AZ-104 - Implement and Manage Storage - Section 2.1

Configure access to storage using shared access signatures, access keys, and Microsoft Entra.

Distinguish between storage account keys, shared access signatures (SAS), and Microsoft Entra authorisation as mechanisms for granting access to Azure Storage. Use stored access policies to revoke SAS tokens without rotating keys, and recognise when Microsoft Entra-based authorisation is preferable to key-based access for audit and least-privilege reasons.

shared access signaturesstorage account keysMicrosoft Entra authorizationstored access policies

More in this domain

Back to all Implement and Manage Storage objectives, or the AZ-104 cert hub.

Examworthy is not affiliated with or endorsed by Microsoft. Original, blueprint-aligned practice material only.