- Lab

Secure Storage Access with Shared Access Signatures
You are working for Globomantics, a cloud native SaaS company. You’ve been asked to tighten access to sensitive data in Azure Storage. The security team has asked you to upload sample datasets with read-only access to demonstrate scoped, time-bound access to blobs without exposing account keys or granting broad role based access control roles to external users.

Path Info
Table of Contents
-
Challenge
Configure a Secure Baseline for Blob storage
Upload the provided datasets to a private blob container:
- Dataset 1: dataset1-tenants.csv (1.7 KB)
- Dataset 2: dataset2-usageevents.csv (1.8 KB)
-
Challenge
Issue Least-Privilege, Time-Bound Credentials
Create a shared access signature to secure access to the blobs.
-
Challenge
Validate and Manage Access Using Client Tools
- Connect to the provided virtual machine using Azure Bastion and the credentials provided on the lab page.
- Use Azure Storage Explorer to verify which operations are allowed.
What's a lab?
Hands-on Labs are real environments created by industry experts to help you learn. These environments help you gain knowledge and experience, practice without compromising your system, test without risk, destroy without fear, and let you learn from your mistakes. Hands-on Labs: practice your skills before delivering in the real world.
Provided environment for hands-on practice
We will provide the credentials and environment necessary for you to practice right within your browser.
Guided walkthrough
Follow along with the author’s guided walkthrough and build something new in your provided environment!
Did you know?
On average, you retain 75% more of your learning if you get time for practice.