Link to home
Start Free TrialLog in
Avatar of compdigit44
compdigit44

asked on

Restricting Storage Account Access to vNet's in Different Regions

In Azure I am creating a storage account, but need it to be accessible from our vNet's only.  During the Storage Account setup you can specify a vNet. The problem is we have two separate vNets in two different regions that needs access to this account. Instead of using vNet can we create a NSG for our Storage Account?
Avatar of Rohit Anand
Rohit Anand
Flag of India image

Hey Compdigit44,

The best options is here to enable Vnet Peering between two vnets ..
It will allow those resources to talk to each other even they deployed I. Two separate vnets

Refer below article
https://docs.microsoft.com/en-us/azure/virtual-network/virtual-network-peering-overview
Avatar of compdigit44
compdigit44

ASKER

But how can using a peered network help with the Storage Account firewall. Also from my understanding, in the Storage Account firewall, if you don't select a vnet all VM's will still be able to access the storage account because it would go over the Azure back bone is this correct?
ASKER CERTIFIED SOLUTION
Avatar of Rohit Anand
Rohit Anand
Flag of India image

Link to home
membership
This solution is only available to members.
To access this solution, you must be a member of Experts Exchange.
Start Free Trial