Data stores

The following best practices should be employed for SQL databases:

  • Ensure Transparent Data Encryption (TDE) is enabled
  • Use a centralized identity management system for authentication and authorization
  • Restrict access by IP, and only give access to those that need it

However, you should avoid the following:

  • Don't open all IPs through your firewall

Using Azure AD gives you access to the following features:

  • Single source for password rotation
  • Manage permissions with groups
  • Multi-factor Authentication (MFA)

Get Hands-On Cloud Solutions with Azure now with the O’Reilly learning platform.

O’Reilly members experience books, live events, courses curated by job role, and more from O’Reilly and nearly 200 top publishers.