<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>Azure Storage Blog articles</title>
    <link>https://techcommunity.microsoft.com/t5/azure-storage-blog/bg-p/AzureStorageBlog</link>
    <description>Azure Storage Blog articles</description>
    <pubDate>Sat, 13 Jun 2026 07:01:45 GMT</pubDate>
    <dc:creator>AzureStorageBlog</dc:creator>
    <dc:date>2026-06-13T07:01:45Z</dc:date>
    <item>
      <title>File share migrations simplified with Azure Copilot Migration Agent</title>
      <link>https://techcommunity.microsoft.com/t5/azure-storage-blog/file-share-migrations-simplified-with-azure-copilot-migration/ba-p/4524563</link>
      <description>&lt;P&gt;Building on our&amp;nbsp;&lt;A href="https://techcommunity.microsoft.com/blog/azuremigrationblog/discover-and-assess-file-shares-for-migration-to-azure-files-with-azure-migrate/4509034" target="_blank" rel="noopener"&gt;earlier announcement of discovery and assessment support for SMB and NFS file shares in Azure Migrate&lt;/A&gt;, we are extending the experience to support end-to-end file share migrations within the same workflow. With &lt;A href="https://techcommunity.microsoft.com/blog/azuremigrationblog/azure-copilot-migration-agent/4501292" target="_blank" rel="noopener"&gt;Azure Copilot Migration Agent&lt;/A&gt;, customers can move from discovery and assessment to migration through a single guided experience in Azure Migrate. By bringing planning and execution together, the &lt;A href="https://aka.ms/MigrationAgentDocs" target="_blank" rel="noopener"&gt;agent&lt;/A&gt; helps organizations streamline migration activity, reduce handoffs, and maintain continuity across stages.&lt;/P&gt;
&lt;H2 data-line="6"&gt;Overview&lt;/H2&gt;
&lt;P&gt;Since the release of file share discovery and assessment in Azure Migrate earlier this year, customers have indicated that while visibility into their file share estate improved, the transition to execution remained fragmented. In many cases, teams still had to work across separate workflows for inventory, readiness planning, and migration, increasing operational friction and the risk of losing context between stages.&lt;/P&gt;
&lt;P&gt;Azure Copilot Migration Agent helps address this gap by bringing discovery, assessment, planning, and execution into a single guided journey. Azure Migrate provides visibility and recommendations, while Azure Storage Mover supports execution in a connected, agentic experience. The result is a more consistent migration path that reduces complexity, preserves context, and helps teams move file shares to Azure with greater operational confidence.&lt;/P&gt;
&lt;img&gt;Invoking the Azure Migration Copilot Agent for on-premises data migration&lt;/img&gt;
&lt;P class="lia-clear-both"&gt;&amp;nbsp;&lt;/P&gt;
&lt;H2 data-line="18"&gt;Customer Value&lt;/H2&gt;
&lt;P&gt;This update streamlines the migration journey by connecting each stage of the process and reducing operational overhead. Natural language guidance helps teams start and manage migration activities much faster, often in hours or days instead of weeks.&lt;/P&gt;
&lt;P&gt;The experience supports the following scenarios:&lt;/P&gt;
&lt;UL&gt;
&lt;LI&gt;End-to-end discovery, assessment, and migration for on-premises Windows and Linux file shares (SMB) to Azure Files.&lt;/LI&gt;
&lt;LI&gt;Discovery and assessment for on-premises Windows and Linux file shares (NFS).&lt;/LI&gt;
&lt;LI&gt;Data transfers from one Azure Blob container to another container.&lt;/LI&gt;
&lt;/UL&gt;
&lt;H2 data-line="39"&gt;Design principles&lt;/H2&gt;
&lt;P&gt;The experience preserves continuity across inventory, readiness insights, and execution planning, enables direct movement of validated shares when heavyweight orchestration is unnecessary, maintains approval and sequencing controls, and supports the file and object movement patterns commonly required in production environments.&lt;/P&gt;
&lt;H2&gt;Getting Started with Storage Migration in Azure Copilot Migration Agent (ACMA)&lt;/H2&gt;
&lt;OL&gt;
&lt;LI&gt;Launch Azure Migrate: Sign-in to the Azure portal, open Azure Migrate.&lt;/LI&gt;
&lt;LI&gt;From the Getting Started page, open Azure Copilot Migration Agent, then select or create an Azure Migrate project.&lt;/LI&gt;
&lt;LI&gt;Describe the migration in natural language. The agent detects storage migration intent and assists with storage migration planning and routes execution requests seamlessly.&lt;/LI&gt;
&lt;/OL&gt;
&lt;H4&gt;Examples scenarios and prompts&lt;/H4&gt;
&lt;OL&gt;
&lt;LI&gt;&lt;SPAN style="color: rgb(30, 30, 30);"&gt;Migration of on-premises Windows Server data over SMB to Azure Files &lt;/SPAN&gt;&amp;nbsp;&lt;/LI&gt;
&lt;/OL&gt;
&lt;P&gt;&amp;nbsp;&amp;nbsp;&lt;/P&gt;
&lt;img&gt;setting up key vault after source is confirmed&lt;/img&gt;
&lt;P class="lia-clear-both"&gt;&amp;nbsp;&lt;/P&gt;
&lt;img&gt;create target if not already present&lt;/img&gt;
&lt;P class="lia-clear-both"&gt;&amp;nbsp;&lt;/P&gt;
&lt;img&gt;review configuration before creation of migration job&lt;/img&gt;&lt;img&gt;run migration job and check status&lt;/img&gt;
&lt;P class="lia-clear-both"&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;2. Prompt: Help me transfer data from one Azure blob container to another blob container&lt;/P&gt;
&lt;H2&gt;Call to action&lt;/H2&gt;
&lt;P&gt;Storage integrated capability is launching in Limited Preview at Microsoft Build. Sign up for the Preview&amp;nbsp;&lt;A href="https://forms.cloud.microsoft/r/nJzS9MXnWk" target="_blank" rel="noopener"&gt;here&lt;/A&gt;.&lt;/P&gt;
&lt;P&gt;For questions, contact &lt;A href="mailto:storagemigrationcopilotagent@microsoft.com" target="_blank" rel="noopener"&gt;storagemigrationcopilotagent@microsoft.com&lt;/A&gt;.&lt;/P&gt;
&lt;H3 data-line="55"&gt;Learn More&lt;/H3&gt;
&lt;OL data-line="56"&gt;
&lt;LI data-line="56"&gt;&lt;A href="https://learn.microsoft.com/en-us/azure/migrate/create-file-share-assessment?view=migrate" target="_blank" rel="noopener" data-href="https://learn.microsoft.com/en-us/azure/migrate/create-file-share-assessment?view=migrate"&gt;File share discovery and assessment in Azure Migrate&lt;/A&gt;&lt;/LI&gt;
&lt;LI data-line="57"&gt;&lt;A href="https://aka.ms/MigrationAgentDocs" target="_blank" rel="noopener" data-href="https://aka.ms/MigrationAgentDocs"&gt;Azure Copilot Migration Agent&lt;/A&gt;&lt;/LI&gt;
&lt;LI data-line="58"&gt;&lt;A href="https://learn.microsoft.com/en-us/azure/storage-mover/" target="_blank" rel="noopener" data-href="https://learn.microsoft.com/en-us/azure/storage-mover/"&gt;Azure Storage Mover&lt;/A&gt;&lt;/LI&gt;
&lt;/OL&gt;</description>
      <pubDate>Wed, 03 Jun 2026 12:28:05 GMT</pubDate>
      <guid>https://techcommunity.microsoft.com/t5/azure-storage-blog/file-share-migrations-simplified-with-azure-copilot-migration/ba-p/4524563</guid>
      <dc:creator>madhurinrao</dc:creator>
      <dc:date>2026-06-03T12:28:05Z</dc:date>
    </item>
    <item>
      <title>Simpler, scalable file share management in Azure - now generally available</title>
      <link>https://techcommunity.microsoft.com/t5/azure-storage-blog/simpler-scalable-file-share-management-in-azure-now-generally/ba-p/4523035</link>
      <description>&lt;P&gt;Linux workloads in Azure are scaling faster than ever, powering everything from container platforms, analytics pipelines, SAP environments to line-of-business applications. As these workloads grow, infrastructure teams commonly run into challenges with scale, cost management, complexity and compliance. IT organizations need more granular control over management and isolation boundaries for file shares independent of storage accounts, to prevent multiple application teams sharing the same capacity pools, limits, and configuration surface across different storage services. Infrastructure administrators seek operational simplicity with managing access control, policy and networking isolation for file shares, so application teams can focus on business logic and development agility.&lt;/P&gt;
&lt;P&gt;We are announcing the general availability of a &lt;A href="https://learn.microsoft.com/en-us/azure/storage/files/create-file-share?tabs=azure-portal" target="_blank" rel="noopener"&gt;new service&lt;/A&gt; management experience for premium SSD file shares (NFS) which allows each file share to be created, secured, scaled, and billed independently, without being tied to a storage account.&lt;/P&gt;
&lt;P&gt;Key benefits include:&lt;/P&gt;
&lt;UL&gt;
&lt;LI&gt;&lt;STRONG&gt;Familiar and intuitive file share management&lt;/STRONG&gt;: Aligns user experience with on-premises NAS and file server paradigms, improving usability compared to the classic model.&lt;/LI&gt;
&lt;LI&gt;&lt;STRONG&gt;Infrastructure-as-Code&lt;/STRONG&gt;: Define naming, capacity, IOPS, networking, tags, and security in Bicep or ARM templates for simplified automation with your favorite DevOps tools.&lt;/LI&gt;
&lt;LI&gt;&lt;STRONG&gt;Scale to match the workload&lt;/STRONG&gt;: Support for up to 10,000 file shares per subscription per region, with 2.5x faster file share provisioning experience.&lt;/LI&gt;
&lt;LI&gt;&lt;STRONG&gt;Share-level security and networking&lt;/STRONG&gt;: Network restrictions, snapshots, and encryption scoped to the individual share, making isolation boundaries match workload boundaries.&lt;/LI&gt;
&lt;LI&gt;&lt;STRONG&gt;Per-share cost visibility&lt;/STRONG&gt;: Billing meters emit under the file share resource, teams can crossbill accurately, track per-workload costs, and improve chargeback without workarounds.&lt;/LI&gt;
&lt;/UL&gt;
&lt;img /&gt;
&lt;H2&gt;Independent performance, security, and billing per share&lt;/H2&gt;
&lt;P&gt;Combined with the provisioned v2 model, each file share is independently provisioned with its own storage, IOPS, and throughput. This allows organizations to align file shares directly to application or tenant boundaries, rather than grouping them under shared infrastructure constructs.&lt;/P&gt;
&lt;P&gt;For multi-tenant SaaS platforms, this enables a natural one-to-one mapping between tenants and file shares. Each tenant operates within its own performance envelope, allowing steady workloads and bursty workloads to scale independently without contention. This reduces the need for capacity planning tradeoffs or overprovisioning to accommodate peak usage across tenants.&lt;/P&gt;
&lt;P&gt;This isolation extends beyond performance; each file share carries its own encryption in transit settings, RBAC, policy, and network boundaries. For example, production tenants can be isolated with dedicated private endpoints, while development environments can operate under more flexible configurations. These boundaries align directly with application design, making systems easier to reason about and manage at scale.&lt;/P&gt;
&lt;P&gt;Finally, treating each file share as its own resource simplifies cost management. Teams can tag and track usage at the workload or tenant level, enabling more accurate chargeback and better visibility into resource consumption. This makes it easier to understand how individual workloads contribute to overall spending without introducing additional tracking mechanisms.&lt;/P&gt;
&lt;H2&gt;Start easy, scale big&lt;/H2&gt;
&lt;P&gt;Cloud-native Linux applications often scale dynamically, so the underlying storage platform must provide resources quickly and support higher scale limits to keep pace with workload demand and enable teams to quickly provision infrastructure and keep pace of development. The new file share experience supports up to 10,000 file shares per subscription per region, making it practical to use a dedicated share for each application, environment, or tenant without running into platform limits. It also provides faster provisioning, with time to first share 2.5x times faster than classic file shares, so teams can spend less time waiting on infrastructure and more time building, testing, and shipping.&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;BLOCKQUOTE&gt;
&lt;P&gt;“Provisioning is fast and integrates seamlessly with Linux environments through NFS.”&lt;EM&gt; - &lt;/EM&gt;Siam Commercial Bank&lt;/P&gt;
&lt;/BLOCKQUOTE&gt;
&lt;H2&gt;Data protection with snapshots&lt;/H2&gt;
&lt;P&gt;Linux workloads using shared file storage require robust data protection. With the new service management experience, customers can continue to leverage point-in-time incremental snapshots with up to 200 snapshots per share. You can also now edit metadata on individual snapshots, making it easier to organize and identify recovery points. Whether you need short term restore points or need to retain data for compliance requirements, snapshots provide an easy and cost-effective recovery mechanism.&lt;/P&gt;
&lt;H2&gt;Get started today&lt;/H2&gt;
&lt;P&gt;The new file share experience is available for NFS 4.1 file shares on SSD storage, using the provisioned v2 billing model with LRS and ZRS options. Whether the deployment model is ARM templates, Bicep, MCP server, or custom CI/CD pipelines, file shares are scriptable, repeatable, and automatable through the same tooling used for the rest of Azure infrastructure. Explore our &lt;A href="https://go.microsoft.com/fwlink/?LinkId=2365254" target="_blank" rel="noopener"&gt;documentation&lt;/A&gt; for step-by-step guidance.&lt;/P&gt;
&lt;P&gt;We're continuously enhancing the new file share experience with the goal of achieving full feature parity while delivering improved scale and performance limits. We would love to hear your feedback, please fill out the &lt;A href="https://forms.cloud.microsoft/r/vQ9kesXuzY" target="_blank" rel="noopener"&gt;survey&lt;/A&gt; to share your thoughts.&lt;/P&gt;
&lt;H3&gt;Learn more&lt;/H3&gt;
&lt;UL&gt;
&lt;LI&gt;&lt;A href="https://go.microsoft.com/fwlink/?LinkId=2334847" target="_blank" rel="noopener"&gt;Planning for an Azure Files deployment&lt;/A&gt;&lt;/LI&gt;
&lt;LI&gt;&lt;A href="https://go.microsoft.com/fwlink/?LinkId=2365254" target="_blank" rel="noopener"&gt;How to create a file share&lt;/A&gt;&lt;/LI&gt;
&lt;LI&gt;&lt;A href="https://go.microsoft.com/fwlink/?LinkId=2343819" target="_blank" rel="noopener"&gt;Scalability &amp;amp; performance targets&lt;/A&gt;&lt;/LI&gt;
&lt;/UL&gt;
&lt;P&gt;For questions or feedback, contact us at azurefiles@microsoft.com.&lt;/P&gt;</description>
      <pubDate>Tue, 02 Jun 2026 19:07:28 GMT</pubDate>
      <guid>https://techcommunity.microsoft.com/t5/azure-storage-blog/simpler-scalable-file-share-management-in-azure-now-generally/ba-p/4523035</guid>
      <dc:creator>VincentLiu</dc:creator>
      <dc:date>2026-06-02T19:07:28Z</dc:date>
    </item>
    <item>
      <title>Secure, Modern Access to Azure Files on macOS with MS Entra ID</title>
      <link>https://techcommunity.microsoft.com/t5/azure-storage-blog/secure-modern-access-to-azure-files-on-macos-with-ms-entra-id/ba-p/4524077</link>
      <description>&lt;P&gt;&lt;SPAN data-contrast="auto"&gt;Enterprises,&amp;nbsp;large&amp;nbsp;and small,&amp;nbsp;rely on Azure Files for secure, scalable, and cost-efficient&amp;nbsp;file&amp;nbsp;storage.&amp;nbsp;Modern&amp;nbsp;workflows&amp;nbsp;today span devices, platforms, and geographies;&amp;nbsp;seamless,&amp;nbsp;and&amp;nbsp;secure access to shared data across every endpoint is critical to keeping teams productive and collaborative.&amp;nbsp;With&amp;nbsp;the&amp;nbsp;growing demand for access across every device, Azure Files now extends&amp;nbsp;secure access&amp;nbsp;to macOS with Entra ID authentication,&amp;nbsp;supporting design, creative, and AI teams where they work.&amp;nbsp;&lt;/SPAN&gt;&lt;SPAN data-ccp-props="{}"&gt;&amp;nbsp;&lt;/SPAN&gt;&lt;/P&gt;
&lt;P&gt;&lt;SPAN data-contrast="auto"&gt;Today, we are announcing&amp;nbsp;the&amp;nbsp;&lt;/SPAN&gt;&lt;SPAN data-contrast="auto"&gt;Public&amp;nbsp;Preview&lt;/SPAN&gt;&lt;SPAN data-contrast="auto"&gt;&amp;nbsp;of&amp;nbsp;MS&amp;nbsp;Entra&amp;nbsp;ID&amp;nbsp;based authentication for Azure Files on macOS.&amp;nbsp;Whether you are running creative production pipelines, design workflows, or AI workloads, macOS users can now access Azure file shares securely, meeting Microsoft Entra ID enterprise governance standards automatically and seamlessly, with no credential prompts, no storage account keys, and no complexity.&lt;/SPAN&gt;&lt;SPAN data-ccp-props="{}"&gt;&amp;nbsp;&lt;/SPAN&gt;&lt;/P&gt;
&lt;img /&gt;
&lt;H3 aria-level="2"&gt;&lt;SPAN data-contrast="none"&gt;&lt;SPAN data-ccp-parastyle="heading 2"&gt;Key benefits&lt;/SPAN&gt;&lt;/SPAN&gt;&lt;SPAN data-ccp-props="{&amp;quot;134245418&amp;quot;:true,&amp;quot;134245529&amp;quot;:true,&amp;quot;335559738&amp;quot;:160,&amp;quot;335559739&amp;quot;:80}"&gt;&amp;nbsp;&lt;/SPAN&gt;&lt;/H3&gt;
&lt;UL&gt;
&lt;LI aria-setsize="-1" data-leveltext="" data-font="Symbol" data-listid="1" data-list-defn-props="{&amp;quot;335552541&amp;quot;:1,&amp;quot;335559685&amp;quot;:720,&amp;quot;335559991&amp;quot;:360,&amp;quot;469769226&amp;quot;:&amp;quot;Symbol&amp;quot;,&amp;quot;469769242&amp;quot;:[8226],&amp;quot;469777803&amp;quot;:&amp;quot;left&amp;quot;,&amp;quot;469777804&amp;quot;:&amp;quot;&amp;quot;,&amp;quot;469777815&amp;quot;:&amp;quot;hybridMultilevel&amp;quot;}" data-aria-posinset="1" data-aria-level="1"&gt;&lt;STRONG&gt;&lt;SPAN data-contrast="auto"&gt;Enhanced&amp;nbsp;Security&amp;nbsp;posture:&lt;/SPAN&gt;&lt;/STRONG&gt;&lt;SPAN data-contrast="auto"&gt;&amp;nbsp;MacOS&amp;nbsp;users can now sign in to their device and open shared files in Finder with no credential prompts and no storage account keys.&amp;nbsp;Microsoft Entra ID governs access, conditional access policies, MFA requirements, and&amp;nbsp;MS Entra ID&amp;nbsp;governance applies&amp;nbsp;automatically&amp;nbsp;with&amp;nbsp;AES-256&amp;nbsp;encryption.&lt;/SPAN&gt;&lt;SPAN data-ccp-props="{}"&gt;&amp;nbsp;&lt;/SPAN&gt;&lt;/LI&gt;
&lt;/UL&gt;
&lt;UL&gt;
&lt;LI aria-setsize="-1" data-leveltext="" data-font="Symbol" data-listid="1" data-list-defn-props="{&amp;quot;335552541&amp;quot;:1,&amp;quot;335559685&amp;quot;:720,&amp;quot;335559991&amp;quot;:360,&amp;quot;469769226&amp;quot;:&amp;quot;Symbol&amp;quot;,&amp;quot;469769242&amp;quot;:[8226],&amp;quot;469777803&amp;quot;:&amp;quot;left&amp;quot;,&amp;quot;469777804&amp;quot;:&amp;quot;&amp;quot;,&amp;quot;469777815&amp;quot;:&amp;quot;hybridMultilevel&amp;quot;}" data-aria-posinset="2" data-aria-level="1"&gt;&lt;STRONG&gt;&lt;SPAN data-contrast="auto"&gt;Reduced operational overhead&lt;/SPAN&gt;&lt;/STRONG&gt;&lt;SPAN data-contrast="auto"&gt;: IT&amp;nbsp;admins&amp;nbsp;no longer need to manage storage account key distribution/rotation. Provisioning and deprovisioning access is handled through standard Entra ID group membership.&lt;/SPAN&gt;&lt;SPAN data-ccp-props="{}"&gt;&amp;nbsp;&lt;/SPAN&gt;&lt;/LI&gt;
&lt;/UL&gt;
&lt;UL&gt;
&lt;LI aria-setsize="-1" data-leveltext="" data-font="Symbol" data-listid="1" data-list-defn-props="{&amp;quot;335552541&amp;quot;:1,&amp;quot;335559685&amp;quot;:720,&amp;quot;335559991&amp;quot;:360,&amp;quot;469769226&amp;quot;:&amp;quot;Symbol&amp;quot;,&amp;quot;469769242&amp;quot;:[8226],&amp;quot;469777803&amp;quot;:&amp;quot;left&amp;quot;,&amp;quot;469777804&amp;quot;:&amp;quot;&amp;quot;,&amp;quot;469777815&amp;quot;:&amp;quot;hybridMultilevel&amp;quot;}" data-aria-posinset="3" data-aria-level="1"&gt;&lt;STRONG&gt;&lt;SPAN data-contrast="auto"&gt;No dependency on Active Directory&lt;/SPAN&gt;&lt;/STRONG&gt;&lt;SPAN data-contrast="auto"&gt;&lt;STRONG&gt;:&lt;/STRONG&gt; Organizations moving away from on-premises&amp;nbsp;infrastructure,&amp;nbsp;including&amp;nbsp;Active Directory,&amp;nbsp;can now give MacOS users full access to Azure file shares using cloud-based identities in MS Entra ID, with no domain controller&amp;nbsp;required. MacOS users get full parity with the traditional Windows SMB share experience.&lt;/SPAN&gt;&lt;SPAN data-ccp-props="{}"&gt;&amp;nbsp;&lt;/SPAN&gt;&lt;/LI&gt;
&lt;/UL&gt;
&lt;UL&gt;
&lt;LI aria-setsize="-1" data-leveltext="" data-font="Symbol" data-listid="1" data-list-defn-props="{&amp;quot;335552541&amp;quot;:1,&amp;quot;335559685&amp;quot;:720,&amp;quot;335559991&amp;quot;:360,&amp;quot;469769226&amp;quot;:&amp;quot;Symbol&amp;quot;,&amp;quot;469769242&amp;quot;:[8226],&amp;quot;469777803&amp;quot;:&amp;quot;left&amp;quot;,&amp;quot;469777804&amp;quot;:&amp;quot;&amp;quot;,&amp;quot;469777815&amp;quot;:&amp;quot;hybridMultilevel&amp;quot;}" data-aria-posinset="4" data-aria-level="1"&gt;&lt;STRONG&gt;&lt;SPAN data-contrast="auto"&gt;Identity Based Access model&lt;/SPAN&gt;&lt;/STRONG&gt;&lt;SPAN data-contrast="auto"&gt;&lt;STRONG&gt;:&lt;/STRONG&gt;&amp;nbsp;User authentication is&amp;nbsp;enforced with&amp;nbsp;Kerberos&amp;nbsp;and&amp;nbsp;share-level access is enforced through Azure RBAC.&amp;nbsp;File and folder permissions are controlled through NTFS ACLs, giving organizations precise, layered control.&lt;/SPAN&gt;&lt;SPAN data-ccp-props="{}"&gt;&amp;nbsp;&lt;/SPAN&gt;&lt;/LI&gt;
&lt;/UL&gt;
&lt;UL&gt;
&lt;LI aria-setsize="-1" data-leveltext="" data-font="Symbol" data-listid="1" data-list-defn-props="{&amp;quot;335552541&amp;quot;:1,&amp;quot;335559685&amp;quot;:720,&amp;quot;335559991&amp;quot;:360,&amp;quot;469769226&amp;quot;:&amp;quot;Symbol&amp;quot;,&amp;quot;469769242&amp;quot;:[8226],&amp;quot;469777803&amp;quot;:&amp;quot;left&amp;quot;,&amp;quot;469777804&amp;quot;:&amp;quot;&amp;quot;,&amp;quot;469777815&amp;quot;:&amp;quot;hybridMultilevel&amp;quot;}" data-aria-posinset="5" data-aria-level="1"&gt;&lt;STRONG&gt;&lt;SPAN data-contrast="auto"&gt;Enabling AI-Driven Workloads&lt;/SPAN&gt;&lt;/STRONG&gt;&lt;SPAN data-contrast="auto"&gt;:&amp;nbsp;SMB&amp;nbsp;shares&amp;nbsp;on macOS enables AI teams to seamlessly access and share large datasets, fueling faster experimentation and&amp;nbsp;streamlining&amp;nbsp;developer&amp;nbsp;and AI-generated&amp;nbsp;workflows.&lt;/SPAN&gt;&lt;SPAN data-ccp-props="{}"&gt;&amp;nbsp;&lt;/SPAN&gt;&lt;/LI&gt;
&lt;/UL&gt;
&lt;H3 aria-level="2"&gt;&lt;SPAN data-contrast="none"&gt;&lt;SPAN data-ccp-parastyle="heading 2"&gt;Partnership with Apple&lt;/SPAN&gt;&lt;/SPAN&gt;&lt;SPAN data-ccp-props="{&amp;quot;134245418&amp;quot;:true,&amp;quot;134245529&amp;quot;:true,&amp;quot;335559738&amp;quot;:160,&amp;quot;335559739&amp;quot;:80}"&gt;&amp;nbsp;&lt;/SPAN&gt;&lt;/H3&gt;
&lt;P&gt;&lt;SPAN data-contrast="auto"&gt;Azure Files support for macOS is built in close collaboration with Apple macOS SMB engineering team. The integration works with&amp;nbsp;&lt;/SPAN&gt;&lt;A href="https://support.apple.com/guide/deployment/platform-sso-for-macos-dep7bbb05313/web" target="_blank" rel="noopener"&gt;&lt;SPAN data-contrast="none"&gt;&lt;SPAN data-ccp-charstyle="Hyperlink"&gt;Apple’s Platform SSO&lt;/SPAN&gt;&lt;/SPAN&gt;&lt;/A&gt;&lt;SPAN data-contrast="auto"&gt;&amp;nbsp;and the&amp;nbsp;&lt;/SPAN&gt;&lt;A href="https://learn.microsoft.com/en-us/entra/identity-platform/apple-sso-plugin" target="_blank" rel="noopener"&gt;&lt;SPAN data-contrast="none"&gt;&lt;SPAN data-ccp-charstyle="Hyperlink"&gt;Microsoft Enterprise SSO plug-in&lt;/SPAN&gt;&lt;/SPAN&gt;&lt;/A&gt;&lt;SPAN data-contrast="auto"&gt;,&amp;nbsp;&lt;/SPAN&gt;&lt;SPAN data-contrast="auto"&gt;via MDM platforms such as Microsoft Intune.&amp;nbsp;This allows macOS devices to authenticate through Microsoft Entra ID with single sign-in. We are committed to continuing this partnership to ensure Mac users in enterprise environments have a first-class experience accessing cloud services.&lt;/SPAN&gt;&lt;SPAN data-ccp-props="{}"&gt;&amp;nbsp;&lt;/SPAN&gt;&lt;/P&gt;
&lt;H3 aria-level="2"&gt;&lt;SPAN data-contrast="none"&gt;&lt;SPAN data-ccp-parastyle="heading 2"&gt;Powering Diverse Workloads&amp;nbsp;&lt;/SPAN&gt;&lt;SPAN data-ccp-parastyle="heading 2"&gt;across&amp;nbsp;&lt;/SPAN&gt;&lt;SPAN data-ccp-parastyle="heading 2"&gt;Des&lt;/SPAN&gt;&lt;SPAN data-ccp-parastyle="heading 2"&gt;ign&lt;/SPAN&gt;&lt;SPAN data-ccp-parastyle="heading 2"&gt;,&lt;/SPAN&gt;&lt;/SPAN&gt;&lt;SPAN data-contrast="auto"&gt;&lt;SPAN data-ccp-parastyle="heading 2"&gt;&amp;nbsp;&lt;/SPAN&gt;&lt;/SPAN&gt;&lt;SPAN data-contrast="none"&gt;&lt;SPAN data-ccp-parastyle="heading 2"&gt;Developer&lt;/SPAN&gt;&lt;SPAN data-ccp-parastyle="heading 2"&gt;&amp;nbsp;&lt;/SPAN&gt;&lt;SPAN data-ccp-parastyle="heading 2"&gt;and&amp;nbsp;&lt;/SPAN&gt;&lt;SPAN data-ccp-parastyle="heading 2"&gt;Education&amp;nbsp;&lt;/SPAN&gt;&lt;SPAN data-ccp-parastyle="heading 2"&gt;Ent&lt;/SPAN&gt;&lt;SPAN data-ccp-parastyle="heading 2"&gt;er&lt;/SPAN&gt;&lt;SPAN data-ccp-parastyle="heading 2"&gt;prises&lt;/SPAN&gt;&lt;/SPAN&gt;&lt;SPAN data-ccp-props="{&amp;quot;134245418&amp;quot;:true,&amp;quot;134245529&amp;quot;:true,&amp;quot;335559738&amp;quot;:160,&amp;quot;335559739&amp;quot;:80}"&gt;&amp;nbsp;&lt;/SPAN&gt;&lt;/H3&gt;
&lt;H4 aria-level="3"&gt;&lt;SPAN data-contrast="none"&gt;&lt;SPAN data-ccp-parastyle="heading 3"&gt;Secure SMB access for creative workloads&lt;/SPAN&gt;&lt;/SPAN&gt;&lt;SPAN data-ccp-props="{&amp;quot;134245418&amp;quot;:true,&amp;quot;134245529&amp;quot;:true,&amp;quot;335559738&amp;quot;:160,&amp;quot;335559739&amp;quot;:80}"&gt;&amp;nbsp;&lt;/SPAN&gt;&lt;/H4&gt;
&lt;P&gt;&lt;SPAN data-contrast="auto"&gt;Creative workflows on macOS have historically required workarounds to reach centralized cloud storage, often meaning local copies, consumer file sharing tools, or storage account keys distributed to individuals. Azure Files gives creative teams direct access to shared project libraries and production files from Finder, with no syncing or local copies needed. For IT, setup is simple: assign the right RBAC role on the share, add users to an Entra group, and access is ready. No keys to distribute and no deep storage&amp;nbsp;expertise&amp;nbsp;required.&lt;/SPAN&gt;&lt;SPAN data-ccp-props="{}"&gt;&amp;nbsp;&lt;/SPAN&gt;&lt;/P&gt;
&lt;BLOCKQUOTE&gt;
&lt;P&gt;&lt;EM&gt;&lt;SPAN data-contrast="auto"&gt;"&lt;/SPAN&gt;&lt;SPAN data-contrast="auto"&gt;Secure access for our macOS users is a&amp;nbsp;&lt;/SPAN&gt;&lt;SPAN data-contrast="auto"&gt;&lt;STRONG&gt;gamechanger&lt;/STRONG&gt; for our creative teams&lt;/SPAN&gt;&lt;SPAN data-contrast="auto"&gt;. The ability to mount directly and access shared files securely — without keys, without workarounds — changes how we work. It’s&amp;nbsp;how&amp;nbsp;&lt;/SPAN&gt;&lt;STRONG&gt;&lt;SPAN data-contrast="auto"&gt;modern enterprise file access&lt;/SPAN&gt;&lt;/STRONG&gt;&lt;SPAN data-contrast="auto"&gt;&lt;STRONG&gt;&amp;nbsp;should feel&lt;/STRONG&gt;.&lt;/SPAN&gt;&lt;/EM&gt;&lt;SPAN data-contrast="auto"&gt;&lt;EM&gt;"&lt;/EM&gt; -Peter Day, Senior Engineer,&amp;nbsp;The Marketing Store&lt;/SPAN&gt;&lt;SPAN data-ccp-props="{}"&gt;&amp;nbsp;&lt;/SPAN&gt;&lt;/P&gt;
&lt;/BLOCKQUOTE&gt;
&lt;H4 aria-level="3"&gt;&lt;SPAN data-contrast="none"&gt;&lt;SPAN data-ccp-parastyle="heading 3"&gt;SMB shares streamline developer and AI-generated build workflows&lt;/SPAN&gt;&lt;/SPAN&gt;&lt;SPAN data-ccp-props="{&amp;quot;134245418&amp;quot;:true,&amp;quot;134245529&amp;quot;:true,&amp;quot;335559738&amp;quot;:160,&amp;quot;335559739&amp;quot;:80}"&gt;&amp;nbsp;&lt;/SPAN&gt;&lt;/H4&gt;
&lt;P&gt;&lt;SPAN data-contrast="auto"&gt;MacOS developers rely on local tools like Visual Studio Code, GitHub copilot, or fast iteration, but build artifacts, logs, and AI-generated outputs often end up fragmented across machines and pipelines.&lt;/SPAN&gt;&lt;SPAN data-ccp-props="{}"&gt;&amp;nbsp;&lt;/SPAN&gt;&lt;/P&gt;
&lt;P&gt;&lt;SPAN data-contrast="auto"&gt;With Azure Files, teams can use SMB shares as a centralized workspace for&amp;nbsp;build&amp;nbsp;outputs and shared assets. Mac build systems can write directly to a mounted share, making artifacts&amp;nbsp;immediately&amp;nbsp;accessible across developers, pipelines, and AI agents. DevOps teams gain a secure, identity-based storage layer using RBAC and Microsoft Entra, without managing keys or custom storage solutions.&lt;/SPAN&gt;&lt;SPAN data-ccp-props="{}"&gt;&amp;nbsp;&lt;/SPAN&gt;&lt;/P&gt;
&lt;H4 aria-level="3"&gt;&lt;SPAN data-contrast="none"&gt;&lt;SPAN data-ccp-parastyle="heading 3"&gt;Enabl&lt;/SPAN&gt;&lt;SPAN data-ccp-parastyle="heading 3"&gt;e&lt;/SPAN&gt;&lt;SPAN data-ccp-parastyle="heading 3"&gt;&amp;nbsp;&lt;/SPAN&gt;&lt;SPAN data-ccp-parastyle="heading 3"&gt;co&lt;/SPAN&gt;&lt;SPAN data-ccp-parastyle="heading 3"&gt;ll&lt;/SPAN&gt;&lt;SPAN data-ccp-parastyle="heading 3"&gt;a&lt;/SPAN&gt;&lt;SPAN data-ccp-parastyle="heading 3"&gt;boration&amp;nbsp;&lt;/SPAN&gt;&lt;SPAN data-ccp-parastyle="heading 3"&gt;across mixed&lt;/SPAN&gt;&lt;SPAN data-ccp-parastyle="heading 3"&gt;&amp;nbsp;plat&lt;/SPAN&gt;&lt;SPAN data-ccp-parastyle="heading 3"&gt;form&lt;/SPAN&gt;&lt;SPAN data-ccp-parastyle="heading 3"&gt;&amp;nbsp;environments&lt;/SPAN&gt;&lt;/SPAN&gt;&lt;SPAN data-ccp-props="{&amp;quot;134245418&amp;quot;:true,&amp;quot;134245529&amp;quot;:true,&amp;quot;335559738&amp;quot;:160,&amp;quot;335559739&amp;quot;:80}"&gt;&amp;nbsp;&lt;/SPAN&gt;&lt;/H4&gt;
