Every request to read or write data in Azure Storage (blobs, files, queues, tables) must be authorized. There are several ways, and the exam wants you to rank them. The strongest is Microsoft Entra ID authorization: the caller presents an OAuth 2.0 token for a user, group, service principal or managed identity, and Azure checks their data-plane RBAC roles. No shared secret exists to leak, access is tied to identity and can be revoked, and every request is attributable in logs.
Keep reading for free
Create a free StudyToCert account to read the rest of this lesson: 5 more sections, 4 key terms, a real-world example, an exam tip and self-check questions. Every lesson, lab and practice test is free with an account.