Azure Analytics built-in role

Azure Event Hubs Data Sender

Allows a principal to send events to Azure Event Hubs. The role uses a control-plane Action to read event hubs and a data-plane DataAction to send events; it does not provide receive access or the complete access of Data Owner.

Role-definition permissions are imported from Microsoft Learn. Practical scope, use cases, prerequisites, best practices, security considerations, assignment guidance, and relationships have been reviewed against the official sources below.

Role definition ID: 2b629674-e913-4c01-ae53-ef4638d8f975

Control-plane actions (1)

Data-plane actions (1)

Excluded actions (0)

None

Assignable scopes (1)

Practical scope

Assign at the event hub that receives the producer data or at a namespace when the producer must send to multiple contained event hubs. Resource-group and subscription assignments are inherited by every Event Hubs resource below those scopes.

Common use cases (2)

Prerequisites (2)

Best practices (3)

Security considerations (3)

Assignment guidance

Assign Azure Event Hubs Data Sender to the producer identity on the individual event hub whenever possible, or on the namespace only when it must publish to multiple contained event hubs. Keep receive and complete administration access on separate roles unless the workflow requires them.

Related roles (2)

Editorial sources (6)

Official Microsoft Learn documentation →