&lt;P&gt;&lt;SPAN data-contrast="auto"&gt;Mac users should not be a special case. Azure Files gives MacOS users the same governed, identity-based access to shared storage that Windows users have always had. Access is provisioned through Entra ID, enforced through RBAC, and managed without a separate workflow, separate keys, or separate infrastructure. For large organizations running mixed-OS environments, this means a single, consistent access model&amp;nbsp;tied to&amp;nbsp;the&amp;nbsp;user and&amp;nbsp;not&amp;nbsp;a&amp;nbsp;device&amp;nbsp;–&amp;nbsp;the&amp;nbsp;user&amp;nbsp;can&amp;nbsp;seamlessly&amp;nbsp;access the&amp;nbsp;SMB share&amp;nbsp;across&amp;nbsp;their&amp;nbsp;Windows&amp;nbsp;and&amp;nbsp;Mac&amp;nbsp;devices.&lt;/SPAN&gt;&lt;SPAN data-ccp-props="{}"&gt;&amp;nbsp;&lt;/SPAN&gt;&lt;/P&gt;
&lt;BLOCKQUOTE&gt;
&lt;P&gt;&lt;EM&gt;&lt;SPAN data-contrast="none"&gt;“&lt;SPAN data-olk-copy-source="MessageBody"&gt;By supporting Kerberos authentication for Azure Files on Mac devices, Microsoft delivers &lt;STRONG&gt;secure, consistent access&lt;/STRONG&gt; for organizations operating &lt;STRONG&gt;mixed-OS environments.&lt;/STRONG&gt; It addresses a long-standing enterprise gap by extending&lt;STRONG&gt; centrally governed identity controls&lt;/STRONG&gt; to all users, regardless of device—helping organizations simplify access management and &lt;STRONG&gt;maintain trust at scale&lt;/STRONG&gt;.&lt;/SPAN&gt;&lt;/SPAN&gt;&lt;SPAN data-contrast="none"&gt;”&lt;/SPAN&gt;&lt;/EM&gt;&lt;SPAN data-contrast="auto"&gt;&lt;EM&gt;&amp;nbsp;&lt;/EM&gt;-Preetham G.K., CDL, Accenture&lt;/SPAN&gt;&lt;SPAN data-ccp-props="{&amp;quot;335557856&amp;quot;:16777215,&amp;quot;335559739&amp;quot;:0}"&gt;&amp;nbsp;&lt;/SPAN&gt;&lt;/P&gt;
&lt;/BLOCKQUOTE&gt;
&lt;H4 aria-level="3"&gt;&lt;SPAN data-contrast="none"&gt;&lt;SPAN data-ccp-parastyle="heading 3"&gt;Mo&lt;/SPAN&gt;&lt;SPAN data-ccp-parastyle="heading 3"&gt;dernize&amp;nbsp;&lt;/SPAN&gt;&lt;SPAN data-ccp-parastyle="heading 3"&gt;In&lt;/SPAN&gt;&lt;SPAN data-ccp-parastyle="heading 3"&gt;frast&lt;/SPAN&gt;&lt;SPAN data-ccp-parastyle="heading 3"&gt;ruct&lt;/SPAN&gt;&lt;SPAN data-ccp-parastyle="heading 3"&gt;ure&lt;/SPAN&gt;&lt;SPAN data-ccp-parastyle="heading 3"&gt;&amp;nbsp;&lt;/SPAN&gt;&lt;SPAN data-ccp-parastyle="heading 3"&gt;and&amp;nbsp;&lt;/SPAN&gt;&lt;SPAN data-ccp-parastyle="heading 3"&gt;se&lt;/SPAN&gt;&lt;SPAN data-ccp-parastyle="heading 3"&gt;cure a&lt;/SPAN&gt;&lt;SPAN data-ccp-parastyle="heading 3"&gt;ccess&lt;/SPAN&gt;&lt;SPAN data-ccp-parastyle="heading 3"&gt;&amp;nbsp;&lt;/SPAN&gt;&lt;SPAN data-ccp-parastyle="heading 3"&gt;for&amp;nbsp;&lt;/SPAN&gt;&lt;SPAN data-ccp-parastyle="heading 3"&gt;Education&lt;/SPAN&gt;&lt;SPAN data-ccp-parastyle="heading 3"&gt;al&amp;nbsp;&lt;/SPAN&gt;&lt;SPAN data-ccp-parastyle="heading 3"&gt;Institutions&lt;/SPAN&gt;&lt;/SPAN&gt;&lt;SPAN data-ccp-props="{&amp;quot;134245418&amp;quot;:true,&amp;quot;134245529&amp;quot;:true,&amp;quot;335559738&amp;quot;:160,&amp;quot;335559739&amp;quot;:80}"&gt;&amp;nbsp;&lt;/SPAN&gt;&lt;/H4&gt;
&lt;P&gt;&lt;SPAN data-contrast="auto"&gt;Institutions standardizing on macOS have faced a hard tradeoff:&amp;nbsp;maintain&amp;nbsp;costly on-premises infrastructure at every&amp;nbsp;site or&amp;nbsp;accept that MacOS&amp;nbsp;users fall back on personal drives and consumer file sharing. Neither is acceptable&amp;nbsp;at&amp;nbsp;scale. Azure Files removes the tradeoff. Students, faculty, and staff access shared repositories and course materials directly from&amp;nbsp;an&amp;nbsp;SMB share&amp;nbsp;over&amp;nbsp;Finder using their Entra ID credentials.&amp;nbsp;Access management can&amp;nbsp;be controlled&amp;nbsp;through group membership, with no per-site infrastructure and no manual credential management.&lt;/SPAN&gt;&lt;SPAN data-ccp-props="{}"&gt;&amp;nbsp;&lt;/SPAN&gt;&lt;/P&gt;
&lt;H3 aria-level="2"&gt;&lt;SPAN data-contrast="none"&gt;&lt;SPAN data-ccp-parastyle="heading 2"&gt;Get started with Azure Files Entra Kerberos authentication for macOS&lt;/SPAN&gt;&lt;/SPAN&gt;&lt;SPAN data-ccp-props="{&amp;quot;134245418&amp;quot;:true,&amp;quot;134245529&amp;quot;:true,&amp;quot;335559738&amp;quot;:160,&amp;quot;335559739&amp;quot;:80}"&gt;&amp;nbsp;&lt;/SPAN&gt;&lt;/H3&gt;
&lt;P&gt;&lt;SPAN data-contrast="auto"&gt;Start&amp;nbsp;leveraging&amp;nbsp;secure, identity-based file access on macOS today at no added cost. Explore&amp;nbsp;our&amp;nbsp;&lt;/SPAN&gt;&lt;A class="lia-external-url" href="https://learn.microsoft.com/en-us/azure/storage/files/identity-kerberos-authentication-macos?source=docs" target="_blank" rel="noopener"&gt;documentation&lt;/A&gt;&lt;SPAN data-contrast="auto"&gt;&amp;nbsp;for step-by-step guidance. Whether you are onboarding new Mac users or modernizing an existing deployment, this feature gives your organization a simple path to identity management for Azure Files on macOS. Make your Mac workloads ready for the future!&lt;/SPAN&gt;&lt;SPAN data-ccp-props="{}"&gt;&amp;nbsp;&lt;/SPAN&gt;&lt;/P&gt;
&lt;P&gt;&lt;SPAN data-contrast="auto"&gt;For any questions, please reach out to the team at&amp;nbsp;&lt;/SPAN&gt;&lt;A href="mailto:azurefiles@microsoft.com" target="_blank" rel="noopener"&gt;&lt;SPAN data-contrast="none"&gt;&lt;SPAN data-ccp-charstyle="Hyperlink"&gt;azurefiles@microsoft.com&lt;/SPAN&gt;&lt;/SPAN&gt;&lt;/A&gt;&lt;SPAN data-contrast="none"&gt;&lt;SPAN data-ccp-charstyle="Heading 2 Char"&gt;.&lt;/SPAN&gt;&lt;/SPAN&gt;&lt;SPAN data-ccp-props="{}"&gt;&amp;nbsp;&lt;/SPAN&gt;&lt;/P&gt;</description>
      <pubDate>Tue, 02 Jun 2026 18:55:03 GMT</pubDate>
      <guid>https://techcommunity.microsoft.com/t5/azure-storage-blog/secure-modern-access-to-azure-files-on-macos-with-ms-entra-id/ba-p/4524077</guid>
      <dc:creator>grace_kim</dc:creator>
      <dc:date>2026-06-02T18:55:03Z</dc:date>
    </item>
    <item>
      <title>From Scale to Breakthrough: Azure NetApp Files Sets a New Cloud Benchmark for EDA Performance</title>
      <link>https://techcommunity.microsoft.com/t5/azure-storage-blog/from-scale-to-breakthrough-azure-netapp-files-sets-a-new-cloud/ba-p/4520890</link>
      <description>&lt;H1&gt;Table of Contents&lt;/H1&gt;
&lt;P&gt;&lt;A href="#community--1-_Toc230032971" target="_self" rel="noopener"&gt;Introduction&lt;/A&gt;&lt;/P&gt;
&lt;P&gt;&lt;A href="#community--1-_Toc230032972" target="_self" rel="noopener"&gt;New benchmark proof with large volume breakthrough mode&lt;/A&gt;&lt;/P&gt;
&lt;P class="lia-indent-padding-left-30px"&gt;&lt;A href="#community--1-_Toc230032973" target="_self" rel="noopener"&gt;What is Azure NetApp Files large volume breakthrough mode?&lt;/A&gt;&lt;/P&gt;
&lt;P class="lia-indent-padding-left-30px"&gt;&lt;A href="#community--1-_Toc230032974" target="_self" rel="noopener"&gt;Explore the latest Azure NetApp Files SPECstorage® 2020 publications&lt;/A&gt;&lt;/P&gt;
&lt;P&gt;&lt;A href="#community--1-_Toc230032975" target="_self" rel="noopener"&gt;Results that Speak for Themselves&lt;/A&gt;&lt;/P&gt;
&lt;P class="lia-indent-padding-left-30px"&gt;&lt;A href="#community--1-_Toc230032976" target="_self" rel="noopener"&gt;Single large volume breakthrough mode&lt;/A&gt;&lt;/P&gt;
&lt;P class="lia-indent-padding-left-30px"&gt;&lt;A href="#community--1-_Toc230032977" target="_self" rel="noopener"&gt;Large volume breakthrough mode at scale&lt;/A&gt;&lt;/P&gt;
&lt;P&gt;&lt;A href="#community--1-_Toc230032978" target="_self" rel="noopener"&gt;Performance that Scales with Your Design Cycles&lt;/A&gt;&lt;/P&gt;
&lt;P&gt;&lt;A href="#community--1-_Toc230032979" target="_self" rel="noopener"&gt;From large volume scale… to breakthrough mode scale&lt;/A&gt;&lt;/P&gt;
&lt;P&gt;&lt;A href="#community--1-_Toc230032980" target="_self" rel="noopener"&gt;What Storage Performance Means For EDA Velocity&lt;/A&gt;&lt;/P&gt;
&lt;P&gt;&lt;A href="#community--1-_Toc230032981" target="_self" rel="noopener"&gt;Learn more&lt;/A&gt;&lt;/P&gt;
&lt;H1&gt;&lt;A class="lia-anchor" target="_blank" name="_Toc230032971"&gt;&lt;/A&gt;Introduction&lt;/H1&gt;
&lt;P&gt;In his latest &lt;SPAN style="color: rgb(30, 30, 30);"&gt;&lt;A class="lia-external-url" href="https://azure.microsoft.com/en-us/blog/azure-netapp-files-for-eda-workloads-from-revolution-to-breakthrough-at-scale/" target="_blank" rel="noopener"&gt;Azure NetApp Files for EDA workloads: From revolution to breakthrough at scale&lt;/A&gt; post &lt;/SPAN&gt;&lt;A class="lia-external-url" href="https://azure.microsoft.com/en-us/blog/author/aung-oo/" target="_blank"&gt;Aung Oo&lt;/A&gt; – Vice President, Azure Storage – explored a fundamental shift in Electronic Design Automation (EDA) infrastructure: cloud storage no longer needs to tradeoff between scale and predictable performance. It unpacked the historical compromises EDA teams made to balance amongst extreme concurrently, shared datasets and the strict latency requirements and how&amp;nbsp;&lt;A class="lia-external-url" href="https://learn.microsoft.com/azure/azure-netapp-files/azure-netapp-files-introduction" target="_blank" rel="noopener"&gt;Azure NetApp Files&lt;/A&gt; was architected to solve these challenges with consistent, linear scaling behavior.&lt;/P&gt;
&lt;P&gt;Just as importantly, that post presented independently validated &lt;A class="lia-external-url" href="https://www.spec.org/storage2020/" target="_blank" rel="noopener"&gt;SPECstorage® Solution 2020&lt;/A&gt; benchmarks showing that Azure NetApp Files can support real-world EDA workloads at scale while sustaining sub-millisecond latency – shifting cloud storage from a bottleneck in modern chip design pipelines to an enabler.&lt;/P&gt;
&lt;P&gt;&lt;STRONG&gt;This blog builds on that foundation.&lt;/STRONG&gt;&lt;/P&gt;
&lt;P&gt;With the introduction of &lt;A class="lia-external-url" href="https://learn.microsoft.com/azure/azure-netapp-files/whats-new#november-2025" target="_blank" rel="noopener"&gt;Azure NetApp Files large volume breakthrough mode&lt;/A&gt;, the conversation shifts from proving scalable performance to redefining its upper limits. Where earlier results established predictable scaling, breakthrough mode pushes the concurrency envelope further – allowing thousands of parallel jobs to share storage while maintaining consistent latency under sustained load.&lt;/P&gt;
&lt;P&gt;The result is a new level of cloud performance for EDA: not just solving scale challenges, but delivering a true performance breakthrough, now validated by the latest SPECstorage® Solution 2020 benchmark publications.&lt;/P&gt;
&lt;P&gt;In this blog, we take a closer look at two new &lt;A class="lia-external-url" href="https://www.spec.org/storage2020/results/eda_blended/" target="_blank" rel="noopener"&gt;SPECstorage® Solution 2020 EDA_BLENDED benchmark submissions&lt;/A&gt; that validate the impact of large volume breakthrough mode, both for a single volume configuration and at scale, and place those results in real-world context.&lt;/P&gt;
&lt;P&gt;Co-authors:&lt;/P&gt;
&lt;UL&gt;
&lt;LI&gt;&lt;A class="lia-external-url" href="https://www.linkedin.com/in/ron-hogue-8656a94/" target="_blank" rel="noopener"&gt;Ron Hogue&lt;/A&gt;, Sr. Program Manager&lt;/LI&gt;
&lt;LI&gt;&lt;A class="lia-external-url" href="https://www.linkedin.com/in/ranga-sankar-2594401/" target="_blank" rel="noopener"&gt;Ranga Sankar&lt;/A&gt;, Azure NetApp Files Product Manager&lt;/LI&gt;
&lt;LI&gt;&lt;A class="lia-external-url" href="https://www.linkedin.com/in/andy-chan-3720418/" target="_blank" rel="noopener"&gt;Andy Chan&lt;/A&gt;, Azure NetApp Files HPC/EDA Principal Product Manager&lt;/LI&gt;
&lt;LI&gt;&lt;A class="lia-external-url" href="https://www.linkedin.com/in/gstrother/" target="_blank" rel="noopener"&gt;George Strother&lt;/A&gt;, Senior Cloud Solutions Architect, NetApp&lt;/LI&gt;
&lt;LI&gt;&lt;A class="lia-external-url" href="https://www.linkedin.com/in/cassmorgenstern/" target="_blank" rel="noopener"&gt;Cass Morgenstern&lt;/A&gt;, Director of Engineering - Office the CTO, NetApp&lt;/LI&gt;
&lt;/UL&gt;
&lt;H1&gt;&lt;A class="lia-anchor" target="_blank" name="_Toc230032972"&gt;&lt;/A&gt;New benchmark proof with large volume breakthrough mode&lt;/H1&gt;
&lt;P&gt;Following the same industry‑standard SPECstorage® Solution 2020 EDA_BLENDED workload methodology used in our prior large volume submissions, the newly published results evaluate:&lt;/P&gt;
&lt;UL&gt;
&lt;LI&gt;&lt;STRONG&gt;Azure NetApp Files large volume breakthrough mode&lt;/STRONG&gt;&lt;/LI&gt;
&lt;LI&gt;&lt;STRONG&gt;Azure NetApp Files large volume breakthrough mode scale&lt;/STRONG&gt;&lt;/LI&gt;
&lt;/UL&gt;
&lt;P&gt;Together, these independently audited benchmark publications validate how breakthrough mode enable Azure NetApp Files large volumes to sustain higher concurrency levels while maintaining the consistent, sub‑millisecond response times that modern chip design pipelines depend on.&lt;/P&gt;
&lt;H2&gt;&lt;A class="lia-anchor" target="_blank" name="_Toc230032973"&gt;&lt;/A&gt;What is Azure NetApp Files large volume breakthrough mode?&lt;/H2&gt;
&lt;P&gt;Azure NetApp Files large volume breakthrough mode unlocks a new level of scale and performance for the most demanding EDA workloads. By combining massive concurrency with consistent sub-millisecond latency, it helps modern chip design pipelines move faster, scale further, and operate without compromise.&lt;/P&gt;
&lt;P&gt;For a quick overview, check out the Quick Byte video:&lt;/P&gt;
&lt;div data-video-id="https://www.youtube.com/watch?v=6ISCwDirLs0/1779133900680" data-video-remote-vid="https://www.youtube.com/watch?v=6ISCwDirLs0/1779133900680" class="lia-video-container lia-media-is-center lia-media-size-large"&gt;&lt;iframe src="https://cdn.embedly.com/widgets/media.html?src=https%3A%2F%2Fwww.youtube.com%2Fembed%2F6ISCwDirLs0%3Ffeature%3Doembed&amp;amp;display_name=YouTube&amp;amp;url=https%3A%2F%2Fwww.youtube.com%2Fwatch%3Fv%3D6ISCwDirLs0&amp;amp;image=https%3A%2F%2Fi.ytimg.com%2Fvi%2F6ISCwDirLs0%2Fhqdefault.jpg&amp;amp;type=text%2Fhtml&amp;amp;schema=youtube" allowfullscreen="" style="max-width: 100%"&gt;&lt;/iframe&gt;&lt;/div&gt;
&lt;H2&gt;&lt;A class="lia-anchor" target="_blank" name="_Toc230032974"&gt;&lt;/A&gt;Explore the latest Azure NetApp Files SPECstorage® 2020 publications&lt;/H2&gt;
&lt;P&gt;These two newly released benchmark publications showcase the exceptional performance and scalability of Azure NetApp Files’ large volume breakthrough mode for EDA workloads.&lt;/P&gt;
&lt;P class="lia-indent-padding-left-30px"&gt;&lt;STRONG&gt;Azure NetApp Files large volume breakthrough mode:&amp;nbsp;&lt;/STRONG&gt;&lt;BR /&gt;&lt;A class="lia-external-url" href="https://www.spec.org/storage2020/results/res2026q2/storage2020-20260227-00147.html" target="_blank" rel="noopener"&gt;https://www.spec.org/storage2020/results/res2026q2/storage2020-20260227-00147.html&lt;/A&gt;&lt;/P&gt;
&lt;P class="lia-indent-padding-left-30px"&gt;&lt;STRONG&gt;Azure NetApp Files large volume breakthrough mode scale: &lt;BR /&gt;&lt;/STRONG&gt;&lt;A class="lia-external-url" href="https://www.spec.org/storage2020/results/res2026q2/storage2020-20260227-00148.html" target="_blank" rel="noopener"&gt;https://www.spec.org/storage2020/results/res2026q2/storage2020-20260227-00148.html&lt;/A&gt;&amp;nbsp;&lt;/P&gt;
&lt;H1&gt;&lt;A class="lia-anchor" target="_blank" name="_Toc230032975"&gt;&lt;/A&gt;Results that Speak for Themselves&lt;/H1&gt;
&lt;P&gt;This chapter presents the latest benchmark results for Azure NetApp Files in full detail, highlighting the significant performance advantages enabled by large volume breakthrough mode. Through both single and scaled large volume configurations, these results demonstrate the ability to support demanding EDA workloads with exceptional throughput and consistent low latency. The findings underscore Azure NetApp Files’ capability to meet the rigorous requirements of modern chip design pipelines, ensuring reliability and efficiency at every scale.&lt;/P&gt;
&lt;H2&gt;&lt;A class="lia-anchor" target="_blank" name="_Toc230032976"&gt;&lt;/A&gt;Single large volume breakthrough mode&lt;/H2&gt;
&lt;P&gt;The architecture shown in the diagram was specifically designed to generate the load necessary for producing the benchmark results discussed in this section.&lt;/P&gt;
&lt;img /&gt;
&lt;DIV class="styles_lia-table-wrapper__h6Xo9 styles_table-responsive__MW0lN"&gt;&lt;table class="lia-background-color-5" border="1" style="width: 100%; border-width: 1px;"&gt;&lt;tbody&gt;&lt;tr&gt;&lt;td&gt;
&lt;P&gt;&lt;STRONG&gt;The result:&lt;/STRONG&gt;&lt;/P&gt;
&lt;P&gt;The Azure NetApp Files large volume breakthrough mode configuration reached&amp;nbsp;&lt;STRONG&gt;2,880&lt;/STRONG&gt; SPECstorage® Solution 2020 EDA_BLENDED JOBS with an overall response time of &lt;STRONG&gt;0.51 ms&lt;/STRONG&gt;.&lt;/P&gt;
&lt;/td&gt;&lt;/tr&gt;&lt;/tbody&gt;&lt;colgroup&gt;&lt;col style="width: 100.00%" /&gt;&lt;/colgroup&gt;&lt;/table&gt;&lt;/DIV&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;img /&gt;
&lt;DIV class="styles_lia-table-wrapper__h6Xo9 styles_table-responsive__MW0lN"&gt;&lt;table class="lia-background-color-5" border="1" style="width: 100%; border-width: 1px;"&gt;&lt;tbody&gt;&lt;tr&gt;&lt;td&gt;
&lt;P&gt;A single Azure NetApp Files large volume breakthrough mode delivered&amp;nbsp;&lt;STRONG&gt;20,910 MB/s&lt;/STRONG&gt;&amp;nbsp;(19,941 MiB/s) of throughput and&amp;nbsp;&lt;STRONG&gt;1,296,040 operations per second&lt;/STRONG&gt;&amp;nbsp;at peak.&lt;/P&gt;
&lt;P&gt;Throughout the iterations, sub-millisecond latency was observed with latency only breaching 1 ms at the very peak.&lt;/P&gt;
&lt;/td&gt;&lt;/tr&gt;&lt;/tbody&gt;&lt;colgroup&gt;&lt;col style="width: 100.00%" /&gt;&lt;/colgroup&gt;&lt;/table&gt;&lt;/DIV&gt;
&lt;P&gt;&lt;BR /&gt;This level of performance demonstrates how a single large volume deployment can sustain thousands of concurrent EDA workloads – while preserving the latency profile required for simulation, synthesis, and verification tasks.&lt;/P&gt;
&lt;H2&gt;&lt;A class="lia-anchor" target="_blank" name="_Toc230032977"&gt;&lt;/A&gt;Large volume breakthrough mode at scale&lt;/H2&gt;
&lt;P&gt;The architecture shown in the diagram was specifically designed to generate the load necessary for producing the benchmark results discussed in this section. For resource availability reasons, six volumes were distributed across multiple Azure regions and availability zones, though this is not a requirement. Deployments can use any number of volumes, and regional / zonal distribution is optional – only necessary when targeting specific availability or resilience goals.&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;img /&gt;
&lt;DIV class="styles_lia-table-wrapper__h6Xo9 styles_table-responsive__MW0lN"&gt;&lt;table class="lia-background-color-5" border="1" style="width: 100%; border-width: 1px;"&gt;&lt;tbody&gt;&lt;tr&gt;&lt;td&gt;
&lt;P&gt;&lt;STRONG&gt;The result:&lt;/STRONG&gt;&lt;/P&gt;
&lt;P&gt;The Azure NetApp Files large volume breakthrough mode scale configuration reached&amp;nbsp;&lt;STRONG&gt;17,280&lt;/STRONG&gt; SPECstorage® Solution 2020 EDA_BLENDED JOBS with an overall response time of &lt;STRONG&gt;0.60 ms&lt;/STRONG&gt;.&lt;/P&gt;
&lt;/td&gt;&lt;/tr&gt;&lt;/tbody&gt;&lt;colgroup&gt;&lt;col style="width: 100.00%" /&gt;&lt;/colgroup&gt;&lt;/table&gt;&lt;/DIV&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;img /&gt;
&lt;DIV class="styles_lia-table-wrapper__h6Xo9 styles_table-responsive__MW0lN"&gt;&lt;table class="lia-background-color-5" border="1" style="width: 100%; border-width: 1px;"&gt;&lt;tbody&gt;&lt;tr&gt;&lt;td&gt;
&lt;P&gt;At this scale, the aggregate throughput was&amp;nbsp;&lt;STRONG&gt;125,474 MB/s&lt;/STRONG&gt;&amp;nbsp;(119,661&amp;nbsp;MiB/s), with&amp;nbsp;&lt;STRONG&gt;7,776,147 operations per second&lt;/STRONG&gt; on the benchmark.&lt;/P&gt;
&lt;P&gt;Again, throughout the iterations, sub-millisecond latency was observed with latency only breaching 1 ms at the peak.&lt;/P&gt;
&lt;/td&gt;&lt;/tr&gt;&lt;/tbody&gt;&lt;colgroup&gt;&lt;col style="width: 100.00%" /&gt;&lt;/colgroup&gt;&lt;/table&gt;&lt;/DIV&gt;
&lt;P&gt;Even at six times the workload scale, latency remains consistently sub‑millisecond – enabling highly parallel EDA workflows to scale without introducing storage‑induced bottlenecks.&lt;/P&gt;
&lt;P&gt;The multi-region/zone configuration was selected for resource availability reasons. This configuration is not a requirement, and deployments can use any number of volumes – by no means limited to six. A configuration can scale to any number of volumes, provided sufficient large volume capacity is available.&lt;/P&gt;
&lt;H1&gt;&lt;A class="lia-anchor" target="_blank" name="_Toc230032978"&gt;&lt;/A&gt;Performance that Scales with Your Design Cycles&lt;/H1&gt;
&lt;P&gt;Across breakthrough mode and breakthrough mode scale configurations, latency remains tightly bounded as workload concurrency increases — indicating that Azure NetApp Files large volume breakthrough mode enables linear scalability characteristics without introducing latency instability under load.&lt;/P&gt;
&lt;img /&gt;&lt;img /&gt;&lt;img /&gt;
&lt;DIV class="styles_lia-table-wrapper__h6Xo9 styles_table-responsive__MW0lN"&gt;&lt;table class="lia-background-color-5" border="1" style="width: 100%; border-width: 1px;"&gt;&lt;tbody&gt;&lt;tr&gt;&lt;td&gt;
&lt;P&gt;&lt;STRONG&gt;EDA_BLENDED Metric&lt;/STRONG&gt;&lt;/P&gt;
&lt;/td&gt;&lt;td&gt;
&lt;P&gt;&lt;STRONG&gt;Large volume&lt;/STRONG&gt;&lt;/P&gt;
&lt;P&gt;&lt;STRONG&gt;breakthrough mode&lt;/STRONG&gt;&lt;/P&gt;
&lt;/td&gt;&lt;td&gt;
&lt;P&gt;&lt;STRONG&gt;Large volume&lt;/STRONG&gt;&lt;/P&gt;
&lt;P&gt;&lt;STRONG&gt;breakthrough mode scale&lt;/STRONG&gt;&lt;/P&gt;
&lt;/td&gt;&lt;td&gt;
&lt;P&gt;&lt;STRONG&gt;Factor&lt;/STRONG&gt;&lt;/P&gt;
&lt;/td&gt;&lt;/tr&gt;&lt;tr&gt;&lt;td&gt;
&lt;P&gt;&lt;STRONG&gt;Job Sets&lt;/STRONG&gt;&lt;/P&gt;
&lt;/td&gt;&lt;td&gt;
&lt;P&gt;2,880&lt;/P&gt;
&lt;/td&gt;&lt;td&gt;
&lt;P&gt;17,280&lt;/P&gt;
&lt;/td&gt;&lt;td&gt;
&lt;P&gt;6.00x&lt;/P&gt;
&lt;/td&gt;&lt;/tr&gt;&lt;tr&gt;&lt;td&gt;
&lt;P&gt;&lt;STRONG&gt;Throughput (MB/s)&lt;/STRONG&gt;&lt;/P&gt;
&lt;/td&gt;&lt;td&gt;
&lt;P&gt;20,910&lt;/P&gt;
&lt;/td&gt;&lt;td&gt;
&lt;P&gt;125,474&lt;/P&gt;
&lt;/td&gt;&lt;td&gt;
&lt;P&gt;6.00x&lt;/P&gt;
&lt;/td&gt;&lt;/tr&gt;&lt;tr&gt;&lt;td&gt;
&lt;P&gt;&lt;STRONG&gt;Operations/second&lt;/STRONG&gt;&lt;/P&gt;
&lt;/td&gt;&lt;td&gt;
&lt;P&gt;1,296,040&lt;/P&gt;
&lt;/td&gt;&lt;td&gt;
&lt;P&gt;7,776,147&lt;/P&gt;
&lt;/td&gt;&lt;td&gt;
&lt;P&gt;6.00x&lt;/P&gt;
&lt;/td&gt;&lt;/tr&gt;&lt;tr&gt;&lt;td&gt;
&lt;P&gt;&lt;STRONG&gt;ORT (ms)&lt;/STRONG&gt;&lt;/P&gt;
&lt;/td&gt;&lt;td&gt;
&lt;P&gt;0.51&lt;/P&gt;
&lt;/td&gt;&lt;td&gt;
&lt;P&gt;0.60&lt;/P&gt;
&lt;/td&gt;&lt;td&gt;
&lt;P&gt;1.18x&lt;/P&gt;
&lt;/td&gt;&lt;/tr&gt;&lt;/tbody&gt;&lt;colgroup&gt;&lt;col style="width: 25.00%" /&gt;&lt;col style="width: 25.00%" /&gt;&lt;col style="width: 25.00%" /&gt;&lt;col style="width: 25.00%" /&gt;&lt;/colgroup&gt;&lt;/table&gt;&lt;/DIV&gt;
&lt;P&gt;This predictable performance and scale behavior is critical for distributed EDA environments, where design teams increasingly rely on massively parallel simulation and verification jobs to accelerate time‑to‑tape‑out.&lt;/P&gt;
&lt;H1&gt;&lt;A class="lia-anchor" target="_blank" name="_Toc230032979"&gt;&lt;/A&gt;From large volume scale… to breakthrough mode scale&lt;/H1&gt;
&lt;P&gt;Compared to &lt;A class="lia-internal-link lia-internal-url lia-internal-url-content-type-blog" href="https://techcommunity.microsoft.com/blog/azurearchitectureblog/validating-scalable-eda-storage-performance-azure-netapp-files-and-specstorage-s/4459517" target="_blank" rel="noopener" data-lia-auto-title="previously published (non‑breakthrough mode) large volume results" data-lia-auto-title-active="0"&gt;previously published (non‑breakthrough mode) large volume results&lt;/A&gt; from October 2025,, large volume breakthrough mode expands the achievable throughput envelope while even lowering observed overall response times as workload levels increase.&lt;/P&gt;
&lt;img /&gt;&lt;img /&gt;
&lt;P&gt;This allows Azure NetApp Files to deliver:&lt;/P&gt;
&lt;UL&gt;
&lt;LI&gt;Higher aggregate throughput ceilings&lt;/LI&gt;
&lt;LI&gt;Greater concurrency tolerance&lt;/LI&gt;
&lt;LI&gt;Consistent latency behavior under scaled-out EDA job submission&lt;/LI&gt;
&lt;/UL&gt;
&lt;P&gt;– all without architectural changes to application workflows.&lt;/P&gt;
&lt;DIV class="styles_lia-table-wrapper__h6Xo9 styles_table-responsive__MW0lN"&gt;&lt;table class="lia-background-color-1" border="1" style="width: 100%; border-width: 1px;"&gt;&lt;tbody&gt;&lt;tr&gt;&lt;td&gt;
&lt;P class="lia-align-center"&gt;&lt;STRONG&gt;More Throughput + Consistent Low Latency = More Jobs!&lt;/STRONG&gt;&lt;/P&gt;
&lt;/td&gt;&lt;/tr&gt;&lt;/tbody&gt;&lt;colgroup&gt;&lt;col style="width: 100.00%" /&gt;&lt;/colgroup&gt;&lt;/table&gt;&lt;/DIV&gt;
&lt;H1&gt;&lt;A class="lia-anchor" target="_blank" name="_Toc230032980"&gt;&lt;/A&gt;What Storage Performance Means For EDA Velocity&lt;/H1&gt;
&lt;P&gt;Modern EDA workflows are built around rapid, iterative design loops, where architects and physical designers continuously refine Register-Transfer Level (RTL), run regressions, analyze timing, fix violations, and repeat often thousands of times before tape‑out. At scale, these workflows depend on large compute grids with hundreds or thousands of cores accessing shared storage simultaneously. In this environment, storage latency is not just a performance metric; it directly determines engineering velocity and business outcomes. Azure NetApp Files large volume breakthrough mode delivers cloud‑native storage performance that keeps every core productive, enabling higher simulation throughput, faster iteration cycles, and predictable performance even under extreme parallel load. The benchmark results independently validate how Azure NetApp Files large volume breakthrough mode empowers the most demanding modern EDA workflows.&lt;/P&gt;
&lt;P&gt;Ultimately, this improves engineering velocity. Shorter regression cycles enable more iterations per day, higher compute utilization eliminates idle cores, and predictable performance allows teams to confidently push scale without risk. More iterations before tape‑out translate directly into better Power, Performance, and Area (PPA) outcomes and faster time‑to‑market. For semiconductor design organizations, Azure NetApp Files large volume breakthrough mode elevates storage from supporting infrastructure to a strategic enabler – delivering independently validated, cloud‑scale performance purpose‑built for the most demanding EDA workloads.&lt;/P&gt;
&lt;P&gt;Storage Performance Impact on Engineering Velocity:&lt;/P&gt;
&lt;UL&gt;
&lt;LI&gt;Shorter regression cycles → more design iterations per day&lt;/LI&gt;
&lt;LI&gt;Higher compute utilization → no idle cores or wasted licenses&lt;/LI&gt;
&lt;LI&gt;Fewer job failures → engineers focus on design, not infrastructure&lt;/LI&gt;
&lt;LI&gt;Faster data movement → smoother transitions across design stages&lt;/LI&gt;
&lt;/UL&gt;
&lt;P&gt;This is why companies investing in cloud‑scale EDA infrastructure such as&amp;nbsp;&lt;A class="lia-external-url" href="https://www.netapp.com/media/140770-na-1201-azure-eda-solution-brief.pdf" target="_blank" rel="noopener"&gt;AMD&lt;/A&gt;, &lt;A class="lia-external-url" href="https://azure.microsoft.com/en-us/blog/azure-netapp-files-revolutionizing-silicon-design-for-high-performance-computing/" target="_blank" rel="noopener"&gt;Microsoft&lt;/A&gt;, and &lt;A class="lia-external-url" href="https://www.netapp.com/customers/asml-holding/" target="_blank" rel="noopener"&gt;ASML&lt;/A&gt;, consistently report faster time‑to‑market and stronger design outcomes.&lt;/P&gt;
&lt;H1&gt;&lt;A class="lia-anchor" target="_blank" name="_Toc230032981"&gt;&lt;/A&gt;Learn more&lt;/H1&gt;
&lt;UL&gt;
&lt;LI&gt;&lt;A class="lia-external-url" href="https://learn.microsoft.com/azure/azure-netapp-files/azure-netapp-files-introduction" target="_blank" rel="noopener"&gt;What is Azure NetApp Files&lt;/A&gt;&lt;/LI&gt;
&lt;LI&gt;&lt;A class="lia-external-url" href="https://www.spec.org/storage2020/" target="_blank" rel="noopener"&gt;SPECstorage® Solution 2020&lt;/A&gt;&lt;/LI&gt;
&lt;LI&gt;&lt;A class="lia-external-url" href="https://www.spec.org/storage2020/results/eda_blended/" target="_blank" rel="noopener"&gt;All Published SPECstorage® Solution 2020_eda_blended Results&lt;/A&gt;&lt;/LI&gt;
&lt;LI&gt;
&lt;P&gt;&lt;A class="lia-external-url" href="https://azure.microsoft.com/en-us/blog/azure-netapp-files-for-eda-workloads-from-revolution-to-breakthrough-at-scale/" target="_blank" rel="noopener"&gt;Azure NetApp Files for EDA workloads: From revolution to breakthrough at scale&lt;/A&gt;&lt;/P&gt;
&lt;/LI&gt;
&lt;LI&gt;&lt;A class="lia-internal-link lia-internal-url lia-internal-url-content-type-blog" style="font-style: normal; font-weight: 400; background-color: rgb(255, 255, 255);" href="https://techcommunity.microsoft.com/blog/azurearchitectureblog/validating-scalable-eda-storage-performance-azure-netapp-files-and-specstorage-s/4459517" target="_blank" rel="noopener" data-lia-auto-title="Validating Scalable EDA Storage Performance: Azure NetApp Files and SPECstorage® Solution 2020" data-lia-auto-title-active="0"&gt;Validating Scalable EDA Storage Performance: Azure NetApp Files and SPECstorage® Solution 2020&lt;/A&gt;&lt;/LI&gt;
