Information
When this property is enabled, the Azure portal authorizes requests to blobs, files, queues, and tables with Microsoft Entra ID by default.
Microsoft Entra ID provides superior security and ease of use over Shared Key.
Solution
Remediate from Azure Portal
- Go to Storage accounts.
- Click the name of a storage account.
- Under Settings, click Configuration.
- Under Default to Microsoft Entra authorization in the Azure portal, click the radio button next to Enabled.
- Click Save.
- Repeat steps 1-5 for each storage account requiring remediation.
Remediate from Azure CLI
For each storage account requiring remediation, run the following command to enable defaultToOAuthAuthentication :
az storage account update --resource-group <resource-group> --name <storage-account> --set defaultToOAuthAuthentication=true