Create a key expiration policy
A key expiration policy enables you to set a reminder for the rotation of the account access keys. The reminder is displayed if the specified interval has elapsed and the keys have not yet been rotated. After you create a key expiration policy, you can monitor your storage accounts for compliance to ensure that the account access keys are rotated regularly.
To create a key expiration policy in the Azure portal:
In the Azure portal, go to your storage account.
Under Security + networking, select Access keys. Your account access keys appear, as well as the complete connection string for each key.
Select the Set rotation reminder button. If the Set rotation reminder button is grayed out, you will need to rotate each of your keys. Follow the steps described in Manually rotate access keys to rotate the keys.
In Set a reminder to rotate access keys, select the Enable key rotation reminders checkbox and set a frequency for the reminder.
Select Save .
Comments
Post a Comment