': type: - string - 'null' additionalProperties: type: object default: $ref: '#/components/responses/error' x-ms-docs-operation-type: function x-ms-pageable: nextLinkName: '@odata.nextLink' operationName: listMore /roleManagement/directory/roleAssignmentScheduleRequests: get: tags: - roleManagement.rbacApplication summary: List roleAssignmentScheduleRequests description: Retrieve the requests for active role assignments to principals. The active assignments include those made through assignments and activation requests, and directly through the role assignments API. The role assignments can be permanently active with or without an expiry date, or temporarily active after user activation of eligible assignments. externalDocs: description: Find more info here url: https://learn.microsoft.com/graph/api/rbacapplication-list-roleassignmentschedulerequests?view=graph-rest-1.0 operationId: roleManagement.directory_ListRoleAssignmentScheduleRequest parameters: - $ref: '#/components/parameters/top' - $ref: '#/components/parameters/skip' - $ref: '#/components/parameters/search' - $ref: '#/components/parameters/filter' - $ref: '#/components/parameters/count' - name: $orderby in: query description: Order items by property values style: form explode: false schema: uniqueItems: true type: array items: type: string - name: $select in: query description: Select properties to be returned style: form explode: false schema: uniqueItems: true type: array items: type: string - name: $expand in: query description: Expand related entities style: form explode: false schema: uniqueItems: true type: array items: type: string responses: 2XX: $ref: '#/components/responses/microsoft.graph.unifiedRoleAssignmentScheduleRequestCollectionResponse' default: $ref: '#/components/responses/error' x-ms-pageable: nextLinkName: '@odata.nextLink' operationName: listMore x-ms-docs-operation-type: operation post: tags: - roleManagement.rbacApplication summary: Create roleAssignmentScheduleRequests description: 'In PIM, carry out the following operations through the unifiedRoleAssignmentScheduleRequest object: To call this API to update, renew, and extend assignments for yourself, you must have multifactor authentication (MFA) enforced, and running the query in a session in which they were challenged for MFA. See Enable per-user Microsoft Entra multifactor authentication to secure sign-in events.' externalDocs: description: Find more info here url: https://learn.microsoft.com/graph/api/rbacapplication-post-roleassignmentschedulerequests?view=graph-rest-1.0 operationId: roleManagement.directory_CreateRoleAssignmentScheduleRequest requestBody: description: New navigation property content: application/json: schema: $ref: '#/components/schemas/microsoft.graph.unifiedRoleAssignmentScheduleRequest' required: true responses: 2XX: description: Created navigation property. content: application/json: schema: $ref: '#/components/schemas/microsoft.graph.unifiedRoleAssignmentScheduleRequest' default: $ref: '#/components/responses/error' x-ms-docs-operation-type: operation /roleManagement/directory/roleAssignmentScheduleRequests/{unifiedRoleAssignmentScheduleRequest-id}: get: tags: - roleManagement.rbacApplication summary: Get unifiedRoleAssignmentScheduleRequest description: In PIM, read the details of a request for an active and persistent role assignment made through the unifiedRoleAssignmentScheduleRequest object. externalDocs: description: Find more info here url: https://learn.microsoft.com/graph/api/unifiedroleassignmentschedulerequest-get?view=graph-rest-1.0 operationId: roleManagement.directory_GetRoleAssignmentScheduleRequest parameters: - name: unifiedRoleAssignmentScheduleRequest-id in: path description: The unique identifier of unifiedRoleAssignmentScheduleRequest required: true style: simple schema: type: string x-ms-docs-key-type: unifiedRoleAssignmentScheduleRequest - name: $select in: query description: Select properties to be returned style: form explode: false schema: uniqueItems: true type: array items: type: string - name: $expand in: query description: Expand related entities style: form explode: false schema: uniqueItems: true type: array items: type: string responses: 2XX: description: Retrieved navigation property content: application/json: schema: $ref: '#/components/schemas/microsoft.graph.unifiedRoleAssignmentScheduleRequest' default: $ref: '#/components/responses/error' x-ms-docs-operation-type: operation patch: tags: - roleManagement.rbacApplication summary: Update the navigation property roleAssignmentScheduleRequests in roleManagement operationId: roleManagement.directory_UpdateRoleAssignmentScheduleRequest parameters: - name: unifiedRoleAssignmentScheduleRequest-id in: path description: The unique identifier of unifiedRoleAssignmentScheduleRequest required: true style: simple schema: type: string x-ms-docs-key-type: unifiedRoleAssignmentScheduleRequest requestBody: description: New navigation property values content: application/json: schema: $ref: '#/components/schemas/microsoft.graph.unifiedRoleAssignmentScheduleRequest' required: true responses: 2XX: description: Success content: application/json: schema: $ref: '#/components/schemas/microsoft.graph.unifiedRoleAssignmentScheduleRequest' default: $ref: '#/components/responses/error' x-ms-docs-operation-type: operation delete: tags: - roleManagement.rbacApplication summary: Delete navigation property roleAssignmentScheduleRequests for roleManagement operationId: roleManagement.directory_DeleteRoleAssignmentScheduleRequest parameters: - name: unifiedRoleAssignmentScheduleRequest-id in: path description: The unique identifier of unifiedRoleAssignmentScheduleRequest required: true style: simple schema: type: string x-ms-docs-key-type: unifiedRoleAssignmentScheduleRequest - name: If-Match in: header description: ETag style: simple schema: type: string responses: 2XX: description: Success default: $ref: '#/components/responses/error' x-ms-docs-operation-type: operation /roleManagement/directory/roleAssignmentScheduleRequests/{unifiedRoleAssignmentScheduleRequest-id}/activatedUsing: get: tags: - roleManagement.rbacApplication summary: Get activatedUsing from roleManagement description: If the request is from an eligible administrator to activate a role, this parameter will show the related eligible assignment for that activation. Otherwise, it's null. Supports $expand and $select nested in $expand. operationId: roleManagement.directory.roleAssignmentScheduleRequest_GetActivatedUsing parameters: - name: unifiedRoleAssignmentScheduleRequest-id in: path description: The unique identifier of unifiedRoleAssignmentScheduleRequest required: true style: simple schema: type: string x-ms-docs-key-type: unifiedRoleAssignmentScheduleRequest - name: $select in: query description: Select properties to be returned style: form explode: false schema: uniqueItems: true type: array items: type: string - name: $expand in: query description: Expand related entities style: form explode: false schema: uniqueItems: true type: array items: type: string responses: 2XX: description: Retrieved navigation property content: application/json: schema: $ref: '#/components/schemas/microsoft.graph.unifiedRoleEligibilitySchedule' default: $ref: '#/components/responses/error' x-ms-docs-operation-type: operation /roleManagement/directory/roleAssignmentScheduleRequests/{unifiedRoleAssignmentScheduleRequest-id}/appScope: get: tags: - roleManagement.rbacApplication summary: Get appScope from roleManagement description: Read-only property with details of the app-specific scope when the assignment is scoped to an app. Nullable. Supports $expand. operationId: roleManagement.directory.roleAssignmentScheduleRequest_GetAppScope parameters: - name: unifiedRoleAssignmentScheduleRequest-id in: path description: The unique identifier of unifiedRoleAssignmentScheduleRequest required: true style: simple schema: type: string x-ms-docs-key-type: unifiedRoleAssignmentScheduleRequest - name: $select in: query description: Select properties to be returned style: form explode: false schema: uniqueItems: true type: array items: type: string - name: $expand in: query description: Expand related entities style: form explode: false schema: uniqueItems: true type: array items: type: string responses: 2XX: description: Retrieved navigation property content: application/json: schema: $ref: '#/components/schemas/microsoft.graph.appScope' default: $ref: '#/components/responses/error' x-ms-docs-operation-type: operation /roleManagement/directory/roleAssignmentScheduleRequests/{unifiedRoleAssignmentScheduleRequest-id}/directoryScope: get: tags: - roleManagement.rbacApplication summary: Get directoryScope from roleManagement description: The directory object that is the scope of the assignment. Read-only. Supports $expand. operationId: roleManagement.directory.roleAssignmentScheduleRequest_GetDirectoryScope parameters: - name: unifiedRoleAssignmentScheduleRequest-id in: path description: The unique identifier of unifiedRoleAssignmentScheduleRequest required: true style: simple schema: type: string x-ms-docs-key-type: unifiedRoleAssignmentScheduleRequest - name: $select in: query description: Select properties to be returned style: form explode: false schema: uniqueItems: true type: array items: type: string - name: $expand in: query description: Expand related entities style: form explode: false schema: uniqueItems: true type: array items: type: string responses: 2XX: description: Retrieved navigation property content: application/json: schema: $ref: '#/components/schemas/microsoft.graph.directoryObject' default: $ref: '#/components/responses/error' x-ms-docs-operation-type: operation /roleManagement/directory/roleAssignmentScheduleRequests/{unifiedRoleAssignmentScheduleRequest-id}/microsoft.graph.cancel: post: tags: - roleManagement.rbacApplication summary: Invoke action cancel description: Immediately cancel a unifiedRoleAssignmentScheduleRequest object that is in a Granted status, and have the system automatically delete the canceled request after 30 days. After calling this action, the status of the canceled unifiedRoleAssignmentScheduleRequest changes to Canceled. externalDocs: description: Find more info here url: https://learn.microsoft.com/graph/api/unifiedroleassignmentschedulerequest-cancel?view=graph-rest-1.0 operationId: roleManagement.directory.roleAssignmentScheduleRequest_cancel parameters: - name: unifiedRoleAssignmentScheduleRequest-id in: path description: The unique identifier of unifiedRoleAssignmentScheduleRequest required: true style: simple schema: type: string x-ms-docs-key-type: unifiedRoleAssignmentScheduleRequest responses: 2XX: description: Success default: $ref: '#/components/responses/error' x-ms-docs-operation-type: action /roleManagement/directory/roleAssignmentScheduleRequests/{unifiedRoleAssignmentScheduleRequest-id}/principal: get: tags: - roleManagement.rbacApplication summary: Get principal from roleManagement description: The principal that's getting a role assignment through the request. Supports $expand and $select nested in $expand for id only. operationId: roleManagement.directory.roleAssignmentScheduleRequest_GetPrincipal parameters: - name: unifiedRoleAssignmentScheduleRequest-id in: path description: The unique identifier of unifiedRoleAssignmentScheduleRequest required: true style: simple schema: type: string x-ms-docs-key-type: unifiedRoleAssignmentScheduleRequest - name: $select in: query description: Select properties to be returned style: form explode: false schema: uniqueItems: true type: array items: type: string - name: $expand in: query description: Expand related entities style: form explode: false schema: uniqueItems: true type: array items: type: string responses: 2XX: description: Retrieved navigation property content: application/json: schema: $ref: '#/components/schemas/microsoft.graph.directoryObject' default: $ref: '#/components/responses/error' x-ms-docs-operation-type: operation /roleManagement/directory/roleAssignmentScheduleRequests/{unifiedRoleAssignmentScheduleRequest-id}/roleDefinition: get: tags: - roleManagement.rbacApplication summary: Get roleDefinition from roleManagement description: Detailed information for the unifiedRoleDefinition object that is referenced through the roleDefinitionId property. Supports $expand and $select nested in $expand. operationId: roleManagement.directory.roleAssignmentScheduleRequest_GetRoleDefinition parameters: - name: unifiedRoleAssignmentScheduleRequest-id in: path description: The unique identifier of unifiedRoleAssignmentScheduleRequest required: true style: simple schema: type: string x-ms-docs-key-type: unifiedRoleAssignmentScheduleRequest - name: $select in: query description: Select properties to be returned style: form explode: false schema: uniqueItems: true type: array items: type: string - name: $expand in: query description: Expand related entities style: form explode: false schema: uniqueItems: true type: array items: type: string responses: 2XX: description: Retrieved navigation property content: application/json: schema: $ref: '#/components/schemas/microsoft.graph.unifiedRoleDefinition' default: $ref: '#/components/responses/error' x-ms-docs-operation-type: operation /roleManagement/directory/roleAssignmentScheduleRequests/{unifiedRoleAssignmentScheduleRequest-id}/targetSchedule: get: tags: - roleManagement.rbacApplication summary: Get targetSchedule from roleManagement description: The schedule for an eligible role assignment that is referenced through the targetScheduleId property. Supports $expand and $select nested in $expand. operationId: roleManagement.directory.roleAssignmentScheduleRequest_GetTargetSchedule parameters: - name: unifiedRoleAssignmentScheduleRequest-id in: path description: The unique identifier of unifiedRoleAssignmentScheduleRequest required: true style: simple schema: type: string x-ms-docs-key-type: unifiedRoleAssignmentScheduleRequest - name: $select in: query description: Select properties to be returned style: form explode: false schema: uniqueItems: true type: array items: type: string - name: $expand in: query description: Expand related entities style: form explode: false schema: uniqueItems: true type: array items: type: string responses: 2XX: description: Retrieved navigation property content: application/json: schema: $ref: '#/components/schemas/microsoft.graph.unifiedRoleAssignmentSchedule' default: $ref: '#/components/responses/error' x-ms-docs-operation-type: operation /roleManagement/directory/roleAssignmentScheduleRequests/$count: get: tags: - roleManagement.rbacApplication summary: Get the number of the resource operationId: roleManagement.directory.roleAssignmentScheduleRequest_GetCount parameters: - $ref: '#/components/parameters/search' - $ref: '#/components/parameters/filter' responses: 2XX: $ref: '#/components/responses/ODataCountResponse' default: $ref: '#/components/responses/error' /roleManagement/directory/roleAssignmentScheduleRequests/microsoft.graph.filterByCurrentUser(on='{on}'): get: tags: - roleManagement.rbacApplication summary: Invoke function filterByCurrentUser description: In PIM, retrieve the requests for active role assignments for a particular principal. The principal can be the creator or approver of the unifiedRoleAssignmentScheduleRequest object, or they can be the target of the assignment. externalDocs: description: Find more info here url: https://learn.microsoft.com/graph/api/unifiedroleassignmentschedulerequest-filterbycurrentuser?view=graph-rest-1.0 operationId: roleManagement.directory.roleAssignmentScheduleRequest_filterGraphBPreCurrentUser parameters: - name: true in: path description: 'Usage: on=''{on}''' required: true style: simple schema: $ref: '#/components/schemas/microsoft.graph.roleAssignmentScheduleRequestFilterByCurrentUserOptions' - $ref: '#/components/parameters/top' - $ref: '#/components/parameters/skip' - $ref: '#/components/parameters/search' - $ref: '#/components/parameters/filter' - $ref: '#/components/parameters/count' - name: $select in: query description: Select properties to be returned style: form explode: false schema: uniqueItems: true type: array items: type: string - name: $orderby in: query description: Order items by property values style: form explode: false schema: uniqueItems: true type: array items: type: string - name: $expand in: query description: Expand related entities style: form explode: false schema: uniqueItems: true type: array items: type: string responses: 2XX: description: Success content: application/json: schema: title: Collection of unifiedRoleAssignmentScheduleRequest type: object properties: value: type: array items: $ref: '#/components/schemas/microsoft.graph.unifiedRoleAssignmentScheduleRequest' '@odata.nextLink': type: - string - 'null' additionalProperties: type: object default: $ref: '#/components/responses/error' x-ms-docs-operation-type: function x-ms-pageable: nextLinkName: '@odata.nextLink' operationName: listMore /roleManagement/directory/roleAssignmentSchedules: get: tags: - roleManagement.rbacApplication summary: List roleAssignmentSchedules description: Get the schedules for active role assignment operations. externalDocs: description: Find more info here url: https://learn.microsoft.com/graph/api/rbacapplication-list-roleassignmentschedules?view=graph-rest-1.0 operationId: roleManagement.directory_ListRoleAssignmentSchedule parameters: - $ref: '#/components/parameters/top' - $ref: '#/components/parameters/skip' - $ref: '#/components/parameters/search' - $ref: '#/components/parameters/filter' - $ref: '#/components/parameters/count' - name: $orderby in: query description: Order items by property values style: form explode: false schema: uniqueItems: true type: array items: type: string - name: $select in: query description: Select properties to be returned style: form explode: false schema: uniqueItems: true type: array items: type: string - name: $expand in: query description: Expand related entities style: form explode: false schema: uniqueItems: true type: array items: type: string responses: 2XX: $ref: '#/components/responses/microsoft.graph.unifiedRoleAssignmentScheduleCollectionResponse' default: $ref: '#/components/responses/error' x-ms-pageable: nextLinkName: '@odata.nextLink' operationName: listMore x-ms-docs-operation-type: operation post: tags: - roleManagement.rbacApplication summary: Create new navigation property to roleAssignmentSchedules for roleManagement operationId: roleManagement.directory_CreateRoleAssignmentSchedule requestBody: description: New navigation property content: application/json: schema: $ref: '#/components/schemas/microsoft.graph.unifiedRoleAssignmentSchedule' required: true responses: 2XX: description: Created navigation property. content: application/json: schema: $ref: '#/components/schemas/microsoft.graph.unifiedRoleAssignmentSchedule' default: $ref: '#/components/responses/error' x-ms-docs-operation-type: operation /roleManagement/directory/roleAssignmentSchedules/{unifiedRoleAssignmentSchedule-id}: get: tags: - roleManagement.rbacApplication summary: Get unifiedRoleAssignmentSchedule description: Retrieve the schedule for an active role assignment operation. externalDocs: description: Find more info here url: https://learn.microsoft.com/graph/api/unifiedroleassignmentschedule-get?view=graph-rest-1.0 operationId: roleManagement.directory_GetRoleAssignmentSchedule parameters: - name: unifiedRoleAssignmentSchedule-id in: path description: The unique identifier of unifiedRoleAssignmentSchedule required: true style: simple schema: type: string x-ms-docs-key-type: unifiedRoleAssignmentSchedule - name: $select in: query description: Select properties to be returned style: form explode: false schema: uniqueItems: true type: array items: type: string - name: $expand in: query description: Expand related entities style: form explode: false schema: uniqueItems: true type: array items: type: string responses: 2XX: description: Retrieved navigation property content: application/json: schema: $ref: '#/components/schemas/microsoft.graph.unifiedRoleAssignmentSchedule' default: $ref: '#/components/responses/error' x-ms-docs-operation-type: operation patch: tags: - roleManagement.rbacApplication summary: Update the navigation property roleAssignmentSchedules in roleManagement operationId: roleManagement.directory_UpdateRoleAssignmentSchedule parameters: - name: unifiedRoleAssignmentSchedule-id in: path description: The unique identifier of unifiedRoleAssignmentSchedule required: true style: simple schema: type: string x-ms-docs-key-type: unifiedRoleAssignmentSchedule requestBody: description: New navigation property values content: application/json: schema: $ref: '#/components/schemas/microsoft.graph.unifiedRoleAssignmentSchedule' required: true responses: 2XX: description: Success content: application/json: schema: $ref: '#/components/schemas/microsoft.graph.unifiedRoleAssignmentSchedule' default: $ref: '#/components/responses/error' x-ms-docs-operation-type: operation delete: tags: - roleManagement.rbacApplication summary: Delete navigation property roleAssignmentSchedules for roleManagement operationId: roleManagement.directory_DeleteRoleAssignmentSchedule parameters: - name: unifiedRoleAssignmentSchedule-id in: path description: The unique identifier of unifiedRoleAssignmentSchedule required: true style: simple schema: type: string x-ms-docs-key-type: unifiedRoleAssignmentSchedule - name: If-Match in: header description: ETag style: simple schema: type: string responses: 2XX: description: Success default: $ref: '#/components/responses/error' x-ms-docs-operation-type: operation /roleManagement/directory/roleAssignmentSchedules/{unifiedRoleAssignmentSchedule-id}/activatedUsing: get: tags: - roleManagement.rbacApplication summary: Get activatedUsing from roleManagement description: If the request is from an eligible administrator to activate a role, this parameter shows the related eligible assignment for that activation. Otherwise, it's null. Supports $expand. operationId: roleManagement.directory.roleAssignmentSchedule_GetActivatedUsing parameters: - name: unifiedRoleAssignmentSchedule-id in: path description: The unique identifier of unifiedRoleAssignmentSchedule required: true style: simple schema: type: string x-ms-docs-key-type: unifiedRoleAssignmentSchedule - name: $select in: query description: Select properties to be returned style: form explode: false schema: uniqueItems: true type: array items: type: string - name: $expand in: query description: Expand related entities style: form explode: false schema: uniqueItems: true type: array items: type: string responses: 2XX: description: Retrieved navigation property content: application/json: schema: $ref: '#/components/schemas/microsoft.graph.unifiedRoleEligibilitySchedule' default: $ref: '#/components/responses/error' x-ms-docs-operation-type: operation /roleManagement/directory/roleAssignmentSchedules/{unifiedRoleAssignmentSchedule-id}/appScope: get: tags: - roleManagement.rbacApplication summary: Get appScope from roleManagement description: Read-only property with details of the app-specific scope when the role eligibility or assignment is scoped to an app. Nullable. operationId: roleManagement.directory.roleAssignmentSchedule_GetAppScope parameters: - name: unifiedRoleAssignmentSchedule-id in: path description: The unique identifier of unifiedRoleAssignmentSchedule required: true style: simple schema: type: string x-ms-docs-key-type: unifiedRoleAssignmentSchedule - name: $select in: query description: Select properties to be returned style: form explode: false schema: uniqueItems: true type: array items: type: string - name: $expand in: query description: Expand related entities style: form explode: false schema: uniqueItems: true type: array items: type: string responses: 2XX: description: Retrieved navigation property content: application/json: schema: $ref: '#/components/schemas/microsoft.graph.appScope' default: $ref: '#/components/responses/error' x-ms-docs-operation-type: operation /roleManagement/directory/roleAssignmentSchedules/{unifiedRoleAssignmentSchedule-id}/directoryScope: get: tags: - roleManagement.rbacApplication summary: Get directoryScope from roleManagement description: The directory object that is the scope of the role eligibility or assignment. Read-only. operationId: roleManagement.directory.roleAssignmentSchedule_GetDirectoryScope parameters: - name: unifiedRoleAssignmentSchedule-id in: path description: The unique identifier of unifiedRoleAssignmentSchedule required: true style: simple schema: type: string x-ms-docs-key-type: unifiedRoleAssignmentSchedule - name: $select in: query description: Select properties to be returned style: form explode: false schema: uniqueItems: true type: array items: type: string - name: $expand in: query description: Expand related entities style: form explode: false schema: uniqueItems: true type: array items: type: string responses: 2XX: description: Retrieved navigation property content: application/json: schema: $ref: '#/components/schemas/microsoft.graph.directoryObject' default: $ref: '#/components/responses/error' x-ms-docs-operation-type: operation /roleManagement/directory/roleAssignmentSchedules/{unifiedRoleAssignmentSchedule-id}/principal: get: tags: - roleManagement.rbacApplication summary: Get principal from roleManagement description: The principal that's getting a role assignment or that's eligible for a role through the request. operationId: roleManagement.directory.roleAssignmentSchedule_GetPrincipal parameters: - name: unifiedRoleAssignmentSchedule-id in: path description: The unique identifier of unifiedRoleAssignmentSchedule required: true style: simple schema: type: string x-ms-docs-key-type: unifiedRoleAssignmentSchedule - name: $select in: query description: Select properties to be returned style: form explode: false schema: uniqueItems: true type: array items: type: string - name: $expand in: query description: Expand related entities style: form explode: false schema: uniqueItems: true type: array items: type: string responses: 2XX: description: Retrieved navigation property content: application/json: schema: $ref: '#/components/schemas/microsoft.graph.directoryObject' default: $ref: '#/components/responses/error' x-ms-docs-operation-type: operation /roleManagement/directory/roleAssignmentSchedules/{unifiedRoleAssignmentSchedule-id}/roleDefinition: get: tags: - roleManagement.rbacApplication summary: Get roleDefinition from roleManagement description: Detailed information for the roleDefinition object that is referenced through the roleDefinitionId property. operationId: roleManagement.directory.roleAssignmentSchedule_GetRoleDefinition parameters: - name: unifiedRoleAssignmentSchedule-id in: path description: The unique identifier of unifiedRoleAssignmentSchedule required: true style: simple schema: type: string x-ms-docs-key-type: unifiedRoleAssignmentSchedule - name: $select in: query description: Select properties to be returned style: form explode: false schema: uniqueItems: true type: array items: type: string - name: $expand in: query description: Expand related entities style: form explode: false schema: uniqueItems: true type: array items: type: string responses: 2XX: description: Retrieved navigation property content: application/json: schema: $ref: '#/components/schemas/microsoft.graph.unifiedRoleDefinition' default: $ref: '#/components/responses/error' x-ms-docs-operation-type: operation /roleManagement/directory/roleAssignmentSchedules/$count: get: tags: - roleManagement.rbacApplication summary: Get the number of the resource operationId: roleManagement.directory.roleAssignmentSchedule_GetCount parameters: - $ref: '#/components/parameters/search' - $ref: '#/components/parameters/filter' responses: 2XX: $ref: '#/components/responses/ODataCountResponse' default: $ref: '#/components/responses/error' /roleManagement/directory/roleAssignmentSchedules/microsoft.graph.filterByCurrentUser(on='{on}'): get: tags: - roleManagement.rbacApplication summary: Invoke function filterByCurrentUser description: Retrieve the schedules for active role assignment operations for which the signed-in user is the principal. externalDocs: description: Find more info here url: https://learn.microsoft.com/graph/api/unifiedroleassignmentschedule-filterbycurrentuser?view=graph-rest-1.0 operationId: roleManagement.directory.roleAssignmentSchedule_filterGraphBPreCurrentUser parameters: - name: true in: path description: 'Usage: on=''{on}''' required: true style: simple schema: $ref: '#/components/schemas/microsoft.graph.roleAssignmentScheduleFilterByCurrentUserOptions' - $ref: '#/components/parameters/top' - $ref: '#/components/parameters/skip' - $ref: '#/components/parameters/search' - $ref: '#/components/parameters/filter' - $ref: '#/components/parameters/count' - name: $select in: query description: Select properties to be returned style: form explode: false schema: uniqueItems: true type: array items: type: string - name: $orderby in: query description: Order items by property values style: form explode: false schema: uniqueItems: true type: array items: type: string - name: $expand in: query description: Expand related entities style: form explode: false schema: uniqueItems: true type: array items: type: string responses: 2XX: description: Success content: application/json: