Configuration and Security of Azure Storage Accounts

1.5 hours
  • 4 Learning Objectives

About this Hands-on Lab

This hands-on lab provides some experience with configuring and securing an Azure storage account. We log in to the Azure portal and create a storage account, and then get familiar with the configuration options for it, including replication options, access tiers, and secure transfers. We RDP into a Windows VM and use Microsoft Azure Storage Explorer to connect to the storage account. We use Blob storage and attempt to upload and retrieve data from the blob. Using the Azure portal, we use access policies and shared access signatures to both permit access to the storage account and deny access to blob data. Subsequent attempts to upload and retrieve data from Blob storage should fail. Completing the lab provides the experience required to configure and secure an Azure storage account.

Learning Objectives

Successfully complete this lab by achieving the following learning objectives:

Create and Configure a Storage Account
  1. In the Azure portal, click Create.
  2. In the search bar, type and select Storage account.
  3. Click Create.
  4. Create a storage account in the current resource group.
Log In to the VM with RDP

Log in to the virtual machine that was provisioned for this lab using the username/password provided in the lab credentials.

Note: There may be an issue with the Connect option in the Azure portal. If this occurs for you, you can still RDP using your favorite RDP client and the public IP address of the VM.

Open Azure Storage Explorer, Connect to the Azure Account, and Upload Image Files
  1. In the VM, open Azure Storage Explorer and connect to the Azure account using the provided credentials.
  2. Create a new Blob Storage container and upload sample images to the storage account using the files stored in C:images on the VM.
Upload Storage Account Files in Azure Storage Explorer Using Access Keys and Revoke Storage Account Access
  1. In the Azure portal, copy the key1 access key for the Storage Account.
  2. Within Azure Storage Explorer, connect to the Storage Account using the key1 access key.
  3. Upload images to the images container.
  4. In the Azure portal, rotate the key1 access key.
  5. In Azure Storage Explorer on the virtual machine, refresh the connection and attempt to view the containers.

Additional Resources

Please log in to the Azure portal prior to Solution Part I.

Note: If you experience any issues connecting to the VM using the Connect option in the portal, you will still be able to RDP from a client by using the public IP address.

RDP Access to Virtual Machines

We will be using RDP to access our Windows virtual machines in this lab. For MacOS and Linux workstations, you may need to download an RDP application in order to connect to these virtual machines:

What are Hands-on Labs

Hands-on Labs are real environments created by industry experts to help you learn. These environments help you gain knowledge and experience, practice without compromising your system, test without risk, destroy without fear, and let you learn from your mistakes. Hands-on Labs: practice your skills before delivering in the real world.

Sign In
Welcome Back!

Psst…this one if you’ve been moved to ACG!

Get Started
Who’s going to be learning?