Versions Compared

Key

  • This line was added.
  • This line was removed.
  • Formatting was changed.

...

Info

When you create a private endpoint, the DNS CNAME resource record for the storage account is updated to an alias in a subdomain with the prefix privatelink. By default, we also create a private DNS zone, corresponding to the privatelink subdomain, with the DNS A resource records for the private endpoints : Use private endpoints - Azure Storage | Microsoft Learn

Logging & threat detection : Defender for App Service & Diagnostic log with Azure Monitor.

Backup & recovery : regular automated backup (File content , App Configuration, DB if connected).

Identity Management : AAD Authentication, Service PPal, RBAC (Acess Policies), Restrict exposure credentials with Key Vault.

Privileged access : Least Privilege principle.

Network & CyberSecurity : Combining the milestones 2 & 3

...