Azure Security Concepts: Difference between revisions

From NovaOrdis Knowledge Base
Jump to navigation Jump to search
Line 7: Line 7:
=Subscription=
=Subscription=
{{External|https://docs.microsoft.com/en-us/azure/guides/developer/azure-developer-guide#understanding-accounts-subscriptions-and-billing}}
{{External|https://docs.microsoft.com/en-us/azure/guides/developer/azure-developer-guide#understanding-accounts-subscriptions-and-billing}}
A [[Azure_Concepts#Resource|resource]] that ...
A subscription is a logical grouping of Azure services that is linked to an Azure [[#Account|account]]. A single Azure account can contain multiple subscriptions. Billing for Azure services is done on a per-subscription basis. Azure subscriptions have an Account Administrator who has full control over the subscription. They also have a Service Administrator who has control over all services in the subscription. The subscription is an Azure [[Azure_Concepts#Resource|resource]]. It is equivalent to [[Amazon_AWS_Security_Concepts#AWS_Account|AWS account]]. All [[Azure_Concepts#Resource|resources]] in a subscription are billed together. A subscription is associated with an [[#Active_Directory|Active Directory]] instance.
Equivalent to [[Amazon_AWS_Security_Concepts#AWS_Account|AWS account]]. All [[Azure_Concepts#Resource|resources]] in a subscription are billed together. A subscription is associated with an [[#Active_Directory|Active Directory]] instance.
==Subscription ID==
==Subscription ID==
The subscription ID can be obtained with '[[Azure_Security_Operations#Login_Status_and_Account_Information|az account list]]'; it is reported as "id".
The subscription ID can be obtained with '[[Azure_Security_Operations#Login_Status_and_Account_Information|az account list]]'; it is reported as "id".

Revision as of 16:55, 8 September 2021

Internal

Overview

Accessing Azure services require a set of credentials, including the subscription ID, Active Directory ID, region, management and storage credentials.

Account

Subscription

https://docs.microsoft.com/en-us/azure/guides/developer/azure-developer-guide#understanding-accounts-subscriptions-and-billing

A subscription is a logical grouping of Azure services that is linked to an Azure account. A single Azure account can contain multiple subscriptions. Billing for Azure services is done on a per-subscription basis. Azure subscriptions have an Account Administrator who has full control over the subscription. They also have a Service Administrator who has control over all services in the subscription. The subscription is an Azure resource. It is equivalent to AWS account. All resources in a subscription are billed together. A subscription is associated with an Active Directory instance.

Subscription ID

The subscription ID can be obtained with 'az account list'; it is reported as "id".

Subscription Name

The subscription name can be obtained with 'az account list'; it is reported as "name".

Azure Management

Azure Management Credentials

Azure Management Credentials Access Key

Azure Management Credentials Secret Key

Active Directory

Active Directory ID

Tenant

Permissions

Contributor

User Access Administrator

Owner

Application Principal

Service Principal

An OpenShift cluster running on Azure has an associated service principal.

Managed Identity

CLI Login

Azure Security Operations | Login

Network Security Group

Azure Networking Concepts | Network Security Group