&lt;LI&gt;&lt;A class="lia-external-url" style="font-style: normal; font-weight: 400; background-color: rgb(255, 255, 255);" href="https://learn.microsoft.com/azure/azure-netapp-files/solutions-benefits-azure-netapp-files-electronic-design-automation" target="_blank" rel="noopener"&gt;Benefits of using Azure NetApp Files for Electronic Design Automation (EDA)&lt;/A&gt;&lt;/LI&gt;
&lt;LI&gt;&lt;A class="lia-external-url" style="font-style: normal; font-weight: 400; background-color: rgb(255, 255, 255);" href="https://azure.microsoft.com/blog/azure-netapp-files-revolutionizing-silicon-design-for-high-performance-computing/" target="_blank" rel="noopener"&gt;Azure NetApp Files: Revolutionizing silicon design for high-performance computing&lt;/A&gt;&lt;/LI&gt;
&lt;LI&gt;&lt;A class="lia-external-url" style="font-style: normal; font-weight: 400; background-color: rgb(255, 255, 255);" href="https://learn.microsoft.com/azure/azure-netapp-files/azure-netapp-files-solution-architectures#electronic-design-automation-eda" target="_blank" rel="noopener"&gt;Solution architectures using Azure NetApp Files | Electronic design automation (EDA)&lt;/A&gt;&lt;/LI&gt;
&lt;/UL&gt;</description>
      <pubDate>Fri, 22 May 2026 15:00:00 GMT</pubDate>
      <guid>https://techcommunity.microsoft.com/t5/azure-storage-blog/from-scale-to-breakthrough-azure-netapp-files-sets-a-new-cloud/ba-p/4520890</guid>
      <dc:creator>GeertVanTeylingen</dc:creator>
      <dc:date>2026-05-22T15:00:00Z</dc:date>
    </item>
    <item>
      <title>Action required: Kerberos RC4 hardening may affect Azure Files 
Active Directory Domain Services</title>
      <link>https://techcommunity.microsoft.com/t5/azure-storage-blog/action-required-kerberos-rc4-hardening-may-affect-azure-files/ba-p/4518577</link>
      <description>&lt;P&gt;A Windows security hardening change beginning in April 2026 updates default Kerberos encryption behavior and may impact customers using Azure Files with Active Directory Domain Services (AD DS) authentication over SMB. If you created Azure Files shares prior to 2023, or chose RC4 encryption for your file shares, you will need to reconfigure to use AES-256 to avoid disruption to file share access. This is in accordance with the updated security posture and recommendation from Windows &lt;A href="https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-20833" target="_blank" rel="noopener"&gt;CVE-2026-20833.&lt;/A&gt;&lt;/P&gt;
&lt;img /&gt;
&lt;H2&gt;Background&lt;/H2&gt;
&lt;P&gt;Azure Files uses Kerberos authentication for identity-based access when integrated with on-premises Active Directory Domain Services (AD DS). AES-256 Kerberos encryption has been supported since AzFilesHybrid module v0.2.2, and it has been the default since v0.2.5. Historically, RC4 was the only supported option until AES-256 support was added. This is a Windows platform security hardening change; Azure Files service behavior is not being modified.&lt;/P&gt;
&lt;H2&gt;You may be impacted if:&lt;/H2&gt;
&lt;UL&gt;
&lt;LI&gt;You use Kerberos-based SMB access to Azure Files with AD DS authentication, and&lt;/LI&gt;
&lt;LI&gt;Kerberos encryption settings are RC4-only or unset (null) for relevant AD objects, service accounts, or computer accounts associated with Azure Files authentication.&lt;/LI&gt;
&lt;/UL&gt;
&lt;H2&gt;When will this happen:&lt;/H2&gt;
&lt;UL&gt;
&lt;LI&gt;&lt;STRONG&gt;April 2026 – July 2026&lt;/STRONG&gt;: Install the Windows security update and validate access. Domain controllers will default to issuing AES-256 tickets when msDS-SupportedEncryptionTypes is not explicitly set.&lt;/LI&gt;
&lt;LI&gt;&lt;STRONG&gt;After July 2026: &lt;/STRONG&gt;Manual rollback is removed. If you have not migrated to AES-256 by then, Kerberos-based SMB access to your Azure Files shares may fail.&lt;/LI&gt;
&lt;/UL&gt;
&lt;H2&gt;What you should do now:&lt;/H2&gt;
&lt;OL&gt;
&lt;LI&gt;Find out if you are impacted, run the following PowerShell command on a domain-joined machine, with read access to AD. This identifies storage accounts that use Azure Files with AD DS authentication but have not been upgraded to AES-256 or follow the detection steps in &lt;A class="lia-external-url" href="https://aka.ms/rc4azurefiles" target="_blank" rel="noopener"&gt;aka.ms/rc4azurefiles&lt;/A&gt;:&lt;/LI&gt;
&lt;/OL&gt;
&lt;LI-CODE lang="powershell"&gt;Get-ADObject `
    -LDAPFilter "(&amp;amp;(servicePrincipalName=*.file.core.windows.net)(!(msDS-SupportedEncryptionTypes=*)))" -Properties servicePrincipalName, msDS-SupportedEncryptionTypes |
    Select-Object Name, ObjectClass, servicePrincipalName, msDS-SupportedEncryptionTypes&lt;/LI-CODE&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;OL start="2"&gt;
&lt;LI&gt;&lt;A class="lia-external-url" href="https://learn.microsoft.com/en-us/troubleshoot/azure/azure-storage/files/security/files-troubleshoot-encryption#step-2-ensure-aes-256-is-allowed-by-clients-and-by-the-storage-account" target="_blank" rel="noopener"&gt;Update configurations&lt;/A&gt; to support and prefer AES256-based Kerberos ticket encryption.&lt;/LI&gt;
&lt;LI&gt;&lt;A class="lia-external-url" href="https://learn.microsoft.com/en-us/troubleshoot/azure/azure-storage/files/security/files-troubleshoot-encryption#option-1-use-the-azfileshybrid-cmdlet-recommended" target="_blank" rel="noopener"&gt;Validate&lt;/A&gt; end-to-end SMB authentication and application access to Azure Files shares.&lt;/LI&gt;
&lt;LI&gt;&lt;A class="lia-external-url" href="https://learn.microsoft.com/en-us/troubleshoot/azure/azure-storage/files/security/files-troubleshoot-encryption#step-4-confirm-the-aes-256-upgrade" target="_blank" rel="noopener"&gt;Run klist purge&lt;/A&gt; from an elevated command prompt to clear any cached Kerberos tickets that still use RC4.&lt;/LI&gt;
&lt;LI&gt;Remount the Azure file share.&lt;/LI&gt;
&lt;/OL&gt;
&lt;P&gt;For any questions, please reach out to the team at&lt;STRONG&gt;&lt;EM&gt; azurefiles@microsoft.com&lt;/EM&gt;&lt;/STRONG&gt;&lt;/P&gt;
&lt;H2&gt;Resources:&lt;/H2&gt;
&lt;UL&gt;
&lt;LI&gt;Azure Files &lt;A class="lia-external-url" href="https://aka.ms/rc4azurefiles" target="_blank"&gt;documentation&lt;/A&gt; on this change&lt;/LI&gt;
&lt;LI&gt;Read the full Windows hardening guidance:&amp;nbsp;&lt;A href="https://support.microsoft.com/topic/1ebcda33-720a-4da8-93c1-b0496e1910dc" target="_blank" rel="noopener"&gt;How to manage Kerberos KDC usage of RC4 for service account ticket issuance changes related to CVE-2026-20833&lt;/A&gt;.&lt;/LI&gt;
&lt;LI&gt;Learn about RC4 usage in Windows and its risks:&amp;nbsp;&lt;A href="https://learn.microsoft.com/windows-server/security/kerberos/detect-remediate-rc4-kerberos" target="_blank" rel="noopener"&gt;Detect and remediate RC4 usage in Kerberos&lt;/A&gt;.&lt;/LI&gt;
&lt;LI&gt;Learn more about the related vulnerability:&amp;nbsp;&lt;A href="https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-20833" target="_blank" rel="noopener"&gt;CVE-2026-20833&lt;/A&gt;.&lt;/LI&gt;
&lt;LI&gt;Windows Server Blog:&amp;nbsp;&lt;A href="https://www.microsoft.com/windows-server/blog/2025/12/03/beyond-rc4-for-windows-authentication/" target="_blank" rel="noopener"&gt;Beyond RC4 for Windows authentication&lt;/A&gt;&lt;/LI&gt;
&lt;/UL&gt;</description>
      <pubDate>Fri, 05 Jun 2026 21:50:11 GMT</pubDate>
      <guid>https://techcommunity.microsoft.com/t5/azure-storage-blog/action-required-kerberos-rc4-hardening-may-affect-azure-files/ba-p/4518577</guid>
      <dc:creator>grace_kim</dc:creator>
      <dc:date>2026-06-05T21:50:11Z</dc:date>
    </item>
    <item>
      <title>Modernizing Azure Virtual Desktop with Nerdio and Azure Files</title>
      <link>https://techcommunity.microsoft.com/t5/azure-storage-blog/modernizing-azure-virtual-desktop-with-nerdio-and-azure-files/ba-p/4516542</link>
      <description>&lt;P&gt;&lt;EM&gt;&lt;SPAN data-contrast="none"&gt;Coauthored with&amp;nbsp;Nerdio&lt;/SPAN&gt;&lt;SPAN data-ccp-props="{&amp;quot;335559739&amp;quot;:120}"&gt;&amp;nbsp;&lt;/SPAN&gt;&lt;/EM&gt;&lt;/P&gt;
&lt;P&gt;&lt;SPAN data-contrast="auto"&gt;Organizations adopting Azure Virtual Desktop (AVD) typically begin with small pilot deployments that perform well under limited load. As these environments scale to hundreds or thousands of users, a consistent set of challenges emerges.&amp;nbsp;&lt;/SPAN&gt;&lt;SPAN data-contrast="auto"&gt;At the center of that shift is the user profile layer. FSLogix profile containers—stored on file shares—sit directly on the critical path of the user experience. During peak periods such as login storms, profile attach latency becomes a primary determinant of sign-in performance.&amp;nbsp;&lt;/SPAN&gt;&lt;SPAN data-contrast="auto"&gt;At the same time, identity dependencies, storage configuration complexity, and cost management introduce variability across environments. What worked in a pilot often becomes more difficult to manage consistently at scale.&amp;nbsp;&lt;/SPAN&gt;&lt;SPAN data-ccp-props="{}"&gt;&amp;nbsp;&lt;/SPAN&gt;&lt;/P&gt;
&lt;P&gt;&lt;SPAN data-contrast="auto"&gt;Common challenges&amp;nbsp;include:&amp;nbsp;&lt;/SPAN&gt;&lt;SPAN data-ccp-props="{}"&gt;&amp;nbsp;&lt;/SPAN&gt;&lt;/P&gt;
&lt;UL&gt;
&lt;LI&gt;&lt;SPAN data-contrast="auto"&gt;Performance variability during peak concurrency&amp;nbsp;&lt;/SPAN&gt;&lt;SPAN data-ccp-props="{}"&gt;&amp;nbsp;&lt;/SPAN&gt;&lt;/LI&gt;
&lt;LI&gt;&lt;SPAN data-contrast="auto"&gt;Complex identity configurations for SMB access&amp;nbsp;&lt;/SPAN&gt;&lt;SPAN data-ccp-props="{}"&gt;&amp;nbsp;&lt;/SPAN&gt;&lt;/LI&gt;
&lt;LI&gt;&lt;SPAN data-contrast="auto"&gt;Configuration drift across environments&amp;nbsp;&lt;/SPAN&gt;&lt;SPAN data-ccp-props="{}"&gt;&amp;nbsp;&lt;/SPAN&gt;&lt;/LI&gt;
&lt;LI&gt;&lt;SPAN data-contrast="auto"&gt;Cost inefficiencies from peak-based provisioning&amp;nbsp;&lt;/SPAN&gt;&lt;SPAN data-ccp-props="{&amp;quot;335559739&amp;quot;:240}"&gt;&amp;nbsp;&lt;/SPAN&gt;&lt;/LI&gt;
&lt;/UL&gt;
&lt;P&gt;&lt;SPAN data-contrast="auto"&gt;At enterprise scale, these issues converge at the storage and identity layers—making them central to both user experience and operational efficiency.&lt;/SPAN&gt;&lt;SPAN data-ccp-props="{}"&gt;&amp;nbsp;&lt;/SPAN&gt;&lt;/P&gt;
&lt;H1&gt;&lt;SPAN data-ccp-props="{}"&gt;&lt;SPAN data-contrast="auto"&gt;&lt;SPAN data-ccp-parastyle="heading 10" data-ccp-parastyle-defn="{&amp;quot;ObjectId&amp;quot;:&amp;quot;81d40c56-e640-5cda-82bb-83448542e906|1&amp;quot;,&amp;quot;ClassId&amp;quot;:1073872969,&amp;quot;Properties&amp;quot;:[469775450,&amp;quot;heading 10&amp;quot;,201340122,&amp;quot;2&amp;quot;,134234082,&amp;quot;true&amp;quot;,134233614,&amp;quot;true&amp;quot;,469778129,&amp;quot;heading10&amp;quot;,335572020,&amp;quot;1&amp;quot;,134224900,&amp;quot;true&amp;quot;,268442635,&amp;quot;32&amp;quot;,335559739,&amp;quot;200&amp;quot;,335559738,&amp;quot;360&amp;quot;,335560102,&amp;quot;0&amp;quot;,469777841,&amp;quot;Arial&amp;quot;,469777842,&amp;quot;Arial&amp;quot;,469777843,&amp;quot;Arial&amp;quot;,469777844,&amp;quot;Arial&amp;quot;,469769226,&amp;quot;Arial&amp;quot;]}"&gt;Nerdio&lt;/SPAN&gt;&lt;SPAN data-ccp-parastyle="heading 10"&gt;: simplifying how AVD is deployed and operated&amp;nbsp;&lt;/SPAN&gt;&lt;/SPAN&gt;&lt;SPAN data-ccp-props="{&amp;quot;335559738&amp;quot;:360,&amp;quot;335559739&amp;quot;:200}"&gt;&amp;nbsp;&lt;/SPAN&gt;&lt;/SPAN&gt;&lt;/H1&gt;
&lt;P&gt;&lt;SPAN data-ccp-props="{}"&gt;&lt;SPAN data-ccp-props="{&amp;quot;335559738&amp;quot;:360,&amp;quot;335559739&amp;quot;:200}"&gt;&lt;A href="https://nmehelp.getnerdio.com/hc/en-us/articles/25499406288653-Create-and-manage-configured-Azure-Files-shares" target="_blank" rel="noopener"&gt;&lt;SPAN data-contrast="none"&gt;&lt;SPAN data-ccp-charstyle="Hyperlink"&gt;Nerdio Manager&lt;/SPAN&gt;&lt;/SPAN&gt;&lt;/A&gt;&lt;SPAN data-contrast="auto"&gt;&amp;nbsp;(available as&amp;nbsp;&lt;/SPAN&gt;&lt;SPAN data-contrast="auto"&gt;Nerdio&amp;nbsp;Manager for Enterprise&lt;/SPAN&gt;&lt;SPAN data-contrast="auto"&gt;&amp;nbsp;and&amp;nbsp;&lt;/SPAN&gt;&lt;SPAN data-contrast="auto"&gt;Nerdio&amp;nbsp;Manager for MSP&lt;/SPAN&gt;&lt;SPAN data-contrast="auto"&gt;)&amp;nbsp;is a deployment, management, and auto-scaling platform for Azure Virtual Desktop (AVD)&amp;nbsp;with capabilities such as desktop image management, performance monitoring, and user session control&amp;nbsp;to eliminate the need for complex scripting and speed up responses to end-users. Nerdio Manager helps organizations deploy and operate AVD environments in a more consistent, repeatable way. Rather than treating compute, storage, and identity as separate workflows, Nerdio integrates these components into a single operational model. Storage provisioning, permissions, and FSLogix configuration are handled as part of host pool deployment and scaling. This reduces coordination overhead, minimizes configuration drift, and keeps storage aligned with how environments grow.&lt;/SPAN&gt;&lt;SPAN data-ccp-props="{&amp;quot;335559739&amp;quot;:200}"&gt;&amp;nbsp;&lt;/SPAN&gt;&lt;/SPAN&gt;&lt;/SPAN&gt;&lt;/P&gt;
&lt;img /&gt;
&lt;P&gt;&lt;SPAN data-contrast="auto"&gt;This view shows how&amp;nbsp;Nerdio&amp;nbsp;brings users, host pools, and storage into a single control plane—ensuring storage is configured&amp;nbsp;&lt;/SPAN&gt;&lt;SPAN data-contrast="auto"&gt;as part of deployment&lt;/SPAN&gt;&lt;SPAN data-contrast="auto"&gt;, not after.&lt;/SPAN&gt;&lt;SPAN data-ccp-props="{&amp;quot;335559739&amp;quot;:200}"&gt;&amp;nbsp;&lt;/SPAN&gt;&lt;/P&gt;
&lt;H2&gt;&lt;SPAN data-ccp-props="{&amp;quot;335559739&amp;quot;:200}"&gt;&lt;SPAN data-contrast="auto"&gt;&lt;SPAN data-ccp-parastyle="heading 20" data-ccp-parastyle-defn="{&amp;quot;ObjectId&amp;quot;:&amp;quot;741782aa-652f-563c-bdc7-8d2b1b3f555d|1&amp;quot;,&amp;quot;ClassId&amp;quot;:1073872969,&amp;quot;Properties&amp;quot;:[469775450,&amp;quot;heading 20&amp;quot;,201340122,&amp;quot;2&amp;quot;,134234082,&amp;quot;true&amp;quot;,134233614,&amp;quot;true&amp;quot;,469778129,&amp;quot;heading20&amp;quot;,335572020,&amp;quot;1&amp;quot;,134224900,&amp;quot;true&amp;quot;,268442635,&amp;quot;28&amp;quot;,335559739,&amp;quot;160&amp;quot;,335559738,&amp;quot;280&amp;quot;,335560102,&amp;quot;1&amp;quot;,469777841,&amp;quot;Arial&amp;quot;,469777842,&amp;quot;Arial&amp;quot;,469777843,&amp;quot;Arial&amp;quot;,469777844,&amp;quot;Arial&amp;quot;,469769226,&amp;quot;Arial&amp;quot;]}"&gt;Azure Files: enabling performance and identity at scale&lt;/SPAN&gt;&lt;/SPAN&gt;&lt;SPAN data-ccp-props="{&amp;quot;335559738&amp;quot;:280,&amp;quot;335559739&amp;quot;:160}"&gt;&amp;nbsp;&lt;/SPAN&gt;&lt;/SPAN&gt;&lt;/H2&gt;
&lt;P&gt;&lt;A href="https://learn.microsoft.com/en-us/azure/storage/files/storage-files-introduction" target="_blank" rel="noopener"&gt;&lt;SPAN data-contrast="none"&gt;&lt;SPAN data-ccp-charstyle="Hyperlink"&gt;Azure Files&lt;/SPAN&gt;&lt;/SPAN&gt;&lt;/A&gt;&lt;SPAN data-contrast="auto"&gt;&amp;nbsp;provides the foundational storage layer for&amp;nbsp;FSLogix&amp;nbsp;profile containers in many AVD environments. Because profiles attach at sign-in, storage performance directly&amp;nbsp;impacts&amp;nbsp;user experience.&lt;/SPAN&gt;&lt;SPAN data-ccp-props="{&amp;quot;335559739&amp;quot;:200}"&gt;&amp;nbsp;&lt;/SPAN&gt;&lt;/P&gt;
&lt;H3&gt;&lt;SPAN data-contrast="auto"&gt;Provisioned v2: performance without over-provisioning&lt;/SPAN&gt;&lt;SPAN data-ccp-props="{}"&gt;&amp;nbsp;&lt;/SPAN&gt;&lt;/H3&gt;
&lt;P&gt;&lt;SPAN data-contrast="auto"&gt;Azure Files Provisioned v2 decouples performance (IOPS and throughput) from capacity.&lt;/SPAN&gt; &lt;SPAN data-contrast="auto"&gt;Previously, higher performance required over-provisioning storage. With Provisioned v2, organizations can align performance directly to workload needs.&lt;/SPAN&gt; &lt;SPAN data-contrast="auto"&gt;This is especially important for&amp;nbsp;FSLogix, where login storms create short bursts of high IOPS demand even when data volumes are modest.&lt;/SPAN&gt; &lt;SPAN data-contrast="auto"&gt;The result:&amp;nbsp;&lt;/SPAN&gt;&lt;SPAN data-contrast="auto"&gt;better cost efficiency and more predictable performance&lt;/SPAN&gt;&lt;SPAN data-contrast="auto"&gt;.&lt;/SPAN&gt;&lt;SPAN data-ccp-props="{}"&gt;&amp;nbsp;&lt;/SPAN&gt;&lt;/P&gt;
&lt;P&gt;&lt;EM&gt;&lt;SPAN data-contrast="auto"&gt;“We’ve&amp;nbsp;been early adopters of&amp;nbsp;Nerdio&amp;nbsp;and consistently see meaningful Azure cost optimization… With Azure Files Provisioned v2, the decoupling of quota and IOPS… gives us precise control over performance and cost.”&lt;/SPAN&gt; &lt;/EM&gt;&lt;SPAN data-contrast="auto"&gt;— David Wasserman, Chief Value Officer, FlexibleIT.com&lt;/SPAN&gt;&lt;SPAN data-ccp-props="{}"&gt;&amp;nbsp;&lt;/SPAN&gt;&lt;/P&gt;
&lt;H3&gt;&lt;SPAN data-contrast="auto"&gt;Entra ID authentication: simplifying identity architecture&lt;/SPAN&gt;&lt;SPAN data-ccp-props="{}"&gt;&amp;nbsp;&lt;/SPAN&gt;&lt;/H3&gt;
&lt;P&gt;&lt;SPAN data-contrast="auto"&gt;Azure Files supports&amp;nbsp;&lt;/SPAN&gt;&lt;A href="https://techcommunity.microsoft.com/blog/azurestorageblog/cloud-native-identity-with-azure-files-entra-only-secure-access-for-the-modern-e/4469778" target="_blank" rel="noopener"&gt;&lt;SPAN data-contrast="none"&gt;&lt;SPAN data-ccp-charstyle="Hyperlink"&gt;Microsoft Entra ID authentication&lt;/SPAN&gt;&lt;/SPAN&gt;&lt;/A&gt;&lt;SPAN data-contrast="auto"&gt;&amp;nbsp;for SMB, enabling a cloud-native identity model.&lt;/SPAN&gt;&lt;SPAN data-ccp-props="{}"&gt;&amp;nbsp;&lt;/SPAN&gt;&lt;/P&gt;
&lt;P&gt;&lt;SPAN data-contrast="auto"&gt;This&amp;nbsp;eliminates&amp;nbsp;the need for domain infrastructure used only for storage access, resulting in:&lt;/SPAN&gt;&lt;SPAN data-ccp-props="{}"&gt;&amp;nbsp;&lt;/SPAN&gt;&lt;/P&gt;
&lt;UL&gt;
&lt;LI&gt;&lt;SPAN data-contrast="auto"&gt;Reduced infrastructure overhead&lt;/SPAN&gt;&lt;SPAN data-ccp-props="{}"&gt;&amp;nbsp;&lt;/SPAN&gt;&lt;/LI&gt;
&lt;LI&gt;&lt;SPAN data-contrast="auto"&gt;Simpler networking&lt;/SPAN&gt;&lt;SPAN data-ccp-props="{}"&gt;&amp;nbsp;&lt;/SPAN&gt;&lt;/LI&gt;
&lt;LI&gt;&lt;SPAN data-contrast="auto"&gt;Lower operational burden&lt;/SPAN&gt;&lt;SPAN data-ccp-props="{}"&gt;&amp;nbsp;&lt;/SPAN&gt;&lt;/LI&gt;
&lt;LI&gt;&lt;SPAN data-contrast="auto"&gt;Alignment with Zero Trust&lt;/SPAN&gt;&lt;SPAN data-ccp-props="{&amp;quot;335559739&amp;quot;:240}"&gt;&amp;nbsp;&lt;/SPAN&gt;&lt;/LI&gt;
&lt;/UL&gt;
&lt;P&gt;&lt;SPAN data-contrast="auto"&gt;These capabilities are already in use in&amp;nbsp;&lt;/SPAN&gt;&lt;SPAN data-contrast="auto"&gt;Nerdio&amp;nbsp;Manager for MSP&lt;/SPAN&gt;&lt;SPAN data-contrast="auto"&gt;&amp;nbsp;environments managing multi-tenant&amp;nbsp;deployments, and&amp;nbsp;are being extended to&amp;nbsp;&lt;/SPAN&gt;&lt;SPAN data-contrast="auto"&gt;Nerdio&amp;nbsp;Manager for Enterprise&lt;/SPAN&gt;&lt;SPAN data-contrast="auto"&gt;&amp;nbsp;in Q3&amp;nbsp;CY26 to&amp;nbsp;enable the same cloud-native model within enterprise environments&lt;/SPAN&gt;&lt;/P&gt;
&lt;img /&gt;
&lt;P&gt;&lt;SPAN data-contrast="auto"&gt;This highlights how provisioning, monitoring, scaling, and identity are handled as part of a unified system instead of fragmented tasks.&lt;/SPAN&gt;&lt;/P&gt;
&lt;H2&gt;&lt;SPAN data-contrast="auto"&gt;&lt;SPAN data-ccp-parastyle="heading 20" data-ccp-parastyle-defn="{&amp;quot;ObjectId&amp;quot;:&amp;quot;741782aa-652f-563c-bdc7-8d2b1b3f555d|1&amp;quot;,&amp;quot;ClassId&amp;quot;:1073872969,&amp;quot;Properties&amp;quot;:[469775450,&amp;quot;heading 20&amp;quot;,201340122,&amp;quot;2&amp;quot;,134234082,&amp;quot;true&amp;quot;,134233614,&amp;quot;true&amp;quot;,469778129,&amp;quot;heading20&amp;quot;,335572020,&amp;quot;1&amp;quot;,134224900,&amp;quot;true&amp;quot;,268442635,&amp;quot;28&amp;quot;,335559739,&amp;quot;160&amp;quot;,335559738,&amp;quot;280&amp;quot;,335560102,&amp;quot;1&amp;quot;,469777841,&amp;quot;Arial&amp;quot;,469777842,&amp;quot;Arial&amp;quot;,469777843,&amp;quot;Arial&amp;quot;,469777844,&amp;quot;Arial&amp;quot;,469769226,&amp;quot;Arial&amp;quot;]}"&gt;Operationalizing storage at scale, w&lt;/SPAN&gt;&lt;/SPAN&gt;hy this matters for enterprises&lt;/H2&gt;
&lt;P&gt;&lt;SPAN data-contrast="auto"&gt;Enterprise AVD environments operate under fundamentally different constraints. User populations are larger and more concentrated, compliance requirements are stricter, and tolerance for performance variability is significantly lower.&lt;/SPAN&gt;&lt;SPAN data-ccp-props="{}"&gt;&amp;nbsp;&lt;/SPAN&gt;&lt;/P&gt;
&lt;P&gt;&lt;SPAN data-contrast="auto"&gt;In practice, these pressures converge at the storage layer.&lt;/SPAN&gt;&lt;SPAN data-ccp-props="{}"&gt;&amp;nbsp;&lt;/SPAN&gt;&lt;/P&gt;
&lt;P&gt;&lt;SPAN data-contrast="auto"&gt;For enterprise customers, the goal is not automation itself—it is better user experience, lower cost, and predictable operations.&lt;/SPAN&gt;&lt;SPAN data-ccp-props="{}"&gt;&amp;nbsp;&lt;/SPAN&gt;&lt;/P&gt;
&lt;UL&gt;
&lt;LI&gt;&lt;SPAN data-contrast="auto"&gt;Faster, more consistent deployments. &lt;/SPAN&gt;&lt;SPAN data-contrast="auto"&gt;Storage is configured alongside compute, reducing dependency on separate teams and minimizing drift.&lt;/SPAN&gt;&lt;SPAN data-ccp-props="{}"&gt;&amp;nbsp;&lt;/SPAN&gt;&lt;/LI&gt;
&lt;LI&gt;&lt;SPAN data-contrast="auto"&gt;Lower cost without sacrificing peak performance. &lt;/SPAN&gt;&lt;SPAN data-contrast="auto"&gt;Capacity and performance align with actual demand instead of peak assumptions. &lt;/SPAN&gt;&lt;SPAN data-ccp-props="{}"&gt;&amp;nbsp;&lt;/SPAN&gt;&lt;/LI&gt;
&lt;LI&gt;&lt;SPAN data-contrast="auto"&gt;More predictable sign-ins during login storms. &lt;/SPAN&gt;&lt;SPAN data-contrast="auto"&gt;Standardized configuration reduces bottlenecks during high concurrency.&lt;/SPAN&gt;&lt;SPAN data-ccp-props="{}"&gt;&amp;nbsp;&lt;/SPAN&gt;&lt;/LI&gt;
&lt;LI&gt;&lt;SPAN data-contrast="auto"&gt;Audit-ready governance by default. &lt;/SPAN&gt;&lt;SPAN data-contrast="auto"&gt;RBAC, snapshots, backup, and data protection policies are applied consistently across environments.&lt;/SPAN&gt;&lt;SPAN data-ccp-props="{}"&gt;&amp;nbsp;&lt;/SPAN&gt;&lt;/LI&gt;
&lt;/UL&gt;
&lt;H1&gt;Get started&lt;/H1&gt;
&lt;P&gt;&lt;SPAN data-contrast="auto"&gt;At scale, Azure Virtual Desktop is as much about storage and identity as it is about compute.&lt;/SPAN&gt; &lt;SPAN data-contrast="auto"&gt;Azure Files plays a central role in determining sign-in performance, user experience, and cost efficiency. With Provisioned v2 and Entra ID authentication, organizations can move toward a more predictable and cloud-native model. Nerdio builds on this foundation by integrating storage and identity into a unified AVD deployment and operations workflow.&lt;/SPAN&gt;&lt;SPAN data-contrast="auto"&gt;&amp;nbsp;&lt;/SPAN&gt;&lt;A href="https://marketplace.microsoft.com/en-us/product/saas/nerdio.nerdioforazure?tab=Overview" target="_blank" rel="noopener"&gt;&lt;SPAN data-contrast="none"&gt;&lt;SPAN data-ccp-charstyle="Hyperlink"&gt;Get started&lt;/SPAN&gt;&lt;/SPAN&gt;&lt;/A&gt;&lt;SPAN data-contrast="auto"&gt;&amp;nbsp;with Nerdio today.&lt;/SPAN&gt;&lt;SPAN data-ccp-props="{}"&gt;&amp;nbsp;&lt;/SPAN&gt;&lt;/P&gt;</description>
      <pubDate>Mon, 04 May 2026 16:05:17 GMT</pubDate>
      <guid>https://techcommunity.microsoft.com/t5/azure-storage-blog/modernizing-azure-virtual-desktop-with-nerdio-and-azure-files/ba-p/4516542</guid>
      <dc:creator>Vybava_Ramadoss</dc:creator>
      <dc:date>2026-05-04T16:05:17Z</dc:date>
    </item>
    <item>
      <title>AHEAD helps us launch the Strategic Azure Storage Services Partner Program</title>
      <link>https://techcommunity.microsoft.com/t5/azure-storage-blog/ahead-helps-us-launch-the-strategic-azure-storage-services/ba-p/4516355</link>
      <description>&lt;P&gt;&lt;STRONG&gt;Authors:&lt;/STRONG&gt;&lt;/P&gt;
&lt;P&gt;Aung Oo, Vice President Azure Storage Product Management&lt;/P&gt;
&lt;P&gt;Parker Leavitt, Partner Account Manager, AHEAD&lt;/P&gt;
&lt;P&gt;&lt;STRONG&gt;Special thanks to: &lt;/STRONG&gt;&lt;/P&gt;
&lt;P&gt;Michael Johnson, Vice President, Cloud, AHEAD&lt;/P&gt;
&lt;img /&gt;
&lt;H1&gt;AHEAD background&lt;/H1&gt;
&lt;P&gt;&lt;A href="https://www.ahead.com/partner/microsoft/" target="_blank" rel="noopener"&gt;AHEAD&lt;/A&gt; was formed in 2007 and possesses deep expertise in Infrastructure, Cloud Platforms, AI, Analytics, Networking, Storage, Security and many more technical disciplines. 80% of AHEAD’s employees are engineers who help customers with the assessment of their needs to design optimal solutions and through implementation of complex application and infrastructure deployments. Headquartered in Chicago, IL, AHEAD has locations worldwide and is ready to assist with your most complex Azure projects. They hold over 1,000 Microsoft certifications and 4 Advanced Specializations.&lt;/P&gt;
&lt;H1&gt;Valued collaboration&lt;/H1&gt;
&lt;P&gt;AHEAD has been a key advisor to Azure Storage throughout the design and build of our Channel strategy. As a premier Microsoft Cloud and AI Partner, and with decades of Storage expertise, AHEAD helped us to create the Learning Path channel partners will need to complete to qualify as a &lt;STRONG&gt;Strategic Azure Storage Services Partner&lt;/STRONG&gt; (SASS). SASS Partners have been validated by us to possess the skills to offer consulting, design, implementation, and migration services to Azure and ISV Storage services.&lt;/P&gt;
&lt;H1&gt;What can you expect?&lt;/H1&gt;
&lt;P&gt;AHEAD brings their history of infrastructure expertise to Azure Storage customers through a catalog of services that make it possible to select the optimal solution to ensure the ideal blend of price, performance, and resiliency.&lt;/P&gt;
&lt;H2&gt;Assessment&lt;/H2&gt;
&lt;P&gt;What are you doing to prepare for the industry wide memory shortage? How well do you understand your datasets? What are your performance requirements? Are there features you are paying for and not using? When was the last time that directory hosting the “Super Important Project” files was accessed? Is there mission critical data hiding that you should be leveraging to fuel Enterprise AI Agents? Is an Azure Storage Service the best fit for your data, or is it better to migrate it to one of our Storage ISV services?&lt;/P&gt;
&lt;P&gt;AHEAD provides Microsoft-funded assessments that deliver data-driven guidance to help you align your application and data set needs with the ideal storage service(s) on Azure. We have long advocated that the best solution is the one that meets your requirements both today and in the future. AHEAD can help you get there.&lt;/P&gt;
&lt;H2&gt;Migration&lt;/H2&gt;
&lt;P&gt;After gaining insight into your data estate, AHEAD has the experience to help you migrate safely with best-of-breed solutions. Whether offline migration with Data Box or online over the network with Storage Mover or one of our validated ISVs like Komprise, Cirrus Data, or Cirata, AHEAD can help you move your data to an Azure Storage service like Blob Storage, Files, Elastic SAN, or NetApp Files – or one of our ISV Partners like Nasuni and Pure Storage. You can find our full list of validated partners on &lt;A href="https://aka.ms/azurestoragepartners" target="_blank" rel="noopener"&gt;Microsoft Learn&lt;/A&gt;.&lt;/P&gt;
&lt;H2&gt;Azure Storage ISV Strength&lt;/H2&gt;
&lt;P&gt;An important reason we chose to onboard AHEAD as our first Strategic Channel Partner was the large crossover in mutual ISV relationships they possess, and their proven skills with each. You can view AHEAD’s full list of partners, including Nasuni, NetApp, Everpure, Commvault, Veeam, Rubrik, and Dell on&amp;nbsp;&lt;A href="https://www.ahead.com/partners/" target="_blank" rel="noopener"&gt;their website&lt;/A&gt;. Our recent engagements with AHEAD and Nasuni are a great example of AHEAD’s depth. They were able to quickly determine Nasuni as the best fit for a customer who required a single centralized Azure-based repository for their data that could then be accessed within Azure and multiple remote locations simultaneously.&lt;/P&gt;
&lt;P&gt;AHEAD has shown us that across their portfolio of ISVs, they can help you implement best-of-breed ISV services that include solutions in:&lt;/P&gt;
&lt;UL&gt;
&lt;LI&gt;Air Gap Business Continuity&lt;/LI&gt;
&lt;LI&gt;VMware Modernization&lt;/LI&gt;
&lt;LI&gt;Storage Modernization&lt;/LI&gt;
&lt;LI&gt;Cloud Scale Analytics&lt;/LI&gt;
&lt;LI&gt;AI Dataset Curation&lt;/LI&gt;
&lt;/UL&gt;
&lt;H1&gt;How can you move forward?&lt;/H1&gt;
&lt;P&gt;Do you need help understanding your data estate? Could you use expertise selecting the ideal service in Azure to host your data? Reach out to the AHEAD Azure team at &lt;A href="mailto:info@ahead.com" target="_blank" rel="noopener"&gt;info@ahead.com&lt;/A&gt; or via their &lt;A href="https://marketplace.microsoft.com/en-us/marketplace/consulting-services/aheadllc1585153938726.rapid_assess?tab=Overview" target="_blank" rel="noopener"&gt;Rapid Assess&lt;/A&gt; offer on Microsoft Marketplace and get started today!&lt;/P&gt;
&lt;H1&gt;Strategic Azure Storage Services Partner&lt;/H1&gt;
