In AzureKeyVault Access Control (IAM)
When I click View my access
I see I have the owner role with inherited scope, condition None.
However when I try to add a secret I get an error with
Code Forbidden
Message The operation is not allowed by RBAC. If role
assignments were recently changed, please wait several minutes for
role assignments to become effective. Raw ErrorCaller is not authorized to perform action on resource. If role
assignments, deny assignments or role definitions were changed
recently, please observe propagation time. Caller:
appid={{MyAPPID}}iss=https://sts.windows.net/{{someguid}} Action:
‘Microsoft.KeyVault/vaults/secrets/setSecret/action’ Resource:
‘/subscriptions/{{anotherguid}}/resourcegroups/vivadkeyvault/providers/microsoft.keyvault/vaults/keyvaultforvivad/secrets/myobapplicationjobtalk2clientid’
Assignment: (not found) DenyAssignmentId: null DecisionReason: null
Vault: KeyVaultForVivad;location=australiasoutheast
1