Setting data access permission using Azure Purview’s Data Policy Feature
We recently launched Azure Purview Data Policy features into public preview. The policy author and data source admin can set data access permission on storage accounts for ADLS Gen 2 and blob at the file, folder, container, or storage account level. Also, an entire subscription or resource group can be brought under the policy governance of Azure Purview using the Data Policy features.
The first two blogs below summarize how to access data when file or folder level access is granted to a data consumer. The final blog covers how an entire subscription or resource group can be brought under the policy governance of Azure Purview. These capabilities streamline and reduce the administrative effort required to manage various data resources within a subscription.
- Data Policy Features: Accessing data when file level permission is granted
- Data Policy Features: Accessing data when folder level permission is granted
- Data Policy Features: Resource group-level governance can significantly reduce effort
Conclusion:
Data Policy features within Azure Purview ensure that data consumers only have adequate permission to perform their day-to-day tasks. These features also secure the data perimeter and reduce the administrative overhead by bringing subscription and resource groups under Azure Purview’s data policy management remit. It is easy to get started with the new Data Policy features within Azure Purview. You can get started by going through our documentation here and demo video here.
Published on:
Learn moreRelated posts
Microsoft Dataverse – Monitor batch workloads with Azure Monitor Application Insights
We are announcing the ability to monitor batch workload telemetry in Azure Monitor Application Insights for finance and operations apps in Mic...
Copilot Studio: Connect An Azure SQL Database As Knowledge
Copilot Studio can connect to an Azure SQL database and use its structured data as ... The post Copilot Studio: Connect An Azure SQL Database ...
Retirement of Global Personal Access Tokens in Azure DevOps
In the new year, we’ll be retiring the Global Personal Access Token (PAT) type in Azure DevOps. Global PATs allow users to authenticate across...
Azure Cosmos DB vNext Emulator: Query and Observability Enhancements
The Azure Cosmos DB Linux-based vNext emulator (preview) is a local version of the Azure Cosmos DB service that runs as a Docker container on ...
Azure Cosmos DB : Becoming a Search-Native Database
For years, “Database” and “Search systems” (think Elastic Search) lived in separate worlds. While both Databases and Search Systems oper...