Azure Storage Announces General Availability of User-Bound User Delegation SAS
Azure Storage has made User-bound User Delegation Shared Access Signatures (SAS) generally available across all public regions. This enhancement combines the flexibility of user-delegation SAS with the user-bound access of Entra ID, offering more secure authentication for storage. It restricts SAS token usage to a specific end-user identity, ensuring tokens are used only by intended users. There is no additional cost beyond standard transaction fees for this feature, which is valid for up to 7 days and traceable to the delegator.
Features (1) ›
- User-Bound User Delegation SAS for Azure Storage Now Generally Available
Azure Storage now offers User-bound User Delegation SAS, which enhances secure authentication by integrating user delegation SAS with Entra ID's user-bound access. This feature allows the creation of SAS tokens whose usage is restricted to a specific end-user identity, preventing misuse and providing better traceability. It is available in all public regions at no additional cost beyond standard storage transaction fees.
https://azure.microsoft.com/updates?id=569241
Related releases
- Generally Available: Azure Developer CLI (azd) Extension Framework Azure Updates ·
- Azure Blob Storage SFTP adds Microsoft Entra ID-based access Azure Updates ·
- Azure Storage Mover supports Google Cloud Storage migration in public preview Azure Updates ·
- Azure Blob Storage client-side data integrity protections now GA Azure Updates ·
- Azure deprecates GPv1 and legacy Blob storage Azure Updates ·
- Azure Blob Storage SDK for Rust now generally available Azure Updates ·