This time we’re going bigger than ever. Fabric, Power BI, SQL, AI and more. We're covering it all. You won't want to miss it.
Learn moreDid you hear? There's a new SQL AI Developer certification (DP-800). Start preparing now and be one of the first to get certified. Register now
Microsoft Fabric now offers a preview of support for Microsoft Entra service principals when using Amazon S3 Shortcuts. This feature allows the use of Entra service principals to securely access S3 buckets without the need for long-term AWS access keys.
Previously, S3 shortcuts required access keys. With this update, organizations can authorize access using Microsoft Entra credentials, simplify identity management, and improve security with short-lived, standards-based tokens.
Why This Integration Matters
Many organizations use both Microsoft and AWS platforms to support their data and analytics workflows, but managing identities across clouds can be complex, error-prone, and time-consuming.
This integration makes that much easier. By using OpenID Connect (OIDC), Microsoft Entra service principals can securely assume AWS roles without needing separate IAM users or long-lived access keys. Instead of static credentials, Entra issues short-lived tokens, which AWS trusts at the time of access. This reduces credential sprawl, simplifies security, and gives you centralized control through Entra’s identity policies. All activity is logged in AWS CloudTrail, providing full visibility into cross-cloud activity.
Key Benefits
To enable this integration, use the following steps, a detailed setup guide is available in the documentation.
Access_Amazon_S3_Shortcuts_Securely_and_Seamlessly_with_Microsoft_Entra_Service
AI-generated content may be incorrect." />
2. Configure AWS IAM
Set up an OIDC identity provider using your Entra tenant ID and create IAM roles with trust policies that reference your service principal.
Access_Amazon_S3_Shortcuts_Securely_and_Seamlessly_with_Microsoft_Entra_Service
AI-generated content may be incorrect." />
Access_Amazon_S3_Shortcuts_Securely_and_Seamlessly_with_Microsoft_Entra_Service
3. Connect via Microsoft Fabric
Use the Fabric interface to create a connection to S3 using the role ARN and Entra credentials. Then, create S3 Shortcuts using OneLake’s shortcut interface.
If your organization is already using Microsoft Entra and S3, we encourage you to try it out and see how it can simplify your data access and governance. Setup is straightforward, and you’ll be able to take advantage of secure, efficient access to your data from day one. Get started now!
You must be a registered user to add a comment. If you've already registered, sign in. Otherwise, register and sign in.