&lt;P&gt;In coming months, you will see our list of SASS Channel Partners expand, but we could not be more grateful to AHEAD for being a not only a pioneer, but a trusted advisor. Their commitment to Azure and Azure customers has made an impact that will benefit our customers worldwide.&lt;/P&gt;</description>
      <pubDate>Fri, 01 May 2026 00:49:28 GMT</pubDate>
      <guid>https://techcommunity.microsoft.com/t5/azure-storage-blog/ahead-helps-us-launch-the-strategic-azure-storage-services/ba-p/4516355</guid>
      <dc:creator>karautenMSFT</dc:creator>
      <dc:date>2026-05-01T00:49:28Z</dc:date>
    </item>
    <item>
      <title>Prefix-scoped access for User Delegation SAS is now generally available for Azure Blob Storage</title>
      <link>https://techcommunity.microsoft.com/t5/azure-storage-blog/prefix-scoped-access-for-user-delegation-sas-is-now-generally/ba-p/4516010</link>
      <description>&lt;P&gt;We would like to share that &lt;STRONG&gt;prefix-scoped access for User Delegation SAS for Azure Blob Storage is generally available in all Azure regions&lt;/STRONG&gt;.&lt;/P&gt;
&lt;P&gt;SAS tokens for Blob Storage have historically supported two levels of scope: container and individual blob. With this release, you can now scope access to a &lt;STRONG&gt;prefix or virtual directory&lt;/STRONG&gt; within a container, granting access to all blobs beneath the path.&lt;/P&gt;
&lt;P&gt;This is especially valuable for applications that organize data by tenant, workspace, project, or department within a shared container. Instead of granting access to an entire container or generating many blob-level tokens, you can now issue a single SAS token scoped to a set of blobs through a prefix.&lt;/P&gt;
&lt;P&gt;For example, if a container has these blobs:&lt;/P&gt;
&lt;P&gt;contoso/sales/Q1-report.csv&lt;/P&gt;
&lt;P&gt;contoso/sales/Q2-report.csv&lt;/P&gt;
&lt;P&gt;contoso/invoice.pdf&lt;/P&gt;
&lt;P&gt;A SAS token scoped to the prefix contoso/sales would grant access only to the two sales reports. This simplifies manageability by not having to generate multiple blob scoped tokens which significantly reduces overhead to manage permissions for large scale data storage estates. In addition, it helps customers provide more scoped permissions to a certain set of blobs rather than broader permissions at a container level.&lt;/P&gt;
&lt;P&gt;Prefix-scoped access is supported for both Blob and Data Lake storage accounts.&lt;/P&gt;
&lt;P&gt;As a best practice, we recommend using Entra ID with RBAC or ABAC for least privilege access. If you need to use SAS for your use cases, we recommend using user delegation SAS and prefix-based scoping is a good option to consider for more scoped permissions for a certain set of blobs.&lt;/P&gt;
&lt;H5&gt;Pricing and Availability&lt;/H5&gt;
&lt;P&gt;There is no additional cost for prefix-scoped access for user delegation SAS. Pricing is based on standard transaction costs for your storage account type. To learn more, see&lt;A class="lia-external-url" href="https://azure.microsoft.com/pricing/details/storage/blobs/" target="_blank" rel="noopener"&gt; Azure Storage Pricing&lt;/A&gt;. &lt;/P&gt;
&lt;P&gt;Prefix-scoped access for user delegation SAS is available in all Azure regions.&lt;/P&gt;
&lt;H5&gt;How to generate a prefix-scoped SAS&lt;/H5&gt;
&lt;P&gt;To generate and use a prefix-scoped SAS:&lt;/P&gt;
&lt;OL&gt;
&lt;LI&gt;Identify the prefix (or virtual directory) you want to authorize.&lt;/LI&gt;
&lt;LI&gt;Follow the steps in the documentation to create a prefix-scoped SAS for &lt;A class="lia-external-url" href="https://learn.microsoft.com/rest/api/storageservices/create-user-delegation-sas" target="_blank" rel="noopener"&gt;user delegation SAS&lt;/A&gt;.&lt;/LI&gt;
&lt;LI&gt;Use the SAS token with your application.&lt;/LI&gt;
&lt;/OL&gt;
&lt;P&gt;Notes&lt;/P&gt;
&lt;UL&gt;
&lt;LI&gt;Support for prefix-scoped access parameters is available with authorization version 2020-02-10 or later via REST API and .NET Blob SDKs starting with version 12.29.0-beta.1 and newer.&lt;/LI&gt;
&lt;LI&gt;The semantics for prefix scope (sr=d) are similar to container scope (sr=c), except that access is restricted to a prefix. When creating a prefix-scoped SAS, you must specify the signedDirectoryDepth (sdd) to indicate how many directory levels from the container root to the specified directory. For example, to grant access to dir2 on path container1/dir1/dir2, set the directory depth (sdd) = 2 to indicate the SAS is scoped to dir2 and everything beneath it.&lt;/LI&gt;
&lt;LI&gt;Below are .NET SDK and REST API examples for reference.&lt;/LI&gt;
&lt;/UL&gt;
&lt;H6&gt;&lt;U&gt;.NET SDK Sample Definition&lt;/U&gt;&lt;/H6&gt;
&lt;LI-CODE lang=""&gt;            BlobSasBuilder blobSasBuilder = new BlobSasBuilder(
                permissions: BlobContainerSasPermissions.All,
                expiresOn: Recording.UtcNow.AddDays(1))
            {
                BlobContainerName = test.Container.Name,
                BlobName = blobName,
                IsDirectory = true,
            };

            // Test using same name as SAS
            BlobUriBuilder blobUriBuilder1 = new BlobUriBuilder(test.Container.Uri)
            {
                BlobName = blobName,
                Sas = blobSasBuilder.ToSasQueryParameters(Tenants.GetNewSharedKeyCredentials())
            };
            AppendBlobClient appendBlobClient1 = new AppendBlobClient(blobUriBuilder1.ToUri(), GetOptions());
            await appendBlobClient1.CreateAsync();

            // Test using SAS name + suffix
            BlobUriBuilder blobUriBuilder2 = new BlobUriBuilder(test.Container.Uri)
            {
                BlobName = blobName + "/test",
                Sas = blobSasBuilder.ToSasQueryParameters(Tenants.GetNewSharedKeyCredentials())
            };
            AppendBlobClient appendBlobClient2 = new AppendBlobClient(blobUriBuilder2.ToUri(), GetOptions());
            await appendBlobClient2.CreateAsync();&lt;/LI-CODE&gt;
&lt;H6&gt;&lt;U&gt;REST API Sample Request&lt;/U&gt;&lt;/H6&gt;
&lt;P&gt;GET https://myaccount.blob.core.windows.net/mycontainer&lt;/P&gt;
&lt;P&gt;?restype=container&lt;/P&gt;
&lt;P&gt;&amp;amp;comp=list&lt;/P&gt;
&lt;P&gt;&amp;amp;prefix=dir1/dir2/&lt;/P&gt;
&lt;P&gt;&amp;amp;sr=d&lt;/P&gt;
&lt;P&gt;&amp;amp;sdd=2&lt;/P&gt;
&lt;P&gt;&amp;amp;sp=rl&lt;/P&gt;
&lt;P&gt;&amp;amp;sv=2024-11-04&lt;/P&gt;
&lt;P&gt;&amp;amp;se=2026-04-22T06:00:00Z&lt;/P&gt;
&lt;P&gt;&amp;amp;skoid=&amp;lt;signed-oid&amp;gt;&lt;/P&gt;
&lt;P&gt;&amp;amp;sktid=&amp;lt;signed-tid&amp;gt;&lt;/P&gt;
&lt;P&gt;&amp;amp;skt=2026-04-22T00:00:00Z&lt;/P&gt;
&lt;P&gt;&amp;amp;ske=2026-04-22T08:00:00Z&lt;/P&gt;
&lt;P&gt;&amp;amp;sks=b&lt;/P&gt;
&lt;P&gt;&amp;amp;skv=2024-11-04&lt;/P&gt;
&lt;P&gt;&amp;amp;sig=&amp;lt;signature&amp;gt;&lt;/P&gt;
&lt;H5&gt;Next Steps&lt;/H5&gt;
&lt;P&gt;For a deeper dive, explore these resources:&lt;/P&gt;
&lt;UL&gt;
&lt;LI&gt;&lt;A class="lia-external-url" href="https://learn.microsoft.com/azure/storage/common/storage-sas-overview" target="_blank" rel="noopener"&gt;Grant limited access to data with shared access signatures (SAS)&lt;/A&gt;&lt;/LI&gt;
&lt;LI&gt;&lt;A class="lia-external-url" href="https://learn.microsoft.com/rest/api/storageservices/create-user-delegation-sas" target="_blank" rel="noopener"&gt;Create a user delegation SAS&lt;/A&gt;&lt;/LI&gt;
&lt;LI&gt;&lt;A class="lia-external-url" href="https://learn.microsoft.com/rest/api/storageservices/create-service-sas" target="_blank" rel="noopener"&gt;Create a service SAS&lt;/A&gt;&lt;/LI&gt;
&lt;LI&gt;&lt;A class="lia-external-url" href="https://learn.microsoft.com/azure/storage/blobs/monitor-blob-storage?tabs=azure-portal" target="_blank" rel="noopener"&gt;Monitor Azure Blob Storage&lt;/A&gt;&lt;/LI&gt;
&lt;/UL&gt;
&lt;H5&gt;Help and Support&lt;/H5&gt;
&lt;P&gt;If you have questions, get answers from community experts in &lt;A class="lia-external-url" href="https://learn.microsoft.com/answers/tags/125/azure-blob-storage" target="_blank" rel="noopener"&gt;Microsoft Q&amp;amp;A&lt;/A&gt;. If you have a support plan and you need technical help, create a &lt;A class="lia-external-url" href="https://portal.azure.com/#blade/Microsoft_Azure_Support/HelpAndSupportBlade/newsupportrequest" target="_blank" rel="noopener"&gt;support request&lt;/A&gt;:  &lt;/P&gt;
&lt;UL&gt;
&lt;LI&gt;For Issue type, select&amp;nbsp;&lt;STRONG&gt;Technical&lt;/STRONG&gt;.  &lt;/LI&gt;
&lt;LI&gt;For Subscription, select your subscription.  &lt;/LI&gt;
&lt;LI&gt;For Service, select &lt;STRONG&gt;My services&lt;/STRONG&gt;.  &lt;/LI&gt;
&lt;LI&gt;For Service type, select &lt;STRONG&gt;Blob Storage&lt;/STRONG&gt;.  &lt;/LI&gt;
&lt;LI&gt;For Resource, select the Azure resource you are creating a support request for.  &lt;/LI&gt;
&lt;LI&gt;For Summary, type a description of your issue.  &lt;/LI&gt;
&lt;LI&gt;For Problem type, select &lt;STRONG&gt;Authentication and Authorization&lt;/STRONG&gt; .&lt;/LI&gt;
&lt;LI&gt;For Problem subtype, select Issues using &lt;STRONG&gt;Shared Access Signature (SAS Token)&lt;/STRONG&gt;. &lt;/LI&gt;
&lt;/UL&gt;</description>
      <pubDate>Wed, 06 May 2026 20:01:06 GMT</pubDate>
      <guid>https://techcommunity.microsoft.com/t5/azure-storage-blog/prefix-scoped-access-for-user-delegation-sas-is-now-generally/ba-p/4516010</guid>
      <dc:creator>despindola</dc:creator>
      <dc:date>2026-05-06T20:01:06Z</dc:date>
    </item>
    <item>
      <title>Secure, Keyless Application Access with Managed Identities - Now GA in Azure Files SMB</title>
      <link>https://techcommunity.microsoft.com/t5/azure-storage-blog/secure-keyless-application-access-with-managed-identities-now-ga/ba-p/4513053</link>
      <description>&lt;P&gt;As enterprises modernize applications and strengthen their security posture, identity is central to how applications access shared storage. Traditional identity models relying on account keys, stored credentials, or domain‑joined infrastructure add operational overhead and introduce security risks such as credential leakage, lack of identity attribution, and excessive privilege if shared keys are compromised. Today, we are excited to announce the &lt;STRONG&gt;General Availability (GA) of Managed Identity support for Azure Files over SMB&lt;/STRONG&gt;, enabling applications and virtual machines to securely access Azure Files without secrets, passwords, or key distribution.&lt;/P&gt;
&lt;P&gt;Managed Identity support enables customers to &lt;STRONG&gt;meet modern enterprise security standards&lt;/STRONG&gt; without reliance on storage account keys, streamlining how organizations &lt;STRONG&gt;securely enable file&lt;/STRONG&gt;‑&lt;STRONG&gt;based application access&lt;/STRONG&gt; and reducing the operational overhead of filing internal exceptions. New storage accounts can support secure, identity‑based SMB access out of the box, while existing deployments can get secure by enabling Managed Identity authentication.&lt;/P&gt;
&lt;P&gt;From web application workloads such as WordPress, to databases on Azure Kubernetes Service (AKS), to CI/CD pipelines, applications require secure access. In a world where security is foundational, continued reliance on key-based access conflicts with Zero Trust principles and least privilege access.&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;img /&gt;
&lt;H2&gt;What’s New In GA&lt;/H2&gt;
&lt;H3&gt;AKS Workload Identity Support&lt;/H3&gt;
&lt;P&gt;&lt;A class="lia-external-url" href="https://github.com/kubernetes-sigs/azurefile-csi-driver/blob/master/docs/workload-identity-static-pv-mount.md" target="_blank"&gt;AKS Workload Identity&lt;/A&gt; (preview) extends the traditional managed identity model for Kubernetes by shifting the identity from the node to pods. Instead of inheriting the identity of the underlying cluster, each Kubernetes pod can use its own federated identity, mapped directly to a Microsoft Entra ID principal.&lt;/P&gt;
&lt;P&gt;This feature enables:&lt;/P&gt;
&lt;UL&gt;
&lt;LI&gt;&lt;STRONG&gt;Pod-level identity isolation&lt;/STRONG&gt;, rather than cluster-level&lt;/LI&gt;
&lt;LI&gt;&lt;STRONG&gt;Least-privilege access&lt;/STRONG&gt; with secure RBAC&lt;/LI&gt;
&lt;LI&gt;&lt;STRONG&gt;Seamless scaling and redeployment&lt;/STRONG&gt;, without identity reconfiguration&lt;/LI&gt;
&lt;LI&gt;&lt;STRONG&gt;No secrets, no key rotation, no credential injection&lt;/STRONG&gt;&lt;/LI&gt;
&lt;/UL&gt;
&lt;P&gt;When combined with Azure Files over SMB, Workload Identity allows AKS workloads to access shared file storage &lt;STRONG&gt;securely and natively per pod&lt;/STRONG&gt;, using the same identity-driven model as cluster level managed identities. Now available with AKS 1.35, for customers specifically in the financial services industries, AKS Workload Identity enables per‑application, least‑privilege access to Azure Files without credentials, improving isolation and auditability. This allows regulated, stateful workloads to run securely on AKS while meeting strict compliance and regulatory requirements.&lt;/P&gt;
&lt;H3&gt;Co-existence of Application Identities and end-user identity access&lt;/H3&gt;
&lt;P&gt;Azure Files now enables both Managed Identity and end‑user access on the same storage account, with users and applications independently authenticated via Entra ID and authorized through a shared permissions model.&lt;BR /&gt;This unified access model eliminates the need for duplicate storage or credentials, enabling secure collaboration, troubleshooting, and automation on shared data without compromising governance or compliance.&lt;/P&gt;
&lt;P&gt;This supports scenarios such as:&lt;/P&gt;
&lt;UL&gt;
&lt;LI&gt;Developers accessing the same file share as an application for debugging&lt;/LI&gt;
&lt;LI&gt;Admins managing content used by automated workflows&lt;/LI&gt;
&lt;LI&gt;Hybrid environments with user-driven and app-driven access&lt;/LI&gt;
&lt;/UL&gt;
&lt;H3&gt;Simplified Storage Account enablement via the Azure portal&lt;/H3&gt;
&lt;P&gt;We have now added a dedicated Managed Identity property that makes enabling identity‑based SMB access simple and transparent via the Azure portal for new as well as existing storage accounts. With a single configuration at the storage account level, customers can allow applications to authenticate to Azure Files using Managed Identities. This portal experience supports incremental adoption, making it easy to modernize authentication while maintaining compatibility with existing user access and governance models.&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;img /&gt;
&lt;P class="lia-clear-both"&gt;&amp;nbsp;&lt;/P&gt;
&lt;H2&gt;Get Started with Managed Identities with SMB Azure Files&lt;/H2&gt;
&lt;P&gt;Start using Managed Identities with Azure Files today at no additional cost. This feature is supported on HDD and SSD SMB shares across all billing models. Refer to our&amp;nbsp;&lt;A href="https://go.microsoft.com/fwlink/?linkid=2338790" target="_blank"&gt;documentation&lt;/A&gt; for complete set-up guidance.&lt;/P&gt;
&lt;P&gt;Whether provisioning new storage or enhancing existing deployments, this capability provides secure, enterprise‑grade access with a streamlined configuration experience.&lt;/P&gt;
&lt;P&gt;For any questions, reach out to the team at&amp;nbsp; &lt;A href="mailto:azurefiles@microsoft.com" target="_blank"&gt;azurefiles@microsoft.com.&amp;nbsp;&lt;/A&gt;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Mon, 20 Apr 2026 17:57:56 GMT</pubDate>
      <guid>https://techcommunity.microsoft.com/t5/azure-storage-blog/secure-keyless-application-access-with-managed-identities-now-ga/ba-p/4513053</guid>
      <dc:creator>Priyanka-Gangal</dc:creator>
      <dc:date>2026-04-20T17:57:56Z</dc:date>
    </item>
    <item>
      <title>Simplify On-prem File share Migration to Azure: Discover &amp; assess suitability using Azure Migrate</title>
      <link>https://techcommunity.microsoft.com/t5/azure-storage-blog/simplify-on-prem-file-share-migration-to-azure-discover-assess/ba-p/4509195</link>
      <description>&lt;H6&gt;&lt;SPAN class="lia-text-color-10"&gt;&lt;STRONG&gt;UPDATE as of 20th May 2026: &lt;/STRONG&gt;&lt;/SPAN&gt;&lt;SPAN class="lia-text-color-10"&gt;&lt;SPAN class="lia-text-color-21"&gt;We are happy to announce that t&lt;/SPAN&gt;&lt;/SPAN&gt;&lt;SPAN class="lia-text-color-21"&gt;his capability is now GA worldwide.&lt;/SPAN&gt;&lt;/H6&gt;
&lt;P&gt;Migrating on‑premises file servers to the cloud is a complex infrastructure transformation—not just a data move. Many organizations lack the visibility needed to decide whether to rehost or modernize file shares spread across Windows and Linux servers. Azure Migrate now extends its &lt;A href="https://learn.microsoft.com/azure/migrate/create-file-share-assessment?view=migrate" target="_blank" rel="noopener"&gt;discovery and assessment capabilities&lt;/A&gt;&amp;nbsp; to SMB and NFS file shares, enabling a data‑driven approach to modernizing on‑premises file workloads with Azure Files, or alternatively rehosting to deployment within an Azure VM.&lt;/P&gt;
&lt;P&gt;We are pleased to introduce the public preview of Azure Migrate’s new &lt;STRONG&gt;comprehensive discovery and assessment of on-premises SMB and NFS file shares for migration to Azure Files&lt;/STRONG&gt;. This enhancement simplifies the migration process by integrating discovery and evaluation tools for SMB and NFS shares across both Windows and Linux platforms. Users can efficiently identify file shares, analyze their compatibility, and compare cost benefits for transitioning to Azure Files, all within an intuitive and streamlined interface.&lt;/P&gt;
&lt;H1&gt;Why does this matter&lt;/H1&gt;
&lt;P&gt;File shares remain a foundational service for most workloads - supporting applications, analytics, user home directories, and shared content. Planning such a vast amount of data for migration can be slow, manual, and fragmented. This new Azure Migrate capability is designed to help with:&lt;/P&gt;
&lt;UL&gt;
&lt;LI&gt;&lt;STRONG&gt;Reduce migration planning from months to weeks&lt;/STRONG&gt; through automated discovery and assessment of SMB and NFS file shares.&lt;/LI&gt;
&lt;LI&gt;&lt;STRONG&gt;Perform holistic migration planning &lt;/STRONG&gt;of your data and storage alongside servers, applications and data bases from within Azure Migrate experience.&lt;/LI&gt;
&lt;LI&gt;&lt;STRONG&gt;Modernize confidently to Azure Files&lt;/STRONG&gt; with tailored SKU recommendations, readiness assessments, and comprehensive cost insights, enabling you to build a clear business case by comparing ongoing on-premises and Azure Files costs.&lt;/LI&gt;
&lt;/UL&gt;
&lt;H1&gt;What’s available in public preview&lt;/H1&gt;
&lt;OL&gt;
&lt;LI&gt;&lt;STRONG&gt;Discover &lt;/STRONG&gt;and view details of all &lt;STRONG&gt;on-premises SMB, NFS shares&lt;/STRONG&gt; hosted on Windows and Linux servers&lt;/LI&gt;
&lt;LI&gt;Group, tag, filter shares by Production, non-production, project, business group for &lt;STRONG&gt;better planning&lt;/STRONG&gt;.&lt;/LI&gt;
&lt;LI&gt;Create and review assessment for each share, its &lt;STRONG&gt;target Azure Files SKU&lt;/STRONG&gt; based on region, redundancy, pricing options and media type.&lt;/LI&gt;
&lt;LI&gt;Generate a &lt;STRONG&gt;business case&lt;/STRONG&gt; for selected group of shares running on Azure Files against on-premises cost.&lt;/LI&gt;
&lt;/OL&gt;
&lt;P&gt;&lt;BR /&gt;&lt;STRONG&gt;How do you get this feature? &lt;/STRONG&gt;Install the&lt;STRONG&gt; &lt;/STRONG&gt;latest&lt;STRONG&gt; &lt;/STRONG&gt;Azure Migrate appliance, or enable the &lt;A href="https://learn.microsoft.com/en-us/azure/migrate/migrate-appliance?view=migrate#appliance-upgrades" target="_blank" rel="noopener"&gt;auto update feature&lt;/A&gt; for the appliance will receive this new capability. All existing SMB, NFS file shares will be reported in the Azure Migrate portal along with their Windows and Linux hosts. You do not need to perform any additional steps to discover the shares.&lt;/P&gt;
&lt;H1&gt;End-to-end experience&lt;/H1&gt;
&lt;P&gt;The experience is fully integrated into Azure Migrate and follows a familiar, guided workflow as below.&lt;/P&gt;
&lt;H2&gt;1.&amp;nbsp;&amp;nbsp; Discover on‑premises file servers and file shares&lt;/H2&gt;
&lt;P&gt;You can start by creating an Azure Migrate project in the Azure portal and enabling discovery using the Azure Migrate appliance. The appliance can be deployed in connected or disconnected mode and runs on VMware, Hyper‑V, or physical servers. Once deployed, the appliance automatically discovers file servers and the file shares they host, including:&lt;/P&gt;
&lt;UL&gt;
&lt;LI&gt;Operating system (Windows or Linux)&lt;/LI&gt;
&lt;LI&gt;File share protocol (SMB or NFS)&lt;/LI&gt;
&lt;LI&gt;Associated volumes&lt;/LI&gt;
&lt;LI&gt;Estimated capacity&lt;/LI&gt;
&lt;LI&gt;Basic performance metrics such as IOPS and throughput (when performance collection is enabled)&lt;BR /&gt;&lt;BR /&gt;&lt;/LI&gt;
&lt;/UL&gt;
&lt;P&gt;Discovered file shares appear directly in Azure Migrate inventory views, where they are surfaced as inventory items under respective Windows or Linux systems. This makes it easy to filter, tag, and review all shares at scale.&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;img /&gt;
&lt;H2&gt;2.&amp;nbsp;&amp;nbsp; Build a business case&lt;/H2&gt;
&lt;P&gt;The next step is to create&amp;nbsp;&lt;STRONG&gt;a&lt;/STRONG&gt; &lt;STRONG&gt;business case. &lt;/STRONG&gt;This&lt;STRONG&gt; &lt;/STRONG&gt;offers a clear comparison of on-premises costs versus Azure, highlights long-term savings and operational benefits, and justifies modernizing to Azure Files rather than rehosting file servers on virtual machines. This allows IT leaders to make data-driven decisions confidently.&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;img /&gt;
&lt;H2&gt;3.&amp;nbsp;&amp;nbsp; Create and review an Azure Files assessment&lt;/H2&gt;
&lt;P&gt;Once you have finalised your business case and decided to move to Azure Files, you can initiate an &lt;STRONG&gt;Azure Files assessment&lt;/STRONG&gt; right from the Azure Migrate platform. The assessments are adaptable, allowing you to focus solely on file shares, include their parent servers, or even expand to scenarios that cover VMs, databases, and file shares—reflecting real-world planning needs. Each assessment reviews readiness and provides recommendations based on inventory and performance metrics gathered. Furthermore, you can tailor assessment settings, including selecting a target Azure region, pricing and savings preferences, media type, redundancy options, and choosing either performance-based or as-is sizing. The assessment offers a detailed overview of migration readiness and economic factors, supporting well-informed decisions for subsequent actions.&lt;/P&gt;
&lt;P&gt;Key insights include:&lt;/P&gt;
&lt;UL&gt;
&lt;LI&gt;&lt;STRONG&gt;Readiness states&lt;/STRONG&gt; for each file share (Ready, Ready with conditions, or Not ready)&lt;/LI&gt;
&lt;LI&gt;&lt;STRONG&gt;Recommended Azure Files SKU&lt;/STRONG&gt; based on performance and suitability. For example, Azure Files provisioned v2 premium SSD for a NFS 4.1 share as target.&lt;/LI&gt;
&lt;LI&gt;&lt;STRONG&gt;Monthly cost estimates&lt;/STRONG&gt; for the recommended SKU.&lt;/LI&gt;
&lt;LI&gt;&lt;STRONG&gt;On‑premises vs Azure TCO comparison&lt;/STRONG&gt;, helping customers understand long‑term cost implications&lt;BR /&gt;&lt;BR /&gt;&lt;/LI&gt;
&lt;/UL&gt;
&lt;P&gt;Azure Migrate also identifies potential warnings and provides necessary remediation guidance. For example, when a redundancy type is not available in an Azure region, it is flagged as ready with conditions and recommend choosing an alternative redundancy type and fallback to next available option.&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;img /&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&lt;STRONG&gt;Prepare for migration with appropriate tools&lt;/STRONG&gt;&lt;/P&gt;
&lt;P&gt;Once you are ready to migrate, Azure Migrate also highlights &lt;STRONG&gt;recommended migration tools&lt;/STRONG&gt; as part of the assessment. &lt;STRONG&gt;Azure Storage Mover&lt;/STRONG&gt; is the default recommended path for file share migrations—providing a first party, managed service to move data efficiently to Azure Files. To learn more about Microsoft’s recommendations to unstructured data migration using other tools, please visit: &lt;A href="https://aka.ms/migratemydata" target="_blank" rel="noopener"&gt;https://aka.ms/migratemydata&lt;/A&gt;.&lt;/P&gt;
&lt;P&gt;Learn more about &lt;A href="https://learn.microsoft.com/en-us/azure/migrate/create-file-share-assessment?view=migrate" target="_blank" rel="noopener"&gt;creation of assessment&lt;/A&gt; and &lt;A href="https://learn.microsoft.com/en-us/azure/migrate/review-file-share-assessment?view=migrate" target="_blank" rel="noopener"&gt;review assessment&lt;/A&gt; to get started with understanding your on-premises file shares estate today. Write to us at &lt;U&gt;migratemydata@microsoft.com&lt;/U&gt; for any questions or feedback - we look forward to hearing from you!&lt;/P&gt;</description>
      <pubDate>Fri, 22 May 2026 10:24:28 GMT</pubDate>
      <guid>https://techcommunity.microsoft.com/t5/azure-storage-blog/simplify-on-prem-file-share-migration-to-azure-discover-assess/ba-p/4509195</guid>
      <dc:creator>bapic</dc:creator>
      <dc:date>2026-05-22T10:24:28Z</dc:date>
    </item>
    <item>
      <title>Unlocking AI-Ready Unstructured Data at Scale with Komprise and Azure</title>
      <link>https://techcommunity.microsoft.com/t5/azure-storage-blog/unlocking-ai-ready-unstructured-data-at-scale-with-komprise-and/ba-p/4507422</link>
      <description>&lt;H1 aria-level="2"&gt;&lt;SPAN data-contrast="none"&gt;&lt;SPAN data-ccp-parastyle="heading 2"&gt;Why &lt;/SPAN&gt;&lt;SPAN data-ccp-parastyle="heading 2"&gt;M&lt;/SPAN&gt;&lt;SPAN data-ccp-parastyle="heading 2"&gt;ove&amp;nbsp;&lt;/SPAN&gt;&lt;SPAN data-ccp-parastyle="heading 2"&gt;Unstructured Data&amp;nbsp;&lt;/SPAN&gt;&lt;SPAN data-ccp-parastyle="heading 2"&gt;to Azure&lt;/SPAN&gt;&lt;/SPAN&gt;&lt;SPAN data-ccp-props="{&amp;quot;134245418&amp;quot;:true,&amp;quot;134245529&amp;quot;:true,&amp;quot;335559738&amp;quot;:160,&amp;quot;335559739&amp;quot;:80}"&gt;&amp;nbsp;&lt;/SPAN&gt;&lt;/H1&gt;
&lt;P&gt;&lt;SPAN class="lia-text-color-21"&gt;On-premises storage environments are often over-provisioned to accommodate future growth, driving&amp;nbsp;costs&amp;nbsp;and operational complexity. Azure’s cloud-based storage platform enables organizations to right-size their environments through elastic scaling and Microsoft’s global economies of scale. This flexibility is especially critical for regulated industries managing sensitive data at&amp;nbsp;massive&amp;nbsp;scale.&amp;nbsp;&lt;/SPAN&gt;&lt;/P&gt;
&lt;P&gt;&lt;SPAN class="lia-text-color-21"&gt;Azure also delivers enterprise-grade security capabilities, including immutability and object locking, which protect data against ransomware and malicious deletion. By moving unstructured data to Azure, organizations gain not only cost efficiency, but also a more resilient and secure data foundation.&amp;nbsp;&lt;/SPAN&gt;&lt;/P&gt;
&lt;P&gt;&lt;SPAN class="lia-text-color-21"&gt;A strong example of this approach is the Florida Department of Environmental Protection. With support from&amp;nbsp;&lt;A class="lia-external-url" href="https://www.komprise.com/partners/microsoft-azure/" target="_blank" rel="noopener"&gt;Komprise&lt;/A&gt;&amp;nbsp;and funding through Microsoft’s&amp;nbsp;&lt;A href="https://learn.microsoft.com/en-us/azure/migrate/migrate-services-overview?view=migrate-classic" target="_blank" rel="noopener"&gt;Azure Migrate&lt;/A&gt;&amp;nbsp;program, the department successfully migrated large volumes of data to Azure, enabling the phase-out of on-premises data centers while&amp;nbsp;maintaining&amp;nbsp;access to data for analysis across regions. This&amp;nbsp;demonstrates&amp;nbsp;how organizations can modernize data infrastructure without disrupting business operations.&amp;nbsp;&lt;/SPAN&gt;&lt;/P&gt;
&lt;H1 aria-level="2"&gt;&lt;SPAN data-contrast="none"&gt;&lt;SPAN data-ccp-parastyle="heading 2"&gt;Hybrid Cloud and Intelligent Tiering&lt;/SPAN&gt;&lt;/SPAN&gt;&lt;SPAN data-ccp-props="{&amp;quot;134245418&amp;quot;:true,&amp;quot;134245529&amp;quot;:true,&amp;quot;335559738&amp;quot;:160,&amp;quot;335559739&amp;quot;:80}"&gt;&amp;nbsp;&lt;/SPAN&gt;&lt;/H1&gt;
&lt;P&gt;&lt;SPAN data-contrast="auto"&gt;Most enterprises&amp;nbsp;operate&amp;nbsp;in hybrid environments, balancing on-premises systems with cloud storage.&amp;nbsp;Komprise&amp;nbsp;and Microsoft address this reality by enabling&amp;nbsp;&lt;/SPAN&gt;&lt;A href="https://learn.microsoft.com/en-us/azure/storage/solution-integration/validated-partners/data-management/komprise-tiering-guide" target="_blank" rel="noopener"&gt;&lt;SPAN data-contrast="none"&gt;&lt;SPAN data-ccp-charstyle="Hyperlink"&gt;intelligent tiering&lt;/SPAN&gt;&lt;/SPAN&gt;&lt;/A&gt;&lt;SPAN data-contrast="auto"&gt;&amp;nbsp;of unstructured data across environments.&lt;/SPAN&gt;&lt;SPAN data-ccp-props="{}"&gt;&amp;nbsp;&lt;/SPAN&gt;&lt;/P&gt;
