<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: Best way to access external Azure Storage Account using SPN and reachable through a private endp in Data Engineering</title>
    <link>https://community.fabric.microsoft.com/t5/Data-Engineering/Best-way-to-access-external-Azure-Storage-Account-using-SPN-and/m-p/4141647#M3987</link>
    <description>&lt;P&gt;HI&amp;nbsp;&lt;a href="https://community.fabric.microsoft.com/t5/user/viewprofilepage/user-id/209616"&gt;@MrCalm&lt;/a&gt;,&lt;/P&gt;
&lt;P&gt;In fact, fabric data pipeline also support azure storage account. You can choose data source 'azure blob' and choose ‘SPN authentication’ to use your azure account and SPN.&lt;/P&gt;
&lt;P&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="1.png" style="width: 808px;"&gt;&lt;img src="https://community.fabric.microsoft.com/t5/image/serverpage/image-id/1164759i2236AAFA2EFB815B/image-size/large?v=v2&amp;amp;px=999" role="button" title="1.png" alt="1.png" /&gt;&lt;/span&gt;&lt;/P&gt;
&lt;P&gt;BTW, are you worked with the fabric trial or fabric capacity? (free trial is hosted in a virtual environment) &lt;BR /&gt;They may cause some issues when you try to interaction between free trial and payment environment and products.&lt;/P&gt;
&lt;P&gt;Regards,&lt;/P&gt;
&lt;P&gt;Xiaoxin Sheng&lt;/P&gt;</description>
    <pubDate>Tue, 10 Sep 2024 02:01:41 GMT</pubDate>
    <dc:creator>Anonymous</dc:creator>
    <dc:date>2024-09-10T02:01:41Z</dc:date>
    <item>
      <title>Best way to access external Azure Storage Account using SPN and reachable through a private endpoint</title>
      <link>https://community.fabric.microsoft.com/t5/Data-Engineering/Best-way-to-access-external-Azure-Storage-Account-using-SPN-and/m-p/4141254#M3981</link>
      <description>&lt;P&gt;I'm helping a customer on a Fabric POC, and we are currently struggling to find the right approach to access an external Azure Storage Account (external meaning that it is owned by another organisation). The Storage account has configured networking security, where we can be provided access either through IP whitelisting or Managed Private Networks/Endpoints. The authentication is to be handled via SPNs.&lt;/P&gt;&lt;P&gt;We have successfully configured a Azure Data Factory Pipeline (NOT Fabric Data Pipeline), that uses a Managed Virtual Network Integration Runtime and a Managed Private Endpoint to access the storage account securely. As far as I can tell the same option is not available in Fabric Pipelines.&lt;/P&gt;&lt;P&gt;A Pure Fabric solution is desired.&lt;/P&gt;&lt;P&gt;Please advise on the best way forward.&lt;/P&gt;&lt;P&gt;Thanks in advance, René&lt;/P&gt;</description>
      <pubDate>Mon, 09 Sep 2024 19:42:02 GMT</pubDate>
      <guid>https://community.fabric.microsoft.com/t5/Data-Engineering/Best-way-to-access-external-Azure-Storage-Account-using-SPN-and/m-p/4141254#M3981</guid>
      <dc:creator>MrCalm</dc:creator>
      <dc:date>2024-09-09T19:42:02Z</dc:date>
    </item>
    <item>
      <title>Re: Best way to access external Azure Storage Account using SPN and reachable through a private endp</title>
      <link>https://community.fabric.microsoft.com/t5/Data-Engineering/Best-way-to-access-external-Azure-Storage-Account-using-SPN-and/m-p/4141647#M3987</link>
      <description>&lt;P&gt;HI&amp;nbsp;&lt;a href="https://community.fabric.microsoft.com/t5/user/viewprofilepage/user-id/209616"&gt;@MrCalm&lt;/a&gt;,&lt;/P&gt;
&lt;P&gt;In fact, fabric data pipeline also support azure storage account. You can choose data source 'azure blob' and choose ‘SPN authentication’ to use your azure account and SPN.&lt;/P&gt;
&lt;P&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="1.png" style="width: 808px;"&gt;&lt;img src="https://community.fabric.microsoft.com/t5/image/serverpage/image-id/1164759i2236AAFA2EFB815B/image-size/large?v=v2&amp;amp;px=999" role="button" title="1.png" alt="1.png" /&gt;&lt;/span&gt;&lt;/P&gt;
&lt;P&gt;BTW, are you worked with the fabric trial or fabric capacity? (free trial is hosted in a virtual environment) &lt;BR /&gt;They may cause some issues when you try to interaction between free trial and payment environment and products.&lt;/P&gt;
