Get startedGet started for free

Encryption and access policies

Cipher Coffee needs to ensure that sensitive files in Blob Storage are protected at all times, both from unauthorized access and data breaches. You will verify that encryption at rest is enabled and create a Stored Access Policy for your container to centrally manage access permissions without regenerating individual SAS tokens.

This exercise is part of the course

Develop for Azure Storage

View Course

Exercise instructions

Under Security + networking, open Encryption and verify that data at rest is protected with encryption.,Under Data storage, open Containers, select your container, and create a Stored Access Policy named "Staff" with Read, Write, and List permissions valid for seven days.,In Shared access signature, generate a SAS token using the "Staff" Stored Access Policy with a seven-day expiry. Screenshot showing the Azure Portal Encryption blade and the Access policy settings for a blob container.

Hands-on interactive exercise

Turn theory into action with one of our interactive exercises

Start Exercise