How AI is applied across API Evangelist and APIs.io. Read my AI disclosure →
API Evangelist API Evangelist
Discovery
Learnings
Guidance
Toolbox
Alignment
API Evangelist LLC

Generally Available: Restrict usage of user delegation SAS to an Entra ID identity

calendar_today September 9, 2026 person ellievail domain azure-file-storage

Shared access signatures (SAS) grant time-bound, scoped access to Azure Storage resources without sharing account keys. Over time, Azure Storage has continued to strengthen SAS security, moving from account keys to user delegation (UD) SAS secured by Microsoft Entra ID. Today, we’re taking the next step forward by announcing general availability for user-bound user delegation SAS , an extension of UD SAS that ensures a SAS token can only be used by a specific Entra ID identity.

open_in_new Read original post