Azure Files CSI driver in AKS now supports workload identity for SMB shares
The Azure Files Container Storage Interface (CSI) driver in Azure Kubernetes Service (AKS) now offers workload identity support for pod-level authentication to SMB file shares. This enhancement provides granular security control by enabling applications to leverage least-privilege access to Azure Files, directly at the pod level. It allows for more precise access scoping compared to previous node-level managed identity support, which is particularly beneficial for regulated industries with stringent compliance requirements. The feature is generally available in all Azure regions supporting Azure Files and AKS.
Features (1) ›
- Pod-level workload identity for Azure Files CSI driver in AKS
The Azure Files Container Storage Interface (CSI) driver in Azure Kubernetes Service (AKS) now supports workload identity, allowing pod-level authentication to SMB file shares. This provides granular, least-privilege access for applications, enhancing security control especially for regulated industries. It expands upon existing managed identity support, enabling more precise data access scoping than node-level access.
https://azure.microsoft.com/updates?id=570120
Related releases
- Azure Bastion Integration with AKS Clusters Now Generally Available Azure Updates ·
- eBPF Host Routing for AKS Advanced Container Networking is GA Azure Updates ·
- Azure Linux on WSL Enters Public Preview Azure Updates ·
- Azure AKS Control Plane Metrics Collection Now GA with Managed Prometheus Azure Updates ·
- Azure AKS Introduces Prepared Image Specification in Public Preview Azure Updates ·
- Resource Placement in Azure Kubernetes Fleet Manager is Generally Available Azure Updates ·