&lt;P&gt;&lt;SPAN data-contrast="auto"&gt;Using Azure Blob Storage, organizations can transparently move cold and infrequently&amp;nbsp;accessed&amp;nbsp;data to lower-cost cloud tiers while keeping&amp;nbsp;frequently&amp;nbsp;accessed data close to applications and users. This approach reduces pressure on expensive on-premises storage infrastructure without sacrificing accessibility.&amp;nbsp;For example, a major healthcare organization achieved approximately $2.5&lt;/SPAN&gt;&lt;SPAN data-contrast="auto"&gt; &lt;/SPAN&gt;&lt;SPAN data-contrast="auto"&gt;million in storage cost savings by tiering cold data to Azure while&amp;nbsp;maintaining&amp;nbsp;seamless access for clinicians and applications.&lt;/SPAN&gt;&lt;SPAN data-ccp-props="{}"&gt;&amp;nbsp;&lt;/SPAN&gt;&lt;/P&gt;
&lt;H1 aria-level="2"&gt;&lt;SPAN data-contrast="none"&gt;&lt;SPAN data-ccp-parastyle="heading 2"&gt;AI&amp;nbsp;&lt;/SPAN&gt;&lt;SPAN data-ccp-parastyle="heading 2"&gt;Depends on&lt;/SPAN&gt;&lt;SPAN data-ccp-parastyle="heading 2"&gt;&amp;nbsp;&lt;/SPAN&gt;&lt;SPAN data-ccp-parastyle="heading 2"&gt;D&lt;/SPAN&gt;&lt;SPAN data-ccp-parastyle="heading 2"&gt;ata&amp;nbsp;&lt;/SPAN&gt;&lt;SPAN data-ccp-parastyle="heading 2"&gt;C&lt;/SPAN&gt;&lt;SPAN data-ccp-parastyle="heading 2"&gt;uration&lt;/SPAN&gt;&lt;/SPAN&gt;&lt;SPAN data-ccp-props="{&amp;quot;134245418&amp;quot;:true,&amp;quot;134245529&amp;quot;:true,&amp;quot;335559738&amp;quot;:160,&amp;quot;335559739&amp;quot;:80}"&gt;&amp;nbsp;&lt;/SPAN&gt;&lt;/H1&gt;
&lt;P&gt;&lt;SPAN data-contrast="auto"&gt;AI's efficacy is reliant on data quality.&amp;nbsp;The need for&amp;nbsp;high-quality&amp;nbsp;and&amp;nbsp;curated data&amp;nbsp;cannot be&amp;nbsp;enough emphasized&amp;nbsp;so AI can generate meaningful and&amp;nbsp;accurate&amp;nbsp;results. In partnership with&amp;nbsp;Komprise, organizations can efficiently cleanse and enhance their data by&amp;nbsp;identifying&amp;nbsp;and&amp;nbsp;eliminating&amp;nbsp;redundancies. By curating data before AI processes, organizations have achieved impressive accuracy improvements—as&amp;nbsp;demonstrated&amp;nbsp;by a financial services firm that increased their AI output accuracy by 135%.&lt;/SPAN&gt;&lt;SPAN data-ccp-props="{}"&gt;&amp;nbsp;&lt;/SPAN&gt;&lt;/P&gt;
&lt;H1 aria-level="2"&gt;&lt;SPAN data-contrast="none"&gt;&lt;SPAN data-ccp-parastyle="heading 2"&gt;Making Data&amp;nbsp;&lt;/SPAN&gt;&lt;SPAN data-ccp-parastyle="heading 2"&gt;AI&lt;/SPAN&gt;&lt;SPAN data-ccp-parastyle="heading 2"&gt;-Ready&amp;nbsp;&lt;/SPAN&gt;&lt;SPAN data-ccp-parastyle="heading 2"&gt;on Azur&lt;/SPAN&gt;&lt;SPAN data-ccp-parastyle="heading 2"&gt;e&lt;/SPAN&gt;&lt;/SPAN&gt;&lt;SPAN data-ccp-props="{&amp;quot;134245418&amp;quot;:true,&amp;quot;134245529&amp;quot;:true,&amp;quot;335559738&amp;quot;:160,&amp;quot;335559739&amp;quot;:80}"&gt;&amp;nbsp;&lt;/SPAN&gt;&lt;/H1&gt;
&lt;P&gt;&lt;SPAN data-contrast="auto"&gt;Azure provides a powerful execution platform for AI and&amp;nbsp;Komprise&amp;nbsp;enhances this by bringing structure to unstructured data through its data classification, metadata extraction capabilities and with search, curation and intelligent ingestion via its data workflow and governance capabilities. These ensure only high-quality,&amp;nbsp;relevant&amp;nbsp;and compliant data&amp;nbsp;feeds&amp;nbsp;AI workflows.&lt;/SPAN&gt;&lt;SPAN data-ccp-props="{}"&gt;&amp;nbsp;&lt;/SPAN&gt;&lt;/P&gt;
&lt;P&gt;&lt;SPAN data-contrast="auto"&gt;This approach enables smoother integration with AI services and applications such as Microsoft Foundry and Copilot, while preserving flexibility. By treating data readiness as a foundational step, organizations can accelerate time to value from AI while reducing risk.&lt;/SPAN&gt;&lt;SPAN data-ccp-props="{}"&gt;&amp;nbsp;&lt;/SPAN&gt;&lt;/P&gt;
&lt;H1 aria-level="2"&gt;&lt;SPAN data-contrast="none"&gt;&lt;SPAN data-ccp-parastyle="heading 2"&gt;Security&lt;/SPAN&gt;&lt;SPAN data-ccp-parastyle="heading 2"&gt;,&lt;/SPAN&gt;&lt;SPAN data-ccp-parastyle="heading 2"&gt;&amp;nbsp;Governance&lt;/SPAN&gt;&lt;SPAN data-ccp-parastyle="heading 2"&gt;, and Responsible AI&lt;/SPAN&gt;&lt;/SPAN&gt;&lt;SPAN data-ccp-props="{&amp;quot;134245418&amp;quot;:true,&amp;quot;134245529&amp;quot;:true,&amp;quot;335559738&amp;quot;:160,&amp;quot;335559739&amp;quot;:80}"&gt;&amp;nbsp;&lt;/SPAN&gt;&lt;/H1&gt;
&lt;P&gt;&lt;SPAN data-contrast="auto"&gt;As cyber threats and regulatory requirements continue to intensify, security and governance are no longer optional. Organizations must manage data flows carefully,&amp;nbsp;maintain&amp;nbsp;auditability, and protect sensitive information—especially when using data for AI.&lt;/SPAN&gt;&lt;SPAN data-ccp-props="{}"&gt;&amp;nbsp;&lt;/SPAN&gt;&lt;/P&gt;
&lt;P&gt;&lt;SPAN data-contrast="auto"&gt;Azure’s built-in security capabilities, including immutability, versioning, and backup, provide&amp;nbsp;a strong foundation&amp;nbsp;for protecting unstructured data.&amp;nbsp;Komprise&amp;nbsp;complements these capabilities by automating data governance policies, enforcing compliance, and helping organizations&amp;nbsp;maintain&amp;nbsp;visibility and control across hybrid environments. Together, they enable organizations to use data safely and responsibly, supporting both regulatory compliance and responsible AI practices.&lt;/SPAN&gt;&lt;SPAN data-ccp-props="{}"&gt;&amp;nbsp;&lt;/SPAN&gt;&lt;/P&gt;
&lt;H1&gt;&lt;SPAN data-contrast="none"&gt;Conclusion&lt;/SPAN&gt;&lt;SPAN data-ccp-props="{}"&gt;&amp;nbsp;&lt;/SPAN&gt;&lt;/H1&gt;
&lt;P&gt;&lt;SPAN data-contrast="auto"&gt;As AI adoption accelerates, success increasingly depends on data readiness rather than algorithms alone. Clean, well-governed, and properly placed data is the foundation for meaningful AI outcomes.&lt;/SPAN&gt;&lt;SPAN data-ccp-props="{}"&gt;&amp;nbsp;&lt;/SPAN&gt;&lt;/P&gt;
&lt;P&gt;&lt;SPAN data-contrast="auto"&gt;By combining Azure’s scalable and secure cloud platform with&amp;nbsp;Komprise’s&amp;nbsp;intelligent data management, organizations can reduce costs, strengthen security, and unlock real value from unstructured data at scale.&lt;/SPAN&gt;&lt;SPAN data-ccp-props="{}"&gt;&amp;nbsp;&lt;/SPAN&gt;&lt;/P&gt;
&lt;P&gt;&lt;SPAN data-contrast="auto"&gt;To learn more, watch the Microsoft–Komprise&amp;nbsp;fireside chat, where we discuss customer examples, architectural best practices, and proven approaches for managing unstructured data across hybrid environments. We also invite you to explore our joint Azure and&amp;nbsp;Komprise&amp;nbsp;solutions to see how you can move from data sprawl to AI value while&amp;nbsp;maintaining&amp;nbsp;control, security, and flexibility.&lt;/SPAN&gt;&lt;SPAN data-ccp-props="{}"&gt;&amp;nbsp;&lt;/SPAN&gt;&lt;/P&gt;
&lt;P&gt;&lt;SPAN data-contrast="auto"&gt;In a recent fireside chat now available on &lt;A class="lia-external-url" href="https://youtu.be/JgQIPJ6jmjA" target="_blank" rel="noopener"&gt;YouTube&lt;/A&gt;, Azure Storage VP Aung Oo joined Komprise COO Krishna Subramanian to explore how Azure and Komprise are empowering customers to mobilize, curate, and optimize unstructured data to make it AI-ready.&lt;/SPAN&gt;&lt;SPAN data-ccp-props="{}"&gt;&amp;nbsp;&lt;/SPAN&gt;&lt;/P&gt;
&lt;P&gt;&lt;SPAN data-contrast="auto"&gt;To&amp;nbsp;leverage&amp;nbsp;the&amp;nbsp;&lt;/SPAN&gt;&lt;A href="https://learn.microsoft.com/en-us/azure/storage/solution-integration/validated-partners/data-management/azure-file-migration-program-solutions" target="_blank" rel="noopener"&gt;&lt;SPAN data-contrast="none"&gt;&lt;SPAN data-ccp-charstyle="Hyperlink"&gt;Storage Migration Program&lt;/SPAN&gt;&lt;/SPAN&gt;&lt;/A&gt;&lt;SPAN data-contrast="auto"&gt;&amp;nbsp;with&amp;nbsp;Komprise&amp;nbsp;to migrate your data to&amp;nbsp;Azure&amp;nbsp;find more information at&amp;nbsp;&lt;/SPAN&gt;&lt;A href="https://marketplace.microsoft.com/en-us/product/komprise_inc.intelligent_data_management?tab=Overview%E2%80%8B" target="_blank" rel="noopener"&gt;&lt;SPAN data-contrast="none"&gt;&lt;SPAN data-ccp-charstyle="Hyperlink"&gt;Microsoft Marketplace&lt;/SPAN&gt;&lt;/SPAN&gt;&lt;/A&gt;&lt;SPAN data-contrast="auto"&gt;.&amp;nbsp;To take advantage of&amp;nbsp;the&amp;nbsp;full&amp;nbsp;Komprise&amp;nbsp;suite including automated tiering&amp;nbsp;and&amp;nbsp;smart&amp;nbsp;workflows&amp;nbsp;–&amp;nbsp;additional&amp;nbsp;details&amp;nbsp;are available&amp;nbsp;&lt;/SPAN&gt;&lt;A href="https://marketplace.microsoft.com/en-us/product/komprise_inc.intelligent_data_management?tab=Overview%E2%80%8B" target="_blank" rel="noopener"&gt;&lt;SPAN data-contrast="none"&gt;&lt;SPAN data-ccp-charstyle="Hyperlink"&gt;here&lt;/SPAN&gt;&lt;/SPAN&gt;&lt;/A&gt;&lt;SPAN data-contrast="auto"&gt;.&lt;/SPAN&gt;&lt;SPAN data-ccp-props="{}"&gt;&amp;nbsp;&lt;/SPAN&gt;&lt;/P&gt;</description>
      <pubDate>Thu, 02 Apr 2026 09:53:30 GMT</pubDate>
      <guid>https://techcommunity.microsoft.com/t5/azure-storage-blog/unlocking-ai-ready-unstructured-data-at-scale-with-komprise-and/ba-p/4507422</guid>
      <dc:creator>dmalbrough</dc:creator>
      <dc:date>2026-04-02T09:53:30Z</dc:date>
    </item>
    <item>
      <title>Enterprise Identity Meets Secure File Transfer: Entra ID Public Preview on Azure Blob Storage SFTP</title>
      <link>https://techcommunity.microsoft.com/t5/azure-storage-blog/enterprise-identity-meets-secure-file-transfer-entra-id-public/ba-p/4501937</link>
      <description>&lt;P&gt;We are excited to announce &lt;A href="https://learn.microsoft.com/azure/storage/blobs/secure-file-transfer-protocol-support-entra-id-based-access?" target="_blank"&gt;the public preview of Entra ID-based access&lt;/A&gt; for &lt;A href="https://learn.microsoft.com/azure/storage/blobs/secure-file-transfer-protocol-support" target="_blank"&gt;Azure Blob Storage SFTP&lt;/A&gt;. This new capability enables you to use Microsoft Entra ID (formerly Azure Active Directory) identities (including guest users via Entra External Identities) to securely connect to Azure Blob Storage via SFTP without needing local users. This feature eliminates the operational overhead of managing local SFTP users and passwords by introducing enterprise-grade identity management powered by Microsoft Entra ID.&lt;/P&gt;
&lt;P&gt;For IT administrators and security teams, this means no more creating, tracking, rotating, or decommissioning local SFTP credentials. For developers and architects, it means seamless integration with your existing identity infrastructure. For business users, it means faster, more secure access to the data they need, all while maintaining compliance with enterprise security policies.&lt;/P&gt;
&lt;H1&gt;Azure Blob Storage SFTP&lt;/H1&gt;
&lt;P&gt;&lt;A href="https://learn.microsoft.com/azure/storage/blobs/secure-file-transfer-protocol-support-connect" target="_blank"&gt;Azure Blob Storage SFTP&lt;/A&gt; natively enables secure file access and management without third-party solutions. This simplifies operations for customers and removes the need for complex, custom SFTP solutions. Until this Public Preview, Azure Blob Storage SFTP utilized a form of identity management called&amp;nbsp;&lt;EM&gt;local users &lt;/EM&gt;as the only authorization mechanism. Local users must use either a password or a Secure Shell (SSH) private key credential for authentication. Learn more about local users&amp;nbsp;&lt;A href="https://learn.microsoft.com/azure/storage/blobs/secure-file-transfer-protocol-support#sftp-permission-model" target="_blank"&gt;here&lt;/A&gt;.&lt;/P&gt;
&lt;H1&gt;The Challenge: SFTP Local User Management&lt;/H1&gt;
&lt;P&gt;Organizations currently face challenges when managing SFTP access at scale with Azure Storage SFTP Local Users. Local User based SFTP access require IT teams to:&lt;/P&gt;
&lt;UL&gt;
&lt;LI&gt;Manually create and provision local user accounts for each SFTP user&lt;/LI&gt;
&lt;LI&gt;Generate, distribute, and securely store SSH keys or passwords&lt;/LI&gt;
&lt;LI&gt;Implement custom workflows for lifecycle management&lt;/LI&gt;
&lt;LI&gt;Manage offboarding processes to ensure departed users lose access immediately&lt;/LI&gt;
&lt;LI&gt;Audit and track access across disconnected identity silos&lt;/LI&gt;
&lt;LI&gt;Handle external partner and vendor access through ad-hoc, often insecure methods&lt;/LI&gt;
&lt;/UL&gt;
&lt;H1&gt;The Solution: Enterprise Identity Meets Secure File Transfer&lt;/H1&gt;
&lt;P&gt;With Entra ID-based access for Azure Blob Storage SFTP, you can now leverage your organization's centralized identity platform to authenticate and authorize SFTP users. This integration brings the full power of Microsoft Entra ID to your file transfer workflows, delivering the following benefits:&lt;/P&gt;
&lt;H3&gt;1. Eliminate Local User Management&lt;/H3&gt;
&lt;P&gt;Simplify SFTP management by assigning access with Entra ID—no separate SFTP accounts needed.&lt;/P&gt;
&lt;UL&gt;
&lt;LI&gt;No local credential generation or distribution—users authenticate with their existing corporate credentials&lt;/LI&gt;
&lt;LI&gt;No orphaned accounts when users change roles or leave the organization&lt;/LI&gt;
&lt;LI&gt;Reduced attack surface by eliminating static, long-lived local credentials&lt;/LI&gt;
&lt;LI&gt;Centralized user lifecycle management through your existing identity platform&lt;/LI&gt;
&lt;/UL&gt;
&lt;H3&gt;2. Enterprise-Grade Identity and Security&lt;/H3&gt;
&lt;P&gt;Leverage the full security capabilities of Microsoft Entra ID for your SFTP infrastructure:&lt;/P&gt;
&lt;UL&gt;
&lt;LI&gt;Multi-Factor Authentication (MFA): Require additional verification factors beyond passwords, significantly reducing the risk of account compromise&lt;/LI&gt;
&lt;LI&gt;Conditional Access: Define policies that grant or block access based on user location, device compliance, sign-in risk, and other conditions&lt;/LI&gt;
&lt;LI&gt;Identity Protection: Benefit from Microsoft threat intelligence and risk detection to identify and respond to compromised accounts&lt;/LI&gt;
&lt;LI&gt;Privileged Identity Management (PIM): Provide just-in-time elevated access for administrative operations&lt;/LI&gt;
&lt;/UL&gt;
&lt;H3&gt;3. Native Azure RBAC, ABAC, and ACL Integration&lt;/H3&gt;
&lt;P&gt;Your SFTP access control seamlessly integrates with Azure comprehensive authorization framework:&lt;/P&gt;
&lt;UL&gt;
&lt;LI&gt;Role-Based Access Control (RBAC): Assign built-in or custom roles at the storage account, container, or even blob level&lt;/LI&gt;
&lt;LI&gt;Attribute-Based Access Control (ABAC): Create sophisticated access policies based on resource tags, user attributes, and environmental conditions&lt;/LI&gt;
&lt;LI&gt;Access Control Lists (ACLs): Apply fine-grained permissions at the directory and file level for hierarchical namespace-enabled accounts&lt;/LI&gt;
&lt;LI&gt;Unified Permission Model: SFTP access respects the same permissions as REST API, Azure CLI, and other access methods—no separate permission system to manage&lt;/LI&gt;
&lt;/UL&gt;
&lt;H3&gt;4. Faster SFTP Onboarding and Time-to-Value&lt;/H3&gt;
&lt;P&gt;Onboard new SFTP users or partners in minutes instead of hours or days, saving significant time and boosting business agility.&lt;/P&gt;
&lt;H3&gt;5. Secure External Collaboration with Entra External Identities&lt;/H3&gt;
&lt;P&gt;Seamlessly enable secure external SFTP access by allowing partners to authenticate with their own credentials using Entra External Identities (Azure AD B2B).&lt;/P&gt;
&lt;UL&gt;
&lt;LI&gt;External users authenticate with credentials they already manage&lt;/LI&gt;
&lt;LI&gt;Full audit trail of external user activity&lt;/LI&gt;
&lt;LI&gt;Ability to apply Conditional Access policies to external users&lt;/LI&gt;
&lt;LI&gt;Automatic access revocation when B2B relationships end&lt;/LI&gt;
&lt;/UL&gt;
&lt;H2&gt;Real World Scenarios&lt;/H2&gt;
&lt;UL&gt;
&lt;LI&gt;&lt;STRONG&gt;Financial Services:&lt;/STRONG&gt; A bank receives daily transaction files from merchants via SFTP. Merchants authenticate with their own Entra ID credentials (B2B collaboration), MFA is enforced, and access is restricted to assigned directories. Access is instantly revoked when a merchant is removed from the B2B directory.&lt;/LI&gt;
&lt;LI&gt;&lt;STRONG&gt;Healthcare:&lt;/STRONG&gt; A hospital exchanges patient data with insurers and labs. Entra ID authentication ensures only authorized staff access sensitive PII, with full audit logs for HIPAA compliance. Conditional Access restricts connections to approved locations and devices.&lt;/LI&gt;
&lt;LI&gt;&lt;STRONG&gt;Media &amp;amp; Entertainment:&lt;/STRONG&gt; A production company enables freelance editors and agencies to transfer large media files. Entra External Identities provide time-limited access and automatic revocation when projects end—no need for local SFTP accounts.&lt;/LI&gt;
&lt;LI&gt;&lt;STRONG&gt;Manufacturing:&lt;/STRONG&gt; A manufacturer receives CAD files and orders from suppliers using SFTP. With Entra ID, suppliers use unified credentials and access policies across all systems, streamlining supply chain management.&lt;/LI&gt;
&lt;/UL&gt;
&lt;H1&gt;How It Works&lt;/H1&gt;
&lt;P&gt;Entra ID simplifies SFTP access to Azure Blob Storage by authenticating users with their corporate credentials. After authentication, users receive a short-lived Open SSH certificate to connect. The service verifies certificate validity and user permissions, enabling secure file operations and automatic access revocation in line with current identity policies. Learn more &lt;A href="https://learn.microsoft.com/azure/storage/blobs/secure-file-transfer-protocol-support-entra-id-based-access?#overview" target="_blank"&gt;here&lt;/A&gt;.&lt;/P&gt;
&lt;H1&gt;Getting started with the Public Preview &amp;nbsp;&lt;/H1&gt;
&lt;P&gt;We encourage you to try Entra ID-based access for Azure Blob Storage SFTP in your non-production environments today. Learn more about how to register for the preview and get started with the detailed ms docs learn guide &lt;A href="https://learn.microsoft.com/azure/storage/blobs/secure-file-transfer-protocol-support-entra-id-based-access?#connecting-to-azure-blob-storage-with-microsoft-entra-ids" target="_blank"&gt;here&lt;/A&gt;. &amp;nbsp;This preview gives you an opportunity to shape the feature development by providing feedback on what works well and what could be improved.&lt;/P&gt;
&lt;P&gt;&lt;EM&gt;Note: Local user accounts for SFTP access are still supported, but we strongly recommend switching to Entra ID-based access for greater security, simpler management, and automatic access control. &lt;/EM&gt;&lt;/P&gt;
&lt;P&gt;&lt;STRONG&gt;Questions or feedback? &lt;/STRONG&gt;We would love to hear from you! Reach out to our team at blobsftp@microsoft.com&lt;/P&gt;
&lt;P&gt;We are excited to bring enterprise-grade identity management to Azure Blob Storage SFTP, and we cannot wait to see how you use this capability to simplify operations, enhance security, and enable new collaboration scenarios.&lt;/P&gt;
&lt;P&gt;&lt;EM&gt;Happy transferring!&lt;/EM&gt;&lt;/P&gt;</description>
      <pubDate>Fri, 13 Mar 2026 10:37:25 GMT</pubDate>
      <guid>https://techcommunity.microsoft.com/t5/azure-storage-blog/enterprise-identity-meets-secure-file-transfer-entra-id-public/ba-p/4501937</guid>
      <dc:creator>JeevanManoj</dc:creator>
      <dc:date>2026-03-13T10:37:25Z</dc:date>
    </item>
    <item>
      <title>Understanding the Standard HDD I/O unit size update and what it means for your workloads</title>
      <link>https://techcommunity.microsoft.com/t5/azure-storage-blog/understanding-the-standard-hdd-i-o-unit-size-update-and-what-it/ba-p/4499128</link>
      <description>&lt;P&gt;&lt;SPAN data-contrast="auto"&gt;As Azure continues to evolve to support modern workload patterns, we are refining how transactions are measured for&amp;nbsp;&lt;/SPAN&gt;&lt;SPAN data-contrast="auto"&gt;Standard HDD Managed Disks&lt;/SPAN&gt;&lt;SPAN data-contrast="auto"&gt;. This update helps align billing more closely with actual I/O behavior while&amp;nbsp;maintaining&amp;nbsp;predictable cost controls for customers.&lt;/SPAN&gt;&lt;SPAN data-ccp-props="{&amp;quot;335559738&amp;quot;:240,&amp;quot;335559739&amp;quot;:240}"&gt;&amp;nbsp;&lt;/SPAN&gt;&lt;/P&gt;
&lt;P&gt;&lt;SPAN data-contrast="auto"&gt;In this post,&amp;nbsp;we’ll&amp;nbsp;walk through what’s changing, how transaction billing is calculated, and what this may mean for your workloads.&lt;/SPAN&gt;&lt;SPAN data-ccp-props="{&amp;quot;335559738&amp;quot;:240,&amp;quot;335559739&amp;quot;:240}"&gt;&amp;nbsp;&lt;/SPAN&gt;&lt;/P&gt;
&lt;P&gt;&lt;SPAN data-contrast="auto"&gt;With this update, the number of billable transactions for select Standard HDD disk sizes (S4, S6) will be measured using&amp;nbsp;&lt;/SPAN&gt;&lt;SPAN data-contrast="auto"&gt;16 KiB I/O units&lt;/SPAN&gt;&lt;SPAN data-contrast="auto"&gt;.&lt;/SPAN&gt;&lt;SPAN data-ccp-props="{&amp;quot;335559738&amp;quot;:240,&amp;quot;335559739&amp;quot;:240}"&gt;&amp;nbsp;&lt;/SPAN&gt;&lt;/P&gt;
&lt;UL&gt;
&lt;LI aria-setsize="-1" data-leveltext="" data-font="Symbol" data-listid="4" data-list-defn-props="{&amp;quot;335552541&amp;quot;:1,&amp;quot;335559685&amp;quot;:720,&amp;quot;335559991&amp;quot;:360,&amp;quot;469769226&amp;quot;:&amp;quot;Symbol&amp;quot;,&amp;quot;469769242&amp;quot;:[8226],&amp;quot;469777803&amp;quot;:&amp;quot;left&amp;quot;,&amp;quot;469777804&amp;quot;:&amp;quot;&amp;quot;,&amp;quot;469777815&amp;quot;:&amp;quot;hybridMultilevel&amp;quot;}" data-aria-posinset="1" data-aria-level="1"&gt;&lt;SPAN data-contrast="auto"&gt;I/O operations&amp;nbsp;&lt;/SPAN&gt;&lt;SPAN data-contrast="auto"&gt;≤ 16 KiB&lt;/SPAN&gt;&lt;SPAN data-contrast="auto"&gt;&amp;nbsp;count as&amp;nbsp;&lt;/SPAN&gt;&lt;SPAN data-contrast="auto"&gt;one billable transaction&lt;/SPAN&gt;&lt;/LI&gt;
&lt;LI aria-setsize="-1" data-leveltext="" data-font="Symbol" data-listid="4" data-list-defn-props="{&amp;quot;335552541&amp;quot;:1,&amp;quot;335559685&amp;quot;:720,&amp;quot;335559991&amp;quot;:360,&amp;quot;469769226&amp;quot;:&amp;quot;Symbol&amp;quot;,&amp;quot;469769242&amp;quot;:[8226],&amp;quot;469777803&amp;quot;:&amp;quot;left&amp;quot;,&amp;quot;469777804&amp;quot;:&amp;quot;&amp;quot;,&amp;quot;469777815&amp;quot;:&amp;quot;hybridMultilevel&amp;quot;}" data-aria-posinset="1" data-aria-level="1"&gt;I/O operations &lt;SPAN style="color: rgb(30, 30, 30);" data-contrast="auto"&gt;&amp;gt; 16 KiB&lt;/SPAN&gt;&lt;SPAN style="color: rgb(30, 30, 30);" data-contrast="auto"&gt; are counted as multiple billable transactions&lt;/SPAN&gt;&lt;SPAN style="color: rgb(30, 30, 30);" data-ccp-props="{&amp;quot;335559738&amp;quot;:240,&amp;quot;335559739&amp;quot;:240}"&gt;&amp;nbsp;&lt;/SPAN&gt;&lt;/LI&gt;
&lt;/UL&gt;
&lt;P&gt;&lt;SPAN data-contrast="auto"&gt;Example&lt;/SPAN&gt;&lt;SPAN data-ccp-props="{&amp;quot;335559738&amp;quot;:240,&amp;quot;335559739&amp;quot;:240}"&gt;&amp;nbsp;&lt;/SPAN&gt;&lt;/P&gt;
&lt;UL&gt;
&lt;LI aria-setsize="-1" data-leveltext="" data-font="Symbol" data-listid="3" data-list-defn-props="{&amp;quot;335552541&amp;quot;:1,&amp;quot;335559685&amp;quot;:720,&amp;quot;335559991&amp;quot;:360,&amp;quot;469769226&amp;quot;:&amp;quot;Symbol&amp;quot;,&amp;quot;469769242&amp;quot;:[8226],&amp;quot;469777803&amp;quot;:&amp;quot;left&amp;quot;,&amp;quot;469777804&amp;quot;:&amp;quot;&amp;quot;,&amp;quot;469777815&amp;quot;:&amp;quot;hybridMultilevel&amp;quot;}" data-aria-posinset="1" data-aria-level="1"&gt;&lt;SPAN data-contrast="auto"&gt;A&amp;nbsp;&lt;/SPAN&gt;&lt;SPAN data-contrast="auto"&gt;64 KiB&lt;/SPAN&gt;&lt;SPAN data-contrast="auto"&gt;&amp;nbsp;read/write on an S4 disk =&amp;nbsp;&lt;/SPAN&gt;&lt;SPAN data-contrast="auto"&gt;4 billable transactions&lt;/SPAN&gt;&lt;/LI&gt;
&lt;LI aria-setsize="-1" data-leveltext="" data-font="Symbol" data-listid="3" data-list-defn-props="{&amp;quot;335552541&amp;quot;:1,&amp;quot;335559685&amp;quot;:720,&amp;quot;335559991&amp;quot;:360,&amp;quot;469769226&amp;quot;:&amp;quot;Symbol&amp;quot;,&amp;quot;469769242&amp;quot;:[8226],&amp;quot;469777803&amp;quot;:&amp;quot;left&amp;quot;,&amp;quot;469777804&amp;quot;:&amp;quot;&amp;quot;,&amp;quot;469777815&amp;quot;:&amp;quot;hybridMultilevel&amp;quot;}" data-aria-posinset="1" data-aria-level="1"&gt;A &lt;SPAN style="color: rgb(30, 30, 30);" data-contrast="auto"&gt;4 KiB&lt;/SPAN&gt;&lt;SPAN style="color: rgb(30, 30, 30);" data-contrast="auto"&gt;&amp;nbsp;read/write&amp;nbsp;on an S4 disk&amp;nbsp;=&amp;nbsp;&lt;/SPAN&gt;&lt;SPAN style="color: rgb(30, 30, 30);" data-contrast="auto"&gt;1 billable transaction&lt;/SPAN&gt;&lt;SPAN style="color: rgb(30, 30, 30);" data-ccp-props="{&amp;quot;335559738&amp;quot;:240,&amp;quot;335559739&amp;quot;:240}"&gt;&amp;nbsp;&lt;/SPAN&gt;&lt;/LI&gt;
&lt;/UL&gt;
&lt;P&gt;&lt;SPAN data-contrast="auto"&gt;This update provides more consistent alignment between workload behavior and transaction&amp;nbsp;billing.&amp;nbsp;For latest information on&amp;nbsp;regional availability, please refer to&amp;nbsp;the&amp;nbsp;&lt;/SPAN&gt;&lt;A href="https://learn.microsoft.com/en-us/azure/virtual-machines/disks-understand-billing#standard-hdd-transactions" target="_blank" rel="noopener"&gt;&lt;SPAN data-contrast="none"&gt;&lt;SPAN data-ccp-charstyle="Hyperlink"&gt;Standard HDD Managed Disks documentation.&lt;/SPAN&gt;&lt;/SPAN&gt;&lt;/A&gt;&lt;SPAN data-ccp-props="{&amp;quot;335559738&amp;quot;:240,&amp;quot;335559739&amp;quot;:240}"&gt;&amp;nbsp;&lt;/SPAN&gt;&lt;/P&gt;
&lt;H3&gt;&lt;SPAN data-contrast="auto"&gt;Built-in transaction caps to help manage costs&lt;/SPAN&gt;&lt;SPAN data-ccp-props="{&amp;quot;335559738&amp;quot;:240,&amp;quot;335559739&amp;quot;:240}"&gt;&amp;nbsp;&lt;/SPAN&gt;&lt;/H3&gt;
&lt;P&gt;&lt;SPAN data-contrast="auto"&gt;To&amp;nbsp;maintain&amp;nbsp;predictable cost boundaries, Azure&amp;nbsp;will&amp;nbsp;implement&amp;nbsp;&lt;/SPAN&gt;&lt;SPAN data-contrast="auto"&gt;hourly caps on billable transactions&lt;/SPAN&gt;&lt;SPAN data-contrast="auto"&gt;&amp;nbsp;for&amp;nbsp;the&amp;nbsp;Standard HDD disk&amp;nbsp;sizes&amp;nbsp;with an I/O unit size.&lt;/SPAN&gt;&lt;SPAN data-ccp-props="{&amp;quot;335559738&amp;quot;:240,&amp;quot;335559739&amp;quot;:240}"&gt;&amp;nbsp;&lt;/SPAN&gt;&lt;/P&gt;
&lt;P&gt;&lt;SPAN data-contrast="auto"&gt;If a disk exceeds its hourly cap,&amp;nbsp;additional&amp;nbsp;transactions in that hour are&amp;nbsp;&lt;/SPAN&gt;&lt;SPAN data-contrast="auto"&gt;not billed&lt;/SPAN&gt;&lt;SPAN data-contrast="auto"&gt;.&amp;nbsp;The transaction caps are listed below and on the&amp;nbsp;&lt;/SPAN&gt;&lt;A href="https://azure.microsoft.com/en-us/pricing/details/managed-disks/#pricing" target="_blank" rel="noopener"&gt;&lt;SPAN data-contrast="none"&gt;&lt;SPAN data-ccp-charstyle="Hyperlink"&gt;Azure Disks Pricing Page&lt;/SPAN&gt;&lt;/SPAN&gt;&lt;/A&gt;&lt;SPAN data-contrast="auto"&gt;.&lt;/SPAN&gt;&lt;SPAN data-ccp-props="{&amp;quot;335559738&amp;quot;:240,&amp;quot;335559739&amp;quot;:240}"&gt;&amp;nbsp;&lt;/SPAN&gt;&lt;/P&gt;
&lt;DIV class="styles_lia-table-wrapper__h6Xo9 styles_table-responsive__MW0lN"&gt;&lt;table border="1" style="border-width: 1px;"&gt;&lt;tbody&gt;&lt;tr&gt;&lt;td&gt;
&lt;P&gt;&lt;SPAN data-contrast="auto"&gt;Disk&amp;nbsp;Size&amp;nbsp;&lt;/SPAN&gt;&lt;SPAN data-ccp-props="{&amp;quot;335551550&amp;quot;:2,&amp;quot;335551620&amp;quot;:2}"&gt;&amp;nbsp;&lt;/SPAN&gt;&lt;/P&gt;
&lt;/td&gt;&lt;td&gt;
&lt;P&gt;&lt;SPAN data-contrast="auto"&gt;Disk&amp;nbsp;GiB&amp;nbsp;&lt;/SPAN&gt;&lt;SPAN data-ccp-props="{&amp;quot;335551550&amp;quot;:2,&amp;quot;335551620&amp;quot;:2}"&gt;&amp;nbsp;&lt;/SPAN&gt;&lt;/P&gt;
&lt;/td&gt;&lt;td&gt;
&lt;P&gt;&lt;SPAN data-contrast="auto"&gt;Hourly Billable Transaction Cap&lt;/SPAN&gt;&lt;SPAN data-ccp-props="{&amp;quot;335551550&amp;quot;:2,&amp;quot;335551620&amp;quot;:2}"&gt;&amp;nbsp;&lt;/SPAN&gt;&lt;/P&gt;
&lt;/td&gt;&lt;/tr&gt;&lt;tr&gt;&lt;td&gt;
&lt;P&gt;&lt;SPAN data-contrast="auto"&gt;S4&lt;/SPAN&gt;&lt;SPAN data-ccp-props="{&amp;quot;335551550&amp;quot;:2,&amp;quot;335551620&amp;quot;:2}"&gt;&amp;nbsp;&lt;/SPAN&gt;&lt;/P&gt;
&lt;/td&gt;&lt;td&gt;
&lt;P&gt;&lt;SPAN data-contrast="auto"&gt;32 GiB&lt;/SPAN&gt;&lt;SPAN data-ccp-props="{&amp;quot;335551550&amp;quot;:2,&amp;quot;335551620&amp;quot;:2}"&gt;&amp;nbsp;&lt;/SPAN&gt;&lt;/P&gt;
&lt;/td&gt;&lt;td&gt;
&lt;P&gt;&lt;SPAN data-contrast="auto"&gt;450,000&lt;/SPAN&gt;&lt;SPAN data-ccp-props="{&amp;quot;335551550&amp;quot;:2,&amp;quot;335551620&amp;quot;:2}"&gt;&amp;nbsp;&lt;/SPAN&gt;&lt;/P&gt;
&lt;/td&gt;&lt;/tr&gt;&lt;tr&gt;&lt;td&gt;
&lt;P&gt;&lt;SPAN data-contrast="auto"&gt;S6&lt;/SPAN&gt;&lt;SPAN data-ccp-props="{&amp;quot;335551550&amp;quot;:2,&amp;quot;335551620&amp;quot;:2}"&gt;&amp;nbsp;&lt;/SPAN&gt;&lt;/P&gt;
&lt;/td&gt;&lt;td&gt;
&lt;P&gt;&lt;SPAN data-contrast="auto"&gt;64 GiB&lt;/SPAN&gt;&lt;SPAN data-ccp-props="{&amp;quot;335551550&amp;quot;:2,&amp;quot;335551620&amp;quot;:2}"&gt;&amp;nbsp;&lt;/SPAN&gt;&lt;/P&gt;
&lt;/td&gt;&lt;td&gt;
&lt;P&gt;&lt;SPAN data-contrast="auto"&gt;858,000&lt;/SPAN&gt;&lt;SPAN data-ccp-props="{&amp;quot;335551550&amp;quot;:2,&amp;quot;335551620&amp;quot;:2}"&gt;&amp;nbsp;&lt;/SPAN&gt;&lt;/P&gt;
