How AI is applied across API Evangelist and APIs.io. Read my AI disclosure →
API Evangelist API Evangelist
Discovery
Learnings
Guidance
Toolbox
Alignment
API Evangelist LLC

Public Preview: Restrict usage of user delegation SAS to an Entra ID identity

calendar_today March 3, 2026 person ellievail domain azure-file-storage

Shared access signatures (SAS) grant time-bound, scoped access to Azure Storage resources without sharing account keys. Over time, Azure Storage has continued to strengthen SAS security, moving from account keys to user delegation (UD) SAS secured by Microsoft Entra ID. Today, we’re taking the next step forward by announcing public preview for user-bound user delegation SAS , an extension of UD SAS that ensures a SAS token can only be used by a specific Entra ID identity.

open_in_new Read original post