schema: title: Collection of unifiedRoleAssignmentSchedule type: object properties: value: type: array items: $ref: '#/components/schemas/microsoft.graph.unifiedRoleAssignmentSchedule' '@odata.nextLink': type: - string - 'null' additionalProperties: type: object default: $ref: '#/components/responses/error' x-ms-docs-operation-type: function x-ms-pageable: nextLinkName: '@odata.nextLink' operationName: listMore /roleManagement/directory/roleDefinitions: get: tags: - roleManagement.rbacApplication summary: List roleDefinitions description: 'Get a list of unifiedRoleDefinition objects for the provider. The following RBAC providers are currently supported: - directory (Microsoft Entra ID) - entitlement management (Microsoft Entra Entitlement Management)' externalDocs: description: Find more info here url: https://learn.microsoft.com/graph/api/rbacapplication-list-roledefinitions?view=graph-rest-1.0 operationId: roleManagement.directory_ListRoleDefinition parameters: - $ref: '#/components/parameters/top' - $ref: '#/components/parameters/skip' - $ref: '#/components/parameters/search' - $ref: '#/components/parameters/filter' - $ref: '#/components/parameters/count' - name: $orderby in: query description: Order items by property values style: form explode: false schema: uniqueItems: true type: array items: type: string - name: $select in: query description: Select properties to be returned style: form explode: false schema: uniqueItems: true type: array items: type: string - name: $expand in: query description: Expand related entities style: form explode: false schema: uniqueItems: true type: array items: type: string responses: 2XX: $ref: '#/components/responses/microsoft.graph.unifiedRoleDefinitionCollectionResponse' default: $ref: '#/components/responses/error' x-ms-pageable: nextLinkName: '@odata.nextLink' operationName: listMore x-ms-docs-operation-type: operation post: tags: - roleManagement.rbacApplication summary: Create roleDefinitions description: Create a new custom unifiedRoleDefinition object. This feature requires a Microsoft Entra ID P1 or P2 license. externalDocs: description: Find more info here url: https://learn.microsoft.com/graph/api/rbacapplication-post-roledefinitions?view=graph-rest-1.0 operationId: roleManagement.directory_CreateRoleDefinition requestBody: description: New navigation property content: application/json: schema: $ref: '#/components/schemas/microsoft.graph.unifiedRoleDefinition' required: true responses: 2XX: description: Created navigation property. content: application/json: schema: $ref: '#/components/schemas/microsoft.graph.unifiedRoleDefinition' default: $ref: '#/components/responses/error' x-ms-docs-operation-type: operation /roleManagement/directory/roleDefinitions/{unifiedRoleDefinition-id}: get: tags: - roleManagement.rbacApplication summary: Get unifiedRoleDefinition description: 'Read the properties and relationships of a unifiedRoleDefinition object. The following role-based access control (RBAC) providers are currently supported:' externalDocs: description: Find more info here url: https://learn.microsoft.com/graph/api/unifiedroledefinition-get?view=graph-rest-1.0 operationId: roleManagement.directory_GetRoleDefinition parameters: - name: unifiedRoleDefinition-id in: path description: The unique identifier of unifiedRoleDefinition required: true style: simple schema: type: string x-ms-docs-key-type: unifiedRoleDefinition - name: $select in: query description: Select properties to be returned style: form explode: false schema: uniqueItems: true type: array items: type: string - name: $expand in: query description: Expand related entities style: form explode: false schema: uniqueItems: true type: array items: type: string responses: 2XX: description: Retrieved navigation property content: application/json: schema: $ref: '#/components/schemas/microsoft.graph.unifiedRoleDefinition' default: $ref: '#/components/responses/error' x-ms-docs-operation-type: operation patch: tags: - roleManagement.rbacApplication summary: Update unifiedRoleDefinition description: Update the properties of a unifiedRoleDefinition object. You cannot update built-in roles. This feature requires a Microsoft Entra ID P1 or P2 license. externalDocs: description: Find more info here url: https://learn.microsoft.com/graph/api/unifiedroledefinition-update?view=graph-rest-1.0 operationId: roleManagement.directory_UpdateRoleDefinition parameters: - name: unifiedRoleDefinition-id in: path description: The unique identifier of unifiedRoleDefinition required: true style: simple schema: type: string x-ms-docs-key-type: unifiedRoleDefinition requestBody: description: New navigation property values content: application/json: schema: $ref: '#/components/schemas/microsoft.graph.unifiedRoleDefinition' required: true responses: 2XX: description: Success content: application/json: schema: $ref: '#/components/schemas/microsoft.graph.unifiedRoleDefinition' default: $ref: '#/components/responses/error' x-ms-docs-operation-type: operation delete: tags: - roleManagement.rbacApplication summary: Delete unifiedRoleDefinition description: Delete a unifiedRoleDefinition object. You can't delete built-in roles. This feature requires a Microsoft Entra ID P1 or P2 license. externalDocs: description: Find more info here url: https://learn.microsoft.com/graph/api/unifiedroledefinition-delete?view=graph-rest-1.0 operationId: roleManagement.directory_DeleteRoleDefinition parameters: - name: unifiedRoleDefinition-id in: path description: The unique identifier of unifiedRoleDefinition required: true style: simple schema: type: string x-ms-docs-key-type: unifiedRoleDefinition - name: If-Match in: header description: ETag style: simple schema: type: string responses: 2XX: description: Success default: $ref: '#/components/responses/error' x-ms-docs-operation-type: operation /roleManagement/directory/roleDefinitions/{unifiedRoleDefinition-id}/inheritsPermissionsFrom: get: tags: - roleManagement.rbacApplication summary: Get inheritsPermissionsFrom from roleManagement description: Read-only collection of role definitions that the given role definition inherits from. Only Microsoft Entra built-in roles (isBuiltIn is true) support this attribute. Supports $expand. operationId: roleManagement.directory.roleDefinition_ListInheritsPermissionsFrom parameters: - name: unifiedRoleDefinition-id in: path description: The unique identifier of unifiedRoleDefinition required: true style: simple schema: type: string x-ms-docs-key-type: unifiedRoleDefinition - $ref: '#/components/parameters/top' - $ref: '#/components/parameters/skip' - $ref: '#/components/parameters/search' - $ref: '#/components/parameters/filter' - $ref: '#/components/parameters/count' - name: $orderby in: query description: Order items by property values style: form explode: false schema: uniqueItems: true type: array items: type: string - name: $select in: query description: Select properties to be returned style: form explode: false schema: uniqueItems: true type: array items: type: string - name: $expand in: query description: Expand related entities style: form explode: false schema: uniqueItems: true type: array items: type: string responses: 2XX: $ref: '#/components/responses/microsoft.graph.unifiedRoleDefinitionCollectionResponse' default: $ref: '#/components/responses/error' x-ms-pageable: nextLinkName: '@odata.nextLink' operationName: listMore x-ms-docs-operation-type: operation post: tags: - roleManagement.rbacApplication summary: Create new navigation property to inheritsPermissionsFrom for roleManagement operationId: roleManagement.directory.roleDefinition_CreateInheritsPermissionsFrom parameters: - name: unifiedRoleDefinition-id in: path description: The unique identifier of unifiedRoleDefinition required: true style: simple schema: type: string x-ms-docs-key-type: unifiedRoleDefinition requestBody: description: New navigation property content: application/json: schema: $ref: '#/components/schemas/microsoft.graph.unifiedRoleDefinition' required: true responses: 2XX: description: Created navigation property. content: application/json: schema: $ref: '#/components/schemas/microsoft.graph.unifiedRoleDefinition' default: $ref: '#/components/responses/error' x-ms-docs-operation-type: operation /roleManagement/directory/roleDefinitions/{unifiedRoleDefinition-id}/inheritsPermissionsFrom/{unifiedRoleDefinition-id1}: get: tags: - roleManagement.rbacApplication summary: Get inheritsPermissionsFrom from roleManagement description: Read-only collection of role definitions that the given role definition inherits from. Only Microsoft Entra built-in roles (isBuiltIn is true) support this attribute. Supports $expand. operationId: roleManagement.directory.roleDefinition_GetInheritsPermissionsFrom parameters: - name: unifiedRoleDefinition-id in: path description: The unique identifier of unifiedRoleDefinition required: true style: simple schema: type: string x-ms-docs-key-type: unifiedRoleDefinition - name: unifiedRoleDefinition-id1 in: path description: The unique identifier of unifiedRoleDefinition required: true style: simple schema: type: string x-ms-docs-key-type: unifiedRoleDefinition - name: $select in: query description: Select properties to be returned style: form explode: false schema: uniqueItems: true type: array items: type: string - name: $expand in: query description: Expand related entities style: form explode: false schema: uniqueItems: true type: array items: type: string responses: 2XX: description: Retrieved navigation property content: application/json: schema: $ref: '#/components/schemas/microsoft.graph.unifiedRoleDefinition' default: $ref: '#/components/responses/error' x-ms-docs-operation-type: operation patch: tags: - roleManagement.rbacApplication summary: Update the navigation property inheritsPermissionsFrom in roleManagement operationId: roleManagement.directory.roleDefinition_UpdateInheritsPermissionsFrom parameters: - name: unifiedRoleDefinition-id in: path description: The unique identifier of unifiedRoleDefinition required: true style: simple schema: type: string x-ms-docs-key-type: unifiedRoleDefinition - name: unifiedRoleDefinition-id1 in: path description: The unique identifier of unifiedRoleDefinition required: true style: simple schema: type: string x-ms-docs-key-type: unifiedRoleDefinition requestBody: description: New navigation property values content: application/json: schema: $ref: '#/components/schemas/microsoft.graph.unifiedRoleDefinition' required: true responses: 2XX: description: Success content: application/json: schema: $ref: '#/components/schemas/microsoft.graph.unifiedRoleDefinition' default: $ref: '#/components/responses/error' x-ms-docs-operation-type: operation delete: tags: - roleManagement.rbacApplication summary: Delete navigation property inheritsPermissionsFrom for roleManagement operationId: roleManagement.directory.roleDefinition_DeleteInheritsPermissionsFrom parameters: - name: unifiedRoleDefinition-id in: path description: The unique identifier of unifiedRoleDefinition required: true style: simple schema: type: string x-ms-docs-key-type: unifiedRoleDefinition - name: unifiedRoleDefinition-id1 in: path description: The unique identifier of unifiedRoleDefinition required: true style: simple schema: type: string x-ms-docs-key-type: unifiedRoleDefinition - name: If-Match in: header description: ETag style: simple schema: type: string responses: 2XX: description: Success default: $ref: '#/components/responses/error' x-ms-docs-operation-type: operation /roleManagement/directory/roleDefinitions/{unifiedRoleDefinition-id}/inheritsPermissionsFrom/$count: get: tags: - roleManagement.rbacApplication summary: Get the number of the resource operationId: roleManagement.directory.roleDefinition.inheritsPermissionsFrom_GetCount parameters: - name: unifiedRoleDefinition-id in: path description: The unique identifier of unifiedRoleDefinition required: true style: simple schema: type: string x-ms-docs-key-type: unifiedRoleDefinition - $ref: '#/components/parameters/search' - $ref: '#/components/parameters/filter' responses: 2XX: $ref: '#/components/responses/ODataCountResponse' default: $ref: '#/components/responses/error' /roleManagement/directory/roleDefinitions/$count: get: tags: - roleManagement.rbacApplication summary: Get the number of the resource operationId: roleManagement.directory.roleDefinition_GetCount parameters: - $ref: '#/components/parameters/search' - $ref: '#/components/parameters/filter' responses: 2XX: $ref: '#/components/responses/ODataCountResponse' default: $ref: '#/components/responses/error' /roleManagement/directory/roleEligibilityScheduleInstances: get: tags: - roleManagement.rbacApplication summary: List roleEligibilityScheduleInstances description: Get the instances of role eligibilities. externalDocs: description: Find more info here url: https://learn.microsoft.com/graph/api/rbacapplication-list-roleeligibilityscheduleinstances?view=graph-rest-1.0 operationId: roleManagement.directory_ListRoleEligibilityScheduleInstance parameters: - $ref: '#/components/parameters/top' - $ref: '#/components/parameters/skip' - $ref: '#/components/parameters/search' - $ref: '#/components/parameters/filter' - $ref: '#/components/parameters/count' - name: $orderby in: query description: Order items by property values style: form explode: false schema: uniqueItems: true type: array items: type: string - name: $select in: query description: Select properties to be returned style: form explode: false schema: uniqueItems: true type: array items: type: string - name: $expand in: query description: Expand related entities style: form explode: false schema: uniqueItems: true type: array items: type: string responses: 2XX: $ref: '#/components/responses/microsoft.graph.unifiedRoleEligibilityScheduleInstanceCollectionResponse' default: $ref: '#/components/responses/error' x-ms-pageable: nextLinkName: '@odata.nextLink' operationName: listMore x-ms-docs-operation-type: operation post: tags: - roleManagement.rbacApplication summary: Create new navigation property to roleEligibilityScheduleInstances for… operationId: roleManagement.directory_CreateRoleEligibilityScheduleInstance requestBody: description: New navigation property content: application/json: schema: $ref: '#/components/schemas/microsoft.graph.unifiedRoleEligibilityScheduleInstance' required: true responses: 2XX: description: Created navigation property. content: application/json: schema: $ref: '#/components/schemas/microsoft.graph.unifiedRoleEligibilityScheduleInstance' default: $ref: '#/components/responses/error' x-ms-docs-operation-type: operation /roleManagement/directory/roleEligibilityScheduleInstances/{unifiedRoleEligibilityScheduleInstance-id}: get: tags: - roleManagement.rbacApplication summary: Get unifiedRoleEligibilityScheduleInstance description: Get the instance of a role eligibility. externalDocs: description: Find more info here url: https://learn.microsoft.com/graph/api/unifiedroleeligibilityscheduleinstance-get?view=graph-rest-1.0 operationId: roleManagement.directory_GetRoleEligibilityScheduleInstance parameters: - name: unifiedRoleEligibilityScheduleInstance-id in: path description: The unique identifier of unifiedRoleEligibilityScheduleInstance required: true style: simple schema: type: string x-ms-docs-key-type: unifiedRoleEligibilityScheduleInstance - name: $select in: query description: Select properties to be returned style: form explode: false schema: uniqueItems: true type: array items: type: string - name: $expand in: query description: Expand related entities style: form explode: false schema: uniqueItems: true type: array items: type: string responses: 2XX: description: Retrieved navigation property content: application/json: schema: $ref: '#/components/schemas/microsoft.graph.unifiedRoleEligibilityScheduleInstance' default: $ref: '#/components/responses/error' x-ms-docs-operation-type: operation patch: tags: - roleManagement.rbacApplication summary: Update the navigation property roleEligibilityScheduleInstances in… operationId: roleManagement.directory_UpdateRoleEligibilityScheduleInstance parameters: - name: unifiedRoleEligibilityScheduleInstance-id in: path description: The unique identifier of unifiedRoleEligibilityScheduleInstance required: true style: simple schema: type: string x-ms-docs-key-type: unifiedRoleEligibilityScheduleInstance requestBody: description: New navigation property values content: application/json: schema: $ref: '#/components/schemas/microsoft.graph.unifiedRoleEligibilityScheduleInstance' required: true responses: 2XX: description: Success content: application/json: schema: $ref: '#/components/schemas/microsoft.graph.unifiedRoleEligibilityScheduleInstance' default: $ref: '#/components/responses/error' x-ms-docs-operation-type: operation delete: tags: - roleManagement.rbacApplication summary: Delete navigation property roleEligibilityScheduleInstances for roleManagement operationId: roleManagement.directory_DeleteRoleEligibilityScheduleInstance parameters: - name: unifiedRoleEligibilityScheduleInstance-id in: path description: The unique identifier of unifiedRoleEligibilityScheduleInstance required: true style: simple schema: type: string x-ms-docs-key-type: unifiedRoleEligibilityScheduleInstance - name: If-Match in: header description: ETag style: simple schema: type: string responses: 2XX: description: Success default: $ref: '#/components/responses/error' x-ms-docs-operation-type: operation /roleManagement/directory/roleEligibilityScheduleInstances/{unifiedRoleEligibilityScheduleInstance-id}/appScope: get: tags: - roleManagement.rbacApplication summary: Get appScope from roleManagement description: Read-only property with details of the app-specific scope when the assignment or role eligibility is scoped to an app. Nullable. operationId: roleManagement.directory.roleEligibilityScheduleInstance_GetAppScope parameters: - name: unifiedRoleEligibilityScheduleInstance-id in: path description: The unique identifier of unifiedRoleEligibilityScheduleInstance required: true style: simple schema: type: string x-ms-docs-key-type: unifiedRoleEligibilityScheduleInstance - name: $select in: query description: Select properties to be returned style: form explode: false schema: uniqueItems: true type: array items: type: string - name: $expand in: query description: Expand related entities style: form explode: false schema: uniqueItems: true type: array items: type: string responses: 2XX: description: Retrieved navigation property content: application/json: schema: $ref: '#/components/schemas/microsoft.graph.appScope' default: $ref: '#/components/responses/error' x-ms-docs-operation-type: operation /roleManagement/directory/roleEligibilityScheduleInstances/{unifiedRoleEligibilityScheduleInstance-id}/directoryScope: get: tags: - roleManagement.rbacApplication summary: Get directoryScope from roleManagement description: The directory object that is the scope of the assignment or role eligibility. Read-only. operationId: roleManagement.directory.roleEligibilityScheduleInstance_GetDirectoryScope parameters: - name: unifiedRoleEligibilityScheduleInstance-id in: path description: The unique identifier of unifiedRoleEligibilityScheduleInstance required: true style: simple schema: type: string x-ms-docs-key-type: unifiedRoleEligibilityScheduleInstance - name: $select in: query description: Select properties to be returned style: form explode: false schema: uniqueItems: true type: array items: type: string - name: $expand in: query description: Expand related entities style: form explode: false schema: uniqueItems: true type: array items: type: string responses: 2XX: description: Retrieved navigation property content: application/json: schema: $ref: '#/components/schemas/microsoft.graph.directoryObject' default: $ref: '#/components/responses/error' x-ms-docs-operation-type: operation /roleManagement/directory/roleEligibilityScheduleInstances/{unifiedRoleEligibilityScheduleInstance-id}/principal: get: tags: - roleManagement.rbacApplication summary: Get principal from roleManagement description: The principal that's getting a role assignment or role eligibility through the request. operationId: roleManagement.directory.roleEligibilityScheduleInstance_GetPrincipal parameters: - name: unifiedRoleEligibilityScheduleInstance-id in: path description: The unique identifier of unifiedRoleEligibilityScheduleInstance required: true style: simple schema: type: string x-ms-docs-key-type: unifiedRoleEligibilityScheduleInstance - name: $select in: query description: Select properties to be returned style: form explode: false schema: uniqueItems: true type: array items: type: string - name: $expand in: query description: Expand related entities style: form explode: false schema: uniqueItems: true type: array items: type: string responses: 2XX: description: Retrieved navigation property content: application/json: schema: $ref: '#/components/schemas/microsoft.graph.directoryObject' default: $ref: '#/components/responses/error' x-ms-docs-operation-type: operation /roleManagement/directory/roleEligibilityScheduleInstances/{unifiedRoleEligibilityScheduleInstance-id}/roleDefinition: get: tags: - roleManagement.rbacApplication summary: Get roleDefinition from roleManagement description: Detailed information for the roleDefinition object that is referenced through the roleDefinitionId property. operationId: roleManagement.directory.roleEligibilityScheduleInstance_GetRoleDefinition parameters: - name: unifiedRoleEligibilityScheduleInstance-id in: path description: The unique identifier of unifiedRoleEligibilityScheduleInstance required: true style: simple schema: type: string x-ms-docs-key-type: unifiedRoleEligibilityScheduleInstance - name: $select in: query description: Select properties to be returned style: form explode: false schema: uniqueItems: true type: array items: type: string - name: $expand in: query description: Expand related entities style: form explode: false schema: uniqueItems: true type: array items: type: string responses: 2XX: description: Retrieved navigation property content: application/json: schema: $ref: '#/components/schemas/microsoft.graph.unifiedRoleDefinition' default: $ref: '#/components/responses/error' x-ms-docs-operation-type: operation /roleManagement/directory/roleEligibilityScheduleInstances/$count: get: tags: - roleManagement.rbacApplication summary: Get the number of the resource operationId: roleManagement.directory.roleEligibilityScheduleInstance_GetCount parameters: - $ref: '#/components/parameters/search' - $ref: '#/components/parameters/filter' responses: 2XX: $ref: '#/components/responses/ODataCountResponse' default: $ref: '#/components/responses/error' /roleManagement/directory/roleEligibilityScheduleInstances/microsoft.graph.filterByCurrentUser(on='{on}'): get: tags: - roleManagement.rbacApplication summary: Invoke function filterByCurrentUser description: Get the instances of eligible roles for the calling principal. externalDocs: description: Find more info here url: https://learn.microsoft.com/graph/api/unifiedroleeligibilityscheduleinstance-filterbycurrentuser?view=graph-rest-1.0 operationId: roleManagement.directory.roleEligibilityScheduleInstance_filterGraphBPreCurrentUser parameters: - name: true in: path description: 'Usage: on=''{on}''' required: true style: simple schema: $ref: '#/components/schemas/microsoft.graph.roleEligibilityScheduleInstanceFilterByCurrentUserOptions' - $ref: '#/components/parameters/top' - $ref: '#/components/parameters/skip' - $ref: '#/components/parameters/search' - $ref: '#/components/parameters/filter' - $ref: '#/components/parameters/count' - name: $select in: query description: Select properties to be returned style: form explode: false schema: uniqueItems: true type: array items: type: string - name: $orderby in: query description: Order items by property values style: form explode: false schema: uniqueItems: true type: array items: type: string - name: $expand in: query description: Expand related entities style: form explode: false schema: uniqueItems: true type: array items: type: string responses: 2XX: description: Success content: application/json: schema: title: Collection of unifiedRoleEligibilityScheduleInstance type: object properties: value: type: array items: $ref: '#/components/schemas/microsoft.graph.unifiedRoleEligibilityScheduleInstance' '@odata.nextLink': type: - string - 'null' additionalProperties: type: object default: $ref: '#/components/responses/error' x-ms-docs-operation-type: function x-ms-pageable: nextLinkName: '@odata.nextLink' operationName: listMore /roleManagement/directory/roleEligibilityScheduleRequests: get: tags: - roleManagement.rbacApplication summary: List roleEligibilityScheduleRequests description: In PIM, retrieve the requests for role eligibilities for principals made through the unifiedRoleEligibilityScheduleRequest object. externalDocs: description: Find more info here url: https://learn.microsoft.com/graph/api/rbacapplication-list-roleeligibilityschedulerequests?view=graph-rest-1.0 operationId: roleManagement.directory_ListRoleEligibilityScheduleRequest parameters: - $ref: '#/components/parameters/top' - $ref: '#/components/parameters/skip' - $ref: '#/components/parameters/search' - $ref: '#/components/parameters/filter' - $ref: '#/components/parameters/count' - name: $orderby in: query description: Order items by property values style: form explode: false schema: uniqueItems: true type: array items: type: string - name: $select in: query description: Select properties to be returned style: form explode: false schema: uniqueItems: true type: array items: type: string - name: $expand in: query description: Expand related entities style: form explode: false schema: uniqueItems: true type: array items: type: string responses: 2XX: $ref: '#/components/responses/microsoft.graph.unifiedRoleEligibilityScheduleRequestCollectionResponse' default: $ref: '#/components/responses/error' x-ms-pageable: nextLinkName: '@odata.nextLink' operationName: listMore x-ms-docs-operation-type: operation post: tags: - roleManagement.rbacApplication summary: Create roleEligibilityScheduleRequest description: In PIM, request for a role eligibility for a principal through the unifiedRoleEligibilityScheduleRequest object. This operation allows both admins and eligible users to add, revoke, or extend eligible assignments. externalDocs: description: Find more info here url: https://learn.microsoft.com/graph/api/rbacapplication-post-roleeligibilityschedulerequests?view=graph-rest-1.0 operationId: roleManagement.directory_CreateRoleEligibilityScheduleRequest requestBody: description: New navigation property content: application/json: schema: $ref: '#/components/schemas/microsoft.graph.unifiedRoleEligibilityScheduleRequest' required: true responses: 2XX: description: Created navigation property. content: application/json: schema: $ref: '#/components/schemas/microsoft.graph.unifiedRoleEligibilityScheduleRequest' default: $ref: '#/components/responses/error' x-ms-docs-operation-type: operation /roleManagement/directory/roleEligibilityScheduleRequests/{unifiedRoleEligibilityScheduleRequest-id}: get: tags: - roleManagement.rbacApplication summary: Get unifiedRoleEligibilityScheduleRequest description: In PIM, read the details of a request for for a role eligibility request made through the unifiedRoleEligibilityScheduleRequest object. externalDocs: description: Find more info here url: https://learn.microsoft.com/graph/api/unifiedroleeligibilityschedulerequest-get?view=graph-rest-1.0 operationId: roleManagement.directory_GetRoleEligibilityScheduleRequest parameters: - name: unifiedRoleEligibilityScheduleRequest-id in: path description: The unique identifier of unifiedRoleEligibilityScheduleRequest required: true style: simple schema: type: string x-ms-docs-key-type: unifiedRoleEligibilityScheduleRequest - name: $select in: query description: Select properties to be returned style: form explode: false schema: uniqueItems: true type: array items: type: string - name: $expand in: query description: Expand related entities style: form explode: false schema: uniqueItems: true type: array items: type: string responses: 2XX: description: Retrieved navigation property content: application/json: schema: $ref: '#/components/schemas/microsoft.graph.unifiedRoleEligibilityScheduleRequest' default: $ref: '#/components/responses/error' x-ms-docs-operation-type: operation patch: tags: - roleManagement.rbacApplication summary: Update the navigation property roleEligibilityScheduleRequests in roleManagement operationId: roleManagement.directory_UpdateRoleEligibilityScheduleRequest parameters: - name: unifiedRoleEligibilityScheduleRequest-id in: path description: The unique identifier of unifiedRoleEligibilityScheduleRequest required: true style: simple schema: type: string x-ms-docs-key-type: unifiedRoleEligibilityScheduleRequest requestBody: description: New navigation property values content: application/json: schema: $ref: '#/components/schemas/microsoft.graph.unifiedRoleEligibilityScheduleRequest' required: true responses: 2XX: description: Success content: application/json: schema: $ref: '#/components/schemas/microsoft.graph.unifiedRoleEligibilityScheduleRequest' default: $ref: '#/components/responses/error' x-ms-docs-operation-type: operation delete: tags: - roleManagement.rbacApplication summary: Delete navigation