Azure Databases built-in role

Redis Cache Contributor

Creates and manages Azure Cache for Redis resources through the control plane but cannot read or write values stored in the cache. It has no DataActions; Redis command and key access is configured separately through access keys or Microsoft Entra-backed data access policies.

Role-definition permissions are imported from Microsoft Learn. Practical scope, use cases, prerequisites, best practices, security considerations, assignment guidance, and relationships have been reviewed against the official sources below.

Role definition ID: e0f68234-74aa-48ed-b826-c38b57376e17

Control-plane actions (8)

Data-plane actions (0)

None — this role grants no data-plane (data access) actions.

Excluded actions (0)

None

Assignable scopes (1)

Practical scope

Assign on an existing Azure Cache for Redis resource or its dedicated resource group for lifecycle administration. Parent-scope assignments are inherited by every cache below them. This role governs cache infrastructure, not Redis users, commands, keys, or values.

Common use cases (2)

Prerequisites (2)

Best practices (3)

Security considerations (3)

Assignment guidance

Assign Redis Cache Contributor to the infrastructure operator on the individual cache or dedicated resource group. Configure Redis data access separately, and treat the assignment as transitional where the cache is scheduled to migrate to Azure Managed Redis.

Editorial sources (6)

Official Microsoft Learn documentation →