&lt;P&gt;Regards,&lt;/P&gt;
&lt;P&gt;Xiaoxin Sheng&lt;/P&gt;</description>
      <pubDate>Tue, 10 Sep 2024 02:01:41 GMT</pubDate>
      <guid>https://community.fabric.microsoft.com/t5/Data-Engineering/Best-way-to-access-external-Azure-Storage-Account-using-SPN-and/m-p/4141647#M3987</guid>
      <dc:creator>Anonymous</dc:creator>
      <dc:date>2024-09-10T02:01:41Z</dc:date>
    </item>
    <item>
      <title>Re: Best way to access external Azure Storage Account using SPN and reachable through a private endp</title>
      <link>https://community.fabric.microsoft.com/t5/Data-Engineering/Best-way-to-access-external-Azure-Storage-Account-using-SPN-and/m-p/4142175#M3993</link>
      <description>&lt;P&gt;Hi&amp;nbsp;&lt;SPAN&gt;Xiaoxin Sheng,&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN&gt;We are currently on a Trial capacity, and hoped that we could implement an end-to-end example before deciding to buy an actual capacity.&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN&gt;My primary concern is the networking security features of Fabric and the limitations and considerations that these feature pose on the available types of workloads (i.e. Notebooks [Spark clusters] or Data Factory/Pipeline).&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN&gt;To me Trusted Workspace Access seems to be the least restrictive of the networking security features, as we would be able to create a short-cut in a lakehouse to the desired folder i ADLSg2. Trusted Network Access seems to be limited to real Fabric Capacities and not trail.&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN&gt;Does Trusted Workspace Access work between tenants, or is it limited to same tenant?&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN&gt;I have spend quite some time getting the Managed Private Endpoint feature to work against the ADSLg2. I have tried using Notebooks with ContainerClient and BlobClient (python lib&amp;nbsp;azure.staorage.blob), but also generating Short-cuts, but both were unsuccessful.&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN&gt;The struggles with managed private endpoints lead me to think that there may be other options for this.&amp;nbsp;&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN&gt;Hope this clarifies my question a bit more,&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN&gt;Regards, René&lt;/SPAN&gt;&lt;/P&gt;</description>
      <pubDate>Tue, 10 Sep 2024 07:24:38 GMT</pubDate>
      <guid>https://community.fabric.microsoft.com/t5/Data-Engineering/Best-way-to-access-external-Azure-Storage-Account-using-SPN-and/m-p/4142175#M3993</guid>
      <dc:creator>MrCalm</dc:creator>
      <dc:date>2024-09-10T07:24:38Z</dc:date>
    </item>
    <item>
      <title>Re: Best way to access external Azure Storage Account using SPN and reachable through a private endp</title>
      <link>https://community.fabric.microsoft.com/t5/Data-Engineering/Best-way-to-access-external-Azure-Storage-Account-using-SPN-and/m-p/4144125#M4015</link>
      <description>&lt;P&gt;HI&amp;nbsp;&lt;a href="https://community.fabric.microsoft.com/t5/user/viewprofilepage/user-id/209616"&gt;@MrCalm&lt;/a&gt;,&lt;/P&gt;
&lt;P&gt;AFAIK, the trusted workspace means the same tenant workspace. For work with the external tenant contents, they will have more limits on security and usage. Also across tenant may hard to manage and will affect the performance due to remote network connection.&lt;/P&gt;
&lt;P&gt;You can also take a look at the following document about external sharing in fabric to know more about these:&lt;/P&gt;
&lt;P&gt;&lt;A href="https://learn.microsoft.com/en-us/fabric/governance/external-data-sharing-overview" target="_blank"&gt;External data sharing in Microsoft Fabric - Microsoft Fabric | Microsoft Learn&lt;/A&gt;&lt;BR /&gt;Regards,&lt;/P&gt;
&lt;P&gt;Xiaoxin Sheng&lt;/P&gt;</description>
      <pubDate>Wed, 11 Sep 2024 06:17:36 GMT</pubDate>
      <guid>https://community.fabric.microsoft.com/t5/Data-Engineering/Best-way-to-access-external-Azure-Storage-Account-using-SPN-and/m-p/4144125#M4015</guid>
      <dc:creator>Anonymous</dc:creator>
      <dc:date>2024-09-11T06:17:36Z</dc:date>
    </item>
  </channel>
</rss>