property roleEligibilityScheduleRequests for roleManagement operationId: roleManagement.directory_DeleteRoleEligibilityScheduleRequest parameters: - name: unifiedRoleEligibilityScheduleRequest-id in: path description: The unique identifier of unifiedRoleEligibilityScheduleRequest required: true style: simple schema: type: string x-ms-docs-key-type: unifiedRoleEligibilityScheduleRequest - name: If-Match in: header description: ETag style: simple schema: type: string responses: 2XX: description: Success default: $ref: '#/components/responses/error' x-ms-docs-operation-type: operation /roleManagement/directory/roleEligibilityScheduleRequests/{unifiedRoleEligibilityScheduleRequest-id}/appScope: get: tags: - roleManagement.rbacApplication summary: Get appScope from roleManagement description: Read-only property with details of the app-specific scope when the role eligibility is scoped to an app. Nullable. Supports $expand. operationId: roleManagement.directory.roleEligibilityScheduleRequest_GetAppScope parameters: - name: unifiedRoleEligibilityScheduleRequest-id in: path description: The unique identifier of unifiedRoleEligibilityScheduleRequest required: true style: simple schema: type: string x-ms-docs-key-type: unifiedRoleEligibilityScheduleRequest - name: $select in: query description: Select properties to be returned style: form explode: false schema: uniqueItems: true type: array items: type: string - name: $expand in: query description: Expand related entities style: form explode: false schema: uniqueItems: true type: array items: type: string responses: 2XX: description: Retrieved navigation property content: application/json: schema: $ref: '#/components/schemas/microsoft.graph.appScope' default: $ref: '#/components/responses/error' x-ms-docs-operation-type: operation /roleManagement/directory/roleEligibilityScheduleRequests/{unifiedRoleEligibilityScheduleRequest-id}/directoryScope: get: tags: - roleManagement.rbacApplication summary: Get directoryScope from roleManagement description: The directory object that is the scope of the role eligibility. Read-only. Supports $expand. operationId: roleManagement.directory.roleEligibilityScheduleRequest_GetDirectoryScope parameters: - name: unifiedRoleEligibilityScheduleRequest-id in: path description: The unique identifier of unifiedRoleEligibilityScheduleRequest required: true style: simple schema: type: string x-ms-docs-key-type: unifiedRoleEligibilityScheduleRequest - name: $select in: query description: Select properties to be returned style: form explode: false schema: uniqueItems: true type: array items: type: string - name: $expand in: query description: Expand related entities style: form explode: false schema: uniqueItems: true type: array items: type: string responses: 2XX: description: Retrieved navigation property content: application/json: schema: $ref: '#/components/schemas/microsoft.graph.directoryObject' default: $ref: '#/components/responses/error' x-ms-docs-operation-type: operation ? /roleManagement/directory/roleEligibilityScheduleRequests/{unifiedRoleEligibilityScheduleRequest-id}/microsoft.graph.cancel : post: tags: - roleManagement.rbacApplication summary: Invoke action cancel description: Immediately cancel a unifiedRoleEligibilityScheduleRequest object whose status is Granted and have the system automatically delete the cancelled request after 30 days. After calling this action, the status of the cancelled unifiedRoleEligibilityScheduleRequest changes to Revoked. externalDocs: description: Find more info here url: https://learn.microsoft.com/graph/api/unifiedroleeligibilityschedulerequest-cancel?view=graph-rest-1.0 operationId: roleManagement.directory.roleEligibilityScheduleRequest_cancel parameters: - name: unifiedRoleEligibilityScheduleRequest-id in: path description: The unique identifier of unifiedRoleEligibilityScheduleRequest required: true style: simple schema: type: string x-ms-docs-key-type: unifiedRoleEligibilityScheduleRequest responses: 2XX: description: Success default: $ref: '#/components/responses/error' x-ms-docs-operation-type: action /roleManagement/directory/roleEligibilityScheduleRequests/{unifiedRoleEligibilityScheduleRequest-id}/principal: get: tags: - roleManagement.rbacApplication summary: Get principal from roleManagement description: The principal that's getting a role eligibility through the request. Supports $expand. operationId: roleManagement.directory.roleEligibilityScheduleRequest_GetPrincipal parameters: - name: unifiedRoleEligibilityScheduleRequest-id in: path description: The unique identifier of unifiedRoleEligibilityScheduleRequest required: true style: simple schema: type: string x-ms-docs-key-type: unifiedRoleEligibilityScheduleRequest - name: $select in: query description: Select properties to be returned style: form explode: false schema: uniqueItems: true type: array items: type: string - name: $expand in: query description: Expand related entities style: form explode: false schema: uniqueItems: true type: array items: type: string responses: 2XX: description: Retrieved navigation property content: application/json: schema: $ref: '#/components/schemas/microsoft.graph.directoryObject' default: $ref: '#/components/responses/error' x-ms-docs-operation-type: operation /roleManagement/directory/roleEligibilityScheduleRequests/{unifiedRoleEligibilityScheduleRequest-id}/roleDefinition: get: tags: - roleManagement.rbacApplication summary: Get roleDefinition from roleManagement description: Detailed information for the unifiedRoleDefinition object that is referenced through the roleDefinitionId property. Supports $expand. operationId: roleManagement.directory.roleEligibilityScheduleRequest_GetRoleDefinition parameters: - name: unifiedRoleEligibilityScheduleRequest-id in: path description: The unique identifier of unifiedRoleEligibilityScheduleRequest required: true style: simple schema: type: string x-ms-docs-key-type: unifiedRoleEligibilityScheduleRequest - name: $select in: query description: Select properties to be returned style: form explode: false schema: uniqueItems: true type: array items: type: string - name: $expand in: query description: Expand related entities style: form explode: false schema: uniqueItems: true type: array items: type: string responses: 2XX: description: Retrieved navigation property content: application/json: schema: $ref: '#/components/schemas/microsoft.graph.unifiedRoleDefinition' default: $ref: '#/components/responses/error' x-ms-docs-operation-type: operation /roleManagement/directory/roleEligibilityScheduleRequests/{unifiedRoleEligibilityScheduleRequest-id}/targetSchedule: get: tags: - roleManagement.rbacApplication summary: Get targetSchedule from roleManagement description: The schedule for a role eligibility that is referenced through the targetScheduleId property. Supports $expand. operationId: roleManagement.directory.roleEligibilityScheduleRequest_GetTargetSchedule parameters: - name: unifiedRoleEligibilityScheduleRequest-id in: path description: The unique identifier of unifiedRoleEligibilityScheduleRequest required: true style: simple schema: type: string x-ms-docs-key-type: unifiedRoleEligibilityScheduleRequest - name: $select in: query description: Select properties to be returned style: form explode: false schema: uniqueItems: true type: array items: type: string - name: $expand in: query description: Expand related entities style: form explode: false schema: uniqueItems: true type: array items: type: string responses: 2XX: description: Retrieved navigation property content: application/json: schema: $ref: '#/components/schemas/microsoft.graph.unifiedRoleEligibilitySchedule' default: $ref: '#/components/responses/error' x-ms-docs-operation-type: operation /roleManagement/directory/roleEligibilityScheduleRequests/$count: get: tags: - roleManagement.rbacApplication summary: Get the number of the resource operationId: roleManagement.directory.roleEligibilityScheduleRequest_GetCount parameters: - $ref: '#/components/parameters/search' - $ref: '#/components/parameters/filter' responses: 2XX: $ref: '#/components/responses/ODataCountResponse' default: $ref: '#/components/responses/error' /roleManagement/directory/roleEligibilityScheduleRequests/microsoft.graph.filterByCurrentUser(on='{on}'): get: tags: - roleManagement.rbacApplication summary: Invoke function filterByCurrentUser description: In PIM, retrieve the requests for role eligibilities for a particular principal. The principal can be the creator or approver of the unifiedRoleEligibilityScheduleRequest object, or they can be the target of the role eligibility. externalDocs: description: Find more info here url: https://learn.microsoft.com/graph/api/unifiedroleeligibilityschedulerequest-filterbycurrentuser?view=graph-rest-1.0 operationId: roleManagement.directory.roleEligibilityScheduleRequest_filterGraphBPreCurrentUser parameters: - name: true in: path description: 'Usage: on=''{on}''' required: true style: simple schema: $ref: '#/components/schemas/microsoft.graph.roleEligibilityScheduleRequestFilterByCurrentUserOptions' - $ref: '#/components/parameters/top' - $ref: '#/components/parameters/skip' - $ref: '#/components/parameters/search' - $ref: '#/components/parameters/filter' - $ref: '#/components/parameters/count' - name: $select in: query description: Select properties to be returned style: form explode: false schema: uniqueItems: true type: array items: type: string - name: $orderby in: query description: Order items by property values style: form explode: false schema: uniqueItems: true type: array items: type: string - name: $expand in: query description: Expand related entities style: form explode: false schema: uniqueItems: true type: array items: type: string responses: 2XX: description: Success content: application/json: schema: title: Collection of unifiedRoleEligibilityScheduleRequest type: object properties: value: type: array items: $ref: '#/components/schemas/microsoft.graph.unifiedRoleEligibilityScheduleRequest' '@odata.nextLink': type: - string - 'null' additionalProperties: type: object default: $ref: '#/components/responses/error' x-ms-docs-operation-type: function x-ms-pageable: nextLinkName: '@odata.nextLink' operationName: listMore /roleManagement/directory/roleEligibilitySchedules: get: tags: - roleManagement.rbacApplication summary: List roleEligibilitySchedules description: Get the unifiedRoleEligibilitySchedule resources from the roleEligibilitySchedules navigation property. externalDocs: description: Find more info here url: https://learn.microsoft.com/graph/api/rbacapplication-list-roleeligibilityschedules?view=graph-rest-1.0 operationId: roleManagement.directory_ListRoleEligibilitySchedule parameters: - $ref: '#/components/parameters/top' - $ref: '#/components/parameters/skip' - $ref: '#/components/parameters/search' - $ref: '#/components/parameters/filter' - $ref: '#/components/parameters/count' - name: $orderby in: query description: Order items by property values style: form explode: false schema: uniqueItems: true type: array items: type: string - name: $select in: query description: Select properties to be returned style: form explode: false schema: uniqueItems: true type: array items: type: string - name: $expand in: query description: Expand related entities style: form explode: false schema: uniqueItems: true type: array items: type: string responses: 2XX: $ref: '#/components/responses/microsoft.graph.unifiedRoleEligibilityScheduleCollectionResponse' default: $ref: '#/components/responses/error' x-ms-pageable: nextLinkName: '@odata.nextLink' operationName: listMore x-ms-docs-operation-type: operation post: tags: - roleManagement.rbacApplication summary: Create new navigation property to roleEligibilitySchedules for roleManagement operationId: roleManagement.directory_CreateRoleEligibilitySchedule requestBody: description: New navigation property content: application/json: schema: $ref: '#/components/schemas/microsoft.graph.unifiedRoleEligibilitySchedule' required: true responses: 2XX: description: Created navigation property. content: application/json: schema: $ref: '#/components/schemas/microsoft.graph.unifiedRoleEligibilitySchedule' default: $ref: '#/components/responses/error' x-ms-docs-operation-type: operation /roleManagement/directory/roleEligibilitySchedules/{unifiedRoleEligibilitySchedule-id}: get: tags: - roleManagement.rbacApplication summary: Get unifiedRoleEligibilitySchedule description: Retrieve the schedule for a role eligibility operation. externalDocs: description: Find more info here url: https://learn.microsoft.com/graph/api/unifiedroleeligibilityschedule-get?view=graph-rest-1.0 operationId: roleManagement.directory_GetRoleEligibilitySchedule parameters: - name: unifiedRoleEligibilitySchedule-id in: path description: The unique identifier of unifiedRoleEligibilitySchedule required: true style: simple schema: type: string x-ms-docs-key-type: unifiedRoleEligibilitySchedule - name: $select in: query description: Select properties to be returned style: form explode: false schema: uniqueItems: true type: array items: type: string - name: $expand in: query description: Expand related entities style: form explode: false schema: uniqueItems: true type: array items: type: string responses: 2XX: description: Retrieved navigation property content: application/json: schema: $ref: '#/components/schemas/microsoft.graph.unifiedRoleEligibilitySchedule' default: $ref: '#/components/responses/error' x-ms-docs-operation-type: operation patch: tags: - roleManagement.rbacApplication summary: Update the navigation property roleEligibilitySchedules in roleManagement operationId: roleManagement.directory_UpdateRoleEligibilitySchedule parameters: - name: unifiedRoleEligibilitySchedule-id in: path description: The unique identifier of unifiedRoleEligibilitySchedule required: true style: simple schema: type: string x-ms-docs-key-type: unifiedRoleEligibilitySchedule requestBody: description: New navigation property values content: application/json: schema: $ref: '#/components/schemas/microsoft.graph.unifiedRoleEligibilitySchedule' required: true responses: 2XX: description: Success content: application/json: schema: $ref: '#/components/schemas/microsoft.graph.unifiedRoleEligibilitySchedule' default: $ref: '#/components/responses/error' x-ms-docs-operation-type: operation delete: tags: - roleManagement.rbacApplication summary: Delete navigation property roleEligibilitySchedules for roleManagement operationId: roleManagement.directory_DeleteRoleEligibilitySchedule parameters: - name: unifiedRoleEligibilitySchedule-id in: path description: The unique identifier of unifiedRoleEligibilitySchedule required: true style: simple schema: type: string x-ms-docs-key-type: unifiedRoleEligibilitySchedule - name: If-Match in: header description: ETag style: simple schema: type: string responses: 2XX: description: Success default: $ref: '#/components/responses/error' x-ms-docs-operation-type: operation /roleManagement/directory/roleEligibilitySchedules/{unifiedRoleEligibilitySchedule-id}/appScope: get: tags: - roleManagement.rbacApplication summary: Get appScope from roleManagement description: Read-only property with details of the app-specific scope when the role eligibility or assignment is scoped to an app. Nullable. operationId: roleManagement.directory.roleEligibilitySchedule_GetAppScope parameters: - name: unifiedRoleEligibilitySchedule-id in: path description: The unique identifier of unifiedRoleEligibilitySchedule required: true style: simple schema: type: string x-ms-docs-key-type: unifiedRoleEligibilitySchedule - name: $select in: query description: Select properties to be returned style: form explode: false schema: uniqueItems: true type: array items: type: string - name: $expand in: query description: Expand related entities style: form explode: false schema: uniqueItems: true type: array items: type: string responses: 2XX: description: Retrieved navigation property content: application/json: schema: $ref: '#/components/schemas/microsoft.graph.appScope' default: $ref: '#/components/responses/error' x-ms-docs-operation-type: operation /roleManagement/directory/roleEligibilitySchedules/{unifiedRoleEligibilitySchedule-id}/directoryScope: get: tags: - roleManagement.rbacApplication summary: Get directoryScope from roleManagement description: The directory object that is the scope of the role eligibility or assignment. Read-only. operationId: roleManagement.directory.roleEligibilitySchedule_GetDirectoryScope parameters: - name: unifiedRoleEligibilitySchedule-id in: path description: The unique identifier of unifiedRoleEligibilitySchedule required: true style: simple schema: type: string x-ms-docs-key-type: unifiedRoleEligibilitySchedule - name: $select in: query description: Select properties to be returned style: form explode: false schema: uniqueItems: true type: array items: type: string - name: $expand in: query description: Expand related entities style: form explode: false schema: uniqueItems: true type: array items: type: string responses: 2XX: description: Retrieved navigation property content: application/json: schema: $ref: '#/components/schemas/microsoft.graph.directoryObject' default: $ref: '#/components/responses/error' x-ms-docs-operation-type: operation /roleManagement/directory/roleEligibilitySchedules/{unifiedRoleEligibilitySchedule-id}/principal: get: tags: - roleManagement.rbacApplication summary: Get principal from roleManagement description: The principal that's getting a role assignment or that's eligible for a role through the request. operationId: roleManagement.directory.roleEligibilitySchedule_GetPrincipal parameters: - name: unifiedRoleEligibilitySchedule-id in: path description: The unique identifier of unifiedRoleEligibilitySchedule required: true style: simple schema: type: string x-ms-docs-key-type: unifiedRoleEligibilitySchedule - name: $select in: query description: Select properties to be returned style: form explode: false schema: uniqueItems: true type: array items: type: string - name: $expand in: query description: Expand related entities style: form explode: false schema: uniqueItems: true type: array items: type: string responses: 2XX: description: Retrieved navigation property content: application/json: schema: $ref: '#/components/schemas/microsoft.graph.directoryObject' default: $ref: '#/components/responses/error' x-ms-docs-operation-type: operation /roleManagement/directory/roleEligibilitySchedules/{unifiedRoleEligibilitySchedule-id}/roleDefinition: get: tags: - roleManagement.rbacApplication summary: Get roleDefinition from roleManagement description: Detailed information for the roleDefinition object that is referenced through the roleDefinitionId property. operationId: roleManagement.directory.roleEligibilitySchedule_GetRoleDefinition parameters: - name: unifiedRoleEligibilitySchedule-id in: path description: The unique identifier of unifiedRoleEligibilitySchedule required: true style: simple schema: type: string x-ms-docs-key-type: unifiedRoleEligibilitySchedule - name: $select in: query description: Select properties to be returned style: form explode: false schema: uniqueItems: true type: array items: type: string - name: $expand in: query description: Expand related entities style: form explode: false schema: uniqueItems: true type: array items: type: string responses: 2XX: description: Retrieved navigation property content: application/json: schema: $ref: '#/components/schemas/microsoft.graph.unifiedRoleDefinition' default: $ref: '#/components/responses/error' x-ms-docs-operation-type: operation /roleManagement/directory/roleEligibilitySchedules/$count: get: tags: - roleManagement.rbacApplication summary: Get the number of the resource operationId: roleManagement.directory.roleEligibilitySchedule_GetCount parameters: - $ref: '#/components/parameters/search' - $ref: '#/components/parameters/filter' responses: 2XX: $ref: '#/components/responses/ODataCountResponse' default: $ref: '#/components/responses/error' /roleManagement/directory/roleEligibilitySchedules/microsoft.graph.filterByCurrentUser(on='{on}'): get: tags: - roleManagement.rbacApplication summary: Invoke function filterByCurrentUser description: Retrieve the schedules for role eligibilities for which the signed-in user is the principal. externalDocs: description: Find more info here url: https://learn.microsoft.com/graph/api/unifiedroleeligibilityschedule-filterbycurrentuser?view=graph-rest-1.0 operationId: roleManagement.directory.roleEligibilitySchedule_filterGraphBPreCurrentUser parameters: - name: true in: path description: 'Usage: on=''{on}''' required: true style: simple schema: $ref: '#/components/schemas/microsoft.graph.roleEligibilityScheduleFilterByCurrentUserOptions' - $ref: '#/components/parameters/top' - $ref: '#/components/parameters/skip' - $ref: '#/components/parameters/search' - $ref: '#/components/parameters/filter' - $ref: '#/components/parameters/count' - name: $select in: query description: Select properties to be returned style: form explode: false schema: uniqueItems: true type: array items: type: string - name: $orderby in: query description: Order items by property values style: form explode: false schema: uniqueItems: true type: array items: type: string - name: $expand in: query description: Expand related entities style: form explode: false schema: uniqueItems: true type: array items: type: string responses: 2XX: description: Success content: application/json: schema: title: Collection of unifiedRoleEligibilitySchedule type: object properties: value: type: array items: $ref: '#/components/schemas/microsoft.graph.unifiedRoleEligibilitySchedule' '@odata.nextLink': type: - string - 'null' additionalProperties: type: object default: $ref: '#/components/responses/error' x-ms-docs-operation-type: function x-ms-pageable: nextLinkName: '@odata.nextLink' operationName: listMore /roleManagement/entitlementManagement: get: tags: - roleManagement.rbacApplication summary: Get entitlementManagement from roleManagement description: Container for roles and assignments for entitlement management resources. operationId: roleManagement_GetEntitlementManagement parameters: - name: $select in: query description: Select properties to be returned style: form explode: false schema: uniqueItems: true type: array items: type: string - name: $expand in: query description: Expand related entities style: form explode: false schema: uniqueItems: true type: array items: type: string responses: 2XX: description: Retrieved navigation property content: application/json: schema: $ref: '#/components/schemas/microsoft.graph.rbacApplication' default: $ref: '#/components/responses/error' x-ms-docs-operation-type: operation patch: tags: - roleManagement.rbacApplication summary: Update the navigation property entitlementManagement in roleManagement operationId: roleManagement_UpdateEntitlementManagement requestBody: description: New navigation property values content: application/json: schema: $ref: '#/components/schemas/microsoft.graph.rbacApplication' required: true responses: 2XX: description: Success content: application/json: schema: $ref: '#/components/schemas/microsoft.graph.rbacApplication' default: $ref: '#/components/responses/error' x-ms-docs-operation-type: operation delete: tags: - roleManagement.rbacApplication summary: Delete navigation property entitlementManagement for roleManagement operationId: roleManagement_DeleteEntitlementManagement parameters: - name: If-Match in: header description: ETag style: simple schema: type: string responses: 2XX: description: Success default: $ref: '#/components/responses/error' x-ms-docs-operation-type: operation /roleManagement/entitlementManagement/resourceNamespaces: get: tags: - roleManagement.rbacApplication summary: Get resourceNamespaces from roleManagement operationId: roleManagement.entitlementManagement_ListResourceNamespace parameters: - $ref: '#/components/parameters/top' - $ref: '#/components/parameters/skip' - $ref: '#/components/parameters/search' - $ref: '#/components/parameters/filter' - $ref: '#/components/parameters/count' - name: $orderby in: query description: Order items by property values style: form explode: false schema: uniqueItems: true type: array items: type: string - name: $select in: query description: Select properties to be returned style: form explode: false schema: uniqueItems: true type: array items: type: string - name: $expand in: query description: Expand related entities style: form explode: false schema: uniqueItems: true type: array items: type: string responses: 2XX: $ref: '#/components/responses/microsoft.graph.unifiedRbacResourceNamespaceCollectionResponse' default: $ref: '#/components/responses/error' x-ms-pageable: nextLinkName: '@odata.nextLink' operationName: listMore x-ms-docs-operation-type: operation post: tags: - roleManagement.rbacApplication summary: Create new navigation property to resourceNamespaces for roleManagement operationId: roleManagement.entitlementManagement_CreateResourceNamespace requestBody: description: New navigation property content: application/json: schema: $ref: '#/components/schemas/microsoft.graph.unifiedRbacResourceNamespace' required: true responses: 2XX: description: Created navigation property. content: application/json: schema: $ref: '#/components/schemas/microsoft.graph.unifiedRbacResourceNamespace' default: $ref: '#/components/responses/error' x-ms-docs-operation-type: operation /roleManagement/entitlementManagement/resourceNamespaces/{unifiedRbacResourceNamespace-id}: get: tags: - roleManagement.rbacApplication summary: Get resourceNamespaces from roleManagement operationId: roleManagement.entitlementManagement_GetResourceNamespace parameters: - name: unifiedRbacResourceNamespace-id in: path description: The unique identifier of unifiedRbacResourceNamespace required: true style: simple schema: type: string x-ms-docs-key-type: unifiedRbacResourceNamespace - name: $select in: query description: Select properties to be returned style: form explode: false schema: uniqueItems: true type: array items: type: string - name: $expand in: query description: Expand related entities style: form explode: false schema: uniqueItems: true type: array items: type: string responses: 2XX: description: Retrieved navigation property content: application/json: schema: $ref: '#/components/schemas/microsoft.graph.unifiedRbacResourceNamespace' default: $ref: '#/components/responses/error' x-ms-docs-operation-type: operation patch: tags: - roleManagement.rbacApplication summary: Update the navigation property resourceNamespaces in roleManagement operationId: roleManagement.entitlementManagement_UpdateResourceNamespace parameters: - name: unifiedRbacResourceNamespace-id in: path description: The unique identifier of unifiedRbacResourceNamespace required: true style: simple schema: type: string x-ms-docs-key-type: unifiedRbacResourceNamespace requestBody: description: New navigation property values content: application/json: schema: $ref: '#/components/schemas/microsoft.graph.unifiedRbacResourceNamespace' required: true responses: 2XX: description: Success content: application/json: schema: $ref: '#/components/schemas/microsoft.graph.unifiedRbacResourceNamespace' default: $ref: '#/components/responses/error' x-ms-docs-operation-type: operation delete: tags: - roleManagement.rbacApplication summary: Delete navigation property resourceNamespaces for roleManagement operationId: roleManagement.entitlementManagement_DeleteResourceNamespace parameters: - name: unifiedRbacResourceNamespace-id in: path description: The unique identifier of unifiedRbacResourceNamespace required: true style: simple schema: type: string x-ms-docs-key-type: unifiedRbacResourceNamespace - name: If-Match in: header description: ETag style: simple schema: type: string responses: 2XX: description: Success default: $ref: '#/components/responses/error' x-ms-docs-operation-type: operation /roleManagement/entitlementManagement/resourceNamespaces/{unifiedRbacResourceNamespace-id}/resourceActions: get: tags: - roleManagement.rbacApplication summary: Get resourceActions from roleManagement operationId: roleManagement.entitlementManagement.resourceNamespace_ListResourceAction parameters: - name: unifiedRbacResourceNamespace-id in: path description: The unique identifier of unifiedRbacResourceNamespace required: true style: simple schema: type: string x-ms-docs-key-type: unifiedRbacResourceNamespace - $ref: '#/components/parameters/top' - $ref: '#/components/parameters/skip' - $ref: '#/components/parameters/search' - $ref: '#/components/parameters/filter' - $ref: '#/components/parameters/count' - name: $orderby in: query description: Order items by property values style: form explode: false schema: uniqueItems: true type: array items: type: string - name: $select in: query description: Select properties to be returned style: form explode: false schema: uniqueItems: true type: array items: type: string - name: $expand in: query description: Expand related entities style: form explode: false schema: uniqueItems: true type: array items: type: string responses: 2XX: $ref: '#/components/responses/microsoft.graph.unifiedRbacResourceActionCollectionResponse' default: $ref: '#/components/responses/error' x-ms-pageable: nextLinkName: '@odata.nextLink' operationName: listMore x-ms-docs-operation-type: operation post: tags: - roleManagement.rbacApplication