Security

We discussed this topic a little previously, but here we summarize it. When using ADLS and considering its security features (such as authentication, authorization, and access to files), it is important to remember the following things:

  • Prefer groups over users/services: While, initially, it is easier to assign an individual user to a resource or a folder, you will quickly face problems when the number of people interested in data starts to grow rapidly. This is why it is better to use Azure AD groups to both determine RBAC access to the resource itself and POSIX ACL for files and folders. It also improves the performance of the solution, as it is quicker to check whether an entity belongs to a group than to traverse through a long ...

Get Hands-On Azure for Developers now with the O’Reilly learning platform.

O’Reilly members experience books, live events, courses curated by job role, and more from O’Reilly and nearly 200 top publishers.