&lt;/td&gt;&lt;/tr&gt;&lt;/tbody&gt;&lt;colgroup&gt;&lt;col style="width: 33.33%" /&gt;&lt;col style="width: 33.33%" /&gt;&lt;col style="width: 33.33%" /&gt;&lt;/colgroup&gt;&lt;/table&gt;&lt;/DIV&gt;
&lt;P&gt;&lt;SPAN data-contrast="auto"&gt;These caps help provide cost predictability, particularly for bursty workloads.&lt;/SPAN&gt;&lt;SPAN data-ccp-props="{&amp;quot;335559738&amp;quot;:240,&amp;quot;335559739&amp;quot;:240}"&gt;&amp;nbsp;&lt;/SPAN&gt;&lt;/P&gt;
&lt;H3 aria-level="2"&gt;&lt;SPAN data-contrast="none"&gt;&lt;SPAN data-ccp-parastyle="heading 2"&gt;Understanding potential cost impact&lt;/SPAN&gt;&lt;/SPAN&gt;&lt;SPAN data-ccp-props="{&amp;quot;134245418&amp;quot;:true,&amp;quot;134245529&amp;quot;:true,&amp;quot;335559738&amp;quot;:299,&amp;quot;335559739&amp;quot;:299}"&gt;&amp;nbsp;&lt;/SPAN&gt;&lt;/H3&gt;
&lt;P&gt;&lt;SPAN data-contrast="auto"&gt;Workloads with&amp;nbsp;&lt;/SPAN&gt;&lt;SPAN data-contrast="auto"&gt;larger I/O sizes and sustained IOPS&lt;/SPAN&gt;&lt;SPAN data-contrast="auto"&gt;&amp;nbsp;may see changes in&amp;nbsp;the number of billed transactions on their invoice. Workloads with small or infrequent I/O operations may see little to no impact.&lt;/SPAN&gt;&lt;SPAN data-ccp-props="{&amp;quot;335559738&amp;quot;:240,&amp;quot;335559739&amp;quot;:240}"&gt;&amp;nbsp;&lt;/SPAN&gt;&lt;/P&gt;
&lt;H4&gt;&lt;SPAN data-contrast="auto"&gt;Determining&amp;nbsp;your workload’s cost&amp;nbsp;&lt;/SPAN&gt;&lt;SPAN data-ccp-props="{}"&gt;&amp;nbsp;&lt;/SPAN&gt;&lt;/H4&gt;
&lt;P&gt;&lt;SPAN data-contrast="auto"&gt;The&amp;nbsp;following table&amp;nbsp;lists&amp;nbsp;three different&amp;nbsp;examples&amp;nbsp;to&amp;nbsp;illustrate how transaction billing*&amp;nbsp;compares for&amp;nbsp;different&amp;nbsp;IO load&amp;nbsp;intensities&amp;nbsp;on an&amp;nbsp;S4 Standard HDD disk vs. an E4 Standard SSD disk. Assume the disks are in Central US region.&lt;/SPAN&gt;&lt;SPAN data-ccp-props="{&amp;quot;335559738&amp;quot;:240,&amp;quot;335559739&amp;quot;:240}"&gt;&amp;nbsp;&lt;/SPAN&gt;&lt;/P&gt;
&lt;DIV class="styles_lia-table-wrapper__h6Xo9 styles_table-responsive__MW0lN lia-align-left"&gt;&lt;table border="1" style="width: 100%; height: 598px; border-width: 1px;"&gt;&lt;tbody&gt;&lt;tr style="height: 67px;"&gt;&lt;td style="height: 67px;"&gt;
&lt;P&gt;&lt;SPAN data-contrast="auto"&gt;Workload&amp;nbsp;Average&lt;/SPAN&gt;&lt;SPAN data-ccp-props="{}"&gt;&amp;nbsp;&lt;/SPAN&gt;&lt;/P&gt;
&lt;/td&gt;&lt;td style="height: 67px;"&gt;
&lt;P&gt;&lt;SPAN data-contrast="auto"&gt;Billable Transactions / hour on Standard HDD&lt;/SPAN&gt;&lt;SPAN data-ccp-props="{}"&gt;&amp;nbsp;&lt;/SPAN&gt;&lt;/P&gt;
&lt;/td&gt;&lt;td style="height: 67px;"&gt;
&lt;P&gt;&lt;SPAN data-contrast="auto"&gt;Billable Transactions / hour on Standard SSD&lt;/SPAN&gt;&lt;SPAN data-ccp-props="{}"&gt;&amp;nbsp;&lt;/SPAN&gt;&lt;/P&gt;
&lt;/td&gt;&lt;td style="height: 67px;"&gt;
&lt;P&gt;&lt;SPAN data-contrast="auto"&gt;Total Cost on Standard HDD&lt;/SPAN&gt;&lt;SPAN data-ccp-props="{}"&gt;&amp;nbsp;&lt;/SPAN&gt;&lt;/P&gt;
&lt;/td&gt;&lt;td style="height: 67px;"&gt;
&lt;P&gt;&lt;SPAN data-contrast="auto"&gt;Total Cost on Standard SSD&amp;nbsp;&lt;/SPAN&gt;&lt;SPAN data-ccp-props="{}"&gt;&amp;nbsp;&lt;/SPAN&gt;&lt;/P&gt;
&lt;/td&gt;&lt;/tr&gt;&lt;tr style="height: 255px;"&gt;&lt;td class="lia-align-left" style="height: 255px;"&gt;
&lt;P&gt;&lt;STRONG&gt;&lt;U&gt;&lt;SPAN data-contrast="auto"&gt;Low&lt;/SPAN&gt;&lt;/U&gt;&lt;SPAN data-ccp-props="{}"&gt;&amp;nbsp;&lt;/SPAN&gt;&lt;/STRONG&gt;&lt;/P&gt;
&lt;P&gt;&lt;SPAN data-contrast="auto"&gt;4 KiB workload, 10 IOPS&lt;/SPAN&gt;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;/td&gt;&lt;td class="lia-align-left" style="height: 255px;"&gt;
&lt;P&gt;&lt;SPAN data-contrast="auto"&gt;36,000&lt;/SPAN&gt;&lt;SPAN data-ccp-props="{}"&gt;&amp;nbsp;&lt;/SPAN&gt;&lt;/P&gt;
&lt;P&gt;&lt;SPAN data-contrast="auto"&gt;(10 billable transactions * 60 seconds * 60 minutes)&lt;/SPAN&gt;&lt;SPAN data-ccp-props="{}"&gt;&amp;nbsp;&lt;/SPAN&gt;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;/td&gt;&lt;td class="lia-align-left" style="height: 255px;"&gt;
&lt;P&gt;&lt;SPAN data-contrast="auto"&gt;36,000 &lt;/SPAN&gt;&lt;SPAN data-ccp-props="{}"&gt;&amp;nbsp;&lt;/SPAN&gt;&lt;/P&gt;
&lt;P&gt;&lt;SPAN data-contrast="auto"&gt;(10 billable transactions * 60 seconds * 60 minutes)&lt;/SPAN&gt;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;/td&gt;&lt;td class="lia-align-left" style="height: 255px;"&gt;
&lt;P&gt;&lt;STRONG&gt;&lt;SPAN data-contrast="auto"&gt;$2.85/mo&lt;/SPAN&gt;&lt;SPAN data-ccp-props="{}"&gt;&amp;nbsp;&lt;/SPAN&gt;&lt;/STRONG&gt;&lt;/P&gt;
&lt;P&gt;&lt;SPAN data-contrast="auto"&gt;(36,000 * 730 hours * $0.0005 / 10,000 transactions) = $1.31 Transaction cost&lt;/SPAN&gt;&lt;SPAN data-ccp-props="{}"&gt;&amp;nbsp;&lt;/SPAN&gt;&lt;/P&gt;
&lt;P&gt;&lt;SPAN data-contrast="auto"&gt;$1.31 + $1.54 capacity/mo &lt;/SPAN&gt;&lt;SPAN data-contrast="auto"&gt;cost = $2.85/mo&lt;/SPAN&gt;&lt;SPAN data-ccp-props="{}"&gt;&amp;nbsp;&lt;/SPAN&gt;&lt;/P&gt;
&lt;/td&gt;&lt;td class="lia-align-left" style="height: 255px;"&gt;
&lt;P&gt;&lt;STRONG&gt;&lt;SPAN data-contrast="auto"&gt;$7.66/mo&lt;/SPAN&gt;&lt;/STRONG&gt;&lt;SPAN data-ccp-props="{}"&gt;&amp;nbsp;&lt;/SPAN&gt;&lt;/P&gt;
&lt;P&gt;&lt;SPAN data-contrast="auto"&gt;(36,000 * 730 hours * $0.002 / 10,000 transactions) = $5.26 Transaction cost &lt;/SPAN&gt;&lt;SPAN data-ccp-props="{}"&gt;&amp;nbsp;&lt;/SPAN&gt;&lt;/P&gt;
&lt;P&gt;&lt;SPAN data-contrast="auto"&gt;$5.26 + $2.40 capacity/mo cost = $7.66/mo&lt;/SPAN&gt;&lt;/P&gt;
&lt;/td&gt;&lt;/tr&gt;&lt;tr style="height: 133px;"&gt;&lt;td class="lia-align-left" style="height: 133px;"&gt;
&lt;P&gt;&lt;U&gt;&lt;STRONG&gt;&lt;SPAN data-contrast="auto"&gt;Medium&lt;/SPAN&gt;&lt;/STRONG&gt;&lt;/U&gt;&lt;SPAN data-ccp-props="{}"&gt;&amp;nbsp;&lt;/SPAN&gt;&lt;/P&gt;
&lt;P&gt;&lt;SPAN data-contrast="auto"&gt;32 KiB workload, 20 IOPS&lt;/SPAN&gt;&lt;/P&gt;
&lt;P&gt;&lt;SPAN data-ccp-props="{}"&gt;&amp;nbsp;&lt;/SPAN&gt;&lt;/P&gt;
&lt;/td&gt;&lt;td class="lia-align-left" style="height: 133px;"&gt;
&lt;P&gt;&lt;SPAN data-contrast="auto"&gt;144,000&amp;nbsp;&lt;/SPAN&gt;&lt;SPAN data-ccp-props="{}"&gt;&amp;nbsp;&lt;/SPAN&gt;&lt;/P&gt;
&lt;P&gt;&lt;SPAN data-contrast="auto"&gt;(40 billable transactions with the IO Unit Size * 60 * 60)&amp;nbsp;&lt;/SPAN&gt;&lt;SPAN data-ccp-props="{}"&gt;&amp;nbsp;&lt;/SPAN&gt;&lt;/P&gt;
&lt;/td&gt;&lt;td class="lia-align-left" style="height: 133px;"&gt;
&lt;P&gt;&lt;SPAN data-contrast="auto"&gt;43,400&amp;nbsp;&lt;/SPAN&gt;&lt;SPAN data-ccp-props="{}"&gt;&amp;nbsp;&lt;/SPAN&gt;&lt;/P&gt;
&lt;P&gt;&lt;SPAN data-contrast="auto"&gt;(after Standard SSD transaction cap)&lt;/SPAN&gt;&lt;SPAN data-ccp-props="{}"&gt;&amp;nbsp;&lt;/SPAN&gt;&lt;/P&gt;
&lt;/td&gt;&lt;td class="lia-align-left" style="height: 133px;"&gt;
&lt;P&gt;&lt;STRONG&gt;&lt;SPAN data-contrast="auto"&gt;$6.80/mo&lt;/SPAN&gt;&lt;SPAN data-ccp-props="{}"&gt;&amp;nbsp;&lt;/SPAN&gt;&lt;/STRONG&gt;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;/td&gt;&lt;td class="lia-align-left" style="height: 133px;"&gt;
&lt;P&gt;&lt;STRONG&gt;&lt;SPAN data-contrast="auto"&gt;$8.73/mo&lt;/SPAN&gt;&lt;SPAN data-ccp-props="{}"&gt;&amp;nbsp;&lt;/SPAN&gt;&lt;/STRONG&gt;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;/td&gt;&lt;/tr&gt;&lt;tr style="height: 143px;"&gt;&lt;td class="lia-align-left" style="height: 143px;"&gt;
&lt;P&gt;&lt;U&gt;&lt;STRONG&gt;&lt;SPAN data-contrast="auto"&gt;High&lt;/SPAN&gt;&lt;/STRONG&gt;&lt;/U&gt;&lt;SPAN data-ccp-props="{}"&gt;&amp;nbsp;&lt;/SPAN&gt;&lt;/P&gt;
&lt;P&gt;&lt;SPAN data-contrast="auto"&gt;64 KiB&amp;nbsp;workload,&amp;nbsp;40 IOPS&lt;/SPAN&gt;&lt;SPAN data-ccp-props="{}"&gt;&amp;nbsp;&lt;/SPAN&gt;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;/td&gt;&lt;td class="lia-align-left" style="height: 143px;"&gt;
&lt;P&gt;&lt;SPAN data-contrast="auto"&gt;450,000&lt;/SPAN&gt;&lt;SPAN data-contrast="auto"&gt;&amp;nbsp;&lt;/SPAN&gt;&lt;SPAN data-ccp-props="{}"&gt;&amp;nbsp;&lt;/SPAN&gt;&lt;/P&gt;
&lt;P&gt;&lt;SPAN data-contrast="auto"&gt;(after Standard HDD transaction cap)&lt;/SPAN&gt;&lt;SPAN data-ccp-props="{}"&gt;&amp;nbsp;&lt;/SPAN&gt;&lt;/P&gt;
&lt;/td&gt;&lt;td class="lia-align-left" style="height: 143px;"&gt;
&lt;P&gt;&lt;SPAN data-contrast="auto"&gt;43,400&amp;nbsp;&lt;/SPAN&gt;&lt;/P&gt;
&lt;P&gt;&lt;SPAN data-contrast="auto"&gt;(after Standard SSD transaction cap)&lt;/SPAN&gt;&lt;SPAN data-ccp-props="{}"&gt;&amp;nbsp;&lt;/SPAN&gt;&lt;/P&gt;
&lt;/td&gt;&lt;td class="lia-align-left" style="height: 143px;"&gt;
&lt;P&gt;&lt;STRONG&gt;&lt;SPAN data-contrast="auto"&gt;$17.97/mo&lt;/SPAN&gt;&lt;/STRONG&gt;&lt;SPAN data-ccp-props="{}"&gt;&amp;nbsp;&lt;/SPAN&gt;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;/td&gt;&lt;td class="lia-align-left" style="height: 143px;"&gt;
&lt;P&gt;&lt;STRONG&gt;&lt;SPAN data-contrast="auto"&gt;$8.73/mo&lt;/SPAN&gt;&lt;/STRONG&gt;&lt;SPAN data-ccp-props="{}"&gt;&amp;nbsp;&lt;/SPAN&gt;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;/td&gt;&lt;/tr&gt;&lt;/tbody&gt;&lt;colgroup&gt;&lt;col style="width: 20.2029%" /&gt;&lt;col style="width: 19.8342%" /&gt;&lt;col style="width: 18.9064%" /&gt;&lt;col style="width: 20.9453%" /&gt;&lt;col style="width: 20.1112%" /&gt;&lt;/colgroup&gt;&lt;/table&gt;&lt;/DIV&gt;
&lt;P&gt;&lt;SPAN data-contrast="auto"&gt;*Any operation against the storage is counted as a transaction,&amp;nbsp;including&amp;nbsp;reads, writes, and&amp;nbsp;deletes. Host caching being enabled might affect the number of transactions against the storage that are counted.&lt;/SPAN&gt;&lt;SPAN data-ccp-props="{}"&gt;&amp;nbsp;&lt;/SPAN&gt;&lt;/P&gt;
&lt;H3&gt;&lt;SPAN data-contrast="auto"&gt;Choosing the right disk for your workload&lt;/SPAN&gt;&lt;SPAN data-ccp-props="{}"&gt;&amp;nbsp;&lt;/SPAN&gt;&lt;/H3&gt;
&lt;P&gt;&lt;SPAN data-contrast="auto"&gt;Running workloads on SSD-based disk types may also unlock higher availability, higher reliability, more consistent performance, and lower latency.&amp;nbsp;&lt;/SPAN&gt;&lt;SPAN data-ccp-props="{}"&gt;&amp;nbsp;&lt;/SPAN&gt;&lt;/P&gt;
&lt;UL&gt;
&lt;LI aria-setsize="-1" data-leveltext="" data-font="Symbol" data-listid="14" data-list-defn-props="{&amp;quot;335552541&amp;quot;:1,&amp;quot;335559685&amp;quot;:720,&amp;quot;335559991&amp;quot;:360,&amp;quot;469769226&amp;quot;:&amp;quot;Symbol&amp;quot;,&amp;quot;469769242&amp;quot;:[8226],&amp;quot;469777803&amp;quot;:&amp;quot;left&amp;quot;,&amp;quot;469777804&amp;quot;:&amp;quot;&amp;quot;,&amp;quot;469777815&amp;quot;:&amp;quot;hybridMultilevel&amp;quot;}" data-aria-posinset="1" data-aria-level="1"&gt;&lt;SPAN data-contrast="auto"&gt;For OS disks running on Standard HDD, consider migrating to Standard SSD&amp;nbsp;or Premium SSD&amp;nbsp;Managed Disks.&amp;nbsp;&lt;/SPAN&gt;&lt;A href="https://learn.microsoft.com/en-us/azure/virtual-machines/disks-hdd-os-retirement" target="_blank" rel="noopener"&gt;&lt;SPAN data-contrast="none"&gt;&lt;SPAN data-ccp-charstyle="Hyperlink"&gt;Standard HDD OS disks will be retired&amp;nbsp;&lt;/SPAN&gt;&lt;SPAN data-ccp-charstyle="Hyperlink"&gt;in September 2028.&lt;/SPAN&gt;&lt;SPAN data-ccp-charstyle="Hyperlink"&gt;&amp;nbsp;&lt;/SPAN&gt;&lt;/SPAN&gt;&lt;/A&gt;&lt;/LI&gt;
&lt;LI aria-setsize="-1" data-leveltext="" data-font="Symbol" data-listid="14" data-list-defn-props="{&amp;quot;335552541&amp;quot;:1,&amp;quot;335559685&amp;quot;:720,&amp;quot;335559991&amp;quot;:360,&amp;quot;469769226&amp;quot;:&amp;quot;Symbol&amp;quot;,&amp;quot;469769242&amp;quot;:[8226],&amp;quot;469777803&amp;quot;:&amp;quot;left&amp;quot;,&amp;quot;469777804&amp;quot;:&amp;quot;&amp;quot;,&amp;quot;469777815&amp;quot;:&amp;quot;hybridMultilevel&amp;quot;}" data-aria-posinset="1" data-aria-level="1"&gt;For non-OS disk workloads, consider high performance and flexible provisioning benefits of Premium SSD v2 Managed Disks, or benefits of Standard SSD or Premium SSD Managed Disks.&amp;nbsp;&lt;A style="font-style: normal; font-weight: 400; background-color: rgb(255, 255, 255);" href="https://learn.microsoft.com/en-us/azure/virtual-machines/disks-types" target="_blank" rel="noopener"&gt;&lt;SPAN data-contrast="none"&gt;&lt;SPAN data-ccp-charstyle="Hyperlink"&gt;Learn more here about the different disk types and their benefits.&lt;/SPAN&gt;&lt;/SPAN&gt;&lt;/A&gt;&lt;SPAN style="color: rgb(30, 30, 30);" data-ccp-props="{}"&gt; &lt;/SPAN&gt;&lt;/LI&gt;
&lt;LI aria-setsize="-1" data-leveltext="" data-font="Symbol" data-listid="14" data-list-defn-props="{&amp;quot;335552541&amp;quot;:1,&amp;quot;335559685&amp;quot;:720,&amp;quot;335559991&amp;quot;:360,&amp;quot;469769226&amp;quot;:&amp;quot;Symbol&amp;quot;,&amp;quot;469769242&amp;quot;:[8226],&amp;quot;469777803&amp;quot;:&amp;quot;left&amp;quot;,&amp;quot;469777804&amp;quot;:&amp;quot;&amp;quot;,&amp;quot;469777815&amp;quot;:&amp;quot;hybridMultilevel&amp;quot;}" data-aria-posinset="1" data-aria-level="1"&gt;To learn more about switching your disk types, &lt;A style="font-style: normal; font-weight: 400; background-color: rgb(255, 255, 255);" href="https://learn.microsoft.com/en-us/azure/virtual-machines/disks-convert-types?tabs=azure-powershell" target="_blank" rel="noopener"&gt;&lt;SPAN data-contrast="none"&gt;&lt;SPAN data-ccp-charstyle="Hyperlink"&gt;view our documentation page.&lt;/SPAN&gt;&lt;/SPAN&gt;&lt;/A&gt;&lt;SPAN style="color: rgb(30, 30, 30);" data-ccp-props="{}"&gt;&amp;nbsp;&lt;/SPAN&gt;&lt;/LI&gt;
&lt;/UL&gt;
&lt;P&gt;&lt;SPAN data-contrast="auto"&gt;To learn more about the billing changes, view the&amp;nbsp;&lt;/SPAN&gt;&lt;A href="https://azure.microsoft.com/en-us/pricing/details/managed-disks/#pricing" target="_blank" rel="noopener"&gt;&lt;SPAN data-contrast="none"&gt;&lt;SPAN data-ccp-charstyle="Hyperlink"&gt;Pricing Page&lt;/SPAN&gt;&lt;/SPAN&gt;&lt;/A&gt;&lt;SPAN data-contrast="auto"&gt;&amp;nbsp;and&amp;nbsp;&lt;/SPAN&gt;&lt;A href="https://learn.microsoft.com/en-us/azure/virtual-machines/disks-understand-billing#standard-hdd" target="_blank" rel="noopener"&gt;&lt;SPAN data-contrast="none"&gt;&lt;SPAN data-ccp-charstyle="Hyperlink"&gt;documentation for Standard HDD Managed Disks&lt;/SPAN&gt;&lt;/SPAN&gt;&lt;/A&gt;&lt;SPAN data-contrast="auto"&gt;.&lt;/SPAN&gt;&lt;SPAN data-ccp-props="{}"&gt;&amp;nbsp;&lt;/SPAN&gt;&lt;/P&gt;</description>
      <pubDate>Wed, 22 Apr 2026 15:18:03 GMT</pubDate>
      <guid>https://techcommunity.microsoft.com/t5/azure-storage-blog/understanding-the-standard-hdd-i-o-unit-size-update-and-what-it/ba-p/4499128</guid>
      <dc:creator>austin-ma</dc:creator>
      <dc:date>2026-04-22T15:18:03Z</dc:date>
    </item>
    <item>
      <title>Public Preview: Restrict usage of user delegation SAS to an Entra ID identity</title>
      <link>https://techcommunity.microsoft.com/t5/azure-storage-blog/public-preview-restrict-usage-of-user-delegation-sas-to-an-entra/ba-p/4497196</link>
      <description>&lt;P&gt;&lt;SPAN data-contrast="none"&gt;Shared access signatures (SAS) grant time-bound, scoped access to Azure Storage resources without sharing account keys. Over time, Azure Storage has continued to strengthen SAS security,&amp;nbsp;moving from account&amp;nbsp;keys to&amp;nbsp;user delegation&amp;nbsp;(UD)&amp;nbsp;SAS&amp;nbsp;secured&amp;nbsp;by Microsoft Entra ID.&amp;nbsp;&lt;/SPAN&gt;&lt;SPAN data-ccp-props="{}"&gt;&amp;nbsp;&lt;/SPAN&gt;&lt;/P&gt;
&lt;P&gt;&lt;SPAN data-contrast="none"&gt;Today,&amp;nbsp;we’re&amp;nbsp;taking the next step forward&amp;nbsp;by announcing&amp;nbsp;public&amp;nbsp;preview&amp;nbsp;for&amp;nbsp;&lt;/SPAN&gt;&lt;SPAN data-contrast="none"&gt;user-bound user delegation SAS&lt;/SPAN&gt;&lt;SPAN data-contrast="none"&gt;, an extension of&amp;nbsp;UD&amp;nbsp;SAS that ensures a SAS token can only be used by a specific Entra&amp;nbsp;ID&amp;nbsp;identity. This new capability helps customers significantly reduce the risk of unintended access&amp;nbsp;while preserving the flexibility&amp;nbsp;of&amp;nbsp;SAS.&lt;/SPAN&gt;&lt;SPAN data-ccp-props="{}"&gt;&amp;nbsp;&lt;/SPAN&gt;&lt;/P&gt;
&lt;P&gt;&lt;SPAN data-contrast="none"&gt;UD SAS&amp;nbsp;is an&amp;nbsp;existing&amp;nbsp;feature which&amp;nbsp;utilizes Entra ID and Azure role-based access control (RBAC). Users retrieve a user delegation key tied to their Entra ID account and then use it to create SAS tokens granting a subset of their own access rights.&amp;nbsp;The resulting token can be traced to the delegator and can only be valid for up to 7 days.&amp;nbsp;User-bound&amp;nbsp;UD SAS&amp;nbsp;is an extension of user delegation&amp;nbsp;(UD)&amp;nbsp;SAS&amp;nbsp;which&amp;nbsp;allows&amp;nbsp;users to create a more secure SAS token by&amp;nbsp;restricting the usage of&amp;nbsp;the SAS token to&amp;nbsp;an end user&amp;nbsp;identity.&amp;nbsp;The delegator&amp;nbsp;specifies&amp;nbsp;the Entra identity (security principal) of the end user in the SAS&amp;nbsp;token&amp;nbsp;and&amp;nbsp;the end user&amp;nbsp;needs to&amp;nbsp;authenticate&amp;nbsp;to&amp;nbsp;Entra&amp;nbsp;ID&amp;nbsp;to use the token. The end user can either be in the same tenant or a different tenant as the delegator.&lt;/SPAN&gt;&lt;SPAN data-ccp-props="{}"&gt;&amp;nbsp;&lt;/SPAN&gt;&lt;/P&gt;
&lt;P aria-level="1"&gt;&lt;STRONG&gt;&lt;SPAN data-contrast="none"&gt;&lt;SPAN data-ccp-parastyle="heading 1"&gt;Pricing and availability&lt;/SPAN&gt;&lt;/SPAN&gt;&lt;SPAN data-ccp-props="{&amp;quot;134245418&amp;quot;:true,&amp;quot;134245529&amp;quot;:true,&amp;quot;335559738&amp;quot;:360,&amp;quot;335559739&amp;quot;:80}"&gt;&amp;nbsp;&lt;/SPAN&gt;&lt;/STRONG&gt;&lt;/P&gt;
&lt;P&gt;&lt;SPAN data-contrast="none"&gt;There is no&amp;nbsp;additional&amp;nbsp;cost for user-bound user&amp;nbsp;delegation&amp;nbsp;SAS. Pricing is based on the standard read/write transaction costs for your storage account&amp;nbsp;type. To learn more, please see&amp;nbsp;&lt;/SPAN&gt;&lt;A href="https://azure.microsoft.com/pricing/details/storage/blobs/" target="_blank" rel="noopener"&gt;&lt;SPAN data-contrast="none"&gt;&lt;SPAN data-ccp-charstyle="Hyperlink"&gt;Azure Storage Pricing.&lt;/SPAN&gt;&lt;/SPAN&gt;&lt;/A&gt;&lt;SPAN data-ccp-props="{}"&gt;&amp;nbsp;&lt;/SPAN&gt;&lt;/P&gt;
&lt;P&gt;&lt;SPAN data-contrast="none"&gt;User-bound user delegation SAS is in preview in all&amp;nbsp;public&amp;nbsp;regions. This preview will be available via&amp;nbsp;&lt;/SPAN&gt;&lt;A href="https://learn.microsoft.com/rest/api/storageservices/get-user-delegation-key" target="_blank" rel="noopener"&gt;&lt;SPAN data-contrast="none"&gt;&lt;SPAN data-ccp-charstyle="Hyperlink"&gt;REST APIs&lt;/SPAN&gt;&lt;/SPAN&gt;&lt;/A&gt;&lt;SPAN data-contrast="none"&gt;,&amp;nbsp;&lt;/SPAN&gt;&lt;A href="https://learn.microsoft.com/azure/storage/blobs/storage-blob-user-delegation-sas-create-dotnet?tabs=packages-dotnetcli%2Ccontainer" target="_blank" rel="noopener"&gt;&lt;SPAN data-contrast="none"&gt;&lt;SPAN data-ccp-charstyle="Hyperlink"&gt;SDKs&lt;/SPAN&gt;&lt;/SPAN&gt;&lt;/A&gt;&lt;SPAN data-contrast="none"&gt;,&amp;nbsp;&lt;/SPAN&gt;&lt;A href="https://learn.microsoft.com/azure/storage/blobs/storage-blob-user-delegation-sas-create-powershell" target="_blank" rel="noopener"&gt;&lt;SPAN data-contrast="none"&gt;&lt;SPAN data-ccp-charstyle="Hyperlink"&gt;PowerShell&lt;/SPAN&gt;&lt;/SPAN&gt;&lt;/A&gt;&lt;SPAN data-contrast="none"&gt;, and&amp;nbsp;&lt;/SPAN&gt;&lt;A href="https://learn.microsoft.com/azure/storage/blobs/storage-blob-user-delegation-sas-create-cli" target="_blank" rel="noopener"&gt;&lt;SPAN data-contrast="none"&gt;&lt;SPAN data-ccp-charstyle="Hyperlink"&gt;CLI&lt;/SPAN&gt;&lt;/SPAN&gt;&lt;/A&gt;&lt;SPAN data-contrast="none"&gt;&amp;nbsp;experiences.&amp;nbsp;&lt;/SPAN&gt;&lt;SPAN data-contrast="auto"&gt;&amp;nbsp;&lt;/SPAN&gt;&lt;SPAN data-ccp-props="{}"&gt;&amp;nbsp;&lt;/SPAN&gt;&lt;/P&gt;
&lt;P aria-level="1"&gt;&lt;STRONG&gt;&lt;SPAN data-contrast="none"&gt;&lt;SPAN data-ccp-parastyle="heading 1"&gt;Getting started&lt;/SPAN&gt;&lt;/SPAN&gt;&lt;SPAN data-ccp-props="{&amp;quot;134245418&amp;quot;:true,&amp;quot;134245529&amp;quot;:true,&amp;quot;335559738&amp;quot;:360,&amp;quot;335559739&amp;quot;:80}"&gt;&amp;nbsp;&lt;/SPAN&gt;&lt;/STRONG&gt;&lt;/P&gt;
&lt;P&gt;&lt;SPAN data-contrast="none"&gt;Getting started is simple:&lt;/SPAN&gt;&lt;SPAN data-ccp-props="{}"&gt;&amp;nbsp;&lt;/SPAN&gt;&lt;/P&gt;
&lt;UL&gt;
&lt;LI aria-setsize="-1" data-leveltext="" data-font="Symbol" data-listid="4" data-list-defn-props="{&amp;quot;335552541&amp;quot;:1,&amp;quot;335559685&amp;quot;:360,&amp;quot;335559991&amp;quot;:360,&amp;quot;469769226&amp;quot;:&amp;quot;Symbol&amp;quot;,&amp;quot;469769242&amp;quot;:[8226],&amp;quot;469777803&amp;quot;:&amp;quot;left&amp;quot;,&amp;quot;469777804&amp;quot;:&amp;quot;&amp;quot;,&amp;quot;469777815&amp;quot;:&amp;quot;hybridMultilevel&amp;quot;}" data-aria-posinset="1" data-aria-level="1"&gt;&lt;SPAN data-contrast="none"&gt;User-bound user&amp;nbsp;delegation&amp;nbsp;SAS is available&amp;nbsp;on&amp;nbsp;all GPv2 storage&amp;nbsp;accounts&amp;nbsp;in public regions.&lt;/SPAN&gt;&lt;SPAN data-ccp-props="{}"&gt;&amp;nbsp;&lt;/SPAN&gt;&lt;/LI&gt;
&lt;/UL&gt;
&lt;UL&gt;
&lt;LI aria-setsize="-1" data-leveltext="" data-font="Symbol" data-listid="4" data-list-defn-props="{&amp;quot;335552541&amp;quot;:1,&amp;quot;335559685&amp;quot;:360,&amp;quot;335559991&amp;quot;:360,&amp;quot;469769226&amp;quot;:&amp;quot;Symbol&amp;quot;,&amp;quot;469769242&amp;quot;:[8226],&amp;quot;469777803&amp;quot;:&amp;quot;left&amp;quot;,&amp;quot;469777804&amp;quot;:&amp;quot;&amp;quot;,&amp;quot;469777815&amp;quot;:&amp;quot;hybridMultilevel&amp;quot;}" data-aria-posinset="2" data-aria-level="1"&gt;&lt;SPAN data-contrast="none"&gt;If&amp;nbsp;the&amp;nbsp;end&amp;nbsp;user of the&amp;nbsp;SAS&amp;nbsp;token&amp;nbsp;is&amp;nbsp;in a&amp;nbsp;different&amp;nbsp;tenant, the&amp;nbsp;allowCrossTenantDelegationSas&amp;nbsp;setting must be enabled on the storage account. If you are not planning&amp;nbsp;on using&amp;nbsp;this feature cross-tenant,&amp;nbsp;the account setting&amp;nbsp;can remain&amp;nbsp;disabled.&lt;/SPAN&gt;&lt;SPAN data-ccp-props="{}"&gt;&amp;nbsp;&lt;/SPAN&gt;&lt;/LI&gt;
&lt;/UL&gt;
&lt;P&gt;&lt;SPAN data-contrast="none"&gt;Perform the following steps in the&amp;nbsp;&lt;/SPAN&gt;&lt;A href="https://learn.microsoft.com/en-us/rest/api/storageservices/create-user-delegation-sas#construct-a-user-delegation-sas" target="_blank" rel="noopener"&gt;&lt;SPAN data-contrast="none"&gt;&lt;SPAN data-ccp-charstyle="Hyperlink"&gt;create a user delegation SAS documentation&lt;/SPAN&gt;&lt;/SPAN&gt;&lt;/A&gt;&lt;SPAN data-contrast="none"&gt;&amp;nbsp;to generate and use a&amp;nbsp;user-bound&amp;nbsp;UD SAS token:&lt;/SPAN&gt;&lt;SPAN data-ccp-props="{}"&gt;&amp;nbsp;&lt;/SPAN&gt;&lt;/P&gt;
&lt;OL&gt;
&lt;LI aria-setsize="-1" data-leveltext="%1." data-font="Aptos" data-listid="7" data-list-defn-props="{&amp;quot;335552541&amp;quot;:0,&amp;quot;335559685&amp;quot;:720,&amp;quot;335559991&amp;quot;:360,&amp;quot;469769242&amp;quot;:[65533,0],&amp;quot;469777803&amp;quot;:&amp;quot;left&amp;quot;,&amp;quot;469777804&amp;quot;:&amp;quot;%1.&amp;quot;,&amp;quot;469777815&amp;quot;:&amp;quot;hybridMultilevel&amp;quot;}" data-aria-posinset="1" data-aria-level="1"&gt;&lt;SPAN data-contrast="none"&gt;Ensure you have the correct RBAC roles assigned&amp;nbsp;to the delegator&amp;nbsp;to create a user delegation key. These roles will include the Storage &amp;lt;Service&amp;gt; Data Contributor and Storage &amp;lt;Service&amp;gt; Delegator (replace Service with the respective service you are using). Here are&amp;nbsp;all of&amp;nbsp;the applicable roles for each service:&lt;/SPAN&gt;&lt;SPAN data-ccp-props="{}"&gt;&amp;nbsp;&lt;/SPAN&gt;&lt;/LI&gt;
&lt;/OL&gt;
&lt;DIV class="styles_lia-table-wrapper__h6Xo9 styles_table-responsive__MW0lN"&gt;&lt;table border="1" style="border-width: 1px;"&gt;&lt;tbody&gt;&lt;tr&gt;&lt;td&gt;
&lt;P&gt;&lt;SPAN data-contrast="none"&gt;Azure Blob&lt;/SPAN&gt;&lt;SPAN data-ccp-props="{&amp;quot;335551550&amp;quot;:2,&amp;quot;335551620&amp;quot;:2}"&gt;&amp;nbsp;&lt;/SPAN&gt;&lt;/P&gt;
&lt;/td&gt;&lt;td&gt;
&lt;P&gt;&lt;SPAN data-contrast="none"&gt;Azure Table&lt;/SPAN&gt;&lt;SPAN data-ccp-props="{}"&gt;&amp;nbsp;&lt;/SPAN&gt;&lt;/P&gt;
&lt;/td&gt;&lt;td&gt;
&lt;P&gt;&lt;SPAN data-contrast="none"&gt;Azure Files&amp;nbsp;&lt;/SPAN&gt;&lt;SPAN data-ccp-props="{}"&gt;&amp;nbsp;&lt;/SPAN&gt;&lt;/P&gt;
&lt;/td&gt;&lt;td&gt;
&lt;P&gt;&lt;SPAN data-contrast="none"&gt;Azure Queue&lt;/SPAN&gt;&lt;SPAN data-ccp-props="{}"&gt;&amp;nbsp;&lt;/SPAN&gt;&lt;/P&gt;
&lt;/td&gt;&lt;/tr&gt;&lt;tr&gt;&lt;td&gt;
&lt;P&gt;&lt;SPAN data-contrast="none"&gt;Storage Blob Data Contributor&lt;/SPAN&gt;&lt;SPAN data-ccp-props="{&amp;quot;335551550&amp;quot;:2,&amp;quot;335551620&amp;quot;:2}"&gt;&amp;nbsp;&lt;/SPAN&gt;&lt;/P&gt;
&lt;/td&gt;&lt;td&gt;
&lt;P&gt;&lt;SPAN data-contrast="none"&gt;Storage Table Data Contributor&lt;/SPAN&gt;&lt;SPAN data-ccp-props="{}"&gt;&amp;nbsp;&lt;/SPAN&gt;&lt;/P&gt;
&lt;/td&gt;&lt;td&gt;
&lt;P&gt;&lt;SPAN data-contrast="none"&gt;Storage Files Data Contributor&lt;/SPAN&gt;&lt;SPAN data-ccp-props="{}"&gt;&amp;nbsp;&lt;/SPAN&gt;&lt;/P&gt;
&lt;/td&gt;&lt;td&gt;
&lt;P&gt;&lt;SPAN data-contrast="none"&gt;Storage Queue Data Contributor&lt;/SPAN&gt;&lt;SPAN data-ccp-props="{}"&gt;&amp;nbsp;&lt;/SPAN&gt;&lt;/P&gt;
&lt;/td&gt;&lt;/tr&gt;&lt;tr&gt;&lt;td&gt;
&lt;P&gt;&lt;SPAN data-contrast="none"&gt;Storage Blob Delegator&lt;/SPAN&gt;&lt;SPAN data-ccp-props="{&amp;quot;335551550&amp;quot;:2,&amp;quot;335551620&amp;quot;:2}"&gt;&amp;nbsp;&lt;/SPAN&gt;&lt;/P&gt;
&lt;/td&gt;&lt;td&gt;
&lt;P&gt;&lt;SPAN data-contrast="none"&gt;Storage Table Delegator&lt;/SPAN&gt;&lt;SPAN data-ccp-props="{}"&gt;&amp;nbsp;&lt;/SPAN&gt;&lt;/P&gt;
&lt;/td&gt;&lt;td&gt;
&lt;P&gt;&lt;SPAN data-contrast="none"&gt;Storage Files Delegator&lt;/SPAN&gt;&lt;SPAN data-ccp-props="{}"&gt;&amp;nbsp;&lt;/SPAN&gt;&lt;/P&gt;
&lt;/td&gt;&lt;td&gt;
&lt;P&gt;&lt;SPAN data-contrast="none"&gt;Storage Queue Delegator&lt;/SPAN&gt;&lt;SPAN data-ccp-props="{}"&gt;&amp;nbsp;&lt;/SPAN&gt;&lt;/P&gt;
&lt;/td&gt;&lt;/tr&gt;&lt;/tbody&gt;&lt;colgroup&gt;&lt;col style="width: 25.00%" /&gt;&lt;col style="width: 25.00%" /&gt;&lt;col style="width: 25.00%" /&gt;&lt;col style="width: 25.00%" /&gt;&lt;/colgroup&gt;&lt;/table&gt;&lt;/DIV&gt;
&lt;P&gt;&lt;SPAN data-ccp-props="{}"&gt;&amp;nbsp;&lt;/SPAN&gt;&lt;/P&gt;
&lt;OL&gt;
&lt;LI aria-setsize="-1" data-leveltext="%1." data-font="Aptos" data-listid="7" data-list-defn-props="{&amp;quot;335552541&amp;quot;:0,&amp;quot;335559685&amp;quot;:720,&amp;quot;335559991&amp;quot;:360,&amp;quot;469769242&amp;quot;:[65533,0],&amp;quot;469777803&amp;quot;:&amp;quot;left&amp;quot;,&amp;quot;469777804&amp;quot;:&amp;quot;%1.&amp;quot;,&amp;quot;469777815&amp;quot;:&amp;quot;hybridMultilevel&amp;quot;}" data-aria-posinset="2" data-aria-level="1"&gt;&lt;SPAN data-contrast="none"&gt;Get a user delegation key (instructions&amp;nbsp;&lt;/SPAN&gt;&lt;A href="https://learn.microsoft.com/en-us/rest/api/storageservices/create-user-delegation-sas#request-the-user-delegation-key" target="_blank" rel="noopener"&gt;&lt;SPAN data-contrast="none"&gt;&lt;SPAN data-ccp-charstyle="Hyperlink"&gt;here&lt;/SPAN&gt;&lt;/SPAN&gt;&lt;/A&gt;&lt;SPAN data-contrast="none"&gt;)&lt;/SPAN&gt; &lt;/LI&gt;
&lt;LI aria-setsize="-1" data-leveltext="%1." data-font="Aptos" data-listid="7" data-list-defn-props="{&amp;quot;335552541&amp;quot;:0,&amp;quot;335559685&amp;quot;:720,&amp;quot;335559991&amp;quot;:360,&amp;quot;469769242&amp;quot;:[65533,0],&amp;quot;469777803&amp;quot;:&amp;quot;left&amp;quot;,&amp;quot;469777804&amp;quot;:&amp;quot;%1.&amp;quot;,&amp;quot;469777815&amp;quot;:&amp;quot;hybridMultilevel&amp;quot;}" data-aria-posinset="2" data-aria-level="1"&gt;Get the OAuth object ID and tenant ID from your end user. They will have to get these IDs (instructions&amp;nbsp;&lt;A style="font-style: normal; font-weight: 400; background-color: rgb(255, 255, 255);" href="https://learn.microsoft.com/en-us/partner-center/account-settings/find-ids-and-domain-names#find-the-user-object-id" target="_blank" rel="noopener"&gt;&lt;SPAN data-contrast="none"&gt;&lt;SPAN data-ccp-charstyle="Hyperlink"&gt;here&lt;/SPAN&gt;&lt;/SPAN&gt;&lt;/A&gt;&lt;SPAN style="color: rgb(30, 30, 30);" data-contrast="none"&gt;) and provide them to you.&lt;/SPAN&gt;&lt;/LI&gt;
&lt;LI aria-setsize="-1" data-leveltext="%1." data-font="Aptos" data-listid="7" data-list-defn-props="{&amp;quot;335552541&amp;quot;:0,&amp;quot;335559685&amp;quot;:720,&amp;quot;335559991&amp;quot;:360,&amp;quot;469769242&amp;quot;:[65533,0],&amp;quot;469777803&amp;quot;:&amp;quot;left&amp;quot;,&amp;quot;469777804&amp;quot;:&amp;quot;%1.&amp;quot;,&amp;quot;469777815&amp;quot;:&amp;quot;hybridMultilevel&amp;quot;}" data-aria-posinset="2" data-aria-level="1"&gt;Create the user-bound user delegation SAS token (instructions&amp;nbsp;&lt;A style="font-style: normal; font-weight: 400; background-color: rgb(255, 255, 255);" href="https://learn.microsoft.com/en-us/rest/api/storageservices/create-user-delegation-sas#construct-a-user-delegation-sas" target="_blank" rel="noopener"&gt;&lt;SPAN data-contrast="none"&gt;&lt;SPAN data-ccp-charstyle="Hyperlink"&gt;here&lt;/SPAN&gt;&lt;/SPAN&gt;&lt;/A&gt;&lt;SPAN style="color: rgb(30, 30, 30);" data-contrast="none"&gt;. Note that the steps are the same as for a normal UD SAS token; you will just have to specify the end user and tenant if applicable).&lt;/SPAN&gt;&lt;/LI&gt;
