Azure Blob Storage 403 Forbidden to Contributor

September 13, 2023

Your service principal needs to write to Azure Blob Storage.

Your service principal has Contributor Role on the entire Resource Group.

Good to go right?

Because that user has a role which “Grants full access to manage all resources”

azurecontributor

EXCEPT THAT IT DOESN’T.

You also need Storage Blob Data Contributor if you want to be able to write to an Az storage account blob container.


Profile picture

Internet magic.

© 2023