MicrosoftDocs / azure-docs

Open source documentation of Microsoft Azure
https://docs.microsoft.com/azure
Creative Commons Attribution 4.0 International
10.28k stars 21.45k forks source link

Private Link - provide some use case #55577

Closed frvigano closed 3 years ago

frvigano commented 4 years ago

I would suggest to add when a private link is needed within the Synapse Analytics context. I think it would help to understand under what circumstances and to achieve what private links are needed to provide secure access to data sources to Synapse.


Document Details

Do not edit this section. It is required for docs.microsoft.com ➟ GitHub issue linking.

AjayKumar-MSFT commented 4 years ago

@frvigano, Thanks for the feedback! We are taking a look into this and will get back to you soon.

CHEEKATLAPRADEEP-MSFT-zz commented 4 years ago

@RonyMSFT Could you please review further and update the document?

RonyMSFT commented 4 years ago

The link at the top of the article provides this information. image

frvigano commented 4 years ago

Hi Tony

I would suggest to provide examples within the context of Synapse Analytics.

Talking with customers, it is not super clear what the achieve if they define a private link (e.g. it does not allow you to access a storage account with a firewall per se, you need a Managed Identity)

Francesco

From: Rony Thomas notifications@github.com Sent: mercoledì 27 maggio 2020 07:14 To: MicrosoftDocs/azure-docs azure-docs@noreply.github.com Cc: Francesco Viganò frvigano@microsoft.com; Mention mention@noreply.github.com Subject: Re: [MicrosoftDocs/azure-docs] Private Link - provide some use case (#55577)

The link at the top of the article provides this information. [image]https://nam06.safelinks.protection.outlook.com/?url=https%3A%2F%2Fuser-images.githubusercontent.com%2F53448957%2F82980356-1db0da00-9f9e-11ea-8db7-846211fa0297.png&data=02%7C01%7Cfrvigano%40microsoft.com%7C135ab5165d0946e406ea08d801fcc0fb%7C72f988bf86f141af91ab2d7cd011db47%7C1%7C0%7C637261532374331275&sdata=hvO0KOmP9KHFJZxJqiifEiJGgWnZiprPqmnWHMVBw4o%3D&reserved=0

— You are receiving this because you were mentioned. Reply to this email directly, view it on GitHubhttps://nam06.safelinks.protection.outlook.com/?url=https%3A%2F%2Fgithub.com%2FMicrosoftDocs%2Fazure-docs%2Fissues%2F55577%23issuecomment-634433076&data=02%7C01%7Cfrvigano%40microsoft.com%7C135ab5165d0946e406ea08d801fcc0fb%7C72f988bf86f141af91ab2d7cd011db47%7C1%7C0%7C637261532374331275&sdata=8hdoqnd0dq3ruzrnLJ5GKw0RPVZfyHjBCGi0O2JCONo%3D&reserved=0, or unsubscribehttps://nam06.safelinks.protection.outlook.com/?url=https%3A%2F%2Fgithub.com%2Fnotifications%2Funsubscribe-auth%2FAJTC3XFWPHL3JZU7LJ53FUTRTSORFANCNFSM4NJLFATQ&data=02%7C01%7Cfrvigano%40microsoft.com%7C135ab5165d0946e406ea08d801fcc0fb%7C72f988bf86f141af91ab2d7cd011db47%7C1%7C0%7C637261532374341264&sdata=1G54MUiyW8sHIIBvfdkx3lD0zQpC1h8vZp0X5873sHQ%3D&reserved=0.

RonyMSFT commented 4 years ago

I will take another look at the docs. Private links are used to prevent data exfiltration. So in general, they can be used where ever customer wants to protect against data exfiltration. Are you suggesting that beyond that I provide examples: You can create private endpoint to ADLS gen2 storage accounts to protect against data exfiltration? Just trying to understand the request a bit more. Specific to Azure Synapse, you can create a managed private endpoint to any data source that supports private links (even if they are firewalled).

ryanmajidi commented 4 years ago

assign:santoshbalasubramanian

julieMSFT commented 3 years ago

@frvigano Hello, Please see Synapse Managed private endpoints. I also believe RonyMSFT answered your question. I will go ahead with closing this issue. The @notification mechanism continues to work even after an item is closed, in case further communication is needed. We hope to hear from you again.

julieMSFT commented 3 years ago

assign:julieMSFT

julieMSFT commented 3 years ago

please-close