&lt;LI aria-setsize="-1" data-leveltext="%1." data-font="Aptos" data-listid="7" data-list-defn-props="{&amp;quot;335552541&amp;quot;:0,&amp;quot;335559685&amp;quot;:720,&amp;quot;335559991&amp;quot;:360,&amp;quot;469769242&amp;quot;:[65533,0],&amp;quot;469777803&amp;quot;:&amp;quot;left&amp;quot;,&amp;quot;469777804&amp;quot;:&amp;quot;%1.&amp;quot;,&amp;quot;469777815&amp;quot;:&amp;quot;hybridMultilevel&amp;quot;}" data-aria-posinset="2" data-aria-level="1"&gt;Share the SAS token to the application/user intended to access Azure Storage.&lt;SPAN style="color: rgb(30, 30, 30);" data-ccp-props="{}"&gt; &lt;/SPAN&gt;&lt;/LI&gt;
&lt;LI aria-setsize="-1" data-leveltext="%1." data-font="Aptos" data-listid="7" data-list-defn-props="{&amp;quot;335552541&amp;quot;:0,&amp;quot;335559685&amp;quot;:720,&amp;quot;335559991&amp;quot;:360,&amp;quot;469769242&amp;quot;:[65533,0],&amp;quot;469777803&amp;quot;:&amp;quot;left&amp;quot;,&amp;quot;469777804&amp;quot;:&amp;quot;%1.&amp;quot;,&amp;quot;469777815&amp;quot;:&amp;quot;hybridMultilevel&amp;quot;}" data-aria-posinset="2" data-aria-level="1"&gt;Tokens should be passed within applications automatically or shared via key vault for best practice.&lt;SPAN style="color: rgb(30, 30, 30);" data-ccp-props="{}"&gt;&amp;nbsp;&lt;/SPAN&gt;&lt;/LI&gt;
&lt;/OL&gt;
&lt;P aria-level="1"&gt;&lt;STRONG&gt;&lt;SPAN data-contrast="none"&gt;&lt;SPAN data-ccp-parastyle="heading 1"&gt;Fee&lt;/SPAN&gt;&lt;SPAN data-ccp-parastyle="heading 1"&gt;dbac&lt;/SPAN&gt;&lt;SPAN data-ccp-parastyle="heading 1"&gt;k&lt;/SPAN&gt;&lt;/SPAN&gt;&lt;SPAN data-ccp-props="{&amp;quot;134245418&amp;quot;:true,&amp;quot;134245529&amp;quot;:true,&amp;quot;335559738&amp;quot;:360,&amp;quot;335559739&amp;quot;:80}"&gt;&amp;nbsp;&lt;/SPAN&gt;&lt;/STRONG&gt;&lt;/P&gt;
&lt;P&gt;&lt;SPAN data-contrast="none"&gt;If you have questions or feedback, please fill out this&amp;nbsp;&lt;/SPAN&gt;&lt;A href="https://forms.office.com/Pages/DesignPageV2.aspx?origin=NeoPortalPage&amp;amp;subpage=design&amp;amp;id=v4j5cvGGr0GRqy180BHbR9iuLyDgXDNIkMaAAVSMpJxUOTNNNDFGTVZIUTdRU0w0Qjg0QjdTSlNSNy4u" target="_blank" rel="noopener"&gt;&lt;SPAN data-contrast="none"&gt;&lt;SPAN data-ccp-charstyle="Hyperlink"&gt;feedback form.&lt;/SPAN&gt;&lt;/SPAN&gt;&lt;/A&gt;&lt;SPAN data-contrast="none"&gt;&amp;nbsp;If you need help, create a&amp;nbsp;&lt;/SPAN&gt;&lt;A href="https://portal.azure.com/#blade/Microsoft_Azure_Support/HelpAndSupportBlade/newsupportrequest" target="_blank" rel="noopener"&gt;&lt;SPAN data-contrast="none"&gt;&lt;SPAN data-ccp-charstyle="Hyperlink"&gt;support request.&lt;/SPAN&gt;&lt;/SPAN&gt;&lt;/A&gt;&lt;SPAN data-ccp-props="{}"&gt;&amp;nbsp;&lt;/SPAN&gt;&lt;/P&gt;</description>
      <pubDate>Tue, 03 Mar 2026 22:43:07 GMT</pubDate>
      <guid>https://techcommunity.microsoft.com/t5/azure-storage-blog/public-preview-restrict-usage-of-user-delegation-sas-to-an-entra/ba-p/4497196</guid>
      <dc:creator>ellievail</dc:creator>
      <dc:date>2026-03-03T22:43:07Z</dc:date>
    </item>
    <item>
      <title>Azure Migrate: Now Supporting Premium SSD V2, Ultra and ZRS Disks as Targets</title>
      <link>https://techcommunity.microsoft.com/t5/azure-storage-blog/azure-migrate-now-supporting-premium-ssd-v2-ultra-and-zrs-disks/ba-p/4495332</link>
      <description>&lt;P&gt;&lt;SPAN data-contrast="auto"&gt;We are excited to announce&amp;nbsp;that we have&amp;nbsp;added&amp;nbsp;assessment and migration&amp;nbsp;support for&amp;nbsp;&lt;/SPAN&gt;&lt;A href="https://learn.microsoft.com/en-us/azure/virtual-machines/disks-types" target="_blank"&gt;&lt;SPAN data-contrast="none"&gt;&lt;SPAN data-ccp-charstyle="Hyperlink"&gt;Premium SSD v2&lt;/SPAN&gt;&lt;SPAN data-ccp-charstyle="Hyperlink"&gt;,&lt;/SPAN&gt;&lt;/SPAN&gt;&lt;/A&gt;&lt;A href="https://learn.microsoft.com/en-us/azure/virtual-machines/disks-types" target="_blank"&gt;&lt;SPAN data-contrast="none"&gt;&lt;SPAN data-ccp-charstyle="Hyperlink"&gt;Ultra Disk&lt;/SPAN&gt;&lt;/SPAN&gt;&lt;/A&gt;&lt;SPAN data-contrast="auto"&gt;&amp;nbsp;&lt;/SPAN&gt;&lt;SPAN data-contrast="auto"&gt;and&amp;nbsp;&lt;/SPAN&gt;&lt;A href="https://learn.microsoft.com/en-us/azure/virtual-machines/disks-redundancy#zone-redundant-storage-for-managed-disks" target="_blank"&gt;&lt;SPAN data-contrast="none"&gt;&lt;SPAN data-ccp-charstyle="Hyperlink"&gt;ZRS Disks&lt;/SPAN&gt;&lt;/SPAN&gt;&lt;/A&gt;&lt;SPAN data-contrast="auto"&gt;&amp;nbsp;as storage&amp;nbsp;options in&amp;nbsp;Azure&amp;nbsp;Migrate,&amp;nbsp;with&amp;nbsp;&lt;/SPAN&gt;&lt;A href="https://learn.microsoft.com/en-us/azure/virtual-machines/disks-types" target="_blank"&gt;&lt;SPAN data-contrast="none"&gt;&lt;SPAN data-ccp-charstyle="Hyperlink"&gt;Premium SSD&lt;/SPAN&gt;&lt;SPAN data-ccp-charstyle="Hyperlink"&gt;&amp;nbsp;v2&lt;/SPAN&gt;&lt;/SPAN&gt;&lt;/A&gt;&lt;SPAN data-contrast="auto"&gt;&amp;nbsp;&lt;/SPAN&gt;&lt;SPAN data-contrast="auto"&gt;and&amp;nbsp;&lt;/SPAN&gt;&lt;A href="https://learn.microsoft.com/en-us/azure/virtual-machines/disks-redundancy#zone-redundant-storage-for-managed-disks" target="_blank"&gt;&lt;SPAN data-contrast="none"&gt;&lt;SPAN data-ccp-charstyle="Hyperlink"&gt;ZRS&amp;nbsp;&lt;/SPAN&gt;&lt;SPAN data-ccp-charstyle="Hyperlink"&gt;D&lt;/SPAN&gt;&lt;SPAN data-ccp-charstyle="Hyperlink"&gt;isks&lt;/SPAN&gt;&lt;/SPAN&gt;&lt;/A&gt;&lt;SPAN data-contrast="auto"&gt;&amp;nbsp;now&amp;nbsp;Generally Available&amp;nbsp;and&amp;nbsp;&lt;/SPAN&gt;&lt;A href="https://learn.microsoft.com/en-us/azure/virtual-machines/disks-types" target="_blank"&gt;&lt;SPAN data-contrast="none"&gt;&lt;SPAN data-ccp-charstyle="Hyperlink"&gt;Ultra&lt;/SPAN&gt;&lt;SPAN data-ccp-charstyle="Hyperlink"&gt;&amp;nbsp;Disk&lt;/SPAN&gt;&lt;/SPAN&gt;&lt;/A&gt;&lt;SPAN data-contrast="auto"&gt;&amp;nbsp;&lt;/SPAN&gt;&lt;SPAN data-contrast="auto"&gt;in&amp;nbsp;Public&amp;nbsp;Preview.&amp;nbsp;&lt;/SPAN&gt;&lt;SPAN data-contrast="auto"&gt;This further enhances the assessment and migration experience Azure Migrate&amp;nbsp;offers and&amp;nbsp;allows you to bring your mission critical workloads to these key Azure Storage offerings seamlessly.&lt;/SPAN&gt;&lt;SPAN data-ccp-props="{}"&gt;&amp;nbsp;&lt;/SPAN&gt;&lt;/P&gt;
&lt;H1 aria-level="1"&gt;&lt;SPAN data-contrast="none"&gt;&lt;SPAN data-ccp-parastyle="heading 1"&gt;What’s New&lt;/SPAN&gt;&lt;/SPAN&gt;&lt;SPAN data-ccp-props="{&amp;quot;134245418&amp;quot;:true,&amp;quot;134245529&amp;quot;:true,&amp;quot;335559738&amp;quot;:360,&amp;quot;335559739&amp;quot;:80}"&gt;&amp;nbsp;&lt;/SPAN&gt;&lt;/H1&gt;
&lt;H2 aria-level="2"&gt;&lt;SPAN data-contrast="none"&gt;&lt;SPAN data-ccp-parastyle="heading 2"&gt;Additional&amp;nbsp;&lt;/SPAN&gt;&lt;SPAN data-ccp-parastyle="heading 2"&gt;Assess&lt;/SPAN&gt;&lt;SPAN data-ccp-parastyle="heading 2"&gt;ment targets:&lt;/SPAN&gt;&lt;SPAN data-ccp-parastyle="heading 2"&gt;&amp;nbsp;&lt;/SPAN&gt;&lt;SPAN data-ccp-parastyle="heading 2"&gt;&amp;nbsp;&lt;/SPAN&gt;&lt;SPAN data-ccp-parastyle="heading 2"&gt;P&lt;/SPAN&gt;&lt;SPAN data-ccp-parastyle="heading 2"&gt;remium SSD&amp;nbsp;&lt;/SPAN&gt;&lt;SPAN data-ccp-parastyle="heading 2"&gt;v2 and&amp;nbsp;&lt;/SPAN&gt;&lt;SPAN data-ccp-parastyle="heading 2"&gt;Ultra&amp;nbsp;&lt;/SPAN&gt;&lt;SPAN data-ccp-parastyle="heading 2"&gt;Disks&lt;/SPAN&gt;&lt;/SPAN&gt;&lt;SPAN data-ccp-props="{&amp;quot;134245418&amp;quot;:true,&amp;quot;134245529&amp;quot;:true,&amp;quot;335559738&amp;quot;:160,&amp;quot;335559739&amp;quot;:80}"&gt;&amp;nbsp;&lt;/SPAN&gt;&lt;/H2&gt;
&lt;P&gt;&lt;SPAN data-contrast="auto"&gt;As part of the migration journey to the cloud, Azure Migrate&amp;nbsp;makes recommendations on what&amp;nbsp;cloud&amp;nbsp;resources to&amp;nbsp;move&amp;nbsp;your workloads&amp;nbsp;to.&amp;nbsp;Post successful&amp;nbsp;discovery&amp;nbsp;of&amp;nbsp;on-prem workloads, Azure Migrate&amp;nbsp;utilizes&amp;nbsp;multiple parameters like size, IOPS,&amp;nbsp;and&amp;nbsp;throughput to&amp;nbsp;make target recommendations in Azure.&amp;nbsp;Instead of just static sizing, assessments can map actual performance demand to Azure VM and disk SKUs,&amp;nbsp;optimizing&amp;nbsp;performance, resiliency, and total cost of ownership&amp;nbsp;to give you a tailored recommendation that fits your&amp;nbsp;cloud migration&amp;nbsp;journey.&amp;nbsp;&lt;/SPAN&gt;&lt;SPAN data-ccp-props="{&amp;quot;134233117&amp;quot;:false,&amp;quot;134233118&amp;quot;:false,&amp;quot;201341983&amp;quot;:0,&amp;quot;335551550&amp;quot;:1,&amp;quot;335551620&amp;quot;:1,&amp;quot;335559685&amp;quot;:0,&amp;quot;335559737&amp;quot;:0,&amp;quot;335559738&amp;quot;:0,&amp;quot;335559739&amp;quot;:160,&amp;quot;335559740&amp;quot;:279}"&gt;&amp;nbsp;&lt;/SPAN&gt;&lt;/P&gt;
&lt;P&gt;&lt;SPAN data-contrast="auto"&gt;With today’s announcement, we are adding more supported disks to Azure Migrate,&amp;nbsp;providing&amp;nbsp;you with&amp;nbsp;improved&amp;nbsp;guidance to ensure that you land on the resources in Azure that align with your&amp;nbsp;goals.&amp;nbsp;&amp;nbsp;&lt;/SPAN&gt;&lt;SPAN data-ccp-props="{&amp;quot;134233117&amp;quot;:false,&amp;quot;134233118&amp;quot;:false,&amp;quot;201341983&amp;quot;:0,&amp;quot;335551550&amp;quot;:1,&amp;quot;335551620&amp;quot;:1,&amp;quot;335559685&amp;quot;:0,&amp;quot;335559737&amp;quot;:0,&amp;quot;335559738&amp;quot;:0,&amp;quot;335559739&amp;quot;:160,&amp;quot;335559740&amp;quot;:279}"&gt;&amp;nbsp;&lt;/SPAN&gt;&lt;/P&gt;
&lt;P&gt;&lt;SPAN data-contrast="auto"&gt;If you are looking to migrate&amp;nbsp;your&amp;nbsp;demanding on-premises applications and workloads to Azure, you will&amp;nbsp;benefit&amp;nbsp;from these advanced disk options, which come with greater flexibility and enhanced performance.&amp;nbsp;For example,&amp;nbsp;Premium SSD v2 disks decouple capacity from performance, allowing you to dial IOPS and throughput precisely to your&amp;nbsp;workload’s&amp;nbsp;needs.&amp;nbsp;For high-end scenarios,&amp;nbsp;Ultra Disks&amp;nbsp;offer the highest performance among Azure managed disks, while ZRS disks provide zonally redundant storage to further protect your data.&amp;nbsp;With these included in Azure&amp;nbsp;Migrate’s&amp;nbsp;assessment engine,&amp;nbsp;you end up with&amp;nbsp;a right‑sized, data‑driven target configuration that aligns Azure storage choices with how workloads&amp;nbsp;actually run.&lt;/SPAN&gt;&lt;SPAN data-ccp-props="{}"&gt;&amp;nbsp;&lt;/SPAN&gt;&lt;/P&gt;
&lt;P&gt;&lt;SPAN data-contrast="auto"&gt;Below&amp;nbsp;is&amp;nbsp;a snippet of&amp;nbsp;how the assessment&amp;nbsp;recommendations&amp;nbsp;appear&amp;nbsp;in Azure Migrate for Premium V2 SSD disks. Customers can get details on the&amp;nbsp;disk type, provisioned IOPS,&amp;nbsp;throughput,&amp;nbsp;cost,&amp;nbsp;and seamlessly migrate using the assessment to the recommended target.&amp;nbsp;&lt;/SPAN&gt;&lt;/P&gt;
&lt;img&gt;Detailed view of Azure Managed disk recommendations for source on-prem disks in an assessment.&lt;/img&gt;
&lt;H2 aria-level="2"&gt;&lt;SPAN data-contrast="none"&gt;&lt;SPAN data-ccp-parastyle="heading 2"&gt;Migrating to&amp;nbsp;&lt;/SPAN&gt;&lt;SPAN data-ccp-parastyle="heading 2"&gt;Premium SSD v2 and Ultra Disks in Azure Migrate&lt;/SPAN&gt;&lt;/SPAN&gt;&lt;SPAN data-ccp-props="{&amp;quot;134245418&amp;quot;:true,&amp;quot;134245529&amp;quot;:true,&amp;quot;335559738&amp;quot;:160,&amp;quot;335559739&amp;quot;:80}"&gt;&amp;nbsp;&lt;/SPAN&gt;&lt;/H2&gt;
&lt;P&gt;&lt;SPAN data-contrast="auto"&gt;When Premium SSD v2 or Ultra disks are identified as the optimal targets based on workload characteristics during the assessment phase, they can be auto-populated seamlessly into the migration process. This workflow accelerates the lift-and-shift of on-prem disks to Azure’s high performance managed disks. Below is a snippet from the replication step during migration:&amp;nbsp;&lt;/SPAN&gt;&lt;/P&gt;
&lt;img /&gt;
&lt;H2 aria-level="2"&gt;&lt;SPAN data-contrast="none"&gt;&lt;SPAN data-ccp-parastyle="heading 2"&gt;Assessing and Migrating to&amp;nbsp;&lt;/SPAN&gt;&lt;SPAN data-ccp-parastyle="heading 2"&gt;ZRS&amp;nbsp;&lt;/SPAN&gt;&lt;SPAN data-ccp-parastyle="heading 2"&gt;Disks&lt;/SPAN&gt;&lt;SPAN data-ccp-parastyle="heading 2"&gt;&amp;nbsp;in Azure Migrate&lt;/SPAN&gt;&lt;/SPAN&gt;&lt;SPAN data-ccp-props="{&amp;quot;134245418&amp;quot;:true,&amp;quot;134245529&amp;quot;:true,&amp;quot;335559738&amp;quot;:160,&amp;quot;335559739&amp;quot;:80}"&gt;&amp;nbsp;&lt;/SPAN&gt;&lt;/H2&gt;
&lt;P&gt;&lt;SPAN data-contrast="auto"&gt;Azure Migrate&amp;nbsp;also has&amp;nbsp;enhanced&amp;nbsp;resiliency by supporting migration to ZRS Disks during Migration.&amp;nbsp;&lt;/SPAN&gt;&lt;A href="https://learn.microsoft.com/en-us/azure/virtual-machines/disks-redundancy#zone-redundant-storage-for-managed-disks" target="_blank"&gt;&lt;SPAN data-contrast="none"&gt;&lt;SPAN data-ccp-charstyle="Hyperlink"&gt;Zone-Redundant Storage (ZRS) for Azure Disks&lt;/SPAN&gt;&lt;/SPAN&gt;&lt;/A&gt;&lt;SPAN data-contrast="auto"&gt;&amp;nbsp;synchronously replicates data across three physically separate availability zones within a region&amp;nbsp;-&amp;nbsp;each with independent power, cooling, and networking&amp;nbsp;-&amp;nbsp;enhancing Disk availability and resiliency.&lt;/SPAN&gt;&lt;SPAN data-ccp-props="{}"&gt;&amp;nbsp;&lt;/SPAN&gt;&lt;/P&gt;
&lt;P&gt;&lt;SPAN data-contrast="auto"&gt;While creating Assessments in Azure Migrate,&amp;nbsp;you&amp;nbsp;can configure a range of target preferences, including the newly introduced&amp;nbsp;option&amp;nbsp;to enable zone-redundant storage (ZRS).&amp;nbsp;You&amp;nbsp;can opt-in to enable ZRS Disk&amp;nbsp;recommendations&amp;nbsp;by&amp;nbsp;editing the Server (Machine) default settings&amp;nbsp;in the Advanced settings&amp;nbsp;blade.&lt;/SPAN&gt;&lt;/P&gt;
&lt;img /&gt;
&lt;P&gt;&lt;SPAN data-contrast="auto"&gt;Since the preview announcement for these capabilities,&amp;nbsp;recommendations for Ultra, Premium&amp;nbsp;v2 and ZRS&amp;nbsp;Disks have&amp;nbsp;led&amp;nbsp;to petabytes&amp;nbsp;of data&amp;nbsp;being&amp;nbsp;successfully migrated&amp;nbsp;into Azure.&amp;nbsp;Below is a quote from our Premium&amp;nbsp;v2&amp;nbsp;(Pv2)&amp;nbsp;customer&amp;nbsp;that was provided&amp;nbsp;during the preview:&amp;nbsp;&amp;nbsp;&lt;/SPAN&gt;&lt;SPAN data-ccp-props="{}"&gt;&amp;nbsp;&lt;/SPAN&gt;&lt;/P&gt;
&lt;P&gt;&lt;U&gt;&lt;EM&gt;&lt;SPAN data-contrast="auto"&gt;"&lt;/SPAN&gt;&lt;SPAN data-contrast="auto"&gt;Through this preview, we have Pv2 disks recommendations in place of Pv1, which is beneficial for our estate during migration in terms of both cost and performance. We are now awaiting General Availability&lt;/SPAN&gt;&lt;SPAN data-contrast="auto"&gt;&amp;nbsp;"&lt;/SPAN&gt;&lt;SPAN data-ccp-props="{&amp;quot;335559739&amp;quot;:0}"&gt;&amp;nbsp;&lt;/SPAN&gt;&lt;/EM&gt;&lt;/U&gt;&lt;/P&gt;
&lt;P&gt;&lt;U&gt;&lt;EM&gt;&lt;SPAN data-contrast="auto"&gt;–&amp;nbsp;&lt;/SPAN&gt;&lt;SPAN data-contrast="auto"&gt;Yogesh Patil, Cloud Enterprise Architect, Tata Consultancy Services (TCS)&lt;/SPAN&gt;&lt;SPAN data-ccp-props="{&amp;quot;335559739&amp;quot;:0}"&gt;&amp;nbsp;&lt;/SPAN&gt;&lt;/EM&gt;&lt;/U&gt;&lt;/P&gt;
&lt;P&gt;&lt;SPAN data-ccp-props="{}"&gt;&amp;nbsp;&lt;/SPAN&gt;&lt;/P&gt;
&lt;P&gt;&lt;SPAN data-contrast="auto"&gt;With these added capabilities, Azure Migrate and Azure disk storage are more ready than ever for migrating&amp;nbsp;your&amp;nbsp;most demanding and mission-critical workloads.&amp;nbsp;Learn more about&amp;nbsp;&lt;/SPAN&gt;&lt;A href="https://azure.microsoft.com/migration" target="_blank"&gt;&lt;SPAN data-contrast="none"&gt;&lt;SPAN data-ccp-charstyle="Hyperlink"&gt;Azure Migrate&lt;/SPAN&gt;&lt;/SPAN&gt;&lt;/A&gt;&lt;SPAN data-contrast="auto"&gt;&amp;nbsp;and for expert migration help, please try&amp;nbsp;&lt;/SPAN&gt;&lt;A href="https://azure.microsoft.com/en-us/solutions/azure-accelerate/" target="_blank"&gt;&lt;SPAN data-contrast="none"&gt;&lt;SPAN data-ccp-charstyle="Hyperlink"&gt;Azure Accelerate.&lt;/SPAN&gt;&lt;/SPAN&gt;&lt;/A&gt;&lt;SPAN data-contrast="auto"&gt;&amp;nbsp;You can also contact your preferred partner or&amp;nbsp;&lt;/SPAN&gt;&lt;A href="https://oneask.microsoft.com/" target="_blank"&gt;&lt;SPAN data-contrast="none"&gt;&lt;SPAN data-ccp-charstyle="Hyperlink"&gt;Microsoft field&lt;/SPAN&gt;&lt;/SPAN&gt;&lt;/A&gt;&lt;SPAN data-contrast="auto"&gt;&amp;nbsp;for next steps.&amp;nbsp;Get started in&amp;nbsp;&lt;/SPAN&gt;&lt;A href="https://ms.portal.azure.com/#view/Microsoft_Azure_Migrate/AmhManageMigrateProjects.ReactView" target="_blank"&gt;&lt;SPAN data-contrast="none"&gt;&lt;SPAN data-ccp-charstyle="Hyperlink"&gt;Azure&lt;/SPAN&gt;&lt;/SPAN&gt;&lt;/A&gt;&lt;SPAN data-contrast="auto"&gt;&amp;nbsp;today!&lt;/SPAN&gt;&lt;SPAN data-ccp-props="{}"&gt;&amp;nbsp;&lt;/SPAN&gt;&lt;/P&gt;</description>
      <pubDate>Wed, 18 Feb 2026 17:22:53 GMT</pubDate>
      <guid>https://techcommunity.microsoft.com/t5/azure-storage-blog/azure-migrate-now-supporting-premium-ssd-v2-ultra-and-zrs-disks/ba-p/4495332</guid>
      <dc:creator>Lakshya_Jalan</dc:creator>
      <dc:date>2026-02-18T17:22:53Z</dc:date>
    </item>
    <item>
      <title>Azure File Sync: Azure Arc Integration, Additional Regions, and Secure Syncing</title>
      <link>https://techcommunity.microsoft.com/t5/azure-storage-blog/azure-file-sync-azure-arc-integration-additional-regions-and/ba-p/4486050</link>
      <description>&lt;P&gt;As organizations accelerate their cloud journeys, the ability to modernize file data without disrupting daily operations is critical for enterprises. Azure Files and Azure File Sync empower IT and devops teams to seamlessly bridge on-premises Windows File Servers with the flexibility and scale of the cloud. With the &lt;A class="lia-external-url" href="https://support.microsoft.com/en-us/topic/azure-file-sync-agent-v22-december-2025-ded35c33-ff9c-4716-8a8d-a080d1bc067b" target="_blank" rel="noopener"&gt;latest updates&lt;/A&gt;, Azure File Sync is now available in four new regions—bringing data closer to users for regional residency. This release also introduces a modern, identity-driven approach to authentication, providing end to end secure access with managed identities. Azure File Sync now provides simplified onboarding via Azure Arc integrating with the Azure hybrid management experience. With simplified onboarding, secure access and expanding list of regions, Azure File Sync enables organizations to seamlessly expand their hybrid file services, ensuring predictable cost, and scale.&lt;/P&gt;
&lt;H2&gt;Simplified deployment with Azure Arc extension&lt;/H2&gt;
&lt;P&gt;Customers using &lt;A class="lia-external-url" href="https://learn.microsoft.com/en-us/azure/azure-arc/overview" target="_blank" rel="noopener"&gt;Azure Arc&lt;/A&gt; managed servers can now easily deploy Azure File Sync using the &lt;A class="lia-external-url" href="https://learn.microsoft.com/en-us/azure/storage/file-sync/file-sync-extension?tabs=azure-portal" target="_blank" rel="noopener"&gt;Azure Arc extensions&lt;/A&gt;. With Azure Arc, customers can simply add the File Sync agent to their servers using a few clicks on portal, or by using an automated workflow with PowerShell, or CLI. The Azure Arc extension model provides a trusted and predictable installation and upgrade experience, with built-in security. Once installed, the Arc extension simplifies Azure File Sync deployments for ARC managed servers.&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;img /&gt;
&lt;P&gt;Beginning January 2026, File Sync will be available at no per‑server cost for customers using Windows Server Software Assurance with Azure Arc and File Sync agent v22 or later. As your environment grows, this reduces the incremental cost of adding servers and reinforces Azure File Sync as a scalable foundation to move your data to Azure.&lt;/P&gt;
&lt;H2&gt;Azure File Sync available in 4 new regions&lt;/H2&gt;
&lt;P&gt;Azure File Sync is now generally available in &lt;STRONG&gt;Italy North&lt;/STRONG&gt;, &lt;STRONG&gt;New Zealand North&lt;/STRONG&gt;, &lt;STRONG&gt;Poland Central&lt;/STRONG&gt;, and &lt;STRONG&gt;Spain Central&lt;/STRONG&gt;, adding &lt;A class="lia-external-url" href="https://docs.azure.cn/en-us/storage/files/files-whats-new" target="_blank" rel="noopener"&gt;top requested&lt;/A&gt; new geographies to the service. With these additions, customers have even more flexibility to keep data close to users, align with regional mandates and regulatory requirements, and improve performance for regional workloads. This matters especially for customers modernizing branch offices, factories, retail locations, or government sites, where the ability to select a region that is physically close to the workload can be a key part of the storage strategy. As Azure continues to grow, File Sync is growing with it, ensuring that customers can bring hybrid file services wherever their business expands.&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;H2&gt;Secure by default with Managed Identities&lt;/H2&gt;
&lt;P&gt;&lt;A class="lia-external-url" href="https://learn.microsoft.com/en-us/azure/storage/file-sync/file-sync-managed-identities?tabs=azure-portal" target="_blank" rel="noopener"&gt;Managed Identities &lt;/A&gt;support for Azure File Sync was introduced with v20, to ensure secure end-to-end access by default between the File Sync Server, Storage Sync Service and Azure Files, using Microsoft Entra ID. This reduces security risk of using passwords and operational effort to rotate keys. This means that customers don’t need to configure storage account keys or worry about resetting server certificates when using Azure Files or Azure File Sync. We have now further extended this support to &lt;A class="lia-external-url" href="https://learn.microsoft.com/en-us/azure/storage/files/files-managed-identities?tabs=windows" target="_blank" rel="noopener"&gt;Managed Identities&lt;/A&gt; for Azure Files SMB.&lt;/P&gt;
&lt;H2&gt;Get Started&lt;/H2&gt;
&lt;P&gt;Whether you are provisioning new storage, expanding to new regions, or modernizing existing deployments, these capabilities provide secure, enterprise-grade access with a streamlined configuration experience.&lt;/P&gt;
&lt;P&gt;Refer to the documentation below to get started:&lt;/P&gt;
&lt;UL&gt;
&lt;LI&gt;&lt;A class="lia-external-url" href="https://learn.microsoft.com/en-us/azure/storage/file-sync/file-sync-extension?tabs=azure-portal" target="_blank" rel="noopener"&gt;Azure Arc integration with Azure File Sync&lt;/A&gt;&lt;/LI&gt;
&lt;LI&gt;&lt;A class="lia-external-url" href="https://azure.microsoft.com/en-us/explore/global-infrastructure/products-by-region/table" target="_blank" rel="noopener"&gt;Azure File Sync regional availability&lt;/A&gt;&lt;/LI&gt;
&lt;LI&gt;&lt;A class="lia-external-url" href="https://learn.microsoft.com/en-us/azure/storage/file-sync/file-sync-managed-identities?tabs=azure-portal" target="_blank" rel="noopener"&gt;Managed Identities for File Sync&lt;/A&gt;&lt;/LI&gt;
&lt;/UL&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;For any questions, please reach out to the team at &lt;A href="mailto:azurefiles@microsoft.com" target="_blank" rel="noopener"&gt;azurefiles@microsoft.com&lt;/A&gt;&lt;/P&gt;</description>
      <pubDate>Fri, 16 Jan 2026 18:02:58 GMT</pubDate>
      <guid>https://techcommunity.microsoft.com/t5/azure-storage-blog/azure-file-sync-azure-arc-integration-additional-regions-and/ba-p/4486050</guid>
      <dc:creator>grace_kim</dc:creator>
      <dc:date>2026-01-16T18:02:58Z</dc:date>
    </item>
    <item>
      <title>User delegation SAS for Azure Tables, Azure Files, and Azure Queues is now Generally Available</title>
      <link>https://techcommunity.microsoft.com/t5/azure-storage-blog/user-delegation-sas-for-azure-tables-azure-files-and-azure/ba-p/4485693</link>
      <description>&lt;P&gt;&lt;SPAN data-contrast="none"&gt;We’re excited to announce that user delegation (UD) SAS is now generally available for Azure Tables, Azure Files, and Azure Queues in all regions.&amp;nbsp;&lt;/SPAN&gt;&lt;SPAN data-ccp-props="{}"&gt;&amp;nbsp;&lt;/SPAN&gt;&lt;/P&gt;
&lt;P&gt;&lt;SPAN data-contrast="none"&gt;User delegation SAS is already available for&amp;nbsp;Azure Blobs, and we are now extending support&amp;nbsp;to&amp;nbsp;Azure Tables,&amp;nbsp;Azure Files, and&amp;nbsp;Azure Queues.&amp;nbsp;This will&amp;nbsp;allow users to create a more secure SAS token than account or service SAS by tying the SAS token to the&amp;nbsp;creator’s identity.&amp;nbsp;&lt;/SPAN&gt;&lt;SPAN data-ccp-props="{}"&gt;&amp;nbsp;&lt;/SPAN&gt;&lt;/P&gt;
&lt;P&gt;&lt;SPAN data-contrast="none"&gt;UD&amp;nbsp;SAS&amp;nbsp;extends&amp;nbsp;Entra ID&amp;nbsp;and Azure role-based access control (RBAC) for Azure Storage, meaning lower-privileged users and services can now delegate subsets of their access to clients, using&amp;nbsp;a&amp;nbsp;pre-authorized URL. Clients retrieve a user delegation key tied to their&amp;nbsp;Entra ID&amp;nbsp;account&amp;nbsp;and then use it to create SAS tokens granting a subset of their own access rights.&lt;/SPAN&gt;&lt;SPAN data-ccp-props="{}"&gt;&amp;nbsp;&lt;/SPAN&gt;&lt;/P&gt;
&lt;P&gt;&lt;SPAN data-contrast="none"&gt;This extension of User&amp;nbsp;Delegation Key&amp;nbsp;based SAS enables delegated access at multiple granularities—including table, table entity, queue, queue message, file share, and individual file.&lt;/SPAN&gt;&lt;SPAN data-ccp-props="{}"&gt;&amp;nbsp;&lt;/SPAN&gt;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P aria-level="1"&gt;&lt;STRONG&gt;&lt;SPAN data-contrast="none"&gt;&lt;SPAN data-ccp-parastyle="heading 1"&gt;Pricing and availability&lt;/SPAN&gt;&lt;/SPAN&gt;&lt;SPAN data-ccp-props="{&amp;quot;134245418&amp;quot;:true,&amp;quot;134245529&amp;quot;:true,&amp;quot;335559738&amp;quot;:360,&amp;quot;335559739&amp;quot;:80}"&gt;&amp;nbsp;&lt;/SPAN&gt;&lt;/STRONG&gt;&lt;/P&gt;
&lt;P&gt;&lt;SPAN data-contrast="none"&gt;There is no&amp;nbsp;additional&amp;nbsp;cost for user&amp;nbsp;delegation&amp;nbsp;SAS.&amp;nbsp;Pricing is based on the standard read/write transaction costs for your storage account type. To learn more, please see&amp;nbsp;&lt;/SPAN&gt;&lt;A href="https://azure.microsoft.com/pricing/details/storage/blobs/" target="_blank" rel="noopener"&gt;&lt;SPAN data-contrast="none"&gt;&lt;SPAN data-ccp-charstyle="Hyperlink"&gt;Azure Storage Pricing.&lt;/SPAN&gt;&lt;/SPAN&gt;&lt;/A&gt;&lt;SPAN data-ccp-props="{}"&gt;&amp;nbsp;&lt;/SPAN&gt;&lt;/P&gt;
&lt;P&gt;&lt;SPAN data-contrast="none"&gt;UD SAS for Azure Tables, Azure Files, and Azure Queues is generally available in all regions. This capability is available via &lt;/SPAN&gt;&lt;A href="https://learn.microsoft.com/rest/api/storageservices/get-user-delegation-key" target="_blank" rel="noopener"&gt;&lt;SPAN data-contrast="none"&gt;&lt;SPAN data-ccp-charstyle="Hyperlink"&gt;REST APIs&lt;/SPAN&gt;&lt;/SPAN&gt;&lt;/A&gt;&lt;SPAN data-contrast="none"&gt;,&amp;nbsp;&lt;/SPAN&gt;&lt;A href="https://learn.microsoft.com/azure/storage/blobs/storage-blob-user-delegation-sas-create-dotnet?tabs=packages-dotnetcli%2Ccontainer" target="_blank" rel="noopener"&gt;&lt;SPAN data-contrast="none"&gt;&lt;SPAN data-ccp-charstyle="Hyperlink"&gt;SDKs&lt;/SPAN&gt;&lt;/SPAN&gt;&lt;/A&gt;&lt;SPAN data-contrast="none"&gt;,&amp;nbsp;&lt;/SPAN&gt;&lt;A href="https://learn.microsoft.com/azure/storage/blobs/storage-blob-user-delegation-sas-create-powershell" target="_blank" rel="noopener"&gt;&lt;SPAN data-contrast="none"&gt;&lt;SPAN data-ccp-charstyle="Hyperlink"&gt;PowerShell&lt;/SPAN&gt;&lt;/SPAN&gt;&lt;/A&gt;&lt;SPAN data-contrast="none"&gt;, and&amp;nbsp;&lt;/SPAN&gt;&lt;A href="https://learn.microsoft.com/azure/storage/blobs/storage-blob-user-delegation-sas-create-cli" target="_blank" rel="noopener"&gt;&lt;SPAN data-contrast="none"&gt;&lt;SPAN data-ccp-charstyle="Hyperlink"&gt;CLI&lt;/SPAN&gt;&lt;/SPAN&gt;&lt;/A&gt;&lt;SPAN data-contrast="none"&gt;&amp;nbsp;experiences. Note: this feature is only available in SDKs, PowerShell, and CLI for&amp;nbsp;Azure Files and&amp;nbsp;Azure Queues, but available in all three services for REST APIs.&lt;/SPAN&gt;&lt;SPAN data-ccp-props="{}"&gt;&amp;nbsp;&lt;/SPAN&gt;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P aria-level="1"&gt;&lt;STRONG&gt;&lt;SPAN data-contrast="none"&gt;&lt;SPAN data-ccp-parastyle="heading 1"&gt;Getting Started&lt;/SPAN&gt;&lt;/SPAN&gt;&lt;SPAN data-ccp-props="{&amp;quot;134245418&amp;quot;:true,&amp;quot;134245529&amp;quot;:true,&amp;quot;335559738&amp;quot;:360,&amp;quot;335559739&amp;quot;:80}"&gt;&amp;nbsp;&lt;/SPAN&gt;&lt;/STRONG&gt;&lt;/P&gt;
&lt;P&gt;&lt;SPAN data-contrast="none"&gt;Getting started is simple:&lt;/SPAN&gt;&lt;SPAN data-ccp-props="{}"&gt;&amp;nbsp;&lt;/SPAN&gt;&lt;/P&gt;
&lt;UL&gt;
