OpsCanary
Learn/Azure/Entra ID & RBAC
Azure

Entra ID & RBAC

6 articles from official documentation

Practitioner6 articles
azureidentityPractitioner

Unlocking Control: External Key Management for Azure Managed HSM

Azure's External Key Management for Managed HSM is now in public preview, offering a way to maintain control over your encryption keys. This feature allows cryptographic operations in Azure to use your external key material without ever passing through Microsoft infrastructure.

  • Understand that External Key Management allows you to keep key material on an HSM you control.
  • Utilize a dedicated API endpoint to connect directly to your controlled HSM for cryptographic operations.
5 min read·Azure Blog
Read article
azureidentityPractitioner

Unlocking Azure Files with Entra-Only Identities: A New Era of Security

Azure Files now supports Entra-Only identities, allowing secure access to SMB file shares without relying on Active Directory. This feature leverages Microsoft Entra ID for authentication, streamlining identity management in cloud-native environments.

  • Utilize Entra-Only identities to simplify identity management for Azure Files.
  • Leverage Microsoft Entra ID for direct authentication, eliminating Active Directory dependencies.
5 min read·Azure Blog
Read article
azureidentityPractitioner

Unlocking Security: The Power of Azure Integrated HSM

Azure Integrated HSM is a game-changer for securing cryptographic keys directly in hardware. By ensuring keys never leave the hardware boundary, it mitigates key exfiltration risks that plague traditional software-based solutions. Dive in to understand how this impacts your security posture.

  • Utilize Azure Integrated HSM for tamper-resistant key management directly in Azure servers.
  • Ensure encryption keys never leave the hardware boundary to mitigate key exfiltration risks.
4 min read·Azure Blog
Read article
azureidentityPractitioner

Decentralized Identifiers in Microsoft Entra Verified ID: A Game Changer for Identity Management

Decentralized Identifiers (DIDs) are transforming how we think about identity. With user-generated, self-owned identifiers, you can achieve self-ownership and censorship resistance that traditional systems struggle to deliver. Dive into how this innovation works and what you need to know for production.

  • Understand DIDs as user-generated, self-owned identifiers that enhance identity management.
  • Leverage user-controlled datastores for secure identity attribute management.
5 min read·Microsoft Learn
Read article
azureidentityPractitioner

Mastering Microsoft Entra Roles: Best Practices for Security and Efficiency

In today's cloud-centric world, managing access with precision is crucial. Implementing least privilege and Privileged Identity Management (PIM) can significantly reduce your attack surface. Discover how to optimize your Microsoft Entra roles effectively.

  • Implement least privilege by granting administrators only the permissions they need.
  • Utilize Privileged Identity Management (PIM) for just-in-time access to roles.
5 min read·Microsoft Learn
Read article
azureidentityPractitioner

Mastering Managed Identities in Azure: Simplifying Authentication

Managed identities in Azure streamline authentication for your applications, eliminating the need for secrets. With system-assigned and user-assigned identities, you can enhance security and simplify resource management.

  • Understand the difference between system-assigned and user-assigned managed identities.
  • Use MSAL or Azure.Identity SDK to retrieve managed identity tokens seamlessly.
5 min read·Microsoft Learn
Read article
DigitalOceanSponsor

Simple, affordable cloud — VMs, Kubernetes, and managed databases in minutes. Trusted by 600,000+ developers. Spin up a Droplet in 60 seconds.

Try DigitalOcean →

Get the daily digest

One email. 5 articles. Every morning.

No spam. Unsubscribe anytime.