summary: Create new navigation property to resourceActions for roleManagement operationId: roleManagement.entitlementManagement.resourceNamespace_CreateResourceAction parameters: - name: unifiedRbacResourceNamespace-id in: path description: The unique identifier of unifiedRbacResourceNamespace required: true style: simple schema: type: string x-ms-docs-key-type: unifiedRbacResourceNamespace requestBody: description: New navigation property content: application/json: schema: $ref: '#/components/schemas/microsoft.graph.unifiedRbacResourceAction' required: true responses: 2XX: description: Created navigation property. content: application/json: schema: $ref: '#/components/schemas/microsoft.graph.unifiedRbacResourceAction' default: $ref: '#/components/responses/error' x-ms-docs-operation-type: operation ? /roleManagement/entitlementManagement/resourceNamespaces/{unifiedRbacResourceNamespace-id}/resourceActions/{unifiedRbacResourceAction-id} : get: tags: - roleManagement.rbacApplication summary: Get resourceActions from roleManagement operationId: roleManagement.entitlementManagement.resourceNamespace_GetResourceAction parameters: - name: unifiedRbacResourceNamespace-id in: path description: The unique identifier of unifiedRbacResourceNamespace required: true style: simple schema: type: string x-ms-docs-key-type: unifiedRbacResourceNamespace - name: unifiedRbacResourceAction-id in: path description: The unique identifier of unifiedRbacResourceAction required: true style: simple schema: type: string x-ms-docs-key-type: unifiedRbacResourceAction - name: $select in: query description: Select properties to be returned style: form explode: false schema: uniqueItems: true type: array items: type: string - name: $expand in: query description: Expand related entities style: form explode: false schema: uniqueItems: true type: array items: type: string responses: 2XX: description: Retrieved navigation property content: application/json: schema: $ref: '#/components/schemas/microsoft.graph.unifiedRbacResourceAction' default: $ref: '#/components/responses/error' x-ms-docs-operation-type: operation patch: tags: - roleManagement.rbacApplication summary: Update the navigation property resourceActions in roleManagement operationId: roleManagement.entitlementManagement.resourceNamespace_UpdateResourceAction parameters: - name: unifiedRbacResourceNamespace-id in: path description: The unique identifier of unifiedRbacResourceNamespace required: true style: simple schema: type: string x-ms-docs-key-type: unifiedRbacResourceNamespace - name: unifiedRbacResourceAction-id in: path description: The unique identifier of unifiedRbacResourceAction required: true style: simple schema: type: string x-ms-docs-key-type: unifiedRbacResourceAction requestBody: description: New navigation property values content: application/json: schema: $ref: '#/components/schemas/microsoft.graph.unifiedRbacResourceAction' required: true responses: 2XX: description: Success content: application/json: schema: $ref: '#/components/schemas/microsoft.graph.unifiedRbacResourceAction' default: $ref: '#/components/responses/error' x-ms-docs-operation-type: operation delete: tags: - roleManagement.rbacApplication summary: Delete navigation property resourceActions for roleManagement operationId: roleManagement.entitlementManagement.resourceNamespace_DeleteResourceAction parameters: - name: unifiedRbacResourceNamespace-id in: path description: The unique identifier of unifiedRbacResourceNamespace required: true style: simple schema: type: string x-ms-docs-key-type: unifiedRbacResourceNamespace - name: unifiedRbacResourceAction-id in: path description: The unique identifier of unifiedRbacResourceAction required: true style: simple schema: type: string x-ms-docs-key-type: unifiedRbacResourceAction - name: If-Match in: header description: ETag style: simple schema: type: string responses: 2XX: description: Success default: $ref: '#/components/responses/error' x-ms-docs-operation-type: operation /roleManagement/entitlementManagement/resourceNamespaces/{unifiedRbacResourceNamespace-id}/resourceActions/$count: get: tags: - roleManagement.rbacApplication summary: Get the number of the resource operationId: roleManagement.entitlementManagement.resourceNamespace.resourceAction_GetCount parameters: - name: unifiedRbacResourceNamespace-id in: path description: The unique identifier of unifiedRbacResourceNamespace required: true style: simple schema: type: string x-ms-docs-key-type: unifiedRbacResourceNamespace - $ref: '#/components/parameters/search' - $ref: '#/components/parameters/filter' responses: 2XX: $ref: '#/components/responses/ODataCountResponse' default: $ref: '#/components/responses/error' /roleManagement/entitlementManagement/resourceNamespaces/$count: get: tags: - roleManagement.rbacApplication summary: Get the number of the resource operationId: roleManagement.entitlementManagement.resourceNamespace_GetCount parameters: - $ref: '#/components/parameters/search' - $ref: '#/components/parameters/filter' responses: 2XX: $ref: '#/components/responses/ODataCountResponse' default: $ref: '#/components/responses/error' /roleManagement/entitlementManagement/roleAssignments: get: tags: - roleManagement.rbacApplication summary: List unifiedRoleAssignments description: 'Get a list of unifiedRoleAssignment objects for the RBAC provider. The following RBAC providers are currently supported: - directory (Microsoft Entra ID) - entitlement management (Microsoft Entra entitlement management)' externalDocs: description: Find more info here url: https://learn.microsoft.com/graph/api/rbacapplication-list-roleassignments?view=graph-rest-1.0 operationId: roleManagement.entitlementManagement_ListRoleAssignment parameters: - $ref: '#/components/parameters/top' - $ref: '#/components/parameters/skip' - $ref: '#/components/parameters/search' - $ref: '#/components/parameters/filter' - $ref: '#/components/parameters/count' - name: $orderby in: query description: Order items by property values style: form explode: false schema: uniqueItems: true type: array items: type: string - name: $select in: query description: Select properties to be returned style: form explode: false schema: uniqueItems: true type: array items: type: string - name: $expand in: query description: Expand related entities style: form explode: false schema: uniqueItems: true type: array items: type: string responses: 2XX: $ref: '#/components/responses/microsoft.graph.unifiedRoleAssignmentCollectionResponse' default: $ref: '#/components/responses/error' x-ms-pageable: nextLinkName: '@odata.nextLink' operationName: listMore x-ms-docs-operation-type: operation post: tags: - roleManagement.rbacApplication summary: Create unifiedRoleAssignment description: Create a new unifiedRoleAssignment object. externalDocs: description: Find more info here url: https://learn.microsoft.com/graph/api/rbacapplication-post-roleassignments?view=graph-rest-1.0 operationId: roleManagement.entitlementManagement_CreateRoleAssignment requestBody: description: New navigation property content: application/json: schema: $ref: '#/components/schemas/microsoft.graph.unifiedRoleAssignment' required: true responses: 2XX: description: Created navigation property. content: application/json: schema: $ref: '#/components/schemas/microsoft.graph.unifiedRoleAssignment' default: $ref: '#/components/responses/error' x-ms-docs-operation-type: operation /roleManagement/entitlementManagement/roleAssignments/{unifiedRoleAssignment-id}: get: tags: - roleManagement.rbacApplication summary: Get roleAssignments from roleManagement description: Resource to grant access to users or groups. operationId: roleManagement.entitlementManagement_GetRoleAssignment parameters: - name: unifiedRoleAssignment-id in: path description: The unique identifier of unifiedRoleAssignment required: true style: simple schema: type: string x-ms-docs-key-type: unifiedRoleAssignment - name: $select in: query description: Select properties to be returned style: form explode: false schema: uniqueItems: true type: array items: type: string - name: $expand in: query description: Expand related entities style: form explode: false schema: uniqueItems: true type: array items: type: string responses: 2XX: description: Retrieved navigation property content: application/json: schema: $ref: '#/components/schemas/microsoft.graph.unifiedRoleAssignment' default: $ref: '#/components/responses/error' x-ms-docs-operation-type: operation patch: tags: - roleManagement.rbacApplication summary: Update the navigation property roleAssignments in roleManagement operationId: roleManagement.entitlementManagement_UpdateRoleAssignment parameters: - name: unifiedRoleAssignment-id in: path description: The unique identifier of unifiedRoleAssignment required: true style: simple schema: type: string x-ms-docs-key-type: unifiedRoleAssignment requestBody: description: New navigation property values content: application/json: schema: $ref: '#/components/schemas/microsoft.graph.unifiedRoleAssignment' required: true responses: 2XX: description: Success content: application/json: schema: $ref: '#/components/schemas/microsoft.graph.unifiedRoleAssignment' default: $ref: '#/components/responses/error' x-ms-docs-operation-type: operation delete: tags: - roleManagement.rbacApplication summary: Delete navigation property roleAssignments for roleManagement operationId: roleManagement.entitlementManagement_DeleteRoleAssignment parameters: - name: unifiedRoleAssignment-id in: path description: The unique identifier of unifiedRoleAssignment required: true style: simple schema: type: string x-ms-docs-key-type: unifiedRoleAssignment - name: If-Match in: header description: ETag style: simple schema: type: string responses: 2XX: description: Success default: $ref: '#/components/responses/error' x-ms-docs-operation-type: operation /roleManagement/entitlementManagement/roleAssignments/{unifiedRoleAssignment-id}/appScope: get: tags: - roleManagement.rbacApplication summary: Get appScope from roleManagement description: Read-only property with details of the app specific scope when the assignment scope is app specific. Containment entity. Supports $expand for the entitlement provider only. operationId: roleManagement.entitlementManagement.roleAssignment_GetAppScope parameters: - name: unifiedRoleAssignment-id in: path description: The unique identifier of unifiedRoleAssignment required: true style: simple schema: type: string x-ms-docs-key-type: unifiedRoleAssignment - name: $select in: query description: Select properties to be returned style: form explode: false schema: uniqueItems: true type: array items: type: string - name: $expand in: query description: Expand related entities style: form explode: false schema: uniqueItems: true type: array items: type: string responses: 2XX: description: Retrieved navigation property content: application/json: schema: $ref: '#/components/schemas/microsoft.graph.appScope' default: $ref: '#/components/responses/error' x-ms-docs-operation-type: operation patch: tags: - roleManagement.rbacApplication summary: Update the navigation property appScope in roleManagement operationId: roleManagement.entitlementManagement.roleAssignment_UpdateAppScope parameters: - name: unifiedRoleAssignment-id in: path description: The unique identifier of unifiedRoleAssignment required: true style: simple schema: type: string x-ms-docs-key-type: unifiedRoleAssignment requestBody: description: New navigation property values content: application/json: schema: $ref: '#/components/schemas/microsoft.graph.appScope' required: true responses: 2XX: description: Success content: application/json: schema: $ref: '#/components/schemas/microsoft.graph.appScope' default: $ref: '#/components/responses/error' x-ms-docs-operation-type: operation delete: tags: - roleManagement.rbacApplication summary: Delete navigation property appScope for roleManagement operationId: roleManagement.entitlementManagement.roleAssignment_DeleteAppScope parameters: - name: unifiedRoleAssignment-id in: path description: The unique identifier of unifiedRoleAssignment required: true style: simple schema: type: string x-ms-docs-key-type: unifiedRoleAssignment - name: If-Match in: header description: ETag style: simple schema: type: string responses: 2XX: description: Success default: $ref: '#/components/responses/error' x-ms-docs-operation-type: operation /roleManagement/entitlementManagement/roleAssignments/{unifiedRoleAssignment-id}/directoryScope: get: tags: - roleManagement.rbacApplication summary: Get directoryScope from roleManagement description: The directory object that is the scope of the assignment. Read-only. Supports $expand for the directory provider. operationId: roleManagement.entitlementManagement.roleAssignment_GetDirectoryScope parameters: - name: unifiedRoleAssignment-id in: path description: The unique identifier of unifiedRoleAssignment required: true style: simple schema: type: string x-ms-docs-key-type: unifiedRoleAssignment - name: $select in: query description: Select properties to be returned style: form explode: false schema: uniqueItems: true type: array items: type: string - name: $expand in: query description: Expand related entities style: form explode: false schema: uniqueItems: true type: array items: type: string responses: 2XX: description: Retrieved navigation property content: application/json: schema: $ref: '#/components/schemas/microsoft.graph.directoryObject' default: $ref: '#/components/responses/error' x-ms-docs-operation-type: operation /roleManagement/entitlementManagement/roleAssignments/{unifiedRoleAssignment-id}/principal: get: tags: - roleManagement.rbacApplication summary: Get principal from roleManagement description: Referencing the assigned principal. Read-only. Supports $expand except for the Exchange provider. operationId: roleManagement.entitlementManagement.roleAssignment_GetPrincipal parameters: - name: unifiedRoleAssignment-id in: path description: The unique identifier of unifiedRoleAssignment required: true style: simple schema: type: string x-ms-docs-key-type: unifiedRoleAssignment - name: $select in: query description: Select properties to be returned style: form explode: false schema: uniqueItems: true type: array items: type: string - name: $expand in: query description: Expand related entities style: form explode: false schema: uniqueItems: true type: array items: type: string responses: 2XX: description: Retrieved navigation property content: application/json: schema: $ref: '#/components/schemas/microsoft.graph.directoryObject' default: $ref: '#/components/responses/error' x-ms-docs-operation-type: operation /roleManagement/entitlementManagement/roleAssignments/{unifiedRoleAssignment-id}/roleDefinition: get: tags: - roleManagement.rbacApplication summary: Get roleDefinition from roleManagement description: The roleDefinition the assignment is for. Supports $expand. operationId: roleManagement.entitlementManagement.roleAssignment_GetRoleDefinition parameters: - name: unifiedRoleAssignment-id in: path description: The unique identifier of unifiedRoleAssignment required: true style: simple schema: type: string x-ms-docs-key-type: unifiedRoleAssignment - name: $select in: query description: Select properties to be returned style: form explode: false schema: uniqueItems: true type: array items: type: string - name: $expand in: query description: Expand related entities style: form explode: false schema: uniqueItems: true type: array items: type: string responses: 2XX: description: Retrieved navigation property content: application/json: schema: $ref: '#/components/schemas/microsoft.graph.unifiedRoleDefinition' default: $ref: '#/components/responses/error' x-ms-docs-operation-type: operation /roleManagement/entitlementManagement/roleAssignments/$count: get: tags: - roleManagement.rbacApplication summary: Get the number of the resource operationId: roleManagement.entitlementManagement.roleAssignment_GetCount parameters: - $ref: '#/components/parameters/search' - $ref: '#/components/parameters/filter' responses: 2XX: $ref: '#/components/responses/ODataCountResponse' default: $ref: '#/components/responses/error' /roleManagement/entitlementManagement/roleAssignmentScheduleInstances: get: tags: - roleManagement.rbacApplication summary: Get roleAssignmentScheduleInstances from roleManagement description: Instances for active role assignments. operationId: roleManagement.entitlementManagement_ListRoleAssignmentScheduleInstance parameters: - $ref: '#/components/parameters/top' - $ref: '#/components/parameters/skip' - $ref: '#/components/parameters/search' - $ref: '#/components/parameters/filter' - $ref: '#/components/parameters/count' - name: $orderby in: query description: Order items by property values style: form explode: false schema: uniqueItems: true type: array items: type: string - name: $select in: query description: Select properties to be returned style: form explode: false schema: uniqueItems: true type: array items: type: string - name: $expand in: query description: Expand related entities style: form explode: false schema: uniqueItems: true type: array items: type: string responses: 2XX: $ref: '#/components/responses/microsoft.graph.unifiedRoleAssignmentScheduleInstanceCollectionResponse' default: $ref: '#/components/responses/error' x-ms-pageable: nextLinkName: '@odata.nextLink' operationName: listMore x-ms-docs-operation-type: operation post: tags: - roleManagement.rbacApplication summary: Create new navigation property to roleAssignmentScheduleInstances for… operationId: roleManagement.entitlementManagement_CreateRoleAssignmentScheduleInstance requestBody: description: New navigation property content: application/json: schema: $ref: '#/components/schemas/microsoft.graph.unifiedRoleAssignmentScheduleInstance' required: true responses: 2XX: description: Created navigation property. content: application/json: schema: $ref: '#/components/schemas/microsoft.graph.unifiedRoleAssignmentScheduleInstance' default: $ref: '#/components/responses/error' x-ms-docs-operation-type: operation /roleManagement/entitlementManagement/roleAssignmentScheduleInstances/{unifiedRoleAssignmentScheduleInstance-id}: get: tags: - roleManagement.rbacApplication summary: Get roleAssignmentScheduleInstances from roleManagement description: Instances for active role assignments. operationId: roleManagement.entitlementManagement_GetRoleAssignmentScheduleInstance parameters: - name: unifiedRoleAssignmentScheduleInstance-id in: path description: The unique identifier of unifiedRoleAssignmentScheduleInstance required: true style: simple schema: type: string x-ms-docs-key-type: unifiedRoleAssignmentScheduleInstance - name: $select in: query description: Select properties to be returned style: form explode: false schema: uniqueItems: true type: array items: type: string - name: $expand in: query description: Expand related entities style: form explode: false schema: uniqueItems: true type: array items: type: string responses: 2XX: description: Retrieved navigation property content: application/json: schema: $ref: '#/components/schemas/microsoft.graph.unifiedRoleAssignmentScheduleInstance' default: $ref: '#/components/responses/error' x-ms-docs-operation-type: operation patch: tags: - roleManagement.rbacApplication summary: Update the navigation property roleAssignmentScheduleInstances in roleManagement operationId: roleManagement.entitlementManagement_UpdateRoleAssignmentScheduleInstance parameters: - name: unifiedRoleAssignmentScheduleInstance-id in: path description: The unique identifier of unifiedRoleAssignmentScheduleInstance required: true style: simple schema: type: string x-ms-docs-key-type: unifiedRoleAssignmentScheduleInstance requestBody: description: New navigation property values content: application/json: schema: $ref: '#/components/schemas/microsoft.graph.unifiedRoleAssignmentScheduleInstance' required: true responses: 2XX: description: Success content: application/json: schema: $ref: '#/components/schemas/microsoft.graph.unifiedRoleAssignmentScheduleInstance' default: $ref: '#/components/responses/error' x-ms-docs-operation-type: operation delete: tags: - roleManagement.rbacApplication summary: Delete navigation property roleAssignmentScheduleInstances for roleManagement operationId: roleManagement.entitlementManagement_DeleteRoleAssignmentScheduleInstance parameters: - name: unifiedRoleAssignmentScheduleInstance-id in: path description: The unique identifier of unifiedRoleAssignmentScheduleInstance required: true style: simple schema: type: string x-ms-docs-key-type: unifiedRoleAssignmentScheduleInstance - name: If-Match in: header description: ETag style: simple schema: type: string responses: 2XX: description: Success default: $ref: '#/components/responses/error' x-ms-docs-operation-type: operation ? /roleManagement/entitlementManagement/roleAssignmentScheduleInstances/{unifiedRoleAssignmentScheduleInstance-id}/activatedUsing : get: tags: - roleManagement.rbacApplication summary: Get activatedUsing from roleManagement description: If the request is from an eligible administrator to activate a role, this parameter shows the related eligible assignment for that activation. Otherwise, it's null. Supports $expand and $select nested in $expand. operationId: roleManagement.entitlementManagement.roleAssignmentScheduleInstance_GetActivatedUsing parameters: - name: unifiedRoleAssignmentScheduleInstance-id in: path description: The unique identifier of unifiedRoleAssignmentScheduleInstance required: true style: simple schema: type: string x-ms-docs-key-type: unifiedRoleAssignmentScheduleInstance - name: $select in: query description: Select properties to be returned style: form explode: false schema: uniqueItems: true type: array items: type: string - name: $expand in: query description: Expand related entities style: form explode: false schema: uniqueItems: true type: array items: type: string responses: 2XX: description: Retrieved navigation property content: application/json: schema: $ref: '#/components/schemas/microsoft.graph.unifiedRoleEligibilityScheduleInstance' default: $ref: '#/components/responses/error' x-ms-docs-operation-type: operation /roleManagement/entitlementManagement/roleAssignmentScheduleInstances/{unifiedRoleAssignmentScheduleInstance-id}/appScope: get: tags: - roleManagement.rbacApplication summary: Get appScope from roleManagement description: Read-only property with details of the app-specific scope when the assignment or role eligibility is scoped to an app. Nullable. operationId: roleManagement.entitlementManagement.roleAssignmentScheduleInstance_GetAppScope parameters: - name: unifiedRoleAssignmentScheduleInstance-id in: path description: The unique identifier of unifiedRoleAssignmentScheduleInstance required: true style: simple schema: type: string x-ms-docs-key-type: unifiedRoleAssignmentScheduleInstance - name: $select in: query description: Select properties to be returned style: form explode: false schema: uniqueItems: true type: array items: type: string - name: $expand in: query description: Expand related entities style: form explode: false schema: uniqueItems: true type: array items: type: string responses: 2XX: description: Retrieved navigation property content: application/json: schema: $ref: '#/components/schemas/microsoft.graph.appScope' default: $ref: '#/components/responses/error' x-ms-docs-operation-type: operation ? /roleManagement/entitlementManagement/roleAssignmentScheduleInstances/{unifiedRoleAssignmentScheduleInstance-id}/directoryScope : get: tags: - roleManagement.rbacApplication summary: Get directoryScope from roleManagement description: The directory object that is the scope of the assignment or role eligibility. Read-only. operationId: roleManagement.entitlementManagement.roleAssignmentScheduleInstance_GetDirectoryScope parameters: - name: unifiedRoleAssignmentScheduleInstance-id in: path description: The unique identifier of unifiedRoleAssignmentScheduleInstance required: true style: simple schema: type: string x-ms-docs-key-type: unifiedRoleAssignmentScheduleInstance - name: $select in: query description: Select properties to be returned style: form explode: false schema: uniqueItems: true type: array items: type: string - name: $expand in: query description: Expand related entities style: form explode: false schema: uniqueItems: true type: array items: type: string responses: 2XX: description: Retrieved navigation property content: application/json: schema: $ref: '#/components/schemas/microsoft.graph.directoryObject' default: $ref: '#/components/responses/error' x-ms-docs-operation-type: operation /roleManagement/entitlementManagement/roleAssignmentScheduleInstances/{unifiedRoleAssignmentScheduleInstance-id}/principal: get: tags: - roleManagement.rbacApplication summary: Get principal from roleManagement description: The principal that's getting a role assignment or role eligibility through the request. operationId: roleManagement.entitlementManagement.roleAssignmentScheduleInstance_GetPrincipal parameters: - name: unifiedRoleAssignmentScheduleInstance-id in: path description: The unique identifier of unifiedRoleAssignmentScheduleInstance required: true style: simple schema: type: string x-ms-docs-key-type: unifiedRoleAssignmentScheduleInstance - name: $select in: query description: Select properties to be returned style: form explode: false schema: uniqueItems: true type: array items: type: string - name: $expand in: query description: Expand related entities style: form explode: false schema: uniqueItems: true type: array items: type: string responses: 2XX: description: Retrieved navigation property content: application/json: schema: $ref: '#/components/schemas/microsoft.graph.directoryObject' default: $ref: '#/components/responses/error' x-ms-docs-operation-type: operation ? /roleManagement/entitlementManagement/roleAssignmentScheduleInstances/{unifiedRoleAssignmentScheduleInstance-id}/roleDefinition : get: tags: - roleManagement.rbacApplication summary: Get roleDefinition from roleManagement description: Detailed information for the roleDefinition object that is referenced through the roleDefinitionId property. operationId: roleManagement.entitlementManagement.roleAssignmentScheduleInstance_GetRoleDefinition parameters: - name: unifiedRoleAssignmentScheduleInstance-id in: path description: The unique identifier of unifiedRoleAssignmentScheduleInstance required: true style: simple schema: type: string x-ms-docs-key-type: unifiedRoleAssignmentScheduleInstance - name: $select in: query description: Select properties to be returned style: form explode: false schema: uniqueItems: true type: array items: type: string - name: $expand in: query description: Expand related entities style: form explode: false schema: uniqueItems: true type: array items: type: string responses: 2XX: description: Retrieved navigation property content: application/json: schema: $ref: '#/components/schemas/microsoft.graph.unifiedRoleDefinition' default: $ref: '#/components/responses/error' x-ms-docs-operation-type: operation /roleManagement/entitlementManagement/roleAssignmentScheduleInstances/$count: get: tags: - roleManagement.rbacApplication summary: Get the number of the resource operationId: roleManagement.entitlementManagement.roleAssignmentScheduleInstance_GetCount parameters: - $ref: '#/components/parameters/search' - $ref: '#/components/parameters/filter' responses: 2XX: $ref: '#/components/responses/ODataCountResponse' default: $ref: '#/components/responses/error' /roleManagement/entitlementManagement/roleAssignmentScheduleInstances/microsoft.graph.filterByCurrentUser(on='{on}'): get: tags: - roleManagement.rbacApplication summary: Invoke function filterByCurrentUser description: Get the instances of active role assignments for the calling principal. externalDocs: description: Find more info here url: https://learn.microsoft.com/graph/api/unifiedroleassignmentscheduleinstance-filterbycurrentuser?view=graph-rest-1.0 operationId: roleManagement.entitlementManagement.roleAssignmentScheduleInstance_filterGraphBPreCurrentUser parameters: - name: true in: path description: 'Usage: on=''{on}''' required: true style: simple schema: $ref: '#/components/schemas/microsoft.graph.roleAssignmentScheduleInstanceFilterByCurrentUserOptions' - $ref: '#/components/parameters/top' - $ref: '#/components/parameters/skip' - $ref: '#/components/parameters/search' - $ref: '#/components/parameters/filter' - $ref: '#/components/parameters/count' - name: $select in: query description: Select properties to be returned style: form explode: false schema: uniqueItems: true type: array items: type: string - name: $orderby in: query description: Order items by property values style: form explode: false schema: uniqueItems: true type: array items: type: string - name: $expand in: query description: Expand related entities style: form explode: false schema: uniqueItems: true type: array items: type: string responses: 2XX: description: Success content: application/json: schema: title: Collection of unifiedRoleAssignmentScheduleInstance type: object properties: value: type: array items: $ref: '#/components/schemas/microsoft.graph.unifiedRoleAssignmentScheduleInstance' '@odata.nextLink': type: - string - 'null' additionalProperties: type: object default: $ref: '#/components/responses/error' x-ms-docs-operation-type: function x-ms-pageable: nextLinkName: '@odata.nextLink' operationName: listMore /roleManagement/entitlementManagement/roleAssignmentScheduleRequests: get: tags: - roleManagement.rbacApplication summary: Get roleAssignmentScheduleRequests from roleManagement description: Requests for active role assignments to principals through PIM. operationId: roleManagement.entitlementManagement_ListRoleAssignmentScheduleRequest parameters: - $ref: '#/components/parameters/top' - $ref: '#/components/parameters/skip' - $ref: '#/components/parameters/search' - $ref: '#/components/parameters/filter' - $ref: '#/components/parameters/count' - name: $orderby in: query description: Order items by property values style: form explode: false schema: uniqueItems: true type: array items: type: string - name: $select in: query description: Select properties to be returned style: form explode: false schema: uniqueItems: true type: array items: type: string - name: $expand in: query description: Expand related entities style: form explode: false schema: uniqueItems: true type: array items: type: string responses: 2XX: $ref: '#/components/responses/microsoft.graph.unifiedRoleAssignmentScheduleRequestCollectionResponse' default: $ref: '#/components/responses/error' x-ms-pageable: nextLinkName: '@odata.nextLink' operationName: listMore x-ms-docs-operation-type: operation post: tags: - roleManagement.rbacApplication summary: Create new navigation property to roleAssignmentScheduleRequests for… operationId: roleManagement.entitlementManagement_CreateRoleAssignmentScheduleRequest requestBody: description: New navigation property content: application/json: schema: $ref: '#/components/schemas/microsoft.graph.unifiedRoleAssignmentScheduleRequest' required: true responses: 2XX: description: Created navigation property. content: application/json: schema: $ref: '#/components/schemas/microsoft.graph.unifiedRoleAssignmentScheduleRequest' default: $ref: '#/components/responses/error' x-ms-docs-operation-type: operation /roleManagement/entitlementManagement/roleAssignmentScheduleRequests/{unifiedRoleAssignmentScheduleRequest-id}: get: tags: - roleManagement.rbacApplication summary: Get roleAssignmentScheduleRequests from roleManagement description: Requests for active role assignments to principals through PIM. operationId: roleManagement.entitlementManagement_GetRoleAssignmentScheduleRequest parameters: - name: unifiedRoleAssignmentScheduleRequest-id in: path description: The unique identifier of unifiedRoleAssignmentScheduleRequest required: true style: simple schema: type: string x-ms-docs-key-type: unifiedRoleAssignmentScheduleRequest - name: $select in: query description: Select properties to be returned style: form explode: false schema: uniqueItems: true type: array items: type: string - name: $expand in: query description: Expand related entities style: form explode: false schema: uniqueItems: true type: array items: type: string responses: 2XX: description: Retrieved navigation property content: application/json: schema: $ref: '#/components/schemas/microsoft.graph.unifiedRoleAssignmentScheduleRequest' default: $ref: '#/components/responses/error' x-ms-docs-operation-type: operation patch: tags: - roleManagement.rbacApplication summary: Update the navigation property roleAssignmentScheduleRequests in roleManagement operationId: roleManagement.entitlementManagement_UpdateRoleAssignmentScheduleRequest parameters: - name: unifiedRoleAssignmentScheduleRequest-id in: path description: The unique identifier of unifiedRoleAssignmentScheduleRequest required: true style: simple schema: type: string x-ms-docs-key-type: unifiedRoleAssignmentScheduleRequest requestBody: description: New navigation property values content: application/json: schema: $ref: '#/components/schemas/microsoft.graph.unifiedRoleAssignmentScheduleRequest' required: true responses: 2XX: description: Success content: application/json: schema: $ref: '#/components/schemas/microsoft.graph.unifiedRoleAssignmentScheduleRequest' default: $ref: '#/components/responses/error' x-ms-docs-operation-type: operation delete: tags: - roleManagement.rbacApplication summary: Delete navigation property roleAssignmentScheduleRequests for roleManagement operationId: roleManagement.entitlementManagement_DeleteRoleAssignmentScheduleRequest parameters: - name: unifiedRoleAssignmentScheduleRequest-id in: path description: The unique identifier of unifiedRoleAssignmentScheduleRequest required: true style: simple schema: type: string x-ms-docs-key-type: unifiedRoleAssignmentScheduleRequest - name: If-Match in: header description: ETag style: simple schema: type: string responses: 2XX: description: Success default: $ref: '#/components/responses/error' x-ms-docs-operation-type: operation ? /roleManagement/entitlementManagement/roleAssignmentScheduleRequests/{unifiedRoleAssignmentScheduleRequest-id}/activatedUsing : get: tags: - roleManagement.rbacApplication summary: Get activatedUsing from roleManagement description: If the request is from an eligible administrator to activate a role, this parameter will show the related eligible assignment for that activation. Otherwise, it's null. Supports $expand and $select nested in $expand. operationId: roleManagement.entitlementManagement.roleAssignmentScheduleRequest_GetActivatedUsing parameters: - name: unifiedRoleAssignmentScheduleRequest-id in: path description: The unique identifier of unifiedRoleAssignmentScheduleRequest required: true style: simple schema: type: string x-ms-docs-key-type: unifiedRoleAssignmentScheduleRequest - name: $select in: query description: Select properties to be returned style: form explode: false schema: uniqueItems: true type: array items: type: string - name: $expand in: query description: Expand related entities style: form explode: false schema: uniqueItems: true type: array items: type: string responses: 2XX: description: Retrieved navigation property content: application/json: schema: $ref: '#/components/schemas/microsoft.graph.unifiedRoleEligibilitySchedule' default: $ref: '#/components/responses/error' x-ms-docs-operation-type: operation /roleManagement/entitlementManagement/roleAssignmentScheduleRequests/{unifiedRoleAssignmentScheduleRequest-id}/appScope: get: tags: - roleManagement.rbacApplication summary: Get appScope from roleManagement description: Read-only property with details of the app-specific scope when the assignment is scoped to an app. Nullable. Supports $expand. operationId: roleManagement.entitlementManagement.roleAssignmentScheduleRequest_GetAppScope parameters: - name: unifiedRoleAssignmentScheduleRequest-id in: path description: The unique identifier of unifiedRoleAssignmentScheduleRequest required: true style: simple schema: type: string x-ms-docs-key-type: unifiedRoleAssignmentScheduleRequest - name: $select in: query description: Select properties to be returned style: form explode: false schema: uniqueItems: true type: array items: type: string - name: $expand in: query description: Expand related entities style: form explode: false schema: uniqueItems: true type: array items: type: string responses: 2XX: description: Retrieved navigation property content: application/json: schema: $ref: '#/components/schemas/microsoft.graph.appScope' default: $ref: '#/components/responses/error' x-ms-docs-operation-type: operation ? /roleManagement/entitlementManagement/roleAssignmentScheduleRequests/{unifiedRoleAssignmentScheduleRequest-id}/directoryScope : get: tags: - roleManagement.rbacApplication summary: Get directoryScope from roleManagement description: The directory object that is the scope of the assignment. Read-only. Supports $expand. operationId: roleManagement.entitlementManagement.roleAssignmentScheduleRequest_GetDirectoryScope parameters: - name: unifiedRoleAssignmentScheduleRequest-id in: path description: The unique identifier of unifiedRoleAssignmentScheduleRequest required: true style: simple schema: type: string x-ms-docs-key-type: unifiedRoleAssignmentScheduleRequest - name: $select in: query description: Select properties to be returned style: form explode: false schema: uniqueItems: true type: array items: type: string - name: $expand in: query description: Expand related entities style: form explode: false schema: uniqueItems: true type: array items: type: string responses: 2XX: description: Retrieved navigation property content: application/json: schema: $ref: '#/components/schemas/microsoft.graph.directoryObject' default: $ref: '#/components/responses/error' x-ms-docs-operation-type: operation ? /roleManagement/entitlementManagement/roleAssignmentScheduleRequests/{unifiedRoleAssignmentScheduleRequest-id}/microsoft.graph.cancel : post: tags: - roleManagement.rbacApplication summary: Invoke action cancel description: Immediately cancel a unifiedRoleAssignmentScheduleRequest object that is in a Granted status, and have the system automatically delete the canceled request after 30 days. After calling this action, the status of the canceled unifiedRoleAssignmentScheduleRequest changes to Canceled. externalDocs: description: Find more info here url: https://learn.microsoft.com/graph/api/unifiedroleassignmentschedulerequest-cancel?view=graph-rest-1.0 operationId: roleManagement.entitlementManagement.roleAssignmentScheduleRequest_cancel parameters: - name: unifiedRoleAssignmentScheduleRequest-id in: path description: The unique identifier of unifiedRoleAssignmentScheduleRequest required: true style: simple schema: type: string x-ms-docs-key-type: unifiedRoleAssignmentScheduleRequest responses: 2XX: description: Success default: $ref: '#/components/responses/error' x-ms-docs-operation-type: action /roleManagement/entitlementManagement/roleAssignmentScheduleRequests/{unifiedRoleAssignmentScheduleRequest-id}/principal: get: tags: - roleManagement.rbacApplication summary: Get principal from roleManagement description: The principal that's getting a role assignment through the request. Supports $expand and $select nested in $expand for id only. operationId: roleManagement.entitlementManagement.roleAssignmentScheduleRequest_GetPrincipal parameters: - name: unifiedRoleAssignmentScheduleRequest-id in: path description: The unique identifier of unifiedRoleAssignmentScheduleRequest required: true style: simple schema: type: string x-ms-docs-key-type: unifiedRoleAssignmentScheduleRequest - name: $select in: query description: Select properties to be returned style: form explode: false schema: uniqueItems: true type: array items: type: string - name: $expand in: query description: Expand related entities style: form explode: false schema: uniqueItems: true type: array items: type: string responses: 2XX: description: Retrieved navigation property content: application/json: schema: $ref: '#/components/schemas/microsoft.graph.directoryObject' default: $ref: '#/components/responses/error' x-ms-docs-operation-type: operation ? /roleManagement/entitlementManagement/roleAssignmentScheduleRequests/{unifiedRoleAssignmentScheduleRequest-id}/roleDefinition : get: tags: - roleManagement.rbacApplication summary: Get roleDefinition from roleManagement description: Detailed information for the unifiedRoleDefinition object that is referenced through the roleDefinitionId property. Supports $expand and $select nested in $expand. operationId: roleManagement.entitlementManagement.roleAssignmentScheduleRequest_GetRoleDefinition parameters: - name: unifiedRoleAssignmentScheduleRequest-id in: path description: The unique identifier of unifiedRoleAssignmentScheduleRequest required: true style: simple schema: type: string x-ms-docs-key-type: unifiedRoleAssignmentScheduleRequest - name: $select in: query description: Select properties to be returned style: form explode: false schema: uniqueItems: true type: array items: type: string - name: $expand in: query description: Expand related entities style: form explode: false schema: uniqueItems: true type: array items: type: string responses: 2XX: description: Retrieved navigation property content: application/json: schema: $ref: '#/components/schemas/microsoft.graph.unifiedRoleDefinition' default: $ref: '#/components/responses/error' x-ms-docs-operation-type: operation ? /roleManagement/entitlementManagement/roleAssignmentScheduleRequests/{unifiedRoleAssignmentScheduleRequest-id}/targetSchedule : get: tags: - roleManagement.rbacApplication summary: Get targetSchedule from roleManagement description: The schedule for an eligible role assignment that is referenced through the targetScheduleId property. Supports $expand and $select nested in $expand. operationId: roleManagement.entitlementManagement.roleAssignmentScheduleRequest_GetTargetSchedule parameters: - name: unifiedRoleAssignmentScheduleRequest-id in: path description: The unique identifier of unifiedRoleAssignmentScheduleRequest required: true style: simple schema: type: string x-ms-docs-key-type: unifiedRoleAssignmentScheduleRequest - name: $select in: query description: Select properties to be returned style: form explode: false schema: uniqueItems: true type: array items: type: string - name: $expand in: query description: Expand related entities style: form explode: false schema: uniqueItems: true type: array items: type: string responses: 2XX: description: Retrieved navigation property content: application/json: schema: $ref: '#/components/schemas/microsoft.graph.unifiedRoleAssignmentSchedule' default: $ref: '#/components/responses/error' x-ms-docs-operation-type: operation /roleManagement/entitlementManagement/roleAssignmentScheduleRequests/$count: get: tags: - roleManagement.rbacApplication summary: Get the number of the resource operationId: roleManagement.entitlementManagement.roleAssignmentScheduleRequest_GetCount parameters: - $ref: '#/components/parameters/search' - $ref: '#/components/parameters/filter' responses: 2XX: $ref: '#/components/responses/ODataCountResponse' default: $ref: '#/components/responses/error' /roleManagement/entitlementManagement/roleAssignmentScheduleRequests/microsoft.graph.filterByCurrentUser(on='{on}'): get: tags: - roleManagement.rbacApplication summary: Invoke function filterByCurrentUser description: In PIM, retrieve the requests for active role assignments for a particular principal. The principal can be the creator or approver of the unifiedRoleAssignmentScheduleRequest object, or they can be the target of the assignment. externalDocs: description: Find more info here url: https://learn.microsoft.com/graph/api/unifiedroleassignmentschedulerequest-filterbycurrentuser?view=graph-rest-1.0 operationId: roleManagement.entitlementManagement.roleAssignmentScheduleRequest_filterGraphBPreCurrentUser parameters: - name: true in: path description: 'Usage: on=''{on}''' required: true style: simple schema: $ref: '#/components/schemas/microsoft.graph.roleAssignmentScheduleRequestFilterByCurrentUserOptions' - $ref: '#/components/parameters/top' - $ref: '#/components/parameters/skip' - $ref: '#/components/parameters/search' - $ref: '#/components/parameters/filter' - $ref: '#/components/parameters/count' - name: $select in: query description: Select properties to be returned style: form explode: false schema: uniqueItems: true type: array items: type: string - name: $orderby in: query description: Order items by property values style: form explode: false schema: uniqueItems: true type: array items: type: string - name: $expand in: query description: Expand related entities style: form explode: false schema: uniqueItems: true type: array items: type: string responses: 2XX: description: Success content: application/json: schema: title: Collection of unifiedRoleAssignmentScheduleRequest type: object properties: value: type: array items: $ref: '#/components/schemas/microsoft.graph.unifiedRoleAssignmentScheduleRequest' '@odata.nextLink': type: - string - 'null' additionalProperties: type: object default: $ref: '#/components/responses/error' x-ms-docs-operation-type: function x-ms-pageable: nextLinkName: '@odata.nextLink' operationName: listMore /roleManagement/entitlementManagement/roleAssignmentSchedules: get: tags: - roleManagement.rbacApplication summary: Get roleAssignmentSchedules from roleManagement description: Schedules for active role assignment operations. operationId: roleManagement.entitlementManagement_ListRoleAssignmentSchedule parameters: - $ref: '#/components/parameters/top' - $ref: '#/components/parameters/skip' - $ref: '#/components/parameters/search' - $ref: '#/components/parameters/filter' - $ref: '#/components/parameters/count' - name: $orderby in: query description: Order items by property values style: form explode: false schema: uniqueItems: true type: array items: type: string - name: $select in: query description: Select properties to be returned style: form explode: false schema: uniqueItems: true type: array items: type: string - name: $expand in: query description: Expand related entities style: form explode: false schema: uniqueItems: true type: array items: type: string responses: 2XX: $ref: '#/components/responses/microsoft.graph.unifiedRoleAssignmentScheduleCollectionResponse' default: $ref: '#/components/responses/error' x-ms-pageable: nextLinkName: '@odata.nextLink' operationName: listMore x-ms-docs-operation-type: operation post: tags: - roleManagement.rbacApplication summary: Create new navigation property to roleAssignmentSchedules for roleManagement operationId: roleManagement.entitlementManagement_CreateRoleAssignmentSchedule requestBody: description: New navigation property content: application/json: schema: $ref: '#/components/schemas/microsoft.graph.unifiedRoleAssignmentSchedule' required: true responses: 2XX: description: Created navigation property. content: application/json: schema: $ref: '#/components/schemas/microsoft.graph.unifiedRoleAssignmentSchedule' default: $ref: '#/components/responses/error' x-ms-docs-operation-type: operation /roleManagement/entitlementManagement/roleAssignmentSchedules/{unifiedRoleAssignmentSchedule-id}: get: tags: - roleManagement.rbacApplication summary: Get roleAssignmentSchedules from roleManagement description: Schedules for active role assignment operations. operationId: roleManagement.entitlementManagement_GetRoleAssignmentSchedule parameters: - name: unifiedRoleAssignmentSchedule-id in: path description: The unique identifier of unifiedRoleAssignmentSchedule required: true style: simple schema: type: string x-ms-docs-key-type: unifiedRoleAssignmentSchedule - name: $select in: query description: Select properties to be returned style: form explode: false schema: uniqueItems: true type: array items: type: string - name: $expand in: query description: Expand related entities style: form explode: false schema: uniqueItems: true type: array items: type: string responses: 2XX: description: Retrieved navigation property content: application/json: schema: $ref: '#/components/schemas/microsoft.graph.unifiedRoleAssignmentSchedule' default: $ref: '#/components/responses/error' x-ms-docs-operation-type: operation patch: tags: - roleManagement.rbacApplication summary: Update the navigation property roleAssignmentSchedules in roleManagement operationId: roleManagement.entitlementManagement_UpdateRoleAssignmentSchedule parameters: - name: unifiedRoleAssignmentSchedule-id in: path description: The unique identifier of unifiedRoleAssignmentSchedule required: true style: simple schema: type: string x-ms-docs-key-type: unifiedRoleAssignmentSchedule requestBody: description: New navigation property values content: application/json: schema: $ref: '#/components/schemas/microsoft.graph.unifiedRoleAssignmentSchedule' required: true responses: 2XX: description: Success content: application/json: schema: $ref: '#/components/schemas/microsoft.graph.unifiedRoleAssignmentSchedule' default: $ref: '#/components/responses/error' x-ms-docs-operation-type: operation delete: tags: - roleManagement.rbacApplication summary: Delete navigation property roleAssignmentSchedules for roleManagement operationId: roleManagement.entitlementManagement_DeleteRoleAssignmentSchedule parameters: - name: unifiedRoleAssignmentSchedule-id in: path description: The unique identifier of unifiedRoleAssignmentSchedule required: true style: simple schema: type: string x-ms-docs-key-type: unifiedRoleAssignmentSchedule - name: If-Match in: header description: ETag style: simple schema: type: string responses: 2XX: description: Success default: $ref: '#/components/responses/error' x-ms-docs-operation-type: operation /roleManagement/entitlementManagement/roleAssignmentSchedules/{unifiedRoleAssignmentSchedule-id}/activatedUsing: get: tags: - roleManagement.rbacApplication summary: Get activatedUsing from roleManagement description: If the request is from an eligible administrator to activate a role, this parameter shows the related eligible assignment for that activation. Otherwise, it's null. Supports $expand. operationId: roleManagement.entitlementManagement.roleAssignmentSchedule_GetActivatedUsing parameters: - name: unifiedRoleAssignmentSchedule-id in: path description: The unique identifier of unifiedRoleAssignmentSchedule required: true style: simple schema: type: string x-ms-docs-key-type: unifiedRoleAssignmentSchedule - name: $select in: query description: Select properties to be returned style: form explode: false schema: uniqueItems: true type: array items: type: string - name: $expand in: query description: Expand related entities style: form explode: false schema: uniqueItems: true type: array items: type: string responses: 2XX: description: Retrieved navigation property content: application/json: schema: $ref: '#/components/schemas/microsoft.graph.unifiedRoleEligibilitySchedule' default: $ref: '#/components/responses/error' x-ms-docs-operation-type: operation /roleManagement/entitlementManagement/roleAssignmentSchedules/{unifiedRoleAssignmentSchedule-id}/appScope: get: tags: - roleManagement.rbacApplication summary: Get appScope from roleManagement description: Read-only property with details of the app-specific scope when the role eligibility or assignment is scoped to an app. Nullable. operationId: roleManagement.entitlementManagement.roleAssignmentSchedule_GetAppScope parameters: - name: unifiedRoleAssignmentSchedule-id in: path description: The unique identifier of unifiedRoleAssignmentSchedule required: true style: simple schema: type: string x-ms-docs-key-type: unifiedRoleAssignmentSchedule - name: $select in: query description: Select properties to be returned style: form explode: false schema: uniqueItems: true type: array items: type: string - name: $expand in: query description: Expand related entities style: form explode: false schema: uniqueItems: true type: array items: type: string responses: 2XX: description: Retrieved navigation property content: application/json: schema: $ref: '#/components/schemas/microsoft.graph.appScope' default: $ref: '#/components/responses/error' x-ms-docs-operation-type: operation /roleManagement/entitlementManagement/roleAssignmentSchedules/{unifiedRoleAssignmentSchedule-id}/directoryScope: get: tags: - roleManagement.rbacApplication summary: Get directoryScope from roleManagement description: The directory object that is the scope of the role eligibility or assignment. Read-only. operationId: roleManagement.entitlementManagement.roleAssignmentSchedule_GetDirectoryScope parameters: - name: unifiedRoleAssignmentSchedule-id in: path description: The unique identifier of unifiedRoleAssignmentSchedule required: true style: simple schema: type: string x-ms-docs-key-type: unifiedRoleAssignmentSchedule - name: $select in: query description: Select properties to be returned style: form explode: false schema: uniqueItems: true type: array items: type: string - name: $expand in: query description: Expand related entities style: form explode: false schema: uniqueItems: true type: array items: type: string responses: 2XX: description: Retrieved navigation property content: application/json: schema: $ref: '#/components/schemas/microsoft.graph.directoryObject' default: $ref: '#/components/responses/error' x-ms-docs-operation-type: operation /roleManagement/entitlementManagement/roleAssignmentSchedules/{unifiedRoleAssignmentSchedule-id}/principal: get: tags: - roleManagement.rbacApplication summary: Get principal from roleManagement description: The principal that's getting a role assignment or that's eligible for a role through the request. operationId: roleManagement.entitlementManagement.roleAssignmentSchedule_GetPrincipal parameters: - name: unifiedRoleAssignmentSchedule-id in: path description: The unique identifier of unifiedRoleAssignmentSchedule required: true style: simple schema: type: string x-ms-docs-key-type: unifiedRoleAssignmentSchedule - name: $select in: query description: Select properties to be returned style: form explode: false schema: uniqueItems: true type: array items: type: string - name: $expand in: query description: Expand related entities style: form explode: false schema: uniqueItems: true type: array items: type: string responses: 2XX: description: Retrieved navigation property content: application/json: schema: $ref: '#/components/schemas/microsoft.graph.directoryObject' default: $ref: '#/components/responses/error' x-ms-docs-operation-type: operation /roleManagement/entitlementManagement/roleAssignmentSchedules/{unifiedRoleAssignmentSchedule-id}/roleDefinition: get: tags: - roleManagement.rbacApplication summary: Get roleDefinition from roleManagement description: Detailed information for the roleDefinition object that is referenced through the roleDefinitionId property. operationId: roleManagement.entitlementManagement.roleAssignmentSchedule_GetRoleDefinition parameters: - name: unifiedRoleAssignmentSchedule-id in: path description: The unique identifier of unifiedRoleAssignmentSchedule required: true style: simple schema: type: string x-ms-docs-key-type: unifiedRoleAssignmentSchedule - name: $select in: query description: Select properties to be returned style: form explode: false schema: uniqueItems: true type: array items: type: string - name: $expand in: query description: Expand related entities style: form explode: false schema: uniqueItems: true type: array items: type: string responses: 2XX: description: Retrieved navigation property content: application/json: schema: $ref: '#/components/schemas/microsoft.graph.unifiedRoleDefinition' default: $ref: '#/components/responses/error' x-ms-docs-operation-type: operation /roleManagement/entitlementManagement/roleAssignmentSchedules/$count: get: tags: - roleManagement.rbacApplication summary: Get the number of the resource operationId: roleManagement.entitlementManagement.roleAssignmentSchedule_GetCount parameters: - $ref: '#/components/parameters/search' - $ref: '#/components/parameters/filter' responses: 2XX: $ref: '#/components/responses/ODataCountResponse' default: $ref: '#/components/responses/error' /roleManagement/entitlementManagement/roleAssignmentSchedules/microsoft.graph.filterByCurrentUser(on='{on}'): get: tags: - roleManagement.rbacApplication summary: Invoke function filterByCurrentUser description: Retrieve the schedules for active role assignment operations for which the signed-in user is the principal. externalDocs: description: Find more info here url: https://learn.microsoft.com/graph/api/unifiedroleassignmentschedule-filterbycurrentuser?view=graph-rest-1.0 operationId: roleManagement.entitlementManagement.roleAssignmentSchedule_filterGraphBPreCurrentUser parameters: - name: true in: path description: 'Usage: on=''{on}''' required: true style: simple schema: $ref: '#/components/schemas/microsoft.graph.roleAssignmentScheduleFilterByCurrentUserOptions' - $ref: '#/components/parameters/top' - $ref: '#/components/parameters/skip' - $ref: '#/components/parameters/search' - $ref: '#/components/parameters/filter' - $ref: '#/components/parameters/count' - name: $select in: query description: Select properties to be returned style: form explode: false schema: uniqueItems: true type: array items: type: string - name: $orderby in: query description: Order items by property values style: form explode: false schema: uniqueItems: true type: array items: type: string - name: $expand in: query description: Expand related entities style: form explode: false schema: uniqueItems: true type: array items: type: string responses: 2XX: description: Success content: application/json: schema: title: Collection of unifiedRoleAssignmentSchedule type: object properties: value: type: array items: $ref: '#/components/schemas/microsoft.graph.unifiedRoleAssignmentSchedule' '@odata.nextLink': type: - string - 'null' additionalProperties: type: object default: $ref: '#/components/responses/error' x-ms-docs-operation-type: function x-ms-pageable: nextLinkName: '@odata.nextLink' operationName: listMore /roleManagement/entitlementManagement/roleDefinitions: get: tags: - roleManagement.rbacApplication summary: List roleDefinitions description: 'Get a list of unifiedRoleDefinition objects for the provider. The following RBAC providers are currently supported: - directory (Microsoft Entra ID) - entitlement management (Microsoft Entra Entitlement Management)' externalDocs: description: Find more info here url: https://learn.microsoft.com/graph/api/rbacapplication-list-roledefinitions?view=graph-rest-1.0 operationId: roleManagement.entitlementManagement_ListRoleDefinition parameters: - $ref: '#/components/parameters/top' - $ref: '#/components/parameters/skip' - $ref: '#/components/parameters/search' - $ref: '#/components/parameters/filter' - $ref: '#/components/parameters/count' - name: $orderby in: query description: Order items by property values style: form explode: false schema: uniqueItems: true type: array items: type: string - name: $select in: query description: Select properties to be returned style: form explode: false schema: uniqueItems: true type: array items: type: string - name: $expand in: query description: Expand related entities style: form explode: false schema: uniqueItems: true type: array items: type: string responses: 2XX: $ref: '#/components/responses/microsoft.graph.unifiedRoleDefinitionCollectionResponse' default: $ref: '#/components/responses/error' x-ms-pageable: nextLinkName: '@odata.nextLink' operationName: listMore x-ms-docs-operation-type: operation post: tags: - roleManagement.rbacApplication summary: Create new navigation property to roleDefinitions for roleManagement operationId: roleManagement.entitlementManagement_CreateRoleDefinition requestBody: description: New navigation property content: application/json: schema: $ref: '#/components/schemas/microsoft.graph.unifiedRoleDefinition' required: true responses: 2XX: description: Created navigation property. content: application/json: schema: $ref: '#/components/schemas/microsoft.graph.unifiedRoleDefinition' default: $ref: '#/components/responses/error' x-ms-docs-operation-type: operation /roleManagement/entitlementManagement/roleDefinitions/{unifiedRoleDefinition-id}: get: tags: - roleManagement.rbacApplication summary: Get roleDefinitions from roleManagement description: Resource representing the roles allowed by RBAC providers and the permissions assigned to the roles. operationId: roleManagement.entitlementManagement_GetRoleDefinition parameters: - name: unifiedRoleDefinition-id in: path description: The unique identifier of unifiedRoleDefinition required: true style: simple schema: type: string x-ms-docs-key-type: unifiedRoleDefinition - name: $select in: query description: Select properties to be returned style: form explode: false schema: uniqueItems: true type: array items: type: string - name: $expand in: query description: Expand related entities style: form explode: false schema: uniqueItems: true type: array items: type: string responses: 2XX: description: Retrieved navigation property content: application/json: schema: $ref: '#/components/schemas/microsoft.graph.unifiedRoleDefinition' default: $ref: '#/components/responses/error' x-ms-docs-operation-type: operation patch: tags: - roleManagement.rbacApplication summary: Update the navigation property roleDefinitions in roleManagement operationId: roleManagement.entitlementManagement_UpdateRoleDefinition parameters: - name: unifiedRoleDefinition-id in: path description: The unique identifier of unifiedRoleDefinition required: true style: simple schema: type: string x-ms-docs-key-type: unifiedRoleDefinition requestBody: description: New navigation property values content: application/json: schema: $ref: '#/components/schemas/microsoft.graph.unifiedRoleDefinition' required: true responses: 2XX: description: Success content: application/json: schema: $ref: '#/components/schemas/microsoft.graph.unifiedRoleDefinition' default: $ref: '#/components/responses/error' x-ms-docs-operation-type: operation delete: tags: - roleManagement.rbacApplication summary: Delete navigation property roleDefinitions for roleManagement operationId: roleManagement.entitlementManagement_DeleteRoleDefinition parameters: - name: unifiedRoleDefinition-id in: path description: The unique identifier of unifiedRoleDefinition required: true style: simple schema: type: string x-ms-docs-key-type: unifiedRoleDefinition - name: If-Match in: header description: ETag style: simple schema: type: string responses: 2XX: description: Success default: $ref: '#/components/responses/error' x-ms-docs-operation-type: operation /roleManagement/entitlementManagement/roleDefinitions/{unifiedRoleDefinition-id}/inheritsPermissionsFrom: get: tags: - roleManagement.rbacApplication summary: Get inheritsPermissionsFrom from roleManagement description: Read-only collection of role definitions that the given role definition inherits from. Only Microsoft Entra built-in roles (isBuiltIn is true) support this attribute. Supports $expand. operationId: roleManagement.entitlementManagement.roleDefinition_ListInheritsPermissionsFrom parameters: - name: unifiedRoleDefinition-id in: path description: The unique identifier of unifiedRoleDefinition required: true style: simple schema: type: string x-ms-docs-key-type: unifiedRoleDefinition - $ref: '#/components/parameters/top' - $ref: '#/components/parameters/skip' - $ref: '#/components/parameters/search' - $ref: '#/components/parameters/filter' - $ref: '#/components/parameters/count' - name: $orderby in: query description: Order items by property values style: form explode: false schema: uniqueItems: true type: array items: type: string - name: $select in: query description: Select properties to be returned style: form explode: false schema: uniqueItems: true type: array items: type: string - name: $expand in: query description: Expand related entities style: form explode: false schema: uniqueItems: true type: array items: type: string responses: 2XX: $ref: '#/components/responses/microsoft.graph.unifiedRoleDefinitionCollectionResponse' default: $ref: '#/components/responses/error' x-ms-pageable: nextLinkName: '@odata.nextLink' operationName: listMore x-ms-docs-operation-type: operation post: tags: - roleManagement.rbacApplication summary: Create new navigation property to inheritsPermissionsFrom for roleManagement operationId: roleManagement.entitlementManagement.roleDefinition_CreateInheritsPermissionsFrom parameters: - name: unifiedRoleDefinition-id in: path description: The unique identifier of unifiedRoleDefinition required: true style: simple schema: type: string x-ms-docs-key-type: unifiedRoleDefinition requestBody: description: New navigation property content: application/json: schema: $ref: '#/components/schemas/microsoft.graph.unifiedRoleDefinition' required: true responses: 2XX: description: Created navigation property. content: application/json: schema: $ref: '#/components/schemas/microsoft.graph.unifiedRoleDefinition' default: $ref: '#/components/responses/error' x-ms-docs-operation-type: operation ? /roleManagement/entitlementManagement/roleDefinitions/{unifiedRoleDefinition-id}/inheritsPermissionsFrom/{unifiedRoleDefinition-id1} : get: tags: - roleManagement.rbacApplication summary: Get inheritsPermissionsFrom from roleManagement description: Read-only collection of role definitions that the given role definition inherits from. Only Microsoft Entra built-in roles (isBuiltIn is true) support this attribute. Supports $expand. operationId: roleManagement.entitlementManagement.roleDefinition_GetInheritsPermissionsFrom parameters: - name: unifiedRoleDefinition-id in: path description: The unique identifier of unifiedRoleDefinition required: true style: simple schema: type: string x-ms-docs-key-type: unifiedRoleDefinition - name: unifiedRoleDefinition-id1 in: path description: The unique identifier of unifiedRoleDefinition required: true style: simple schema: type: string x-ms-docs-key-type: unifiedRoleDefinition - name: $select in: query description: Select properties to be returned style: form explode: false schema: uniqueItems: true type: array items: type: string - name: $expand in: query description: Expand related entities style: form explode: false schema: uniqueItems: true type: array items: type: string responses: 2XX: description: Retrieved navigation property content: application/json: schema: $ref: '#/components/schemas/microsoft.graph.unifiedRoleDefinition' default: $ref: '#/components/responses/error' x-ms-docs-operation-type: operation patch: tags: - roleManagement.rbacApplication summary: Update the navigation property inheritsPermissionsFrom in roleManagement operationId: roleManagement.entitlementManagement.roleDefinition_UpdateInheritsPermissionsFrom parameters: - name: unifiedRoleDefinition-id in: path description: The unique identifier of unifiedRoleDefinition required: true style: simple schema: type: string x-ms-docs-key-type: unifiedRoleDefinition - name: unifiedRoleDefinition-id1 in: path description: The unique identifier of unifiedRoleDefinition required: true style: simple schema: type: string x-ms-docs-key-type: unifiedRoleDefinition requestBody: description: New navigation property values content: application/json: schema: $ref: '#/components/schemas/microsoft.graph.unifiedRoleDefinition' required: true responses: 2XX: description: Success content: application/json: schema: $ref: '#/components/schemas/microsoft.graph.unifiedRoleDefinition' default: $ref: '#/components/responses/error' x-ms-docs-operation-type: operation delete: tags: - roleManagement.rbacApplication summary: Delete navigation property inheritsPermissionsFrom for roleManagement operationId: roleManagement.entitlementManagement.roleDefinition_DeleteInheritsPermissionsFrom parameters: - name: unifiedRoleDefinition-id in: path description: The unique identifier of unifiedRoleDefinition required: true style: simple schema: type: string x-ms-docs-key-type: unifiedRoleDefinition - name: unifiedRoleDefinition-id1 in: path description: The unique identifier of unifiedRoleDefinition required: true style: simple schema: type: string x-ms-docs-key-type: unifiedRoleDefinition - name: If-Match in: header description: ETag style: simple schema: type: string responses: 2XX: description: Success default: $ref: '#/components/responses/error' x-ms-docs-operation-type: operation /roleManagement/entitlementManagement/roleDefinitions/{unifiedRoleDefinition-id}/inheritsPermissionsFrom/$count: get: tags: - roleManagement.rbacApplication summary: Get the number of the resource operationId: roleManagement.entitlementManagement.roleDefinition.inheritsPermissionsFrom_GetCount parameters: - name: unifiedRoleDefinition-id in: path description: The unique identifier of unifiedRoleDefinition required: true style: simple schema: type: string x-ms-docs-key-type: unifiedRoleDefinition - $ref: '#/components/parameters/search' - $ref: '#/components/parameters/filter' responses: 2XX: $ref: '#/components/responses/ODataCountResponse' default: $ref: '#/components/responses/error' /roleManagement/entitlementManagement/roleDefinitions/$count: get: tags: - roleManagement.rbacApplication summary: Get the number of the resource operationId: roleManagement.entitlementManagement.roleDefinition_GetCount parameters: - $ref: '#/components/parameters/search' - $ref: '#/components/parameters/filter' responses: 2XX: $ref: '#/components/responses/ODataCountResponse' default: $ref: '#/components/responses/error' /roleManagement/entitlementManagement/roleEligibilityScheduleInstances: get: tags: - roleManagement.rbacApplication summary: Get roleEligibilityScheduleInstances from roleManagement description: Instances for role eligibility requests. operationId: roleManagement.entitlementManagement_ListRoleEligibilityScheduleInstance parameters: - $ref: '#/components/parameters/top' - $ref: '#/components/parameters/skip' - $ref: '#/components/parameters/search' - $ref: '#/components/parameters/filter' - $ref: '#/components/parameters/count' - name: $orderby in: query description: Order items by property values style: form explode: false schema: uniqueItems: true type: array items: type: string - name: $select in: query description: Select properties to be returned style: form explode: false schema: uniqueItems: true type: array items: type: string - name: $expand in: query description: Expand related entities style: form explode: false schema: uniqueItems: true type: array items: type: string responses: 2XX: $ref: '#/components/responses/microsoft.graph.unifiedRoleEligibilityScheduleInstanceCollectionResponse' default: $ref: '#/components/responses/error' x-ms-pageable: nextLinkName: '@odata.nextLink' operationName: listMore x-ms-docs-operation-type: operation post: tags: - roleManagement.rbacApplication summary: Create new navigation property to roleEligibilityScheduleInstances for… operationId: roleManagement.entitlementManagement_CreateRoleEligibilityScheduleInstance requestBody: description: New navigation property content: application/json: schema: $ref: '#/components/schemas/microsoft.graph.unifiedRoleEligibilityScheduleInstance' required: true responses: 2XX: description: Created navigation property. content: application/json: schema: $ref: '#/components/schemas/microsoft.graph.unifiedRoleEligibilityScheduleInstance' default: $ref: '#/components/responses/error' x-ms-docs-operation-type: operation /roleManagement/entitlementManagement/roleEligibilityScheduleInstances/{unifiedRoleEligibilityScheduleInstance-id}: get: tags: - roleManagement.rbacApplication summary: Get roleEligibilityScheduleInstances from roleManagement description: Instances for role eligibility requests. operationId: roleManagement.entitlementManagement_GetRoleEligibilityScheduleInstance parameters: - name: unifiedRoleEligibilityScheduleInstance-id in: path description: The unique identifier of unifiedRoleEligibilityScheduleInstance required: true style: simple schema: type: string x-ms-docs-key-type: unifiedRoleEligibilityScheduleInstance - name: $select in: query description: Select properties to be returned style: form explode: false schema: uniqueItems: true type: array items: type: string - name: $expand in: query description: Expand related entities style: form explode: false schema: uniqueItems: true type: array items: type: string responses: 2XX: description: Retrieved navigation property content: application/json: schema: $ref: '#/components/schemas/microsoft.graph.unifiedRoleEligibilityScheduleInstance' default: $ref: '#/components/responses/error' x-ms-docs-operation-type: operation patch: tags: - roleManagement.rbacApplication summary: Update the navigation property roleEligibilityScheduleInstances in… operationId: roleManagement.entitlementManagement_UpdateRoleEligibilityScheduleInstance parameters: - name: unifiedRoleEligibilityScheduleInstance-id in: path description: The unique identifier of unifiedRoleEligibilityScheduleInstance required: true style: simple schema: type: string x-ms-docs-key-type: unifiedRoleEligibilityScheduleInstance requestBody: description: New navigation property values content: application/json: schema: $ref: '#/components/schemas/microsoft.graph.unifiedRoleEligibilityScheduleInstance' required: true responses: 2XX: description: Success content: application/json: schema: $ref: '#/components/schemas/microsoft.graph.unifiedRoleEligibilityScheduleInstance' default: $ref: '#/components/responses/error' x-ms-docs-operation-type: operation delete: tags: - roleManagement.rbacApplication summary: Delete navigation property roleEligibilityScheduleInstances for roleManagement operationId: roleManagement.entitlementManagement_DeleteRoleEligibilityScheduleInstance parameters: - name: unifiedRoleEligibilityScheduleInstance-id in: path description: The unique identifier of unifiedRoleEligibilityScheduleInstance required: true style: simple schema: type: string x-ms-docs-key-type: unifiedRoleEligibilityScheduleInstance - name: If-Match in: header description: ETag style: simple schema: type: string responses: 2XX: description: Success default: $ref: '#/components/responses/error' x-ms-docs-operation-type: operation ? /roleManagement/entitlementManagement/roleEligibilityScheduleInstances/{unifiedRoleEligibilityScheduleInstance-id}/appScope : get: tags: - roleManagement.rbacApplication summary: Get appScope from roleManagement description: Read-only property with details of the app-specific scope when the assignment or role eligibility is scoped to an app. Nullable. operationId: roleManagement.entitlementManagement.roleEligibilityScheduleInstance_GetAppScope parameters: - name: unifiedRoleEligibilityScheduleInstance-id in: path description: The unique identifier of unifiedRoleEligibilityScheduleInstance required: true style: simple schema: type: string x-ms-docs-key-type: unifiedRoleEligibilityScheduleInstance - name: $select in: query description: Select properties to be returned style: form explode: false schema: uniqueItems: true type: array items: type: string - name: $expand in: query description: Expand related entities style: form explode: false schema: uniqueItems: true type: array items: type: string responses: 2XX: description: Retrieved navigation property content: application/json: schema: $ref: '#/components/schemas/microsoft.graph.appScope' default: $ref: '#/components/responses/error' x-ms-docs-operation-type: operation ? /roleManagement/entitlementManagement/roleEligibilityScheduleInstances/{unifiedRoleEligibilityScheduleInstance-id}/directoryScope : get: tags: - roleManagement.rbacApplication summary: Get directoryScope from roleManagement description: The directory object that is the scope of the assignment or role eligibility. Read-only. operationId: roleManagement.entitlementManagement.roleEligibilityScheduleInstance_GetDirectoryScope parameters: - name: unifiedRoleEligibilityScheduleInstance-id in: path description: The unique identifier of unifiedRoleEligibilityScheduleInstance required: true style: simple schema: type: string x-ms-docs-key-type: unifiedRoleEligibilityScheduleInstance - name: $select in: query description: Select properties to be returned style: form explode: false schema: uniqueItems: true type: array items: type: string - name: $expand in: query description: Expand related entities style: form explode: false schema: uniqueItems: true type: array items: type: string responses: 2XX: description: Retrieved navigation property content: application/json: schema: $ref: '#/components/schemas/microsoft.graph.directoryObject' default: $ref: '#/components/responses/error' x-ms-docs-operation-type: operation ? /roleManagement/entitlementManagement/roleEligibilityScheduleInstances/{unifiedRoleEligibilityScheduleInstance-id}/principal : get: tags: - roleManagement.rbacApplication summary: Get principal from roleManagement description: The principal that's getting a role assignment or role eligibility through the request. operationId: roleManagement.entitlementManagement.roleEligibilityScheduleInstance_GetPrincipal parameters: - name: unifiedRoleEligibilityScheduleInstance-id in: path description: The unique identifier of unifiedRoleEligibilityScheduleInstance required: true style: simple schema: type: string x-ms-docs-key-type: unifiedRoleEligibilityScheduleInstance - name: $select in: query description: Select properties to be returned style: form explode: false schema: uniqueItems: true type: array items: type: string - name: $expand in: query description: Expand related entities style: form explode: false schema: uniqueItems: true type: array items: type: string responses: 2XX: description: Retrieved navigation property content: application/json: schema: $ref: '#/components/schemas/microsoft.graph.directoryObject' default: $ref: '#/components/responses/error' x-ms-docs-operation-type: operation ? /roleManagement/entitlementManagement/roleEligibilityScheduleInstances/{unifiedRoleEligibilityScheduleInstance-id}/roleDefinition : get: tags: - roleManagement.rbacApplication summary: Get roleDefinition from roleManagement description: Detailed information for the roleDefinition object that is referenced through the roleDefinitionId property. operationId: roleManagement.entitlementManagement.roleEligibilityScheduleInstance_GetRoleDefinition parameters: - name: unifiedRoleEligibilityScheduleInstance-id in: path description: The unique identifier of unifiedRoleEligibilityScheduleInstance required: true style: simple schema: type: string x-ms-docs-key-type: unifiedRoleEligibilityScheduleInstance - name: $select in: query description: Select properties to be returned style: form explode: false schema: uniqueItems: true type: array items: type: string - name: $expand in: query description: Expand related entities style: form explode: false schema: uniqueItems: true type: array items: type: string responses: 2XX: description: Retrieved navigation property content: application/json: schema: $ref: '#/components/schemas/microsoft.graph.unifiedRoleDefinition' default: $ref: '#/components/responses/error' x-ms-docs-operation-type: operation /roleManagement/entitlementManagement/roleEligibilityScheduleInstances/$count: get: tags: - roleManagement.rbacApplication summary: Get the number of the resource operationId: roleManagement.entitlementManagement.roleEligibilityScheduleInstance_GetCount parameters: - $ref: '#/components/parameters/search' - $ref: '#/components/parameters/filter' responses: 2XX: $ref: '#/components/responses/ODataCountResponse' default: $ref: '#/components/responses/error' /roleManagement/entitlementManagement/roleEligibilityScheduleInstances/microsoft.graph.filterByCurrentUser(on='{on}'): get: tags: - roleManagement.rbacApplication summary: Invoke function filterByCurrentUser description: Get the instances of eligible roles for the calling principal. externalDocs: description: Find more info here url: https://learn.microsoft.com/graph/api/unifiedroleeligibilityscheduleinstance-filterbycurrentuser?view=graph-rest-1.0 operationId: roleManagement.entitlementManagement.roleEligibilityScheduleInstance_filterGraphBPreCurrentUser parameters: - name: true in: path description: 'Usage: on=''{on}''' required: true style: simple schema: $ref: '#/components/schemas/microsoft.graph.roleEligibilityScheduleInstanceFilterByCurrentUserOptions' - $ref: '#/components/parameters/top' - $ref: '#/components/parameters/skip' - $ref: '#/components/parameters/search' - $ref: '#/components/parameters/filter' - $ref: '#/components/parameters/count' - name: $select in: query description: Select properties to be returned style: form explode: false schema: uniqueItems: true type: array items: type: string - name: $orderby in: query description: Order items by property values style: form explode: false schema: uniqueItems: true type: array items: type: string - name: $expand in: query description: Expand related entities style: form explode: false schema: uniqueItems: true type: array items: type: string responses: 2XX: description: Success content: application/json: schema: title: Collection of unifiedRoleEligibilityScheduleInstance type: object properties: value: type: array items: $ref: '#/components/schemas/microsoft.graph.unifiedRoleEligibilityScheduleInstance' '@odata.nextLink': type: - string - 'null' additionalProperties: type: object default: $ref: '#/components/responses/error' x-ms-docs-operation-type: function x-ms-pageable: nextLinkName: '@odata.nextLink' operationName: listMore /roleManagement/entitlementManagement/roleEligibilityScheduleRequests: get: tags: - roleManagement.rbacApplication summary: Get roleEligibilityScheduleRequests from roleManagement description: Requests for role eligibilities for principals through PIM. operationId: roleManagement.entitlementManagement_ListRoleEligibilityScheduleRequest parameters: - $ref: '#/components/parameters/top' - $ref: '#/components/parameters/skip' - $ref: '#/components/parameters/search' - $ref: '#/components/parameters/filter' - $ref: '#/components/parameters/count' - name: $orderby in: query description: Order items by property values style: form explode: false schema: uniqueItems: true type: array items: type: string - name: $select in: query description: Select properties to be returned style: form explode: false schema: uniqueItems: true type: array items: type: string - name: $expand in: query description: Expand related entities style: form explode: false schema: uniqueItems: true type: array items: type: string responses: 2XX: $ref: '#/components/responses/microsoft.graph.unifiedRoleEligibilityScheduleRequestCollectionResponse' default: $ref: '#/components/responses/error' x-ms-pageable: nextLinkName: '@odata.nextLink' operationName: listMore x-ms-docs-operation-type: operation post: tags: - roleManagement.rbacApplication summary: Create new navigation property to roleEligibilityScheduleRequests for… operationId: roleManagement.entitlementManagement_CreateRoleEligibilityScheduleRequest requestBody: description: New navigation property content: application/json: schema: $ref: '#/components/schemas/microsoft.graph.unifiedRoleEligibilityScheduleRequest' required: true responses: 2XX: description: Created navigation property. content: application/json: schema: $ref: '#/components/schemas/microsoft.graph.unifiedRoleEligibilityScheduleRequest' default: $ref: '#/components/responses/error' x-ms-docs-operation-type: operation /roleManagement/entitlementManagement/roleEligibilityScheduleRequests/{unifiedRoleEligibilityScheduleRequest-id}: get: tags: - roleManagement.rbacApplication summary: Get roleEligibilityScheduleRequests from roleManagement description: Requests for role eligibilities for principals through PIM. operationId: roleManagement.entitlementManagement_GetRoleEligibilityScheduleRequest parameters: - name: unifiedRoleEligibilityScheduleRequest-id in: path description: The unique identifier of unifiedRoleEligibilityScheduleRequest required: true style: simple schema: type: string x-ms-docs-key-type: unifiedRoleEligibilityScheduleRequest - name: $select in: query description: Select properties to be returned style: form explode: false schema: uniqueItems: true type: array items: type: string - name: $expand in: query description: Expand related entities style: form explode: false schema: uniqueItems: true type: array items: type: string responses: 2XX: description: Retrieved navigation property content: application/json: schema: $ref: '#/components/schemas/microsoft.graph.unifiedRoleEligibilityScheduleRequest' default: $ref: '#/components/responses/error' x-ms-docs-operation-type: operation patch: tags: - roleManagement.rbacApplication summary: Update the navigation property roleEligibilityScheduleRequests in roleManagement operationId: roleManagement.entitlementManagement_UpdateRoleEligibilityScheduleRequest parameters: - name: unifiedRoleEligibilityScheduleRequest-id in: path description: The unique identifier of unifiedRoleEligibilityScheduleRequest required: true style: simple schema: type: string x-ms-docs-key-type: unifiedRoleEligibilityScheduleRequest requestBody: description: New navigation property values content: application/json: schema: $ref: '#/components/schemas/microsoft.graph.unifiedRoleEligibilityScheduleRequest' required: true responses: 2XX: description: Success content: application/json: schema: $ref: '#/components/schemas/microsoft.graph.unifiedRoleEligibilityScheduleRequest' default: $ref: '#/components/responses/error' x-ms-docs-operation-type: operation delete: tags: - roleManagement.rbacApplication summary: Delete navigation property roleEligibilityScheduleRequests for roleManagement operationId: roleManagement.entitlementManagement_DeleteRoleEligibilityScheduleRequest parameters: - name: unifiedRoleEligibilityScheduleRequest-id in: path description: The unique identifier of unifiedRoleEligibilityScheduleRequest required: true style: simple schema: type: string x-ms-docs-key-type: unifiedRoleEligibilityScheduleRequest - name: If-Match in: header description: ETag style: simple schema: type: string responses: 2XX: description: Success default: $ref: '#/components/responses/error' x-ms-docs-operation-type: operation /roleManagement/entitlementManagement/roleEligibilityScheduleRequests/{unifiedRoleEligibilityScheduleRequest-id}/appScope: get: tags: - roleManagement.rbacApplication summary: Get appScope from roleManagement description: Read-only property with details of the app-specific scope when the role eligibility is scoped to an app. Nullable. Supports $expand. operationId: roleManagement.entitlementManagement.roleEligibilityScheduleRequest_GetAppScope parameters: - name: unifiedRoleEligibilityScheduleRequest-id in: path description: The unique identifier of unifiedRoleEligibilityScheduleRequest required: true style: simple schema: type: string x-ms-docs-key-type: unifiedRoleEligibilityScheduleRequest - name: $select in: query description: Select properties to be returned style: form explode: false schema: uniqueItems: true type: array items: type: string - name: $expand in: query description: Expand related entities style: form explode: false schema: uniqueItems: true type: array items: type: string responses: 2XX: description: Retrieved navigation property content: application/json: schema: $ref: '#/components/schemas/microsoft.graph.appScope' default: $ref: '#/components/responses/error' x-ms-docs-operation-type: operation ? /roleManagement/entitlementManagement/roleEligibilityScheduleRequests/{unifiedRoleEligibilityScheduleRequest-id}/directoryScope : get: tags: - roleManagement.rbacApplication summary: Get directoryScope from roleManagement description: The directory object that is the scope of the role eligibility. Read-only. Supports $expand. operationId: roleManagement.entitlementManagement.roleEligibilityScheduleRequest_GetDirectoryScope parameters: - name: unifiedRoleEligibilityScheduleRequest-id in: path description: The unique identifier of unifiedRoleEligibilityScheduleRequest required: true style: simple schema: type: string x-ms-docs-key-type: unifiedRoleEligibilityScheduleRequest - name: $select in: query description: Select properties to be returned style: form explode: false schema: uniqueItems: true type: array items: type: string - name: $expand in: query description: Expand related entities style: form explode: false schema: uniqueItems: true type: array items: type: string responses: 2XX: description: Retrieved navigation property content: application/json: schema: $ref: '#/components/schemas/microsoft.graph.directoryObject' default: $ref: '#/components/responses/error' x-ms-docs-operation-type: operation ? /roleManagement/entitlementManagement/roleEligibilityScheduleRequests/{unifiedRoleEligibilityScheduleRequest-id}/microsoft.graph.cancel : post: tags: - roleManagement.rbacApplication summary: Invoke action cancel description: Immediately cancel a unifiedRoleEligibilityScheduleRequest object whose status is Granted and have the system automatically delete the cancelled request after 30 days. After calling this action, the status of the cancelled unifiedRoleEligibilityScheduleRequest changes to Revoked. externalDocs: description: Find more info here url: https://learn.microsoft.com/graph/api/unifiedroleeligibilityschedulerequest-cancel?view=graph-rest-1.0 operationId: roleManagement.entitlementManagement.roleEligibilityScheduleRequest_cancel parameters: - name: unifiedRoleEligibilityScheduleRequest-id in: path description: The unique identifier of unifiedRoleEligibilityScheduleRequest required: true style: simple schema: type: string x-ms-docs-key-type: unifiedRoleEligibilityScheduleRequest responses: 2XX: description: Success default: $ref: '#/components/responses/error' x-ms-docs-operation-type: action /roleManagement/entitlementManagement/roleEligibilityScheduleRequests/{unifiedRoleEligibilityScheduleRequest-id}/principal: get: tags: - roleManagement.rbacApplication summary: Get principal from roleManagement description: The principal that's getting a role eligibility through the request. Supports $expand. operationId: roleManagement.entitlementManagement.roleEligibilityScheduleRequest_GetPrincipal parameters: - name: unifiedRoleEligibilityScheduleRequest-id in: path description: The unique identifier of unifiedRoleEligibilityScheduleRequest required: true style: simple schema: type: string x-ms-docs-key-type: unifiedRoleEligibilityScheduleRequest - name: $select in: query description: Select properties to be returned style: form explode: false schema: uniqueItems: true type: array items: type: string - name: $expand in: query description: Expand related entities style: form explode: false schema: uniqueItems: true type: array items: type: string responses: 2XX: description: Retrieved navigation property content: application/json: schema: $ref: '#/components/schemas/microsoft.graph.directoryObject' default: $ref: '#/components/responses/error' x-ms-docs-operation-type: operation ? /roleManagement/entitlementManagement/roleEligibilityScheduleRequests/{unifiedRoleEligibilityScheduleRequest-id}/roleDefinition : get: tags: - roleManagement.rbacApplication summary: Get roleDefinition from roleManagement description: Detailed information for the unifiedRoleDefinition object that is referenced through the roleDefinitionId property. Supports $expand. operationId: roleManagement.entitlementManagement.roleEligibilityScheduleRequest_GetRoleDefinition parameters: - name: unifiedRoleEligibilityScheduleRequest-id in: path description: The unique identifier of unifiedRoleEligibilityScheduleRequest required: true style: simple schema: type: string x-ms-docs-key-type: unifiedRoleEligibilityScheduleRequest - name: $select in: query description: Select properties to be returned style: form explode: false schema: uniqueItems: true type: array items: type: string - name: $expand in: query description: Expand related entities style: form explode: false schema: uniqueItems: true type: array items: type: string responses: 2XX: description: Retrieved navigation property content: application/json: schema: $ref: '#/components/schemas/microsoft.graph.unifiedRoleDefinition' default: $ref: '#/components/responses/error' x-ms-docs-operation-type: operation ? /roleManagement/entitlementManagement/roleEligibilityScheduleRequests/{unifiedRoleEligibilityScheduleRequest-id}/targetSchedule : get: tags: - roleManagement.rbacApplication summary: Get targetSchedule from roleManagement description: The schedule for a role eligibility that is referenced through the targetScheduleId property. Supports $expand. operationId: roleManagement.entitlementManagement.roleEligibilityScheduleRequest_GetTargetSchedule parameters: - name: unifiedRoleEligibilityScheduleRequest-id in: path description: The unique identifier of unifiedRoleEligibilityScheduleRequest required: true style: simple schema: type: string x-ms-docs-key-type: unifiedRoleEligibilityScheduleRequest - name: $select in: query description: Select properties to be returned style: form explode: false schema: uniqueItems: true type: array items: type: string - name: $expand in: query description: Expand related entities style: form explode: false schema: uniqueItems: true type: array items: type: string responses: 2XX: description: Retrieved navigation property content: application/json: schema: $ref: '#/components/schemas/microsoft.graph.unifiedRoleEligibilitySchedule' default: $ref: '#/components/responses/error' x-ms-docs-operation-type: operation /roleManagement/entitlementManagement/roleEligibilityScheduleRequests/$count: get: tags: - roleManagement.rbacApplication summary: Get the number of the resource operationId: roleManagement.entitlementManagement.roleEligibilityScheduleRequest_GetCount parameters: - $ref: '#/components/parameters/search' - $ref: '#/components/parameters/filter' responses: 2XX: $ref: '#/components/responses/ODataCountResponse' default: $ref: '#/components/responses/error' /roleManagement/entitlementManagement/roleEligibilityScheduleRequests/microsoft.graph.filterByCurrentUser(on='{on}'): get: tags: - roleManagement.rbacApplication summary: Invoke function filterByCurrentUser description: In PIM, retrieve the requests for role eligibilities for a particular principal. The principal can be the creator or approver of the unifiedRoleEligibilityScheduleRequest object, or they can be the target of the role eligibility. externalDocs: description: Find more info here url: https://learn.microsoft.com/graph/api/unifiedroleeligibilityschedulerequest-filterbycurrentuser?view=graph-rest-1.0 operationId: roleManagement.entitlementManagement.roleEligibilityScheduleRequest_filterGraphBPreCurrentUser parameters: - name: true in: path description: 'Usage: on=''{on}''' required: true style: simple schema: $ref: '#/components/schemas/microsoft.graph.roleEligibilityScheduleRequestFilterByCurrentUserOptions' - $ref: '#/components/parameters/top' - $ref: '#/components/parameters/skip' - $ref: '#/components/parameters/search' - $ref: '#/components/parameters/filter' - $ref: '#/components/parameters/count' - name: $select in: query description: Select properties to be returned style: form explode: false schema: uniqueItems: true type: array items: type: string - name: $orderby in: query description: Order items by property values style: form explode: false schema: uniqueItems: true type: array items: type: string - name: $expand in: query description: Expand related entities style: form explode: false schema: uniqueItems: true type: array items: type: string responses: 2XX: description: Success content: application/json: schema: title: Collection of unifiedRoleEligibilityScheduleRequest type: object properties: value: type: array items: $ref: '#/components/schemas/microsoft.graph.unifiedRoleEligibilityScheduleRequest' '@odata.nextLink': type: - string - 'null' additionalProperties: type: object default: $ref: '#/components/responses/error' x-ms-docs-operation-type: function x-ms-pageable: nextLinkName: '@odata.nextLink' operationName: listMore /roleManagement/entitlementManagement/roleEligibilitySchedules: get: tags: - roleManagement.rbacApplication summary: Get roleEligibilitySchedules from roleManagement description: Schedules for role eligibility operations. operationId: roleManagement.entitlementManagement_ListRoleEligibilitySchedule parameters: - $ref: '#/components/parameters/top' - $ref: '#/components/parameters/skip' - $ref: '#/components/parameters/search' - $ref: '#/components/parameters/filter' - $ref: '#/components/parameters/count' - name: $orderby in: query description: Order items by property values style: form explode: false schema: uniqueItems: true type: array items: type: string - name: $select in: query description: Select properties to be returned style: form explode: false schema: uniqueItems: true type: array items: type: string - name: $expand in: query description: Expand related entities style: form explode: false schema: uniqueItems: true type: array items: type: string responses: 2XX: $ref: '#/components/responses/microsoft.graph.unifiedRoleEligibilityScheduleCollectionResponse' default: $ref: '#/components/responses/error' x-ms-pageable: nextLinkName: '@odata.nextLink' operationName: listMore x-ms-docs-operation-type: operation post: tags: - roleManagement.rbacApplication summary: Create new navigation property to roleEligibilitySchedules for roleManagement operationId: roleManagement.entitlementManagement_CreateRoleEligibilitySchedule requestBody: description: New navigation property content: application/json: schema: $ref: '#/components/schemas/microsoft.graph.unifiedRoleEligibilitySchedule' required: true responses: 2XX: description: Created navigation property. content: application/json: schema: $ref: '#/components/schemas/microsoft.graph.unifiedRoleEligibilitySchedule' default: $ref: '#/components/responses/error' x-ms-docs-operation-type: operation /roleManagement/entitlementManagement/roleEligibilitySchedules/{unifiedRoleEligibilitySchedule-id}: get: tags: - roleManagement.rbacApplication summary: Get roleEligibilitySchedules from roleManagement description: Schedules for role eligibility operations. operationId: roleManagement.entitlementManagement_GetRoleEligibilitySchedule parameters: - name: unifiedRoleEligibilitySchedule-id in: path description: The unique identifier of unifiedRoleEligibilitySchedule required: true style: simple schema: type: string x-ms-docs-key-type: unifiedRoleEligibilitySchedule - name: $select in: query description: Select properties to be returned style: form explode: false schema: uniqueItems: true type: array items: type: string - name: $expand in: query description: Expand related entities style: form explode: false schema: uniqueItems: true type: array items: type: string responses: 2XX: description: Retrieved navigation property content: application/json: schema: $ref: '#/components/schemas/microsoft.graph.unifiedRoleEligibilitySchedule' default: $ref: '#/components/responses/error' x-ms-docs-operation-type: operation patch: tags: - roleManagement.rbacApplication summary: Update the navigation property roleEligibilitySchedules in roleManagement operationId: roleManagement.entitlementManagement_UpdateRoleEligibilitySchedule parameters: - name: unifiedRoleEligibilitySchedule-id in: path description: The unique identifier of unifiedRoleEligibilitySchedule required: true style: simple schema: type: string x-ms-docs-key-type: unifiedRoleEligibilitySchedule requestBody: description: New navigation property values content: application/json: schema: $ref: '#/components/schemas/microsoft.graph.unifiedRoleEligibilitySchedule' required: true responses: 2XX: description: Success content: application/json: schema: $ref: '#/components/schemas/microsoft.graph.unifiedRoleEligibilitySchedule' default: $ref: '#/components/responses/error' x-ms-docs-operation-type: operation delete: tags: - roleManagement.rbacApplication summary: Delete navigation property roleEligibilitySchedules for roleManagement operationId: roleManagement.entitlementManagement_DeleteRoleEligibilitySchedule parameters: - name: unifiedRoleEligibilitySchedule-id in: path description: The unique identifier of unifiedRoleEligibilitySchedule required: true style: simple schema: type: string x-ms-docs-key-type: unifiedRoleEligibilitySchedule - name: If-Match in: header description: ETag style: simple schema: type: string responses: 2XX: description: Success default: $ref: '#/components/responses/error' x-ms-docs-operation-type: operation /roleManagement/entitlementManagement/roleEligibilitySchedules/{unifiedRoleEligibilitySchedule-id}/appScope: get: tags: - roleManagement.rbacApplication summary: Get appScope from roleManagement description: Read-only property with details of the app-specific scope when the role eligibility or assignment is scoped to an app. Nullable. operationId: roleManagement.entitlementManagement.roleEligibilitySchedule_GetAppScope parameters: - name: unifiedRoleEligibilitySchedule-id in: path description: The unique identifier of unifiedRoleEligibilitySchedule required: true style: simple schema: type: string x-ms-docs-key-type: unifiedRoleEligibilitySchedule - name: $select in: query description: Select properties to be returned style: form explode: false schema: uniqueItems: true type: array items: type: string - name: $expand in: query description: Expand related entities style: form explode: false schema: uniqueItems: true type: array items: type: string responses: 2XX: description: Retrieved navigation property content: application/json: schema: $ref: '#/components/schemas/microsoft.graph.appScope' default: $ref: '#/components/responses/error' x-ms-docs-operation-type: operation /roleManagement/entitlementManagement/roleEligibilitySchedules/{unifiedRoleEligibilitySchedule-id}/directoryScope: get: tags: - roleManagement.rbacApplication summary: Get directoryScope from roleManagement description: The directory object that is the scope of the role eligibility or assignment. Read-only. operationId: roleManagement.entitlementManagement.roleEligibilitySchedule_GetDirectoryScope parameters: - name: unifiedRoleEligibilitySchedule-id in: path description: The unique identifier of unifiedRoleEligibilitySchedule required: true style: simple schema: type: string x-ms-docs-key-type: unifiedRoleEligibilitySchedule - name: $select in: query description: Select properties to be returned style: form explode: false schema: uniqueItems: true type: array items: type: string - name: $expand in: query description: Expand related entities style: form explode: false schema: uniqueItems: true type: array items: type: string responses: 2XX: description: Retrieved navigation property content: application/json: schema: $ref: '#/components/schemas/microsoft.graph.directoryObject' default: $ref: '#/components/responses/error' x-ms-docs-operation-type: operation /roleManagement/entitlementManagement/roleEligibilitySchedules/{unifiedRoleEligibilitySchedule-id}/principal: get: tags: - roleManagement.rbacApplication summary: Get principal from roleManagement description: The principal that's getting a role assignment or that's eligible for a role through the request. operationId: roleManagement.entitlementManagement.roleEligibilitySchedule_GetPrincipal parameters: - name: unifiedRoleEligibilitySchedule-id in: path description: The unique identifier of unifiedRoleEligibilitySchedule required: true style: simple schema: type: string x-ms-docs-key-type: unifiedRoleEligibilitySchedule - name: $select in: query description: Select properties to be returned style: form explode: false schema: uniqueItems: true type: array items: type: string - name: $expand in: query description: Expand related entities style: form explode: false schema: uniqueItems: true type: array items: type: string responses: 2XX: description: Retrieved navigation property content: application/json: schema: $ref: '#/components/schemas/microsoft.graph.directoryObject' default: $ref: '#/components/responses/error' x-ms-docs-operation-type: operation /roleManagement/entitlementManagement/roleEligibilitySchedules/{unifiedRoleEligibilitySchedule-id}/roleDefinition: get: tags: - roleManagement.rbacApplication summary: Get roleDefinition from roleManagement description: Detailed information for the roleDefinition object that is referenced through the roleDefinitionId property. operationId: roleManagement.entitlementManagement.roleEligibilitySchedule_GetRoleDefinition parameters: - name: unifiedRoleEligibilitySchedule-id in: path description: The unique identifier of unifiedRoleEligibilitySchedule required: true style: simple schema: type: string x-ms-docs-key-type: unifiedRoleEligibilitySchedule - name: $select in: query description: Select properties to be returned style: form explode: false schema: uniqueItems: true type: array items: type: string - name: $expand in: query description: Expand related entities style: form explode: false schema: uniqueItems: true type: array items: type: string responses: 2XX: description: Retrieved navigation property content: application/json: schema: $ref: '#/components/schemas/microsoft.graph.unifiedRoleDefinition' default: $ref: '#/components/responses/error' x-ms-docs-operation-type: operation /roleManagement/entitlementManagement/roleEligibilitySchedules/$count: get: tags: - roleManagement.rbacApplication summary: Get the number of the resource operationId: roleManagement.entitlementManagement.roleEligibilitySchedule_GetCount parameters: - $ref: '#/components/parameters/search' - $ref: '#/components/parameters/filter' responses: 2XX: $ref: '#/components/responses/ODataCountResponse' default: $ref: '#/components/responses/error' /roleManagement/entitlementManagement/roleEligibilitySchedules/microsoft.graph.filterByCurrentUser(on='{on}'): get: tags: - roleManagement.rbacApplication summary: Invoke function filterByCurrentUser description: Retrieve the schedules for role eligibilities for which the signed-in user is the principal. externalDocs: description: Find more info here url: https://learn.microsoft.com/graph/api/unifiedroleeligibilityschedule-filterbycurrentuser?view=graph-rest-1.0 operationId: roleManagement.entitlementManagement.roleEligibilitySchedule_filterGraphBPreCurrentUser parameters: - name: true in: path description: 'Usage: on=''{on}''' required: true style: simple schema: $ref: '#/components/schemas/microsoft.graph.roleEligibilityScheduleFilterByCurrentUserOptions' - $ref: '#/components/parameters/top' - $ref: '#/components/parameters/skip' - $ref: '#/components/parameters/search' - $ref: '#/components/parameters/filter' - $ref: '#/components/parameters/count' - name: $select in: query description: Select properties to be returned style: form explode: false schema: uniqueItems: true type: array items: type: string - name: $orderby in: query description: Order items by property values style: form explode: false schema: uniqueItems: true type: array items: type: string - name: $expand in: query description: Expand related entities style: form explode: false schema: uniqueItems: true type: array items: type: string responses: 2XX: description: Success content: application/json: schema: title: Collection of unifiedRoleEligibilitySchedule type: object properties: value: type: array items: $ref: '#/components/schemas/microsoft.graph.unifiedRoleEligibilitySchedule' '@odata.nextLink': type: - string - 'null' additionalProperties: type: object default: $ref: '#/components/responses/error' x-ms-docs-operation-type: function x-ms-pageable: nextLinkName: '@odata.nextLink' operationName: listMore components: schemas: microsoft.graph.expirationPatternType: title: expirationPatternType enum: - notSpecified - noExpiration - afterDateTime - afterDuration type: string microsoft.graph.unifiedRoleScheduleInstanceBase: allOf: - $ref: '#/components/schemas/microsoft.graph.entity' - title: unifiedRoleScheduleInstanceBase type: object properties: appScopeId: type: - string - 'null' description: Identifier of the app-specific scope when the assignment or role eligibility is scoped to an app. The scope of an assignment or role eligibility determines the set of resources for which the principal has been granted access. App scopes are scopes that are defined and understood by this application only. Use / for tenant-wide app scopes. Use directoryScopeId to limit the scope to particular directory objects, for example, administrative units. directoryScopeId: type: - string - 'null' description: Identifier of the directory object representing the scope of the assignment or role eligibility. The scope of an assignment or role eligibility determines the set of resources for which the principal has been granted access. Directory scopes are shared scopes stored in the directory that are understood by multiple applications. Use / for tenant-wide scope. Use appScopeId to limit the scope to an application only. principalId: type: - string - 'null' description: Identifier of the principal that has been granted the role assignment or that's eligible for a role. roleDefinitionId: type: - string - 'null' description: Identifier of the unifiedRoleDefinition object that is being assigned to the principal or that the principal is eligible for. appScope: $ref: '#/components/schemas/microsoft.graph.appScope' directoryScope: $ref: '#/components/schemas/microsoft.graph.directoryObject' principal: $ref: '#/components/schemas/microsoft.graph.directoryObject' roleDefinition: $ref: '#/components/schemas/microsoft.graph.unifiedRoleDefinition' additionalProperties: type: object microsoft.graph.unifiedRoleScheduleRequestActions: title: unifiedRoleScheduleRequestActions enum: - adminAssign - adminUpdate - adminRemove - selfActivate - selfDeactivate - adminExtend - adminRenew - selfExtend - selfRenew - unknownFutureValue type: string microsoft.graph.unifiedRoleEligibilityScheduleInstance: allOf: - $ref: '#/components/schemas/microsoft.graph.unifiedRoleScheduleInstanceBase' - title: unifiedRoleEligibilityScheduleInstance type: object properties: endDateTime: pattern: ^[0-9]{4,}-(0[1-9]|1[012])-(0[1-9]|[12][0-9]|3[01])T([01][0-9]|2[0-3]):[0-5][0-9]:[0-5][0-9]([.][0-9]{1,12})?(Z|[+-][0-9][0-9]:[0-9][0-9])$ type: - string - 'null' description: The end date of the schedule instance. format: date-time memberType: type: - string - 'null' description: How the role eligibility is inherited. It can either be Inherited, Direct, or Group. It can further imply whether the unifiedRoleEligibilitySchedule can be managed by the caller. Supports $filter (eq, ne). roleEligibilityScheduleId: type: - string - 'null' description: The identifier of the unifiedRoleEligibilitySchedule object from which this instance was created. Supports $filter (eq, ne). startDateTime: pattern: ^[0-9]{4,}-(0[1-9]|1[012])-(0[1-9]|[12][0-9]|3[01])T([01][0-9]|2[0-3]):[0-5][0-9]:[0-5][0-9]([.][0-9]{1,12})?(Z|[+-][0-9][0-9]:[0-9][0-9])$ type: - string - 'null' description: When this instance starts. format: date-time additionalProperties: type: object microsoft.graph.ODataErrors.ODataError: required: - error type: object properties: error: $ref: '#/components/schemas/microsoft.graph.ODataErrors.MainError' additionalProperties: type: object microsoft.graph.roleEligibilityScheduleFilterByCurrentUserOptions: title: roleEligibilityScheduleFilterByCurrentUserOptions enum: - principal - unknownFutureValue type: string microsoft.graph.expirationPattern: title: expirationPattern type: object properties: duration: pattern: ^-?P([0-9]+D)?(T([0-9]+H)?([0-9]+M)?([0-9]+([.][0-9]+)?S)?)?$ type: - string - 'null' description: The requestor's desired duration of access represented in ISO 8601 format for durations. For example, PT3H refers to three hours. If specified in a request, endDateTime should not be present and the type property should be set to afterDuration. format: duration endDateTime: pattern: ^[0-9]{4,}-(0[1-9]|1[012])-(0[1-9]|[12][0-9]|3[01])T([01][0-9]|2[0-3]):[0-5][0-9]:[0-5][0-9]([.][0-9]{1,12})?(Z|[+-][0-9][0-9]:[0-9][0-9])$ type: - string - 'null' description: Timestamp of date and time information using ISO 8601 format and is always in UTC time. For example, midnight UTC on Jan 1, 2014 is 2014-01-01T00:00:00Z. format: date-time type: $ref: '#/components/schemas/microsoft.graph.expirationPatternType' additionalProperties: type: object microsoft.graph.unifiedRoleEligibilitySchedule: allOf: - $ref: '#/components/schemas/microsoft.graph.unifiedRoleScheduleBase' - title: unifiedRoleEligibilitySchedule type: object properties: memberType: type: - string - 'null' description: How the role eligibility is inherited. It can either be Inherited, Direct, or Group. It can further imply whether the unifiedRoleEligibilitySchedule can be managed by the caller. Supports $filter (eq, ne). scheduleInfo: $ref: '#/components/schemas/microsoft.graph.requestSchedule' additionalProperties: type: object microsoft.graph.unifiedRoleAssignmentScheduleInstance: allOf: - $ref: '#/components/schemas/microsoft.graph.unifiedRoleScheduleInstanceBase' - title: unifiedRoleAssignmentScheduleInstance type: object properties: assignmentType: type: - string - 'null' description: The type of the assignment that can either be Assigned or Activated. Supports $filter (eq, ne). endDateTime: pattern: ^[0-9]{4,}-(0[1-9]|1[012])-(0[1-9]|[12][0-9]|3[01])T([01][0-9]|2[0-3]):[0-5][0-9]:[0-5][0-9]([.][0-9]{1,12})?(Z|[+-][0-9][0-9]:[0-9][0-9])$ type: - string - 'null' description: The end date of the schedule instance. format: date-time memberType: type: - string - 'null' description: How the assignment is inherited. It can either be Inherited, Direct, or Group. It can further imply whether the unifiedRoleAssignmentSchedule can be managed by the caller. Supports $filter (eq, ne). roleAssignmentOriginId: type: - string - 'null' description: The identifier of the role assignment in Microsoft Entra. Supports $filter (eq, ne). roleAssignmentScheduleId: type: - string - 'null' description: The identifier of the unifiedRoleAssignmentSchedule object from which this instance was created. Supports $filter (eq, ne). startDateTime: pattern: ^[0-9]{4,}-(0[1-9]|1[012])-(0[1-9]|[12][0-9]|3[01])T([01][0-9]|2[0-3]):[0-5][0-9]:[0-5][0-9]([.][0-9]{1,12})?(Z|[+-][0-9][0-9]:[0-9][0-9])$ type: - string - 'null' description: When this instance starts. format: date-time activatedUsing: $ref: '#/components/schemas/microsoft.graph.unifiedRoleEligibilityScheduleInstance' additionalProperties: type: object microsoft.graph.request: allOf: - $ref: '#/components/schemas/microsoft.graph.entity' - title: request type: object properties: approvalId: type: - string - 'null' description: The identifier of the approval of the request. completedDateTime: pattern: ^[0-9]{4,}-(0[1-9]|1[012])-(0[1-9]|[12][0-9]|3[01])T([01][0-9]|2[0-3]):[0-5][0-9]:[0-5][0-9]([.][0-9]{1,12})?(Z|[+-][0-9][0-9]:[0-9][0-9])$ type: - string - 'null' description: The request completion date time. format: date-time createdBy: $ref: '#/components/schemas/microsoft.graph.identitySet' createdDateTime: pattern: ^[0-9]{4,}-(0[1-9]|1[012])-(0[1-9]|[12][0-9]|3[01])T([01][0-9]|2[0-3]):[0-5][0-9]:[0-5][0-9]([.][0-9]{1,12})?(Z|[+-][0-9][0-9]:[0-9][0-9])$ type: - string - 'null' description: The request creation date time. format: date-time customData: type: - string - 'null' description: Free text field to define any custom data for the request. Not used. status: type: string description: 'The status of the request. Not nullable. The possible values are: Canceled, Denied, Failed, Granted, PendingAdminDecision, PendingApproval, PendingProvisioning, PendingScheduleCreation, Provisioned, Revoked, and ScheduleCreated. Not nullable.' additionalProperties: type: object microsoft.graph.unifiedRoleAssignmentCollectionResponse: title: Collection of unifiedRoleAssignment type: object properties: value: type: array items: $ref: '#/components/schemas/microsoft.graph.unifiedRoleAssignment' '@odata.nextLink': type: - string - 'null' additionalProperties: type: object microsoft.graph.recurrencePattern: title: recurrencePattern type: object properties: dayOfMonth: maximum: 2147483647 minimum: -2147483648 type: number description: The day of the month on which the event occurs. Required if type is absoluteMonthly or absoluteYearly. format: int32 daysOfWeek: type: array items: $ref: '#/components/schemas/microsoft.graph.dayOfWeek' description: 'A collection of the days of the week on which the event occurs. The possible values are: sunday, monday, tuesday, wednesday, thursday, friday, saturday. If type is relativeMonthly or relativeYearly, and daysOfWeek specifies more than one day, the event falls on the first day that satisfies the pattern. Required if type is weekly, relativeMonthly, or relativeYearly.' firstDayOfWeek: $ref: '#/components/schemas/microsoft.graph.dayOfWeek' index: $ref: '#/components/schemas/microsoft.graph.weekIndex' interval: maximum: 2147483647 minimum: -2147483648 type: number description: The number of units between occurrences, where units can be in days, weeks, months, or years, depending on the type. Required. format: int32 month: maximum: 2147483647 minimum: -2147483648 type: number description: The month in which the event occurs. This is a number from 1 to 12. format: int32 type: $ref: '#/components/schemas/microsoft.graph.recurrencePatternType' additionalProperties: type: object microsoft.graph.roleAssignmentScheduleInstanceFilterByCurrentUserOptions: title: roleAssignmentScheduleInstanceFilterByCurrentUserOptions enum: - principal - unknownFutureValue type: string microsoft.graph.identitySet: title: identitySet type: object properties: application: $ref: '#/components/schemas/microsoft.graph.identity' device: $ref: '#/components/schemas/microsoft.graph.identity' user: $ref: '#/components/schemas/microsoft.graph.identity' additionalProperties: type: object microsoft.graph.unifiedRoleScheduleBase: allOf: - $ref: '#/components/schemas/microsoft.graph.entity' - title: unifiedRoleScheduleBase type: object properties: appScopeId: type: - string - 'null' description: Identifier of the app-specific scope when the assignment or eligibility is scoped to an app. The scope of an assignment or eligibility determines the set of resources for which the principal has been granted access. App scopes are scopes that are defined and understood by this application only. Use / for tenant-wide app scopes. Use directoryScopeId to limit the scope to particular directory objects, for example, administrative units. createdDateTime: pattern: ^[0-9]{4,}-(0[1-9]|1[012])-(0[1-9]|[12][0-9]|3[01])T([01][0-9]|2[0-3]):[0-5][0-9]:[0-5][0-9]([.][0-9]{1,12})?