&lt;LI aria-setsize="-1" data-leveltext="-" data-font="Aptos" data-listid="2" data-list-defn-props="{&amp;quot;335552541&amp;quot;:1,&amp;quot;335559685&amp;quot;:720,&amp;quot;335559991&amp;quot;:360,&amp;quot;469769226&amp;quot;:&amp;quot;Aptos&amp;quot;,&amp;quot;469769242&amp;quot;:[8226],&amp;quot;469777803&amp;quot;:&amp;quot;left&amp;quot;,&amp;quot;469777804&amp;quot;:&amp;quot;-&amp;quot;,&amp;quot;469777815&amp;quot;:&amp;quot;hybridMultilevel&amp;quot;}" data-aria-posinset="1" data-aria-level="1"&gt;&lt;SPAN data-contrast="none"&gt;All&amp;nbsp;general-purpose v2&amp;nbsp;storage&amp;nbsp;accounts are eligible to use UD SAS. There is no account setting that must be enabled to use this feature.&lt;/SPAN&gt;&lt;SPAN data-ccp-props="{}"&gt;&amp;nbsp;&lt;/SPAN&gt;&lt;/LI&gt;
&lt;/UL&gt;
&lt;P&gt;&lt;SPAN data-contrast="none"&gt;Perform the following steps&amp;nbsp;in the&amp;nbsp;&lt;/SPAN&gt;&lt;A href="https://learn.microsoft.com/en-us/rest/api/storageservices/create-user-delegation-sas#construct-a-user-delegation-sas" target="_blank" rel="noopener"&gt;&lt;SPAN data-contrast="none"&gt;&lt;SPAN data-ccp-charstyle="Hyperlink"&gt;create a user delegation SAS documentation&lt;/SPAN&gt;&lt;/SPAN&gt;&lt;/A&gt;&lt;SPAN data-contrast="none"&gt;&amp;nbsp;to&amp;nbsp;generate and&amp;nbsp;use&amp;nbsp;a&amp;nbsp;UD SAS&amp;nbsp;token:&lt;/SPAN&gt;&lt;SPAN data-ccp-props="{}"&gt;&amp;nbsp;&lt;/SPAN&gt;&lt;/P&gt;
&lt;UL&gt;
&lt;LI aria-setsize="-1" data-leveltext="-" data-font="Aptos" data-listid="1" data-list-defn-props="{&amp;quot;335552541&amp;quot;:1,&amp;quot;335559685&amp;quot;:720,&amp;quot;335559991&amp;quot;:360,&amp;quot;469769226&amp;quot;:&amp;quot;Aptos&amp;quot;,&amp;quot;469769242&amp;quot;:[8226],&amp;quot;469777803&amp;quot;:&amp;quot;left&amp;quot;,&amp;quot;469777804&amp;quot;:&amp;quot;-&amp;quot;,&amp;quot;469777815&amp;quot;:&amp;quot;hybridMultilevel&amp;quot;}" data-aria-posinset="1" data-aria-level="1"&gt;&lt;SPAN data-contrast="none"&gt;Ensure you have the correct RBAC roles assigned to create a&amp;nbsp;user delegation&amp;nbsp;key. These roles will include the Storage &amp;lt;Service&amp;gt; Data Contributor and Storage &amp;lt;Service&amp;gt; Delegator (replace Service with the respective service you are using)&lt;/SPAN&gt;&lt;SPAN data-ccp-props="{}"&gt;&amp;nbsp;&lt;/SPAN&gt;&lt;/LI&gt;
&lt;/UL&gt;
&lt;UL&gt;
&lt;LI aria-setsize="-1" data-leveltext="-" data-font="Aptos" data-listid="1" data-list-defn-props="{&amp;quot;335552541&amp;quot;:1,&amp;quot;335559685&amp;quot;:720,&amp;quot;335559991&amp;quot;:360,&amp;quot;469769226&amp;quot;:&amp;quot;Aptos&amp;quot;,&amp;quot;469769242&amp;quot;:[8226],&amp;quot;469777803&amp;quot;:&amp;quot;left&amp;quot;,&amp;quot;469777804&amp;quot;:&amp;quot;-&amp;quot;,&amp;quot;469777815&amp;quot;:&amp;quot;hybridMultilevel&amp;quot;}" data-aria-posinset="2" data-aria-level="1"&gt;&lt;SPAN data-contrast="none"&gt;Get a user delegation key (instructions&amp;nbsp;&lt;/SPAN&gt;&lt;A href="https://learn.microsoft.com/en-us/rest/api/storageservices/create-user-delegation-sas#request-the-user-delegation-key" target="_blank" rel="noopener"&gt;&lt;SPAN data-contrast="none"&gt;&lt;SPAN data-ccp-charstyle="Hyperlink"&gt;here&lt;/SPAN&gt;&lt;/SPAN&gt;&lt;/A&gt;&lt;SPAN data-contrast="none"&gt;)&lt;/SPAN&gt;&lt;SPAN data-ccp-props="{}"&gt;&amp;nbsp;&lt;/SPAN&gt;&lt;/LI&gt;
&lt;/UL&gt;
&lt;UL&gt;
&lt;LI aria-setsize="-1" data-leveltext="-" data-font="Aptos" data-listid="1" data-list-defn-props="{&amp;quot;335552541&amp;quot;:1,&amp;quot;335559685&amp;quot;:720,&amp;quot;335559991&amp;quot;:360,&amp;quot;469769226&amp;quot;:&amp;quot;Aptos&amp;quot;,&amp;quot;469769242&amp;quot;:[8226],&amp;quot;469777803&amp;quot;:&amp;quot;left&amp;quot;,&amp;quot;469777804&amp;quot;:&amp;quot;-&amp;quot;,&amp;quot;469777815&amp;quot;:&amp;quot;hybridMultilevel&amp;quot;}" data-aria-posinset="3" data-aria-level="1"&gt;&lt;SPAN data-contrast="none"&gt;Create the user delegation SAS token (instructions&amp;nbsp;&lt;/SPAN&gt;&lt;A href="https://learn.microsoft.com/en-us/rest/api/storageservices/create-user-delegation-sas#construct-a-user-delegation-sas" target="_blank" rel="noopener"&gt;&lt;SPAN data-contrast="none"&gt;&lt;SPAN data-ccp-charstyle="Hyperlink"&gt;here&lt;/SPAN&gt;&lt;/SPAN&gt;&lt;/A&gt;&lt;SPAN data-contrast="none"&gt;. Note&amp;nbsp;the steps&amp;nbsp;are similar&amp;nbsp;for each service, but permissions vary slightly from service to service)&lt;/SPAN&gt;&lt;SPAN data-ccp-props="{}"&gt;&amp;nbsp;&lt;/SPAN&gt;&lt;/LI&gt;
&lt;/UL&gt;
&lt;UL&gt;
&lt;LI aria-setsize="-1" data-leveltext="-" data-font="Aptos" data-listid="1" data-list-defn-props="{&amp;quot;335552541&amp;quot;:1,&amp;quot;335559685&amp;quot;:720,&amp;quot;335559991&amp;quot;:360,&amp;quot;469769226&amp;quot;:&amp;quot;Aptos&amp;quot;,&amp;quot;469769242&amp;quot;:[8226],&amp;quot;469777803&amp;quot;:&amp;quot;left&amp;quot;,&amp;quot;469777804&amp;quot;:&amp;quot;-&amp;quot;,&amp;quot;469777815&amp;quot;:&amp;quot;hybridMultilevel&amp;quot;}" data-aria-posinset="4" data-aria-level="1"&gt;&lt;SPAN data-contrast="none"&gt;Share the SAS token to the application/user intended to access storage data&lt;/SPAN&gt;&lt;SPAN data-ccp-props="{}"&gt;&amp;nbsp;&lt;/SPAN&gt;&lt;/LI&gt;
&lt;/UL&gt;
&lt;UL&gt;
&lt;LI aria-setsize="-1" data-leveltext="o" data-font="Aptos" data-listid="1" data-list-defn-props="{&amp;quot;335552541&amp;quot;:1,&amp;quot;335559685&amp;quot;:1440,&amp;quot;335559991&amp;quot;:360,&amp;quot;469769226&amp;quot;:&amp;quot;Aptos&amp;quot;,&amp;quot;469769242&amp;quot;:[9675],&amp;quot;469777803&amp;quot;:&amp;quot;left&amp;quot;,&amp;quot;469777804&amp;quot;:&amp;quot;o&amp;quot;,&amp;quot;469777815&amp;quot;:&amp;quot;hybridMultilevel&amp;quot;}" data-aria-posinset="1" data-aria-level="2"&gt;&lt;SPAN data-contrast="none"&gt;Tokens should be passed within&amp;nbsp;applications automatically or shared via key vault for best practice&lt;/SPAN&gt;&lt;SPAN data-ccp-props="{}"&gt;&amp;nbsp;&lt;/SPAN&gt;&lt;/LI&gt;
&lt;/UL&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P aria-level="1"&gt;&lt;STRONG&gt;&lt;SPAN data-contrast="none"&gt;&lt;SPAN data-ccp-parastyle="heading 1"&gt;Feedback&lt;/SPAN&gt;&lt;/SPAN&gt;&lt;SPAN data-ccp-props="{&amp;quot;134245418&amp;quot;:true,&amp;quot;134245529&amp;quot;:true,&amp;quot;335559738&amp;quot;:360,&amp;quot;335559739&amp;quot;:80}"&gt;&amp;nbsp;&lt;/SPAN&gt;&lt;/STRONG&gt;&lt;/P&gt;
&lt;P&gt;&lt;SPAN data-contrast="none"&gt;If you have questions or feedback, please&amp;nbsp;fill out this&amp;nbsp;&lt;/SPAN&gt;&lt;A href="https://forms.office.com/Pages/DesignPageV2.aspx?origin=NeoPortalPage&amp;amp;subpage=design&amp;amp;id=v4j5cvGGr0GRqy180BHbR9iuLyDgXDNIkMaAAVSMpJxUOVdMS0tXU1ZVV1hRQzlLM1hYTVZYTzEwVy4u" target="_blank" rel="noopener"&gt;&lt;SPAN data-contrast="none"&gt;&lt;SPAN data-ccp-charstyle="Hyperlink"&gt;feedback for&lt;/SPAN&gt;&lt;SPAN data-ccp-charstyle="Hyperlink"&gt;m&lt;/SPAN&gt;&lt;/SPAN&gt;&lt;/A&gt;&lt;SPAN data-contrast="none"&gt;.&amp;nbsp;If you&amp;nbsp;need&amp;nbsp;help, create a&amp;nbsp;&lt;/SPAN&gt;&lt;A href="https://portal.azure.com/#blade/Microsoft_Azure_Support/HelpAndSupportBlade/newsupportrequest" target="_blank" rel="noopener"&gt;&lt;SPAN data-contrast="none"&gt;&lt;SPAN data-ccp-charstyle="Hyperlink"&gt;support request&lt;/SPAN&gt;&lt;SPAN data-ccp-charstyle="Hyperlink"&gt;.&lt;/SPAN&gt;&lt;/SPAN&gt;&lt;/A&gt;&lt;SPAN data-ccp-props="{}"&gt;&amp;nbsp;&lt;/SPAN&gt;&lt;/P&gt;</description>
      <pubDate>Wed, 01 Apr 2026 20:27:47 GMT</pubDate>
      <guid>https://techcommunity.microsoft.com/t5/azure-storage-blog/user-delegation-sas-for-azure-tables-azure-files-and-azure/ba-p/4485693</guid>
      <dc:creator>ellievail</dc:creator>
      <dc:date>2026-04-01T20:27:47Z</dc:date>
    </item>
    <item>
      <title>Secure, Seamless Access using Managed Identities with Azure Files SMB</title>
      <link>https://techcommunity.microsoft.com/t5/azure-storage-blog/secure-seamless-access-using-managed-identities-with-azure-files/ba-p/4477565</link>
      <description>&lt;P&gt;As organizations evolve their application and storage environments, whether on‑premises, hybrid, or cloud, secure access is top of mind. Organizations are vigilant about protecting sensitive data while enabling agile application access across distributed environments. SMB shares are commonly used for persistent storage in applications like AKS for container workloads, web applications, and App Services. Traditional models that rely on credentials like storage account keys do not meet the demands of a Zero Trust architecture, where every access request must be verified explicitly, granted with least privilege, and designed to assume malicious access from bad actors.&lt;/P&gt;
&lt;P&gt;We are excited to announce the &lt;STRONG&gt;Public Preview&lt;/STRONG&gt; of Managed Identities support with Azure Files SMB. This capability provides a secure, identity-driven approach for customer applications that eliminates credentials-based access and integrates seamlessly with MS Entra ID. &amp;nbsp;Azure virtual machines, containers, and applications running in Azure can now authenticate to Azure Files using their own managed identity, and mount shares using short lived OAuth tokens over Kerberos. This unlocks secure file share access for both first party and customer applications, including Azure Kubernetes Service (AKS), Azure Functions, App Services, and other cloud native services&lt;/P&gt;
&lt;P&gt;By leveraging Managed Identities, customers gain:&lt;/P&gt;
&lt;UL&gt;
&lt;LI&gt;&lt;STRONG&gt;Zero Trust Alignment&lt;/STRONG&gt;–Identity tied to a specific resource, token refreshes every hour, and no passwords or keys to manage or rotate with Azure handling end-to-end identity management&lt;/LI&gt;
&lt;LI&gt;&lt;STRONG&gt;Role Based Access Control&lt;/STRONG&gt; – Built-in RBAC for least-privilege enforcement&lt;/LI&gt;
&lt;LI&gt;&lt;STRONG&gt;Compliance Mandate Resolution &lt;/STRONG&gt;– Compliant with FIPS, removing need for NTLMv2&lt;/LI&gt;
&lt;LI&gt;&lt;STRONG&gt;Multi&lt;/STRONG&gt;&lt;STRONG&gt;-Client Support&lt;/STRONG&gt; – Works with Windows and Linux clients over SMB&lt;/LI&gt;
&lt;/UL&gt;
&lt;P&gt;This capability brings a secure, simple, and scalable access model that helps organizations meet industry standard security requirements while inheriting Microsoft Entra ID’s enterprise grade identity, governance, and security capabilities for file shares.&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;img /&gt;
&lt;H2&gt;&lt;SPAN class="lia-text-color-15"&gt;Securing Real World Applications&lt;/SPAN&gt;&lt;/H2&gt;
&lt;P&gt;To illustrate how Managed Identities strengthen security, the following example workloads highlight where customers will benefit from this capability.&lt;/P&gt;
&lt;H3&gt;&lt;SPAN class="lia-text-color-15"&gt;Eliminate Secret Sprawl for Continuous Integration, Continuous Deployment (CI/CD) workloads&lt;/SPAN&gt;&lt;/H3&gt;
&lt;P&gt;Azure Files SMB provides a centralized location for storing software development artifacts generated during CI/CD pipelines. CI/CD workloads span far beyond application code, covering infrastructure updates, data engineering workflows, ML pipelines, and compliance automation, making them foundational to modern DevOps practices.&lt;/P&gt;
&lt;P&gt;Build agents in Azure DevOps or other CI/CD systems often run on both Linux and Windows, requiring a common storage backend for binaries and configuration files. Historically, these agents authenticated to Azure Files using storage account keys. With Managed Identities, build agents can now authenticate using their own identity from Microsoft Entra ID, with authorization governed through Azure RBAC. This enhances security, removes static credentials, and simplifies compliance.&lt;/P&gt;
&lt;BLOCKQUOTE&gt;
&lt;P&gt;“&lt;EM&gt;Managed Identities support with SMB shares will enable us to &lt;STRONG&gt;remove dependencies on storage account keys&lt;/STRONG&gt; to run our CI/CD pipelines, enabling stronger security and &lt;STRONG&gt;alignment with Zero-Trust principles&lt;/STRONG&gt;&lt;/EM&gt;." Alex Garcia, Staff Dev Ops Engineer, Unity Technologies.&lt;/P&gt;
&lt;/BLOCKQUOTE&gt;
&lt;H3&gt;&lt;SPAN class="lia-text-color-15"&gt;Secure Persistent Files Storage with Azure Kubernetes Service (AKS)&lt;/SPAN&gt;&lt;/H3&gt;
&lt;P&gt;Stateful AKS workloads rely on persistent volumes for configuration, logs, and application data. Previously, mounting Azure Files required storing account keys or secrets in Kubernetes. Organizations requested exceptions from their security organizations to continue using shared keys until a secure managed identities-based solution was available. With this feature, AKS clusters can authenticate directly to Azure Files SMB without storage account keys.&lt;/P&gt;
&lt;P&gt;This enables secure, token‑based access for persistent volume mounts, improving security posture and eliminating the need for exceptions to use access tied to storage account keys. Learn more in the Azure Files AKS CSI&amp;nbsp;&lt;A href="https://learn.microsoft.com/en-us/azure/aks/azure-files-csi#use-managed-identity-to-access-azure-files-storage--preview" target="_blank"&gt;documentation.&amp;nbsp;&lt;/A&gt;&lt;/P&gt;
&lt;H3&gt;&lt;SPAN class="lia-text-color-15"&gt;Get Started with Managed Identities with SMB Azure Files&lt;/SPAN&gt;&lt;/H3&gt;
&lt;P&gt;Start using Managed Identities with Azure Files today at no additional cost. This feature is supported on HDD and SSD SMB shares across all billing models. Refer to our &lt;A href="https://go.microsoft.com/fwlink/?linkid=2338790" target="_blank"&gt;documentation&lt;/A&gt; for complete set-up guidance.&lt;/P&gt;
&lt;P&gt;Whether provisioning new storage or enhancing existing deployments, this capability provides secure, enterprise‑grade access with a streamlined configuration experience.&lt;/P&gt;
&lt;P&gt;Secure your workloads today!&lt;/P&gt;
&lt;P&gt;For any questions, reach out to the team at&amp;nbsp;&lt;A href="mailto:azurefiles@microsoft.com" target="_blank"&gt;azurefiles@microsoft.com&lt;/A&gt;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Mon, 15 Dec 2025 17:46:43 GMT</pubDate>
      <guid>https://techcommunity.microsoft.com/t5/azure-storage-blog/secure-seamless-access-using-managed-identities-with-azure-files/ba-p/4477565</guid>
      <dc:creator>Priyanka-Gangal</dc:creator>
      <dc:date>2025-12-15T17:46:43Z</dc:date>
    </item>
    <item>
      <title>Transforming Data migration using Azure Copilot</title>
      <link>https://techcommunity.microsoft.com/t5/azure-storage-blog/transforming-data-migration-using-azure-copilot/ba-p/4476610</link>
      <description>&lt;H3&gt;Introduction&lt;/H3&gt;
&lt;P&gt;Data migration is critical, yet it is one of the most complex tasks in any cloud adoption journey. Whether you’re moving workloads from on-premises environments, consolidating hybrid deployments, or transitioning from other cloud providers, the migration process involves multiple tools, intricate planning, and risk management.&lt;/P&gt;
&lt;H3&gt;What’s New in Azure Copilot&lt;/H3&gt;
&lt;P&gt;With the new &lt;STRONG&gt;“Storage Migration Solutions Advisor”&lt;/STRONG&gt; capability in &lt;STRONG&gt;Azure Copilot&lt;/STRONG&gt;, Microsoft is transforming this experience into a conversational, AI-driven workflow that accelerates decision-making and reduces operational friction.&lt;/P&gt;
&lt;H3&gt;&amp;nbsp;Why This Matters&lt;/H3&gt;
&lt;P&gt;Traditionally, customers faced challenges such as:&lt;/P&gt;
&lt;UL&gt;
&lt;LI&gt;&lt;STRONG&gt;Weeks of advisory time&lt;/STRONG&gt; spent choosing the right migration tool amongst the many (Azure Storage Mover, AzCopy, Data Box, File Sync etc., and various Partner solutions).&lt;/LI&gt;
&lt;LI&gt;&lt;STRONG&gt;High support overhead&lt;/STRONG&gt; due to missteps during migration if a sub-optimal tool or service is used.&lt;/LI&gt;
&lt;/UL&gt;
&lt;P&gt;The&amp;nbsp;&lt;STRONG&gt;Storage Migration Solutions&lt;/STRONG&gt;&lt;STRONG&gt; Advisor&lt;/STRONG&gt; feature introduces:&lt;/P&gt;
&lt;UL&gt;
&lt;LI&gt;&lt;STRONG&gt;Conversational Guidance:&lt;/STRONG&gt; Share your migration needs with Copilot, like talking with an Azure advisor.&lt;/LI&gt;
&lt;LI&gt;&lt;STRONG&gt;Scenario-Based Recommendations:&lt;/STRONG&gt; Tailored suggestions based on transfer data size, protocol, and bandwidth.&lt;/LI&gt;
&lt;LI&gt;&lt;STRONG&gt;Expanded Coverage:&lt;/STRONG&gt; Supports on-premises to Azure, cloud-to-cloud (AWS/GCP to Azure), and hybrid scenarios.&lt;/LI&gt;
&lt;LI&gt;&lt;STRONG&gt;Native and Partner solutions:&lt;/STRONG&gt; Copilot can recommend &lt;STRONG&gt;Microsoft-native (1P)&lt;/STRONG&gt; solutions and &lt;STRONG&gt;third-party (3P)&lt;/STRONG&gt; tools for specialized scenarios —ensuring flexibility for enterprise needs.&lt;/LI&gt;
&lt;/UL&gt;
&lt;H2&gt;User Workflow: Step-by-Step&lt;/H2&gt;
&lt;OL&gt;
&lt;LI&gt;&lt;STRONG&gt;Initiate Migration:&lt;/STRONG&gt; Start with a prompt like “How can I migrate my data into Azure?” or “What’s the best tool for moving 1 PB from AWS S3 to Azure Blob?”&lt;/LI&gt;
&lt;LI&gt;&lt;STRONG&gt;Provide Details:&lt;/STRONG&gt; Copilot will guide you by asking for details about your requirement, such as source type (e.g., NAS, SAN, AWS S3, GCS), protocol (e.g., NFS, SMB, S3 API), target (e.g., Azure Blob, Files, Elastic SAN), data size, and bandwidth.&lt;/LI&gt;
&lt;LI&gt;&lt;STRONG&gt;Azure and Partner Solutions:&lt;/STRONG&gt; Based on your requirements, Copilot recommends the best-fit Azure solution. If a partner solution is better suited to your requirement, Copilot will also select and recommend the appropriate solution with links to its documentation and/or its Azure marketplace page.&lt;/LI&gt;
&lt;/OL&gt;
&lt;H3&gt;Examples&lt;/H3&gt;
&lt;OL&gt;
&lt;LI&gt;&lt;STRONG&gt;&lt;EM&gt; Copilot generates recommendations for migrating an on-premises file share to Azure Files.&lt;/EM&gt;&lt;/STRONG&gt;&lt;/LI&gt;
&lt;/OL&gt;
&lt;img /&gt;
&lt;P&gt;&amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp;Figure 1 Prompt from user invokes Copilot Migration recommendation workflow&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;img /&gt;
&lt;P&gt;&amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp;Figure 2 Copilot understanding protocols that customer environment has access to&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;img /&gt;
&lt;P&gt;&amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp;Figure 3 Copilot asking user's target Storage type&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;img /&gt;
&lt;P&gt;&amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp;Figure 4 Copilot gathering inputs on data size, network bandwidth availability and transfer direction&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;img /&gt;
&lt;P&gt;&amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp;Figure 5 Copilot recommendation for user scenario&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;OL start="2"&gt;
&lt;LI&gt;&lt;STRONG&gt; Copilot recommends Partner solutions for specialized migration scenarios&lt;/STRONG&gt;&lt;/LI&gt;
&lt;/OL&gt;
&lt;img /&gt;
&lt;P&gt;&amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; Figure 1 Prompt from user invokes Copilot Migration recommendation workflow&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;img /&gt;
&lt;P&gt;&amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; Figure 2 Copilot understanding protocols that customer environment has access to&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;img /&gt;
&lt;P&gt;&amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; Figure 3 Copilot asking user's target Storage type&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;img /&gt;
&lt;P&gt;&amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp;Figure 4 Copilot gathering inputs on data size, network bandwidth availability and transfer direction&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;img /&gt;
&lt;P&gt;&amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp;Figure 5 Copilot recommendation for user scenario&lt;/P&gt;
&lt;H2&gt;Pro Tips&lt;/H2&gt;
&lt;UL&gt;
&lt;LI&gt;Run a small proof-of-concept migration to estimate throughput and timing, especially for large datasets or small file sizes.&lt;/LI&gt;
&lt;LI&gt;Combine &lt;STRONG&gt;Copilot’s recommendations&lt;/STRONG&gt; with &lt;A href="https://azure.microsoft.com/en-us/blog/introducing-azure-storage-discovery-transform-data-management-with-storage-insights/" target="_blank" rel="noopener"&gt;&lt;STRONG&gt;Azure Storage Discovery&lt;/STRONG&gt;&lt;/A&gt; for visibility into your storage estate after migration.&lt;/LI&gt;
&lt;/UL&gt;
&lt;H3&gt;Getting Started&lt;/H3&gt;
&lt;UL&gt;
&lt;LI&gt;Navigate to &lt;STRONG&gt;Azure Portal → Copilot&lt;/STRONG&gt;.&lt;/LI&gt;
&lt;LI&gt;Try prompts like:&lt;/LI&gt;
&lt;/UL&gt;
&lt;P class="lia-indent-padding-left-30px"&gt;o “&lt;EM&gt;Help me migrate an NFS share to Azure Files.”&lt;/EM&gt;&lt;/P&gt;
&lt;P class="lia-indent-padding-left-30px"&gt;o “&lt;EM&gt;What’s the best tool for moving 1 PB from AWS S3 to Azure Blob?”&lt;/EM&gt;&lt;/P&gt;
&lt;UL&gt;
&lt;LI&gt;Explore &lt;A href="https://learn.microsoft.com/en-us/azure/copilot/improve-storage-accounts#use-storage-migration-solutions-advisor" target="_blank"&gt;Manage and migrate storage accounts using Azure Copilot | Microsoft Learn&lt;/A&gt;&amp;nbsp;for detailed guidance.&lt;/LI&gt;
&lt;/UL&gt;
&lt;P&gt;Ready to simplify your migration journey? Start using &lt;STRONG&gt;Azure Copilot’s Storage Migration Solutions&lt;/STRONG&gt; &lt;STRONG&gt;Advisor &lt;/STRONG&gt;today and experience AI-driven efficiency for your cloud transformation.&lt;/P&gt;</description>
      <pubDate>Thu, 11 Dec 2025 18:57:02 GMT</pubDate>
      <guid>https://techcommunity.microsoft.com/t5/azure-storage-blog/transforming-data-migration-using-azure-copilot/ba-p/4476610</guid>
      <dc:creator>madhurinrao</dc:creator>
      <dc:date>2025-12-11T18:57:02Z</dc:date>
    </item>
    <item>
      <title>Pure Storage Cloud, Azure Native evolves at Microsoft Ignite!</title>
      <link>https://techcommunity.microsoft.com/t5/azure-storage-blog/pure-storage-cloud-azure-native-evolves-at-microsoft-ignite/ba-p/4470118</link>
      <description>&lt;P&gt;The Azure Storage team has heavily invested in our partner ecosystem to meet all customer data storage needs and make it easier to migrate any application workload to Azure. You will find our complete list in the validated partner catalog (link below) and find partner solutions conveniently located in Storage Center on the Azure Portal.&lt;/P&gt;
&lt;P&gt;&lt;A href="https://aka.ms/ani/purestorage" target="_blank"&gt;Azure Native Pure Storage Cloud&lt;/A&gt; is the latest example of our deep investment in partners. Pure Storage has been recognized as a leader in Enterprise Storage Systems by Gartner for &lt;A href="https://www.purestorage.com/company/newsroom/press-releases/pure-storage-named-leader-gartner-magic-quadrant-enterprise-storage-platforms.html" target="_blank"&gt;12 consecutive years&lt;/A&gt; thanks to their commitment to robust features, performance, resilience, and customer support. We quickly reached &lt;STRONG&gt;General Availability&lt;/STRONG&gt; of the service &amp;nbsp;in September and are &lt;STRONG&gt;now announcing additional Azure Service integration – provisioning volumes to Azure Virtual Machines.&lt;/STRONG&gt;&lt;/P&gt;
&lt;P&gt;Pure Storage Cloud brings the &lt;A href="https://www.purestorage.com/solutions/cloud/azure-vmware.html" target="_blank"&gt;Purity OS features and value to Azure&lt;/A&gt; with the Portal, CLI, and Azure Resource Manager experience that simplifies deployment and ongoing management. Pure Storage Cloud is built on a solid foundation of the latest generation of Azure Virtual Machines utilizing &lt;A href="https://learn.microsoft.com/en-us/azure/azure-boost/overview" target="_blank"&gt;Azure Boost&lt;/A&gt; accelerated networking and &lt;A href="https://learn.microsoft.com/en-us/azure/virtual-machines/disks-types#premium-ssd-v2" target="_blank"&gt;Azure Premium Managed Disks v2&lt;/A&gt;. You can learn more about Azure Native Integrations on this &lt;A href="https://techcommunity.microsoft.com/blog/PartnerNews/now-generally-available-azure-native-pure-storage-cloud-for-azure-vmware-solutio/4456606" target="_blank"&gt;blog&lt;/A&gt;, read more about the technical details or Pure Storage Cloud &lt;A href="https://techcommunity.microsoft.com/blog/azurestorageblog/azure-native-pure-storage-cloud-brings-the-best-of-pure-and-azure-to-our-custome/4456246" target="_blank"&gt;here&lt;/A&gt; and find a series of step-by-step demos &lt;A href="https://www.youtube.com/playlist?list=PLVr149Yb_wxGpN_Y6fEMkh_D_SYzWtl13" target="_blank"&gt;here&lt;/A&gt;.&lt;/P&gt;
&lt;P&gt;&amp;nbsp;“We are thrilled to make this giant leap in our partnership with Microsoft — building off of the incredible cost savings and enterprise capabilities Pure Storage has delivered to customers in Azure,” said Dan Kogan, vice president enterprise business management, Pure Storage. "This jointly developed solution extends the benefits of the Pure Storage Cloud with industry leading data reduction, advanced data management capabilities and resilience into a fully managed service with a truly Azure native experience, offering a simpler and more secure enterprise-grade storage experience for Microsoft customers.”&lt;/P&gt;
&lt;img&gt;Figure 1 - Azure Portal Integration&lt;/img&gt;
&lt;P&gt;Our work with Pure initially offered a tightly integrated experience with &lt;A href="https://learn.microsoft.com/en-us/azure/azure-vmware/configure-azure-native-pure-storage-cloud" target="_blank"&gt;Azure VMware Solution&lt;/A&gt;, and &lt;STRONG&gt;today we are announcing the first expansion of Pure Storage Cloud into other Azure Services with support for volumes provisioned to Azure VMs!&lt;/STRONG&gt; Pure Storage Cloud now provides a tremendous value proposition for Linux or Windows-based applications on Azure with their efficiency, protection and cloning, and performance-at-scale capabilities.&lt;/P&gt;
&lt;P&gt;The benefits for Azure VMs will mirror those that AVS customers have come to rely on, like a US-based financial services firm with over 300 VMware VMs who moved their VMware environment to Azure discovered. Their workloads are primarily SQL, business applications, and virtual desktops. They found Pure Storage to be extremely cost effective (20 to 40% lower than the out-of-the-box AVS deployment) while providing the enterprise class Storage features they relied on on-premises.&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;img&gt;Figure 2 - Simplified Provisioning and Management&lt;/img&gt;
&lt;H2&gt;&lt;SPAN class="lia-text-color-12"&gt;Customer Story&lt;/SPAN&gt;&lt;/H2&gt;
&lt;P&gt;Over the past seven years, Pure Storage has partnered with Microsoft to bring industry-leading storage and data management services to the public cloud and make cloud migrations easier. Together, we’ve helped organizations like&amp;nbsp;&lt;A href="https://nam06.safelinks.protection.outlook.com/?url=https%3A%2F%2Fwww.purestorage.com%2Fcustomers%2Fperdoceo-education.html&amp;amp;data=05%7C02%7CKarl.Rautenstrauch%40microsoft.com%7Ce6f59e53108140637b7708ddf7be255f%7C72f988bf86f141af91ab2d7cd011db47%7C1%7C0%7C638939118550600845%7CUnknown%7CTWFpbGZsb3d8eyJFbXB0eU1hcGkiOnRydWUsIlYiOiIwLjAuMDAwMCIsIlAiOiJXaW4zMiIsIkFOIjoiTWFpbCIsIldUIjoyfQ%3D%3D%7C0%7C%7C%7C&amp;amp;sdata=EDkDomBT6pNJ5t1D7BL%2Fec1N2tTX5H6kRcBs%2FpgJk3M%3D&amp;amp;reserved=0" target="_blank"&gt;&lt;EM&gt;Perdoceo Education&lt;/EM&gt;&lt;/A&gt;&amp;nbsp;build a modern, flexible, and cost-effective storage solution in Azure—reducing database restores from eight hours to just five minutes, achieving 12:1 data reduction, and lowering total cost of ownership by 40%. We’ve enabled a major manufacturer to cut cloud storage costs by 50% and redirect those savings into AI and innovation. And we’ve supported a financial services organization in migrating VMware to the cloud—improving both ROI and security along the way.&lt;/P&gt;
&lt;H2&gt;&lt;SPAN class="lia-text-color-12"&gt;Summary&lt;/SPAN&gt;&lt;/H2&gt;
&lt;P&gt;Azure Native Pure Storage Cloud is ready to support your virtual machine storage needs and we encourage you to review the assets below and give the service a try. It is available as a 30-day free trial and offers a cost-effective and performant solution as an external storage solution for AVS&amp;nbsp;&lt;STRONG&gt;&lt;EM&gt;and now for Azure Virtual Machines as well!&lt;/EM&gt;&lt;/STRONG&gt;&lt;/P&gt;
&lt;P&gt;&lt;STRONG&gt;Learn more:&lt;/STRONG&gt;&lt;/P&gt;
&lt;P&gt;&lt;A href="https://aka.ms/ani/purestorage" target="_blank"&gt;Pure Storage Cloud Documentation&lt;/A&gt;&lt;/P&gt;
&lt;P&gt;&lt;A href="https://azuremarketplace.microsoft.com/en-us/marketplace/apps/purestoragemarketplaceadmin.krypton_3_plan?tab=Overview" target="_blank"&gt;Pure Storage Cloud in the Azure Marketplace&lt;/A&gt;&lt;/P&gt;
&lt;P&gt;&lt;A href="https://aka.ms/azurestoragepartners" target="_blank"&gt;Azure Storage Validated Partners&lt;/A&gt;&lt;/P&gt;</description>
      <pubDate>Wed, 19 Nov 2025 17:45:00 GMT</pubDate>
      <guid>https://techcommunity.microsoft.com/t5/azure-storage-blog/pure-storage-cloud-azure-native-evolves-at-microsoft-ignite/ba-p/4470118</guid>
      <dc:creator>Aung_Oo</dc:creator>
      <dc:date>2025-11-19T17:45:00Z</dc:date>
    </item>
  </channel>
</rss>

