OpsCanary
Learn/Azure/Entra ID & RBAC
Azure

Entra ID & RBAC

6 articles from official documentation

Practitioner6 articles
azureidentityPractitioner

Decentralized Identifiers in Microsoft Entra Verified ID: A Game Changer for Identity Management

Decentralized Identifiers (DIDs) are revolutionizing how we think about identity management. With user-generated, self-owned identifiers, you can achieve self-ownership and censorship resistance like never before. Dive into how this technology works and its implications for your production environment.

  • Understand that DIDs are user-generated, self-owned identifiers rooted in decentralized trust systems.
  • Leverage verifiable credentials as portable, cryptographically signed proofs for identity verification.
5 min read·Microsoft Learn
Read article
azureidentityPractitioner

Mastering Microsoft Entra Roles: Best Practices for Security

In an era where security breaches are rampant, mastering Microsoft Entra roles is crucial for protecting your Azure environment. Implementing least privilege and Privileged Identity Management (PIM) can significantly reduce your attack surface. Dive in to learn how to effectively manage roles and permissions.

  • Implement least privilege by granting administrators only the permissions they need.
  • Utilize Privileged Identity Management (PIM) for just-in-time access to roles.
5 min read·Microsoft Learn
Read article
azureidentityPractitioner

Unlocking Azure Security: Managed Identities Explained

Managed identities in Azure are a game changer for securing your applications. They allow Azure resources to access other services without the headache of managing credentials. Learn how they work and what you need to know to implement them effectively.

  • Understand the difference between system-assigned and user-assigned managed identities.
  • Use MSAL or Azure.Identity SDK to retrieve managed identity tokens seamlessly.
5 min read·Microsoft Learn
Read article
azureidentityPractitioner

Unlocking Control: External Key Management for Azure Managed HSM

Azure's External Key Management for Managed HSM is now in public preview, offering a way to maintain control over your encryption keys. This feature allows cryptographic operations in Azure to use your external key material without ever passing through Microsoft infrastructure.

  • Understand that External Key Management allows you to keep key material on an HSM you control.
  • Utilize a dedicated API endpoint to connect directly to your controlled HSM for cryptographic operations.
5 min read·Azure Blog
Read article
azureidentityPractitioner

Unlocking Azure Files with Entra-Only Identities: A New Era of Security

Azure Files now supports Entra-Only identities, allowing secure access to SMB file shares without relying on Active Directory. This feature leverages Microsoft Entra ID for authentication, streamlining identity management in cloud-native environments.

  • Utilize Entra-Only identities to simplify identity management for Azure Files.
  • Leverage Microsoft Entra ID for direct authentication, eliminating Active Directory dependencies.
5 min read·Azure Blog
Read article
azureidentityPractitioner

Unlocking Security: The Power of Azure Integrated HSM

Azure Integrated HSM is a game-changer for securing cryptographic keys directly in hardware. By ensuring keys never leave the hardware boundary, it mitigates key exfiltration risks that plague traditional software-based solutions. Dive in to understand how this impacts your security posture.

  • Utilize Azure Integrated HSM for tamper-resistant key management directly in Azure servers.
  • Ensure encryption keys never leave the hardware boundary to mitigate key exfiltration risks.
4 min read·Azure Blog
Read article
DigitalOceanSponsor

Simple, affordable cloud — VMs, Kubernetes, and managed databases in minutes. Trusted by 600,000+ developers. Spin up a Droplet in 60 seconds.

Try DigitalOcean →

Get the daily digest

One email. 5 articles. Every morning.

No spam. Unsubscribe anytime.