(Z|[+-][0-9][0-9]:[0-9][0-9])$ type: - string - 'null' description: When the schedule was created. format: date-time createdUsing: type: - string - 'null' description: Identifier of the object through which this schedule was created. directoryScopeId: type: - string - 'null' description: Identifier of the directory object representing the scope of the assignment or eligibility. The scope of an assignment or eligibility determines the set of resources for which the principal has been granted access. Directory scopes are shared scopes stored in the directory that are understood by multiple applications. Use / for tenant-wide scope. Use appScopeId to limit the scope to an application only. modifiedDateTime: pattern: ^[0-9]{4,}-(0[1-9]|1[012])-(0[1-9]|[12][0-9]|3[01])T([01][0-9]|2[0-3]):[0-5][0-9]:[0-5][0-9]([.][0-9]{1,12})?(Z|[+-][0-9][0-9]:[0-9][0-9])$ type: - string - 'null' description: When the schedule was last modified. format: date-time principalId: type: - string - 'null' description: Identifier of the principal that has been granted the role assignment or eligibility. roleDefinitionId: type: - string - 'null' description: Identifier of the unifiedRoleDefinition object that is being assigned to the principal or that a principal is eligible for. status: type: - string - 'null' description: The status of the role assignment or eligibility request. appScope: $ref: '#/components/schemas/microsoft.graph.appScope' directoryScope: $ref: '#/components/schemas/microsoft.graph.directoryObject' principal: $ref: '#/components/schemas/microsoft.graph.directoryObject' roleDefinition: $ref: '#/components/schemas/microsoft.graph.unifiedRoleDefinition' additionalProperties: type: object microsoft.graph.unifiedRoleDefinition: allOf: - $ref: '#/components/schemas/microsoft.graph.entity' - title: unifiedRoleDefinition type: object properties: description: type: - string - 'null' description: The description for the unifiedRoleDefinition. Read-only when isBuiltIn is true. displayName: type: - string - 'null' description: The display name for the unifiedRoleDefinition. Read-only when isBuiltIn is true. Required. Supports $filter (eq, in). isBuiltIn: type: - boolean - 'null' description: Flag indicating whether the role definition is part of the default set included in Microsoft Entra or a custom definition. Read-only. Supports $filter (eq, in). isEnabled: type: - boolean - 'null' description: Flag indicating whether the role is enabled for assignment. If false the role is not available for assignment. Read-only when isBuiltIn is true. resourceScopes: type: array items: type: string description: List of the scopes or permissions the role definition applies to. Currently only / is supported. Read-only when isBuiltIn is true. DO NOT USE. This will be deprecated soon. Attach scope to role assignment. rolePermissions: type: array items: $ref: '#/components/schemas/microsoft.graph.unifiedRolePermission' description: List of permissions included in the role. Read-only when isBuiltIn is true. Required. templateId: type: - string - 'null' description: Custom template identifier that can be set when isBuiltIn is false but is read-only when isBuiltIn is true. This identifier is typically used if one needs an identifier to be the same across different directories. version: type: - string - 'null' description: Indicates version of the role definition. Read-only when isBuiltIn is true. inheritsPermissionsFrom: type: array items: $ref: '#/components/schemas/microsoft.graph.unifiedRoleDefinition' description: Read-only collection of role definitions that the given role definition inherits from. Only Microsoft Entra built-in roles (isBuiltIn is true) support this attribute. Supports $expand. x-ms-navigationProperty: true additionalProperties: type: object microsoft.graph.ODataErrors.InnerError: type: object additionalProperties: type: object description: The structure of this object is service-specific microsoft.graph.roleAssignmentScheduleRequestFilterByCurrentUserOptions: title: roleAssignmentScheduleRequestFilterByCurrentUserOptions enum: - principal - createdBy - approver - unknownFutureValue type: string microsoft.graph.unifiedRoleEligibilityScheduleRequest: allOf: - $ref: '#/components/schemas/microsoft.graph.request' - title: unifiedRoleEligibilityScheduleRequest type: object properties: action: $ref: '#/components/schemas/microsoft.graph.unifiedRoleScheduleRequestActions' appScopeId: type: - string - 'null' description: Identifier of the app-specific scope when the role eligibility is scoped to an app. The scope of a role eligibility determines the set of resources for which the principal is eligible to access. App scopes are scopes that are defined and understood by this application only. Use / for tenant-wide app scopes. Use directoryScopeId to limit the scope to particular directory objects, for example, administrative units. Supports $filter (eq, ne, and on null values). directoryScopeId: type: - string - 'null' description: Identifier of the directory object representing the scope of the role eligibility. The scope of a role eligibility determines the set of resources for which the principal has been granted access. Directory scopes are shared scopes stored in the directory that are understood by multiple applications. Use / for tenant-wide scope. Use appScopeId to limit the scope to an application only. Supports $filter (eq, ne, and on null values). isValidationOnly: type: - boolean - 'null' description: Determines whether the call is a validation or an actual call. Only set this property if you want to check whether an activation is subject to additional rules like MFA before actually submitting the request. justification: type: - string - 'null' description: A message provided by users and administrators when create they create the unifiedRoleEligibilityScheduleRequest object. principalId: type: - string - 'null' description: Identifier of the principal that has been granted the role eligibility. Can be a user or a role-assignable group. You can grant only active assignments service principals.Supports $filter (eq, ne). roleDefinitionId: type: - string - 'null' description: Identifier of the unifiedRoleDefinition object that is being assigned to the principal. Supports $filter (eq, ne). scheduleInfo: $ref: '#/components/schemas/microsoft.graph.requestSchedule' targetScheduleId: type: - string - 'null' description: Identifier of the schedule object that's linked to the eligibility request. Supports $filter (eq, ne). ticketInfo: $ref: '#/components/schemas/microsoft.graph.ticketInfo' appScope: $ref: '#/components/schemas/microsoft.graph.appScope' directoryScope: $ref: '#/components/schemas/microsoft.graph.directoryObject' principal: $ref: '#/components/schemas/microsoft.graph.directoryObject' roleDefinition: $ref: '#/components/schemas/microsoft.graph.unifiedRoleDefinition' targetSchedule: $ref: '#/components/schemas/microsoft.graph.unifiedRoleEligibilitySchedule' additionalProperties: type: object microsoft.graph.directoryObject: allOf: - $ref: '#/components/schemas/microsoft.graph.entity' - title: directoryObject type: object properties: deletedDateTime: pattern: ^[0-9]{4,}-(0[1-9]|1[012])-(0[1-9]|[12][0-9]|3[01])T([01][0-9]|2[0-3]):[0-5][0-9]:[0-5][0-9]([.][0-9]{1,12})?(Z|[+-][0-9][0-9]:[0-9][0-9])$ type: - string - 'null' description: Date and time when this object was deleted. Always null when the object hasn't been deleted. format: date-time additionalProperties: type: object microsoft.graph.weekIndex: title: weekIndex enum: - first - second - third - fourth - last type: string microsoft.graph.roleEligibilityScheduleInstanceFilterByCurrentUserOptions: title: roleEligibilityScheduleInstanceFilterByCurrentUserOptions enum: - principal - unknownFutureValue type: string microsoft.graph.unifiedRoleAssignmentScheduleCollectionResponse: title: Collection of unifiedRoleAssignmentSchedule type: object properties: value: type: array items: $ref: '#/components/schemas/microsoft.graph.unifiedRoleAssignmentSchedule' '@odata.nextLink': type: - string - 'null' additionalProperties: type: object microsoft.graph.unifiedRoleAssignmentScheduleRequestCollectionResponse: title: Collection of unifiedRoleAssignmentScheduleRequest type: object properties: value: type: array items: $ref: '#/components/schemas/microsoft.graph.unifiedRoleAssignmentScheduleRequest' '@odata.nextLink': type: - string - 'null' additionalProperties: type: object microsoft.graph.requestSchedule: title: requestSchedule type: object properties: expiration: $ref: '#/components/schemas/microsoft.graph.expirationPattern' recurrence: $ref: '#/components/schemas/microsoft.graph.patternedRecurrence' startDateTime: pattern: ^[0-9]{4,}-(0[1-9]|1[012])-(0[1-9]|[12][0-9]|3[01])T([01][0-9]|2[0-3]):[0-5][0-9]:[0-5][0-9]([.][0-9]{1,12})?(Z|[+-][0-9][0-9]:[0-9][0-9])$ type: - string - 'null' description: When the eligible or active assignment becomes active. format: date-time additionalProperties: type: object microsoft.graph.unifiedRoleAssignment: allOf: - $ref: '#/components/schemas/microsoft.graph.entity' - title: unifiedRoleAssignment type: object properties: appScopeId: type: - string - 'null' description: Identifier of the app specific scope when the assignment scope is app specific. The scope of an assignment determines the set of resources for which the principal has been granted access. App scopes are scopes that are defined and understood by a resource application only. For the entitlement management provider, use this property to specify a catalog. For example, /AccessPackageCatalog/beedadfe-01d5-4025-910b-84abb9369997. Supports $filter (eq, in). For example, /roleManagement/entitlementManagement/roleAssignments?$filter=appScopeId eq '/AccessPackageCatalog/{catalog id}'. condition: type: - string - 'null' directoryScopeId: type: - string - 'null' description: Identifier of the directory object representing the scope of the assignment. The scope of an assignment determines the set of resources for which the principal has been granted access. Directory scopes are shared scopes stored in the directory that are understood by multiple applications, unlike app scopes that are defined and understood by a resource application only. Supports $filter (eq, in). principalId: type: - string - 'null' description: Identifier of the principal to which the assignment is granted. Supported principals are users, role-assignable groups, and service principals. Supports $filter (eq, in). principalOrganizationId: type: - string - 'null' roleDefinitionId: type: - string - 'null' description: Identifier of the unifiedRoleDefinition the assignment is for. Read-only. Supports $filter (eq, in). appScope: $ref: '#/components/schemas/microsoft.graph.appScope' directoryScope: $ref: '#/components/schemas/microsoft.graph.directoryObject' principal: $ref: '#/components/schemas/microsoft.graph.directoryObject' roleDefinition: $ref: '#/components/schemas/microsoft.graph.unifiedRoleDefinition' additionalProperties: type: object microsoft.graph.unifiedRoleAssignmentSchedule: allOf: - $ref: '#/components/schemas/microsoft.graph.unifiedRoleScheduleBase' - title: unifiedRoleAssignmentSchedule type: object properties: assignmentType: type: - string - 'null' description: The type of the assignment that can either be Assigned or Activated. Supports $filter (eq, ne). memberType: type: - string - 'null' description: How the assignment is inherited. It can either be Inherited, Direct, or Group. It can further imply whether the unifiedRoleAssignmentSchedule can be managed by the caller. Supports $filter (eq, ne). scheduleInfo: $ref: '#/components/schemas/microsoft.graph.requestSchedule' activatedUsing: $ref: '#/components/schemas/microsoft.graph.unifiedRoleEligibilitySchedule' additionalProperties: type: object microsoft.graph.identity: title: identity type: object properties: displayName: type: - string - 'null' description: The display name of the identity.For drive items, the display name might not always be available or up to date. For example, if a user changes their display name the API might show the new value in a future response, but the items associated with the user don't show up as changed when using delta. id: type: - string - 'null' description: Unique identifier for the identity or actor. For example, in the access reviews decisions API, this property might record the id of the principal, that is, the group, user, or application that's subject to review. additionalProperties: type: object microsoft.graph.ticketInfo: title: ticketInfo type: object properties: ticketNumber: type: - string - 'null' description: The ticket number. ticketSystem: type: - string - 'null' description: The description of the ticket system. additionalProperties: type: object microsoft.graph.unifiedRoleEligibilityScheduleRequestCollectionResponse: title: Collection of unifiedRoleEligibilityScheduleRequest type: object properties: value: type: array items: $ref: '#/components/schemas/microsoft.graph.unifiedRoleEligibilityScheduleRequest' '@odata.nextLink': type: - string - 'null' additionalProperties: type: object microsoft.graph.unifiedRoleAssignmentScheduleInstanceCollectionResponse: title: Collection of unifiedRoleAssignmentScheduleInstance type: object properties: value: type: array items: $ref: '#/components/schemas/microsoft.graph.unifiedRoleAssignmentScheduleInstance' '@odata.nextLink': type: - string - 'null' additionalProperties: type: object microsoft.graph.ODataErrors.ErrorDetails: required: - code - message type: object properties: code: type: string message: type: string target: type: - string - 'null' additionalProperties: type: object microsoft.graph.recurrenceRange: title: recurrenceRange type: object properties: endDate: pattern: ^[0-9]{4,}-(0[1-9]|1[012])-(0[1-9]|[12][0-9]|3[01])$ type: - string - 'null' description: The date to stop applying the recurrence pattern. Depending on the recurrence pattern of the event, the last occurrence of the meeting may not be this date. Required if type is endDate. format: date numberOfOccurrences: maximum: 2147483647 minimum: -2147483648 type: number description: The number of times to repeat the event. Required and must be positive if type is numbered. format: int32 recurrenceTimeZone: type: - string - 'null' description: Time zone for the startDate and endDate properties. Optional. If not specified, the time zone of the event is used. startDate: pattern: ^[0-9]{4,}-(0[1-9]|1[012])-(0[1-9]|[12][0-9]|3[01])$ type: - string - 'null' description: The date to start applying the recurrence pattern. The first occurrence of the meeting may be this date or later, depending on the recurrence pattern of the event. Must be the same value as the start property of the recurring event. Required. format: date type: $ref: '#/components/schemas/microsoft.graph.recurrenceRangeType' additionalProperties: type: object microsoft.graph.unifiedRolePermission: title: unifiedRolePermission type: object properties: allowedResourceActions: type: array items: type: string description: Set of tasks that can be performed on a resource. Required. condition: type: - string - 'null' description: Optional constraints that must be met for the permission to be effective. Not supported for custom roles. excludedResourceActions: type: array items: type: - string - 'null' description: Set of tasks that may not be performed on a resource. Not yet supported. additionalProperties: type: object microsoft.graph.patternedRecurrence: title: patternedRecurrence type: object properties: pattern: $ref: '#/components/schemas/microsoft.graph.recurrencePattern' range: $ref: '#/components/schemas/microsoft.graph.recurrenceRange' additionalProperties: type: object microsoft.graph.unifiedRbacResourceNamespace: allOf: - $ref: '#/components/schemas/microsoft.graph.entity' - title: unifiedRbacResourceNamespace type: object properties: name: type: string resourceActions: type: array items: $ref: '#/components/schemas/microsoft.graph.unifiedRbacResourceAction' x-ms-navigationProperty: true additionalProperties: type: object microsoft.graph.unifiedRbacResourceActionCollectionResponse: title: Collection of unifiedRbacResourceAction type: object properties: value: type: array items: $ref: '#/components/schemas/microsoft.graph.unifiedRbacResourceAction' '@odata.nextLink': type: - string - 'null' additionalProperties: type: object microsoft.graph.dayOfWeek: title: dayOfWeek enum: - sunday - monday - tuesday - wednesday - thursday - friday - saturday type: string microsoft.graph.roleEligibilityScheduleRequestFilterByCurrentUserOptions: title: roleEligibilityScheduleRequestFilterByCurrentUserOptions enum: - principal - createdBy - approver - unknownFutureValue type: string microsoft.graph.unifiedRoleEligibilityScheduleInstanceCollectionResponse: title: Collection of unifiedRoleEligibilityScheduleInstance type: object properties: value: type: array items: $ref: '#/components/schemas/microsoft.graph.unifiedRoleEligibilityScheduleInstance' '@odata.nextLink': type: - string - 'null' additionalProperties: type: object microsoft.graph.unifiedRbacResourceNamespaceCollectionResponse: title: Collection of unifiedRbacResourceNamespace type: object properties: value: type: array items: $ref: '#/components/schemas/microsoft.graph.unifiedRbacResourceNamespace' '@odata.nextLink': type: - string - 'null' additionalProperties: type: object microsoft.graph.unifiedRoleDefinitionCollectionResponse: title: Collection of unifiedRoleDefinition type: object properties: value: type: array items: $ref: '#/components/schemas/microsoft.graph.unifiedRoleDefinition' '@odata.nextLink': type: - string - 'null' additionalProperties: type: object microsoft.graph.unifiedRbacResourceAction: allOf: - $ref: '#/components/schemas/microsoft.graph.entity' - title: unifiedRbacResourceAction type: object properties: actionVerb: type: - string - 'null' authenticationContextId: type: - string - 'null' description: type: - string - 'null' isAuthenticationContextSettable: type: - boolean - 'null' name: type: string resourceScopeId: type: - string - 'null' additionalProperties: type: object microsoft.graph.unifiedRoleAssignmentScheduleRequest: allOf: - $ref: '#/components/schemas/microsoft.graph.request' - title: unifiedRoleAssignmentScheduleRequest type: object properties: action: $ref: '#/components/schemas/microsoft.graph.unifiedRoleScheduleRequestActions' appScopeId: type: - string - 'null' description: Identifier of the app-specific scope when the assignment is scoped to an app. The scope of an assignment determines the set of resources for which the principal has been granted access. App scopes are scopes that are defined and understood by this application only. Use / for tenant-wide app scopes. Use directoryScopeId to limit the scope to particular directory objects, for example, administrative units. Supports $filter (eq, ne, and on null values). directoryScopeId: type: - string - 'null' description: Identifier of the directory object representing the scope of the assignment. The scope of an assignment determines the set of resources for which the principal has been granted access. Directory scopes are shared scopes stored in the directory that are understood by multiple applications. Use / for tenant-wide scope. Use appScopeId to limit the scope to an application only. Supports $filter (eq, ne, and on null values). isValidationOnly: type: - boolean - 'null' description: Determines whether the call is a validation or an actual call. Only set this property if you want to check whether an activation is subject to additional rules like MFA before actually submitting the request. justification: type: - string - 'null' description: A message provided by users and administrators when create they create the unifiedRoleAssignmentScheduleRequest object. principalId: type: - string - 'null' description: Identifier of the principal that has been granted the assignment. Can be a user, role-assignable group, or a service principal. Supports $filter (eq, ne). roleDefinitionId: type: - string - 'null' description: Identifier of the unifiedRoleDefinition object that is being assigned to the principal. Supports $filter (eq, ne). scheduleInfo: $ref: '#/components/schemas/microsoft.graph.requestSchedule' targetScheduleId: type: - string - 'null' description: Identifier of the schedule object that's linked to the assignment request. Supports $filter (eq, ne). ticketInfo: $ref: '#/components/schemas/microsoft.graph.ticketInfo' activatedUsing: $ref: '#/components/schemas/microsoft.graph.unifiedRoleEligibilitySchedule' appScope: $ref: '#/components/schemas/microsoft.graph.appScope' directoryScope: $ref: '#/components/schemas/microsoft.graph.directoryObject' principal: $ref: '#/components/schemas/microsoft.graph.directoryObject' roleDefinition: $ref: '#/components/schemas/microsoft.graph.unifiedRoleDefinition' targetSchedule: $ref: '#/components/schemas/microsoft.graph.unifiedRoleAssignmentSchedule' additionalProperties: type: object microsoft.graph.rbacApplication: allOf: - $ref: '#/components/schemas/microsoft.graph.entity' - title: rbacApplication type: object properties: resourceNamespaces: type: array items: $ref: '#/components/schemas/microsoft.graph.unifiedRbacResourceNamespace' x-ms-navigationProperty: true roleAssignments: type: array items: $ref: '#/components/schemas/microsoft.graph.unifiedRoleAssignment' description: Resource to grant access to users or groups. x-ms-navigationProperty: true roleAssignmentScheduleInstances: type: array items: $ref: '#/components/schemas/microsoft.graph.unifiedRoleAssignmentScheduleInstance' description: Instances for active role assignments. x-ms-navigationProperty: true roleAssignmentScheduleRequests: type: array items: $ref: '#/components/schemas/microsoft.graph.unifiedRoleAssignmentScheduleRequest' description: Requests for active role assignments to principals through PIM. x-ms-navigationProperty: true roleAssignmentSchedules: type: array items: $ref: '#/components/schemas/microsoft.graph.unifiedRoleAssignmentSchedule' description: Schedules for active role assignment operations. x-ms-navigationProperty: true roleDefinitions: type: array items: $ref: '#/components/schemas/microsoft.graph.unifiedRoleDefinition' description: Resource representing the roles allowed by RBAC providers and the permissions assigned to the roles. x-ms-navigationProperty: true roleEligibilityScheduleInstances: type: array items: $ref: '#/components/schemas/microsoft.graph.unifiedRoleEligibilityScheduleInstance' description: Instances for role eligibility requests. x-ms-navigationProperty: true roleEligibilityScheduleRequests: type: array items: $ref: '#/components/schemas/microsoft.graph.unifiedRoleEligibilityScheduleRequest' description: Requests for role eligibilities for principals through PIM. x-ms-navigationProperty: true roleEligibilitySchedules: type: array items: $ref: '#/components/schemas/microsoft.graph.unifiedRoleEligibilitySchedule' description: Schedules for role eligibility operations. x-ms-navigationProperty: true additionalProperties: type: object microsoft.graph.appScope: allOf: - $ref: '#/components/schemas/microsoft.graph.entity' - title: appScope type: object properties: displayName: type: - string - 'null' description: Provides the display name of the app-specific resource represented by the app scope. Read-only. type: type: - string - 'null' description: Describes the type of app-specific resource represented by the app scope. Read-only. additionalProperties: type: object microsoft.graph.ODataErrors.MainError: required: - code - message type: object properties: code: type: string message: type: string x-ms-primary-error-message: true target: type: - string - 'null' details: type: array items: $ref: '#/components/schemas/microsoft.graph.ODataErrors.ErrorDetails' innerError: $ref: '#/components/schemas/microsoft.graph.ODataErrors.InnerError' additionalProperties: type: object microsoft.graph.recurrenceRangeType: title: recurrenceRangeType enum: - endDate - noEnd - numbered type: string microsoft.graph.unifiedRoleEligibilityScheduleCollectionResponse: title: Collection of unifiedRoleEligibilitySchedule type: object properties: value: type: array items: $ref: '#/components/schemas/microsoft.graph.unifiedRoleEligibilitySchedule' '@odata.nextLink': type: - string - 'null' additionalProperties: type: object microsoft.graph.recurrencePatternType: title: recurrencePatternType enum: - daily - weekly - absoluteMonthly - relativeMonthly - absoluteYearly - relativeYearly type: string microsoft.graph.entity: title: entity type: object properties: id: type: string description: The unique identifier for an entity. Read-only. additionalProperties: type: object ODataCountResponse: type: integer format: int32 microsoft.graph.roleAssignmentScheduleFilterByCurrentUserOptions: title: roleAssignmentScheduleFilterByCurrentUserOptions enum: - principal - unknownFutureValue type: string responses: microsoft.graph.unifiedRoleEligibilityScheduleInstanceCollectionResponse: description: Retrieved collection content: application/json: schema: $ref: '#/components/schemas/microsoft.graph.unifiedRoleEligibilityScheduleInstanceCollectionResponse' microsoft.graph.unifiedRoleEligibilityScheduleCollectionResponse: description: Retrieved collection content: application/json: schema: $ref: '#/components/schemas/microsoft.graph.unifiedRoleEligibilityScheduleCollectionResponse' microsoft.graph.unifiedRoleAssignmentScheduleRequestCollectionResponse: description: Retrieved collection content: application/json: schema: $ref: '#/components/schemas/microsoft.graph.unifiedRoleAssignmentScheduleRequestCollectionResponse' microsoft.graph.unifiedRoleEligibilityScheduleRequestCollectionResponse: description: Retrieved collection content: application/json: schema: $ref: '#/components/schemas/microsoft.graph.unifiedRoleEligibilityScheduleRequestCollectionResponse' microsoft.graph.unifiedRbacResourceNamespaceCollectionResponse: description: Retrieved collection content: application/json: schema: $ref: '#/components/schemas/microsoft.graph.unifiedRbacResourceNamespaceCollectionResponse' microsoft.graph.unifiedRoleDefinitionCollectionResponse: description: Retrieved collection content: application/json: schema: $ref: '#/components/schemas/microsoft.graph.unifiedRoleDefinitionCollectionResponse' microsoft.graph.unifiedRbacResourceActionCollectionResponse: description: Retrieved collection content: application/json: schema: $ref: '#/components/schemas/microsoft.graph.unifiedRbacResourceActionCollectionResponse' ODataCountResponse: description: The count of the resource content: text/plain: schema: $ref: '#/components/schemas/ODataCountResponse' microsoft.graph.unifiedRoleAssignmentScheduleCollectionResponse: description: Retrieved collection content: application/json: schema: $ref: '#/components/schemas/microsoft.graph.unifiedRoleAssignmentScheduleCollectionResponse' error: description: error content: application/json: schema: $ref: '#/components/schemas/microsoft.graph.ODataErrors.ODataError' microsoft.graph.unifiedRoleAssignmentScheduleInstanceCollectionResponse: description: Retrieved collection content: application/json: schema: $ref: '#/components/schemas/microsoft.graph.unifiedRoleAssignmentScheduleInstanceCollectionResponse' microsoft.graph.unifiedRoleAssignmentCollectionResponse: description: Retrieved collection content: application/json: schema: $ref: '#/components/schemas/microsoft.graph.unifiedRoleAssignmentCollectionResponse' parameters: count: name: $count in: query description: Include count of items style: form explode: false schema: type: boolean filter: name: $filter in: query description: Filter items by property values style: form explode: false schema: type: string search: name: $search in: query description: Search items by search phrases style: form explode: false schema: type: string skip: name: $skip in: query description: Skip the first n items style: form explode: false schema: minimum: 0 type: integer top: name: $top in: query description: Show only the first n items style: form explode: false schema: minimum: 0 type: integer example: 50 securitySchemes: azureaadv2: type: oauth2 flows: authorizationCode: authorizationUrl: https://login.microsoftonline.com/common/oauth2/v2.0/authorize tokenUrl: https://login.microsoftonline.com/common/oauth2/v2.0/token scopes: {}