azure Azure Updates ·

Azure Storage Announces General Availability of User-Bound User Delegation SAS

securityazuregaarchitectazure-blob-storageazure-entra
feature

Azure Storage has made User-bound User Delegation Shared Access Signatures (SAS) generally available across all public regions. This enhancement combines the flexibility of user-delegation SAS with the user-bound access of Entra ID, offering more secure authentication for storage. It restricts SAS token usage to a specific end-user identity, ensuring tokens are used only by intended users. There is no additional cost beyond standard transaction fees for this feature, which is valid for up to 7 days and traceable to the delegator.

Features (1)
  • User-Bound User Delegation SAS for Azure Storage Now Generally Available

    Azure Storage now offers User-bound User Delegation SAS, which enhances secure authentication by integrating user delegation SAS with Entra ID's user-bound access. This feature allows the creation of SAS tokens whose usage is restricted to a specific end-user identity, preventing misuse and providing better traceability. It is available in all public regions at no additional cost beyond standard storage transaction fees.

Read the original announcement →

https://azure.microsoft.com/updates?id=569241

Related releases